Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   Virus/Viren, z.B. SmartSaver eingefangen (https://www.trojaner-board.de/165026-virus-viren-z-b-smartsaver-eingefangen.html)

Jami87 12.03.2015 19:44

Virus/Viren, z.B. SmartSaver eingefangen
 
Hallo,

ich habe wohl mal wieder einen oder mehrere Viren auf meinem Laptop und hoffe, dass mir jmd weiterhelfen kann?

Ich weiß nur leider nicht, wie lang mein Laptop überhaupt noch funktioniert, da er immer wieder Streifen anzeigt bzw. alles voll Streifen ist und ich nichts mehr sehe (bisher ging es dann doch ab und zu wieder). Es zeigt immer an, dass ein Grafikkartentreiberfehler vorliegt, aber vielleicht hängt das ja auch mit dem Virus/den Viren zusammen?

Ich glaube, ich habe auf jeden Fall den SmartSaver 15, weil es immer wieder neue Seiten öffnet und dies dann in der Adressleiste steht.

Vor einiger Zeit habe ich mir hier schonmal helfen lassen und hoffe, wieder Rat zu finden. Allerdings fange ich wohl wieder bei 0 an, weil ich überhaupt nicht mehr weiß, was ich machen soll. Zudem ist wahrscheinlich die Reihenfolge auch anders?!?

Vielen Dank schonmal.

LG...

schrauber 12.03.2015 20:46

hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)


Jami87 12.03.2015 21:51

Hallo,

danke, dass du mir so schnell zurückgeschrieben hast :-).

Hier das FRST:


FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by ***** (ATTENTION: The logged in user is not administrator) on ***** on 12-03-2015 19:50:02
Running from C:\Users\*****\Downloads
Loaded Profiles: ***** & ***** 2 (Available profiles: ***** & ***** 2)
Platform: Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

Failed to access process -> smss.exe
Failed to access process -> csrss.exe
Failed to access process -> wininit.exe
Failed to access process -> csrss.exe
Failed to access process -> services.exe
Failed to access process -> lsass.exe
Failed to access process -> lsm.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> winlogon.exe
Failed to access process -> svchost.exe
Failed to access process -> SLsvc.exe
Failed to access process -> svchost.exe
Failed to access process -> DisplayLinkService.exe
Failed to access process -> svchost.exe
Failed to access process -> spoolsv.exe
Failed to access process -> sched.exe
Failed to access process -> svchost.exe
Failed to access process -> SASCore.exe
Failed to access process -> NetworkLicenseServer.exe
Failed to access process -> PhotoshopElementsFileAgent.exe
Failed to access process -> avguard.exe
Failed to access process -> svchost.exe
Failed to access process -> E_S40RP7.EXE
Failed to access process -> FreemakeUtilsService.exe
Failed to access process -> LVPrcSrv.exe
Failed to access process -> lxeacoms.exe
Failed to access process -> Netzmanager_Service.exe
Failed to access process -> svchost.exe
Failed to access process -> rfx-server.exe
Failed to access process -> psia.exe
Failed to access process -> stacsv.exe
Failed to access process -> svchost.exe
Failed to access process -> ULCDRSvr.exe
Failed to access process -> VESMgr.exe
Failed to access process -> VCSW.exe
Failed to access process -> svchost.exe
Failed to access process -> SearchIndexer.exe
Failed to access process -> WUDFHost.exe
Failed to access process -> XAudio.exe
Failed to access process -> Avira.OE.ServiceHost.exe
Failed to access process -> VESMgrSub.exe
Failed to access process -> VzCdbSvc.exe
Failed to access process -> VzFw.exe
Failed to access process -> DisplayLinkManager.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdSync.exe
(SweetIM Technologies Ltd.) C:\Program Files\SweetIM\Messenger\SweetIM.exe
() C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
() C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(Akamai Technologies, Inc.) C:\Users\*****\AppData\Local\Akamai\netsession_win.exe
() C:\Users\*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe
Failed to access process -> WmiPrvSE.exe
Failed to access process -> avshadow.exe
(Sony Corporation) C:\Program Files\Sony\VCM Manager Setting\VcmMgrNotification.exe
(Akamai Technologies, Inc.) C:\Users\*****\AppData\Local\Akamai\netsession_win.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
Failed to access process -> svchost.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
Failed to access process -> svchost.exe
Failed to access process -> mbamservice.exe
Failed to access process -> WPFFontCache_v0400.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Program Files\Windows Mail\WinMail.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe
Failed to access process -> SearchProtocolHost.exe
Failed to access process -> SearchFilterHost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdSync.exe [215552 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [SweetIM] => C:\Program Files\SweetIM\Messenger\SweetIM.exe [111928 2010-06-07] (SweetIM Technologies Ltd.)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [37296 2011-09-07] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-03-30] (Adobe Systems Incorporated)
HKLM\...\Run: [lxeamon.exe] => C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe [770728 2010-01-18] ()
HKLM\...\Run: [EzPrint] => C:\Program Files\Lexmark S300-S400 Series\ezprint.exe [139944 2010-01-18] ()
HKLM\...\Run: [UVS10 Preload] => C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [36864 2006-08-09] (Ulead Systems, Inc.)
HKLM\...\Run: [Malwarebytes' Anti-Malware] => C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [462408 2012-04-04] (Malwarebytes Corporation)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [Iminent] => C:\Program Files\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C"
HKLM\...\Run: [IminentMessenger] => C:\Program Files\Iminent\Iminent.Messengers.exe /startup
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [703280 2015-03-10] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [NvSvc] => RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\RunOnce: [awde7zip53892] => [X]
HKLM\...\RunOnce: [WSE_Vosteran] => C:\Windows\system32\wscript.exe /E:vbscript /B "C:\Users\JAMIE-~1\AppData\Roaming\WSE_Vosteran\UpdateProc\bkup.dat"
HKLM\...\RunOnce: [*WerKernelReporting] => C:\Windows\SYSTEM32\WerFault.exe [217088 2009-04-11] (Microsoft Corporation)
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll (Sony Corporation)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [466144 2014-11-27] (Sony)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [3905920 2012-06-05] (SUPERAntiSpyware.com)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Akamai NetSession Interface] => C:\Users\*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Amazon Cloud Player] => C:\Users\*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3145536 2014-05-08] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON SX430 Series (Kopie 1)] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHAE.EXE [212480 2012-05-18] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON Stylus DX8400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE [182272 2007-04-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\RunOnce: [WSE_Vosteran] => C:\Windows\system32\wscript.exe /E:vbscript /B "C:\Users\JAMIE-~1\AppData\Roaming\WSE_Vosteran\UpdateProc\bkup.dat"
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-06-26] (Google)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk
ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\DSL-Manager\DslMgr.exe (No File)
Startup: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk
ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG)
Startup: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://home.sweetim.com/?crg=3.1010000.10013&barid={C922DC41-24F3-4936-92D2-71C126473C64}
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
URLSearchHook: [S-1-5-21-3850073437-3280287025-709413035-1003] ATTENTION ==> Default URLSearchHook is missing.
SearchScopes: HKLM -> DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL = hxxp://vosteran.com/results.php?f=4&q={searchTerms}&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
SearchScopes: HKLM -> {BFFED5CA-8BDF-47CC-AED0-23F4E6D77732} URL = hxxp://search.iminent.com/?appId=&ref=toolbox&q={searchTerms}
SearchScopes: HKLM -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010000.10013&barid={C922DC41-24F3-4936-92D2-71C126473C64}
SearchScopes: HKLM -> {EEE6C360-6118-11DC-9C72-001320C79847} URL = hxxp://vosteran.com/results.php?f=4&q={searchTerms}&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22] (Adobe Systems Incorporated)
BHO: TBSB01620 Class -> {58124A0B-DC32-4180-9BFF-E0E21AE34026} -> C:\Program Files\IMinent Toolbar\tbcore3.dll No File
BHO: SwissAcademic.Citavi.Picker.IEPicker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\Windows\system32\mscoree.dll [2009-11-08] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-20] (Oracle Corporation)
BHO: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2011-09-16] (Google Inc.)
BHO: CBrowserHelperObject Object -> {CA6319C0-31B7-401E-A518-A07C3DB8F777} -> C:\Program Files\Google BAE\BAE.dll [2006-06-23] (Your Company Name)
BHO: Lexmark  -> {D2C5E510-BE6D-42CC-9F61-E4F939078474} -> C:\Program Files\Lexmark Printable Web\bho.dll [2008-05-22] ()
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-20] (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
Toolbar: HKLM - IMinent Toolbar - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} - C:\Program Files\IMinent Toolbar\tbcore3.dll No File
Toolbar: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> IMinent Toolbar - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} - C:\Program Files\IMinent Toolbar\tbcore3.dll No File
DPF: {00000161-9980-0010-8000-00AA00389B71} hxxp://codecs.microsoft.com/codecs/i386/msaud.cab
DPF: {33564D57-9980-0010-8000-00AA00389B71} hxxp://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-01-25] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\mdoh89q4.default
FF DefaultSearchEngine:
FF DefaultSearchUrl:
FF SearchEngineOrder.1:
FF SelectedSearchEngine: Vosteran
FF Homepage: www.google.de
FF NetworkProxy: "no_proxies_on", ""
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-05] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2007-07-12] (DivX, Inc)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2013-06-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-20] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-16] (Google)
FF Plugin: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File
FF Plugin: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2011-06-07] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3850073437-3280287025-709413035-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-03-09] (Unity Technologies ApS)
FF user.js: detected! => C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\mdoh89q4.default\user.js [2015-01-31]
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2011-06-07] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-06-04] (Apple Inc.)
FF SearchPlugin: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\mdoh89q4.default\searchplugins\Vosteran.xml [2015-01-31]
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\googledesktop.xml [2010-06-26]
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\SearchTheWeb.xml [2012-06-19]
FF Extension: Avira Browser Safety - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\mdoh89q4.default\Extensions\abs@avira.com [2015-02-20]
FF Extension: SmartSaver+ 15.1 - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\mdoh89q4.default\Extensions\tylerkeith11@aol.com [2015-03-11]
FF Extension: DownloadHelper - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\mdoh89q4.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-06]
FF Extension: SweetPacks Toolbar for Firefox - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\mdoh89q4.default\Extensions\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi [2011-05-15]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox
FF Extension: Freemake Video Converter Plugin - C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox [2012-01-05]
FF HKLM\...\Firefox\Extensions: [webbooster@iminent.com] - C:\Program Files\Iminent\webbooster@iminent.com
FF HKLM\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2012-12-12]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{D250ED92-1791-42C4-B441-E90BF89B9BEF}] - C:\Users\*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF}
FF Extension: XULRunner - C:\Users\*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF} [2011-04-02]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR HomePage: Default -> hxxp://vosteran.com/?f=1&a=&cd=&cr=&ir=
CHR StartupUrls: Default -> "hxxp://vosteran.com/?f=7&a=&cd=&cr=&ir=", "hxxp://www.google.com/"
CHR Profile: C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-01-31]
CHR Extension: (Avira Browser Safety) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-02-20]
CHR Extension: (Freemake Video Converter) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj [2015-01-31]
CHR Extension: (Google Wallet) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-31]
CHR Extension: (Vosteran New Tab) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce [2015-01-31]
CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [igdhbblpcellaljokkpfhcjlagemhgjl] - C:\Program Files\Iminent\Iminent.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2012-01-05]
CHR HKLM\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2011-08-12] (SUPERAntiSpyware.com) [File not signed]
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AdobeActiveFileMonitor5.0; C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [108712 2006-12-22] ()
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [432888 2015-03-10] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [432888 2015-03-10] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe [443752 2008-08-18] (DisplayLink Corp.)
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
S4 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed]
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [74752 2011-12-30] (Freemake) [File not signed]
S4 GoogleDesktopManager-051210-111108; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-06-26] (Google)
S2 gupdate1ca0ac0f00c0a80; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
R2 iphlpsvc; C:\Windows\System32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
R2 lmhosts; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeaserv.exe [193192 2010-04-14] (Lexmark International, Inc.)
R2 lxea_device; C:\Windows\system32\lxeacoms.exe [598696 2010-01-07] ( )
R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [654408 2012-04-04] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [File not signed]
R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) [File not signed]
R2 NlaSvc; C:\Windows\System32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
R2 nsi; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 OMSI download service; C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112 2009-04-30] () [File not signed]
S4 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [File not signed]
R2 Radio.fx; C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe [3673944 2011-11-18] ()
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [994360 2011-07-29] (Secunia)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [File not signed]
R2 STacSV; C:\Windows\system32\stacsv.exe [94208 2007-06-13] (SigmaTel, Inc.)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-09-28] (Ulead Systems, Inc.) [File not signed]
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2007-06-28] (Sony Corporation) [File not signed]
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182392 2007-07-12] (Sony Corporation)
S3 VAIOMediaPlatform-IntegratedServer-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2523136 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-Mobile-Gateway; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [499712 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe [745472 2007-01-10] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [292152 2007-07-05] (Sony Corporation)
R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [274432 2007-06-28] (Sony Corporation) [File not signed]
R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2007-08-28] (Sony Corporation) [File not signed]
R2 VzFw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe [131072 2007-08-28] (Sony Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 CLTNetCnService; "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon [X]
S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /medsvc [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-11-24] (Avira Operations GmbH & Co. KG)
R3 dlkmd; C:\Windows\system32\drivers\dlkmd.sys [287856 2008-08-18] (DisplayLink Corp.)
R0 dlkmdldr; C:\Windows\System32\drivers\dlkmdldr.sys [13424 2008-08-18] (DisplayLink Corp.)
S3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25624 2009-04-30] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22344 2012-04-04] (Malwarebytes Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia)
S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [86824 2008-10-21] (MCCI Corporation)
S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [15016 2008-10-21] (MCCI Corporation)
S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [114600 2008-10-21] (MCCI Corporation)
S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [108328 2008-10-21] (MCCI Corporation)
S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [26024 2008-10-21] (MCCI Corporation)
S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [104616 2008-10-21] (MCCI Corporation)
S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [109736 2008-10-21] (MCCI Corporation)
S3 s116bus; C:\Windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\Windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\Windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\Windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\Windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\Windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\Windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
S3 s3017bus; C:\Windows\System32\DRIVERS\s3017bus.sys [83880 2007-12-10] (MCCI Corporation)
S3 s3017mdfl; C:\Windows\System32\DRIVERS\s3017mdfl.sys [15016 2007-12-10] (MCCI Corporation)
S3 s3017mdm; C:\Windows\System32\DRIVERS\s3017mdm.sys [110632 2007-12-10] (MCCI Corporation)
S3 s3017mgmt; C:\Windows\System32\DRIVERS\s3017mgmt.sys [104616 2007-12-10] (MCCI Corporation)
S3 s3017nd5; C:\Windows\System32\DRIVERS\s3017nd5.sys [25512 2007-12-10] (MCCI Corporation)
S3 s3017obex; C:\Windows\System32\DRIVERS\s3017obex.sys [100648 2007-12-10] (MCCI Corporation)
S3 s3017unic; C:\Windows\System32\DRIVERS\s3017unic.sys [110120 2007-12-10] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-11-24] (Avira GmbH)
R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [326656 2007-06-13] (SigmaTel, Inc.)
S3 StkTMini; C:\Windows\System32\Drivers\StkTMini.sys [468096 2007-11-15] (Syntek)
R3 TelekomNM3; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM3.sys [35040 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
R3 ti21sony; C:\Windows\System32\drivers\ti21sony.sys [812544 2007-06-06] (Texas Instruments)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 dsltestSp5; System32\Drivers\dsltestSp5.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-12 19:51 - 2015-03-12 19:51 - 00380416 _____ () C:\Users\*****\Downloads\Gmer-19357.exe
2015-03-12 19:50 - 2015-03-12 19:50 - 00380416 _____ () C:\Users\*****\Downloads\9w24tho6.exe
2015-03-12 19:50 - 2015-03-12 19:50 - 00038026 _____ () C:\Users\*****\Downloads\FRST.txt
2015-03-12 19:49 - 2015-03-12 19:50 - 00000000 ____D () C:\FRST
2015-03-12 19:49 - 2015-03-12 19:49 - 01135104 _____ (Farbar) C:\Users\*****\Downloads\FRST.exe
2015-03-12 19:48 - 2015-03-12 19:49 - 00000492 _____ () C:\Windows\system32\defogger_disable.log
2015-03-12 19:46 - 2015-03-12 19:46 - 00050477 _____ () C:\Users\*****\Downloads\Defogger.exe
2015-03-11 19:55 - 2015-01-29 02:35 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-11 19:51 - 2015-01-29 02:35 - 00975360 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-11 19:44 - 2015-02-26 01:18 - 02064384 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-11 17:14 - 2015-02-20 03:03 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-11 17:14 - 2015-02-20 01:28 - 00296960 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-11 17:10 - 2015-02-26 03:01 - 03604408 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-03-11 17:10 - 2015-02-26 03:01 - 03552184 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-11 17:10 - 2015-01-09 03:04 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-11 17:10 - 2015-01-09 01:18 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-11 17:08 - 2015-01-21 03:02 - 00807936 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-11 17:05 - 2015-03-06 05:01 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-11 17:03 - 2014-10-13 02:12 - 02264064 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-11 17:02 - 2015-02-18 03:02 - 11587584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-10 23:53 - 2015-03-12 18:53 - 00003132 _____ () C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-1-6.job
2015-03-10 23:53 - 2015-03-12 18:18 - 00004488 _____ () C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-4.job
2015-03-10 23:53 - 2015-03-12 18:18 - 00003468 _____ () C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-1-7.job
2015-03-10 23:53 - 2015-03-10 23:53 - 01498072 _____ () C:\Users\*****\AppData\Roaming\VM.exe
2015-03-10 23:53 - 2015-03-10 23:53 - 00001366 _____ () C:\Windows\Tasks\VM.job
2015-03-10 23:52 - 2015-03-12 18:53 - 00005512 _____ () C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-6.job
2015-03-10 23:52 - 2015-03-12 18:18 - 00005176 _____ () C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-7.job
2015-03-10 23:52 - 2015-03-12 18:18 - 00002440 _____ () C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-5.job
2015-03-10 23:52 - 2015-03-10 23:53 - 00002440 _____ () C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-5_user.job
2015-03-10 23:52 - 2015-03-10 23:52 - 01978840 _____ () C:\Users\*****\AppData\Roaming\PWKN.exe
2015-03-10 23:52 - 2015-03-10 23:52 - 00002106 _____ () C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-10_user.job
2015-03-10 23:52 - 2015-03-10 23:52 - 00001370 _____ () C:\Windows\Tasks\PWKN.job
2015-03-10 23:52 - 2015-03-10 23:52 - 00000000 ____D () C:\Program Files\861437cb-3ee3-405d-bcea-149a4dc68fde
2015-03-10 23:51 - 2015-03-11 19:50 - 00000000 ____D () C:\ProgramData\{c5d7b5bd-e56a-bd77-c5d7-7b5bde56d6f7}
2015-03-10 23:51 - 2015-03-10 23:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LiveSupport
2015-03-10 23:51 - 2015-03-10 23:51 - 00000000 ____D () C:\Program Files\LiveSupport
2015-03-10 23:44 - 2015-03-10 23:46 - 60302800 _____ (Sony Corporation ) C:\Users\*****\Downloads\EP0000185336(1).exe
2015-03-10 21:26 - 2015-02-21 18:37 - 12375040 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-10 21:26 - 2015-02-21 18:34 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-10 21:26 - 2015-02-21 18:29 - 09747968 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-10 21:26 - 2015-02-21 18:28 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-10 21:26 - 2015-02-21 18:22 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-10 21:26 - 2015-02-21 18:21 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-10 21:26 - 2015-02-21 18:21 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 01803264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-10 21:26 - 2015-02-21 18:18 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-10 21:26 - 2015-02-21 18:17 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-10 20:19 - 2015-03-10 23:27 - 182414224 _____ (NVIDIA Corporation) C:\Users\*****\Downloads\307.83-notebook-winvista-32bit-international-whql.exe
2015-03-06 15:42 - 2015-03-06 15:42 - 00001879 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2015-02-21 13:06 - 2015-02-21 13:06 - 00000000 ____D () C:\Users\*****\AppData\Roaming\Avira
2015-02-21 12:36 - 2015-03-10 20:05 - 00136216 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-02-21 12:36 - 2015-03-10 20:05 - 00105864 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-02-21 12:36 - 2014-11-24 10:23 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2015-02-21 12:24 - 2015-02-21 12:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-02-21 12:24 - 2015-02-21 12:24 - 00001002 _____ () C:\Users\Public\Desktop\Avira.lnk
2015-02-21 12:23 - 2015-02-21 12:23 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-20 23:47 - 2015-02-20 23:54 - 160782960 _____ () C:\Users\*****\Downloads\avira_free_antivirus_de_15.0.8.624.exe
2015-02-20 23:45 - 2015-02-20 23:46 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\*****\Downloads\avira_de_av___ws(2).exe
2015-02-20 22:38 - 2015-02-20 22:38 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\*****\Downloads\avira_de_av___ws.exe
2015-02-20 22:38 - 2015-02-20 22:38 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\*****\Downloads\avira_de_av___ws(1).exe
2015-02-20 22:25 - 2015-02-20 22:25 - 00639912 _____ (Oracle Corporation) C:\Users\*****\Downloads\jxpiinstall(2).exe
2015-02-20 20:52 - 2015-02-20 20:45 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2015-02-20 20:52 - 2015-02-20 20:44 - 00176552 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2015-02-20 20:52 - 2015-02-20 20:44 - 00176552 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2015-02-20 20:52 - 2013-06-18 19:48 - 00867240 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll
2015-02-20 20:52 - 2013-06-18 19:48 - 00789416 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll
2015-02-20 20:50 - 2015-02-20 20:50 - 00000000 ____D () C:\ProgramData\APN
2015-02-20 20:45 - 2015-02-20 20:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-02-20 20:42 - 2015-02-20 21:01 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-20 20:41 - 2015-02-20 22:12 - 232935472 _____ (NVIDIA Corporation) C:\Users\*****\Downloads\307.83-notebook-winvista-64bit-international-whql.exe
2015-02-20 20:32 - 2015-02-20 20:33 - 00639912 _____ (Oracle Corporation) C:\Users\*****\Downloads\jxpiinstall(1).exe
2015-02-17 16:04 - 2015-02-17 16:04 - 01202848 _____ (Microsoft Corporation) C:\Windows\system32\FM20.DLL
2015-02-12 17:43 - 2014-11-26 03:05 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-12 17:08 - 2015-01-15 05:13 - 00440760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-12 17:07 - 2014-12-08 02:59 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-10 17:51 - 2015-02-15 21:13 - 00048735 _____ () C:\Users\*****\Documents\Kindertanzvertrag.odt

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-12 19:48 - 2012-05-23 06:59 - 00000000 ____D () C:\Users\***** 2
2015-03-12 19:39 - 2015-01-31 17:39 - 00000314 _____ () C:\Windows\Tasks\WSE_Vosteran.job
2015-03-12 19:35 - 2008-02-06 14:54 - 01110187 _____ () C:\Windows\WindowsUpdate.log
2015-03-12 19:32 - 2009-07-22 12:50 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-12 19:05 - 2013-02-05 20:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-12 18:50 - 2008-02-16 14:49 - 00002631 _____ () C:\Users\*****\Desktop\Microsoft Office Word 2007.lnk
2015-03-12 18:21 - 2013-07-13 10:20 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
2015-03-12 18:21 - 2011-01-02 17:31 - 00189380 _____ () C:\ProgramData\lxeascan.log
2015-03-12 18:21 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****\AppData\Roaming\nvModes.001
2015-03-12 18:19 - 2015-01-31 17:39 - 00000406 _____ () C:\Windows\Tasks\Final Media Player Update Checker.job
2015-03-12 18:17 - 2007-07-20 15:28 - 01546512 _____ () C:\Windows\PFRO.log
2015-03-12 18:17 - 2006-11-02 14:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-12 18:17 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-12 18:17 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-11 21:52 - 2007-07-20 14:34 - 00000012 _____ () C:\Windows\bthservsdp.dat
2015-03-11 21:52 - 2006-11-02 14:01 - 00032558 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-03-11 21:06 - 2008-05-16 21:19 - 00000000 ____D () C:\Windows\Minidump
2015-03-11 21:05 - 2010-08-25 18:12 - 273508973 _____ () C:\Windows\MEMORY.DMP
2015-03-11 20:31 - 2006-11-02 13:47 - 00397352 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-11 19:54 - 2007-07-20 16:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-11 19:43 - 2013-07-26 08:36 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-11 19:12 - 2015-01-31 17:39 - 00000000 ____D () C:\Program Files\File Type Assistant
2015-03-11 19:01 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****\AppData\Roaming\nvModes.dat
2015-03-11 17:16 - 2006-11-02 11:24 - 119837696 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2015-03-11 16:38 - 2006-11-02 11:33 - 01594468 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-11 00:08 - 2010-08-25 19:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-10 23:52 - 2012-09-29 13:22 - 00000000 ____D () C:\Program Files\7-Zip2
2015-03-09 23:03 - 2011-06-30 11:07 - 00001356 _____ () C:\Users\*****\AppData\Local\d3d9caps.dat
2015-03-09 20:46 - 2008-02-06 16:25 - 00000000 ____D () C:\Users\*****
2015-03-09 20:33 - 2015-02-01 09:58 - 00000000 ____D () C:\Users\*****\AppData\Roaming\FinalMediaPlayer
2015-03-09 20:33 - 2013-06-21 13:43 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-03-09 20:33 - 2012-06-24 10:07 - 00000000 ____D () C:\Users\*****\AppData\Local\Akamai
2015-03-09 20:33 - 2011-05-25 12:59 - 00000000 ____D () C:\ProgramData\Ulead Systems
2015-03-09 20:33 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\spool
2015-03-09 20:33 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\Msdtc
2015-03-09 20:33 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\registration
2015-03-08 12:46 - 2011-08-30 05:40 - 00001052 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-03-07 21:58 - 2008-02-10 11:56 - 00000000 ____D () C:\Users\*****\AppData\Roaming\Skype
2015-03-07 17:01 - 2011-03-01 16:18 - 00045024 _____ () C:\ProgramData\lxea.log
2015-03-06 15:48 - 2007-07-20 14:51 - 00794682 _____ () C:\Windows\DPINST.LOG
2015-03-06 15:42 - 2007-07-20 16:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-03-06 15:41 - 2007-07-20 15:01 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-03-01 19:08 - 2010-01-02 10:33 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2015-03-01 17:13 - 2011-07-16 17:42 - 00116736 _____ () C:\Users\*****\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-24 03:23 - 2009-10-03 01:27 - 00246920 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-02-21 13:49 - 2015-01-31 17:41 - 00000000 ____D () C:\Users\*****\AppData\Local\Vosteran
2015-02-21 12:34 - 2013-08-13 05:16 - 00000000 ____D () C:\Program Files\Avira
2015-02-21 12:23 - 2012-04-26 05:31 - 00000000 ____D () C:\ProgramData\Avira
2015-02-21 12:18 - 2015-01-31 19:22 - 00000140 _____ () C:\Users\*****\AppData\Roaming\WB.CFG
2015-02-20 20:50 - 2008-08-31 09:27 - 00000000 ____D () C:\Program Files\Java
2015-02-20 20:49 - 2008-08-31 09:26 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-02-20 20:44 - 2013-06-18 19:50 - 00272296 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2015-02-20 19:38 - 2013-07-25 22:43 - 00000000 ____D () C:\ProgramData\Netzmanager

==================== Files in the root of some directories =======

2008-02-25 14:53 - 2009-05-15 13:41 - 0214211 _____ () C:\Users\*****\AppData\Roaming\mdb.bin
2009-02-03 21:26 - 2011-02-28 15:58 - 1013324 _____ () C:\Users\*****\AppData\Roaming\mdbu.bin
2008-02-06 16:25 - 2015-03-12 18:21 - 0252513 _____ () C:\Users\*****\AppData\Roaming\nvModes.001
2008-02-06 16:25 - 2015-03-11 19:01 - 0252513 _____ () C:\Users\*****\AppData\Roaming\nvModes.dat
2015-01-25 17:12 - 2015-01-25 17:12 - 0001248 _____ () C:\Users\*****\AppData\Roaming\PWKN
2015-03-10 23:52 - 2015-03-10 23:52 - 1978840 _____ () C:\Users\*****\AppData\Roaming\PWKN.exe
2015-01-25 17:12 - 2015-01-25 17:12 - 0002086 _____ () C:\Users\*****\AppData\Roaming\VM
2015-03-10 23:53 - 2015-03-10 23:53 - 1498072 _____ () C:\Users\*****\AppData\Roaming\VM.exe
2015-01-31 19:22 - 2015-02-21 12:18 - 0000140 _____ () C:\Users\*****\AppData\Roaming\WB.CFG
2008-02-11 18:50 - 2009-04-23 20:03 - 0000594 _____ () C:\Users\*****\AppData\Roaming\wklnhst.dat
2011-06-30 11:07 - 2015-03-09 23:03 - 0001356 _____ () C:\Users\*****\AppData\Local\d3d9caps.dat
2011-07-16 17:42 - 2015-03-01 17:13 - 0116736 _____ () C:\Users\*****\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-02 17:39 - 2015-02-02 17:39 - 0000010 _____ () C:\Users\*****\AppData\Local\DSI.DAT
2015-02-02 17:39 - 2015-02-02 17:39 - 0022528 _____ () C:\Users\*****\AppData\Local\dsisetup38304172.exe
2013-10-29 10:10 - 2013-10-29 10:10 - 0000428 _____ () C:\Users\*****\AppData\Local\psppirerc
2013-10-29 10:10 - 2013-10-29 10:10 - 0000759 _____ () C:\Users\*****\AppData\Local\recently-used.xbel
2011-07-07 07:51 - 2011-07-07 07:52 - 0000000 _____ () C:\Users\*****\AppData\Local\{64525025-8827-4190-A310-38F60339D8C0}
2008-02-21 11:45 - 2008-02-21 11:45 - 0000305 _____ () C:\ProgramData\addr_file.html
2009-02-05 21:42 - 2009-02-05 21:42 - 0000056 _____ () C:\ProgramData\ezsidmv.dat
2011-01-02 17:39 - 2011-01-02 17:39 - 0000252 _____ () C:\ProgramData\FastPics.log
2011-03-01 16:18 - 2015-03-07 17:01 - 0045024 _____ () C:\ProgramData\lxea.log
2011-01-02 17:40 - 2011-01-02 17:42 - 0000438 _____ () C:\ProgramData\lxeaDiagnostics.log
2011-01-02 17:44 - 2011-06-02 09:10 - 0004439 _____ () C:\ProgramData\lxeaJSW.log
2011-01-02 17:31 - 2015-03-12 18:21 - 0189380 _____ () C:\ProgramData\lxeascan.log
2011-01-02 17:27 - 2011-01-02 17:27 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

Some content of TEMP:
====================
C:\Users\*****\AppData\Local\temp\avgnt.exe


Some zero byte size files/folders:
==========================
C:\Windows\System32\nsprs.dll
C:\Windows\System32\serauth1.dll
C:\Windows\System32\serauth2.dll
C:\Windows\System32\ssprs.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

==================== End Of Log ============================

--- --- ---

--- --- ---


Und das Addition:FRST Additions Logfile:
Code:

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 11-03-2015
Ran by ***** at 2015-03-12 19:51:51
Running from C:\Users\*****\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"Durchstarten mit Ponky - Deutsch 1+2" (HKLM\...\"Durchstarten mit Ponky - Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Durchstarten mit Ponky - Mathe 1+2" (HKLM\...\"Durchstarten mit Ponky - Mathe 1+2") (Version: 2.00 - Engel Edition)
"Englisch in der Grundschule mit Ponky 1.+2. Kl." (HKLM\...\"Englisch in der Grundschule mit Ponky 1.+2. Kl.") (Version: 2.00 - Engel Edition)
"Ponky gezielt Deutsch 1+2" (HKLM\...\"Ponky gezielt Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Ponky gezielt Mathe 1+2" (HKLM\...\"Ponky gezielt Mathe 1+2") (Version: 2.00 - Engel Edition)
7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
ABBYY FineReader 6.0 Sprint (HKLM\...\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}) (Version: 6.00.1395.4512 - ABBYY Software House)
ABBYY FineReader 9.0 Sprint (HKLM\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212 - ABBYY) Hidden
Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\Activation Assistant for the 2007 Microsoft Office suites) (Version:  - Microsoft Corporation)
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0 - Microsoft Corporation) Hidden
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Flash Player 16 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Media Player (HKLM\...\{95264530-5A22-8E7E-FE9D-D63A927BCAEA}) (Version: 1.7 - Adobe Systems Incorporated)
Adobe Photoshop Elements 5.0 (HKLM\...\Adobe Photoshop Elements 5) (Version: 5.0 - Adobe Systems, Inc.)
Adobe Premiere Elements 3.0.2 (HKLM\...\PremElem30) (Version: 3.0.2 - Ihr Firmenname)
Adobe Premiere Elements 3.0.2 Templates (HKLM\...\{6EACDDF4-4220-49A3-9204-984C86852C3D}) (Version: 1.0.0 - Ihr Firmenname)
Adobe Reader 9.4.6 - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-A94000000001}) (Version: 9.4.6 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.)
Akamai NetSession Interface (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Akamai) (Version:  - Akamai Technologies, Inc)
All To WMA Converter 1.7 (HKLM\...\All To WMA Converter_is1) (Version: 1.7 - All To WMA Converter)
Alps Pointing-device for VAIO (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version:  - )
Amazon Cloud Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Amazon Amazon Cloud Player) (Version: 2.4.0.33 - Amazon Services LLC)
Any Video Converter 3.3.2 (HKLM\...\Any Video Converter_is1) (Version:  - Any-Video-Converter.com)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Aquanuma (HKLM\...\Aquanuma_is1) (Version:  - )
ArcSoft Magic-i Visual Effects Installer (HKLM\...\{9AB83A3C-604D-4B4F-AA25-A23A3FC39844}) (Version:  - ArcSoft)
Ask Toolbar (HKLM\...\{86D4B82A-ABED-442A-BE86-96357B70F4FE}) (Version: 1.14.1.0 - Ask.com) <==== ATTENTION
Audacity 1.2.6 (HKLM\...\Audacity_is1) (Version:  - )
AutoUpdate (HKLM\...\{18D10072035C4515918F7E37EAFAACFC}) (Version: 1.1 - )
Avanquest update (HKLM\...\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}) (Version: 1.20 - Avanquest Software)
Avira (HKLM\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG)
Avira (Version: 1.1.30.21727 - Avira Operations & Co. KG) Hidden
Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 15.0.8.650 - Avira)
AviSynth 2.5 (HKLM\...\AviSynth) (Version:  - )
Benutzerdefinierte Voreinstellungen für SonicStage Mastering Studio Audio Filter (HKLM\...\{EC37A846-53AC-4DA7-98FA-76A4E74AA900}) (Version: 2.3 - Sony Corporation)
Benutzerhandbuch - Grundlagen EPSON SX430 Series (HKLM\...\EPSON SX430 Series Bog) (Version:  - )
Benutzerhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Useg) (Version:  - )
Browser Address Error Redirector (HKLM\...\{3EE33958-7381-4E7B-A4F3-6E43098E9E9C}) (Version:  - )
Camera RAW Plug-In for EPSON Creativity Suite (HKLM\...\{93EA9C3E-BDFD-4309-A605-9B5BBC0CCEFD}) (Version: 2.2.0.0 - SEIKO EPSON CORPORATION)
Citavi (HKLM\...\{E12C6653-1FF0-4686-ADB8-589C13AE761F}) (Version: 3.3.0.0 - Swiss Academic Software)
Citavi 2.5 (HKLM\...\Citavi) (Version: 2.5.2.0 - Academic Software Zurich)
Click to DVD 2.0.05 Menu Data (HKLM\...\{9E407618-D9CD-4F39-9490-9ED45294073D}) (Version: 2.0.05 - Sony Corporation)
Click to DVD 2.6.00 (HKLM\...\{E809063C-51A3-4269-8984-D1EB742F2151}) (Version: 2.6.00 - Sony Corporation)
ConvertHelper 2.2 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version:  - DownloadHelper)
Dealio Toolbar v4.0 (HKLM\...\{94C3BB3A-56A1-43DE-A242-8B41F46E97EF}) (Version: 1.0.0 - Spigot, Inc.) <==== ATTENTION
Denken und Rechnen 2 (HKLM\...\Denken und Rechnen 2) (Version:  - )
DHTML Editing Component (HKLM\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation)
DisplayLink Core Software (HKLM\...\{156E1F8D-3555-42F5-8DEC-5E830AF46847}) (Version: 4.5.13507.0 - DisplayLink Corp.)
DivX Codec (HKLM\...\{7B63B2922B174135AFC0E1377DD81EC2}) (Version: 6.6.1 - DivX, Inc.)
DivX Converter (HKLM\...\{B13A7C41581B411290FBC0395694E2A9}) (Version: 6.5 - DivX, Inc.)
DivX Player (HKLM\...\{8ADFC4160D694100B5B8A22DE9DCABD9}) (Version: 6.4.3 - DivXNetworks, Inc.)
DivxToDVD 0.5.2b (HKLM\...\VSO DivxToDVD_is1) (Version: 0.5.2b - VSO-Software SARL)
DSD Direct (HKLM\...\{82D5BACA-3619-4D34-99DB-3A65CFB4DA33}) (Version: 2.0.01 - Sony Corporation)
DSD Direct Player (HKLM\...\{533D0A8A-D7E7-4F15-BC9E-FF2916A6BAA7}) (Version: 1.0 - Sony Corporation)
DSD Playback Plug-in (HKLM\...\{009E7FB7-1775-4D89-8956-F5C9A1C019FC}) (Version: 1.1 - Sony Corporation)
EPSON Attach To Email (HKLM\...\InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}) (Version: 1.01.0000 - SEIKO EPSON)
EPSON Attach To Email (Version: 1.01.0000 - SEIKO EPSON) Hidden
EPSON Copy Utility 3 (HKLM\...\{67EDD823-135A-4D59-87BD-950616D6E857}) (Version: 3.3.0.0 - )
EPSON Easy Photo Print (HKLM\...\{3D78F2A2-C893-4ABD-B5FE-AD7011837755}) (Version: 1.5.0.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print 2 (HKLM\...\{A02D7029-C4EF-44C1-9FD4-C0D3CA518113}) (Version: 2.2.4.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM\...\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}) (Version: 2.50.0000 - SEIKO EPSON CORPORATION)
EPSON File Manager (HKLM\...\{2EB81825-E9EE-44F4-8F51-1240C3898DC6}) (Version: 1.3.0.0 - )
EPSON Scan (HKLM\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON Scan Assistant (HKLM\...\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}) (Version: 1.10.00 - )
EPSON Stylus CX7300_CX8300_DX7400_DX8400 Handbuch (HKLM\...\EPSON Stylus CX7300_CX8300_DX7400_DX8400 Benutzerhandbuch) (Version:  - )
EPSON SX430 Series Printer Uninstall (HKLM\...\EPSON SX430 Series) (Version:  - SEIKO EPSON Corporation)
EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.4j - SEIKO EPSON CORPORATION)
ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version:  - )
ffdshow [rev 2844] [2009-03-30] (HKLM\...\ffdshow_is1) (Version: 1.0 - )
File Type Assistant (HKLM\...\Trusted Software Assistant_is1) (Version: 2014.3.25.0 - ) <==== ATTENTION
FilesFrog Update Checker (HKLM\...\FilesFrog Update Checker) (Version:  - ) <==== ATTENTION
Final Media Player 2014 (HKLM\...\FinalMediaPlayer_is1) (Version: 2014.08.04.00 - Bitberry Software) <==== ATTENTION
Firebird SQL Server - MAGIX Edition (HKLM\...\Firebird SQL Server D) (Version: 2.0.1.13 - MAGIX AG)
flatster (HKLM\...\{0ADF1B89-17EA-489C-86DF-6E33DA8520A6}_is1) (Version: 1.5 - flatster GmbH)
Free FLV Converter V 6.4.1 (HKLM\...\Free FLV Converter_is1) (Version:  - Koyote Soft)
Free Mp3 Wma Converter V 1.9 (HKLM\...\Free Mp3 Wma Converter_is1) (Version: 1.9.0.0 - Koyote Soft)
Free PDF to Word Doc Converter v1.1 (HKLM\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - www.hellopdf.com)
Free YouTube Download version 3.0.20.1228 (HKLM\...\Free YouTube Download_is1) (Version:  - DVDVideoSoft Ltd.)
Freemake Video Converter Version 3.0.1 (HKLM\...\Freemake Video Converter_is1) (Version: 3.0.1 - Ellora Assets Corporation)
Furnish Pro (HKLM\...\Furnish Pro) (Version:  - )
GearDrvs (Version: 1 - Symantec Corporation) Hidden
Google Chrome (HKLM\...\Google Chrome) (Version: 41.0.2272.89 - Google Inc.)
Google Desktop (HKLM\...\Google Desktop) (Version: 5.9.1005.12335 - Google)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Talk (remove only) (HKLM\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Talk (remove only) (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
Google Updater (HKLM\...\Google Updater) (Version: 2.4.2432.1652 - Google Inc.)
HDAUDIO SoftV92 Data Fax Modem with SmartCP (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_104D0200) (Version:  - )
honestech VHS to DVD 2.0 SE (HKLM\...\{2856F5EA-E98A-40E4-BAD6-8C644A4A3F3C}) (Version: 2.0 - honestech)
IBM SPSS Statistics 22 (HKLM\...\{104875A1-D083-4A34-BC4F-3F635B7F8EF7}) (Version: 22.0.0.0 - IBM Corp)
ICQ7.2 (HKLM\...\{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}) (Version: 7.2 - ICQ)
Iminent (Version: 5.26.21.0 - Iminent) Hidden <==== ATTENTION
IMinent Toolbar (HKLM\...\{A76AA284-E52D-47E6-9E4F-B85DBF8E35C3}) (Version: 3.26.0 - IMinent) <==== ATTENTION
InterVideo Register Manager (Version: 1.0.4.0 - InterVideo Inc.) Hidden
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
jv16 PowerTools 2012 (HKLM\...\jv16 PowerTools 2011) (Version:  - Macecraft Software)
Lexmark  (HKLM\...\{D2C5E510-BE6D-42CC-9F61-E4F939078474}) (Version: 1.0.0.0 - )
Lexmark S300-S400 Series (HKLM\...\Lexmark S300-S400 Series) (Version:  - Lexmark International, Inc.)
Lexmark Tools for Office (HKLM\...\{10812DE7-2E57-4740-B226-6B3BE34AF9D7}) (Version: 1.29.0.0 - )
Logitech Vid HD (HKLM\...\Logitech Vid) (Version: 7.2 (7259) - Logitech Inc..)
Logitech Webcam Software (HKLM\...\{AC96671C-2001-432C-9826-5266D84EF1DC}) (Version: 12.00.1280 - Logitech Inc.)
Logitech Webcam Software-Treiberpaket (HKLM\...\lvdrivers_12.0) (Version: 12.0.1278 - Logitech Inc.)
Löwenzahn und Pusteblume (HKLM\...\{C538AA5E-2F9C-48DC-AD5C-B21CE34EA10B}) (Version: 1.0.0 - *)
MAGIX Online Druck Service 2.3.2.0 (D) (HKLM\...\MAGIX Online Druck Service D) (Version: 2.3.2.0 - MAGIX AG)
MAGIX PC Visit (HKLM\...\MAGIX PC Visit D) (Version: 4.3.6.1987 - MAGIX AG)
MAGIX Video deluxe 2008 Trial 7.5.1.6 (D) (HKLM\...\MAGIX Video deluxe 2008 Trial D) (Version: 7.5.1.6 - MAGIX AG)
Malwarebytes Anti-Malware Version 1.61.0.1400 (HKLM\...\Malwarebytes' Anti-Malware_is1) (Version: 1.61.0.1400 - Malwarebytes Corporation)
MAXQDA 10 (R250412) (HKLM\...\MAXQDA10) (Version: (R250412) - VERBI Software.Consult.Sozialforschung GmbH)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Medion GoPal Assistant 4.01.012 (HKLM\...\Medion GoPal Assistant) (Version: 4.1.12.0 - Medion)
Meine ersten Wörter (HKLM\...\it.clementoni.SapPrimeParoleDE.290A939A40FB4C06653AD1460C6BEBD4C065087B.1) (Version: 1.0 - Clementoni S.p.A.)
Meine ersten Wörter (Version: 1.0 - Clementoni S.p.A.) Hidden
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2698023) (HKLM\...\M2698023) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version:  - )
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - deu) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual J# .NET Redistributable Package 1.1 (HKLM\...\{1A655D51-1423-48A3-B748-8F5A0BE294C8}) (Version: 1.1.4322 - Microsoft)
Microsoft Works (HKLM\...\{4EA2F95F-A537-4d17-9E7F-6B3FF8D9BBE3}) (Version: 08.05.0822 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Moonlight MPEG-2 Decoder Pack (HKLM\...\Moonlight MPEG-2 Decoder Pack 2.1.4316) (Version: 2.1.4316 - Moonlight Cordless)
Mozilla Firefox 13.0.1 (x86 de) (HKLM\...\Mozilla Firefox 13.0.1 (x86 de)) (Version: 13.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 13.0.1 - Mozilla)
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB941833) (HKLM\...\{C523D256-313D-4866-B36A-F3DE528246EF}) (Version: 4.20.9849.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Musik & Audio Restaurator Pro 5.0 (HKLM\...\Musik & Audio Restaurator Pro 5_is1) (Version: 5.0 - Softfeld)
Nero Backup Drivers (HKLM\...\{F8EF9B71-53E7-41F5-8E54-47B4C979CB38}) (Version: 1.0.11100.8.0 - Nero AG)
Netzmanager (HKLM\...\Netzmanager) (Version: 1.081 - Deutsche Telekom AG)
Netzmanager (Version: 1.081 - Deutsche Telekom AG, Marmiko IT-Solutions GmbH) Hidden
Netzwerkhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Netg) (Version:  - )
Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - )
Norton 360 (Version: 1.2.0.10 - Symantec Corporation) Hidden
Notebook BatteryInfo 1.3  (HKLM\...\BatteryInfo_Suite) (Version: 1.3 - Thomas Michel)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version:  - )
OpenMG Limited Patch 4.7-07-15-19-01 (HKLM\...\OpenMG HotFix4.7-07-13-22-01) (Version:  - )
OpenMG Secure Module 4.7.00 (HKLM\...\InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}) (Version: 4.7.00.12140 - Sony Corporation)
OpenMG Secure Module 4.7.00 (Version: 4.7.00.12140 - Sony Corporation) Hidden
OpenOffice.org 3.2 (HKLM\...\{8D1E61D1-1395-4E97-997F-D002DB3A5074}) (Version: 3.2.9502 - OpenOffice.org)
PDF24 Creator 5.7.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
Photo Viewer V2.4 (HKLM\...\Photo Viewer) (Version:  - )
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Pixie 1.4.1 (HKLM\...\Pixie_is1) (Version: 1.4.1 - Pixie Developers)
PricePeep for Internet Explorer (HKLM\...\PricePeep) (Version: 2.1.255.0 - betwikx LLC) <==== ATTENTION
QuickTime (HKLM\...\{5B09BD67-4C99-46A1-8161-B7208CE18121}) (Version: 7.3.0.70 - Apple Inc.)
Ravensburger tiptoi (HKLM\...\Ravensburger tiptoi) (Version:  - )
Rossmann Fotowelt Software 4.12.1 (HKLM\...\Rossmann Fotowelt Software) (Version: 4.12.1 - ORWO Net)
Rossmann Online Print Wizard Installer 1.0 (HKLM\...\Rossmannr Online Print Wizard Installer_is1) (Version:  - )
Roxio Easy Media Creator Home (HKLM\...\{B7FB0C86-41A4-4402-9A33-912C462042A0}) (Version: 9.0.178 - Roxio)
Sabrina (HKLM\...\SABRINA) (Version:  - Knowledge Adventure)
Scan2PDF 1.6 (HKLM\...\Scan2PDF_is1) (Version:  - Koma-Code)
Secunia PSI (2.0.0.4002) (HKLM\...\Secunia PSI) (Version:  - )
Setting Utility Series (HKLM\...\{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}) (Version: 3.0.00.07120 - Sony Corporation)
SigmaTel Audio (HKLM\...\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}) (Version: 5.10.5102.0 - SigmaTel)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SNAPFISH (HKLM\...\SNAPFISH) (Version:  - )
Snoopy 1.0 (HKLM\...\Snoopy_is1) (Version:  - )
SonicStage Mastering Studio (HKLM\...\{6332AFF1-9D9A-429C-AA03-F82749FA4F49}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio (Version: 2.3.01 - Sony Corporation) Hidden
SonicStage Mastering Studio Audio Filter (HKLM\...\{DF7DB916-90E5-40F2-9010-B8125EB5FD6F}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio Plugins (HKLM\...\{9C1C8A04-F8CA-4472-A92D-4288CE32DE86}) (Version: 2.4 - Sony Corporation)
Sony Ericsson Media Manager 1.1 (HKLM\...\{7E910FDA-CBBE-4451-8728-235E6A4DE162}) (Version: 1.1.550 - Sony Ericsson)
Sony Ericsson PC Suite 6.009.00 (HKLM\...\{2FFE93F0-BB72-4E52-8761-354D1AAA9387}) (Version: 6.009.00 - Sony Ericsson)
Sony PC Companion 2.10.251 (HKLM\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.251 - Sony)
Sony Picture Utility (HKLM\...\{D5068583-D569-468B-9755-5FBF5848F46F}) (Version: 2.1.00.04170 - Sony Corporation)
Sony USB Driver (HKLM\...\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}) (Version: 2.00 - Sony Corporation)
SONY VGP-UPR1 (Display Adapter) (HKLM\...\{94FBC09C-6F39-4B36-B9DE-66374A6FAAD2}) (Version: 4.5.13507.0 - Sony Corporation)
Sony Video Shared Library (HKLM\...\{01FDC9FC-4D4F-4DB0-ACD1-D3E8E1D52902}) (Version: 3.2.00 - Sony Corporation)
SpongeBob Schwammkopf - Der Film (HKLM\...\{E81A7285-8CA6-4430-B6C0-5F719E4D40D9}) (Version: 1.0 - )
SPSS 15.0 für Windows [Auswertung Version] (HKLM\...\{6D9B9CF3-1E9C-45B6-B41E-5CF568605556}) (Version: 15.0.1 - SPSS Inc.)
Super Mario PC Fun 2 (HKLM\...\Super Mario PC Fun 2) (Version:  - )
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.0.1148 - SUPERAntiSpyware.com)
Supreme Auction (HKLM\...\Supreme Auction_is1) (Version:  - )
SweetIM for Messenger 3.2 (HKLM\...\{08ED8855-4C2E-429B-A878-F129E1F624FA}) (Version: 3.2.0004 - SweetIM Technologies Ltd.) <==== ATTENTION
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab (HKLM\...\SystemRequirementsLab) (Version:  - )
TMPGEnc 4.0 XPress Testversion (HKLM\...\{ECEF8EDE-0421-4E67-9264-5E84F26D4F55}) (Version: 4.7.2.285 - Pegasys Inc,)
Ulead VideoStudio SE DVD (HKLM\...\{8F8D9297-FDD2-405A-97E7-E52C7B2F97B3}) (Version: 10.0 - Ulead Systems)
Uninstall 1.0.0.1 (HKLM\...\Uninstall_is1) (Version:  - )
Unity Web Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
USB2.0 ATV (HKLM\...\{3C873221-12B9-475D-8DCB-62D0B2179AF9}) (Version: 6.10.000.001 - Regulus)
USB2.0 Capture Device (HKLM\...\{E337B156-DF81-48D8-8977-B1574EE87BCF}) (Version: 1.0.3.0 - )
VAIO Aqua Breeze Wallpaper (HKLM\...\{97BCD719-6ECB-458F-97D6-F38D2E07375E}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Camera Capture Utility (HKLM\...\{6D2576EC-A0E9-418A-A09A-409933A3B6F4}) (Version: 2.7.01.08030 - Sony Corporation)
VAIO Content Folder Setting (HKLM\...\{23825B69-36DF-4DAD-9CFD-118D11D80F16}) (Version: 1.1.02.11070 - Sony Corporation)
VAIO Content Importer  VAIO Content Exporter (Version: 1.2.00.06270 - Sony Corporation) Hidden
VAIO Content Importer / VAIO Content Exporter (HKLM\...\{68A69CFF-130D-4CDE-AB0E-7374ECB144C8}) (Version: 1.2.00.06270 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (HKLM\...\{FAA6B94E-78A7-489C-B2DB-050D9FEBFADA}) (Version: 2.0.01.07051 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (Version: 2.0.01.07051 - Sony Corporation) Hidden
VAIO Content Metadata Manager Setting (HKLM\...\{69351E9E-23ED-41D5-B146-EDBF83C63B66}) (Version: 2.0.01.07041 - Sony Corporation)
VAIO Content Metadata Manager Setting (Version: 2.0.01.07041 - Sony Corporation) Hidden
VAIO Content Metadata XML Interface Library (HKLM\...\{B5E2DF30-1061-4DB4-AF28-08996C8E5680}) (Version: 2.1.01.10292 - Sony Corporation)
VAIO Content Metadata XML Interface Library (Version: 2.1.01.10292 - Sony Corporation) Hidden
VAIO Control Center (HKLM\...\{72042FA6-5609-489F-A8EA-3C2DD650F667}) (Version: 2.1.00.07110 - Sony Corporation)
VAIO Cozy Orange Wallpaper (HKLM\...\{2A2FF7F5-6F0E-4A5D-A881-39365E718BD6}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Data Restore Tool (HKLM\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.0.02.06190 - Sony Corporation)
VAIO Entertainment Platform (HKLM\...\{6B1F20F2-6321-4669-A58C-33DF8E7517FF}) (Version: 3.0.00.06280 - Sony Corporation)
VAIO Event Service (HKLM\...\{F0D85ADD-DD61-4B43-87A0-6DA52A211A8B}) (Version: 3.2.00.07120 - Sony Corporation)
VAIO Launcher (HKLM\...\{15D5C238-4C2E-4AEA-A66D-D6989A4C586B}) (Version: 1.0.00.07090 - Sony Corporation)
VAIO Media (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media 6.0 (HKLM\...\{560F6B2E-F0DF-44E5-8190-A4A161F0E205}) (Version: 6.0.10 - Sony Corporation)
VAIO Media AC3 Decoder 1.0 (HKLM\...\{2063C2E8-3812-4BBD-9998-6610F80C1DD4}) (Version:  - )
VAIO Media Content Collection 6.0 (HKLM\...\{500162A0-4DD5-460A-BAFD-895AAE48C532}) (Version:  - Sony Corporation)
VAIO Media Integrated Server 6.1 (HKLM\...\{785EB1D4-ECEC-4195-99B4-73C47E187721}) (Version:  - Sony Corporation)
VAIO Media Redistribution 6.0 (HKLM\...\{5855C127-1F20-404D-B7FB-1FD84D7EAB5E}) (Version: 6.0.10 - Sony Corporation)
VAIO Media Registration Tool (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media Registration Tool 6.0 (HKLM\...\{AF9A04EB-7D8E-41DE-9EDE-4AB9BB2B71B6}) (Version: 6.0.10 - Sony Corporation)
VAIO Movie Story (HKLM\...\{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO Movie Story (Version: 1.0.00.18280 - Sony Corporation) Hidden
VAIO Movie Story Template Data (HKLM\...\{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO MusicBox (HKLM\...\{4EA55D20-27FB-45D7-8726-147E8A5F6C62}) (Version: 1.1.02.12100 - Sony Corporation)
VAIO MusicBox Sample Music (HKLM\...\{98FC7A64-774B-49B5-B046-4B4EBC053FA9}) (Version: 1.0.00.07030 - Sony Corporation)
VAIO Original Function Setting (HKLM\...\{A63E7492-A0BC-4BB9-89A7-352965222380}) (Version: 1.4.00.03240 - Sony Corporation)
VAIO Original Screen Saver (HKLM\...\{1BEF9285-5530-426B-A5F1-5836B95C7EB1}) (Version:  - )
VAIO Power Management (HKLM\...\{802889F8-6AF5-45A5-9764-CA5B999E50FC}) (Version: 2.2.00.06130 - Sony Corporation)
VAIO Tender Green Wallpaper (HKLM\...\{934A3213-1CB6-4264-84A2-EE080C017BCA}) (Version: 1.0.11.10180 - Sony Corporation)
VAIO Update 3 (HKLM\...\{48820099-ED7D-424B-890C-9A82EF00656D}) (Version: 3.0.02.05280 - Sony Corporation)
VAIO Xblack Contents (HKLM\...\VAIO Xblack Contents) (Version: 1.0.0.0-ENU - )
WDR RadioRecorder (HKLM\...\Tobit Radio.fx Server 1) (Version:  - Tobit.Software)
WIDCOMM Bluetooth Software 6.1.0.1203 (HKLM\...\{03D1988F-469F-4843-8E6E-E5FE9D17889D}) (Version: 6.1.0.1203 - Broadcom Corporation)
Windows Live Anmelde-Assistent (HKLM\...\{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}) (Version: 5.000.818.6 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinDVD BD for VAIO (HKLM\...\InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}) (Version: 8.0-B8.385 - InterVideo Inc.)
WinDVD BD for VAIO (Version: 8.0-B8.385 - InterVideo Inc.) Hidden
Wireless Switch Setting Utility (HKLM\...\{2A0F3EF9-68EE-49E9-A05B-ED5B82DF63E5}) (Version: 3.6.00.18210 - Sony Corporation)
WMA MP3 Converter v4.0 build 1217 (HKLM\...\{314AD191-596F-40C0-ACED-3AD78C9649F1}_is1) (Version:  - Hoo Technologies)
WSE_Vosteran (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\WSE_Vosteran) (Version:  - WSE_Vosteran) <==== ATTENTION!

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

ATTENTION: System Restore is disabled.
Check "winmgmt" service or repair WMI.


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 11:23 - 2012-05-14 18:49 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1      localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)


(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-1-6.job =>  <==== ATTENTION
Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-1-7.job =>  <==== ATTENTION
Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-10_user.job =>  <==== ATTENTION
Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-4.job =>  <==== ATTENTION
Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-5.job =>  <==== ATTENTION
Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-5_user.job =>  <==== ATTENTION
Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-6.job =>  <==== ATTENTION
Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-7.job =>  <==== ATTENTION
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job =>
Task: C:\Windows\Tasks\Final Media Player Update Checker.job =>
Task: C:\Windows\Tasks\Google Software Updater.job =>
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job =>
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job =>
Task: C:\Windows\Tasks\PWKN.job =>
Task: C:\Windows\Tasks\VM.job =>
Task: C:\Windows\Tasks\WSE_Vosteran.job => C:\Users\JAMIE-~1\AppData\Roaming\WSE_VO~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION

==================== Loaded Modules (whitelisted) ==============

2007-06-22 09:49 - 2007-06-22 09:49 - 00126976 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2002-11-27 17:25 - 2002-11-27 17:25 - 00049152 _____ () C:\Program Files\LitexMedia\All To WMA Converter\WMAShellExt.dll
2011-01-02 17:29 - 2010-01-18 18:27 - 00770728 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
2011-01-02 17:29 - 2009-12-16 18:04 - 00389120 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeascw.dll
2011-01-02 17:31 - 2009-05-27 13:16 - 00192512 _____ () C:\Windows\system32\spool\drivers\w32x86\3\lxeadatr.dll
2011-01-02 17:29 - 2009-12-16 18:07 - 01159168 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeaDRS.dll
2011-01-02 17:29 - 2009-03-10 06:43 - 00155648 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeacaps.dll
2011-01-02 17:27 - 2009-02-20 09:48 - 00299008 _____ () C:\Windows\system32\lxeasm.dll
2011-01-02 17:27 - 2009-04-28 08:56 - 00024064 _____ () C:\Windows\system32\lxeasmr.dll
2011-01-02 17:28 - 2010-01-18 18:27 - 00139944 _____ () C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
2011-01-02 17:28 - 2009-03-30 13:37 - 00708608 _____ () C:\Program Files\Lexmark S300-S400 Series\Epwizard.DLL
2011-01-02 17:28 - 2009-03-30 13:35 - 00159744 _____ () C:\Program Files\Lexmark S300-S400 Series\customui.dll
2011-01-02 17:28 - 2009-03-30 13:35 - 00118784 _____ () C:\Program Files\Lexmark S300-S400 Series\Eputil.DLL
2011-01-02 17:28 - 2009-03-30 13:35 - 00139264 _____ () C:\Program Files\Lexmark S300-S400 Series\Imagutil.DLL
2011-01-02 17:28 - 2009-03-30 13:35 - 00061440 _____ () C:\Program Files\Lexmark S300-S400 Series\Epfunct.DLL
2011-01-02 17:29 - 2009-06-23 12:09 - 02203648 _____ () C:\Program Files\Lexmark S300-S400 Series\EPWizRes.dll
2011-01-02 17:29 - 2009-06-23 12:10 - 00045056 _____ () C:\Program Files\Lexmark S300-S400 Series\epstring.dll
2011-01-02 17:29 - 2009-06-23 12:11 - 00102400 _____ () C:\Program Files\Lexmark S300-S400 Series\EPOEMDll.dll
2011-01-02 17:28 - 2009-04-07 20:25 - 00409600 _____ () C:\Program Files\Lexmark S300-S400 Series\iptk.dll
2011-01-02 17:29 - 2009-03-02 15:25 - 00151552 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeaptp.dll
2012-03-20 19:44 - 2012-04-30 10:57 - 00039936 _____ () C:\Program Files\Sony\Sony PC Companion\TMonitorAPI.dll
2012-03-20 19:44 - 2014-12-04 14:18 - 00241152 _____ () C:\Program Files\Sony\Sony PC Companion\MExplorer.dll
2011-07-07 14:54 - 2011-07-07 14:54 - 00233984 _____ () C:\Program Files\Sony\Sony PC Companion\Report.dll
2011-11-01 19:32 - 2013-05-20 11:58 - 00620718 _____ () C:\Program Files\Sony\Sony PC Companion\sqlite3.dll
2012-03-20 19:44 - 2010-01-11 15:44 - 00053248 _____ () C:\Program Files\Sony\Sony PC Companion\VObject.dll
2012-01-27 11:02 - 2012-01-27 11:02 - 00569344 _____ () C:\Program Files\Sony\Sony PC Companion\PhoneUpdate.dll
2012-05-15 19:42 - 2012-05-15 19:42 - 00052224 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2012-05-15 19:42 - 2015-03-12 18:22 - 00065024 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll
2012-05-15 19:42 - 2015-03-12 18:22 - 00052736 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll
2012-05-15 19:42 - 2012-05-15 19:42 - 00117760 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2014-05-16 14:38 - 2014-05-08 18:26 - 03145536 _____ () C:\Users\*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
2007-06-22 09:34 - 2007-06-22 09:34 - 00389120 _____ () C:\Windows\system32\btwhidcs.DLL
2010-05-04 15:36 - 2010-05-04 15:36 - 00970752 _____ () C:\Program Files\OpenOffice.org 3\program\libxml2.dll
2012-03-20 19:44 - 2014-06-23 08:07 - 00113376 _____ () C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
2011-12-30 10:40 - 2012-06-20 08:37 - 02042848 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
2015-02-05 18:05 - 2015-02-05 18:05 - 16852144 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\*****\Documents\KniKits.mpg:TOC.WMV

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\img19.jpg
DNS Servers: 192.168.2.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: FirebirdServerMAGIXInstance => 3
MSCONFIG\Services: FLEXnet Licensing Service => 3
MSCONFIG\Services: GoogleDesktopManager-051210-111108 => 3
MSCONFIG\Services: gupdate1ca0ac0f00c0a80 => 2
MSCONFIG\Services: OMSI download service => 2
MSCONFIG\Services: PACSPTISVR => 3
MSCONFIG\Services: SBSDWSCService => 2
MSCONFIG\Services: sdAuxService => 2
MSCONFIG\Services: sdCoreService => 2
MSCONFIG\startupfolder: C:^Users^*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk => C:\Windows\pss\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk.Startup
MSCONFIG\startupfolder: C:^Users^*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Picture Motion Browser Medien-Prüfung.lnk => C:\Windows\pss\Picture Motion Browser Medien-Prüfung.lnk.Startup
MSCONFIG\startupreg: Apoint => C:\Program Files\Apoint\Apoint.exe
MSCONFIG\startupreg: Google Desktop Search => "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
MSCONFIG\startupreg: googletalk => C:\Program Files\Google\Google Talk\googletalk.exe /autostart
MSCONFIG\startupreg: ISBMgr.exe => "C:\Program Files\Sony\ISB Utility\ISBMgr.exe"
MSCONFIG\startupreg: LogitechQuickCamRibbon => "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: SweetIM => C:\Program Files\SweetIM\Messenger\SweetIM.exe
MSCONFIG\startupreg: TrayServer => C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe

==================== Accounts: =============================

Administrator (S-1-5-21-3850073437-3280287025-709413035-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3850073437-3280287025-709413035-1002 - Limited - Enabled)
Gast (S-1-5-21-3850073437-3280287025-709413035-501 - Limited - Disabled)
***** (S-1-5-21-3850073437-3280287025-709413035-1000 - Limited - Enabled) => C:\Users\*****
***** 2 (S-1-5-21-3850073437-3280287025-709413035-1003 - Administrator - Enabled) => C:\Users\***** 2

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (03/12/2015 06:21:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlerhafte Anwendung VcmIAlzMgr.exe, Version 2.0.1.7050, Zeitstempel 0x468cc1b6, fehlerhaftes Modul DrpMP4Engine.dll, Version 10.0.0.12260, Zeitstempel 0x45a61727, Ausnahmecode 0xc0000005, Fehleroffset 0x0004452a,
Prozess-ID 0xaa0, Anwendungsstartzeit VcmIAlzMgr.exe0.

Error: (03/12/2015 06:18:53 PM) (Source: EventSystem) (EventID: 4609) (User: )
Description: d:\longhorn\com\complus\src\events\tier2\eventsystem2.cpp38180070005

Error: (03/12/2015 06:18:17 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Das Plug-In-Modul konnte nicht geladen werden. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5}) (Fehlercode = 0x80042019)

Error: (03/11/2015 09:13:15 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlerhafte Anwendung VcmIAlzMgr.exe, Version 2.0.1.7050, Zeitstempel 0x468cc1b6, fehlerhaftes Modul DrpMP4Engine.dll, Version 10.0.0.12260, Zeitstempel 0x45a61727, Ausnahmecode 0xc0000005, Fehleroffset 0x0004452a,
Prozess-ID 0x260, Anwendungsstartzeit VcmIAlzMgr.exe0.

Error: (03/11/2015 09:10:10 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Das Plug-In-Modul konnte nicht geladen werden. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5}) (Fehlercode = 0x80042019)

Error: (03/11/2015 09:06:54 PM) (Source: EventSystem) (EventID: 4609) (User: )
Description: d:\longhorn\com\complus\src\events\tier2\eventsystem2.cpp38180070005

Error: (03/11/2015 08:46:57 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: WmiApRplC:\Windows\system32\wbem\wmiaprpl.dll4

Error: (03/11/2015 08:36:39 PM) (Source: EventSystem) (EventID: 4609) (User: )
Description: d:\longhorn\com\complus\src\events\tier2\eventsystem2.cpp38180070005

Error: (03/11/2015 08:35:07 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\system32\bitsperf.dll4

Error: (03/11/2015 08:35:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlerhafte Anwendung VcmIAlzMgr.exe, Version 2.0.1.7050, Zeitstempel 0x468cc1b6, fehlerhaftes Modul DrpMP4Engine.dll, Version 10.0.0.12260, Zeitstempel 0x45a61727, Ausnahmecode 0xc0000005, Fehleroffset 0x0004452a,
Prozess-ID 0xa80, Anwendungsstartzeit VcmIAlzMgr.exe0.


System errors:
=============

Microsoft Office Sessions:
=========================
Error: (01/07/2015 10:09:14 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2993 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 10:09:13 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2965 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 10:09:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2951 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (03/26/2014 09:07:27 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 13351 seconds with 360 seconds of active time.  This session ended with a crash.

Error: (02/27/2014 05:29:37 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1742 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (05/02/2013 01:23:23 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 678 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (12/13/2012 10:26:31 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 436 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (07/11/2012 07:17:25 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 44 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (06/14/2012 09:14:17 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 700 seconds with 660 seconds of active time.  This session ended with a crash.

Error: (06/14/2012 09:02:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1237 seconds with 1200 seconds of active time.  This session ended with a crash.


CodeIntegrity Errors:
===================================
  Date: 2014-12-06 20:10:59.456
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\SweetIM\Messenger\mgAdaptersProxy.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-06 20:10:59.000
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Iminent\Iminent.WinCore.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-06 20:10:58.579
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\SweetIM\Messenger\mgAdaptersProxy.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-06 20:10:58.142
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dlumd32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-06 20:10:56.984
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Iminent\Iminent.WinCore.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-06 20:10:56.563
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dlumd32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-06 20:08:03.660
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\SweetIM\Messenger\mgAdaptersProxy.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-06 20:08:03.267
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dlumd32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-06 20:08:02.490
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files\Iminent\Iminent.WinCore.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-06 20:08:02.063
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dlumd32.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz
Percentage of memory in use: 74%
Total physical RAM: 2045.69 MB
Available physical RAM: 526.05 MB
Total Pagefile: 4332.6 MB
Available Pagefile: 1500.69 MB
Total Virtual: 2047.88 MB
Available Virtual: 1881.34 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:176.24 GB) (Free:14.84 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

==================== End Of Log ============================

--- --- ---


Ich hatte nun auch "schon" die Gmer.txt -Datei erstellt und eigentlich auch gespeichert, finde sie aber gerade nicht wieder :-(

schrauber 13.03.2015 12:27

Unsere Tools brauchen immer Adminrechte!!

Lade Dir bitte von hier Revo Uninstaller Download Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
  • Installiere und starte das Programm. (Bebilderte Anleitung zu Revo Uninstaller)
  • Klicke auf Optionen und wähle als Sprache Deutsch.
  • Suche im Uninstallerfeld nach den Programmen:

    Ask Toolbar

    Dealio Toolbar v4.0

    File Type Assistant

    FilesFrog Update Checker

    Final Media Player 2014

    Iminent

    IMinent Toolbar

    PricePeep for Internet Explorer (HKLM\...\PricePeep) (Version: 2.1.255.0 - betwikx LLC) <==== ATTENTION

    SweetIM for Messenger 3.2

    WSE_Vosteran


  • Wähle die Programme nacheinander aus und klicke jedes Mal auf Uninstall.
  • Wähle anschließend den Modus "Moderat" aus.
  • Reste löschen:
    Klicke auf dann auf und dann auf .

 






Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.


Jami87 13.03.2015 23:08

Wie meinst du das mit den Adminrechten?!? Geht deswegen Gmer nicht? Habe es heute noch xmal versucht, aber es stürzt immer wieder ab :-(. Genauso wie der ganze PC - von daher kann ich nicht versprechen, wie lang ich überhaupt noch schreiben kann :-(.
Meinst du, dass das mit den Streifen und dass ich ständig nichts mehr sehe, mit den Viren zusammenhängen könnte? Wenn nicht, wäre wohl eine Entsorgung sinnvoller :-( (schade um die Arbeit sonst :-(

So, habe nun einige Programme deinstalliert, aber kann den WSE_Vosteran und die IMinent Toolbar nicht finden?!?

Code:

ComboFix 15-03-09.01 - ***** 2 13.03.2015 22:10:16.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.49.1031.18.2046.743 [GMT 1:00]
ausgeführt von:: c:\users\*****\Downloads\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {4D041356-F94D-285F-8768-AAE50FA36859}
SP: Avira Desktop *Disabled/Updated* {F665F2B2-DF77-27D1-BDD8-9197742422E4}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\7-Zip2\870c56b9-5e79-4e2d-8e21-32db81c4036d.dll
c:\program files\861437cb-3ee3-405d-bcea-149a4dc68fde\3bccd6ff-f93b-431d-9260-ed4a87f9f910.dll
c:\program files\LiveSupport
c:\program files\LiveSupport\LiveSupport.exe
c:\program files\LiveSupport\LiveSupport_deskband_x32.dll
c:\program files\LiveSupport\LiveSupport_deskband_x64.dll
c:\program files\LiveSupport\unins000.dat
c:\program files\LiveSupport\unins000.exe
c:\program files\LiveSupport\unins000.msg
c:\program files\PricePeep
c:\program files\PricePeep\installer.ico
c:\program files\Windows Live\Messenger\msacm32.dll
c:\users\***** 2\AppData\Local\Microsoft\Windows\Temporary Internet Files\Sys8787_DataList.bin
c:\users\***** 2\AppData\Roaming\LiveSupport.exe_log.txt
c:\users\***** 2\AppData\Roaming\regsvr32.exe_log.txt
c:\users\*****\AppData\Local\dsisetup38304172.exe
c:\users\*****\Documents\~WRD0004.tmp
c:\users\*****\Documents\~WRL0914.tmp
c:\users\*****\Documents\~WRL2036.tmp
c:\windows\IsUn0407.exe
c:\windows\msdownld.tmp
c:\windows\system32\Tasks\Optimizer Pro Schedule
.
.
((((((((((((((((((((((( Dateien erstellt von 2015-02-13 bis 2015-03-13 ))))))))))))))))))))))))))))))
.
.
2015-03-13 21:34 . 2015-03-13 21:34    62576    ----a-w-    c:\programdata\Microsoft\Windows Defender\Definition Updates\{3D8D2CE2-6515-4C4A-AD69-A2C353E7F894}\offreg.dll
2015-03-13 21:31 . 2015-03-13 21:39    --------    d-----w-    c:\users\***** 2\AppData\Local\temp
2015-03-13 21:31 . 2015-03-13 21:31    --------    d-----w-    c:\users\Public\AppData\Local\temp
2015-03-13 21:31 . 2015-03-13 21:31    --------    d-----w-    c:\users\Default\AppData\Local\temp
2015-03-13 20:24 . 2015-03-13 20:24    --------    d-----w-    c:\users\***** 2\AppData\Roaming\Swiss Academic Software
2015-03-13 20:09 . 2015-03-13 20:09    --------    d-----w-    c:\program files\VS Revo Group
2015-03-13 20:04 . 2015-02-16 03:21    9041640    ----a-w-    c:\programdata\Microsoft\Windows Defender\Definition Updates\{3D8D2CE2-6515-4C4A-AD69-A2C353E7F894}\mpengine.dll
2015-03-12 18:49 . 2015-03-12 18:52    --------    d-----w-    C:\FRST
2015-03-11 18:55 . 2015-01-29 01:35    369664    ----a-w-    c:\windows\system32\WMPhoto.dll
2015-03-11 18:51 . 2015-01-29 01:35    975360    ----a-w-    c:\windows\system32\WindowsCodecs.dll
2015-03-11 18:44 . 2015-02-26 00:18    2064384    ----a-w-    c:\windows\system32\win32k.sys
2015-03-11 16:14 . 2015-02-20 02:03    34304    ----a-w-    c:\windows\system32\atmlib.dll
2015-03-11 16:14 . 2015-02-20 00:28    296960    ----a-w-    c:\windows\system32\atmfd.dll
2015-03-11 16:10 . 2015-02-26 02:01    3604408    ----a-w-    c:\windows\system32\ntkrnlpa.exe
2015-03-11 16:10 . 2015-01-09 02:04    49152    ----a-w-    c:\windows\system32\csrsrv.dll
2015-03-11 16:10 . 2015-01-09 00:18    64000    ----a-w-    c:\windows\system32\smss.exe
2015-03-11 16:10 . 2015-02-26 02:01    3552184    ----a-w-    c:\windows\system32\ntoskrnl.exe
2015-03-11 16:08 . 2015-01-21 02:02    807936    ----a-w-    c:\windows\system32\msctf.dll
2015-03-11 16:05 . 2015-03-06 04:01    279040    ----a-w-    c:\windows\system32\schannel.dll
2015-03-11 16:03 . 2014-10-13 01:12    2264064    ----a-w-    c:\windows\system32\msi.dll
2015-03-10 22:56 . 2015-03-10 22:56    --------    d-----w-    c:\users\***** 2\AppData\Roaming\Optimizer Pro
2015-03-10 22:52 . 2015-03-13 21:29    --------    d-----w-    c:\program files\861437cb-3ee3-405d-bcea-149a4dc68fde
2015-03-10 22:52 . 2015-03-10 22:52    --------    d-----w-    c:\users\***** 2\AppData\Local\globalUpdate
2015-03-10 22:51 . 2015-03-11 18:50    --------    d-----w-    c:\programdata\{c5d7b5bd-e56a-bd77-c5d7-7b5bde56d6f7}
2015-02-21 12:06 . 2015-02-21 12:06    --------    d-----w-    c:\users\*****\AppData\Roaming\Avira
2015-02-21 11:36 . 2015-03-10 19:05    136216    ----a-w-    c:\windows\system32\drivers\avipbb.sys
2015-02-21 11:36 . 2014-11-24 09:23    37352    ----a-w-    c:\windows\system32\drivers\avkmgr.sys
2015-02-21 11:36 . 2015-03-10 19:05    105864    ----a-w-    c:\windows\system32\drivers\avgntflt.sys
2015-02-21 11:23 . 2015-02-21 11:23    --------    d-----w-    c:\programdata\Package Cache
2015-02-20 19:52 . 2015-02-20 19:45    96680    ----a-w-    c:\windows\system32\WindowsAccessBridge.dll
2015-02-20 19:52 . 2013-06-18 18:48    789416    ----a-w-    c:\windows\system32\deployJava1.dll
2015-02-20 19:52 . 2013-06-18 18:48    867240    ----a-w-    c:\windows\system32\npDeployJava1.dll
2015-02-20 19:50 . 2015-02-20 19:50    --------    d-----w-    c:\programdata\APN
2015-02-20 19:42 . 2015-02-20 20:01    --------    d-----w-    c:\programdata\Oracle
2015-02-18 08:47 . 2015-02-18 08:47    17323192    ----a-w-    c:\program files\Common Files\Microsoft Shared\OFFICE12\MSO.DLL
2015-02-17 15:04 . 2015-02-17 15:04    1202848    ----a-w-    c:\windows\system32\FM20.DLL
2015-02-12 16:43 . 2014-11-26 02:05    564224    ----a-w-    c:\windows\system32\oleaut32.dll
2015-02-12 16:08 . 2015-01-15 04:13    440760    ----a-w-    c:\windows\system32\drivers\ksecdd.sys
2015-02-12 16:07 . 2014-12-08 01:59    306176    ----a-w-    c:\windows\system32\scesrv.dll
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-02-24 03:23 . 2009-10-03 00:27    246920    ------w-    c:\windows\system32\MpSigStub.exe
2015-02-05 17:05 . 2013-02-05 19:10    701616    ----a-w-    c:\windows\system32\FlashPlayerApp.exe
2015-02-05 17:05 . 2011-06-24 17:30    71344    ----a-w-    c:\windows\system32\FlashPlayerCPLApp.cpl
2014-12-19 00:25 . 2015-01-15 06:39    115200    ----a-w-    c:\windows\system32\drivers\mrxdav.sys
2012-06-20 07:37 . 2011-12-30 09:40    85472    ----a-w-    c:\program files\mozilla firefox\components\browsercomps.dll
2010-06-26 06:12 . 2008-09-24 18:12    119808    ----a-w-    c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WindowsWelcomeCenter"="oobefldr.dll" [2009-04-11 2153472]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Mobile-based device management"="c:\windows\WindowsMobile\wmdSync.exe" [2006-11-02 215552]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-09-07 37296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920]
"lxeamon.exe"="c:\program files\Lexmark S300-S400 Series\lxeamon.exe" [2010-01-18 770728]
"EzPrint"="c:\program files\Lexmark S300-S400 Series\ezprint.exe" [2010-01-18 139944]
"UVS10 Preload"="c:\program files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe" [2006-08-09 36864]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-04-04 462408]
"EEventManager"="c:\program files\Epson Software\Event Manager\EEventManager.exe" [2010-10-12 979328]
"PDFPrint"="c:\program files\PDF24\pdf24.exe" [2013-07-22 162856]
"Avira Systray"="c:\program files\Avira\My Avira\Avira.OE.Systray.exe" [2015-01-19 126712]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2015-03-10 703280]
"NvSvc"="c:\windows\system32\nvsvc.dll" [2009-05-26 92704]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-05-26 8530464]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-05-26 88608]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"WSE_Vosteran"="c:\windows\system32\wscript.exe" [2013-10-11 155648]
"*WerKernelReporting"="c:\windows\SYSTEM32\WerFault.exe" [2009-04-11 217088]
.
c:\users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Netzmanager.lnk - c:\program files\Netzmanager\netzmanager.exe /Autostart [2014-1-24 14140416]
OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
BTTray.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2007-6-22 739880]
McAfee Security Scan Plus.lnk - c:\program files\McAfee Security Scan\3.8.150\SSScheduler.exe [2014-4-9 279456]
Secunia PSI Tray.lnk - c:\program files\Secunia\PSI\psi_tray.exe [2011-7-29 291896]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2011-05-04 17:54    551296    ----a-w-    c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\VESWinlogon]
2007-07-12 06:33    98304    ----a-w-    c:\windows\System32\VESWinlogon.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\Google\GOOGLE~1\GOEC62~1.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux5"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Users^*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk]
path=c:\users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk
backup=c:\windows\pss\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk.Startup
backupExtension=.Startup
.
[HKLM\~\startupfolder\C:^Users^*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Picture Motion Browser Medien-Prüfung.lnk]
path=c:\users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Picture Motion Browser Medien-Prüfung.lnk
backup=c:\windows\pss\Picture Motion Browser Medien-Prüfung.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Apoint]
2007-06-10 00:12    118784    ----a-w-    c:\program files\Apoint\Apoint.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
2010-06-26 06:12    30192    ----a-w-    c:\program files\Google\Google Desktop Search\GoogleDesktop.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\googletalk]
2007-01-01 21:22    3739648    ----a-w-    c:\program files\Google\Google Talk\googletalk.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISBMgr.exe]
2007-06-11 16:27    317560    ----a-w-    c:\program files\Sony\ISB Utility\ISBMgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechQuickCamRibbon]
2009-05-08 09:35    2780432    ----a-w-    c:\program files\Logitech\Logitech WebCam Software\LWS.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2007-10-19 18:16    286720    ----a-w-    c:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TrayServer]
2007-03-29 09:05    90112    ----a-w-    c:\program files\MAGIX\Video_deluxe_2008_e-version\Trayserver.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [2011-08-11 116608]
S2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service;c:\program files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-05-14 759048]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*Deregistered* - fwtdipob
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs    REG_MULTI_SZ    BthServ
WindowsMobile    REG_MULTI_SZ    wcescomm rapimgr
LocalServiceRestricted    REG_MULTI_SZ    WcesComm RapiMgr
LocalServiceAndNoImpersonation    REG_MULTI_SZ    FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-03-12 18:19    1061704    ----a-w-    c:\program files\Google\Chrome\Application\41.0.2272.89\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2015-03-13 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-05 17:05]
.
2015-03-08 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-07-20 16:57]
.
2015-03-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-07-22 19:48]
.
2015-03-13 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-07-22 19:48]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = about:blank
mStart Page = hxxp://home.sweetim.com/?crg=3.1010000.10013&barid={C922DC41-24F3-4936-92D2-71C126473C64}
IE: &Citavi Picker... - file://c:\programdata\Swiss Academic Software\Citavi Picker\Internet Explorer\ShowContextMenu.html
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Bild an &Bluetooth-Gerät senden... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Seite an &Bluetooth-Gerät senden... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\***** 2\AppData\Roaming\Mozilla\Firefox\Profiles\4qlxy2p6.default\
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
URLSearchHooks-{84FF7BD6-B47F-46F8-9130-01B2696B36CB} - (no file)
BHO-{58124A0B-DC32-4180-9BFF-E0E21AE34026} - c:\program files\IMinent Toolbar\tbcore3.dll
HKCU-Run-LiveSupport - c:\program files\LiveSupport\LiveSupport.exe
HKLM-Run-Iminent - c:\program files\Iminent\Iminent.exe
HKLM-Run-IminentMessenger - c:\program files\Iminent\Iminent.Messengers.exe
HKLM-RunOnce-awde7zip53892 - (no file)
c:\users\***** 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk - c:\program files\DSL-Manager\DslMgr.exe
SafeBoot-WudfPf
SafeBoot-WudfRd
MSConfigStartUp-SweetIM - c:\program files\SweetIM\Messenger\SweetIM.exe
AddRemove-SABRINA - c:\windows\IsUn0407.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net
Rootkit scan 2015-03-13 22:39
Windows 6.0.6002 Service Pack 2 NTFS
.
Scanne versteckte Prozesse...
.
Scanne versteckte Autostarteinträge...
.
Scanne versteckte Dateien...
.
.
c:\users\*****-~2\AppData\Local\Temp\catchme.dll 53248 bytes executable
.
Scan erfolgreich abgeschlossen
versteckte Dateien: 1
.
**************************************************************************
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID]
@DACL=(02 0000)
@SACL=
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}]
@DACL=(02 0000)
@SACL=
@="TalkAPI Class"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}\LocalServer32]
@DACL=(02 0000)
@="c:\\Users\\*****\\AppData\\Roaming\\Google\\Google Talk\\googletalk.exe"
"ThreadingModel"="Apartment"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{305CA226-D286-468e-B848-2B2E8E697B74}]
@DACL=(02 0000)
@="Akamai NetSession Interface"
"InfoTip"="Configure your Akamai NetSession Interface settings."
"LocalizedString"="Akamai NetSession Interface Einstellungen"
"System.ApplicationName"="Akamai.NetSession"
"System.ControlPanel.Category"="3"
"System.Software.TasksFileUrl"="\"c:\\Users\\*****\\AppData\\Local\\Akamai\\CplTasks.xml\""
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{33b07fd4-5917-43e1-968d-4c79231836bf}]
@DACL=(02 0000)
@SACL=
@="ChatRoomContact Class"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}]
@DACL=(02 0000)
@="UnityWebPlayer Control"
"AppID"="{F008CD3D-7044-4CD4-BE14-BF3FCCF144F9}"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{492D7F71-6D85-13C9-001D-36212475CAB9}]
@DACL=(02 0000)
"host_guid"="{E3EFA6C8-5386-45DC-9863-50B98E868740}"
"sg"="{D08264E3-A129-4210-A7BE-7412A94D31F3}"
"_E520DE11"="S1126"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{7F902AD4-FC6A-4B2F-8B8D-B6DD4E329B76}]
@DACL=(02 0000)
@="Avira Addon"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{973CA160-B394-CDD8-DE0C-E830FA6414A8}]
@DACL=(02 0000)
"ins_guid"="{7EE64D4E-39A8-A181-631A-64501A2CF8EE}"
"insDate"="20150131173912841"
"instlRef"="142905_s3"
"aflt"="vst_ir_15_05"
"c_ver"="3.7.7.1"
"cr"="1074813290"
"cd"="2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q"
"DT"="S1126"
"st_ver"="3.0.1.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{A8F086C3-2497-4229-82FE-586F2D326F95}]
@DACL=(02 0000)
@SACL=
@="TalkFriend Class"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0000-0003-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0000-0004-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0000-0005-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0031-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0031-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0032-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0032-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0033-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0033-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0034-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0034-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0035-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0035-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0036-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0036-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0037-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0037-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0038-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0038-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0039-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0039-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0040-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0040-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0041-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0041-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0042-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0042-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0043-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0043-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0044-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_44"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0044-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_44"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0045-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_45"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0045-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_45"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0046-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_46"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0046-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_46"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0047-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_47"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0047-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_47"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0048-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_48"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0048-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_48"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0049-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_49"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0049-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_49"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0050-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_50"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0050-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_50"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0051-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_51"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0051-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_51"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0052-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_52"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0052-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_52"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0053-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_53"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0053-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_53"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0054-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_54"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0054-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_54"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0055-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_55"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0055-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_55"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0056-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_56"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0056-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_56"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0057-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_57"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0057-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_57"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0058-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_58"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0058-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_58"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0059-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_59"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0059-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_59"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0060-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_60"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0060-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_60"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0061-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_61"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0061-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_61"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0062-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_62"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0062-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_62"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0063-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_63"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0063-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_63"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0064-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_64"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0064-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_64"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0065-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_65"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0065-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_65"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0066-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_66"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0066-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_66"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0067-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_67"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0067-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_67"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0068-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_68"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0068-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_68"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0069-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_69"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0069-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_69"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0070-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_70"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0070-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_70"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0071-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_71"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0071-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_71"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0072-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_72"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0072-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_72"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0073-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_73"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0073-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_73"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0074-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_74"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0074-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_74"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0075-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_75"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0075-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_75"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0076-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_76"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0076-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_76"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0077-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_77"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0077-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_77"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0078-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_78"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0078-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_78"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0079-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_79"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0079-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_79"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0080-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_80"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0080-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_80"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0081-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_81"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0081-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_81"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0082-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_82"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0082-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_82"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0083-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_83"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0083-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_83"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0084-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_84"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0084-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_84"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0085-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_85"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0085-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_85"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0086-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_86"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0086-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_86"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0087-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_87"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0087-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_87"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0088-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_88"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0088-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_88"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0089-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_89"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0089-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_89"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0090-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_90"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0090-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_90"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0091-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_91"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0091-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_91"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0092-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_92"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0092-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_92"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0093-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_93"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0093-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_93"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0094-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_94"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0094-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_94"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0095-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_95"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0095-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_95"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0096-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_96"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0096-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_96"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0097-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_97"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0097-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_97"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0098-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_98"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0098-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_98"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0099-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_99"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0013-0001-0099-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.1_99"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.1_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0031-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0031-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0032-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0032-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0033-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0033-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0034-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0034-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0035-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0035-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0036-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0036-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0037-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0037-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0038-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0038-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0039-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0039-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0040-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0040-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0041-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0041-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0042-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0042-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0043-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-0043-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0014-0002-FFFF-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.4.2"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_44"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_44"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_44"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_45"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_45"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_45"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_46"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_46"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_46"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_47"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_47"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_47"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_48"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_48"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_48"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_49"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_49"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_49"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_50"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_50"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_50"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_51"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_51"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_51"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_52"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_52"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_52"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_53"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_53"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_53"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_54"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_54"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_54"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_55"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_55"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_55"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_56"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_56"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_56"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_57"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_57"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_57"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_58"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_58"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_58"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_59"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_59"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_59"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_60"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_60"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_60"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_61"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_61"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_61"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0062-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_62"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0062-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_62"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0062-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_62"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0063-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_63"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0063-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_63"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0063-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_63"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0064-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_64"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0064-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_64"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0064-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_64"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0065-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_65"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0065-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_65"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0065-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_65"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0066-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_66"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0066-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_66"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0066-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_66"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0067-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_67"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0067-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_67"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0067-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_67"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0068-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_68"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0068-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_68"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0068-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_68"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0069-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_69"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0069-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_69"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0069-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_69"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0070-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_70"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0070-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_70"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0070-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_70"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0071-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_71"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0071-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_71"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0071-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_71"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0072-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_72"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0072-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_72"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0072-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_72"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0073-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_73"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0073-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_73"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0073-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_73"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0074-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_74"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0074-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_74"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0074-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_74"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0075-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_75"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0075-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_75"
.


Jami87 13.03.2015 23:14

Code:

[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0075-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_75"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0076-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_76"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0076-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_76"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0076-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_76"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0077-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_77"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0077-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_77"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0077-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_77"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0078-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_78"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0078-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_78"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0078-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_78"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0079-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_79"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0079-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_79"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0079-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_79"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0080-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_80"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0080-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_80"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0080-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_80"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0081-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_81"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0081-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_81"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-0081-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0_81"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0015-0000-FFFF-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.5.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_44"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_44"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_44"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_45"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_45"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_45"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_46"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_46"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_46"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_47"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_47"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_47"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_48"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_48"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_48"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_49"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_49"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_49"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_50"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_50"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_50"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_51"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_51"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_51"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_52"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_52"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_52"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_53"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_53"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_53"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_54"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_54"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_54"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_55"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_55"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_55"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_56"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_56"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_56"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_57"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_57"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_57"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_58"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_58"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_58"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_59"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_59"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_59"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_60"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_60"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_60"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_61"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_61"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_61"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_62"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_62"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_62"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_63"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_63"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_63"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_64"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_64"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_64"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_65"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_65"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_65"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_66"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_66"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_66"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_67"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_67"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_67"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_68"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_68"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_68"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_69"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_69"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_69"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_70"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_70"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_70"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_71"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_71"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_71"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0072-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_72"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0072-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_72"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0072-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_72"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0073-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_73"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0073-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_73"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0073-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_73"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0074-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_74"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0074-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_74"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0074-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_74"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0075-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_75"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0075-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_75"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0075-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_75"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0076-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_76"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0076-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_76"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0076-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_76"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0077-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_77"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0077-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_77"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0077-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_77"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0078-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_78"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0078-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_78"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0078-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_78"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0079-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_79"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0079-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_79"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0079-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_79"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0080-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_80"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0080-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_80"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0080-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_80"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0081-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_81"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0081-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_81"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0081-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_81"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0082-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_82"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0082-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_82"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0082-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_82"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0083-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_83"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0083-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_83"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0083-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_83"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0084-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_84"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0084-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_84"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0084-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_84"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0085-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_85"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0085-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_85"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0085-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_85"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0086-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_86"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0086-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_86"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0086-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_86"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0087-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_87"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0087-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_87"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0087-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_87"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0088-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_88"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0088-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_88"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0088-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_88"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0089-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_89"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0089-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_89"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0089-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_89"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0090-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_90"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0090-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_90"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0090-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_90"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0091-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_91"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0091-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_91"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-0091-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0_91"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0016-0000-FFFF-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.6.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_32"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_33"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_34"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_35"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_36"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_37"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_38"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_39"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_40"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_41"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_42"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_43"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_44"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_44"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_44"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_45"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_45"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_45"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_46"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_46"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_46"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_47"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_47"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_47"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_48"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_48"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_48"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_49"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_49"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_49"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_50"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_50"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_50"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_51"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_51"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_51"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0052-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_52"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0052-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_52"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0052-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_52"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0053-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_53"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0053-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_53"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0053-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_53"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0054-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_54"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0054-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_54"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0054-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_54"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0055-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_55"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0055-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_55"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0055-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_55"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0056-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_56"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0056-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_56"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0056-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_56"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0057-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_57"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0057-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_57"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0057-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_57"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0058-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_58"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0058-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_58"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0058-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_58"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0059-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_59"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0059-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_59"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0059-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_59"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0060-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_60"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0060-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_60"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0060-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_60"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0061-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_61"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0061-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_61"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0061-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_61"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0062-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_62"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0062-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_62"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0062-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_62"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0063-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_63"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0063-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_63"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0063-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_63"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0064-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_64"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0064-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_64"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0064-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_64"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0065-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_65"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0065-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_65"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0065-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_65"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0066-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_66"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0066-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_66"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0066-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_66"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0067-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_67"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0067-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_67"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0067-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_67"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0068-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_68"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0068-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_68"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0068-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_68"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0069-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_69"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0069-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_69"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0069-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_69"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0070-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_70"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0070-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_70"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0070-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_70"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0071-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_71"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0071-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_71"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0071-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_71"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0072-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_72"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0072-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_72"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0072-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_72"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0073-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_73"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0073-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_73"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0073-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_73"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0074-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_74"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0074-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_74"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0074-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_74"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0075-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_75"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0075-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_75"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-0075-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0_75"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0017-0000-FFFF-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.7.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0000-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0000-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0000-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0001-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0001-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0001-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_01"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0002-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0002-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0002-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_02"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0003-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0003-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0003-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_03"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0004-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0004-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0004-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_04"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0005-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0005-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0005-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_05"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0006-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0006-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0006-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_06"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0007-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0007-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0007-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_07"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0008-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0008-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0008-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_08"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0009-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0009-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0009-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_09"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0010-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0010-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0010-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_10"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0011-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0011-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0011-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_11"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0012-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0012-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0012-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_12"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0013-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0013-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0013-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_13"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0014-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0014-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0014-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_14"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0015-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0015-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0015-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_15"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0016-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0016-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0016-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_16"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0017-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0017-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0017-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_17"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0018-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0018-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0018-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_18"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0019-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0019-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0019-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_19"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0020-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0020-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0020-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_20"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0021-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0021-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0021-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_21"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0022-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0022-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0022-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_22"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0023-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0023-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0023-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_23"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0024-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0024-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0024-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_24"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0025-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0025-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0025-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_25"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0026-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0026-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0026-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_26"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0027-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0027-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0027-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_27"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0028-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0028-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0028-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_28"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0029-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0029-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0029-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_29"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0030-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0030-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0030-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_30"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0031-ABCDEFFEDCBB}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-0031-ABCDEFFEDCBC}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0_31"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CAFEEFAC-0018-0000-FFFF-ABCDEFFEDCBA}]
@DACL=(02 0000)
@="Java Plug-in 1.8.0"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{d33f3ced-d7d5-44f1-a9fe-6927dabb1934}]
@DACL=(02 0000)
@SACL=
@="ChatRoom Class"
.
[HKEY_USERS\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{E19F9331-3110-11D4-991C-005004D3B3DB}]
@DACL=(02 0000)
@="Java Plug-in 1.3.0_02"
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- Durch laufende Prozesse gestartete DLLs ---------------------
.
- - - - - - - > 'Explorer.exe'(7064)
c:\windows\system32\btmmhook.dll
.
Zeit der Fertigstellung: 2015-03-13  22:44:06
ComboFix-quarantined-files.txt  2015-03-13 21:44
.
Vor Suchlauf: 28 Verzeichnis(se), 19.936.382.976 Bytes frei
Nach Suchlauf: 30 Verzeichnis(se), 28.779.380.736 Bytes frei
.
- - End Of File - - C9CCEEE15364CA8FBE405254A88AAD7A
5C616939100B85E558DA92B899A0FC36

Ach mist, jetzt habe ich den ersten Teil nicht in Code-Tags gesetzt und kann es nicht mehr editieren... Geht das dennoch so? Also das sind 2 Teile, die zusammengehören...

schrauber 14.03.2015 12:35

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.

Jami87 14.03.2015 19:13

Hallo,

das Junkware Tool funktioniert bei mir irgendwie nicht?!? Es startet und bleibt dann immer wieder hängen?!?

Code:

Malwarebytes Anti-Malware
www.malwarebytes.org

Suchlauf Datum: 14.03.2015
Suchlauf-Zeit: 14:56:28
Logdatei: mbam.txt
Administrator: Nein

Version: 2.00.4.1028
Malware Datenbank: v2015.03.14.02
Rootkit Datenbank: v2015.02.25.01
Lizenz: Testversion
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows Vista Service Pack 2
CPU: x86
Dateisystem: NTFS
Benutzer: *****

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 247075
Verstrichene Zeit: 20 Min, 47 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(Keine schädliche Elemente erkannt)

Module: 0
(Keine schädliche Elemente erkannt)

Registrierungsschlüssel: 0
(Keine schädliche Elemente erkannt)

Registrierungswerte: 0
(Keine schädliche Elemente erkannt)

Registrierungsdaten: 0
(Keine schädliche Elemente erkannt)

Ordner: 0
(Keine schädliche Elemente erkannt)

Dateien: 0
(Keine schädliche Elemente erkannt)

Physische Sektoren: 0
(Keine schädliche Elemente erkannt)


(end)

AdwCleaner Logfile:
Code:

# AdwCleaner v4.112 - Bericht erstellt 14/03/2015 um 15:25:35
# Aktualisiert 09/03/2015 von Xplode
# Datenbank : 2015-03-05.1 [Server]
# Betriebssystem : Windows Vista (TM) Home Premium Service Pack 2 (x86)
# Benutzername : ***** 2 - *****
# Gestarted von : C:\Users\*****\Downloads\AdwCleaner_4.112.exe
# Option : Suchlauf

***** [ Dienste ] *****

Dienst Gefunden : globalUpdatem

***** [ Dateien / Ordner ] *****

Datei Gefunden : C:\Program Files\Mozilla Firefox\searchplugins\SearchTheWeb.xml
Datei Gefunden : C:\Users\Default\Desktop\eBay.lnk
Datei Gefunden : C:\Users\***** 2\Desktop\Continue SweetIM Installation.lnk
Datei Gefunden : C:\Users\***** 2\Desktop\eBay.lnk
Datei Gefunden : C:\Users\***** 2\Desktop\LiveSupport.lnk
Datei Gefunden : C:\Users\***** 2\Desktop\Optimizer Pro.lnk
Datei Gefunden : C:\Users\***** 2\Desktop\Search The Web.url
Datei Gefunden : C:\Users\***** 2\Desktop\sweetpcfix.url
Ordner Gefunden : C:\Program Files\Common Files\DVDVideoSoft\TB
Ordner Gefunden : C:\Program Files\Common Files\Plasmoo
Ordner Gefunden : C:\Program Files\Common Files\Tobit
Ordner Gefunden : C:\Program Files\ICQ6Toolbar
Ordner Gefunden : C:\Program Files\Uncompressor
Ordner Gefunden : C:\ProgramData\apn
Ordner Gefunden : C:\ProgramData\Babylon
Ordner Gefunden : C:\ProgramData\ICQ\ICQToolbar
Ordner Gefunden : C:\ProgramData\Iminent
Ordner Gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent
Ordner Gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LiveSupport
Ordner Gefunden : C:\ProgramData\Trymedia
Ordner Gefunden : C:\Users\***** 2\AppData\Local\FileTypeAssistant
Ordner Gefunden : C:\Users\***** 2\AppData\Local\globalUpdate
Ordner Gefunden : C:\Users\***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Ordner Gefunden : C:\Users\***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce
Ordner Gefunden : C:\Users\***** 2\AppData\Local\PackageAware
Ordner Gefunden : C:\Users\***** 2\AppData\LocalLow\Toolbar4
Ordner Gefunden : C:\Users\***** 2\AppData\Roaming\Iminent
Ordner Gefunden : C:\Users\***** 2\AppData\Roaming\Optimizer Pro
Ordner Gefunden : C:\Users\***** 2\AppData\Roaming\Tobit
Ordner Gefunden : C:\Users\***** 2\Documents\Optimizer Pro
Ordner Gefunden : C:\Users\*****\AppData\Local\Babylon
Ordner Gefunden : C:\Users\*****\AppData\Local\DownloadGuide
Ordner Gefunden : C:\Users\*****\AppData\Local\FileTypeAssistant
Ordner Gefunden : C:\Users\*****\AppData\Local\FinalMediaPlayer
Ordner Gefunden : C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Ordner Gefunden : C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce
Ordner Gefunden : C:\Users\*****\AppData\Local\OpenCandy
Ordner Gefunden : C:\Users\*****\AppData\Local\Vosteran
Ordner Gefunden : C:\Users\*****\AppData\Local\WSE_Vosteran
Ordner Gefunden : C:\Users\*****\AppData\LocalLow\AskToolbar
Ordner Gefunden : C:\Users\*****\AppData\LocalLow\Dealio
Ordner Gefunden : C:\Users\*****\AppData\LocalLow\Toolbar4
Ordner Gefunden : C:\Users\*****\AppData\Roaming\dvdvideosoftiehelpers
Ordner Gefunden : C:\Users\*****\AppData\Roaming\FinalMediaPlayer
Ordner Gefunden : C:\Users\*****\AppData\Roaming\Iminent
Ordner Gefunden : C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Uncompressor
Ordner Gefunden : C:\Users\*****\AppData\Roaming\Tobit
Ordner Gefunden : C:\Users\*****\AppData\Roaming\WSE_Vosteran

***** [ Geplante Tasks ] *****

Task Gefunden : Optimizer Pro Schedule
Task Gefunden : RunAsStdUser Task

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gefunden : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gefunden : HKCU\Software\Bitberry
Schlüssel Gefunden : HKCU\Software\GlobalUpdate
Schlüssel Gefunden : HKCU\Software\IM
Schlüssel Gefunden : HKCU\Software\Iminent
Schlüssel Gefunden : HKCU\Software\ImInstaller
Schlüssel Gefunden : HKCU\Software\LiveSupport
Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\iminent.com
Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}
Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}
Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{08ED8855-4C2E-429B-A878-F129E1F624FA}
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{94C3BB3A-56A1-43DE-A242-8B41F46E97EF}
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Schlüssel Gefunden : HKCU\Software\Optimizer Pro
Schlüssel Gefunden : HKCU\Software\Softonic
Schlüssel Gefunden : HKCU\Software\SweetIM
Schlüssel Gefunden : HKLM\SOFTWARE\Babylon
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\PricePeep.DLL
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Prod.cap
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbHelper.TbRequest
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbHelper.TbTask
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbHelper.TbTask.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{0C58B7D1-D415-492B-A149-E976156BD3B8}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Schlüssel Gefunden : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Schlüssel Gefunden : HKLM\SOFTWARE\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Schlüssel Gefunden : HKLM\SOFTWARE\ICQ\ICQToolbar
Schlüssel Gefunden : HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0702826FCAC36EE52AC0441EEEEE2170
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1198E28F40C3E185E9958608554D4253
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A073601B9AEC3549BE4A9314794615
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F7C80F9CE5CDF44E9AADDC99402534C
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\206AF45B775E3A445B3B2273827DA85F
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\225C3CBCEB850204D860A6C7CC7724AF
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2310FC151CD4F185798FA0996B3524D7
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28572D2E2DE533256AC6B560EA573C22
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29C79786B109AC443B0DC7BFD61B1896
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ABB56EABB920EB59B04BDDD26A62083
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DABA02DFED47E352A2FA2EBDD6F6187
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\311567B4A9A002050BB9423FD73FB880
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\373FCED70D7F84E5FB5F3F7B76BEE024
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BE992C130B235E53A2937391FDCA35B
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DA5F64B3483DE549947A9164ACBAD21
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3ED93605BB9B6635E9D0D86615AF31F1
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4759B017032BA185F9BA6F7DBC95A2D4
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A78ABCBB54E46E5482A3EE0AD66C39E
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F9E947B6B895EB5A86757FC5D3DB862
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4FEEA83BF72B97E43A2DF0EE4BE4F261
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\509EC7EFB89B7D942997574AB14037A4
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A730A9A3A61BF5BA70CA8A3B7C133B
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51A95A1D4CDE4F958A9451FBB39BF54A
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536133807DE80465BA6CD0A9742B7DE5
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E25036E68895D45B95E72D1C3C58C74
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60ECC80C54085B141A40437A96CA2618
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60FD8CD5BE007315CA3B5C7E41F24017
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\618E7D05458C4F257909ED9C8CDC0D66
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\621C21014D3C152529E2460FA6304EE3
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6241FF6F317CABD4EBBEE0DE9076BD94
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\636B9C23C79154B57AB561F39A139BFD
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65AAF0F0CB7F0B45F900FDF19CEAAF2B
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6879A5E348601C45986308CA84958E94
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A6F3B7A9805E1F5492A1020EEDF2341
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B1F5D204E4EEB342A5AD1D7E60D61BF
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7005A2A4DCF9DD7548137AB17E3A3AF3
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\712EAF07EE73CC65C822CC3BAE3B2483
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7947B301B2446E752A3FE06EAD7D26B5
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7987CE52D13E16258B0E1E3DB1BB0974
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BEED197C514FDA53901AE8DD8EF0891
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DFDCF03D46C34159BDE29FBDBF1ACF5
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\890F436B85B790A55A582B7307DA12CE
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C13DA6755F685B529615C8E92B3CA39
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D07CD9CB3E6BE652872BF06A1CCA782
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90841B1FC98200349925C88999866F17
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94194FDD4DF523E53A888D65722A135D
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A4223BBC9438CAD49BBE10B4E344B1DD
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A72F23B1D745C27508518132197BC982
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A89E2B6FB14D8275DA63D075171DA184
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9C43CD4001E9E4518B274AF9A0EFDA9
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AABA081CF7F19915FBB80B3BAF47CE63
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC2A0FFD0A1686D53A4E24D6E96949E4
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE5BDB2750259915D8442D4591A7717B
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1A79C71D5DC1C150B76B6ED11195DFC
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D497DB33974935488761F7C4C3D755
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B752EF3300008394886C402CC27B474F
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8C8BCC1206978D51A8B9EECBF806C53
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAD3576CEA646895B962F94754612791
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB4091512C8F4295E99CE2D061ED2020
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE6BBC9A31531F598794A62120B51C7
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C19162788CA4D235E829F88E2F771567
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C71F07DA356B66B5484A8E7F2ADEB7DC
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C96AD15EE8E887B56BAF2136A9088503
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C9E6B66ECC49D155888399C51D05C49E
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA360F24F0B214744BE40657FDA0B727
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE85F265816AE2D4E9B73C3E207E679C
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5389AEEA4A1E20428D045E86BCF643B
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5B62BB7BC607FB539585E2B7B6AFD16
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB027F01D4D53765C8E4FBE7DB77E07E
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC2EB492393411F5ABE8ED13C59FBF20
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDA2534BD056D1F44B6EC96AAA7F1F6E
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDCA763D4C48A105086B4CCCEE78043F
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEF7558C7CD27EF46AF802AFBE402675
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E05B987540A9E2849AAF9E5B06C27DA8
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E09F4A6B9D2A08B599AE9E38BFC93CD6
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E45D171E075A5425CBACF6631A45FA39
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E513C2076D90AD04F888BD762143F191
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F4C985459564F5B8DCFF2B3C7EBD27
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96E33222BAC06B57A1FA9D72951C945
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAA46CE9007F70A5CAFA5F26E5DDEBE5
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE43FF091A8714A599F33EF2533FB59A
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE790015CF30DAA569960905FF1651A0
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEB44C47185BD304D80FDF5A4BBE8F54
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F214EB834D2EC474CA76C1CDE306CF3A
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F25491036D0FA5D5FA6742F5742F151A
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6704141BAAF6884785EC6843143D6A7
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7507D4D4C310125E9A22BD909A41FB6
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F79C21D785419125595AC59458A6142D
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA15C90F092A60F53A4E0F88CED02968
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA1CF130B3D58B553833ACB6BE8AFAD4
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB0F1A18E4F0DBD509A42F4D4C05C02A
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD17ED194F1C2B457B4F6EF4AE8DEAF3
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Schlüssel Gefunden : HKLM\SOFTWARE\Trymedia Systems

***** [ Internetbrowser ] *****

-\\ Internet Explorer v9.0.8112.16633


-\\ Mozilla Firefox v13.0.1 (de)

[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.Server", "hxxp://users.conduit.com");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.ToolbarName", "Softonic-de");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2009772");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolbar.com,CommunityToolbars.com,ForumToolbar.com,MyBlogToolbar.com,MyCity[...]
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.backendstorage.autocompletepro_enable", "31");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.backendstorage.autocompletepro_enable_auto", "31");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdown[...]
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CT2009772.uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2009772/CT2009772", "\"82777122b537b95554d05cb94c964b831\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://alert.services.conduit.com/Alerts/AlertServices.asmx/GetHostedFeedRss?alertID=492579&alertFeedId=488449", "\"0\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/492579/488449/DE", "\"0\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/909619/905414/DE", "\"0\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2009772", "\"1334647739\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=de-de", "oIwsta2spzadhjRgiY1Nhw==");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=de-de", "WiZSpHJzJ/uTUKvfHHyj/w==");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=de-de", "9H/gICSaMqbmx+Gd+8W4Sg==");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=de-de", "eJfMrdrGnhGHiiPiYjgAww==");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"8076e3ce381dcd1:0\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.engine.conduit-services.com/DLG.pkg?ver=3.3.3.2", "\"807dc126dd28cc1:0\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.11.0.3", "\"4ead38b3e6bcd1:0\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12.2.3", "\"4ead38b3e6bcd1:0\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2009772", "\"d76323372b05c3748a3d6b1c93a98292\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=0", "634356118310000000");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=3/13/2011 11:17:11 AM", "634356118310000000");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=EB_LOCALE", "\"90a6f50158fc69d971d4e5b58046cce2\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=de-de", "\"3a779855433a7a6268bdb0458a7b4d5e\"");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.EngineOwner", "ConduitEngine");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.EngineOwnerGuid", "engine@conduit.com");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.EngineOwnerToolbarId", "conduitengine");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.IsEngineShown", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\*****\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\mdoh89q4.default\\conduitCommon\\modules\\3.12.2.3");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.12.2.3");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.MyGadgetsIntervalMM", 1440);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.OriginalEngineOwner", "ConduitEngine");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "engine@conduit.com");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "conduitengine");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "chrome://browser-region/locale/region.properties");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ToolbarsList", "CT2009772,ConduitEngine");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.ToolbarsList2", "CT2009772");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Mon May 16 2011 07:02:01 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Tue Jul 12 2011 17:39:56 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.locale", "en");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Wed Jul 13 2011 07:46:30 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1305622559");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.showTrayIcon", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.alert.userId", "{6fba208a-1d54-42a9-8d34-85cea4efe26c}");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.globalUserId", "cd9b6feb-cc6a-49ce-abed-db86c559de5e");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Mon May 07 2012 17:45:50 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Sun May 13 2012 09:41:58 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.locale", "en");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Sun May 13 2012 09:41:29 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
[mdoh89q4.default] - Zeile Gefunden : user_pref("CommunityToolbar.notifications.userId", "8eb8fb50-6b6b-4ee5-875b-7913c6ddf1e1");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.AppTrackingLastCheckTime", "Thu Jun 09 2011 20:12:13 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.CTID", "ConduitEngine");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.DialogsGetterLastCheckTime", "Sun Jul 10 2011 17:02:14 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.FirstServerDate", "05/16/2011 08");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.FirstTime", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.FirstTimeFF3", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.HasUserGlobalKeys", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.Initialize", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.InitializeCommonPrefs", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.InstalledDate", "Mon May 16 2011 07:02:01 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.IsMulticommunity", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.IsOpenThankYouPage", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.IsOpenUninstallPage", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.LanguagePackLastCheckTime", "Tue Jul 12 2011 14:09:45 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.LastLogin_3.3.3.2", "Wed Jul 13 2011 07:46:32 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.SearchFromAddressBarIsInit", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.SettingsLastCheckTime", "Wed Jul 13 2011 07:46:32 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.UserID", "UN49710388337859289");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.componentAlertEnabled", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.engineLocale", "de");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.enngineContextMenuLastCheckTime", "Tue Jul 12 2011 14:09:45 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.globalFirstTimeInfoLastCheckTime", "Wed Jul 13 2011 07:46:32 GMT+0200");
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.initDone", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.isAppTrackingManagerOn", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("ConduitEngine.usagesFlag", 1);
[mdoh89q4.default] - Zeile Gefunden : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");
[mdoh89q4.default] - Zeile Gefunden : user_pref("browser.search.selectedEngine", "Vosteran");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=100478&tt=290412_4_vs&babsrc=NT_ss&mntrId=ccc35b19000000000000544249676659");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.atylerkeith11aolcom61796.61796.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22amazon.com%22%2C%22anthropologie.com[...]
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.atylerkeith11aolcom61796.61796.internaldb.__ICM_LITE__fifty_test_rules.value", "%7B%22DE%22%3A%7B%22ALL%22%3A%5B%22anastasiadate.com%22%2C%22hxxp%3A//www.holasearch.com%22%2C%22m[...]
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.atylerkeith11aolcom61796.61796.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%7B%22urls%[...]
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.aflt", "_#stonicde");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.fcmdVrsn", "1.2.7.5.4");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.firstRun", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.first_time", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.id", "_#921ad1b386734e2a8b0baa7e5d56a836");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.instlDay", "_#15207");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.lastActv", "21");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.prtnrId", "_#facemoods.com");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.sid", "_#921ad1b386734e2a8b0baa7e5d56a836");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.uninst", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.update", "_#v1.4.0");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.facemoods.vrsn", "_#1.4.17.5");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.srchvstrn.hmpgUrl", "hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtA[...]
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.srchvstrn.newTabUrl", "hxxp://vosteran.com/?f=2&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1B[...]
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.srchvstrn.prtnrId", "WSE_Vosteran");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.srchvstrn.srchPrvdr", "Vosteran");
[mdoh89q4.default] - Zeile Gefunden : user_pref("extensions.srchvstrn.tlbrSrchUrl", "hxxp://vosteran.com/?f=3&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V[...]
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.allowSendURL", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.engineVerified", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.geolastmodified", 1327938943);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.hiddenElements", "itb_options");
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.history", "ht||Freizeitpark%20Villeneuve%20sur%20Lot||Villeneuve%20sur%20Lot||neustadt%20bei%20coburg%20park||security%20analysis%20viren||security%20analysis||zoo%20erfurt||zoo%[...]
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.hpChange", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.icqgeo", 49);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.installTime", "1328520158");
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.newtab_most_visited_state", "1");
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.newtab_state", "1");
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.numberOfSearches", 0);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.previousFFVersion", "9.0.1");
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.skip_default_search", "no");
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.suggestions", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.uninstStatSent", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.uniqueID", "124816149512481614951248260972986");
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.usageStatstTimestamp", 1328469333);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.userHpApproved", true);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.voucherHideClicks", 0);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.voucherRedeemClicks", 0);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.voucherWasShown", 0);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.xmlEnableSuggestions", false);
[mdoh89q4.default] - Zeile Gefunden : user_pref("icqtoolbar.xmlLanguage", "de");
[mdoh89q4.default] - Zeile Gefunden : user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
[mdoh89q4.default] - Zeile Gefunden : user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
[mdoh89q4.default] - Zeile Gefunden : user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
[mdoh89q4.default] - Zeile Gefunden : user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
[mdoh89q4.default] - Zeile Gefunden : user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
[mdoh89q4.default] - Zeile Gefunden : user_pref("sweetim.toolbar.mode.debug", "false");
[mdoh89q4.default] - Zeile Gefunden : user_pref("sweetim.toolbar.search.external", "<?xml version=\"1.0\"?><TOOLBAR><EXTERNAL_SEARCH engine=\"hxxp://*google.*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://search.yahoo.com/*\" param=\"[...]
[mdoh89q4.default] - Zeile Gefunden : user_pref("sweetim.toolbar.search.history.capacity", "10");
[mdoh89q4.default] - Zeile Gefunden : user_pref("sweetim.toolbar.simapp_id", "{C922DC41-24F3-4936-92D2-71C126473C64}");
[mdoh89q4.default] - Zeile Gefunden : user_pref("sweetim.toolbar.urls.homepage", "hxxp://home.sweetim.com");
[mdoh89q4.default] - Zeile Gefunden : user_pref("sweetim.toolbar.version", "1.0.0.10");

-\\ Google Chrome v41.0.2272.89

[C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Web data] - Gefunden [Search Provider] : hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}
[C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Web data] - Gefunden [Search Provider] : hxxp://start.facemoods.com/?a=stonicde&s={searchTerms}&f=4
[C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Web data] - Gefunden [Search Provider] : hxxp://vosteran.com/results.php?f=4&q={searchTerms}&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
[C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Web data] - Gefunden [Search Provider] : hxxp://vosteran.com/results.php?f=4&q={searchTerms}&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
*************************

AdwCleaner[R0].txt - [52857 Bytes] - [14/03/2015 15:25:35]

########## EOF - \AdwCleaner\AdwCleaner[R0].txt - [52917 Bytes] ##########

--- --- ---

AdwCleaner Logfile:
Code:

# AdwCleaner v4.112 - Bericht erstellt 14/03/2015 um 15:29:38
# Aktualisiert 09/03/2015 von Xplode
# Datenbank : 2015-03-05.1 [Server]
# Betriebssystem : Windows Vista (TM) Home Premium Service Pack 2 (x86)
# Benutzername : ***** 2 - *****
# Gestarted von : C:\Users\*****\Downloads\AdwCleaner_4.112.exe
# Option : Löschen

***** [ Dienste ] *****

[#] Dienst Gelöscht : globalUpdatem

***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\apn
Ordner Gelöscht : C:\ProgramData\Babylon
Ordner Gelöscht : C:\ProgramData\ICQ\ICQToolbar
Ordner Gelöscht : C:\ProgramData\Iminent
Ordner Gelöscht : C:\ProgramData\Trymedia
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LiveSupport
Ordner Gelöscht : C:\Program Files\ICQ6Toolbar
Ordner Gelöscht : C:\Program Files\Uncompressor
Ordner Gelöscht : C:\Program Files\Common Files\DVDVideoSoft\TB
Ordner Gelöscht : C:\Program Files\Common Files\Plasmoo
Ordner Gelöscht : C:\Program Files\Common Files\Tobit
Ordner Gelöscht : C:\Users\*****\AppData\Local\Babylon
Ordner Gelöscht : C:\Users\*****\AppData\Local\DownloadGuide
Ordner Gelöscht : C:\Users\*****\AppData\Local\FileTypeAssistant
Ordner Gelöscht : C:\Users\*****\AppData\Local\FinalMediaPlayer
Ordner Gelöscht : C:\Users\*****\AppData\Local\OpenCandy
Ordner Gelöscht : C:\Users\*****\AppData\Local\WSE_Vosteran
Ordner Gelöscht : C:\Users\*****\AppData\Local\Vosteran
Ordner Gelöscht : C:\Users\*****\AppData\LocalLow\AskToolbar
Ordner Gelöscht : C:\Users\*****\AppData\LocalLow\Dealio
Ordner Gelöscht : C:\Users\*****\AppData\LocalLow\Toolbar4
Ordner Gelöscht : C:\Users\*****\AppData\Roaming\dvdvideosoftiehelpers
Ordner Gelöscht : C:\Users\*****\AppData\Roaming\FinalMediaPlayer
Ordner Gelöscht : C:\Users\*****\AppData\Roaming\Iminent
Ordner Gelöscht : C:\Users\*****\AppData\Roaming\Tobit
Ordner Gelöscht : C:\Users\*****\AppData\Roaming\WSE_Vosteran
Ordner Gelöscht : C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Uncompressor
Ordner Gelöscht : C:\Users\***** 2\AppData\Local\FileTypeAssistant
Ordner Gelöscht : C:\Users\***** 2\AppData\Local\globalUpdate
Ordner Gelöscht : C:\Users\***** 2\AppData\Local\PackageAware
Ordner Gelöscht : C:\Users\***** 2\AppData\LocalLow\Toolbar4
Ordner Gelöscht : C:\Users\***** 2\AppData\Roaming\Iminent
Ordner Gelöscht : C:\Users\***** 2\AppData\Roaming\Optimizer Pro
Ordner Gelöscht : C:\Users\***** 2\AppData\Roaming\Tobit
Ordner Gelöscht : C:\Users\***** 2\Documents\Optimizer Pro
Ordner Gelöscht : C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Ordner Gelöscht : C:\Users\***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Ordner Gelöscht : C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce
Ordner Gelöscht : C:\Users\***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce
Datei Gelöscht : C:\Users\Default\Desktop\eBay.lnk
Datei Gelöscht : C:\Users\***** 2\Desktop\Continue SweetIM Installation.lnk
Datei Gelöscht : C:\Users\***** 2\Desktop\eBay.lnk
Datei Gelöscht : C:\Users\***** 2\Desktop\LiveSupport.lnk
Datei Gelöscht : C:\Users\***** 2\Desktop\Optimizer Pro.lnk
Datei Gelöscht : C:\Users\***** 2\Desktop\Search The Web.url
Datei Gelöscht : C:\Users\***** 2\Desktop\sweetpcfix.url
Datei Gelöscht : C:\Program Files\Mozilla Firefox\searchplugins\SearchTheWeb.xml

***** [ Geplante Tasks ] *****

Task Gelöscht : RunAsStdUser Task

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\PricePeep.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbRequest
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbTask
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbTask.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{5B1881D1-D9C7-46DF-B041-1E593282C7D0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{0C58B7D1-D415-492B-A149-E976156BD3B8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{B87F8B63-7274-43FD-87FA-09D3B7496148}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{C4BAE205-5E02-4E32-876E-F34B4E2D000C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77}
Schlüssel Gelöscht : HKCU\Software\Bitberry
Schlüssel Gelöscht : HKCU\Software\GlobalUpdate
Schlüssel Gelöscht : HKCU\Software\IM
Schlüssel Gelöscht : HKCU\Software\Iminent
Schlüssel Gelöscht : HKCU\Software\ImInstaller
Schlüssel Gelöscht : HKCU\Software\LiveSupport
Schlüssel Gelöscht : HKCU\Software\Optimizer Pro
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\SweetIM
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Babylon
Schlüssel Gelöscht : HKLM\SOFTWARE\ICQ\ICQToolbar
Schlüssel Gelöscht : HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gelöscht : HKLM\SOFTWARE\Trymedia Systems
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{08ED8855-4C2E-429B-A878-F129E1F624FA}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{94C3BB3A-56A1-43DE-A242-8B41F46E97EF}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0702826FCAC36EE52AC0441EEEEE2170
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1198E28F40C3E185E9958608554D4253
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A073601B9AEC3549BE4A9314794615
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F7C80F9CE5CDF44E9AADDC99402534C
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\206AF45B775E3A445B3B2273827DA85F
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\225C3CBCEB850204D860A6C7CC7724AF
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2310FC151CD4F185798FA0996B3524D7
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28572D2E2DE533256AC6B560EA573C22
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29C79786B109AC443B0DC7BFD61B1896
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ABB56EABB920EB59B04BDDD26A62083
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DABA02DFED47E352A2FA2EBDD6F6187
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\311567B4A9A002050BB9423FD73FB880
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\373FCED70D7F84E5FB5F3F7B76BEE024
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BE992C130B235E53A2937391FDCA35B
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DA5F64B3483DE549947A9164ACBAD21
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3ED93605BB9B6635E9D0D86615AF31F1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4759B017032BA185F9BA6F7DBC95A2D4
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A78ABCBB54E46E5482A3EE0AD66C39E
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F9E947B6B895EB5A86757FC5D3DB862
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4FEEA83BF72B97E43A2DF0EE4BE4F261
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\509EC7EFB89B7D942997574AB14037A4
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A730A9A3A61BF5BA70CA8A3B7C133B
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51A95A1D4CDE4F958A9451FBB39BF54A
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536133807DE80465BA6CD0A9742B7DE5
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E25036E68895D45B95E72D1C3C58C74
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60ECC80C54085B141A40437A96CA2618
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60FD8CD5BE007315CA3B5C7E41F24017
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\618E7D05458C4F257909ED9C8CDC0D66
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\621C21014D3C152529E2460FA6304EE3
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6241FF6F317CABD4EBBEE0DE9076BD94
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\636B9C23C79154B57AB561F39A139BFD
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65AAF0F0CB7F0B45F900FDF19CEAAF2B
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6879A5E348601C45986308CA84958E94
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A6F3B7A9805E1F5492A1020EEDF2341
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B1F5D204E4EEB342A5AD1D7E60D61BF
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7005A2A4DCF9DD7548137AB17E3A3AF3
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\712EAF07EE73CC65C822CC3BAE3B2483
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7947B301B2446E752A3FE06EAD7D26B5
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7987CE52D13E16258B0E1E3DB1BB0974
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BEED197C514FDA53901AE8DD8EF0891
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DFDCF03D46C34159BDE29FBDBF1ACF5
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\890F436B85B790A55A582B7307DA12CE
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C13DA6755F685B529615C8E92B3CA39
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D07CD9CB3E6BE652872BF06A1CCA782
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90841B1FC98200349925C88999866F17
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94194FDD4DF523E53A888D65722A135D
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A4223BBC9438CAD49BBE10B4E344B1DD
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A72F23B1D745C27508518132197BC982
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A89E2B6FB14D8275DA63D075171DA184
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9C43CD4001E9E4518B274AF9A0EFDA9
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AABA081CF7F19915FBB80B3BAF47CE63
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC2A0FFD0A1686D53A4E24D6E96949E4
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE5BDB2750259915D8442D4591A7717B
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1A79C71D5DC1C150B76B6ED11195DFC
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D497DB33974935488761F7C4C3D755
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B752EF3300008394886C402CC27B474F
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8C8BCC1206978D51A8B9EECBF806C53
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAD3576CEA646895B962F94754612791
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB4091512C8F4295E99CE2D061ED2020
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE6BBC9A31531F598794A62120B51C7
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C19162788CA4D235E829F88E2F771567
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C71F07DA356B66B5484A8E7F2ADEB7DC
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C96AD15EE8E887B56BAF2136A9088503
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C9E6B66ECC49D155888399C51D05C49E
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA360F24F0B214744BE40657FDA0B727
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE85F265816AE2D4E9B73C3E207E679C
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5389AEEA4A1E20428D045E86BCF643B
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5B62BB7BC607FB539585E2B7B6AFD16
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB027F01D4D53765C8E4FBE7DB77E07E
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC2EB492393411F5ABE8ED13C59FBF20
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDA2534BD056D1F44B6EC96AAA7F1F6E
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDCA763D4C48A105086B4CCCEE78043F
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEF7558C7CD27EF46AF802AFBE402675
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E05B987540A9E2849AAF9E5B06C27DA8
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E09F4A6B9D2A08B599AE9E38BFC93CD6
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E45D171E075A5425CBACF6631A45FA39
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E513C2076D90AD04F888BD762143F191
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F4C985459564F5B8DCFF2B3C7EBD27
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96E33222BAC06B57A1FA9D72951C945
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAA46CE9007F70A5CAFA5F26E5DDEBE5
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE43FF091A8714A599F33EF2533FB59A
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE790015CF30DAA569960905FF1651A0
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEB44C47185BD304D80FDF5A4BBE8F54
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F214EB834D2EC474CA76C1CDE306CF3A
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F25491036D0FA5D5FA6742F5742F151A
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6704141BAAF6884785EC6843143D6A7
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7507D4D4C310125E9A22BD909A41FB6
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F79C21D785419125595AC59458A6142D
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA15C90F092A60F53A4E0F88CED02968
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA1CF130B3D58B553833ACB6BE8AFAD4
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB0F1A18E4F0DBD509A42F4D4C05C02A
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD17ED194F1C2B457B4F6EF4AE8DEAF3
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\iminent.com

***** [ Internetbrowser ] *****

-\\ Internet Explorer v9.0.8112.16633


-\\ Mozilla Firefox v13.0.1 (de)

[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.Server", "hxxp://users.conduit.com");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.ToolbarName", "Softonic-de");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2009772");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolbar.com,CommunityToolbars.com,ForumToolbar.com,MyBlogToolbar.com,MyCity[...]
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.backendstorage.autocompletepro_enable", "31");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.backendstorage.autocompletepro_enable_auto", "31");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdown[...]
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CT2009772.uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2009772/CT2009772", "\"82777122b537b95554d05cb94c964b831\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://alert.services.conduit.com/Alerts/AlertServices.asmx/GetHostedFeedRss?alertID=492579&alertFeedId=488449", "\"0\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/492579/488449/DE", "\"0\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/909619/905414/DE", "\"0\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2009772", "\"1334647739\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=de-de", "oIwsta2spzadhjRgiY1Nhw==");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=de-de", "WiZSpHJzJ/uTUKvfHHyj/w==");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=de-de", "9H/gICSaMqbmx+Gd+8W4Sg==");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=de-de", "eJfMrdrGnhGHiiPiYjgAww==");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"8076e3ce381dcd1:0\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.engine.conduit-services.com/DLG.pkg?ver=3.3.3.2", "\"807dc126dd28cc1:0\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.11.0.3", "\"4ead38b3e6bcd1:0\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12.2.3", "\"4ead38b3e6bcd1:0\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2009772", "\"d76323372b05c3748a3d6b1c93a98292\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=0", "634356118310000000");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://settings.engine.conduit-services.com/?browser=FF&lut=3/13/2011 11:17:11 AM", "634356118310000000");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=EB_LOCALE", "\"90a6f50158fc69d971d4e5b58046cce2\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=de-de", "\"3a779855433a7a6268bdb0458a7b4d5e\"");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.EngineOwner", "ConduitEngine");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.EngineOwnerGuid", "engine@conduit.com");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.EngineOwnerToolbarId", "conduitengine");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.IsEngineShown", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.IsMyStuffImportedToEngine", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\*****\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\mdoh89q4.default\\conduitCommon\\modules\\3.12.2.3");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.12.2.3");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.MyGadgetsIntervalMM", 1440);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.OriginalEngineOwner", "ConduitEngine");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.OriginalEngineOwnerGuid", "engine@conduit.com");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.OriginalEngineOwnerToolbarId", "conduitengine");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "chrome://browser-region/locale/region.properties");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ToolbarsList", "CT2009772,ConduitEngine");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.ToolbarsList2", "CT2009772");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.alertDialogsGetterLastCheckTime", "Mon May 16 2011 07:02:01 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.alertInfoInterval", 1440);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Tue Jul 12 2011 17:39:56 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.locale", "en");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Wed Jul 13 2011 07:46:30 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1305622559");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.showTrayIcon", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.alert.userId", "{6fba208a-1d54-42a9-8d34-85cea4efe26c}");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.globalUserId", "cd9b6feb-cc6a-49ce-abed-db86c559de5e");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Mon May 07 2012 17:45:50 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.alertInfoInterval", 1440);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Sun May 13 2012 09:41:58 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.locale", "en");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Sun May 13 2012 09:41:29 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("CommunityToolbar.notifications.userId", "8eb8fb50-6b6b-4ee5-875b-7913c6ddf1e1");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.AppTrackingLastCheckTime", "Thu Jun 09 2011 20:12:13 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.CTID", "ConduitEngine");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.DialogsGetterLastCheckTime", "Sun Jul 10 2011 17:02:14 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.FirstServerDate", "05/16/2011 08");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.FirstTime", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.FirstTimeFF3", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.HasUserGlobalKeys", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.Initialize", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.InitializeCommonPrefs", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.InstalledDate", "Mon May 16 2011 07:02:01 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.IsMulticommunity", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.IsOpenThankYouPage", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.IsOpenUninstallPage", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.LanguagePackLastCheckTime", "Tue Jul 12 2011 14:09:45 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.LastLogin_3.3.3.2", "Wed Jul 13 2011 07:46:32 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.SearchFromAddressBarIsInit", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.SettingsLastCheckTime", "Wed Jul 13 2011 07:46:32 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.UserID", "UN49710388337859289");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.componentAlertEnabled", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.engineLocale", "de");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.enngineContextMenuLastCheckTime", "Tue Jul 12 2011 14:09:45 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.globalFirstTimeInfoLastCheckTime", "Wed Jul 13 2011 07:46:32 GMT+0200");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.initDone", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.isAppTrackingManagerOn", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("ConduitEngine.usagesFlag", 1);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("browser.search.selectedEngine", "Vosteran");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?affID=100478&tt=290412_4_vs&babsrc=NT_ss&mntrId=ccc35b19000000000000544249676659");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.atylerkeith11aolcom61796.61796.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22amazon.com%22%2C%22anthropologie.com[...]
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.atylerkeith11aolcom61796.61796.internaldb.__ICM_LITE__fifty_test_rules.value", "%7B%22DE%22%3A%7B%22ALL%22%3A%5B%22anastasiadate.com%22%2C%22hxxp%3A//www.holasearch.com%22%2C%22m[...]
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.atylerkeith11aolcom61796.61796.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%7B%22urls%[...]
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.aflt", "_#stonicde");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.fcmdVrsn", "1.2.7.5.4");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.firstRun", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.first_time", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.id", "_#921ad1b386734e2a8b0baa7e5d56a836");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.instlDay", "_#15207");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.lastActv", "21");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.prtnrId", "_#facemoods.com");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.sid", "_#921ad1b386734e2a8b0baa7e5d56a836");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.uninst", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.update", "_#v1.4.0");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.facemoods.vrsn", "_#1.4.17.5");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.srchvstrn.hmpgUrl", "hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtA[...]
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.srchvstrn.newTabUrl", "hxxp://vosteran.com/?f=2&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1B[...]
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.srchvstrn.prtnrId", "WSE_Vosteran");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.srchvstrn.srchPrvdr", "Vosteran");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.srchvstrn.tlbrSrchUrl", "hxxp://vosteran.com/?f=3&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V[...]
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.allowSendURL", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.engineVerified", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.geolastmodified", 1327938943);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.hiddenElements", "itb_options");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.history", "htFreizeitpark%20Villeneuve%20sur%20LotVilleneuve%20sur%20Lotneustadt%20bei%20coburg%20parksecurity%20analysis%20virensecurity%20analysiszoo%20erfurtzoo%[...]
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.hpChange", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.icqgeo", 49);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.installTime", "1328520158");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.newtab_most_visited_state", "1");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.newtab_state", "1");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.numberOfSearches", 0);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.previousFFVersion", "9.0.1");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.skip_default_search", "no");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.suggestions", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.uninstStatSent", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.uniqueID", "124816149512481614951248260972986");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.usageStatstTimestamp", 1328469333);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.userHpApproved", true);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.voucherHideClicks", 0);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.voucherRedeemClicks", 0);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.voucherWasShown", 0);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.xmlEnableSuggestions", false);
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("icqtoolbar.xmlLanguage", "de");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("sweetim.toolbar.mode.debug", "false");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("sweetim.toolbar.search.external", "<?xml version=\"1.0\"?><TOOLBAR><EXTERNAL_SEARCH engine=\"hxxp://*google.*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://search.yahoo.com/*\" param=\"[...]
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("sweetim.toolbar.search.history.capacity", "10");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("sweetim.toolbar.simapp_id", "{C922DC41-24F3-4936-92D2-71C126473C64}");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("sweetim.toolbar.urls.homepage", "hxxp://home.sweetim.com");
[mdoh89q4.default\prefs.js] - Zeile Gelöscht : user_pref("sweetim.toolbar.version", "1.0.0.10");

-\\ Google Chrome v41.0.2272.89

[C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}
[C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://start.facemoods.com/?a=stonicde&s={searchTerms}&f=4
[C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://vosteran.com/results.php?f=4&q={searchTerms}&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
[C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://vosteran.com/results.php?f=4&q={searchTerms}&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=

*************************

AdwCleaner[R0].txt - [52995 Bytes] - [14/03/2015 15:25:35]
AdwCleaner[S0].txt - [54335 Bytes] - [14/03/2015 15:29:38]

########## EOF - \AdwCleaner\AdwCleaner[S0].txt - [54395  Bytes] ##########

--- --- ---

Jami87 15.03.2015 10:28

FRST Logfile:

FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by ***** (ATTENTION: The logged in user is not administrator) on ***** on 14-03-2015 19:17:13
Running from C:\Users\*****\Downloads
Loaded Profiles: ***** (Available profiles: ***** & ***** 2)
Platform: Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

Failed to access process -> smss.exe
Failed to access process -> csrss.exe
Failed to access process -> wininit.exe
Failed to access process -> csrss.exe
Failed to access process -> services.exe
Failed to access process -> lsass.exe
Failed to access process -> lsm.exe
Failed to access process -> winlogon.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> SLsvc.exe
Failed to access process -> svchost.exe
Failed to access process -> DisplayLinkService.exe
Failed to access process -> svchost.exe
Failed to access process -> spoolsv.exe
Failed to access process -> sched.exe
Failed to access process -> svchost.exe
Failed to access process -> SASCore.exe
Failed to access process -> NetworkLicenseServer.exe
Failed to access process -> PhotoshopElementsFileAgent.exe
Failed to access process -> avguard.exe
Failed to access process -> svchost.exe
Failed to access process -> E_S40RP7.EXE
Failed to access process -> FreemakeUtilsService.exe
Failed to access process -> LVPrcSrv.exe
Failed to access process -> lxeacoms.exe
Failed to access process -> mbamscheduler.exe
Failed to access process -> Netzmanager_Service.exe
Failed to access process -> svchost.exe
Failed to access process -> rfx-server.exe
Failed to access process -> psia.exe
Failed to access process -> stacsv.exe
Failed to access process -> svchost.exe
Failed to access process -> ULCDRSvr.exe
Failed to access process -> VESMgr.exe
Failed to access process -> VCSW.exe
Failed to access process -> svchost.exe
Failed to access process -> SearchIndexer.exe
Failed to access process -> WUDFHost.exe
Failed to access process -> XAudio.exe
Failed to access process -> Avira.OE.ServiceHost.exe
Failed to access process -> VESMgrSub.exe
Failed to access process -> VzCdbSvc.exe
Failed to access process -> VzFw.exe
Failed to access process -> avshadow.exe
Failed to access process -> DisplayLinkManager.exe
(Sony Corporation) C:\Program Files\Sony\VCM Manager Setting\VcmMgrNotification.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
Failed to access process -> WmiPrvSE.exe
Failed to access process -> svchost.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdSync.exe
() C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
() C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
Failed to access process -> svchost.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(Akamai Technologies, Inc.) C:\Users\*****\AppData\Local\Akamai\netsession_win.exe
() C:\Users\*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(Akamai Technologies, Inc.) C:\Users\*****\AppData\Local\Akamai\netsession_win.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
Failed to access process -> WmiPrvSE.exe
Failed to access process -> WPFFontCache_v0400.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
Failed to access process -> PresentationFontCache.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
Failed to access process -> SearchProtocolHost.exe
Failed to access process -> WmiApSrv.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
(Farbar) C:\Users\*****\Downloads\FRST(1).exe
Failed to access process -> SearchFilterHost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdSync.exe [215552 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [37296 2011-09-07] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-03-30] (Adobe Systems Incorporated)
HKLM\...\Run: [lxeamon.exe] => C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe [770728 2010-01-18] ()
HKLM\...\Run: [EzPrint] => C:\Program Files\Lexmark S300-S400 Series\ezprint.exe [139944 2010-01-18] ()
HKLM\...\Run: [UVS10 Preload] => C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [36864 2006-08-09] (Ulead Systems, Inc.)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [703280 2015-03-10] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [NvSvc] => RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\RunOnce: [*WerKernelReporting] => C:\Windows\SYSTEM32\WerFault.exe [217088 2009-04-11] (Microsoft Corporation)
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll (Sony Corporation)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [466144 2014-11-27] (Sony)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [3905920 2012-06-05] (SUPERAntiSpyware.com)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Akamai NetSession Interface] => C:\Users\*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Amazon Cloud Player] => C:\Users\*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3145536 2014-05-08] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON SX430 Series (Kopie 1)] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHAE.EXE [212480 2012-05-18] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON Stylus DX8400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE [182272 2007-04-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-06-26] (Google)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk
ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\DSL-Manager\DslMgr.exe (No File)
Startup: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk
ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG)
Startup: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22] (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-20] (Oracle Corporation)
BHO: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2011-09-16] (Google Inc.)
BHO: CBrowserHelperObject Object -> {CA6319C0-31B7-401E-A518-A07C3DB8F777} -> C:\Program Files\Google BAE\BAE.dll [2006-06-23] (Your Company Name)
BHO: Lexmark  -> {D2C5E510-BE6D-42CC-9F61-E4F939078474} -> C:\Program Files\Lexmark Printable Web\bho.dll [2008-05-22] ()
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-20] (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
Toolbar: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> No Name - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} -  No File
DPF: {00000161-9980-0010-8000-00AA00389B71} hxxp://codecs.microsoft.com/codecs/i386/msaud.cab
DPF: {33564D57-9980-0010-8000-00AA00389B71} hxxp://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-01-25] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\mdoh89q4.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-05] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2007-07-12] (DivX, Inc)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2013-06-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-20] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-16] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2011-06-07] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3850073437-3280287025-709413035-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-03-09] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2011-06-07] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-06-04] (Apple Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\googledesktop.xml [2010-06-26]
FF Extension: Avira Browser Safety - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\mdoh89q4.default\Extensions\abs@avira.com [2015-02-20]
FF Extension: DownloadHelper - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\mdoh89q4.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-06]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2012-12-12]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{D250ED92-1791-42C4-B441-E90BF89B9BEF}] - C:\Users\*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF}
FF Extension: XULRunner - C:\Users\*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF} [2011-04-02]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR HomePage: Default -> hxxp://vosteran.com/?f=1&a=&cd=&cr=&ir=
CHR StartupUrls: Default -> "hxxp://vosteran.com/?f=7&a=&cd=&cr=&ir=", "hxxp://www.google.com/"
CHR Profile: C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avira Browser Safety) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-02-20]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-13]
CHR Extension: (Google Wallet) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-31]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2011-08-12] (SUPERAntiSpyware.com) [File not signed]
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AdobeActiveFileMonitor5.0; C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [108712 2006-12-22] ()
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [432888 2015-03-10] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [432888 2015-03-10] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe [443752 2008-08-18] (DisplayLink Corp.)
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
S4 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed]
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [74752 2011-12-30] (Freemake) [File not signed]
S4 GoogleDesktopManager-051210-111108; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-06-26] (Google)
S2 gupdate1ca0ac0f00c0a80; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
R2 iphlpsvc; C:\Windows\System32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
R2 lmhosts; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeaserv.exe [193192 2010-04-14] (Lexmark International, Inc.)
R2 lxea_device; C:\Windows\system32\lxeacoms.exe [598696 2010-01-07] ( )
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [File not signed]
R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) [File not signed]
R2 NlaSvc; C:\Windows\System32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
R2 nsi; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 OMSI download service; C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112 2009-04-30] () [File not signed]
S4 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [File not signed]
R2 Radio.fx; C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe [3673944 2011-11-18] ()
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [994360 2011-07-29] (Secunia)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [File not signed]
R2 STacSV; C:\Windows\system32\stacsv.exe [94208 2007-06-13] (SigmaTel, Inc.)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-09-28] (Ulead Systems, Inc.) [File not signed]
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2007-06-28] (Sony Corporation) [File not signed]
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182392 2007-07-12] (Sony Corporation)
S3 VAIOMediaPlatform-IntegratedServer-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2523136 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-Mobile-Gateway; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [499712 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe [745472 2007-01-10] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [292152 2007-07-05] (Sony Corporation)
R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [274432 2007-06-28] (Sony Corporation) [File not signed]
R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2007-08-28] (Sony Corporation) [File not signed]
R2 VzFw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe [131072 2007-08-28] (Sony Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 CLTNetCnService; "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-11-24] (Avira Operations GmbH & Co. KG)
S3 dlkmd; C:\Windows\system32\drivers\dlkmd.sys [287856 2008-08-18] (DisplayLink Corp.)
R0 dlkmdldr; C:\Windows\System32\drivers\dlkmdldr.sys [13424 2008-08-18] (DisplayLink Corp.)
R3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25624 2009-04-30] ()
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-03-14] (Malwarebytes Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia)
S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [86824 2008-10-21] (MCCI Corporation)
S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [15016 2008-10-21] (MCCI Corporation)
S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [114600 2008-10-21] (MCCI Corporation)
S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [108328 2008-10-21] (MCCI Corporation)
S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [26024 2008-10-21] (MCCI Corporation)
S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [104616 2008-10-21] (MCCI Corporation)
S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [109736 2008-10-21] (MCCI Corporation)
S3 s116bus; C:\Windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\Windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\Windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\Windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\Windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\Windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\Windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
S3 s3017bus; C:\Windows\System32\DRIVERS\s3017bus.sys [83880 2007-12-10] (MCCI Corporation)
S3 s3017mdfl; C:\Windows\System32\DRIVERS\s3017mdfl.sys [15016 2007-12-10] (MCCI Corporation)
S3 s3017mdm; C:\Windows\System32\DRIVERS\s3017mdm.sys [110632 2007-12-10] (MCCI Corporation)
S3 s3017mgmt; C:\Windows\System32\DRIVERS\s3017mgmt.sys [104616 2007-12-10] (MCCI Corporation)
S3 s3017nd5; C:\Windows\System32\DRIVERS\s3017nd5.sys [25512 2007-12-10] (MCCI Corporation)
S3 s3017obex; C:\Windows\System32\DRIVERS\s3017obex.sys [100648 2007-12-10] (MCCI Corporation)
S3 s3017unic; C:\Windows\System32\DRIVERS\s3017unic.sys [110120 2007-12-10] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-11-24] (Avira GmbH)
R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [326656 2007-06-13] (SigmaTel, Inc.)
S3 StkTMini; C:\Windows\System32\Drivers\StkTMini.sys [468096 2007-11-15] (Syntek)
R3 TelekomNM3; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM3.sys [35040 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
R3 ti21sony; C:\Windows\System32\drivers\ti21sony.sys [812544 2007-06-06] (Texas Instruments)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\Users\*****-~2\AppData\Local\Temp\catchme.sys [X]
S3 dsltestSp5; System32\Drivers\dsltestSp5.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-14 19:15 - 2015-03-14 19:15 - 01135104 _____ (Farbar) C:\Users\*****\Downloads\FRST(1).exe
2015-03-14 18:08 - 2015-03-14 18:08 - 01388333 _____ (Thisisu) C:\Users\*****\Downloads\JRT(1).exe
2015-03-14 16:39 - 2015-03-14 16:39 - 01388333 _____ (Thisisu) C:\Users\*****\Downloads\JRT.exe
2015-03-14 15:25 - 2015-03-14 15:33 - 00000000 ____D () C:\AdwCleaner
2015-03-14 15:23 - 2015-03-14 15:23 - 02171392 _____ () C:\Users\*****\Downloads\AdwCleaner_4.112.exe
2015-03-14 15:20 - 2015-03-14 19:14 - 00001211 _____ () C:\Users\*****\Desktop\mbam.txt
2015-03-14 13:02 - 2015-03-14 13:03 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-14 13:00 - 2015-03-14 13:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-14 13:00 - 2015-03-14 13:00 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-03-14 13:00 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-14 13:00 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-14 12:57 - 2015-03-14 12:57 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\*****\Downloads\mbam-setup-2.0.4.1028.exe
2015-03-13 23:17 - 2015-03-13 23:17 - 00002080 _____ () C:\Users\*****\Desktop\ComboFix - Verknüpfung.lnk
2015-03-13 23:02 - 2015-03-13 23:02 - 00207325 _____ () C:\Users\*****\Desktop\ComboFix.txt
2015-03-13 22:44 - 2015-03-13 22:44 - 00207509 _____ () C:\ComboFix.txt
2015-03-13 22:06 - 2015-03-13 22:44 - 00000000 ____D () C:\ComboFix
2015-03-13 22:04 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-03-13 22:04 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-03-13 22:04 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-03-13 22:01 - 2015-03-13 22:44 - 00000000 ____D () C:\Qoobox
2015-03-13 21:58 - 2015-03-13 21:58 - 05613296 ____R (Swearware) C:\Users\*****\Downloads\ComboFix.exe
2015-03-13 21:09 - 2015-03-13 21:09 - 00000000 ____D () C:\Program Files\VS Revo Group
2015-03-13 21:00 - 2015-03-13 21:00 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\*****\Downloads\revosetup95.exe
2015-03-13 19:34 - 2015-03-13 19:35 - 00001272 _____ () C:\Users\*****\Desktop\Gmer-19357 - Verknüpfung.lnk
2015-03-12 19:54 - 2015-03-12 21:39 - 00056233 _____ () C:\Users\*****\Desktop\FRST.txt
2015-03-12 19:53 - 2015-03-12 21:40 - 00047185 _____ () C:\Users\*****\Desktop\Addition.txt
2015-03-12 19:51 - 2015-03-12 19:52 - 00047265 _____ () C:\Users\*****\Downloads\Addition.txt
2015-03-12 19:51 - 2015-03-12 19:51 - 00380416 _____ () C:\Users\*****\Downloads\Gmer-19357.exe
2015-03-12 19:50 - 2015-03-14 19:17 - 00032927 _____ () C:\Users\*****\Downloads\FRST.txt
2015-03-12 19:50 - 2015-03-12 19:50 - 00380416 _____ () C:\Users\*****\Downloads\9w24tho6.exe
2015-03-12 19:49 - 2015-03-14 19:17 - 00000000 ____D () C:\FRST
2015-03-12 19:49 - 2015-03-12 19:49 - 01135104 _____ (Farbar) C:\Users\*****\Downloads\FRST.exe
2015-03-12 19:48 - 2015-03-12 19:49 - 00000492 _____ () C:\Windows\system32\defogger_disable.log
2015-03-12 19:46 - 2015-03-12 19:46 - 00050477 _____ () C:\Users\*****\Downloads\Defogger.exe
2015-03-11 19:55 - 2015-01-29 02:35 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-11 19:51 - 2015-01-29 02:35 - 00975360 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-11 19:44 - 2015-02-26 01:18 - 02064384 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-11 17:14 - 2015-02-20 03:03 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-11 17:14 - 2015-02-20 01:28 - 00296960 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-11 17:10 - 2015-02-26 03:01 - 03604408 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-03-11 17:10 - 2015-02-26 03:01 - 03552184 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-11 17:10 - 2015-01-09 03:04 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-11 17:10 - 2015-01-09 01:18 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-11 17:08 - 2015-01-21 03:02 - 00807936 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-11 17:05 - 2015-03-06 05:01 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-11 17:03 - 2014-10-13 02:12 - 02264064 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-11 17:02 - 2015-02-18 03:02 - 11587584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-10 23:52 - 2015-03-13 22:29 - 00000000 ____D () C:\Program Files\861437cb-3ee3-405d-bcea-149a4dc68fde
2015-03-10 23:51 - 2015-03-11 19:50 - 00000000 ____D () C:\ProgramData\{c5d7b5bd-e56a-bd77-c5d7-7b5bde56d6f7}
2015-03-10 23:44 - 2015-03-10 23:46 - 60302800 _____ (Sony Corporation ) C:\Users\*****\Downloads\EP0000185336(1).exe
2015-03-10 21:26 - 2015-02-21 18:37 - 12375040 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-10 21:26 - 2015-02-21 18:34 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-10 21:26 - 2015-02-21 18:29 - 09747968 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-10 21:26 - 2015-02-21 18:28 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-10 21:26 - 2015-02-21 18:22 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-10 21:26 - 2015-02-21 18:21 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-10 21:26 - 2015-02-21 18:21 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 01803264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-10 21:26 - 2015-02-21 18:18 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-10 21:26 - 2015-02-21 18:17 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-10 20:19 - 2015-03-10 23:27 - 182414224 _____ (NVIDIA Corporation) C:\Users\*****\Downloads\307.83-notebook-winvista-32bit-international-whql.exe
2015-03-06 15:42 - 2015-03-06 15:42 - 00001879 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2015-02-21 13:06 - 2015-02-21 13:06 - 00000000 ____D () C:\Users\*****\AppData\Roaming\Avira
2015-02-21 12:36 - 2015-03-10 20:05 - 00136216 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-02-21 12:36 - 2015-03-10 20:05 - 00105864 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-02-21 12:36 - 2014-11-24 10:23 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2015-02-21 12:24 - 2015-02-21 12:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-02-21 12:24 - 2015-02-21 12:24 - 00001002 _____ () C:\Users\Public\Desktop\Avira.lnk
2015-02-21 12:23 - 2015-02-21 12:23 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-20 23:47 - 2015-02-20 23:54 - 160782960 _____ () C:\Users\*****\Downloads\avira_free_antivirus_de_15.0.8.624.exe
2015-02-20 23:45 - 2015-02-20 23:46 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\*****\Downloads\avira_de_av___ws(2).exe
2015-02-20 22:38 - 2015-02-20 22:38 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\*****\Downloads\avira_de_av___ws.exe
2015-02-20 22:38 - 2015-02-20 22:38 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\*****\Downloads\avira_de_av___ws(1).exe
2015-02-20 22:25 - 2015-02-20 22:25 - 00639912 _____ (Oracle Corporation) C:\Users\*****\Downloads\jxpiinstall(2).exe
2015-02-20 20:52 - 2015-02-20 20:45 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2015-02-20 20:52 - 2015-02-20 20:44 - 00176552 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2015-02-20 20:52 - 2015-02-20 20:44 - 00176552 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2015-02-20 20:52 - 2013-06-18 19:48 - 00867240 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll
2015-02-20 20:52 - 2013-06-18 19:48 - 00789416 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll
2015-02-20 20:45 - 2015-02-20 20:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-02-20 20:42 - 2015-02-20 21:01 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-20 20:41 - 2015-02-20 22:12 - 232935472 _____ (NVIDIA Corporation) C:\Users\*****\Downloads\307.83-notebook-winvista-64bit-international-whql.exe
2015-02-20 20:32 - 2015-02-20 20:33 - 00639912 _____ (Oracle Corporation) C:\Users\*****\Downloads\jxpiinstall(1).exe
2015-02-17 16:04 - 2015-02-17 16:04 - 01202848 _____ (Microsoft Corporation) C:\Windows\system32\FM20.DLL
2015-02-12 17:43 - 2014-11-26 03:05 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-12 17:08 - 2015-01-15 05:13 - 00440760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-12 17:07 - 2014-12-08 02:59 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-14 19:18 - 2009-07-22 12:50 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-14 19:15 - 2011-06-30 11:07 - 00001356 _____ () C:\Users\*****\AppData\Local\d3d9caps.dat
2015-03-14 19:10 - 2006-11-02 11:33 - 01594468 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-14 19:05 - 2013-02-05 20:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-14 18:54 - 2011-01-02 17:31 - 00190700 _____ () C:\ProgramData\lxeascan.log
2015-03-14 18:52 - 2013-07-13 10:20 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
2015-03-14 18:49 - 2006-11-02 14:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-14 18:49 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-14 18:49 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-14 18:48 - 2006-11-02 14:01 - 00032558 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-03-14 18:47 - 2008-02-06 14:54 - 01231967 _____ () C:\Windows\WindowsUpdate.log
2015-03-14 18:47 - 2007-07-20 14:34 - 00000012 _____ () C:\Windows\bthservsdp.dat
2015-03-14 16:27 - 2008-02-16 14:49 - 00002631 _____ () C:\Users\*****\Desktop\Microsoft Office Word 2007.lnk
2015-03-14 15:29 - 2009-07-22 12:09 - 00000000 ____D () C:\ProgramData\ICQ
2015-03-14 14:20 - 2007-07-20 15:28 - 01550750 _____ () C:\Windows\PFRO.log
2015-03-14 13:00 - 2012-05-07 19:58 - 00000899 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-14 13:00 - 2012-05-07 19:58 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-14 12:37 - 2011-08-30 05:40 - 00001052 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-03-13 22:39 - 2006-11-02 11:23 - 00000215 _____ () C:\Windows\system.ini
2015-03-13 22:29 - 2012-09-29 13:22 - 00000000 ____D () C:\Program Files\7-Zip2
2015-03-13 22:24 - 2010-03-04 19:47 - 00000000 ____D () C:\ProgramData\TEMP
2015-03-13 19:55 - 2010-08-25 18:12 - 314994005 _____ () C:\Windows\MEMORY.DMP
2015-03-13 19:55 - 2008-05-16 21:19 - 00000000 ____D () C:\Windows\Minidump
2015-03-13 19:25 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****\AppData\Roaming\nvModes.001
2015-03-13 18:18 - 2013-06-21 13:43 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-03-13 18:18 - 2012-05-23 06:59 - 00000000 ____D () C:\Users\***** 2
2015-03-13 18:18 - 2008-02-06 16:25 - 00000000 ____D () C:\Users\*****
2015-03-13 18:18 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\spool
2015-03-13 18:18 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\registration
2015-03-11 20:31 - 2006-11-02 13:47 - 00397352 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-11 19:54 - 2007-07-20 16:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-11 19:43 - 2013-07-26 08:36 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-11 19:01 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****\AppData\Roaming\nvModes.dat
2015-03-11 17:16 - 2006-11-02 11:24 - 119837696 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2015-03-11 00:08 - 2010-08-25 19:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-09 20:33 - 2012-06-24 10:07 - 00000000 ____D () C:\Users\*****\AppData\Local\Akamai
2015-03-09 20:33 - 2011-05-25 12:59 - 00000000 ____D () C:\ProgramData\Ulead Systems
2015-03-09 20:33 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\Msdtc
2015-03-07 21:58 - 2008-02-10 11:56 - 00000000 ____D () C:\Users\*****\AppData\Roaming\Skype
2015-03-07 17:01 - 2011-03-01 16:18 - 00045024 _____ () C:\ProgramData\lxea.log
2015-03-06 15:48 - 2007-07-20 14:51 - 00794682 _____ () C:\Windows\DPINST.LOG
2015-03-06 15:42 - 2007-07-20 16:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-03-06 15:41 - 2007-07-20 15:01 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-03-01 19:08 - 2010-01-02 10:33 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2015-03-01 17:13 - 2011-07-16 17:42 - 00116736 _____ () C:\Users\*****\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-24 04:23 - 2009-10-03 01:27 - 00246920 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-02-21 12:34 - 2013-08-13 05:16 - 00000000 ____D () C:\Program Files\Avira
2015-02-21 12:23 - 2012-04-26 05:31 - 00000000 ____D () C:\ProgramData\Avira
2015-02-21 12:18 - 2015-01-31 19:22 - 00000140 _____ () C:\Users\*****\AppData\Roaming\WB.CFG
2015-02-20 20:50 - 2008-08-31 09:27 - 00000000 ____D () C:\Program Files\Java
2015-02-20 20:49 - 2008-08-31 09:26 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-02-20 20:44 - 2013-06-18 19:50 - 00272296 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2015-02-20 19:38 - 2013-07-25 22:43 - 00000000 ____D () C:\ProgramData\Netzmanager
2015-02-15 21:13 - 2015-02-10 17:51 - 00048735 _____ () C:\Users\*****\Documents\Kindertanzvertrag.odt

==================== Files in the root of some directories =======

2008-02-25 14:53 - 2009-05-15 13:41 - 0214211 _____ () C:\Users\*****\AppData\Roaming\mdb.bin
2009-02-03 21:26 - 2011-02-28 15:58 - 1013324 _____ () C:\Users\*****\AppData\Roaming\mdbu.bin
2008-02-06 16:25 - 2015-03-13 19:25 - 0252513 _____ () C:\Users\*****\AppData\Roaming\nvModes.001
2008-02-06 16:25 - 2015-03-11 19:01 - 0252513 _____ () C:\Users\*****\AppData\Roaming\nvModes.dat
2015-01-25 17:12 - 2015-01-25 17:12 - 0001248 _____ () C:\Users\*****\AppData\Roaming\PWKN
2015-01-25 17:12 - 2015-01-25 17:12 - 0002086 _____ () C:\Users\*****\AppData\Roaming\VM
2015-01-31 19:22 - 2015-02-21 12:18 - 0000140 _____ () C:\Users\*****\AppData\Roaming\WB.CFG
2008-02-11 18:50 - 2009-04-23 20:03 - 0000594 _____ () C:\Users\*****\AppData\Roaming\wklnhst.dat
2011-06-30 11:07 - 2015-03-14 19:15 - 0001356 _____ () C:\Users\*****\AppData\Local\d3d9caps.dat
2011-07-16 17:42 - 2015-03-01 17:13 - 0116736 _____ () C:\Users\*****\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-02 17:39 - 2015-02-02 17:39 - 0000010 _____ () C:\Users\*****\AppData\Local\DSI.DAT
2013-10-29 10:10 - 2013-10-29 10:10 - 0000428 _____ () C:\Users\*****\AppData\Local\psppirerc
2013-10-29 10:10 - 2013-10-29 10:10 - 0000759 _____ () C:\Users\*****\AppData\Local\recently-used.xbel
2011-07-07 07:51 - 2011-07-07 07:52 - 0000000 _____ () C:\Users\*****\AppData\Local\{64525025-8827-4190-A310-38F60339D8C0}
2008-02-21 11:45 - 2008-02-21 11:45 - 0000305 _____ () C:\ProgramData\addr_file.html
2009-02-05 21:42 - 2009-02-05 21:42 - 0000056 _____ () C:\ProgramData\ezsidmv.dat
2011-01-02 17:39 - 2011-01-02 17:39 - 0000252 _____ () C:\ProgramData\FastPics.log
2011-03-01 16:18 - 2015-03-07 17:01 - 0045024 _____ () C:\ProgramData\lxea.log
2011-01-02 17:40 - 2011-01-02 17:42 - 0000438 _____ () C:\ProgramData\lxeaDiagnostics.log
2011-01-02 17:44 - 2011-06-02 09:10 - 0004439 _____ () C:\ProgramData\lxeaJSW.log
2011-01-02 17:31 - 2015-03-14 18:54 - 0190700 _____ () C:\ProgramData\lxeascan.log
2011-01-02 17:27 - 2011-01-02 17:27 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

Some content of TEMP:
====================
C:\Users\*****\AppData\Local\temp\avgnt.exe


Some zero byte size files/folders:
==========================
C:\Windows\System32\nsprs.dll
C:\Windows\System32\serauth1.dll
C:\Windows\System32\serauth2.dll
C:\Windows\System32\ssprs.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

==================== End Of Log ============================

--- --- ---

--- --- ---

--- --- ---


So, nun hat es mit der JRT-Datei doch noch geklappt, aber ich finde sie nicht mehr :-(

Gibt es irgendwie eine Möglichkeit, die Datei doch noch zu finden oder sollte ich den Scan nochmal machen? (bzgl. JRT)

schrauber 15.03.2015 13:59

Nee passt schon. Aber unsere Tools brauchen immer Adminrechte, FRST lief schon wieder ohne Adminrechte.



ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme? :)

Jami87 15.03.2015 14:44

Wie öffne ich den FRST mit Adminrechten?!?

Bei ESET kommt die Fehlermeldung "Updates funktionieren nicht. Ist ein Proxy eingerichtet?"?!?

schrauber 15.03.2015 20:08

lass ESET weg, mach dafür das hier:

Lade Dir bitte von hier Emsisoft Emergency Kit Download Emsisoft Emergency Kit herunter.
  • Bitte installiere das Programm in den vorgegebenen Pfad.
  • Starte das Programm durch Doppelklick der Desktopverknüpfung.
  • Das EEK ist nach dem Laden der Malwaresignaturen für den Scan bereit.
  • Folge nun bitte der bebilderten Bildanleitung zu Emergency Kit, entferne alle Funde und poste am Ende des Scans bzw. der Bereinigung das Log.


Jami87 15.03.2015 21:30

Oh, ESET läuft jetzt gerade (nachdem ich das Internet angeschaltet habe) - seit über 5h - soll ich das andere dennoch noch machen?

Code:

ESETSmartInstaller@High as downloader log:
all ok
ESETSmartInstaller@High as downloader log:
all ok
# version=7
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=3d83703d8e9a2b42adc31e9054d2558f
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-05-09 08:46:07
# local_time=2012-05-09 10:46:07 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1033
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode=768 16777215 100 0 125694743 125694743 0 0
# compatibility_mode=1792 16777215 100 0 1128022 1128022 0 0
# compatibility_mode=5892 16776573 100 100 154443 174075447 0 0
# compatibility_mode=8192 67108863 100 0 39669 39669 0 0
# scanned=251245
# found=11
# cleaned=0
# scan_time=10448
C:\Users\*****-*****\AppData\Local\Temp\FreemakeVideoConverter_3.0.1.3.exe        Win32/Toolbar.Zugo application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\AppData\Local\Temp\ICReinstall\Facemoods.exe        probably a variant of Win32/InstallCore.A application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\AppData\Local\Temp\is1293846689\MyBabylonTB.exe        Win32/Toolbar.Babylon application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Facemoods(1).exe        probably a variant of Win32/InstallCore.A application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Facemoods.exe        probably a variant of Win32/InstallCore.A application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe        Win32/Toolbar.Widgi application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe        Win32/Toolbar.Widgi application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe        Win32/Toolbar.Widgi application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe        Win32/Toolbar.Widgi application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe        Win32/Toolbar.Widgi application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe        Win32/StartPage.OIE trojan (unable to clean)        00000000000000000000000000000000        I
ESETSmartInstaller@High as downloader log:
all ok
esets_scanner_update returned -1 esets_gle=12
esets_scanner_update returned -1 esets_gle=12
esets_scanner_update returned -1 esets_gle=45315
esets_scanner_update returned -1 esets_gle=12
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=3d83703d8e9a2b42adc31e9054d2558f
# engine=22917
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2015-03-15 08:00:08
# local_time=2015-03-15 09:00:08 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode_1=''
# compatibility_mode=5892 16776574 100 100 167110 263982336 0 0
# scanned=328209
# found=41
# cleaned=0
# scan_time=21926
sh=8992F72873D09212597E582A16F8D9BC60E6A22A ft=1 fh=e21391a34e842ffc vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files\Common Files\DVDVideoSoft\TB\ConduitInstaller.exe.vir"
sh=43A205985790C47A7E611FA2D3CAB9B4EB59121F ft=1 fh=5bd497922ffc5928 vn="Variante von Win32/Toolbar.Babylon.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-*****\AppData\Local\Babylon\Setup\BExternal.dll.vir"
sh=1B2801DD02E9D9B7F27789ED161BC1761943E921 ft=1 fh=8073091e54552e56 vn="Variante von Win32/Toolbar.Babylon.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-*****\AppData\Local\Babylon\Setup\IECookieLow.dll.vir"
sh=3A9D7D4639B5EB8BEC42DF972C44493690EAADFC ft=1 fh=b8a59cf28e1dc165 vn="Variante von Win32/Toolbar.Babylon.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-*****\AppData\Local\Babylon\Setup\Setup.exe.vir"
sh=609F2D4B1AE5C7177C44CCAF9309EFD16FC9E42D ft=1 fh=8551c46845849e5f vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-***** 2\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe.vir"
sh=22B1B0EAFDBB1229336F9D8187F9905A5DDEDF89 ft=1 fh=406c1e66a46fc082 vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-***** 2\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe.vir"
sh=88CA2B9C5E587306B08CF6EA239CA72775495695 ft=1 fh=b15f3040528a74fd vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-***** 2\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe.vir"
sh=A2F035C707F31E9CCBD09E17A9F645A25EBB636A ft=1 fh=c71c0011cd2e60c0 vn="Win32/LiveSupport.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files\LiveSupport\LiveSupport.exe.vir"
sh=F7AF09F36F4983DB24F389676D2D6EFF067C672D ft=1 fh=8ed8b1cf87d17603 vn="Win32/LiveSupport.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files\LiveSupport\LiveSupport_deskband_x32.dll.vir"
sh=47B40F8180A8413DFB3B51EB9BFF551D887BCA76 ft=1 fh=edd7ecef82c6227b vn="Win64/LiveSupport.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files\LiveSupport\LiveSupport_deskband_x64.dll.vir"
sh=6408D61C9809E743126596AF762ABA61C67626F2 ft=1 fh=11b2d7f1750c67b8 vn="Win32/Adware.DsiLoad.A Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\*****-*****\AppData\Local\dsisetup38304172.exe.vir"
sh=DDD7E789E67132CF6C5D8169B2F46E3498FCA60F ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\AppData\Roaming\PWKN"
sh=9413821E4285C46DAF48156B472065FC2D763FE8 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\AppData\Roaming\VM"
sh=C07194A512E1C3A23F740679260BD3B75B6F9FAB ft=1 fh=83f7d6f91ffcac4f vn="Variante von Win32/Downloader.JooSoft.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe"
sh=4C5833324A666FAB1CBFE2795F34DCABFAF13490 ft=1 fh=86d131aa1ffcac4f vn="Variante von Win32/Downloader.JooSoft.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe"
sh=F53F848DCDB4D466AB039A57FDDF238C42F64EA1 ft=1 fh=9084f26b1ffcac4f vn="Variante von Win32/Downloader.JooSoft.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe"
sh=5F80BC3A714EAD6927AF2B94E29935F1D9C370BC ft=1 fh=3be73f1765228613 vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\dvdburnersetup.exe"
sh=DC69F69E0FE7B153118C9F4D4E59318027CF29C1 ft=1 fh=e9313ee6409597e8 vn="Variante von Win32/FileTypeAssistant.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe"
sh=1951424B2C9396E09E6ED9BC84BE3D9A04F7632B ft=1 fh=81e0d6a2d98bff1e vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe"
sh=BCF43267B4416C6DDEFAAD5AE0A63E3F682C5BB0 ft=1 fh=905be375e5c80006 vn="Win32/InstallMonetizer.AQ evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe"
sh=507B6AD46C471804A48A6E7A4D17E1C0B3B7FE74 ft=1 fh=250619b7b5b96cd4 vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe"
sh=6E90290E07E48BB51F655F8AD95DB762E97EABDE ft=1 fh=310600cd9c667158 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe"
sh=5FE3697374F6214D585EE6AD59892411759B4BCF ft=1 fh=cac44e7c93cae1e1 vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe"
sh=5293DBC3B6E7824E985FD8FE8492D6DEF5BC7997 ft=1 fh=f64f4ef2e6cded2b vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe"
sh=C318C520B070146647C507B109917F4B957608FC ft=1 fh=f64f4ef2667e41f3 vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe"
sh=328F1D9F544072C3114AB566BDE439FDBF19FD37 ft=1 fh=208c1d4f316d1e8c vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe"
sh=9BD1B78D00939FF1FA5E98095A34FAD54E4B3C82 ft=1 fh=ee24dfeba0a60a5e vn="Win32/StartPage.OIE Trojaner" ac=I fn="C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe"
sh=8DB51595492609FFF73800174DDBC6363C1DA181 ft=1 fh=e03aa7f093055e9b vn="Variante von Win32/Toolbar.Iminent.K evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe"
sh=8DB51595492609FFF73800174DDBC6363C1DA181 ft=1 fh=e03aa7f093055e9b vn="Variante von Win32/Toolbar.Iminent.K evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe"
sh=E97CC11C632E8616FBAF26FA7FF2EE43D4A485CB ft=0 fh=0000000000000000 vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\Windows\Installer\183409c.msi"
sh=609F2D4B1AE5C7177C44CCAF9309EFD16FC9E42D ft=1 fh=8551c46845849e5f vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe"
sh=22B1B0EAFDBB1229336F9D8187F9905A5DDEDF89 ft=1 fh=406c1e66a46fc082 vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe"
sh=88CA2B9C5E587306B08CF6EA239CA72775495695 ft=1 fh=b15f3040528a74fd vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe"

Wollte nun ESET deinstallieren - finde es aber nicht bei den Programmen/Funktionen, die man deinstallieren kann?!?

Code:

Results of screen317's Security Check version 0.99.97 
 Windows Vista Service Pack 2 x86 
 Internet Explorer 9 
 Internet Explorer 8 
``````````````Antivirus/Firewall Check:``````````````
Avira Desktop 
 Antivirus up to date! 
`````````Anti-malware/Other Utilities Check:`````````
 SUPERAntiSpyware   
 Secunia PSI (2.0.0.4002) 
 Java 8 Update 31 
 Java version 32-bit out of Date!
  Java 64-bit 8 Update 31 
 Adobe Flash Player        16.0.0.305 
 Adobe Reader 9 Adobe Reader out of Date!
 Mozilla Firefox 13.0.1 Firefox out of Date! 
 Google Chrome (40.0.2214.115)
 Google Chrome (41.0.2272.89)
````````Process Check: objlist.exe by Laurent```````` 
 Malwarebytes Anti-Malware mbam.exe 
 Avira Antivir avgnt.exe
 Avira Antivir avguard.exe
 ESET ESET Online Scanner OnlineScannerApp.exe 
 Malwarebytes Anti-Malware mbamscheduler.exe 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:  %
````````````````````End of Log``````````````````````


FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by *****-***** 2 (administrator) on ***** on 15-03-2015 21:25:23
Running from C:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Platform: Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
() C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
( ) C:\Windows\System32\lxeacoms.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdSync.exe
() C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
() C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
() C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Secunia) C:\Program Files\Secunia\PSI\psia.exe
(SigmaTel, Inc.) C:\Windows\System32\stacsv.exe
(Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
() C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
(Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
(Sony Corporation) C:\Program Files\Sony\VCM Manager Setting\VcmMgrNotification.exe
(Sony Corporation) C:\Program Files\Sony\VCM Manager Setting\VcmMgrNotification.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
(ESET) C:\Program Files\ESET\ESET Online Scanner\OnlineScannerApp.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe
(Microsoft Corporation) C:\Program Files\Windows Mail\WinMail.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\w32x86\3\E_FARNHAE.EXE
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\w32x86\3\E_FARNHAE.EXE
() C:\Users\*****-*****\Downloads\SecurityCheck.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Farbar) C:\Users\*****-*****\Downloads\FRST(1).exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdSync.exe [215552 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [37296 2011-09-07] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-03-30] (Adobe Systems Incorporated)
HKLM\...\Run: [lxeamon.exe] => C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe [770728 2010-01-18] ()
HKLM\...\Run: [EzPrint] => C:\Program Files\Lexmark S300-S400 Series\ezprint.exe [139944 2010-01-18] ()
HKLM\...\Run: [UVS10 Preload] => C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [36864 2006-08-09] (Ulead Systems, Inc.)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [703280 2015-03-10] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [NvSvc] => RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\RunOnce: [*WerKernelReporting] => C:\Windows\SYSTEM32\WerFault.exe [217088 2009-04-11] (Microsoft Corporation)
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll (Sony Corporation)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [466144 2014-11-27] (Sony)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [3905920 2012-06-05] (SUPERAntiSpyware.com)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Akamai NetSession Interface] => C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Amazon Cloud Player] => C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3145536 2014-05-08] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON SX430 Series (Kopie 1)] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHAE.EXE [212480 2012-05-18] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON Stylus DX8400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE [182272 2007-04-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-06-26] (Google)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk
ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\DSL-Manager\DslMgr.exe (No File)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk
ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.club-vaio.com
hxxp://partnerpage.google.com/eu.sony.com/de
hxxp://www.club-vaio.com/vbc
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {399AFF92-3607-4429-B2E3-99BECE8D2374} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=internet-tab&tpc=internet&ptl=std&classification=internet-tab_internet_std&q={searchTerms}&br=ie7-toi
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {53DBFD01-FF03-4A5F-8F4B-7BF8E909A975} URL = hxxp://www.amazon.de/gp/search?ie=UTF8&keywords={searchTerms}&tag=interactivemesuche-21&index=blended&linkCode=ur2&camp=1638&creative=6742
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {C4802B53-BBDC-409E-B3EF-57C0B6708018} URL = hxxp://adfarm.mediaplex.com/ad/ck/707-1403-18840-0?mpro=hxxp://search.ebay.de/search/search.dll?shortcut=4&query={searchTerms}
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {E6BFE530-DE68-4D85-A111-513CA45EFAF0} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=wiki-tab&tpc=internet&ptl=std&classification=wiki-tab_internet_std&q={searchTerms}&br=ie7-toi
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22] (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-20] (Oracle Corporation)
BHO: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2011-09-16] (Google Inc.)
BHO: CBrowserHelperObject Object -> {CA6319C0-31B7-401E-A518-A07C3DB8F777} -> C:\Program Files\Google BAE\BAE.dll [2006-06-23] (Your Company Name)
BHO: Lexmark  -> {D2C5E510-BE6D-42CC-9F61-E4F939078474} -> C:\Program Files\Lexmark Printable Web\bho.dll [2008-05-22] ()
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-20] (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
Toolbar: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> No Name - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} -  No File
DPF: {00000161-9980-0010-8000-00AA00389B71} hxxp://codecs.microsoft.com/codecs/i386/msaud.cab
DPF: {33564D57-9980-0010-8000-00AA00389B71} hxxp://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-01-25] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\*****-***** 2\AppData\Roaming\Mozilla\Firefox\Profiles\4qlxy2p6.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-05] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2007-07-12] (DivX, Inc)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2013-06-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-20] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-16] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2011-06-07] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3850073437-3280287025-709413035-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-03-09] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2011-06-07] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-06-04] (Apple Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\googledesktop.xml [2010-06-26]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2012-12-12]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{D250ED92-1791-42C4-B441-E90BF89B9BEF}] - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF}
FF Extension: XULRunner - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF} [2011-04-02]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-31]
CHR Extension: (Google Docs) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-31]
CHR Extension: (Google Drive) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-31]
CHR Extension: (YouTube) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-31]
CHR Extension: (Google Search) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-31]
CHR Extension: (Google Sheets) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-31]
CHR Extension: (Avira Browser Safety) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-03-13]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-13]
CHR Extension: (Google Wallet) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-31]
CHR Extension: (Gmail) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-31]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2011-08-12] (SUPERAntiSpyware.com) [File not signed]
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AdobeActiveFileMonitor5.0; C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [108712 2006-12-22] ()
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [432888 2015-03-10] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [432888 2015-03-10] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe [443752 2008-08-18] (DisplayLink Corp.)
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
S4 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed]
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [74752 2011-12-30] (Freemake) [File not signed]
S4 GoogleDesktopManager-051210-111108; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-06-26] (Google)
S2 gupdate1ca0ac0f00c0a80; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeaserv.exe [193192 2010-04-14] (Lexmark International, Inc.)
R2 lxea_device; C:\Windows\system32\lxeacoms.exe [598696 2010-01-07] ( )
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [File not signed]
S2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) [File not signed]
S4 OMSI download service; C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112 2009-04-30] () [File not signed]
S4 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [File not signed]
R2 Radio.fx; C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe [3673944 2011-11-18] ()
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [994360 2011-07-29] (Secunia)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [File not signed]
R2 STacSV; C:\Windows\system32\stacsv.exe [94208 2007-06-13] (SigmaTel, Inc.)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-09-28] (Ulead Systems, Inc.) [File not signed]
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2007-06-28] (Sony Corporation) [File not signed]
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182392 2007-07-12] (Sony Corporation)
S3 VAIOMediaPlatform-IntegratedServer-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2523136 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-Mobile-Gateway; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [499712 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe [745472 2007-01-10] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [292152 2007-07-05] (Sony Corporation)
R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [274432 2007-06-28] (Sony Corporation) [File not signed]
R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2007-08-28] (Sony Corporation) [File not signed]
R2 VzFw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe [131072 2007-08-28] (Sony Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 CLTNetCnService; "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-11-24] (Avira Operations GmbH & Co. KG)
S3 dlkmd; C:\Windows\system32\drivers\dlkmd.sys [287856 2008-08-18] (DisplayLink Corp.)
R0 dlkmdldr; C:\Windows\System32\drivers\dlkmdldr.sys [13424 2008-08-18] (DisplayLink Corp.)
R3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25624 2009-04-30] ()
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-03-14] (Malwarebytes Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia)
S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [86824 2008-10-21] (MCCI Corporation)
S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [15016 2008-10-21] (MCCI Corporation)
S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [114600 2008-10-21] (MCCI Corporation)
S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [108328 2008-10-21] (MCCI Corporation)
S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [26024 2008-10-21] (MCCI Corporation)
S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [104616 2008-10-21] (MCCI Corporation)
S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [109736 2008-10-21] (MCCI Corporation)
S3 s116bus; C:\Windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\Windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\Windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\Windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\Windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\Windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\Windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
S3 s3017bus; C:\Windows\System32\DRIVERS\s3017bus.sys [83880 2007-12-10] (MCCI Corporation)
S3 s3017mdfl; C:\Windows\System32\DRIVERS\s3017mdfl.sys [15016 2007-12-10] (MCCI Corporation)
S3 s3017mdm; C:\Windows\System32\DRIVERS\s3017mdm.sys [110632 2007-12-10] (MCCI Corporation)
S3 s3017mgmt; C:\Windows\System32\DRIVERS\s3017mgmt.sys [104616 2007-12-10] (MCCI Corporation)
S3 s3017nd5; C:\Windows\System32\DRIVERS\s3017nd5.sys [25512 2007-12-10] (MCCI Corporation)
S3 s3017obex; C:\Windows\System32\DRIVERS\s3017obex.sys [100648 2007-12-10] (MCCI Corporation)
S3 s3017unic; C:\Windows\System32\DRIVERS\s3017unic.sys [110120 2007-12-10] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-11-24] (Avira GmbH)
R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [326656 2007-06-13] (SigmaTel, Inc.)
S3 StkTMini; C:\Windows\System32\Drivers\StkTMini.sys [468096 2007-11-15] (Syntek)
R3 TelekomNM3; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM3.sys [35040 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
R3 ti21sony; C:\Windows\System32\drivers\ti21sony.sys [812544 2007-06-06] (Texas Instruments)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\Users\*****-~2\AppData\Local\Temp\catchme.sys [X]
S3 dsltestSp5; System32\Drivers\dsltestSp5.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-15 14:45 - 2015-03-15 14:45 - 00852604 _____ () C:\Users\*****-*****\Downloads\SecurityCheck.exe
2015-03-15 14:34 - 2015-03-15 14:34 - 02347384 _____ (ESET) C:\Users\*****-*****\Downloads\esetsmartinstaller_deu.exe
2015-03-15 11:13 - 2015-03-15 11:13 - 01388333 _____ (Thisisu) C:\Users\*****-*****\Downloads\JRT(3).exe
2015-03-14 19:27 - 2015-03-14 19:27 - 01388333 _____ (Thisisu) C:\Users\*****-*****\Downloads\JRT(2).exe
2015-03-14 19:24 - 2015-03-14 19:24 - 01135104 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST(2).exe
2015-03-14 19:15 - 2015-03-14 19:15 - 01135104 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST(1).exe
2015-03-14 18:08 - 2015-03-14 18:08 - 01388333 _____ (Thisisu) C:\Users\*****-*****\Downloads\JRT(1).exe
2015-03-14 16:39 - 2015-03-14 16:39 - 01388333 _____ (Thisisu) C:\Users\*****-*****\Downloads\JRT.exe
2015-03-14 15:25 - 2015-03-14 15:33 - 00000000 ____D () C:\AdwCleaner
2015-03-14 15:23 - 2015-03-14 15:23 - 02171392 _____ () C:\Users\*****-*****\Downloads\AdwCleaner_4.112.exe
2015-03-14 15:20 - 2015-03-14 19:14 - 00001211 _____ () C:\Users\*****-*****\Desktop\mbam.txt
2015-03-14 13:02 - 2015-03-14 13:03 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-14 13:00 - 2015-03-14 13:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-14 13:00 - 2015-03-14 13:00 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-03-14 13:00 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-14 13:00 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-14 12:57 - 2015-03-14 12:57 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\*****-*****\Downloads\mbam-setup-2.0.4.1028.exe
2015-03-13 23:17 - 2015-03-13 23:17 - 00002080 _____ () C:\Users\*****-*****\Desktop\ComboFix - Verknüpfung.lnk
2015-03-13 23:02 - 2015-03-13 23:02 - 00207325 _____ () C:\Users\*****-*****\Desktop\ComboFix.txt
2015-03-13 22:47 - 2015-03-13 22:49 - 00207325 _____ () C:\Users\*****-***** 2\Desktop\combofix.txt
2015-03-13 22:44 - 2015-03-13 22:44 - 00207509 _____ () C:\ComboFix.txt
2015-03-13 22:06 - 2015-03-13 22:44 - 00000000 ____D () C:\ComboFix
2015-03-13 22:04 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-03-13 22:04 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-03-13 22:04 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-03-13 22:01 - 2015-03-13 22:44 - 00000000 ____D () C:\Qoobox
2015-03-13 21:58 - 2015-03-13 21:58 - 05613296 ____R (Swearware) C:\Users\*****-*****\Downloads\ComboFix.exe
2015-03-13 21:24 - 2015-03-13 21:24 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Roaming\Swiss Academic Software
2015-03-13 21:09 - 2015-03-13 21:09 - 00001057 _____ () C:\Users\*****-***** 2\Desktop\Revo Uninstaller.lnk
2015-03-13 21:09 - 2015-03-13 21:09 - 00000000 ____D () C:\Program Files\VS Revo Group
2015-03-13 21:00 - 2015-03-13 21:00 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\*****-*****\Downloads\revosetup95.exe
2015-03-13 19:55 - 2015-03-13 19:55 - 00138584 _____ () C:\Windows\Minidump\Mini031315-02.dmp
2015-03-13 19:34 - 2015-03-13 19:35 - 00001272 _____ () C:\Users\*****-*****\Desktop\Gmer-19357 - Verknüpfung.lnk
2015-03-13 19:18 - 2015-03-13 19:18 - 00142704 _____ () C:\Windows\Minidump\Mini031315-01.dmp
2015-03-12 21:34 - 2015-03-12 21:34 - 00007809 _____ () C:\Users\*****-***** 2\Desktop\gmer.txt
2015-03-12 19:54 - 2015-03-12 21:39 - 00056233 _____ () C:\Users\*****-*****\Desktop\FRST.txt
2015-03-12 19:53 - 2015-03-12 21:40 - 00047185 _____ () C:\Users\*****-*****\Desktop\Addition.txt
2015-03-12 19:51 - 2015-03-12 19:52 - 00047265 _____ () C:\Users\*****-*****\Downloads\Addition.txt
2015-03-12 19:51 - 2015-03-12 19:51 - 00380416 _____ () C:\Users\*****-*****\Downloads\Gmer-19357.exe
2015-03-12 19:50 - 2015-03-15 21:25 - 00035558 _____ () C:\Users\*****-*****\Downloads\FRST.txt
2015-03-12 19:50 - 2015-03-12 19:50 - 00380416 _____ () C:\Users\*****-*****\Downloads\9w24tho6.exe
2015-03-12 19:49 - 2015-03-15 21:25 - 00000000 ____D () C:\FRST
2015-03-12 19:49 - 2015-03-12 19:49 - 01135104 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST.exe
2015-03-12 19:48 - 2015-03-12 19:49 - 00000492 _____ () C:\Windows\system32\defogger_disable.log
2015-03-12 19:48 - 2015-03-12 19:48 - 00000000 _____ () C:\Users\*****-***** 2\defogger_reenable
2015-03-12 19:46 - 2015-03-12 19:46 - 00050477 _____ () C:\Users\*****-*****\Downloads\Defogger.exe
2015-03-11 21:06 - 2015-03-11 21:06 - 00142704 _____ () C:\Windows\Minidump\Mini031115-01.dmp
2015-03-11 19:55 - 2015-01-29 02:35 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-11 19:51 - 2015-01-29 02:35 - 00975360 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-11 19:44 - 2015-02-26 01:18 - 02064384 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-11 17:14 - 2015-02-20 03:03 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-11 17:14 - 2015-02-20 01:28 - 00296960 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-11 17:10 - 2015-02-26 03:01 - 03604408 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-03-11 17:10 - 2015-02-26 03:01 - 03552184 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-11 17:10 - 2015-01-09 03:04 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-11 17:10 - 2015-01-09 01:18 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-11 17:08 - 2015-01-21 03:02 - 00807936 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-11 17:05 - 2015-03-06 05:01 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-11 17:03 - 2014-10-13 02:12 - 02264064 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-11 17:02 - 2015-02-18 03:02 - 11587584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-10 23:52 - 2015-03-13 22:29 - 00000000 ____D () C:\Program Files\861437cb-3ee3-405d-bcea-149a4dc68fde
2015-03-10 23:51 - 2015-03-11 19:50 - 00000000 ____D () C:\ProgramData\{c5d7b5bd-e56a-bd77-c5d7-7b5bde56d6f7}
2015-03-10 23:44 - 2015-03-10 23:46 - 60302800 _____ (Sony Corporation ) C:\Users\*****-*****\Downloads\EP0000185336(1).exe
2015-03-10 21:26 - 2015-02-21 18:37 - 12375040 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-10 21:26 - 2015-02-21 18:34 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-10 21:26 - 2015-02-21 18:29 - 09747968 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-10 21:26 - 2015-02-21 18:28 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-10 21:26 - 2015-02-21 18:22 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-10 21:26 - 2015-02-21 18:21 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-10 21:26 - 2015-02-21 18:21 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 01803264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-10 21:26 - 2015-02-21 18:18 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-10 21:26 - 2015-02-21 18:17 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-10 20:19 - 2015-03-10 23:27 - 182414224 _____ (NVIDIA Corporation) C:\Users\*****-*****\Downloads\307.83-notebook-winvista-32bit-international-whql.exe
2015-03-09 20:35 - 2015-03-09 20:35 - 00139088 _____ () C:\Windows\Minidump\Mini030915-01.dmp
2015-03-08 11:03 - 2015-03-08 11:03 - 00209608 _____ () C:\Windows\Minidump\Mini030815-01.dmp
2015-03-06 15:42 - 2015-03-06 15:42 - 00001879 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2015-02-21 13:06 - 2015-02-21 13:06 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Avira
2015-02-21 12:36 - 2015-03-10 20:05 - 00136216 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-02-21 12:36 - 2015-03-10 20:05 - 00105864 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-02-21 12:36 - 2014-11-24 10:23 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2015-02-21 12:24 - 2015-02-21 12:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-02-21 12:24 - 2015-02-21 12:24 - 00001002 _____ () C:\Users\Public\Desktop\Avira.lnk
2015-02-21 12:23 - 2015-02-21 12:23 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-20 23:47 - 2015-02-20 23:54 - 160782960 _____ () C:\Users\*****-*****\Downloads\avira_free_antivirus_de_15.0.8.624.exe
2015-02-20 23:45 - 2015-02-20 23:46 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\*****-*****\Downloads\avira_de_av___ws(2).exe
2015-02-20 22:38 - 2015-02-20 22:38 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\*****-*****\Downloads\avira_de_av___ws.exe
2015-02-20 22:38 - 2015-02-20 22:38 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\*****-*****\Downloads\avira_de_av___ws(1).exe
2015-02-20 22:25 - 2015-02-20 22:25 - 00639912 _____ (Oracle Corporation) C:\Users\*****-*****\Downloads\jxpiinstall(2).exe
2015-02-20 20:52 - 2015-02-20 20:45 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2015-02-20 20:52 - 2015-02-20 20:44 - 00176552 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2015-02-20 20:52 - 2015-02-20 20:44 - 00176552 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2015-02-20 20:52 - 2013-06-18 19:48 - 00867240 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll
2015-02-20 20:52 - 2013-06-18 19:48 - 00789416 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll
2015-02-20 20:45 - 2015-02-20 20:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-02-20 20:42 - 2015-02-20 21:01 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-20 20:41 - 2015-02-20 22:12 - 232935472 _____ (NVIDIA Corporation) C:\Users\*****-*****\Downloads\307.83-notebook-winvista-64bit-international-whql.exe
2015-02-20 20:32 - 2015-02-20 20:33 - 00639912 _____ (Oracle Corporation) C:\Users\*****-*****\Downloads\jxpiinstall(1).exe
2015-02-17 16:04 - 2015-02-17 16:04 - 01202848 _____ (Microsoft Corporation) C:\Windows\system32\FM20.DLL
2015-02-13 15:19 - 2015-02-13 15:19 - 00131072 _____ () C:\Windows\Minidump\Mini021315-01.dmp

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-15 21:23 - 2011-06-30 11:07 - 00001356 _____ () C:\Users\*****-*****\AppData\Local\d3d9caps.dat
2015-03-15 21:18 - 2009-07-22 12:50 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-15 21:05 - 2013-02-05 20:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-15 20:48 - 2008-02-06 14:54 - 01282095 _____ () C:\Windows\WindowsUpdate.log
2015-03-15 20:00 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-15 20:00 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-15 18:51 - 2008-02-16 14:49 - 00002631 _____ () C:\Users\*****-*****\Desktop\Microsoft Office Word 2007.lnk
2015-03-15 17:18 - 2013-07-13 10:20 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
2015-03-15 14:12 - 2006-11-02 11:33 - 01594468 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-15 14:01 - 2011-01-02 17:31 - 00191030 _____ () C:\ProgramData\lxeascan.log
2015-03-15 13:59 - 2006-11-02 14:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-15 13:57 - 2007-07-20 14:34 - 00000012 _____ () C:\Windows\bthservsdp.dat
2015-03-15 13:57 - 2006-11-02 14:01 - 00032558 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-03-15 12:36 - 2011-08-30 05:40 - 00001052 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-03-14 16:43 - 2015-01-31 17:40 - 00001963 _____ () C:\Users\*****-***** 2\Desktop\Google Chrome.lnk
2015-03-14 16:43 - 2012-05-23 06:59 - 00000944 _____ () C:\Users\*****-***** 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-03-14 15:29 - 2009-07-22 12:09 - 00000000 ____D () C:\ProgramData\ICQ
2015-03-14 14:20 - 2007-07-20 15:28 - 01550750 _____ () C:\Windows\PFRO.log
2015-03-14 13:00 - 2012-05-07 19:58 - 00000899 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-14 13:00 - 2012-05-07 19:58 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-13 22:39 - 2006-11-02 11:23 - 00000215 _____ () C:\Windows\system.ini
2015-03-13 22:29 - 2012-09-29 13:22 - 00000000 ____D () C:\Program Files\7-Zip2
2015-03-13 22:24 - 2010-03-04 19:47 - 00000000 ____D () C:\ProgramData\TEMP
2015-03-13 19:55 - 2010-08-25 18:12 - 314994005 _____ () C:\Windows\MEMORY.DMP
2015-03-13 19:55 - 2008-05-16 21:19 - 00000000 ____D () C:\Windows\Minidump
2015-03-13 19:25 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.001
2015-03-13 18:18 - 2013-06-21 13:43 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-03-13 18:18 - 2012-05-23 06:59 - 00000000 ____D () C:\Users\*****-***** 2
2015-03-13 18:18 - 2008-02-06 16:25 - 00000000 ____D () C:\Users\*****-*****
2015-03-13 18:18 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\spool
2015-03-13 18:18 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\registration
2015-03-13 18:18 - 2006-11-02 11:22 - 66846720 _____ () C:\Windows\system32\config\software_previous
2015-03-13 18:18 - 2006-11-02 11:22 - 52166656 _____ () C:\Windows\system32\config\system_previous
2015-03-13 18:14 - 2006-11-02 11:22 - 49283072 _____ () C:\Windows\system32\config\components_previous
2015-03-13 18:14 - 2006-11-02 11:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous
2015-03-12 20:24 - 2006-11-02 11:22 - 00524288 _____ () C:\Windows\system32\config\default_previous
2015-03-12 18:22 - 2006-11-02 11:22 - 00262144 _____ () C:\Windows\system32\config\security_previous
2015-03-11 20:31 - 2006-11-02 13:47 - 00397352 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-11 19:54 - 2007-07-20 16:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-11 19:43 - 2013-07-26 08:36 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-11 19:01 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.dat
2015-03-11 17:16 - 2006-11-02 11:24 - 119837696 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2015-03-11 00:08 - 2010-08-25 19:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-10 23:53 - 2012-05-23 06:59 - 00043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2015-03-09 20:33 - 2012-06-24 10:07 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Akamai
2015-03-09 20:33 - 2011-05-25 12:59 - 00000000 ____D () C:\ProgramData\Ulead Systems
2015-03-09 20:33 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\Msdtc
2015-03-07 21:58 - 2008-02-10 11:56 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Skype
2015-03-07 17:01 - 2011-03-01 16:18 - 00045024 _____ () C:\ProgramData\lxea.log
2015-03-06 15:48 - 2007-07-20 14:51 - 00794682 _____ () C:\Windows\DPINST.LOG
2015-03-06 15:42 - 2007-07-20 16:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-03-06 15:41 - 2007-07-20 15:01 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-03-01 19:08 - 2010-01-02 10:33 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2015-03-01 17:13 - 2011-07-16 17:42 - 00116736 _____ () C:\Users\*****-*****\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-24 04:23 - 2009-10-03 01:27 - 00246920 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-02-21 12:34 - 2013-08-13 05:16 - 00000000 ____D () C:\Program Files\Avira
2015-02-21 12:23 - 2012-04-26 05:31 - 00000000 ____D () C:\ProgramData\Avira
2015-02-21 12:18 - 2015-01-31 19:22 - 00000140 _____ () C:\Users\*****-*****\AppData\Roaming\WB.CFG
2015-02-20 20:50 - 2008-08-31 09:27 - 00000000 ____D () C:\Program Files\Java
2015-02-20 20:49 - 2008-08-31 09:26 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-02-20 20:48 - 2012-05-23 06:59 - 00002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2015-02-20 20:44 - 2013-06-18 19:50 - 00272296 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2015-02-20 19:38 - 2013-07-25 22:43 - 00000000 ____D () C:\ProgramData\Netzmanager
2015-02-15 21:13 - 2015-02-10 17:51 - 00048735 _____ () C:\Users\*****-*****\Documents\Kindertanzvertrag.odt

==================== Files in the root of some directories =======

2012-05-23 06:59 - 2015-03-10 23:53 - 0043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2012-05-23 06:59 - 2007-08-06 14:21 - 0042479 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.dat
2012-06-30 10:35 - 2012-06-30 10:35 - 0000022 ___SH () C:\Users\*****-***** 2\AppData\Roaming\Windows1569_SettingsRepository.bin
2012-05-23 06:59 - 2015-02-20 20:48 - 0002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2012-05-23 06:59 - 2007-08-06 14:06 - 0018944 _____ () C:\Users\*****-***** 2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-30 10:35 - 2012-06-30 10:35 - 0000000 _____ () C:\Users\*****-***** 2\AppData\Local\jv16PT_temp.tmp
2008-02-21 11:45 - 2008-02-21 11:45 - 0000305 _____ () C:\ProgramData\addr_file.html
2009-02-05 21:42 - 2009-02-05 21:42 - 0000056 _____ () C:\ProgramData\ezsidmv.dat
2011-01-02 17:39 - 2011-01-02 17:39 - 0000252 _____ () C:\ProgramData\FastPics.log
2011-03-01 16:18 - 2015-03-07 17:01 - 0045024 _____ () C:\ProgramData\lxea.log
2011-01-02 17:40 - 2011-01-02 17:42 - 0000438 _____ () C:\ProgramData\lxeaDiagnostics.log
2011-01-02 17:44 - 2011-06-02 09:10 - 0004439 _____ () C:\ProgramData\lxeaJSW.log
2011-01-02 17:31 - 2015-03-15 14:01 - 0191030 _____ () C:\ProgramData\lxeascan.log
2011-01-02 17:27 - 2011-01-02 17:27 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

Some content of TEMP:
====================
C:\Users\*****-*****\AppData\Local\temp\avgnt.exe
C:\Users\*****-***** 2\AppData\Local\temp\Quarantine.exe
C:\Users\*****-***** 2\AppData\Local\temp\sqlite3.dll


Some zero byte size files/folders:
==========================
C:\Windows\System32\nsprs.dll
C:\Windows\System32\serauth1.dll
C:\Windows\System32\serauth2.dll
C:\Windows\System32\ssprs.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-15 14:20

==================== End Of Log ============================

--- --- ---

--- --- ---

schrauber 16.03.2015 11:36

Java, adobe und Firefox updaten.

Im Fix den Namen wieder korrigieren!!


Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

C:\Users\*****-*****\AppData\Roaming\PWKN

C:\Users\*****-*****\AppData\Roaming\VM

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe

C:\Users\*****-*****\Downloads\dvdburnersetup.exe

C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe

C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe

C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe

C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe

C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe

C:\Windows\Installer\183409c.msi

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-1-6.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-1-7.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-10_user.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-4.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-5.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-5_user.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-6.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-7.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\WSE_Vosteran.job => C:\Users\JAMIE-~1\AppData\Roaming\WSE_VO~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Emptytemp:


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.





Noch Probleme mit dem System?

Jami87 16.03.2015 19:46

Jetzt mal ne richtig blöde Frage: Wie update ich denn Java, Firefox und Adobe?!? (Dachte immer, dass das automatisch geht :-(-.

schrauber 17.03.2015 07:58

Am Besten alte Versionen deinstallieren, neue installieren :)

Jami87 17.03.2015 08:07

Ah ok - und das macht man dann immer so in regelmäßigen Abständen?!?

schrauber 17.03.2015 12:44

Firefox sollte von alleine updaten. Java unc Co bieten auch Updates, aber die alte Version bleibt meist auf dem System, das ist nicht sauber.

Jami87 17.03.2015 18:52

Achso, komisch... Also mein Firefox scheint sich dann aber nicht automatisch zu aktualisieren?!?

Wie bekomme ich denn dieses Vosteran noch runter?

Und: Könnten die Streifen und das ständige Abstürzen mit den Viren (was hatte/habe ich denn eigentlich drauf?) zusammenhängen? Oder doch eher mit der Grafikkarte? Habe diese nun ausgeschalten (über die Systemsteuerung) und traue mich gar nicht, sie wieder anzuschalten.

Ach ja und: Wenn ich den PC starte, kommt immer etwas mit Host funktioniert nicht, Rndll 82 oder so ähnlich (sehe es leider gerade nicht, weil es nur beim Hochfahren kommt und ich es immer wegklicke).

Was auch noch kommt beim Hochfahren ist, dass der Netzmanager nicht mehr funktioniert?!?

Code:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-03-2015
Ran by *****-***** 2 at 2015-03-17 18:13:21 Run:1
Running from c:\Users\*****-*****\downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
C:\Users\*****-*****\AppData\Roaming\PWKN

C:\Users\*****-*****\AppData\Roaming\VM

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe

C:\Users\*****-*****\Downloads\dvdburnersetup.exe

C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe

C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe

C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe

C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe

C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe

C:\Windows\Installer\183409c.msi

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-1-6.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-1-7.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-10_user.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-4.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-5.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-5_user.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-6.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-7.job =>  <==== ATTENTION

Task: C:\Windows\Tasks\WSE_Vosteran.job => C:\Users\*****-~1\AppData\Roaming\WSE_VO~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Emptytemp:
       
*****************

C:\Users\*****-*****\AppData\Roaming\PWKN => Moved successfully.
C:\Users\*****-*****\AppData\Roaming\VM => Moved successfully.
C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe => Moved successfully.
C:\Users\*****-*****\Downloads\dvdburnersetup.exe => Moved successfully.
C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe => Moved successfully.
C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe => Moved successfully.
C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe => Moved successfully.
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe => Moved successfully.
C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe => Moved successfully.
C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe => Moved successfully.
C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe => Moved successfully.
C:\Windows\Installer\183409c.msi => Moved successfully.
C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe => Moved successfully.
C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe => Moved successfully.
C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe => Moved successfully.
C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-1-6.job not found.
C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-1-7.job not found.
C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-10_user.job not found.
C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-4.job not found.
C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-5.job not found.
C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-5_user.job not found.
C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-6.job not found.
C:\Windows\Tasks\916a028c-c71c-498c-8bc0-ff59580dd93d-7.job not found.
C:\Windows\Tasks\WSE_Vosteran.job not found.
EmptyTemp: => Removed 320.5 MB temporary data.


The system needed a reboot.

==== End of Fixlog 18:16:48 ====


schrauber 18.03.2015 09:25

FRST öffnen, Haken setzen bei Addition und scannen, poste bitte beide Logs. Netzmanager neu installieren.

Wo siehst Du Vosteran noch?

Jami87 18.03.2015 15:25

Jetzt ist es wieder passiert - ohne dass ich was besonderes gemacht habe, sind nun nur wieder Streifen zu sehen.. Schreibe gerade vom Smartphone - bekomm den Pc nicht mehr an.. Dan kann ich da wohl nicht mehr viel machen oder?

schrauber 19.03.2015 07:53

definier bitte er geht nicht mehr an. Ich sitze nicht vor deinem PC ;)

Jami87 19.03.2015 09:40

Naja, also an geht er schon, aber ich sehe halt wieder nichts mehr, weil alles voller Streifen ist.. Hoere nur, dass er hochfaehrt..

schrauber 19.03.2015 15:23

Hardware. KLemm mal nen externen Monitor an oder TV.

Jami87 19.03.2015 19:24

Dazu habe ich leider im Moment nicht die Moeglichkeit :-( Es wuerde sich aber auf keinen Fall eine Reperatur lohnen, da der Laptop schon ueber 8Jahre alt ist.. Hatte gehofft, dass es nur an den Treibern liegt, aber das war es wohl dann doch nicht :-(

schrauber 20.03.2015 06:33

Streifen können fast nicht an einem Treiber liegen.

Jami87 20.03.2015 18:00

Mh, aber selbst kann ich da wohl nichts mehr machen, oder? Also egal, ob er mit externen Monitor gaenge oder nicht..

schrauber 21.03.2015 11:12

wenn er mit externem Monitor geht ist dein Bildschirm hin, wenn nicht ist das Problem die Graka.

Jami87 21.03.2015 21:23

Aber bei beiden Varianten wuerde sich ja eine Reparatur bei einem so alten Laptop nicht lohnen, oder? Habe jetzt versucht, ihn ueber meinen Roehrenfernseher anzuschliesen, aber das wird nix.. Man muss zur externen Widergabe etwas eingeben, aber durch die Streifen geht das ja auch nicht :-( bzw. ich sehe nicht, worauf ich klicke :-(

Es ist echt verrückt - jetzt geht der Laptop gerade mal wieder. Wie kann das sein? Von geschätzen 100Versuchen klappt es dann einmal doch wieder. Ich versuche nun nochmal das mit dem FRST zu machen, aber wahrscheinlich hat es ja keinen Sinn mehr.

Falls er nun mal gar nicht mehr an gehen sollte, würde ich gern alle Daten sicher löschen - kannst du dabei zufällig auch helfen bzw. Tipps geben?

Code:

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 11-03-2015
Ran by *****-***** 2 at 2015-03-21 21:10:02
Running from C:\Users\*****-*****\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"Durchstarten mit Ponky - Deutsch 1+2" (HKLM\...\"Durchstarten mit Ponky - Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Durchstarten mit Ponky - Mathe 1+2" (HKLM\...\"Durchstarten mit Ponky - Mathe 1+2") (Version: 2.00 - Engel Edition)
"Englisch in der Grundschule mit Ponky 1.+2. Kl." (HKLM\...\"Englisch in der Grundschule mit Ponky 1.+2. Kl.") (Version: 2.00 - Engel Edition)
"Ponky gezielt Deutsch 1+2" (HKLM\...\"Ponky gezielt Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Ponky gezielt Mathe 1+2" (HKLM\...\"Ponky gezielt Mathe 1+2") (Version: 2.00 - Engel Edition)
7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
ABBYY FineReader 6.0 Sprint (HKLM\...\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}) (Version: 6.00.1395.4512 - ABBYY Software House)
ABBYY FineReader 9.0 Sprint (HKLM\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212 - ABBYY) Hidden
Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\Activation Assistant for the 2007 Microsoft Office suites) (Version:  - Microsoft Corporation)
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0 - Microsoft Corporation) Hidden
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Flash Player 16 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Media Player (HKLM\...\{95264530-5A22-8E7E-FE9D-D63A927BCAEA}) (Version: 1.7 - Adobe Systems Incorporated)
Adobe Photoshop Elements 5.0 (HKLM\...\Adobe Photoshop Elements 5) (Version: 5.0 - Adobe Systems, Inc.)
Adobe Premiere Elements 3.0.2 (HKLM\...\PremElem30) (Version: 3.0.2 - Ihr Firmenname)
Adobe Premiere Elements 3.0.2 Templates (HKLM\...\{6EACDDF4-4220-49A3-9204-984C86852C3D}) (Version: 1.0.0 - Ihr Firmenname)
Adobe Reader 9.4.6 - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-A94000000001}) (Version: 9.4.6 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.)
Akamai NetSession Interface (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Akamai) (Version:  - Akamai Technologies, Inc)
All To WMA Converter 1.7 (HKLM\...\All To WMA Converter_is1) (Version: 1.7 - All To WMA Converter)
Alps Pointing-device for VAIO (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version:  - )
Amazon Cloud Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Amazon Amazon Cloud Player) (Version: 2.4.0.33 - Amazon Services LLC)
Any Video Converter 3.3.2 (HKLM\...\Any Video Converter_is1) (Version:  - Any-Video-Converter.com)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Aquanuma (HKLM\...\Aquanuma_is1) (Version:  - )
ArcSoft Magic-i Visual Effects Installer (HKLM\...\{9AB83A3C-604D-4B4F-AA25-A23A3FC39844}) (Version:  - ArcSoft)
Audacity 1.2.6 (HKLM\...\Audacity_is1) (Version:  - )
AutoUpdate (HKLM\...\{18D10072035C4515918F7E37EAFAACFC}) (Version: 1.1 - )
Avanquest update (HKLM\...\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}) (Version: 1.20 - Avanquest Software)
Avira (HKLM\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG)
Avira (Version: 1.1.30.21727 - Avira Operations & Co. KG) Hidden
Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 15.0.8.656 - Avira)
AviSynth 2.5 (HKLM\...\AviSynth) (Version:  - )
Benutzerdefinierte Voreinstellungen für SonicStage Mastering Studio Audio Filter (HKLM\...\{EC37A846-53AC-4DA7-98FA-76A4E74AA900}) (Version: 2.3 - Sony Corporation)
Benutzerhandbuch - Grundlagen EPSON SX430 Series (HKLM\...\EPSON SX430 Series Bog) (Version:  - )
Benutzerhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Useg) (Version:  - )
Browser Address Error Redirector (HKLM\...\{3EE33958-7381-4E7B-A4F3-6E43098E9E9C}) (Version:  - )
Camera RAW Plug-In for EPSON Creativity Suite (HKLM\...\{93EA9C3E-BDFD-4309-A605-9B5BBC0CCEFD}) (Version: 2.2.0.0 - SEIKO EPSON CORPORATION)
Citavi (HKLM\...\{E12C6653-1FF0-4686-ADB8-589C13AE761F}) (Version: 3.3.0.0 - Swiss Academic Software)
Citavi 2.5 (HKLM\...\Citavi) (Version: 2.5.2.0 - Academic Software Zurich)
Click to DVD 2.0.05 Menu Data (HKLM\...\{9E407618-D9CD-4F39-9490-9ED45294073D}) (Version: 2.0.05 - Sony Corporation)
Click to DVD 2.6.00 (HKLM\...\{E809063C-51A3-4269-8984-D1EB742F2151}) (Version: 2.6.00 - Sony Corporation)
ConvertHelper 2.2 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version:  - DownloadHelper)
Denken und Rechnen 2 (HKLM\...\Denken und Rechnen 2) (Version:  - )
DHTML Editing Component (HKLM\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation)
DisplayLink Core Software (HKLM\...\{156E1F8D-3555-42F5-8DEC-5E830AF46847}) (Version: 4.5.13507.0 - DisplayLink Corp.)
DivX Codec (HKLM\...\{7B63B2922B174135AFC0E1377DD81EC2}) (Version: 6.6.1 - DivX, Inc.)
DivX Converter (HKLM\...\{B13A7C41581B411290FBC0395694E2A9}) (Version: 6.5 - DivX, Inc.)
DivX Player (HKLM\...\{8ADFC4160D694100B5B8A22DE9DCABD9}) (Version: 6.4.3 - DivXNetworks, Inc.)
DivxToDVD 0.5.2b (HKLM\...\VSO DivxToDVD_is1) (Version: 0.5.2b - VSO-Software SARL)
DSD Direct (HKLM\...\{82D5BACA-3619-4D34-99DB-3A65CFB4DA33}) (Version: 2.0.01 - Sony Corporation)
DSD Direct Player (HKLM\...\{533D0A8A-D7E7-4F15-BC9E-FF2916A6BAA7}) (Version: 1.0 - Sony Corporation)
DSD Playback Plug-in (HKLM\...\{009E7FB7-1775-4D89-8956-F5C9A1C019FC}) (Version: 1.1 - Sony Corporation)
EPSON Attach To Email (HKLM\...\InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}) (Version: 1.01.0000 - SEIKO EPSON)
EPSON Attach To Email (Version: 1.01.0000 - SEIKO EPSON) Hidden
EPSON Copy Utility 3 (HKLM\...\{67EDD823-135A-4D59-87BD-950616D6E857}) (Version: 3.3.0.0 - )
EPSON Easy Photo Print (HKLM\...\{3D78F2A2-C893-4ABD-B5FE-AD7011837755}) (Version: 1.5.0.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print 2 (HKLM\...\{A02D7029-C4EF-44C1-9FD4-C0D3CA518113}) (Version: 2.2.4.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM\...\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}) (Version: 2.50.0000 - SEIKO EPSON CORPORATION)
EPSON File Manager (HKLM\...\{2EB81825-E9EE-44F4-8F51-1240C3898DC6}) (Version: 1.3.0.0 - )
EPSON Scan (HKLM\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON Scan Assistant (HKLM\...\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}) (Version: 1.10.00 - )
EPSON Stylus CX7300_CX8300_DX7400_DX8400 Handbuch (HKLM\...\EPSON Stylus CX7300_CX8300_DX7400_DX8400 Benutzerhandbuch) (Version:  - )
EPSON SX430 Series Printer Uninstall (HKLM\...\EPSON SX430 Series) (Version:  - SEIKO EPSON Corporation)
EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.4j - SEIKO EPSON CORPORATION)
ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version:  - )
ffdshow [rev 2844] [2009-03-30] (HKLM\...\ffdshow_is1) (Version: 1.0 - )
Firebird SQL Server - MAGIX Edition (HKLM\...\Firebird SQL Server D) (Version: 2.0.1.13 - MAGIX AG)
flatster (HKLM\...\{0ADF1B89-17EA-489C-86DF-6E33DA8520A6}_is1) (Version: 1.5 - flatster GmbH)
Free FLV Converter V 6.4.1 (HKLM\...\Free FLV Converter_is1) (Version:  - Koyote Soft)
Free Mp3 Wma Converter V 1.9 (HKLM\...\Free Mp3 Wma Converter_is1) (Version: 1.9.0.0 - Koyote Soft)
Free PDF to Word Doc Converter v1.1 (HKLM\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - www.hellopdf.com)
Free YouTube Download version 3.0.20.1228 (HKLM\...\Free YouTube Download_is1) (Version:  - DVDVideoSoft Ltd.)
Freemake Video Converter Version 3.0.1 (HKLM\...\Freemake Video Converter_is1) (Version: 3.0.1 - Ellora Assets Corporation)
Furnish Pro (HKLM\...\Furnish Pro) (Version:  - )
GearDrvs (Version: 1 - Symantec Corporation) Hidden
Google Chrome (HKLM\...\Google Chrome) (Version: 41.0.2272.101 - Google Inc.)
Google Desktop (HKLM\...\Google Desktop) (Version: 5.9.1005.12335 - Google)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Talk (remove only) (HKLM\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Talk (remove only) (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
Google Updater (HKLM\...\Google Updater) (Version: 2.4.2432.1652 - Google Inc.)
HDAUDIO SoftV92 Data Fax Modem with SmartCP (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_104D0200) (Version:  - )
honestech VHS to DVD 2.0 SE (HKLM\...\{2856F5EA-E98A-40E4-BAD6-8C644A4A3F3C}) (Version: 2.0 - honestech)
IBM SPSS Statistics 22 (HKLM\...\{104875A1-D083-4A34-BC4F-3F635B7F8EF7}) (Version: 22.0.0.0 - IBM Corp)
ICQ7.2 (HKLM\...\{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}) (Version: 7.2 - ICQ)
Iminent (Version: 5.26.21.0 - Iminent) Hidden <==== ATTENTION
InterVideo Register Manager (Version: 1.0.4.0 - InterVideo Inc.) Hidden
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
jv16 PowerTools 2012 (HKLM\...\jv16 PowerTools 2011) (Version:  - Macecraft Software)
Lexmark  (HKLM\...\{D2C5E510-BE6D-42CC-9F61-E4F939078474}) (Version: 1.0.0.0 - )
Lexmark S300-S400 Series (HKLM\...\Lexmark S300-S400 Series) (Version:  - Lexmark International, Inc.)
Lexmark Tools for Office (HKLM\...\{10812DE7-2E57-4740-B226-6B3BE34AF9D7}) (Version: 1.29.0.0 - )
Logitech Vid HD (HKLM\...\Logitech Vid) (Version: 7.2 (7259) - Logitech Inc..)
Logitech Webcam Software (HKLM\...\{AC96671C-2001-432C-9826-5266D84EF1DC}) (Version: 12.00.1280 - Logitech Inc.)
Logitech Webcam Software-Treiberpaket (HKLM\...\lvdrivers_12.0) (Version: 12.0.1278 - Logitech Inc.)
Löwenzahn und Pusteblume (HKLM\...\{C538AA5E-2F9C-48DC-AD5C-B21CE34EA10B}) (Version: 1.0.0 - *)
MAGIX Online Druck Service 2.3.2.0 (D) (HKLM\...\MAGIX Online Druck Service D) (Version: 2.3.2.0 - MAGIX AG)
MAGIX PC Visit (HKLM\...\MAGIX PC Visit D) (Version: 4.3.6.1987 - MAGIX AG)
MAGIX Video deluxe 2008 Trial 7.5.1.6 (D) (HKLM\...\MAGIX Video deluxe 2008 Trial D) (Version: 7.5.1.6 - MAGIX AG)
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
MAXQDA 10 (R250412) (HKLM\...\MAXQDA10) (Version: (R250412) - VERBI Software.Consult.Sozialforschung GmbH)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Medion GoPal Assistant 4.01.012 (HKLM\...\Medion GoPal Assistant) (Version: 4.1.12.0 - Medion)
Meine ersten Wörter (HKLM\...\it.clementoni.SapPrimeParoleDE.290A939A40FB4C06653AD1460C6BEBD4C065087B.1) (Version: 1.0 - Clementoni S.p.A.)
Meine ersten Wörter (Version: 1.0 - Clementoni S.p.A.) Hidden
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2698023) (HKLM\...\M2698023) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version:  - )
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - deu) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual J# .NET Redistributable Package 1.1 (HKLM\...\{1A655D51-1423-48A3-B748-8F5A0BE294C8}) (Version: 1.1.4322 - Microsoft)
Microsoft Works (HKLM\...\{4EA2F95F-A537-4d17-9E7F-6B3FF8D9BBE3}) (Version: 08.05.0822 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Moonlight MPEG-2 Decoder Pack (HKLM\...\Moonlight MPEG-2 Decoder Pack 2.1.4316) (Version: 2.1.4316 - Moonlight Cordless)
Mozilla Firefox 13.0.1 (x86 de) (HKLM\...\Mozilla Firefox 13.0.1 (x86 de)) (Version: 13.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 13.0.1 - Mozilla)
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB941833) (HKLM\...\{C523D256-313D-4866-B36A-F3DE528246EF}) (Version: 4.20.9849.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Musik & Audio Restaurator Pro 5.0 (HKLM\...\Musik & Audio Restaurator Pro 5_is1) (Version: 5.0 - Softfeld)
Nero Backup Drivers (HKLM\...\{F8EF9B71-53E7-41F5-8E54-47B4C979CB38}) (Version: 1.0.11100.8.0 - Nero AG)
Netzmanager (HKLM\...\Netzmanager) (Version: 1.081 - Deutsche Telekom AG)
Netzmanager (Version: 1.081 - Deutsche Telekom AG, Marmiko IT-Solutions GmbH) Hidden
Netzwerkhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Netg) (Version:  - )
Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - )
Norton 360 (Version: 1.2.0.10 - Symantec Corporation) Hidden
Notebook BatteryInfo 1.3  (HKLM\...\BatteryInfo_Suite) (Version: 1.3 - Thomas Michel)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version:  - )
OpenMG Limited Patch 4.7-07-15-19-01 (HKLM\...\OpenMG HotFix4.7-07-13-22-01) (Version:  - )
OpenMG Secure Module 4.7.00 (HKLM\...\InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}) (Version: 4.7.00.12140 - Sony Corporation)
OpenMG Secure Module 4.7.00 (Version: 4.7.00.12140 - Sony Corporation) Hidden
OpenOffice.org 3.2 (HKLM\...\{8D1E61D1-1395-4E97-997F-D002DB3A5074}) (Version: 3.2.9502 - OpenOffice.org)
PDF24 Creator 5.7.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
Photo Viewer V2.4 (HKLM\...\Photo Viewer) (Version:  - )
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Pixie 1.4.1 (HKLM\...\Pixie_is1) (Version: 1.4.1 - Pixie Developers)
QuickTime (HKLM\...\{5B09BD67-4C99-46A1-8161-B7208CE18121}) (Version: 7.3.0.70 - Apple Inc.)
Ravensburger tiptoi (HKLM\...\Ravensburger tiptoi) (Version:  - )
Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Rossmann Fotowelt Software 4.12.1 (HKLM\...\Rossmann Fotowelt Software) (Version: 4.12.1 - ORWO Net)
Rossmann Online Print Wizard Installer 1.0 (HKLM\...\Rossmannr Online Print Wizard Installer_is1) (Version:  - )
Roxio Easy Media Creator Home (HKLM\...\{B7FB0C86-41A4-4402-9A33-912C462042A0}) (Version: 9.0.178 - Roxio)
Scan2PDF 1.6 (HKLM\...\Scan2PDF_is1) (Version:  - Koma-Code)
Secunia PSI (2.0.0.4002) (HKLM\...\Secunia PSI) (Version:  - )
Secure Eraser (HKLM\...\Secure Eraser_is1) (Version: 4.2.0.1 - ASCOMP Software GmbH)
Setting Utility Series (HKLM\...\{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}) (Version: 3.0.00.07120 - Sony Corporation)
SigmaTel Audio (HKLM\...\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}) (Version: 5.10.5102.0 - SigmaTel)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SNAPFISH (HKLM\...\SNAPFISH) (Version:  - )
Snoopy 1.0 (HKLM\...\Snoopy_is1) (Version:  - )
SonicStage Mastering Studio (HKLM\...\{6332AFF1-9D9A-429C-AA03-F82749FA4F49}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio (Version: 2.3.01 - Sony Corporation) Hidden
SonicStage Mastering Studio Audio Filter (HKLM\...\{DF7DB916-90E5-40F2-9010-B8125EB5FD6F}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio Plugins (HKLM\...\{9C1C8A04-F8CA-4472-A92D-4288CE32DE86}) (Version: 2.4 - Sony Corporation)
Sony Ericsson Media Manager 1.1 (HKLM\...\{7E910FDA-CBBE-4451-8728-235E6A4DE162}) (Version: 1.1.550 - Sony Ericsson)
Sony Ericsson PC Suite 6.009.00 (HKLM\...\{2FFE93F0-BB72-4E52-8761-354D1AAA9387}) (Version: 6.009.00 - Sony Ericsson)
Sony PC Companion 2.10.251 (HKLM\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.251 - Sony)
Sony Picture Utility (HKLM\...\{D5068583-D569-468B-9755-5FBF5848F46F}) (Version: 2.1.00.04170 - Sony Corporation)
Sony USB Driver (HKLM\...\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}) (Version: 2.00 - Sony Corporation)
SONY VGP-UPR1 (Display Adapter) (HKLM\...\{94FBC09C-6F39-4B36-B9DE-66374A6FAAD2}) (Version: 4.5.13507.0 - Sony Corporation)
Sony Video Shared Library (HKLM\...\{01FDC9FC-4D4F-4DB0-ACD1-D3E8E1D52902}) (Version: 3.2.00 - Sony Corporation)
SpongeBob Schwammkopf - Der Film (HKLM\...\{E81A7285-8CA6-4430-B6C0-5F719E4D40D9}) (Version: 1.0 - )
SPSS 15.0 für Windows [Auswertung Version] (HKLM\...\{6D9B9CF3-1E9C-45B6-B41E-5CF568605556}) (Version: 15.0.1 - SPSS Inc.)
Super Mario PC Fun 2 (HKLM\...\Super Mario PC Fun 2) (Version:  - )
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.0.1148 - SUPERAntiSpyware.com)
Supreme Auction (HKLM\...\Supreme Auction_is1) (Version:  - )
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab (HKLM\...\SystemRequirementsLab) (Version:  - )
TMPGEnc 4.0 XPress Testversion (HKLM\...\{ECEF8EDE-0421-4E67-9264-5E84F26D4F55}) (Version: 4.7.2.285 - Pegasys Inc,)
Ulead VideoStudio SE DVD (HKLM\...\{8F8D9297-FDD2-405A-97E7-E52C7B2F97B3}) (Version: 10.0 - Ulead Systems)
Uninstall 1.0.0.1 (HKLM\...\Uninstall_is1) (Version:  - )
Unity Web Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
USB2.0 ATV (HKLM\...\{3C873221-12B9-475D-8DCB-62D0B2179AF9}) (Version: 6.10.000.001 - Regulus)
USB2.0 Capture Device (HKLM\...\{E337B156-DF81-48D8-8977-B1574EE87BCF}) (Version: 1.0.3.0 - )
VAIO Aqua Breeze Wallpaper (HKLM\...\{97BCD719-6ECB-458F-97D6-F38D2E07375E}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Camera Capture Utility (HKLM\...\{6D2576EC-A0E9-418A-A09A-409933A3B6F4}) (Version: 2.7.01.08030 - Sony Corporation)
VAIO Content Folder Setting (HKLM\...\{23825B69-36DF-4DAD-9CFD-118D11D80F16}) (Version: 1.1.02.11070 - Sony Corporation)
VAIO Content Importer  VAIO Content Exporter (Version: 1.2.00.06270 - Sony Corporation) Hidden
VAIO Content Importer / VAIO Content Exporter (HKLM\...\{68A69CFF-130D-4CDE-AB0E-7374ECB144C8}) (Version: 1.2.00.06270 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (HKLM\...\{FAA6B94E-78A7-489C-B2DB-050D9FEBFADA}) (Version: 2.0.01.07051 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (Version: 2.0.01.07051 - Sony Corporation) Hidden
VAIO Content Metadata Manager Setting (HKLM\...\{69351E9E-23ED-41D5-B146-EDBF83C63B66}) (Version: 2.0.01.07041 - Sony Corporation)
VAIO Content Metadata Manager Setting (Version: 2.0.01.07041 - Sony Corporation) Hidden
VAIO Content Metadata XML Interface Library (HKLM\...\{B5E2DF30-1061-4DB4-AF28-08996C8E5680}) (Version: 2.1.01.10292 - Sony Corporation)
VAIO Content Metadata XML Interface Library (Version: 2.1.01.10292 - Sony Corporation) Hidden
VAIO Control Center (HKLM\...\{72042FA6-5609-489F-A8EA-3C2DD650F667}) (Version: 2.1.00.07110 - Sony Corporation)
VAIO Cozy Orange Wallpaper (HKLM\...\{2A2FF7F5-6F0E-4A5D-A881-39365E718BD6}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Data Restore Tool (HKLM\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.0.02.06190 - Sony Corporation)
VAIO Entertainment Platform (HKLM\...\{6B1F20F2-6321-4669-A58C-33DF8E7517FF}) (Version: 3.0.00.06280 - Sony Corporation)
VAIO Event Service (HKLM\...\{F0D85ADD-DD61-4B43-87A0-6DA52A211A8B}) (Version: 3.2.00.07120 - Sony Corporation)
VAIO Launcher (HKLM\...\{15D5C238-4C2E-4AEA-A66D-D6989A4C586B}) (Version: 1.0.00.07090 - Sony Corporation)
VAIO Media (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media 6.0 (HKLM\...\{560F6B2E-F0DF-44E5-8190-A4A161F0E205}) (Version: 6.0.10 - Sony Corporation)
VAIO Media AC3 Decoder 1.0 (HKLM\...\{2063C2E8-3812-4BBD-9998-6610F80C1DD4}) (Version:  - )
VAIO Media Content Collection 6.0 (HKLM\...\{500162A0-4DD5-460A-BAFD-895AAE48C532}) (Version:  - Sony Corporation)
VAIO Media Integrated Server 6.1 (HKLM\...\{785EB1D4-ECEC-4195-99B4-73C47E187721}) (Version:  - Sony Corporation)
VAIO Media Redistribution 6.0 (HKLM\...\{5855C127-1F20-404D-B7FB-1FD84D7EAB5E}) (Version: 6.0.10 - Sony Corporation)
VAIO Media Registration Tool (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media Registration Tool 6.0 (HKLM\...\{AF9A04EB-7D8E-41DE-9EDE-4AB9BB2B71B6}) (Version: 6.0.10 - Sony Corporation)
VAIO Movie Story (HKLM\...\{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO Movie Story (Version: 1.0.00.18280 - Sony Corporation) Hidden
VAIO Movie Story Template Data (HKLM\...\{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO MusicBox (HKLM\...\{4EA55D20-27FB-45D7-8726-147E8A5F6C62}) (Version: 1.1.02.12100 - Sony Corporation)
VAIO MusicBox Sample Music (HKLM\...\{98FC7A64-774B-49B5-B046-4B4EBC053FA9}) (Version: 1.0.00.07030 - Sony Corporation)
VAIO Original Function Setting (HKLM\...\{A63E7492-A0BC-4BB9-89A7-352965222380}) (Version: 1.4.00.03240 - Sony Corporation)
VAIO Original Screen Saver (HKLM\...\{1BEF9285-5530-426B-A5F1-5836B95C7EB1}) (Version:  - )
VAIO Power Management (HKLM\...\{802889F8-6AF5-45A5-9764-CA5B999E50FC}) (Version: 2.2.00.06130 - Sony Corporation)
VAIO Tender Green Wallpaper (HKLM\...\{934A3213-1CB6-4264-84A2-EE080C017BCA}) (Version: 1.0.11.10180 - Sony Corporation)
VAIO Update 3 (HKLM\...\{48820099-ED7D-424B-890C-9A82EF00656D}) (Version: 3.0.02.05280 - Sony Corporation)
VAIO Xblack Contents (HKLM\...\VAIO Xblack Contents) (Version: 1.0.0.0-ENU - )
WDR RadioRecorder (HKLM\...\Tobit Radio.fx Server 1) (Version:  - Tobit.Software)
WIDCOMM Bluetooth Software 6.1.0.1203 (HKLM\...\{03D1988F-469F-4843-8E6E-E5FE9D17889D}) (Version: 6.1.0.1203 - Broadcom Corporation)
Windows Live Anmelde-Assistent (HKLM\...\{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}) (Version: 5.000.818.6 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinDVD BD for VAIO (HKLM\...\InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}) (Version: 8.0-B8.385 - InterVideo Inc.)
WinDVD BD for VAIO (Version: 8.0-B8.385 - InterVideo Inc.) Hidden
Wireless Switch Setting Utility (HKLM\...\{2A0F3EF9-68EE-49E9-A05B-ED5B82DF63E5}) (Version: 3.6.00.18210 - Sony Corporation)
WMA MP3 Converter v4.0 build 1217 (HKLM\...\{314AD191-596F-40C0-ACED-3AD78C9649F1}_is1) (Version:  - Hoo Technologies)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{33b07fd4-5917-43e1-968d-4c79231836bf}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{4052D303-74C5-49EA-BC6B-66099C8D4007}\InprocServer32 -> C:\Program Files\Google\Google Desktop Search\GoogleDesktopAPI2.dll (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{693566bc-21f8-401e-8d42-e2c5ce50dacc}\localserver32 -> C:\Users\*****-~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe  (the data entry has 7 more characters).
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{7F902AD4-FC6A-4B2F-8B8D-B6DD4E329B76}\InprocServer32 -> C:\Users\*****-~1\AppData\Local\ASKTOO~1\DOWNLO~1\AVIRAW~1.DLL No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{9E385F0A-0BA2-430C-96AA-4399C5E40F6C}\localserver32 -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{A8F086C3-2497-4229-82FE-586F2D326F95}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{BB6410D8-F879-4184-9C5C-6A02D16AE0B3}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CA1073A2-5F3F-4445-8E5E-7109BDCEDDBE}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{d33f3ced-d7d5-44f1-a9fe-6927dabb1934}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{D5A55D2D-C59D-42C3-A5BF-4C08EEE74339}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{33b07fd4-5917-43e1-968d-4c79231836bf}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{693566bc-21f8-401e-8d42-e2c5ce50dacc}\localserver32 -> C:\Users\*****-~2\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe  (the data entry has 7 more characters).
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{A8F086C3-2497-4229-82FE-586F2D326F95}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{d33f3ced-d7d5-44f1-a9fe-6927dabb1934}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)

==================== Restore Points  =========================

19-03-2015 19:45:00 Geplanter Prüfpunkt
20-03-2015 17:42:38 Windows Update
21-03-2015 14:23:16 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 11:23 - 2015-03-13 22:39 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1      localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {043D68F3-3670-43A0-B6D5-57F13FF9F9A7} - System32\Tasks\3cfc12c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup4282120128.exe <==== ATTENTION
Task: {10D60821-F8E1-475A-83E8-701EA8E4B1F4} - System32\Tasks\ef6fab80 => C:\Users\*****-~1\AppData\Local\Temp\\setup542040320.exe <==== ATTENTION
Task: {12385836-CA2D-47B9-A214-9F8B297A3DBA} - System32\Tasks\{95687664-AA78-4FC4-BAC4-858ABB1C0B69} => pcalua.exe -a C:\Users\*****-*****\Downloads\VirtualDubMod_1_5_10_2_All_inclusive\AuxSetup.exe -d C:\Users\*****-*****\Downloads\VirtualDubMod_1_5_10_2_All_inclusive
Task: {16D7CE70-497A-4FE4-8C4C-244FAA0734CE} - System32\Tasks\49055640 => C:\Users\*****-~1\AppData\Local\Temp\\setup499886528.exe <==== ATTENTION
Task: {1B4E5659-7DEF-46F9-A0BC-0E6629830B41} - System32\Tasks\Microsoft\Windows\MobilePC\DisplayLink TMM Control
Task: {1CE03B89-7F38-4BA1-A41C-4D8B07DAAE41} - System32\Tasks\SONY\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update 3\VAIOUpdt.exe [2007-05-31] (Sony Corporation)
Task: {1E6473EE-BE0D-4AF2-B139-363A948E362C} - System32\Tasks\{C1EA93FA-188F-4DB9-B64E-36A773014422} => pcalua.exe -a "C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma.cpl" -c Adobe Gamma
Task: {28E5CD67-956D-4936-A294-4AD90DDAE715} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {2FEF6F31-1C03-441F-95EE-C0881A257656} - System32\Tasks\7bb0880 => C:\Users\*****-~1\AppData\Local\Temp\\setup3595865216.exe <==== ATTENTION
Task: {38DC70C8-5701-41B4-807F-9D4516FF09E7} - System32\Tasks\46de95c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup3316319744.exe <==== ATTENTION
Task: {50AC27F5-D9EB-4BF2-BE03-FC9AF110F37B} - System32\Tasks\e3c09e00 => C:\Users\*****-~1\AppData\Local\Temp\\setup2577851392.exe <==== ATTENTION
Task: {51B468D0-8CEB-4BAE-AEA3-4EC761479B8B} - System32\Tasks\{9830AF16-9482-400B-9E1B-868E8CD8C205} => pcalua.exe -a "C:\Users\*****-*****\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZU0076JS\SOACCU-01363007-UN[1].exe" -d C:\Users\*****-*****
Task: {598F4D5D-0AAD-4486-9371-BD27A5EA6A80} - System32\Tasks\MCVSurveyReminder4 => reminder.exe
Task: {5DBB8895-2BE0-4495-A797-6009C173A108} - System32\Tasks\{1BF2E65A-1E39-4F45-92FD-E0EF4012BE8A} => pcalua.exe -a C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1050\INTEL3~1\IDriver.exe -c /M{430CADFA-CCEB-456D-9994-D9113F731644}
Task: {601E4951-95BA-4388-8522-79849722B245} - System32\Tasks\221db200 => C:\Users\*****-~1\AppData\Local\Temp\\setup4129418752.exe <==== ATTENTION
Task: {64CED321-9BDA-438C-8EAE-9FA9F12FD1F1} - System32\Tasks\d8662340 => C:\Users\*****-~1\AppData\Local\Temp\\setup2016372352.exe <==== ATTENTION
Task: {68F11EF1-2EA3-462C-A57B-420826834205} - System32\Tasks\{7AC43103-A4AE-481B-B197-07B3C364EB4B} => pcalua.exe -a C:\Users\*****-*****\Downloads\NVDVID-01587600-UN.exe -d "C:\Program Files\Mozilla Firefox"
Task: {7786971E-B57F-40FD-8139-281ABE1BD89E} - System32\Tasks\Google Software Updater => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-09-16] (Google)
Task: {78C2C3E7-4F26-4030-AE66-4A08EB1782C1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-05] (Adobe Systems Incorporated)
Task: {7A796D5F-7CBC-4FAE-9015-B38AA747B38A} - System32\Tasks\8340e7c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup1373268928.exe <==== ATTENTION
Task: {874F7FCC-AF76-442E-A24A-E763321339C5} - System32\Tasks\b4899d80 => C:\Users\*****-~1\AppData\Local\Temp\\setup2355517632.exe <==== ATTENTION
Task: {8CA16ED4-2F50-4900-858E-059AC05BC624} - System32\Tasks\1d5fc740 => C:\Users\*****-~1\AppData\Local\Temp\\setup2435663488.exe <==== ATTENTION
Task: {8D109C3F-BFE7-40B0-B4E9-82D5B9DA3818} - System32\Tasks\{321F8462-3D73-467E-B9DC-B1D0A64C03FE} => Firefox.exe hxxp://ui.skype.com/ui/0/6.21.81.104/de/go/help.faq.installer?LastError=1618
Task: {91EEDBC4-E166-41C0-BD6A-0E0BAB4C9DAF} - System32\Tasks\f9bd8a40 => C:\Users\*****-~1\AppData\Local\Temp\\setup2014348480.exe <==== ATTENTION
Task: {9A0019CE-C77A-41B4-878B-F564DE55AD98} - System32\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0 => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {9EA1BE1B-B9AE-42DD-AFD5-8BAAD7523A32} - \Optimizer Pro Schedule No Task File <==== ATTENTION
Task: {A69B794D-07FE-4088-A6F5-FC92516DE4E7} - System32\Tasks\b7c95780 => C:\Users\*****-~1\AppData\Local\Temp\\setup2099225664.exe <==== ATTENTION
Task: {AE13D5DE-F830-4E3D-B01D-148530479116} - System32\Tasks\265edbc0 => C:\Users\*****-~1\AppData\Local\Temp\\setup4200798144.exe <==== ATTENTION
Task: {AF83CA38-58CE-4610-AFCA-459F88C6E38C} - System32\Tasks\MCVSurveyReminder3 => reminder.exe
Task: {BA9261A1-C464-4A08-B582-499B88C325EA} - System32\Tasks\{ABFA890E-19B0-46D9-A582-058578BB8F65} => pcalua.exe -a "C:\Program Files\Trojancheck 6\unins000.exe" -d "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojancheck 6"
Task: {BB74F04E-0A98-4793-85AC-588F73520826} - System32\Tasks\745cd680 => C:\Users\*****-~1\AppData\Local\Temp\\setup522521280.exe <==== ATTENTION
Task: {C03FCD7A-F17A-4C30-B194-412D951E162D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {CD69A141-90D3-4706-85A9-16E38748FB52} - System32\Tasks\bcd27f40 => C:\Users\*****-~1\AppData\Local\Temp\\setup1510311744.exe <==== ATTENTION
Task: {CFFD25B6-A21F-4F81-BEFF-A2EE387662A1} - System32\Tasks\f85fbf80 => C:\Users\*****-~1\AppData\Local\Temp\\setup2183864512.exe <==== ATTENTION
Task: {D3F07B14-4D25-435A-9FF1-A3665E731F9F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E1DC3877-6725-4C56-9628-258B877C3FDA} - \Microsoft\Windows\WindowsCalendar\Reminders - *****-***** No Task File <==== ATTENTION
Task: {E9A76A05-BDA6-4AB7-BAB0-45196D6AE30D} - System32\Tasks\MCVSurveyReminder1 => reminder.exe
Task: {EE04CFD9-B911-4ABA-B2D4-A1B0E90A25A4} - System32\Tasks\{A1EBE010-6567-4A23-BD72-27B12BE82F06} => Iexplore.exe hxxp://ui.skype.com/ui/0/6.20.0.104/de/abandoninstall?page=tsProgressBar
Task: {F276A72E-9ED4-4158-AFD5-139A0274CBA4} - System32\Tasks\9d1f9880 => C:\Users\*****-~1\AppData\Local\Temp\\setup978493568.exe <==== ATTENTION
Task: {F56357CF-48CE-4AAD-B481-98B03E68F168} - System32\Tasks\d8719480 => C:\Users\*****-~1\AppData\Local\Temp\\setup2386082240.exe <==== ATTENTION
Task: {FB47635A-451D-40A8-B9D8-5AAFECC166EC} - System32\Tasks\SONY\WSSU\WSSU => C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe [2007-06-15] (Sony Corporation)
Task: {FDC62037-CCDD-4758-9FF0-949A973B0161} - System32\Tasks\MCVSurveyReminder2 => reminder.exe
Task: {FEA7AE33-57B1-4E10-8F7C-24F88B867194} - System32\Tasks\3338ae00 => C:\Users\*****-~1\AppData\Local\Temp\\setup1972039872.exe <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2011-01-02 17:36 - 2009-11-04 12:14 - 00157696 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\lxeadrpp.dll
2006-12-22 07:31 - 2006-12-22 07:31 - 00108712 _____ () C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
2014-11-28 17:56 - 2011-11-18 14:51 - 03673944 _____ () C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
2007-07-20 16:37 - 2007-07-12 07:33 - 00010752 _____ () C:\Program Files\Sony\VAIO Event Service\VESBasePS.dll
2007-07-20 16:37 - 2007-07-12 07:33 - 00009728 _____ () C:\Program Files\Sony\VAIO Event Service\VESMgrSubPS.dll
2007-06-22 09:49 - 2007-06-22 09:49 - 00126976 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2002-11-27 17:25 - 2002-11-27 17:25 - 00049152 _____ () C:\Program Files\LitexMedia\All To WMA Converter\WMAShellExt.dll
2015-03-21 20:19 - 2012-09-07 16:57 - 00452592 _____ () C:\Program Files\ASCOMP Software\Secure Eraser\SecEraser32.dll
2011-01-02 17:29 - 2010-01-18 18:27 - 00770728 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
2011-01-02 17:29 - 2009-12-16 18:04 - 00389120 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeascw.dll
2011-01-02 17:31 - 2009-05-27 13:16 - 00192512 _____ () C:\Windows\system32\spool\drivers\w32x86\3\lxeadatr.dll
2011-01-02 17:29 - 2009-12-16 18:07 - 01159168 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeaDRS.dll
2011-01-02 17:29 - 2009-03-10 06:43 - 00155648 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeacaps.dll
2011-01-02 17:27 - 2009-02-20 09:48 - 00299008 _____ () C:\Windows\system32\lxeasm.dll
2011-01-02 17:27 - 2009-04-28 08:56 - 00024064 _____ () C:\Windows\system32\lxeasmr.dll
2011-01-02 17:28 - 2010-01-18 18:27 - 00139944 _____ () C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
2011-01-02 17:28 - 2009-03-30 13:37 - 00708608 _____ () C:\Program Files\Lexmark S300-S400 Series\Epwizard.DLL
2011-01-02 17:28 - 2009-03-30 13:35 - 00159744 _____ () C:\Program Files\Lexmark S300-S400 Series\customui.dll
2011-01-02 17:28 - 2009-03-30 13:35 - 00118784 _____ () C:\Program Files\Lexmark S300-S400 Series\Eputil.DLL
2011-01-02 17:28 - 2009-03-30 13:35 - 00139264 _____ () C:\Program Files\Lexmark S300-S400 Series\Imagutil.DLL
2011-01-02 17:28 - 2009-03-30 13:35 - 00061440 _____ () C:\Program Files\Lexmark S300-S400 Series\Epfunct.DLL
2011-01-02 17:29 - 2009-06-23 12:09 - 02203648 _____ () C:\Program Files\Lexmark S300-S400 Series\EPWizRes.dll
2011-01-02 17:29 - 2009-06-23 12:10 - 00045056 _____ () C:\Program Files\Lexmark S300-S400 Series\epstring.dll
2011-01-02 17:29 - 2009-06-23 12:11 - 00102400 _____ () C:\Program Files\Lexmark S300-S400 Series\EPOEMDll.dll
2011-01-02 17:28 - 2009-04-07 20:25 - 00409600 _____ () C:\Program Files\Lexmark S300-S400 Series\iptk.dll
2011-01-02 17:29 - 2009-03-02 15:25 - 00151552 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeaptp.dll
2015-03-17 18:35 - 2015-01-19 12:06 - 00053496 _____ () C:\Users\*****-*****\AppData\Local\temp\avgnt.exe\Avira.OE.ExtApi.dll
2012-03-20 19:44 - 2012-04-30 10:57 - 00039936 _____ () C:\Program Files\Sony\Sony PC Companion\TMonitorAPI.dll
2012-03-20 19:44 - 2014-12-04 14:18 - 00241152 _____ () C:\Program Files\Sony\Sony PC Companion\MExplorer.dll
2011-07-07 14:54 - 2011-07-07 14:54 - 00233984 _____ () C:\Program Files\Sony\Sony PC Companion\Report.dll
2011-11-01 19:32 - 2013-05-20 11:58 - 00620718 _____ () C:\Program Files\Sony\Sony PC Companion\sqlite3.dll
2012-03-20 19:44 - 2010-01-11 15:44 - 00053248 _____ () C:\Program Files\Sony\Sony PC Companion\VObject.dll
2012-01-27 11:02 - 2012-01-27 11:02 - 00569344 _____ () C:\Program Files\Sony\Sony PC Companion\PhoneUpdate.dll
2012-05-15 19:42 - 2012-05-15 19:42 - 00052224 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2012-05-15 19:42 - 2015-03-21 14:52 - 00065024 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll
2012-05-15 19:42 - 2015-03-21 14:52 - 00052736 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll
2012-05-15 19:42 - 2012-05-15 19:42 - 00117760 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2014-05-16 14:38 - 2014-05-08 18:26 - 03145536 _____ () C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
2007-06-22 09:34 - 2007-06-22 09:34 - 00389120 _____ () C:\Windows\system32\btwhidcs.DLL
2012-03-20 19:44 - 2014-06-23 08:07 - 00113376 _____ () C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
2010-05-04 15:36 - 2010-05-04 15:36 - 00970752 _____ () C:\Program Files\OpenOffice.org 3\program\libxml2.dll
2015-03-21 20:19 - 2011-06-14 17:22 - 00045408 _____ () C:\Program Files\ASCOMP Software\Secure Eraser\mftutils.dll
2011-12-30 10:40 - 2012-06-20 08:37 - 02042848 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\img19.jpg
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\Wallpaper -> C:\windows\Web\Wallpaper\img24.jpg
DNS Servers: 192.168.2.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: FirebirdServerMAGIXInstance => 3
MSCONFIG\Services: FLEXnet Licensing Service => 3
MSCONFIG\Services: GoogleDesktopManager-051210-111108 => 3
MSCONFIG\Services: gupdate1ca0ac0f00c0a80 => 2
MSCONFIG\Services: OMSI download service => 2
MSCONFIG\Services: PACSPTISVR => 3
MSCONFIG\Services: SBSDWSCService => 2
MSCONFIG\Services: sdAuxService => 2
MSCONFIG\Services: sdCoreService => 2
MSCONFIG\startupfolder: C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk => C:\Windows\pss\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk.Startup
MSCONFIG\startupfolder: C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Picture Motion Browser Medien-Prüfung.lnk => C:\Windows\pss\Picture Motion Browser Medien-Prüfung.lnk.Startup
MSCONFIG\startupreg: Apoint => C:\Program Files\Apoint\Apoint.exe
MSCONFIG\startupreg: Google Desktop Search => "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
MSCONFIG\startupreg: googletalk => C:\Program Files\Google\Google Talk\googletalk.exe /autostart
MSCONFIG\startupreg: ISBMgr.exe => "C:\Program Files\Sony\ISB Utility\ISBMgr.exe"
MSCONFIG\startupreg: LogitechQuickCamRibbon => "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: TrayServer => C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe

==================== Accounts: =============================

Administrator (S-1-5-21-3850073437-3280287025-709413035-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3850073437-3280287025-709413035-1002 - Limited - Enabled)
Gast (S-1-5-21-3850073437-3280287025-709413035-501 - Limited - Disabled)
*****-***** (S-1-5-21-3850073437-3280287025-709413035-1000 - Limited - Enabled) => C:\Users\*****-*****
*****-***** 2 (S-1-5-21-3850073437-3280287025-709413035-1003 - Administrator - Enabled) => C:\Users\*****-***** 2

==================== Faulty Device Manager Devices =============

Name: NVIDIA GeForce 8400M GT
Description: NVIDIA GeForce 8400M GT
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: nvlddmkm
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.


==================== Event log errors: =========================

Application errors:
==================
Error: (03/21/2015 09:07:56 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm FRST.exe, Version 11.3.2015.0 arbeitet nicht mehr mit Windows zusammen und wurde beendet. Überprüfen Sie den Problemverlauf im Applet "Lösungen für Probleme" in der Systemsteuerung, um nach weiteren Informationen über das Problem zu suchen.
Prozess-ID: 183c
Anfangszeit: 01d0641150cf34de
Zeitpunkt der Beendigung: 145

Error: (03/21/2015 08:37:22 PM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (2920) Windows: Datenbank C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index indexRecovery von Tabelle SystemIndex_Gthr ist beschädigt (0).

Error: (03/21/2015 07:11:18 PM) (Source: VzFw) (EventID: 208) (User: )
Description: Die Daten in der Datei/im Ordner konnten nicht aktualisiert werden. (80004005)
C:\Users\*****-*****\Pictures\CD´s\CD 9\DSC09324.JPG

Error: (03/21/2015 02:50:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlerhafte Anwendung rundll32.exe, Version 6.0.6000.16386, Zeitstempel 0x4549b0e1, fehlerhaftes Modul nvapi.dll, Version 7.15.11.6760, Zeitstempel 0x478735bd, Ausnahmecode 0xc0000005, Fehleroffset 0x00027df0,
Prozess-ID 0x12f0, Anwendungsstartzeit rundll32.exe0.

Error: (03/21/2015 02:49:48 PM) (Source: EventSystem) (EventID: 4609) (User: )
Description: d:\longhorn\com\complus\src\events\tier2\eventsystem2.cpp38180070005

Error: (03/21/2015 02:19:50 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\*****-*****\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\MDOH89Q4.DEFAULT\CACHE\8> in der Hash-Zuordnung kann nicht aktualisiert werden.

Kontext:  Anwendung, SystemIndex Katalog


Details:
        Ein an das System angeschlossenes Gerät funktioniert nicht.  (0x8007001f)

Error: (03/21/2015 02:19:50 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\*****-*****\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\MDOH89Q4.DEFAULT\CACHE\8> in der Hash-Zuordnung kann nicht aktualisiert werden.

Kontext:  Anwendung, SystemIndex Katalog


Details:
        Ein an das System angeschlossenes Gerät funktioniert nicht.  (0x8007001f)

Error: (03/21/2015 02:19:49 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\*****-*****\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\MDOH89Q4.DEFAULT\CACHE\7> in der Hash-Zuordnung kann nicht aktualisiert werden.

Kontext:  Anwendung, SystemIndex Katalog


Details:
        Ein an das System angeschlossenes Gerät funktioniert nicht.  (0x8007001f)

Error: (03/21/2015 02:19:49 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\*****-*****\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\MDOH89Q4.DEFAULT\CACHE\7> in der Hash-Zuordnung kann nicht aktualisiert werden.

Kontext:  Anwendung, SystemIndex Katalog


Details:
        Ein an das System angeschlossenes Gerät funktioniert nicht.  (0x8007001f)

Error: (03/21/2015 02:19:49 PM) (Source: Windows Search Service) (EventID: 3013) (User: )
Description: Eintrag <C:\USERS\*****-*****\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\MDOH89Q4.DEFAULT\CACHE\6> in der Hash-Zuordnung kann nicht aktualisiert werden.

Kontext:  Anwendung, SystemIndex Katalog


Details:
        Ein an das System angeschlossenes Gerät funktioniert nicht.  (0x8007001f)


System errors:
=============
Error: (03/21/2015 02:33:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: 0x80070643Definition Update for Windows Defender - KB915597 (Definition 1.193.3223.0){78D1B96D-9410-4B96-8F7F-B2BC8F6228B3}200

Error: (03/21/2015 02:29:26 PM) (Source: WinDefend) (EventID: 2004) (User: )
Description: Beim Laden der Signaturen wurde von %%%82527 ein Fehler festgestellt. Es wird versucht, einen als gültig bekannten Signatursatz wiederherzustellen.

        Versuchte Signaturen: %%%82524

        Fehlercode: 0x8050a001

        Fehlerbeschreibung: Das Programm kann keine Definitionsdateien finden, die dazu dienen, unerwünschte Software zu erkennen. Überprüfen Sie, ob aktualisierte Definitionsdateien vorhanden sind, und versuchen Sie es dann erneut. Weitere Informationen zum Installieren von Updates finden Sie unter "Hilfe und Support".

        Ladende Signaturen: %%825

        Ladene Signaturversion: 1.193.2869.0

        Ladende Modulversion: %%%825270

Error: (03/21/2015 02:16:00 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: VAIO Content Metadata Intelligent Analyzing Manager1

Error: (03/21/2015 02:14:54 PM) (Source: TermService) (EventID: 1057) (User: )
Description: Fehler beim Erstellen eines neuen selbstsignierten Zertifikats für die Terminalserver-Authentifizierung bei SSL-Verbindungen auf dem Terminalserver. Der betreffende Statuscode war Schlüssel ist im angegebenen Status nicht gültig.
.

Error: (03/21/2015 02:14:29 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)

Error: (03/21/2015 02:14:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: lxeaCATSCustConnectService%%1053

Error: (03/21/2015 02:14:21 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: 30000lxeaCATSCustConnectService

Error: (03/21/2015 02:14:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Parallel port driver%%1058

Error: (03/21/2015 01:40:12 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)

Error: (03/21/2015 01:19:18 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)


Microsoft Office Sessions:
=========================
Error: (01/07/2015 10:09:14 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2993 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 10:09:13 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2965 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 10:09:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2951 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (03/26/2014 09:07:27 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 13351 seconds with 360 seconds of active time.  This session ended with a crash.

Error: (02/27/2014 05:29:37 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1742 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (05/02/2013 01:23:23 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 678 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (12/13/2012 10:26:31 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 436 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (07/11/2012 07:17:25 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 44 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (06/14/2012 09:14:17 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 700 seconds with 660 seconds of active time.  This session ended with a crash.

Error: (06/14/2012 09:02:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1237 seconds with 1200 seconds of active time.  This session ended with a crash.


CodeIntegrity Errors:
===================================
  Date: 2015-03-21 21:09:47.723
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-03-21 21:09:47.094
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-03-21 21:09:46.493
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-03-21 21:09:45.831
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-03-21 21:09:44.749
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-03-21 21:09:44.108
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-03-21 21:09:43.471
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-03-21 21:09:42.876
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-03-21 21:05:19.587
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-03-21 21:05:18.896
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz
Percentage of memory in use: 69%
Total physical RAM: 2045.69 MB
Available physical RAM: 631.68 MB
Total Pagefile: 4332.6 MB
Available Pagefile: 1934.28 MB
Total Virtual: 2047.88 MB
Available Virtual: 1915.37 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:176.24 GB) (Free:95.05 GB) NTFS ==>[Drive with boot components (obtained from BCD)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 186.3 GB) (Disk ID: A8CB6A4C)
Partition 1: (Not Active) - (Size=10.1 GB) - (Type=27)
Partition 2: (Active) - (Size=176.2 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Oje, wenn ich mir das so durchlese, habe ich wohl jetzt zu viel gelöscht, oder?!???? Also weil da so viele Fehlermeldungen drin sind?


FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by *****-***** 2 (administrator) on TEDDYBÄR on 21-03-2015 21:08:16
Running from C:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Platform: Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
() C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
( ) C:\Windows\System32\lxeacoms.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe
() C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
(Secunia) C:\Program Files\Secunia\PSI\psia.exe
(SigmaTel, Inc.) C:\Windows\System32\stacsv.exe
(Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
(Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdSync.exe
() C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
() C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
() C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
(ASCOMP Software GmbH) C:\Program Files\ASCOMP Software\Secure Eraser\sEraser.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdSync.exe [215552 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [37296 2011-09-07] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-03-30] (Adobe Systems Incorporated)
HKLM\...\Run: [lxeamon.exe] => C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe [770728 2010-01-18] ()
HKLM\...\Run: [EzPrint] => C:\Program Files\Lexmark S300-S400 Series\ezprint.exe [139944 2010-01-18] ()
HKLM\...\Run: [UVS10 Preload] => C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [36864 2006-08-09] (Ulead Systems, Inc.)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [704512 2015-03-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [NvSvc] => RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll (Sony Corporation)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [466144 2014-11-27] (Sony)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [3905920 2012-06-05] (SUPERAntiSpyware.com)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Akamai NetSession Interface] => C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Amazon Cloud Player] => C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3145536 2014-05-08] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON SX430 Series (Kopie 1)] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHAE.EXE [212480 2012-05-18] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON Stylus DX8400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE [182272 2007-04-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-06-26] (Google)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk
ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\DSL-Manager\DslMgr.exe (No File)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk
ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.club-vaio.com
hxxp://partnerpage.google.com/eu.sony.com/de
hxxp://www.club-vaio.com/vbc
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {399AFF92-3607-4429-B2E3-99BECE8D2374} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=internet-tab&tpc=internet&ptl=std&classification=internet-tab_internet_std&q={searchTerms}&br=ie7-toi
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {53DBFD01-FF03-4A5F-8F4B-7BF8E909A975} URL = hxxp://www.amazon.de/gp/search?ie=UTF8&keywords={searchTerms}&tag=interactivemesuche-21&index=blended&linkCode=ur2&camp=1638&creative=6742
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {C4802B53-BBDC-409E-B3EF-57C0B6708018} URL = hxxp://adfarm.mediaplex.com/ad/ck/707-1403-18840-0?mpro=hxxp://search.ebay.de/search/search.dll?shortcut=4&query={searchTerms}
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {E6BFE530-DE68-4D85-A111-513CA45EFAF0} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=wiki-tab&tpc=internet&ptl=std&classification=wiki-tab_internet_std&q={searchTerms}&br=ie7-toi
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22] (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-20] (Oracle Corporation)
BHO: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2011-09-16] (Google Inc.)
BHO: CBrowserHelperObject Object -> {CA6319C0-31B7-401E-A518-A07C3DB8F777} -> C:\Program Files\Google BAE\BAE.dll [2006-06-23] (Your Company Name)
BHO: Lexmark  -> {D2C5E510-BE6D-42CC-9F61-E4F939078474} -> C:\Program Files\Lexmark Printable Web\bho.dll [2008-05-22] ()
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-20] (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
Toolbar: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> No Name - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} -  No File
DPF: {00000161-9980-0010-8000-00AA00389B71} hxxp://codecs.microsoft.com/codecs/i386/msaud.cab
DPF: {33564D57-9980-0010-8000-00AA00389B71} hxxp://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-01-25] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\*****-***** 2\AppData\Roaming\Mozilla\Firefox\Profiles\4qlxy2p6.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-05] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2007-07-12] (DivX, Inc)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2013-06-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-20] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-16] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2011-06-07] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3850073437-3280287025-709413035-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-03-09] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2011-06-07] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-06-04] (Apple Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\googledesktop.xml [2010-06-26]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2012-12-12]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{D250ED92-1791-42C4-B441-E90BF89B9BEF}] - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF}
FF Extension: XULRunner - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF} [2011-04-02]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-31]
CHR Extension: (Google Docs) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-31]
CHR Extension: (Google Drive) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-31]
CHR Extension: (YouTube) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-31]
CHR Extension: (Google Search) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-31]
CHR Extension: (Google Sheets) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-31]
CHR Extension: (Avira Browser Safety) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-03-13]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-13]
CHR Extension: (Google Wallet) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-31]
CHR Extension: (Gmail) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-31]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2011-08-12] (SUPERAntiSpyware.com) [File not signed]
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AdobeActiveFileMonitor5.0; C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [108712 2006-12-22] ()
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [432888 2015-03-19] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [432888 2015-03-19] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe [443752 2008-08-18] (DisplayLink Corp.)
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
S4 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed]
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [74752 2011-12-30] (Freemake) [File not signed]
S4 GoogleDesktopManager-051210-111108; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-06-26] (Google)
S2 gupdate1ca0ac0f00c0a80; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeaserv.exe [193192 2010-04-14] (Lexmark International, Inc.)
R2 lxea_device; C:\Windows\system32\lxeacoms.exe [598696 2010-01-07] ( )
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [File not signed]
R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) [File not signed]
S4 OMSI download service; C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112 2009-04-30] () [File not signed]
S4 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [File not signed]
R2 Radio.fx; C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe [3673944 2011-11-18] ()
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [994360 2011-07-29] (Secunia)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [File not signed]
R2 STacSV; C:\Windows\system32\stacsv.exe [94208 2007-06-13] (SigmaTel, Inc.)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-09-28] (Ulead Systems, Inc.) [File not signed]
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2007-06-28] (Sony Corporation) [File not signed]
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182392 2007-07-12] (Sony Corporation)
S3 VAIOMediaPlatform-IntegratedServer-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2523136 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-Mobile-Gateway; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [499712 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe [745472 2007-01-10] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [292152 2007-07-05] (Sony Corporation)
R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [274432 2007-06-28] (Sony Corporation) [File not signed]
R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2007-08-28] (Sony Corporation) [File not signed]
R2 VzFw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe [131072 2007-08-28] (Sony Corporation) [File not signed]
R3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 CLTNetCnService; "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-11-24] (Avira Operations GmbH & Co. KG)
R3 dlkmd; C:\Windows\system32\drivers\dlkmd.sys [287856 2008-08-18] (DisplayLink Corp.)
R0 dlkmdldr; C:\Windows\System32\drivers\dlkmdldr.sys [13424 2008-08-18] (DisplayLink Corp.)
R3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25624 2009-04-30] ()
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-03-14] (Malwarebytes Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia)
S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [86824 2008-10-21] (MCCI Corporation)
S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [15016 2008-10-21] (MCCI Corporation)
S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [114600 2008-10-21] (MCCI Corporation)
S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [108328 2008-10-21] (MCCI Corporation)
S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [26024 2008-10-21] (MCCI Corporation)
S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [104616 2008-10-21] (MCCI Corporation)
S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [109736 2008-10-21] (MCCI Corporation)
S3 s116bus; C:\Windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\Windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\Windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\Windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\Windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\Windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\Windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
S3 s3017bus; C:\Windows\System32\DRIVERS\s3017bus.sys [83880 2007-12-10] (MCCI Corporation)
S3 s3017mdfl; C:\Windows\System32\DRIVERS\s3017mdfl.sys [15016 2007-12-10] (MCCI Corporation)
S3 s3017mdm; C:\Windows\System32\DRIVERS\s3017mdm.sys [110632 2007-12-10] (MCCI Corporation)
S3 s3017mgmt; C:\Windows\System32\DRIVERS\s3017mgmt.sys [104616 2007-12-10] (MCCI Corporation)
S3 s3017nd5; C:\Windows\System32\DRIVERS\s3017nd5.sys [25512 2007-12-10] (MCCI Corporation)
S3 s3017obex; C:\Windows\System32\DRIVERS\s3017obex.sys [100648 2007-12-10] (MCCI Corporation)
S3 s3017unic; C:\Windows\System32\DRIVERS\s3017unic.sys [110120 2007-12-10] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-11-24] (Avira GmbH)
R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [326656 2007-06-13] (SigmaTel, Inc.)
S3 StkTMini; C:\Windows\System32\Drivers\StkTMini.sys [468096 2007-11-15] (Syntek)
R3 TelekomNM3; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM3.sys [35040 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
R3 ti21sony; C:\Windows\System32\drivers\ti21sony.sys [812544 2007-06-06] (Texas Instruments)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\Users\*****-~2\AppData\Local\Temp\catchme.sys [X]
S3 dsltestSp5; System32\Drivers\dsltestSp5.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-21 21:03 - 2015-03-21 21:07 - 00040297 _____ () C:\Users\*****-*****\Downloads\Addition.txt
2015-03-21 20:55 - 2015-03-21 21:09 - 00034849 _____ () C:\Users\*****-*****\Downloads\FRST.txt
2015-03-21 20:54 - 2015-03-21 21:08 - 00000000 ____D () C:\FRST
2015-03-21 20:54 - 2015-03-21 20:54 - 01135104 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST.exe
2015-03-21 20:52 - 2015-03-21 20:52 - 02095616 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST64(1).exe
2015-03-21 20:51 - 2015-03-21 20:52 - 02095616 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST64.exe
2015-03-21 20:21 - 2015-03-21 20:21 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Roaming\ASCOMP Software
2015-03-21 20:19 - 2015-03-21 20:19 - 00001942 _____ () C:\Users\Public\Desktop\Secure Eraser.lnk
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASCOMP Software
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\Program Files\ASCOMP Software
2015-03-21 20:13 - 2015-03-21 20:13 - 04233064 _____ (ASCOMP Software GmbH ) C:\Users\*****-*****\Downloads\sEraser4201.exe
2015-03-21 20:13 - 2015-03-21 20:13 - 04233064 _____ (ASCOMP Software GmbH ) C:\Users\*****-*****\Downloads\sEraser4201(1).exe
2015-03-21 19:33 - 2015-03-21 19:33 - 00000552 _____ () C:\Users\*****-*****\AppData\Local\d3d8caps.dat
2015-03-21 13:21 - 2015-03-21 13:21 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Tobit
2015-03-20 19:36 - 2009-05-26 11:35 - 01079840 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpluir.dll
2015-03-20 19:36 - 2009-05-26 11:35 - 00760352 _____ (NVIDIA Corporation) C:\Windows\system32\nvcplui.exe
2015-03-20 19:36 - 2009-05-26 11:35 - 00420384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.cpl
2015-03-20 19:36 - 2009-05-26 11:35 - 00313888 _____ (NVIDIA Corporation) C:\Windows\system32\nvexpbar.dll
2015-03-16 19:42 - 2015-03-16 19:42 - 00002972 _____ () C:\Users\*****-*****\Desktop\Fixlist.txt
2015-03-15 21:50 - 2015-03-15 21:50 - 00138584 _____ () C:\Windows\Minidump\Mini031515-01.dmp
2015-03-14 15:25 - 2015-03-14 15:33 - 00000000 ____D () C:\AdwCleaner
2015-03-14 13:02 - 2015-03-14 13:03 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-14 13:00 - 2015-03-14 13:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-14 13:00 - 2015-03-14 13:00 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-03-14 13:00 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-14 13:00 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-13 23:17 - 2015-03-13 23:17 - 00002080 _____ () C:\Users\*****-*****\Desktop\ComboFix - Verknüpfung.lnk
2015-03-13 22:47 - 2015-03-13 22:49 - 00207325 _____ () C:\Users\*****-***** 2\Desktop\combofix.txt
2015-03-13 22:44 - 2015-03-13 22:44 - 00207509 _____ () C:\ComboFix.txt
2015-03-13 22:06 - 2015-03-13 22:44 - 00000000 ____D () C:\ComboFix
2015-03-13 22:04 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-03-13 22:04 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-03-13 22:04 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-03-13 22:01 - 2015-03-13 22:44 - 00000000 ____D () C:\Qoobox
2015-03-13 21:24 - 2015-03-13 21:24 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Roaming\Swiss Academic Software
2015-03-13 21:09 - 2015-03-13 21:09 - 00001057 _____ () C:\Users\*****-***** 2\Desktop\Revo Uninstaller.lnk
2015-03-13 21:09 - 2015-03-13 21:09 - 00000000 ____D () C:\Program Files\VS Revo Group
2015-03-13 19:55 - 2015-03-13 19:55 - 00138584 _____ () C:\Windows\Minidump\Mini031315-02.dmp
2015-03-13 19:18 - 2015-03-13 19:18 - 00142704 _____ () C:\Windows\Minidump\Mini031315-01.dmp
2015-03-12 21:34 - 2015-03-12 21:34 - 00007809 _____ () C:\Users\*****-***** 2\Desktop\gmer.txt
2015-03-12 19:48 - 2015-03-12 19:49 - 00000492 _____ () C:\Windows\system32\defogger_disable.log
2015-03-12 19:48 - 2015-03-12 19:48 - 00000000 _____ () C:\Users\*****-***** 2\defogger_reenable
2015-03-11 21:06 - 2015-03-11 21:06 - 00142704 _____ () C:\Windows\Minidump\Mini031115-01.dmp
2015-03-11 19:55 - 2015-01-29 02:35 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-11 19:51 - 2015-01-29 02:35 - 00975360 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-11 19:44 - 2015-02-26 01:18 - 02064384 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-11 17:14 - 2015-02-20 03:03 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-11 17:14 - 2015-02-20 01:28 - 00296960 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-11 17:10 - 2015-02-26 03:01 - 03604408 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-03-11 17:10 - 2015-02-26 03:01 - 03552184 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-11 17:10 - 2015-01-09 03:04 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-11 17:10 - 2015-01-09 01:18 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-11 17:08 - 2015-01-21 03:02 - 00807936 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-11 17:05 - 2015-03-06 05:01 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-11 17:03 - 2014-10-13 02:12 - 02264064 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-11 17:02 - 2015-02-18 03:02 - 11587584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-10 23:52 - 2015-03-13 22:29 - 00000000 ____D () C:\Program Files\861437cb-3ee3-405d-bcea-149a4dc68fde
2015-03-10 23:51 - 2015-03-11 19:50 - 00000000 ____D () C:\ProgramData\{c5d7b5bd-e56a-bd77-c5d7-7b5bde56d6f7}
2015-03-10 21:26 - 2015-02-21 18:37 - 12375040 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-10 21:26 - 2015-02-21 18:34 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-10 21:26 - 2015-02-21 18:29 - 09747968 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-10 21:26 - 2015-02-21 18:28 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-10 21:26 - 2015-02-21 18:22 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-10 21:26 - 2015-02-21 18:21 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-10 21:26 - 2015-02-21 18:21 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 01803264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-10 21:26 - 2015-02-21 18:18 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-10 21:26 - 2015-02-21 18:17 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-09 20:35 - 2015-03-09 20:35 - 00139088 _____ () C:\Windows\Minidump\Mini030915-01.dmp
2015-03-08 11:03 - 2015-03-08 11:03 - 00209608 _____ () C:\Windows\Minidump\Mini030815-01.dmp
2015-03-06 15:42 - 2015-03-06 15:42 - 00001879 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2015-02-21 13:06 - 2015-02-21 13:06 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Avira
2015-02-21 12:36 - 2015-03-10 20:05 - 00136216 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-02-21 12:36 - 2015-03-10 20:05 - 00105864 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-02-21 12:36 - 2014-11-24 10:23 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2015-02-21 12:24 - 2015-02-21 12:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-02-21 12:24 - 2015-02-21 12:24 - 00001002 _____ () C:\Users\Public\Desktop\Avira.lnk
2015-02-21 12:23 - 2015-02-21 12:23 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-20 20:52 - 2015-02-20 20:45 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2015-02-20 20:52 - 2015-02-20 20:44 - 00176552 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2015-02-20 20:52 - 2015-02-20 20:44 - 00176552 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2015-02-20 20:52 - 2013-06-18 19:48 - 00867240 _____ (Oracle Corporation) C:\Windows\system32\npDeployJava1.dll
2015-02-20 20:52 - 2013-06-18 19:48 - 00789416 _____ (Oracle Corporation) C:\Windows\system32\deployJava1.dll
2015-02-20 20:45 - 2015-02-20 20:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-02-20 20:42 - 2015-02-20 21:01 - 00000000 ____D () C:\ProgramData\Oracle

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-21 21:05 - 2013-02-05 20:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-21 21:01 - 2011-06-30 11:07 - 00001356 _____ () C:\Users\*****-*****\AppData\Local\d3d9caps.dat
2015-03-21 20:55 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-21 20:55 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-21 20:38 - 2008-02-06 14:54 - 01534838 _____ () C:\Windows\WindowsUpdate.log
2015-03-21 20:31 - 2008-02-06 16:25 - 00000000 ____D () C:\Users\*****-*****
2015-03-21 20:23 - 2012-06-01 17:32 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Roaming\Adobe
2015-03-21 20:23 - 2012-05-23 06:59 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Local\Adobe
2015-03-21 20:18 - 2009-07-22 12:50 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-21 19:59 - 2011-07-16 17:42 - 00125952 _____ () C:\Users\*****-*****\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-03-21 19:49 - 2009-06-09 20:21 - 00000000 ____D () C:\Users\*****-*****\dwhelper
2015-03-21 19:09 - 2006-11-02 11:33 - 01594468 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-21 19:05 - 2012-06-01 20:49 - 00000017 ____H () C:\Windows\system32\servdat.slm
2015-03-21 17:18 - 2013-07-13 10:20 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
2015-03-21 14:51 - 2011-01-02 17:31 - 00192570 _____ () C:\ProgramData\lxeascan.log
2015-03-21 14:13 - 2006-11-02 14:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-21 13:36 - 2006-11-02 11:22 - 66846720 _____ () C:\Windows\system32\config\software_previous
2015-03-21 13:36 - 2006-11-02 11:22 - 52166656 _____ () C:\Windows\system32\config\system_previous
2015-03-21 13:35 - 2013-07-25 22:43 - 00000000 ____D () C:\ProgramData\Netzmanager
2015-03-21 13:35 - 2013-06-21 13:43 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-03-21 13:35 - 2012-06-24 10:07 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Akamai
2015-03-21 13:35 - 2012-05-23 06:59 - 00000000 ____D () C:\Users\*****-***** 2
2015-03-21 13:35 - 2011-05-25 12:59 - 00000000 ____D () C:\ProgramData\Ulead Systems
2015-03-21 13:35 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\spool
2015-03-21 13:35 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\Msdtc
2015-03-21 13:35 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\registration
2015-03-21 13:29 - 2006-11-02 11:22 - 49283072 _____ () C:\Windows\system32\config\components_previous
2015-03-21 13:29 - 2006-11-02 11:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous
2015-03-21 13:27 - 2006-11-02 11:22 - 00262144 _____ () C:\Windows\system32\config\security_previous
2015-03-21 10:32 - 2006-11-02 11:22 - 00524288 _____ () C:\Windows\system32\config\default_previous
2015-03-20 19:15 - 2006-11-02 13:52 - 00113370 _____ () C:\Windows\setupact.log
2015-03-20 18:59 - 2007-07-20 15:28 - 01554744 _____ () C:\Windows\PFRO.log
2015-03-18 18:10 - 2010-08-25 19:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-18 18:09 - 2007-07-20 14:34 - 00000012 _____ () C:\Windows\bthservsdp.dat
2015-03-18 18:09 - 2006-11-02 14:01 - 00032558 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-03-16 19:50 - 2008-09-01 21:42 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-03-15 21:50 - 2008-05-16 21:19 - 00000000 ____D () C:\Windows\Minidump
2015-03-15 21:48 - 2010-08-25 18:12 - 315964757 _____ () C:\Windows\MEMORY.DMP
2015-03-15 18:51 - 2008-02-16 14:49 - 00002631 _____ () C:\Users\*****-*****\Desktop\Microsoft Office Word 2007.lnk
2015-03-15 12:36 - 2011-08-30 05:40 - 00001052 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-03-14 16:43 - 2015-01-31 17:40 - 00001963 _____ () C:\Users\*****-***** 2\Desktop\Google Chrome.lnk
2015-03-14 16:43 - 2012-05-23 06:59 - 00000944 _____ () C:\Users\*****-***** 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-03-14 15:29 - 2009-07-22 12:09 - 00000000 ____D () C:\ProgramData\ICQ
2015-03-14 13:00 - 2012-05-07 19:58 - 00000899 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-14 13:00 - 2012-05-07 19:58 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-13 22:39 - 2006-11-02 11:23 - 00000215 _____ () C:\Windows\system.ini
2015-03-13 22:29 - 2012-09-29 13:22 - 00000000 ____D () C:\Program Files\7-Zip2
2015-03-13 22:24 - 2010-03-04 19:47 - 00000000 ____D () C:\ProgramData\TEMP
2015-03-13 19:25 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.001
2015-03-11 20:31 - 2006-11-02 13:47 - 00397352 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-11 19:54 - 2007-07-20 16:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-11 19:43 - 2013-07-26 08:36 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-11 19:01 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.dat
2015-03-11 17:16 - 2006-11-02 11:24 - 119837696 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2015-03-10 23:53 - 2012-05-23 06:59 - 00043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2015-03-07 21:58 - 2008-02-10 11:56 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Skype
2015-03-07 17:01 - 2011-03-01 16:18 - 00045024 _____ () C:\ProgramData\lxea.log
2015-03-06 15:48 - 2007-07-20 14:51 - 00794682 _____ () C:\Windows\DPINST.LOG
2015-03-06 15:42 - 2007-07-20 16:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-03-06 15:41 - 2007-07-20 15:01 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-03-01 19:08 - 2010-01-02 10:33 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2015-02-24 04:23 - 2009-10-03 01:27 - 00246920 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-02-21 12:34 - 2013-08-13 05:16 - 00000000 ____D () C:\Program Files\Avira
2015-02-21 12:23 - 2012-04-26 05:31 - 00000000 ____D () C:\ProgramData\Avira
2015-02-21 12:18 - 2015-01-31 19:22 - 00000140 _____ () C:\Users\*****-*****\AppData\Roaming\WB.CFG
2015-02-20 20:50 - 2008-08-31 09:27 - 00000000 ____D () C:\Program Files\Java
2015-02-20 20:49 - 2008-08-31 09:26 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-02-20 20:48 - 2012-05-23 06:59 - 00002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2015-02-20 20:44 - 2013-06-18 19:50 - 00272296 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe

==================== Files in the root of some directories =======

2012-05-23 06:59 - 2015-03-10 23:53 - 0043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2012-05-23 06:59 - 2007-08-06 14:21 - 0042479 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.dat
2012-06-30 10:35 - 2012-06-30 10:35 - 0000022 ___SH () C:\Users\*****-***** 2\AppData\Roaming\Windows1569_SettingsRepository.bin
2012-05-23 06:59 - 2015-02-20 20:48 - 0002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2012-05-23 06:59 - 2007-08-06 14:06 - 0018944 _____ () C:\Users\*****-***** 2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-30 10:35 - 2012-06-30 10:35 - 0000000 _____ () C:\Users\*****-***** 2\AppData\Local\jv16PT_temp.tmp
2008-02-21 11:45 - 2008-02-21 11:45 - 0000305 _____ () C:\ProgramData\addr_file.html
2009-02-05 21:42 - 2009-02-05 21:42 - 0000056 _____ () C:\ProgramData\ezsidmv.dat
2011-01-02 17:39 - 2011-01-02 17:39 - 0000252 _____ () C:\ProgramData\FastPics.log
2011-03-01 16:18 - 2015-03-07 17:01 - 0045024 _____ () C:\ProgramData\lxea.log
2011-01-02 17:40 - 2011-01-02 17:42 - 0000438 _____ () C:\ProgramData\lxeaDiagnostics.log
2011-01-02 17:44 - 2011-06-02 09:10 - 0004439 _____ () C:\ProgramData\lxeaJSW.log
2011-01-02 17:31 - 2015-03-21 14:51 - 0192570 _____ () C:\ProgramData\lxeascan.log
2011-01-02 17:27 - 2011-01-02 17:27 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

Some content of TEMP:
====================
C:\Users\*****-*****\AppData\Local\temp\avgnt.exe


Some zero byte size files/folders:
==========================
C:\Windows\System32\nsprs.dll
C:\Windows\System32\serauth1.dll
C:\Windows\System32\serauth2.dll
C:\Windows\System32\ssprs.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-21 14:42

==================== End Of Log ============================

--- --- ---

--- --- ---

schrauber 22.03.2015 10:39

Was meinst Du mit sicher Daten löschen?

Jami87 22.03.2015 11:59

Naja, wenn ich sämtliche private Dateien in den Papierkorb schiebe und dort lösche, sind sie ja wiederherstellbar. Mag nicht, dass jemand meine Bilder, Dokumente, etc. irgendwann nochmal ausliest (auch wenn nichts besonderes dabei ist, aber das sind ja doch persönliche Dateien...).

Ist der PC denn jetzt frei von Viren bzw. was sagt die FRST - Datei aus?

schrauber 22.03.2015 17:50

Nein, sauber ist er nicht, du hast wieder Adware erwischt irgendwo. Also private Daten löschen meinst Du wenn du den Rechner entsorgst?

EInfach mit der Windows DVD oder sonst einer DVD eines Betriebssystems formatieren, dann sind die Daten weg.


Lade Dir bitte von hier Revo Uninstaller Download Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
  • Installiere und starte das Programm. (Bebilderte Anleitung zu Revo Uninstaller)
  • Klicke auf Optionen und wähle als Sprache Deutsch.
  • Suche im Uninstallerfeld nach den Programmen:

    Iminent

  • Wähle die Programme nacheinander aus und klicke jedes Mal auf Uninstall.
  • Wähle anschließend den Modus "Moderat" aus.
  • Reste löschen:
    Klicke auf dann auf und dann auf .

 




Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.

Jami87 22.03.2015 19:53

Schon wieder Adware? Ich war doch kaum am PC, da er doch ohnehin nicht ging?!?

Das mit der Windows-DVD, etc. scheint aber kompliziert zu sein :-( (Die muss man ja erstmal irgendwo her bekommen, etc.) Geht das nicht einfacher? Ich hatte nun z.B. von "Secure Eraser" gehört und dies runtergeladen - was hältst du von sowas?

Das "Iminent" finde ich leider nicht?!?

Bei Malwaebytes wurde nun wieder was mit/von Vosteran gefunden?!?

Code:

alwarebytes Anti-Malware
www.malwarebytes.org

Suchlauf Datum: 22.03.2015
Suchlauf-Zeit: 18:58:27
Logdatei: mbam.txt
Administrator: Nein

Version: 2.00.4.1028
Malware Datenbank: v2015.03.22.03
Rootkit Datenbank: v2015.02.25.01
Lizenz: Testversion
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows Vista Service Pack 2
CPU: x86
Dateisystem: NTFS
Benutzer: *****-*****

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 246398
Verstrichene Zeit: 20 Min, 10 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(Keine schädliche Elemente erkannt)

Module: 0
(Keine schädliche Elemente erkannt)

Registrierungsschlüssel: 0
(Keine schädliche Elemente erkannt)

Registrierungswerte: 0
(Keine schädliche Elemente erkannt)

Registrierungsdaten: 0
(Keine schädliche Elemente erkannt)

Ordner: 0
(Keine schädliche Elemente erkannt)

Dateien: 1
PUP.Optional.Vosteran.A, C:\Users\*****-*****\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences, Gut: (), Schlecht: (  "homepage": "hxxp://vosteran.com/?f=1&a=&cd=&cr=&ir=",), Ersetzt,[fe8d2622ec9e7db9400d2909f80efc04]

Physische Sektoren: 0
(Keine schädliche Elemente erkannt)


(end)


Was auch komisch ist: Wenn ich den Deckel schließe, ist der Laptop immer in den Energiesparmodus gegangen. Komischerweise geht das jetzt nicht mehr und lässt sich auch nicht mehr einstellen (die Option "Energie sparen" fehlt bei den Einstellungen auf einmal).

AdwCleaner Logfile:
Code:

# AdwCleaner v4.112 - Bericht erstellt 22/03/2015 um 19:36:38
# Aktualisiert 09/03/2015 von Xplode
# Datenbank : 2015-03-22.1 [Server]
# Betriebssystem : Windows Vista (TM) Home Premium Service Pack 2 (x86)
# Benutzername : *****-***** 2 - *****
# Gestarted von : C:\Users\*****-*****\Downloads\AdwCleaner_4.112.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\Users\*****-*****\AppData\Roaming\Tobit
Datei Gelöscht : C:\Windows\DtcInstall.log
Datei Gelöscht : C:\Windows\TSSysprep.log
Datei Gelöscht : C:\Users\*****-*****\AppData\Roaming\Mozilla\Firefox\Profiles\mdoh89q4.default\invalidprefs.js
Datei Gelöscht : C:\Users\*****-*****\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage
Datei Gelöscht : C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage
Datei Gelöscht : C:\Users\*****-*****\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage-journal
Datei Gelöscht : C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage-journal

***** [ Geplante Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****


***** [ Internetbrowser ] *****

-\\ Internet Explorer v9.0.8112.16633


-\\ Mozilla Firefox v13.0.1 (de)


-\\ Google Chrome v41.0.2272.101


*************************

AdwCleaner[R0].txt - [52664 Bytes] - [14/03/2015 15:25:35]
AdwCleaner[R1].txt - [1962 Bytes] - [22/03/2015 19:25:43]
AdwCleaner[S0].txt - [54143 Bytes] - [14/03/2015 15:29:38]
AdwCleaner[S1].txt - [1846 Bytes] - [22/03/2015 19:36:38]

########## EOF - \AdwCleaner\AdwCleaner[S1].txt - [1905  Bytes] ##########

--- --- ---

schrauber 23.03.2015 13:45

Mit dem Programm kannste das auch machen. Aber sag mir bitte Bescheid. Wenn Du das machen willst können wir uns die Arbeit hier ja sparen :)

Jami87 23.03.2015 19:29

Naja, das möchte ich ja nur machen, wenn der PC gar nicht mehr gehen sollte. Zudem dachte ich, dass ich damit ein paar Dateien löschen kann, ohne, dass gleich alles weg ist?!?

JRT funktioniert mal wieder nicht - ich versuche es gleich nochmal...

Was mache ich denn jetzt mit dem "Iminent", was nicht zu finden ist?

schrauber 24.03.2015 09:58

Das entfernen wir von Hand. Poste bitte das frische FRST log.

Jami87 24.03.2015 19:31

Ok, ich mache das mit dem FRST dann jetzt nochmal... Das JRT stürzt immer ab bzw. der PC ist schneller und zeigt immer vor Beendigung des Programms nur noch Streifen :-(.

Ich verstehe auch nicht, dass er mal geht und mal nicht... Heute lief er 2h nur mit Streifen (habe mal gewartet, ob nochwas passiert) und ohne, dass ich etwas gemacht habe, kam auf einmal ein Bild... Genauso schnell wird das aber bald auch wieder weg sein :-(


FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by *****-***** 2 (administrator) on ***** on 24-03-2015 19:25:10
Running from c:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Platform: Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
() C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
( ) C:\Windows\System32\lxeacoms.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe
() C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
(Secunia) C:\Program Files\Secunia\PSI\psia.exe
(SigmaTel, Inc.) C:\Windows\System32\stacsv.exe
(Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
(Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdSync.exe
() C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
() C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
() C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdSync.exe [215552 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [37296 2011-09-07] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-03-30] (Adobe Systems Incorporated)
HKLM\...\Run: [lxeamon.exe] => C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe [770728 2010-01-18] ()
HKLM\...\Run: [EzPrint] => C:\Program Files\Lexmark S300-S400 Series\ezprint.exe [139944 2010-01-18] ()
HKLM\...\Run: [UVS10 Preload] => C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [36864 2006-08-09] (Ulead Systems, Inc.)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [704512 2015-03-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [NvSvc] => RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\RunOnce: [*WerKernelReporting] => C:\Windows\SYSTEM32\WerFault.exe [217088 2009-04-11] (Microsoft Corporation)
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll (Sony Corporation)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [466144 2014-11-27] (Sony)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [3905920 2012-06-05] (SUPERAntiSpyware.com)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Akamai NetSession Interface] => C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Amazon Cloud Player] => C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3145536 2014-05-08] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON SX430 Series (Kopie 1)] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHAE.EXE [212480 2012-05-18] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON Stylus DX8400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE [182272 2007-04-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-06-26] (Google)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk
ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\DSL-Manager\DslMgr.exe (No File)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk
ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.club-vaio.com
hxxp://partnerpage.google.com/eu.sony.com/de
hxxp://www.club-vaio.com/vbc
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {399AFF92-3607-4429-B2E3-99BECE8D2374} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=internet-tab&tpc=internet&ptl=std&classification=internet-tab_internet_std&q={searchTerms}&br=ie7-toi
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {53DBFD01-FF03-4A5F-8F4B-7BF8E909A975} URL = hxxp://www.amazon.de/gp/search?ie=UTF8&keywords={searchTerms}&tag=interactivemesuche-21&index=blended&linkCode=ur2&camp=1638&creative=6742
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {C4802B53-BBDC-409E-B3EF-57C0B6708018} URL = hxxp://adfarm.mediaplex.com/ad/ck/707-1403-18840-0?mpro=hxxp://search.ebay.de/search/search.dll?shortcut=4&query={searchTerms}
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {E6BFE530-DE68-4D85-A111-513CA45EFAF0} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=wiki-tab&tpc=internet&ptl=std&classification=wiki-tab_internet_std&q={searchTerms}&br=ie7-toi
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22] (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-20] (Oracle Corporation)
BHO: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2011-09-16] (Google Inc.)
BHO: CBrowserHelperObject Object -> {CA6319C0-31B7-401E-A518-A07C3DB8F777} -> C:\Program Files\Google BAE\BAE.dll [2006-06-23] (Your Company Name)
BHO: Lexmark  -> {D2C5E510-BE6D-42CC-9F61-E4F939078474} -> C:\Program Files\Lexmark Printable Web\bho.dll [2008-05-22] ()
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-20] (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
Toolbar: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> No Name - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} -  No File
DPF: {00000161-9980-0010-8000-00AA00389B71} hxxp://codecs.microsoft.com/codecs/i386/msaud.cab
DPF: {33564D57-9980-0010-8000-00AA00389B71} hxxp://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-01-25] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\*****-***** 2\AppData\Roaming\Mozilla\Firefox\Profiles\4qlxy2p6.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-05] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2007-07-12] (DivX, Inc)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2013-06-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-20] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-16] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2011-06-07] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3850073437-3280287025-709413035-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-03-09] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2011-06-07] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-06-04] (Apple Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\googledesktop.xml [2010-06-26]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2012-12-12]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{D250ED92-1791-42C4-B441-E90BF89B9BEF}] - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF}
FF Extension: XULRunner - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF} [2011-04-02]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-31]
CHR Extension: (Google Docs) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-31]
CHR Extension: (Google Drive) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-31]
CHR Extension: (YouTube) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-31]
CHR Extension: (Google Search) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-31]
CHR Extension: (Google Sheets) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-31]
CHR Extension: (Avira Browser Safety) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-03-13]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-13]
CHR Extension: (Google Wallet) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-31]
CHR Extension: (Gmail) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-31]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2011-08-12] (SUPERAntiSpyware.com) [File not signed]
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AdobeActiveFileMonitor5.0; C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [108712 2006-12-22] ()
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [432888 2015-03-19] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [432888 2015-03-19] (Avira Operations GmbH & Co. KG)
S2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe [443752 2008-08-18] (DisplayLink Corp.)
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
S4 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed]
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [74752 2011-12-30] (Freemake) [File not signed]
S4 GoogleDesktopManager-051210-111108; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-06-26] (Google)
S2 gupdate1ca0ac0f00c0a80; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeaserv.exe [193192 2010-04-14] (Lexmark International, Inc.)
R2 lxea_device; C:\Windows\system32\lxeacoms.exe [598696 2010-01-07] ( )
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [File not signed]
R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) [File not signed]
S4 OMSI download service; C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112 2009-04-30] () [File not signed]
S4 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [File not signed]
R2 Radio.fx; C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe [3673944 2011-11-18] ()
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [994360 2011-07-29] (Secunia)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [File not signed]
R2 STacSV; C:\Windows\system32\stacsv.exe [94208 2007-06-13] (SigmaTel, Inc.)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-09-28] (Ulead Systems, Inc.) [File not signed]
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2007-06-28] (Sony Corporation) [File not signed]
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182392 2007-07-12] (Sony Corporation)
S3 VAIOMediaPlatform-IntegratedServer-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2523136 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-Mobile-Gateway; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [499712 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe [745472 2007-01-10] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
R2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [292152 2007-07-05] (Sony Corporation)
R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [274432 2007-06-28] (Sony Corporation) [File not signed]
R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2007-08-28] (Sony Corporation) [File not signed]
R2 VzFw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe [131072 2007-08-28] (Sony Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 CLTNetCnService; "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-11-24] (Avira Operations GmbH & Co. KG)
R3 dlkmd; C:\Windows\system32\drivers\dlkmd.sys [287856 2008-08-18] (DisplayLink Corp.)
R0 dlkmdldr; C:\Windows\System32\drivers\dlkmdldr.sys [13424 2008-08-18] (DisplayLink Corp.)
R3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25624 2009-04-30] ()
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-03-14] (Malwarebytes Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia)
S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [86824 2008-10-21] (MCCI Corporation)
S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [15016 2008-10-21] (MCCI Corporation)
S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [114600 2008-10-21] (MCCI Corporation)
S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [108328 2008-10-21] (MCCI Corporation)
S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [26024 2008-10-21] (MCCI Corporation)
S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [104616 2008-10-21] (MCCI Corporation)
S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [109736 2008-10-21] (MCCI Corporation)
S3 s116bus; C:\Windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\Windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\Windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\Windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\Windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\Windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\Windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
S3 s3017bus; C:\Windows\System32\DRIVERS\s3017bus.sys [83880 2007-12-10] (MCCI Corporation)
S3 s3017mdfl; C:\Windows\System32\DRIVERS\s3017mdfl.sys [15016 2007-12-10] (MCCI Corporation)
S3 s3017mdm; C:\Windows\System32\DRIVERS\s3017mdm.sys [110632 2007-12-10] (MCCI Corporation)
S3 s3017mgmt; C:\Windows\System32\DRIVERS\s3017mgmt.sys [104616 2007-12-10] (MCCI Corporation)
S3 s3017nd5; C:\Windows\System32\DRIVERS\s3017nd5.sys [25512 2007-12-10] (MCCI Corporation)
S3 s3017obex; C:\Windows\System32\DRIVERS\s3017obex.sys [100648 2007-12-10] (MCCI Corporation)
S3 s3017unic; C:\Windows\System32\DRIVERS\s3017unic.sys [110120 2007-12-10] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-11-24] (Avira GmbH)
R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [326656 2007-06-13] (SigmaTel, Inc.)
S3 StkTMini; C:\Windows\System32\Drivers\StkTMini.sys [468096 2007-11-15] (Syntek)
R3 TelekomNM3; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM3.sys [35040 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
R3 ti21sony; C:\Windows\System32\drivers\ti21sony.sys [812544 2007-06-06] (Texas Instruments)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\Users\*****-~2\AppData\Local\Temp\catchme.sys [X]
S3 dsltestSp5; System32\Drivers\dsltestSp5.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-24 18:21 - 2015-03-24 18:22 - 00000000 ____D () C:\61ecd8660e75c4c583c1
2015-03-23 19:57 - 2015-03-23 19:57 - 00207856 _____ () C:\Windows\Minidump\Mini032315-01.dmp
2015-03-22 19:54 - 2015-03-22 19:55 - 01388672 _____ (Thisisu) C:\Users\*****-*****\Downloads\JRT.exe
2015-03-22 19:24 - 2015-03-22 19:24 - 02171392 _____ () C:\Users\*****-*****\Downloads\AdwCleaner_4.112.exe
2015-03-22 19:21 - 2015-03-22 19:25 - 00001416 _____ () C:\Users\*****-*****\Desktop\mbam.txt
2015-03-22 18:52 - 2015-03-22 18:52 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\*****-*****\Downloads\revosetup95.exe
2015-03-22 11:40 - 2015-03-22 11:40 - 00000000 ____D () C:\Users\*****-*****\Documents\Ulead VideoStudio SE
2015-03-22 11:39 - 2015-03-22 11:39 - 00000000 ____D () C:\Users\*****-*****\Documents\Bluetooth-Exchange-Ordner
2015-03-21 21:03 - 2015-03-21 21:27 - 00061948 _____ () C:\Users\*****-*****\Downloads\Addition.txt
2015-03-21 20:55 - 2015-03-24 19:27 - 00034826 _____ () C:\Users\*****-*****\Downloads\FRST.txt
2015-03-21 20:54 - 2015-03-24 19:25 - 00000000 ____D () C:\FRST
2015-03-21 20:54 - 2015-03-21 20:54 - 01135104 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST.exe
2015-03-21 20:52 - 2015-03-21 20:52 - 02095616 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST64(1).exe
2015-03-21 20:51 - 2015-03-21 20:52 - 02095616 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST64.exe
2015-03-21 20:21 - 2015-03-21 20:21 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Roaming\ASCOMP Software
2015-03-21 20:19 - 2015-03-21 20:19 - 00001942 _____ () C:\Users\Public\Desktop\Secure Eraser.lnk
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASCOMP Software
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\Program Files\ASCOMP Software
2015-03-21 20:13 - 2015-03-21 20:13 - 04233064 _____ (ASCOMP Software GmbH ) C:\Users\*****-*****\Downloads\sEraser4201.exe
2015-03-21 20:13 - 2015-03-21 20:13 - 04233064 _____ (ASCOMP Software GmbH ) C:\Users\*****-*****\Downloads\sEraser4201(1).exe
2015-03-21 19:33 - 2015-03-21 19:33 - 00000552 _____ () C:\Users\*****-*****\AppData\Local\d3d8caps.dat
2015-03-20 19:36 - 2009-05-26 11:35 - 01079840 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpluir.dll
2015-03-20 19:36 - 2009-05-26 11:35 - 00760352 _____ (NVIDIA Corporation) C:\Windows\system32\nvcplui.exe
2015-03-20 19:36 - 2009-05-26 11:35 - 00420384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.cpl
2015-03-20 19:36 - 2009-05-26 11:35 - 00313888 _____ (NVIDIA Corporation) C:\Windows\system32\nvexpbar.dll
2015-03-16 19:42 - 2015-03-16 19:42 - 00002972 _____ () C:\Users\*****-*****\Desktop\Fixlist.txt
2015-03-15 21:50 - 2015-03-15 21:50 - 00138584 _____ () C:\Windows\Minidump\Mini031515-01.dmp
2015-03-14 15:25 - 2015-03-22 19:36 - 00000000 ____D () C:\AdwCleaner
2015-03-14 13:02 - 2015-03-14 13:03 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-14 13:00 - 2015-03-14 13:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-14 13:00 - 2015-03-14 13:00 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-03-14 13:00 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-14 13:00 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-13 23:17 - 2015-03-13 23:17 - 00002080 _____ () C:\Users\*****-*****\Desktop\ComboFix - Verknüpfung.lnk
2015-03-13 22:47 - 2015-03-13 22:49 - 00207325 _____ () C:\Users\*****-***** 2\Desktop\combofix.txt
2015-03-13 22:44 - 2015-03-13 22:44 - 00207509 _____ () C:\ComboFix.txt
2015-03-13 22:06 - 2015-03-13 22:44 - 00000000 ____D () C:\ComboFix
2015-03-13 22:04 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-03-13 22:04 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-03-13 22:04 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-03-13 22:01 - 2015-03-13 22:44 - 00000000 ____D () C:\Qoobox
2015-03-13 21:24 - 2015-03-13 21:24 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Roaming\Swiss Academic Software
2015-03-13 21:09 - 2015-03-22 18:52 - 00001057 _____ () C:\Users\*****-***** 2\Desktop\Revo Uninstaller.lnk
2015-03-13 21:09 - 2015-03-22 18:52 - 00000000 ____D () C:\Program Files\VS Revo Group
2015-03-13 19:55 - 2015-03-13 19:55 - 00138584 _____ () C:\Windows\Minidump\Mini031315-02.dmp
2015-03-13 19:18 - 2015-03-13 19:18 - 00142704 _____ () C:\Windows\Minidump\Mini031315-01.dmp
2015-03-12 21:34 - 2015-03-12 21:34 - 00007809 _____ () C:\Users\*****-***** 2\Desktop\gmer.txt
2015-03-12 19:48 - 2015-03-12 19:49 - 00000492 _____ () C:\Windows\system32\defogger_disable.log
2015-03-12 19:48 - 2015-03-12 19:48 - 00000000 _____ () C:\Users\*****-***** 2\defogger_reenable
2015-03-11 21:06 - 2015-03-11 21:06 - 00142704 _____ () C:\Windows\Minidump\Mini031115-01.dmp
2015-03-11 19:55 - 2015-01-29 02:35 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-11 19:51 - 2015-01-29 02:35 - 00975360 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-11 19:44 - 2015-02-26 01:18 - 02064384 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-11 17:14 - 2015-02-20 03:03 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-11 17:14 - 2015-02-20 01:28 - 00296960 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-11 17:10 - 2015-02-26 03:01 - 03604408 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-03-11 17:10 - 2015-02-26 03:01 - 03552184 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-11 17:10 - 2015-01-09 03:04 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-11 17:10 - 2015-01-09 01:18 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-11 17:08 - 2015-01-21 03:02 - 00807936 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-11 17:05 - 2015-03-06 05:01 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-11 17:03 - 2014-10-13 02:12 - 02264064 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-11 17:02 - 2015-02-18 03:02 - 11587584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-10 23:52 - 2015-03-13 22:29 - 00000000 ____D () C:\Program Files\861437cb-3ee3-405d-bcea-149a4dc68fde
2015-03-10 23:51 - 2015-03-11 19:50 - 00000000 ____D () C:\ProgramData\{c5d7b5bd-e56a-bd77-c5d7-7b5bde56d6f7}
2015-03-10 21:26 - 2015-02-21 18:37 - 12375040 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-10 21:26 - 2015-02-21 18:34 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-10 21:26 - 2015-02-21 18:29 - 09747968 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-10 21:26 - 2015-02-21 18:28 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-10 21:26 - 2015-02-21 18:22 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-10 21:26 - 2015-02-21 18:21 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-10 21:26 - 2015-02-21 18:21 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 01803264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-10 21:26 - 2015-02-21 18:18 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-10 21:26 - 2015-02-21 18:17 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-09 20:35 - 2015-03-09 20:35 - 00139088 _____ () C:\Windows\Minidump\Mini030915-01.dmp
2015-03-08 11:03 - 2015-03-08 11:03 - 00209608 _____ () C:\Windows\Minidump\Mini030815-01.dmp
2015-03-06 15:42 - 2015-03-06 15:42 - 00001879 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-24 19:22 - 2011-06-30 11:07 - 00001356 _____ () C:\Users\*****-*****\AppData\Local\d3d9caps.dat
2015-03-24 19:18 - 2009-07-22 12:50 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-24 19:05 - 2013-02-05 20:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-24 19:00 - 2008-02-06 14:54 - 01649719 _____ () C:\Windows\WindowsUpdate.log
2015-03-24 18:49 - 2011-01-02 17:31 - 00193340 _____ () C:\ProgramData\lxeascan.log
2015-03-24 18:48 - 2013-07-13 10:20 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
2015-03-24 18:32 - 2006-11-02 11:33 - 01623482 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-24 18:24 - 2007-07-20 15:28 - 01557716 _____ () C:\Windows\PFRO.log
2015-03-24 18:24 - 2006-11-02 14:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-24 18:24 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-24 18:24 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-23 19:57 - 2008-05-16 21:19 - 00000000 ____D () C:\Windows\Minidump
2015-03-23 19:56 - 2010-08-25 18:12 - 278907883 _____ () C:\Windows\MEMORY.DMP
2015-03-23 19:23 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.001
2015-03-22 21:43 - 2007-07-20 14:34 - 00000012 _____ () C:\Windows\bthservsdp.dat
2015-03-22 21:43 - 2006-11-02 14:01 - 00032558 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-03-22 18:06 - 2010-08-25 19:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-22 12:35 - 2011-08-30 05:40 - 00001052 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-03-21 21:28 - 2008-02-16 14:49 - 00002631 _____ () C:\Users\*****-*****\Desktop\Microsoft Office Word 2007.lnk
2015-03-21 20:31 - 2008-02-06 16:25 - 00000000 ____D () C:\Users\*****-*****
2015-03-21 20:23 - 2012-06-01 17:32 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Roaming\Adobe
2015-03-21 20:23 - 2012-05-23 06:59 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Local\Adobe
2015-03-21 19:59 - 2011-07-16 17:42 - 00125952 _____ () C:\Users\*****-*****\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-03-21 19:49 - 2009-06-09 20:21 - 00000000 ____D () C:\Users\*****-*****\dwhelper
2015-03-21 19:05 - 2012-06-01 20:49 - 00000017 ____H () C:\Windows\system32\servdat.slm
2015-03-21 13:36 - 2006-11-02 11:22 - 66846720 _____ () C:\Windows\system32\config\software_previous
2015-03-21 13:36 - 2006-11-02 11:22 - 52166656 _____ () C:\Windows\system32\config\system_previous
2015-03-21 13:35 - 2013-07-25 22:43 - 00000000 ____D () C:\ProgramData\Netzmanager
2015-03-21 13:35 - 2013-06-21 13:43 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-03-21 13:35 - 2012-06-24 10:07 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Akamai
2015-03-21 13:35 - 2012-05-23 06:59 - 00000000 ____D () C:\Users\*****-***** 2
2015-03-21 13:35 - 2011-05-25 12:59 - 00000000 ____D () C:\ProgramData\Ulead Systems
2015-03-21 13:35 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\spool
2015-03-21 13:35 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\Msdtc
2015-03-21 13:35 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\registration
2015-03-21 13:29 - 2006-11-02 11:22 - 49283072 _____ () C:\Windows\system32\config\components_previous
2015-03-21 13:29 - 2006-11-02 11:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous
2015-03-21 13:27 - 2006-11-02 11:22 - 00262144 _____ () C:\Windows\system32\config\security_previous
2015-03-21 10:32 - 2006-11-02 11:22 - 00524288 _____ () C:\Windows\system32\config\default_previous
2015-03-20 19:15 - 2006-11-02 13:52 - 00113370 _____ () C:\Windows\setupact.log
2015-03-16 19:50 - 2008-09-01 21:42 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-03-14 16:43 - 2015-01-31 17:40 - 00001963 _____ () C:\Users\*****-***** 2\Desktop\Google Chrome.lnk
2015-03-14 16:43 - 2012-05-23 06:59 - 00000944 _____ () C:\Users\*****-***** 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-03-14 15:29 - 2009-07-22 12:09 - 00000000 ____D () C:\ProgramData\ICQ
2015-03-14 13:00 - 2012-05-07 19:58 - 00000899 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-14 13:00 - 2012-05-07 19:58 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-13 22:39 - 2006-11-02 11:23 - 00000215 _____ () C:\Windows\system.ini
2015-03-13 22:29 - 2012-09-29 13:22 - 00000000 ____D () C:\Program Files\7-Zip2
2015-03-13 22:24 - 2010-03-04 19:47 - 00000000 ____D () C:\ProgramData\TEMP
2015-03-11 20:31 - 2006-11-02 13:47 - 00397352 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-11 19:54 - 2007-07-20 16:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-11 19:43 - 2013-07-26 08:36 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-11 19:01 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.dat
2015-03-11 17:16 - 2006-11-02 11:24 - 119837696 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2015-03-10 23:53 - 2012-05-23 06:59 - 00043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2015-03-10 20:05 - 2015-02-21 12:36 - 00136216 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-03-10 20:05 - 2015-02-21 12:36 - 00105864 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-03-07 21:58 - 2008-02-10 11:56 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Skype
2015-03-07 17:01 - 2011-03-01 16:18 - 00045024 _____ () C:\ProgramData\lxea.log
2015-03-06 15:48 - 2007-07-20 14:51 - 00794682 _____ () C:\Windows\DPINST.LOG
2015-03-06 15:42 - 2007-07-20 16:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-03-06 15:41 - 2007-07-20 15:01 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-03-01 19:08 - 2010-01-02 10:33 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2015-02-24 04:23 - 2009-10-03 01:27 - 00246920 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe

==================== Files in the root of some directories =======

2012-05-23 06:59 - 2015-03-10 23:53 - 0043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2012-05-23 06:59 - 2007-08-06 14:21 - 0042479 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.dat
2012-06-30 10:35 - 2012-06-30 10:35 - 0000022 ___SH () C:\Users\*****-***** 2\AppData\Roaming\Windows1569_SettingsRepository.bin
2012-05-23 06:59 - 2015-02-20 20:48 - 0002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2012-05-23 06:59 - 2007-08-06 14:06 - 0018944 _____ () C:\Users\*****-***** 2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-30 10:35 - 2012-06-30 10:35 - 0000000 _____ () C:\Users\*****-***** 2\AppData\Local\jv16PT_temp.tmp
2008-02-21 11:45 - 2008-02-21 11:45 - 0000305 _____ () C:\ProgramData\addr_file.html
2009-02-05 21:42 - 2009-02-05 21:42 - 0000056 _____ () C:\ProgramData\ezsidmv.dat
2011-01-02 17:39 - 2011-01-02 17:39 - 0000252 _____ () C:\ProgramData\FastPics.log
2011-03-01 16:18 - 2015-03-07 17:01 - 0045024 _____ () C:\ProgramData\lxea.log
2011-01-02 17:40 - 2011-01-02 17:42 - 0000438 _____ () C:\ProgramData\lxeaDiagnostics.log
2011-01-02 17:44 - 2011-06-02 09:10 - 0004439 _____ () C:\ProgramData\lxeaJSW.log
2011-01-02 17:31 - 2015-03-24 18:49 - 0193340 _____ () C:\ProgramData\lxeascan.log
2011-01-02 17:27 - 2011-01-02 17:27 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

Some content of TEMP:
====================
C:\Users\*****-*****\AppData\Local\temp\avgnt.exe
C:\Users\*****-***** 2\AppData\Local\temp\Quarantine.exe
C:\Users\*****-***** 2\AppData\Local\temp\sqlite3.dll


Some zero byte size files/folders:
==========================
C:\Windows\System32\nsprs.dll
C:\Windows\System32\serauth1.dll
C:\Windows\System32\serauth2.dll
C:\Windows\System32\ssprs.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-24 18:54

==================== End Of Log ============================

--- --- ---

--- --- ---

schrauber 25.03.2015 12:25

wie gesagt, Hardware oder Treiber verursachen das.


ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme? :)

Jami87 26.03.2015 19:41

Der Pc geht schon wieder nicht mehr - melde mich wieder, falls ich nochmal was erkennen kann :-(

schrauber 27.03.2015 10:35

ok.

Jami87 27.03.2015 18:22

Hallo nochmal,

sag mal, ich habe nochmal ein wenig gegoogelt: Wenn ich den PC "entsorgen" wollen sollte oder doch zur Reperatur geben: Ich kann ja eigentlich einfach die Festplatte herausnehmen, wenn ich nicht möchte, dass jmd. an die Daten kommt, oder? Oder sind die Daten noch woanders gespeichert?

schrauber 28.03.2015 03:28

Nee, nur auf der Platte :)

Jami87 28.03.2015 15:22

Laptop geht gerade wieder mal:

Also:

Code:

Results of screen317's Security Check version 0.99.97 
 Windows Vista Service Pack 2 x86 
 Internet Explorer 9 
 Internet Explorer 8 
``````````````Antivirus/Firewall Check:``````````````
Avira Desktop 
 Antivirus up to date!  (On Access scanning disabled!)
`````````Anti-malware/Other Utilities Check:`````````
 SUPERAntiSpyware   
 Secunia PSI (2.0.0.4002) 
 Java 8 Update 31 
 Java version 32-bit out of Date!
  Java 64-bit 8 Update 31 
 Adobe Flash Player        16.0.0.305 
 Mozilla Firefox (36.0.4)
 Google Chrome (41.0.2272.101)
 Google Chrome (41.0.2272.89)
````````Process Check: objlist.exe by Laurent```````` 
 Malwarebytes Anti-Malware mbam.exe 
 Avira Antivir avgnt.exe
 Avira Antivir avguard.exe
 ESET ESET Online Scanner OnlineScannerApp.exe 
 ESET ESET Online Scanner OnlineCmdLineScanner.exe 
 Malwarebytes Anti-Malware mbamscheduler.exe 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:  %
````````````````````End of Log``````````````````````

Das mit den Updates habe ich noch nicht so richtig hinbekommen :-(

Code:

ESETSmartInstaller@High as downloader log:
all ok
ESETSmartInstaller@High as downloader log:
all ok
# version=7
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=3d83703d8e9a2b42adc31e9054d2558f
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-05-09 08:46:07
# local_time=2012-05-09 10:46:07 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1033
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode=768 16777215 100 0 125694743 125694743 0 0
# compatibility_mode=1792 16777215 100 0 1128022 1128022 0 0
# compatibility_mode=5892 16776573 100 100 154443 174075447 0 0
# compatibility_mode=8192 67108863 100 0 39669 39669 0 0
# scanned=251245
# found=11
# cleaned=0
# scan_time=10448
C:\Users\*****-*****\AppData\Local\Temp\FreemakeVideoConverter_3.0.1.3.exe        Win32/Toolbar.Zugo application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\AppData\Local\Temp\ICReinstall\Facemoods.exe        probably a variant of Win32/InstallCore.A application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\AppData\Local\Temp\is1293846689\MyBabylonTB.exe        Win32/Toolbar.Babylon application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Facemoods(1).exe        probably a variant of Win32/InstallCore.A application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Facemoods.exe        probably a variant of Win32/InstallCore.A application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe        Win32/Toolbar.Widgi application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe        Win32/Toolbar.Widgi application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe        Win32/Toolbar.Widgi application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe        Win32/Toolbar.Widgi application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe        Win32/Toolbar.Widgi application (unable to clean)        00000000000000000000000000000000        I
C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe        Win32/StartPage.OIE trojan (unable to clean)        00000000000000000000000000000000        I
ESETSmartInstaller@High as downloader log:
all ok
esets_scanner_update returned -1 esets_gle=12
esets_scanner_update returned -1 esets_gle=12
esets_scanner_update returned -1 esets_gle=45315
esets_scanner_update returned -1 esets_gle=12
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=3d83703d8e9a2b42adc31e9054d2558f
# engine=22917
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2015-03-15 08:00:08
# local_time=2015-03-15 09:00:08 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode_1=''
# compatibility_mode=5892 16776574 100 100 167110 263982336 0 0
# scanned=328209
# found=41
# cleaned=0
# scan_time=21926
sh=8992F72873D09212597E582A16F8D9BC60E6A22A ft=1 fh=e21391a34e842ffc vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files\Common Files\DVDVideoSoft\TB\ConduitInstaller.exe.vir"
sh=43A205985790C47A7E611FA2D3CAB9B4EB59121F ft=1 fh=5bd497922ffc5928 vn="Variante von Win32/Toolbar.Babylon.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-*****\AppData\Local\Babylon\Setup\BExternal.dll.vir"
sh=1B2801DD02E9D9B7F27789ED161BC1761943E921 ft=1 fh=8073091e54552e56 vn="Variante von Win32/Toolbar.Babylon.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-*****\AppData\Local\Babylon\Setup\IECookieLow.dll.vir"
sh=3A9D7D4639B5EB8BEC42DF972C44493690EAADFC ft=1 fh=b8a59cf28e1dc165 vn="Variante von Win32/Toolbar.Babylon.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-*****\AppData\Local\Babylon\Setup\Setup.exe.vir"
sh=609F2D4B1AE5C7177C44CCAF9309EFD16FC9E42D ft=1 fh=8551c46845849e5f vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-***** 2\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe.vir"
sh=22B1B0EAFDBB1229336F9D8187F9905A5DDEDF89 ft=1 fh=406c1e66a46fc082 vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-***** 2\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe.vir"
sh=88CA2B9C5E587306B08CF6EA239CA72775495695 ft=1 fh=b15f3040528a74fd vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-***** 2\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe.vir"
sh=A2F035C707F31E9CCBD09E17A9F645A25EBB636A ft=1 fh=c71c0011cd2e60c0 vn="Win32/LiveSupport.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files\LiveSupport\LiveSupport.exe.vir"
sh=F7AF09F36F4983DB24F389676D2D6EFF067C672D ft=1 fh=8ed8b1cf87d17603 vn="Win32/LiveSupport.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files\LiveSupport\LiveSupport_deskband_x32.dll.vir"
sh=47B40F8180A8413DFB3B51EB9BFF551D887BCA76 ft=1 fh=edd7ecef82c6227b vn="Win64/LiveSupport.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files\LiveSupport\LiveSupport_deskband_x64.dll.vir"
sh=6408D61C9809E743126596AF762ABA61C67626F2 ft=1 fh=11b2d7f1750c67b8 vn="Win32/Adware.DsiLoad.A Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\*****-*****\AppData\Local\dsisetup38304172.exe.vir"
sh=DDD7E789E67132CF6C5D8169B2F46E3498FCA60F ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\AppData\Roaming\PWKN"
sh=9413821E4285C46DAF48156B472065FC2D763FE8 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\AppData\Roaming\VM"
sh=C07194A512E1C3A23F740679260BD3B75B6F9FAB ft=1 fh=83f7d6f91ffcac4f vn="Variante von Win32/Downloader.JooSoft.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe"
sh=4C5833324A666FAB1CBFE2795F34DCABFAF13490 ft=1 fh=86d131aa1ffcac4f vn="Variante von Win32/Downloader.JooSoft.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe"
sh=F53F848DCDB4D466AB039A57FDDF238C42F64EA1 ft=1 fh=9084f26b1ffcac4f vn="Variante von Win32/Downloader.JooSoft.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe"
sh=5F80BC3A714EAD6927AF2B94E29935F1D9C370BC ft=1 fh=3be73f1765228613 vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\dvdburnersetup.exe"
sh=DC69F69E0FE7B153118C9F4D4E59318027CF29C1 ft=1 fh=e9313ee6409597e8 vn="Variante von Win32/FileTypeAssistant.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe"
sh=1951424B2C9396E09E6ED9BC84BE3D9A04F7632B ft=1 fh=81e0d6a2d98bff1e vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe"
sh=BCF43267B4416C6DDEFAAD5AE0A63E3F682C5BB0 ft=1 fh=905be375e5c80006 vn="Win32/InstallMonetizer.AQ evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe"
sh=507B6AD46C471804A48A6E7A4D17E1C0B3B7FE74 ft=1 fh=250619b7b5b96cd4 vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe"
sh=6E90290E07E48BB51F655F8AD95DB762E97EABDE ft=1 fh=310600cd9c667158 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe"
sh=5FE3697374F6214D585EE6AD59892411759B4BCF ft=1 fh=cac44e7c93cae1e1 vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe"
sh=5293DBC3B6E7824E985FD8FE8492D6DEF5BC7997 ft=1 fh=f64f4ef2e6cded2b vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe"
sh=C318C520B070146647C507B109917F4B957608FC ft=1 fh=f64f4ef2667e41f3 vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe"
sh=328F1D9F544072C3114AB566BDE439FDBF19FD37 ft=1 fh=208c1d4f316d1e8c vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe"
sh=9BD1B78D00939FF1FA5E98095A34FAD54E4B3C82 ft=1 fh=ee24dfeba0a60a5e vn="Win32/StartPage.OIE Trojaner" ac=I fn="C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe"
sh=8DB51595492609FFF73800174DDBC6363C1DA181 ft=1 fh=e03aa7f093055e9b vn="Variante von Win32/Toolbar.Iminent.K evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe"
sh=8DB51595492609FFF73800174DDBC6363C1DA181 ft=1 fh=e03aa7f093055e9b vn="Variante von Win32/Toolbar.Iminent.K evtl. unerwünschte Anwendung" ac=I fn="C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe"
sh=E97CC11C632E8616FBAF26FA7FF2EE43D4A485CB ft=0 fh=0000000000000000 vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\Windows\Installer\183409c.msi"
sh=609F2D4B1AE5C7177C44CCAF9309EFD16FC9E42D ft=1 fh=8551c46845849e5f vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe"
sh=22B1B0EAFDBB1229336F9D8187F9905A5DDEDF89 ft=1 fh=406c1e66a46fc082 vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe"
sh=88CA2B9C5E587306B08CF6EA239CA72775495695 ft=1 fh=b15f3040528a74fd vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe"
ESETSmartInstaller@High as downloader log:
all ok
esets_scanner_update returned -1 esets_gle=12
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=3d83703d8e9a2b42adc31e9054d2558f
# engine=23127
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2015-03-28 02:05:06
# local_time=2015-03-28 03:05:06 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode_1=''
# compatibility_mode=5892 16776574 100 100 0 265084234 0 0
# scanned=273339
# found=40
# cleaned=0
# scan_time=13215
sh=DDD7E789E67132CF6C5D8169B2F46E3498FCA60F ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.C evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\AppData\Roaming\PWKN.xBAD"
sh=9413821E4285C46DAF48156B472065FC2D763FE8 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.C evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\AppData\Roaming\VM.xBAD"
sh=C07194A512E1C3A23F740679260BD3B75B6F9FAB ft=1 fh=83f7d6f91ffcac4f vn="Variante von Win32/Downloader.JooSoft.A evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe.xBAD"
sh=4C5833324A666FAB1CBFE2795F34DCABFAF13490 ft=1 fh=86d131aa1ffcac4f vn="Variante von Win32/Downloader.JooSoft.A evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe.xBAD"
sh=F53F848DCDB4D466AB039A57FDDF238C42F64EA1 ft=1 fh=9084f26b1ffcac4f vn="Variante von Win32/Downloader.JooSoft.A evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe.xBAD"
sh=5F80BC3A714EAD6927AF2B94E29935F1D9C370BC ft=1 fh=3be73f1765228613 vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\dvdburnersetup.exe.xBAD"
sh=DC69F69E0FE7B153118C9F4D4E59318027CF29C1 ft=1 fh=e9313ee6409597e8 vn="Variante von Win32/FileTypeAssistant.A evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe.xBAD"
sh=1951424B2C9396E09E6ED9BC84BE3D9A04F7632B ft=1 fh=81e0d6a2d98bff1e vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\FreeYouTubeDownload.exe.xBAD"
sh=BCF43267B4416C6DDEFAAD5AE0A63E3F682C5BB0 ft=1 fh=905be375e5c80006 vn="Win32/InstallMonetizer.AQ evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe.xBAD"
sh=507B6AD46C471804A48A6E7A4D17E1C0B3B7FE74 ft=1 fh=250619b7b5b96cd4 vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup19_FreeConverter.exe.xBAD"
sh=6E90290E07E48BB51F655F8AD95DB762E97EABDE ft=1 fh=310600cd9c667158 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe.xBAD"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe.xBAD"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe.xBAD"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe.xBAD"
sh=5FE3697374F6214D585EE6AD59892411759B4BCF ft=1 fh=cac44e7c93cae1e1 vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe.xBAD"
sh=5293DBC3B6E7824E985FD8FE8492D6DEF5BC7997 ft=1 fh=f64f4ef2e6cded2b vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe.xBAD"
sh=C318C520B070146647C507B109917F4B957608FC ft=1 fh=f64f4ef2667e41f3 vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe.xBAD"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe.xBAD"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe.xBAD"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe.xBAD"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe.xBAD"
sh=C7AC35C8F75514310C3BF0D1EAEDE4F82F1AE8A1 ft=1 fh=c9a22512e1bbe0c4 vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe.xBAD"
sh=328F1D9F544072C3114AB566BDE439FDBF19FD37 ft=1 fh=208c1d4f316d1e8c vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe.xBAD"
sh=9BD1B78D00939FF1FA5E98095A34FAD54E4B3C82 ft=1 fh=ee24dfeba0a60a5e vn="Win32/StartPage.OIE Trojaner" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe.xBAD"
sh=8DB51595492609FFF73800174DDBC6363C1DA181 ft=1 fh=e03aa7f093055e9b vn="Variante von Win32/Toolbar.Iminent.K evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe.xBAD"
sh=8DB51595492609FFF73800174DDBC6363C1DA181 ft=1 fh=e03aa7f093055e9b vn="Variante von Win32/Toolbar.Iminent.K evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe.xBAD"
sh=609F2D4B1AE5C7177C44CCAF9309EFD16FC9E42D ft=1 fh=8551c46845849e5f vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe.xBAD"
sh=22B1B0EAFDBB1229336F9D8187F9905A5DDEDF89 ft=1 fh=406c1e66a46fc082 vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe.xBAD"
sh=88CA2B9C5E587306B08CF6EA239CA72775495695 ft=1 fh=b15f3040528a74fd vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3850073437-3280287025-709413035-1003\$RWH20B9\Quarantine\C\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe.xBAD"
sh=8992F72873D09212597E582A16F8D9BC60E6A22A ft=1 fh=e21391a34e842ffc vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files\Common Files\DVDVideoSoft\TB\ConduitInstaller.exe.vir"
sh=43A205985790C47A7E611FA2D3CAB9B4EB59121F ft=1 fh=5bd497922ffc5928 vn="Variante von Win32/Toolbar.Babylon.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-*****\AppData\Local\Babylon\Setup\BExternal.dll.vir"
sh=1B2801DD02E9D9B7F27789ED161BC1761943E921 ft=1 fh=8073091e54552e56 vn="Variante von Win32/Toolbar.Babylon.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-*****\AppData\Local\Babylon\Setup\IECookieLow.dll.vir"
sh=3A9D7D4639B5EB8BEC42DF972C44493690EAADFC ft=1 fh=b8a59cf28e1dc165 vn="Variante von Win32/Toolbar.Babylon.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-*****\AppData\Local\Babylon\Setup\Setup.exe.vir"
sh=609F2D4B1AE5C7177C44CCAF9309EFD16FC9E42D ft=1 fh=8551c46845849e5f vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-***** 2\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe.vir"
sh=22B1B0EAFDBB1229336F9D8187F9905A5DDEDF89 ft=1 fh=406c1e66a46fc082 vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-***** 2\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe.vir"
sh=88CA2B9C5E587306B08CF6EA239CA72775495695 ft=1 fh=b15f3040528a74fd vn="Variante von Win32/Toolbar.Iminent.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\*****-***** 2\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe.vir"
sh=A2F035C707F31E9CCBD09E17A9F645A25EBB636A ft=1 fh=c71c0011cd2e60c0 vn="Win32/LiveSupport.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files\LiveSupport\LiveSupport.exe.vir"
sh=F7AF09F36F4983DB24F389676D2D6EFF067C672D ft=1 fh=8ed8b1cf87d17603 vn="Win32/LiveSupport.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files\LiveSupport\LiveSupport_deskband_x32.dll.vir"
sh=47B40F8180A8413DFB3B51EB9BFF551D887BCA76 ft=1 fh=edd7ecef82c6227b vn="Win64/LiveSupport.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files\LiveSupport\LiveSupport_deskband_x64.dll.vir"
sh=6408D61C9809E743126596AF762ABA61C67626F2 ft=1 fh=11b2d7f1750c67b8 vn="Win32/Adware.DsiLoad.A Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\*****-*****\AppData\Local\dsisetup38304172.exe.vir"


FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by *****-***** 2 (administrator) on ***** on 28-03-2015 15:13:21
Running from c:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Platform: Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
() C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
( ) C:\Windows\System32\lxeacoms.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe
() C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
(Secunia) C:\Program Files\Secunia\PSI\psia.exe
(SigmaTel, Inc.) C:\Windows\System32\stacsv.exe
(Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
(Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdSync.exe
() C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
() C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
() C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Mozilla Corporation) C:\Users\*****-*****\AppData\Local\Mozilla Firefox\firefox.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
(Mozilla Corporation) C:\Users\*****-*****\AppData\Local\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avcenter.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdSync.exe [215552 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [lxeamon.exe] => C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe [770728 2010-01-18] ()
HKLM\...\Run: [EzPrint] => C:\Program Files\Lexmark S300-S400 Series\ezprint.exe [139944 2010-01-18] ()
HKLM\...\Run: [UVS10 Preload] => C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [36864 2006-08-09] (Ulead Systems, Inc.)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [704512 2015-03-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [NvSvc] => RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll (Sony Corporation)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [466144 2014-11-27] (Sony)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [3905920 2012-06-05] (SUPERAntiSpyware.com)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Akamai NetSession Interface] => C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Amazon Cloud Player] => C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3145536 2014-05-08] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON SX430 Series (Kopie 1)] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHAE.EXE [212480 2012-05-18] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON Stylus DX8400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE [182272 2007-04-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\system32\Macromed\Flash\FlashUtil32_16_0_0_305_Plugin.exe [960688 2015-02-05] (Adobe Systems Incorporated)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-06-26] (Google)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk
ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\DSL-Manager\DslMgr.exe (No File)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk
ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.club-vaio.com
hxxp://partnerpage.google.com/eu.sony.com/de
hxxp://www.club-vaio.com/vbc
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {399AFF92-3607-4429-B2E3-99BECE8D2374} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=internet-tab&tpc=internet&ptl=std&classification=internet-tab_internet_std&q={searchTerms}&br=ie7-toi
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {53DBFD01-FF03-4A5F-8F4B-7BF8E909A975} URL = hxxp://www.amazon.de/gp/search?ie=UTF8&keywords={searchTerms}&tag=interactivemesuche-21&index=blended&linkCode=ur2&camp=1638&creative=6742
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {C4802B53-BBDC-409E-B3EF-57C0B6708018} URL = hxxp://adfarm.mediaplex.com/ad/ck/707-1403-18840-0?mpro=hxxp://search.ebay.de/search/search.dll?shortcut=4&query={searchTerms}
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {E6BFE530-DE68-4D85-A111-513CA45EFAF0} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=wiki-tab&tpc=internet&ptl=std&classification=wiki-tab_internet_std&q={searchTerms}&br=ie7-toi
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-20] (Oracle Corporation)
BHO: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2011-09-16] (Google Inc.)
BHO: CBrowserHelperObject Object -> {CA6319C0-31B7-401E-A518-A07C3DB8F777} -> C:\Program Files\Google BAE\BAE.dll [2006-06-23] (Your Company Name)
BHO: Lexmark  -> {D2C5E510-BE6D-42CC-9F61-E4F939078474} -> C:\Program Files\Lexmark Printable Web\bho.dll [2008-05-22] ()
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-20] (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
Toolbar: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> No Name - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} -  No File
DPF: {00000161-9980-0010-8000-00AA00389B71} hxxp://codecs.microsoft.com/codecs/i386/msaud.cab
DPF: {33564D57-9980-0010-8000-00AA00389B71} hxxp://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-01-25] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File []
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)

FireFox:
========
FF ProfilePath: C:\Users\*****-***** 2\AppData\Roaming\Mozilla\Firefox\Profiles\4qlxy2p6.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-05] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2007-07-12] (DivX, Inc)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\system32\npDeployJava1.dll [2013-06-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-20] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-16] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin HKU\S-1-5-21-3850073437-3280287025-709413035-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-03-09] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-06-04] (Apple Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\googledesktop.xml [2010-06-26]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2012-12-12]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{D250ED92-1791-42C4-B441-E90BF89B9BEF}] - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF}
FF Extension: XULRunner - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF} [2011-04-02]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-31]
CHR Extension: (Google Docs) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-31]
CHR Extension: (Google Drive) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-31]
CHR Extension: (YouTube) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-31]
CHR Extension: (Google Search) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-31]
CHR Extension: (Google Sheets) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-31]
CHR Extension: (Avira Browser Safety) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-03-13]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-13]
CHR Extension: (Google Wallet) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-31]
CHR Extension: (Gmail) - C:\Users\*****-***** 2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-31]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2011-08-12] (SUPERAntiSpyware.com) [File not signed]
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AdobeActiveFileMonitor5.0; C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [108712 2006-12-22] ()
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [432888 2015-03-19] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [432888 2015-03-19] (Avira Operations GmbH & Co. KG)
S2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe [443752 2008-08-18] (DisplayLink Corp.)
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
S4 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed]
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [74752 2011-12-30] (Freemake) [File not signed]
S4 GoogleDesktopManager-051210-111108; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-06-26] (Google)
S2 gupdate1ca0ac0f00c0a80; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeaserv.exe [193192 2010-04-14] (Lexmark International, Inc.)
R2 lxea_device; C:\Windows\system32\lxeacoms.exe [598696 2010-01-07] ( )
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [File not signed]
R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) [File not signed]
S4 OMSI download service; C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112 2009-04-30] () [File not signed]
S4 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [File not signed]
R2 Radio.fx; C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe [3673944 2011-11-18] ()
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [994360 2011-07-29] (Secunia)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [File not signed]
R2 STacSV; C:\Windows\system32\stacsv.exe [94208 2007-06-13] (SigmaTel, Inc.)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-09-28] (Ulead Systems, Inc.) [File not signed]
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2007-06-28] (Sony Corporation) [File not signed]
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182392 2007-07-12] (Sony Corporation)
S3 VAIOMediaPlatform-IntegratedServer-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2523136 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-Mobile-Gateway; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [499712 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe [745472 2007-01-10] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
R2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [292152 2007-07-05] (Sony Corporation)
R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [274432 2007-06-28] (Sony Corporation) [File not signed]
R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2007-08-28] (Sony Corporation) [File not signed]
R2 VzFw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe [131072 2007-08-28] (Sony Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 CLTNetCnService; "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-11-24] (Avira Operations GmbH & Co. KG)
R3 dlkmd; C:\Windows\system32\drivers\dlkmd.sys [287856 2008-08-18] (DisplayLink Corp.)
R0 dlkmdldr; C:\Windows\System32\drivers\dlkmdldr.sys [13424 2008-08-18] (DisplayLink Corp.)
R3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25624 2009-04-30] ()
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-03-14] (Malwarebytes Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia)
S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [86824 2008-10-21] (MCCI Corporation)
S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [15016 2008-10-21] (MCCI Corporation)
S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [114600 2008-10-21] (MCCI Corporation)
S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [108328 2008-10-21] (MCCI Corporation)
S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [26024 2008-10-21] (MCCI Corporation)
S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [104616 2008-10-21] (MCCI Corporation)
S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [109736 2008-10-21] (MCCI Corporation)
S3 s116bus; C:\Windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\Windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\Windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\Windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\Windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\Windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\Windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
S3 s3017bus; C:\Windows\System32\DRIVERS\s3017bus.sys [83880 2007-12-10] (MCCI Corporation)
S3 s3017mdfl; C:\Windows\System32\DRIVERS\s3017mdfl.sys [15016 2007-12-10] (MCCI Corporation)
S3 s3017mdm; C:\Windows\System32\DRIVERS\s3017mdm.sys [110632 2007-12-10] (MCCI Corporation)
S3 s3017mgmt; C:\Windows\System32\DRIVERS\s3017mgmt.sys [104616 2007-12-10] (MCCI Corporation)
S3 s3017nd5; C:\Windows\System32\DRIVERS\s3017nd5.sys [25512 2007-12-10] (MCCI Corporation)
S3 s3017obex; C:\Windows\System32\DRIVERS\s3017obex.sys [100648 2007-12-10] (MCCI Corporation)
S3 s3017unic; C:\Windows\System32\DRIVERS\s3017unic.sys [110120 2007-12-10] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-11-24] (Avira GmbH)
R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [326656 2007-06-13] (SigmaTel, Inc.)
S3 StkTMini; C:\Windows\System32\Drivers\StkTMini.sys [468096 2007-11-15] (Syntek)
R3 TelekomNM3; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM3.sys [35040 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
R3 ti21sony; C:\Windows\System32\drivers\ti21sony.sys [812544 2007-06-06] (Texas Instruments)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\Users\*****-~2\AppData\Local\Temp\catchme.sys [X]
S3 dsltestSp5; System32\Drivers\dsltestSp5.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-28 15:06 - 2015-03-28 15:06 - 00007869 _____ () C:\Users\*****-***** 2\Documents\ESET.txt
2015-03-28 11:23 - 2015-03-28 11:23 - 00852604 _____ () C:\Users\*****-*****\Downloads\SecurityCheck.exe
2015-03-28 11:16 - 2015-03-28 11:16 - 02347384 _____ (ESET) C:\Users\*****-*****\Downloads\esetsmartinstaller_deu(1).exe
2015-03-28 11:15 - 2015-03-28 11:15 - 02347384 _____ (ESET) C:\Users\*****-*****\Downloads\esetsmartinstaller_deu.exe
2015-03-27 18:15 - 2015-03-27 18:17 - 60302800 _____ (Sony Corporation ) C:\Users\*****-*****\Downloads\EP0000185336.exe
2015-03-25 17:06 - 2009-05-26 11:35 - 01079840 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpluir.dll
2015-03-25 17:06 - 2009-05-26 11:35 - 00760352 _____ (NVIDIA Corporation) C:\Windows\system32\nvcplui.exe
2015-03-25 17:06 - 2009-05-26 11:35 - 00420384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.cpl
2015-03-25 17:06 - 2009-05-26 11:35 - 00313888 _____ (NVIDIA Corporation) C:\Windows\system32\nvexpbar.dll
2015-03-24 20:50 - 2015-03-24 21:05 - 182414224 _____ (NVIDIA Corporation) C:\Users\*****-*****\Downloads\307.83-notebook-winvista-32bit-international-whql.exe
2015-03-24 20:44 - 2015-03-24 20:44 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Local\Secunia PSI
2015-03-24 20:42 - 2015-03-24 20:42 - 00000000 ____D () C:\Program Files\Nero
2015-03-24 20:29 - 2015-03-24 20:29 - 00000953 _____ () C:\Users\*****-*****\Desktop\firefox - Verknüpfung.lnk
2015-03-24 19:48 - 2015-03-24 20:28 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Mozilla Firefox
2015-03-24 19:46 - 2015-03-24 19:48 - 40909304 _____ () C:\Users\*****-*****\Downloads\Firefox Setup 36.0.4.exe
2015-03-24 19:37 - 2015-03-24 19:37 - 00453424 _____ (Microsoft Corporation) C:\Users\*****-*****\Downloads\IE9-WindowsVista-x86-enu.exe
2015-03-24 18:21 - 2015-03-24 18:22 - 00000000 ____D () C:\61ecd8660e75c4c583c1
2015-03-23 19:57 - 2015-03-23 19:57 - 00207856 _____ () C:\Windows\Minidump\Mini032315-01.dmp
2015-03-22 19:54 - 2015-03-22 19:55 - 01388672 _____ (Thisisu) C:\Users\*****-*****\Downloads\JRT.exe
2015-03-22 19:24 - 2015-03-22 19:24 - 02171392 _____ () C:\Users\*****-*****\Downloads\AdwCleaner_4.112.exe
2015-03-22 19:21 - 2015-03-22 19:25 - 00001416 _____ () C:\Users\*****-*****\Desktop\mbam.txt
2015-03-22 18:52 - 2015-03-22 18:52 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\*****-*****\Downloads\revosetup95.exe
2015-03-22 11:40 - 2015-03-22 11:40 - 00000000 ____D () C:\Users\*****-*****\Documents\Ulead VideoStudio SE
2015-03-22 11:39 - 2015-03-22 11:39 - 00000000 ____D () C:\Users\*****-*****\Documents\Bluetooth-Exchange-Ordner
2015-03-21 21:03 - 2015-03-24 19:30 - 00065700 _____ () C:\Users\*****-*****\Downloads\Addition.txt
2015-03-21 20:55 - 2015-03-28 15:16 - 00034410 _____ () C:\Users\*****-*****\Downloads\FRST.txt
2015-03-21 20:54 - 2015-03-28 15:14 - 00000000 ____D () C:\FRST
2015-03-21 20:54 - 2015-03-21 20:54 - 01135104 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST.exe
2015-03-21 20:52 - 2015-03-21 20:52 - 02095616 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST64(1).exe
2015-03-21 20:51 - 2015-03-21 20:52 - 02095616 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST64.exe
2015-03-21 20:21 - 2015-03-21 20:21 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Roaming\ASCOMP Software
2015-03-21 20:19 - 2015-03-21 20:19 - 00001942 _____ () C:\Users\Public\Desktop\Secure Eraser.lnk
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASCOMP Software
2015-03-21 20:19 - 2015-03-21 20:19 - 00000000 ____D () C:\Program Files\ASCOMP Software
2015-03-21 20:13 - 2015-03-21 20:13 - 04233064 _____ (ASCOMP Software GmbH ) C:\Users\*****-*****\Downloads\sEraser4201.exe
2015-03-21 20:13 - 2015-03-21 20:13 - 04233064 _____ (ASCOMP Software GmbH ) C:\Users\*****-*****\Downloads\sEraser4201(1).exe
2015-03-21 19:33 - 2015-03-21 19:33 - 00000552 _____ () C:\Users\*****-*****\AppData\Local\d3d8caps.dat
2015-03-16 19:42 - 2015-03-16 19:42 - 00002972 _____ () C:\Users\*****-*****\Desktop\Fixlist.txt
2015-03-15 21:50 - 2015-03-15 21:50 - 00138584 _____ () C:\Windows\Minidump\Mini031515-01.dmp
2015-03-14 15:25 - 2015-03-22 19:36 - 00000000 ____D () C:\AdwCleaner
2015-03-14 13:02 - 2015-03-14 13:03 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-14 13:00 - 2015-03-14 13:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-14 13:00 - 2015-03-14 13:00 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-03-14 13:00 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-14 13:00 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-13 23:17 - 2015-03-13 23:17 - 00002080 _____ () C:\Users\*****-*****\Desktop\ComboFix - Verknüpfung.lnk
2015-03-13 22:47 - 2015-03-13 22:49 - 00207325 _____ () C:\Users\*****-***** 2\Desktop\combofix.txt
2015-03-13 22:44 - 2015-03-13 22:44 - 00207509 _____ () C:\ComboFix.txt
2015-03-13 22:06 - 2015-03-13 22:44 - 00000000 ____D () C:\ComboFix
2015-03-13 22:04 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-03-13 22:04 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-03-13 22:04 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-03-13 22:04 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-03-13 22:01 - 2015-03-13 22:44 - 00000000 ____D () C:\Qoobox
2015-03-13 21:24 - 2015-03-13 21:24 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Roaming\Swiss Academic Software
2015-03-13 21:09 - 2015-03-22 18:52 - 00001057 _____ () C:\Users\*****-***** 2\Desktop\Revo Uninstaller.lnk
2015-03-13 21:09 - 2015-03-22 18:52 - 00000000 ____D () C:\Program Files\VS Revo Group
2015-03-13 19:55 - 2015-03-13 19:55 - 00138584 _____ () C:\Windows\Minidump\Mini031315-02.dmp
2015-03-13 19:18 - 2015-03-13 19:18 - 00142704 _____ () C:\Windows\Minidump\Mini031315-01.dmp
2015-03-12 21:34 - 2015-03-12 21:34 - 00007809 _____ () C:\Users\*****-***** 2\Desktop\gmer.txt
2015-03-12 19:48 - 2015-03-12 19:49 - 00000492 _____ () C:\Windows\system32\defogger_disable.log
2015-03-12 19:48 - 2015-03-12 19:48 - 00000000 _____ () C:\Users\*****-***** 2\defogger_reenable
2015-03-11 21:06 - 2015-03-11 21:06 - 00142704 _____ () C:\Windows\Minidump\Mini031115-01.dmp
2015-03-11 19:55 - 2015-01-29 02:35 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-11 19:51 - 2015-01-29 02:35 - 00975360 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-11 19:44 - 2015-02-26 01:18 - 02064384 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-11 17:14 - 2015-02-20 03:03 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-11 17:14 - 2015-02-20 01:28 - 00296960 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-11 17:10 - 2015-02-26 03:01 - 03604408 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-03-11 17:10 - 2015-02-26 03:01 - 03552184 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-11 17:10 - 2015-01-09 03:04 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-11 17:10 - 2015-01-09 01:18 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-11 17:08 - 2015-01-21 03:02 - 00807936 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-11 17:05 - 2015-03-06 05:01 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-11 17:03 - 2014-10-13 02:12 - 02264064 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-11 17:02 - 2015-02-18 03:02 - 11587584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-10 23:52 - 2015-03-13 22:29 - 00000000 ____D () C:\Program Files\861437cb-3ee3-405d-bcea-149a4dc68fde
2015-03-10 23:51 - 2015-03-11 19:50 - 00000000 ____D () C:\ProgramData\{c5d7b5bd-e56a-bd77-c5d7-7b5bde56d6f7}
2015-03-10 21:26 - 2015-02-21 18:37 - 12375040 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-10 21:26 - 2015-02-21 18:34 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-10 21:26 - 2015-02-21 18:29 - 09747968 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-10 21:26 - 2015-02-21 18:28 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-10 21:26 - 2015-02-21 18:22 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-10 21:26 - 2015-02-21 18:21 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-10 21:26 - 2015-02-21 18:21 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-10 21:26 - 2015-02-21 18:20 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 01803264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-10 21:26 - 2015-02-21 18:19 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-10 21:26 - 2015-02-21 18:18 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-10 21:26 - 2015-02-21 18:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-10 21:26 - 2015-02-21 18:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-10 21:26 - 2015-02-21 18:17 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-09 20:35 - 2015-03-09 20:35 - 00139088 _____ () C:\Windows\Minidump\Mini030915-01.dmp
2015-03-08 11:03 - 2015-03-08 11:03 - 00209608 _____ () C:\Windows\Minidump\Mini030815-01.dmp
2015-03-06 15:42 - 2015-03-06 15:42 - 00001879 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-28 15:14 - 2008-02-06 14:54 - 01761958 _____ () C:\Windows\WindowsUpdate.log
2015-03-28 15:05 - 2013-02-05 20:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-28 14:18 - 2009-07-22 12:50 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-28 13:36 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-28 13:36 - 2006-11-02 13:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-28 12:35 - 2011-08-30 05:40 - 00001052 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-03-28 11:56 - 2011-06-30 11:07 - 00001356 _____ () C:\Users\*****-*****\AppData\Local\d3d9caps.dat
2015-03-28 10:20 - 2008-02-16 14:49 - 00002631 _____ () C:\Users\*****-*****\Desktop\Microsoft Office Word 2007.lnk
2015-03-28 10:17 - 2011-01-02 17:31 - 00193670 _____ () C:\ProgramData\lxeascan.log
2015-03-28 10:16 - 2013-07-13 10:20 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
2015-03-28 09:44 - 2006-11-02 11:33 - 01623482 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-28 09:36 - 2007-07-20 15:28 - 01563290 _____ () C:\Windows\PFRO.log
2015-03-28 09:36 - 2006-11-02 14:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-24 21:19 - 2010-08-25 19:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-24 20:26 - 2008-09-01 21:42 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-03-24 19:42 - 2007-07-20 16:27 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2015-03-24 19:41 - 2008-02-06 16:25 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Adobe
2015-03-24 19:41 - 2007-07-20 16:27 - 00000000 ____D () C:\ProgramData\Adobe
2015-03-24 19:37 - 2011-06-08 19:12 - 00006435 _____ () C:\Windows\IE9_main.log
2015-03-23 19:57 - 2008-05-16 21:19 - 00000000 ____D () C:\Windows\Minidump
2015-03-23 19:56 - 2010-08-25 18:12 - 278907883 _____ () C:\Windows\MEMORY.DMP
2015-03-23 19:23 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.001
2015-03-22 21:43 - 2007-07-20 14:34 - 00000012 _____ () C:\Windows\bthservsdp.dat
2015-03-22 21:43 - 2006-11-02 14:01 - 00032558 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-03-21 20:31 - 2008-02-06 16:25 - 00000000 ____D () C:\Users\*****-*****
2015-03-21 20:23 - 2012-06-01 17:32 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Roaming\Adobe
2015-03-21 20:23 - 2012-05-23 06:59 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Local\Adobe
2015-03-21 19:59 - 2011-07-16 17:42 - 00125952 _____ () C:\Users\*****-*****\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-03-21 19:49 - 2009-06-09 20:21 - 00000000 ____D () C:\Users\*****-*****\dwhelper
2015-03-21 19:05 - 2012-06-01 20:49 - 00000017 ____H () C:\Windows\system32\servdat.slm
2015-03-21 13:36 - 2006-11-02 11:22 - 66846720 _____ () C:\Windows\system32\config\software_previous
2015-03-21 13:36 - 2006-11-02 11:22 - 52166656 _____ () C:\Windows\system32\config\system_previous
2015-03-21 13:35 - 2013-07-25 22:43 - 00000000 ____D () C:\ProgramData\Netzmanager
2015-03-21 13:35 - 2013-06-21 13:43 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-03-21 13:35 - 2012-06-24 10:07 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Akamai
2015-03-21 13:35 - 2012-05-23 06:59 - 00000000 ____D () C:\Users\*****-***** 2
2015-03-21 13:35 - 2011-05-25 12:59 - 00000000 ____D () C:\ProgramData\Ulead Systems
2015-03-21 13:35 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\spool
2015-03-21 13:35 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\system32\Msdtc
2015-03-21 13:35 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\registration
2015-03-21 13:29 - 2006-11-02 11:22 - 49283072 _____ () C:\Windows\system32\config\components_previous
2015-03-21 13:29 - 2006-11-02 11:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous
2015-03-21 13:27 - 2006-11-02 11:22 - 00262144 _____ () C:\Windows\system32\config\security_previous
2015-03-21 10:32 - 2006-11-02 11:22 - 00524288 _____ () C:\Windows\system32\config\default_previous
2015-03-20 19:15 - 2006-11-02 13:52 - 00113370 _____ () C:\Windows\setupact.log
2015-03-14 16:43 - 2015-01-31 17:40 - 00001963 _____ () C:\Users\*****-***** 2\Desktop\Google Chrome.lnk
2015-03-14 16:43 - 2012-05-23 06:59 - 00000944 _____ () C:\Users\*****-***** 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-03-14 15:29 - 2009-07-22 12:09 - 00000000 ____D () C:\ProgramData\ICQ
2015-03-14 13:00 - 2012-05-07 19:58 - 00000899 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-14 13:00 - 2012-05-07 19:58 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-13 22:39 - 2006-11-02 11:23 - 00000215 _____ () C:\Windows\system.ini
2015-03-13 22:29 - 2012-09-29 13:22 - 00000000 ____D () C:\Program Files\7-Zip2
2015-03-13 22:24 - 2010-03-04 19:47 - 00000000 ____D () C:\ProgramData\TEMP
2015-03-11 20:31 - 2006-11-02 13:47 - 00397352 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-11 19:54 - 2007-07-20 16:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-11 19:43 - 2013-07-26 08:36 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-11 19:01 - 2008-02-06 16:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.dat
2015-03-11 17:16 - 2006-11-02 11:24 - 119837696 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2015-03-10 23:53 - 2012-05-23 06:59 - 00043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2015-03-10 20:05 - 2015-02-21 12:36 - 00136216 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-03-10 20:05 - 2015-02-21 12:36 - 00105864 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-03-07 21:58 - 2008-02-10 11:56 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Skype
2015-03-07 17:01 - 2011-03-01 16:18 - 00045024 _____ () C:\ProgramData\lxea.log
2015-03-06 15:48 - 2007-07-20 14:51 - 00794682 _____ () C:\Windows\DPINST.LOG
2015-03-06 15:42 - 2007-07-20 16:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-03-06 15:41 - 2007-07-20 15:01 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-03-01 19:08 - 2010-01-02 10:33 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs

==================== Files in the root of some directories =======

2012-05-23 06:59 - 2015-03-10 23:53 - 0043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2012-05-23 06:59 - 2007-08-06 14:21 - 0042479 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.dat
2012-06-30 10:35 - 2012-06-30 10:35 - 0000022 ___SH () C:\Users\*****-***** 2\AppData\Roaming\Windows1569_SettingsRepository.bin
2012-05-23 06:59 - 2015-02-20 20:48 - 0002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2012-05-23 06:59 - 2007-08-06 14:06 - 0018944 _____ () C:\Users\*****-***** 2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-30 10:35 - 2012-06-30 10:35 - 0000000 _____ () C:\Users\*****-***** 2\AppData\Local\jv16PT_temp.tmp
2008-02-21 11:45 - 2008-02-21 11:45 - 0000305 _____ () C:\ProgramData\addr_file.html
2009-02-05 21:42 - 2009-02-05 21:42 - 0000056 _____ () C:\ProgramData\ezsidmv.dat
2011-01-02 17:39 - 2011-01-02 17:39 - 0000252 _____ () C:\ProgramData\FastPics.log
2011-03-01 16:18 - 2015-03-07 17:01 - 0045024 _____ () C:\ProgramData\lxea.log
2011-01-02 17:40 - 2011-01-02 17:42 - 0000438 _____ () C:\ProgramData\lxeaDiagnostics.log
2011-01-02 17:44 - 2011-06-02 09:10 - 0004439 _____ () C:\ProgramData\lxeaJSW.log
2011-01-02 17:31 - 2015-03-28 10:17 - 0193670 _____ () C:\ProgramData\lxeascan.log
2011-01-02 17:27 - 2011-01-02 17:27 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

Some content of TEMP:
====================
C:\Users\*****-*****\AppData\Local\temp\avgnt.exe
C:\Users\*****-***** 2\AppData\Local\temp\Quarantine.exe
C:\Users\*****-***** 2\AppData\Local\temp\sqlite3.dll


Some zero byte size files/folders:
==========================
C:\Windows\System32\nsprs.dll
C:\Windows\System32\serauth1.dll
C:\Windows\System32\serauth2.dll
C:\Windows\System32\ssprs.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-28 09:51

==================== End Of Log ============================

--- --- ---

--- --- ---

schrauber 28.03.2015 22:03

Alles von Java deinstalliren, dann die aktuelle Java Version installieren.


Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

C:\Users\*****-*****\AppData\Roaming\PWKN

C:\Users\*****-*****\AppData\Roaming\VM

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe

C:\Users\*****-*****\Downloads\dvdburnersetup.exe

C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe

C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe

C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe

C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe

C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe

C:\Windows\Installer\183409c.msi

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe

C:\$RECYCLE.BIN
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-06-26] (Google)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
Emptytemp:


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.


Jami87 29.03.2015 13:00

Code:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-03-2015
Ran by *****-***** 2 at 2015-03-29 13:08:58 Run:1
Running from C:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
C:\Users\*****-*****\AppData\Roaming\PWKN

C:\Users\*****-*****\AppData\Roaming\VM

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe

C:\Users\*****-*****\Downloads\dvdburnersetup.exe

C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe

C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe

C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe

C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe

C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe

C:\Windows\Installer\183409c.msi

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe

C:\$RECYCLE.BIN
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-06-26] (Google)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
Emptytemp:
       
*****************

"C:\Users\*****-*****\AppData\Roaming\PWKN" => File/Directory not found.
"C:\Users\*****-*****\AppData\Roaming\VM" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\dvdburnersetup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe" => File/Directory not found.
"C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe" => File/Directory not found.
"C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe" => File/Directory not found.
"C:\Windows\Installer\183409c.msi" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe" => File/Directory not found.
C:\$RECYCLE.BIN => Moved successfully.
"C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL" => Value Data removed successfully.
"HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
EmptyTemp: => Removed 85.7 MB temporary data.


The system needed a reboot.

==== End of Fixlog 13:11:25 ====



Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-03-2015
Ran by *****-***** 2 at 2015-03-29 13:08:58 Run:1
Running from C:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
C:\Users\*****-*****\AppData\Roaming\PWKN

C:\Users\*****-*****\AppData\Roaming\VM

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe

C:\Users\*****-*****\Downloads\dvdburnersetup.exe

C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe

C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe

C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe

C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe

C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe

C:\Windows\Installer\183409c.msi

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe

C:\$RECYCLE.BIN
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-06-26] (Google)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
Emptytemp:
       
*****************

"C:\Users\*****-*****\AppData\Roaming\PWKN" => File/Directory not found.
"C:\Users\*****-*****\AppData\Roaming\VM" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\dvdburnersetup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe" => File/Directory not found.
"C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe" => File/Directory not found.
"C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe" => File/Directory not found.
"C:\Windows\Installer\183409c.msi" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe" => File/Directory not found.
C:\$RECYCLE.BIN => Moved successfully.
"C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL" => Value Data removed successfully.
"HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
EmptyTemp: => Removed 85.7 MB temporary data.


The system needed a reboot.

==== End of Fixlog 13:11:25 ====

Oh, ich hätte die Sternchen erst ersetzen müssn, oder?

Habs jetzt nochmal mit dem Ersetzen gemacht:

Code:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-03-2015
Ran by *****-***** 2 at 2015-03-29 13:37:59 Run:2
Running from c:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
C:\Users\*****-*****\AppData\Roaming\PWKN

C:\Users\*****-*****\AppData\Roaming\VM

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe

C:\Users\*****-*****\Downloads\dvdburnersetup.exe

C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe

C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe

C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe

C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe

C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe

C:\Windows\Installer\183409c.msi

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe

C:\$RECYCLE.BIN
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-06-26] (Google)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
Emptytemp:
       
*****************

"C:\Users\*****-*****\AppData\Roaming\PWKN" => File/Directory not found.
"C:\Users\*****-*****\AppData\Roaming\VM" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\dvdburnersetup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe" => File/Directory not found.
"C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe" => File/Directory not found.
"C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe" => File/Directory not found.
"C:\Windows\Installer\183409c.msi" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe" => File/Directory not found.
C:\$RECYCLE.BIN => Moved successfully.
"C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL" => Value Data not found.
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer => Key not found.
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer => Key not found.
EmptyTemp: => Removed 892 KB temporary data.


The system needed a reboot.

==== End of Fixlog 13:38:47 ====

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-03-2015
Ran by *****-***** 2 at 2015-03-29 13:37:59 Run:2
Running from c:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
C:\Users\*****-*****\AppData\Roaming\PWKN

C:\Users\*****-*****\AppData\Roaming\VM

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe

C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe

C:\Users\*****-*****\Downloads\dvdburnersetup.exe

C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe

C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe

C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe

C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe

C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe

C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe

C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe

C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe

C:\Windows\Installer\183409c.msi

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe

C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe

C:\$RECYCLE.BIN
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2010-06-26] (Google)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
Emptytemp:
       
*****************

"C:\Users\*****-*****\AppData\Roaming\PWKN" => File/Directory not found.
"C:\Users\*****-*****\AppData\Roaming\VM" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(1).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_(2).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Downloader_fuer_IBM_SPSS_Statistics_18_.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\dvdburnersetup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\FinalMediaPlayer2014U1Setup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\FreeYouTubeDownload.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\PDFCreator-1_6_2_2_setup.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup19_FreeConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup72_FreeFlvConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(1).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(10).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(11).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(2).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(3).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(4).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(5).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(6).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(7).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(8).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter(9).exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\Setup_FreeFlvConverter.exe" => File/Directory not found.
"C:\Users\*****-*****\Downloads\vlc-1.1.6-win32.exe" => File/Directory not found.
"C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_.exe" => File/Directory not found.
"C:\Users\*****-***** 2\Desktop\IminentSetup_2-KFRPtAWP-1_[1].exe" => File/Directory not found.
"C:\Windows\Installer\183409c.msi" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\TbHelper2.exe" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\uninstall.exe" => File/Directory not found.
"C:\Windows\System32\config\systemprofile\AppData\LocalLow\Toolbar4\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\update.exe" => File/Directory not found.
C:\$RECYCLE.BIN => Moved successfully.
"C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL" => Value Data not found.
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Policies\Microsoft\Internet Explorer => Key not found.
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer => Key not found.
EmptyTemp: => Removed 892 KB temporary data.


The system needed a reboot.

==== End of Fixlog 13:38:47 ====


schrauber 29.03.2015 16:40

Ja, im Fix muss dann schon der korrekte Name stehen :)

Noch Probleme?

Jami87 30.03.2015 08:47

Aber die Ergebnisse sehen in den 2 Varianten ähnlich aus, ode? Hättest du mit der ersten Datei auch etwas anfangen können?

Probleme - mh, also die Streifen sind gerade nicht mehr da, aber an was das jetzt liegt, weiß ich auch nicht. Ansonsten ist nichts auffällig im Moment. Aber das "Iminent" habe ich immernoch auf dem PC, oder? Also laut den Log-Dateien?

schrauber 30.03.2015 17:20

Nö, das ist nur ein Rest in der Registry. Die Streifen sind wie gesagt Treiber oder Hardware.



Cleanup:
(Die Reihenfolge ist hier entscheidend)

Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken.

Falls Combofix verwendet wurde:
http://deeprybka.trojaner-board.de/b.../combofix2.pngCombofix deinstallieren .
  • Wichtig: Bitte Antivirus-Programm, evtl. vorhandenes Skript-Blocking und Anti-Malware Programme deaktivieren.
  • Drücke bitte die http://deeprybka.trojaner-board.de/b...ne/revo/w7.png + R Taste und schreibe Combofix /Uninstall in das Ausführen-Fenster.
  • Klicke auf OK.
    Damit wird Combofix komplett entfernt und der Cache der Systemwiederherstellung geleert.
  • Nun die eben deaktivierten Programme wieder aktivieren.

Alle Logs gepostet? Dann lade Dir bitte http://filepony.de/icon/tiny/delfix.pngDelFix herunter.
  • Schließe alle offenen Programme.
  • Starte die delfix.exe mit einem Doppelklick.
  • Setze vor jede Funktion ein Häkchen.
  • Klicke auf Start.

Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst.
Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen.

Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...:dankeschoen:und/oder das Forum mit einer kleinen Spende http://www.trojaner-board.de/extra/spende.png unterstützen. :applaus:

http://deeprybka.trojaner-board.de/b...ast/schild.pngAbsicherung:
Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen:

Browser
Java
Flash-Player
PDF-Reader

Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren.
Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen.

Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig.

Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank.
Meine Empfehlung:
http://filepony.de/icon/emsisoft_anti_malware.png
Emsisoft

Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen.

Optional:
http://filepony.de/icon/noscript.png NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen.
http://filepony.de/icon/malwarebytes_anti_exploit.pngMalwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen.


Lade Software von einem sauberen Portal wie http://filepony.de/images/microbanner.gif.
Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen.
Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwarecleaner .


Abschließend noch ein paar grundsätzliche Bemerkungen:
Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems.
Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.

Jami87 30.03.2015 18:10

Alles klar, die Schritte gehe ich morgen nochmal durch.

Zwecks Grafikkarte bzw. Hardware: Komisch ist halt, dass es momentan schon verhältnismäßig lang geht (also einen Tag lang ohne Streifen). Wenn eine Grafikkarte defekt ist oder auch die Hardware im Allgemeinen ein Problem hat, gänge es doch nicht auf einmal wieder so lang, oder?

Danke dir auf jeden Fall vielmals für deine Hilfe :-).

schrauber 31.03.2015 05:11

Doch, das kann ganz unterschiedlich kommen :)

Jami87 22.04.2015 17:43

Hallo,

ich bin es nochmal. Und zwar ging mein Laptop dann gar nicht mehr (also war gar nichts mehr zu sehen) und ich habe ihn weggeschickt zur Reperatur.
Das Angebot war eines über Ebay - es scheint nun wieder zu funktionieren, aber kann man dem Ganzen vertrauen? Es sei wohl das Mainboard repariert worden - kann man irgendwie sehen, ob das stimmt? Ich habe 80€ gezahlt - ist das "normal"?
Und: Es werden bei sowas nicht manchmal "Spione" o.ä. eingebaut, oder? Finde es etwas seltsam, dass es "nur" 80€ waren und suche noch ein wenig nach dem "Haken"...

Zudem: Es kommt immernoch die Fehlermeldung, dass der Windows Host Prozess nicht mehr funktioniert - was kann ich da gleich nochmal machen? (Irgendwie habe ich das letztens nicht hinbekommen)

Und: Sollte ich nun lieber nochmal nach Viren suchen? Wie mache ich das am Besten?

LG...

schrauber 23.04.2015 11:30

Hi,

keine Ahnung, ob das seriös ist oder nicht. Kann, muss aber nicht. Die können auch sämtlichen Schmarn mit deinen Daten gemacht haben.


Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)


Jami87 23.04.2015 17:38

Mh, also die Festplatte hatte ich vorher ausgebaut - kann da dennoch etwas gemacht werden mit den Daten bzw. etwas auf den PC geschleust, eingebaut, oder wie auch immer? Wäre das für mich erkennbar irgendwie?!?
Ist der Preis von 80€ denn realistisch?


FRST Logfile:

FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 22-04-2015 01
Ran by *****-***** 2 (administrator) on ***** on 23-04-2015 18:07:36
Running from C:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Platform: Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
() C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
( ) C:\Windows\System32\lxeacoms.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
() C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
(Secunia) C:\Program Files\Secunia\PSI\psia.exe
(SigmaTel, Inc.) C:\Windows\System32\stacsv.exe
(Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
(Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdSync.exe
() C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
() C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
() C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Mozilla Corporation) C:\Users\*****-*****\AppData\Local\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Mozilla Corporation) C:\Users\*****-*****\AppData\Local\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_134.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_134.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe
(Farbar) C:\Users\*****-*****\Downloads\FRST(1).exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdSync.exe [215552 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [lxeamon.exe] => C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe [770728 2010-01-18] ()
HKLM\...\Run: [EzPrint] => C:\Program Files\Lexmark S300-S400 Series\ezprint.exe [139944 2010-01-18] ()
HKLM\...\Run: [UVS10 Preload] => C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [36864 2006-08-09] (Ulead Systems, Inc.)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [726320 2015-04-08] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [NvSvc] => RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
HKLM\...\RunOnce: [{D2C5E510-BE6D-42CC-9F61-E4F939078474}] => C:\Windows\system32\cmd.exe /c rmdir /q /s "C:\Program Files\Lexmark Printable Web"
HKLM\...\RunOnce: [*EmptyTemp] => cmd /c rd /q/s C:\FRST\Temp
HKLM\...\RunOnce: [*WerKernelReporting] => C:\Windows\SYSTEM32\WerFault.exe [217088 2009-04-11] (Microsoft Corporation)
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2011-05-04] (SUPERAntiSpyware.com)
Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll [2007-07-12] (Sony Corporation)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [466144 2014-11-27] (Sony)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [3905920 2012-06-05] (SUPERAntiSpyware.com)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Akamai NetSession Interface] => C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Amazon Cloud Player] => C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3145536 2014-05-08] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON SX430 Series (Kopie 1)] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHAE.EXE [212480 2012-05-18] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON Stylus DX8400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE [182272 2007-04-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk [2007-07-20]
ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014-02-17]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2012-05-16]
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk [2008-02-26]
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\DSL-Manager\DslMgr.exe (No File)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk [2014-05-18]
ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2010-12-14]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.club-vaio.com
hxxp://partnerpage.google.com/eu.sony.com/de
hxxp://www.club-vaio.com/vbc
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {399AFF92-3607-4429-B2E3-99BECE8D2374} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=internet-tab&tpc=internet&ptl=std&classification=internet-tab_internet_std&q={searchTerms}&br=ie7-toi
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {53DBFD01-FF03-4A5F-8F4B-7BF8E909A975} URL = hxxp://www.amazon.de/gp/search?ie=UTF8&keywords={searchTerms}&tag=interactivemesuche-21&index=blended&linkCode=ur2&camp=1638&creative=6742
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {C4802B53-BBDC-409E-B3EF-57C0B6708018} URL = hxxp://adfarm.mediaplex.com/ad/ck/707-1403-18840-0?mpro=hxxp://search.ebay.de/search/search.dll?shortcut=4&query={searchTerms}
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {E6BFE530-DE68-4D85-A111-513CA45EFAF0} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=wiki-tab&tpc=internet&ptl=std&classification=wiki-tab_internet_std&q={searchTerms}&br=ie7-toi
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-28] (Oracle Corporation)
BHO: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2011-09-16] (Google Inc.)
BHO: CBrowserHelperObject Object -> {CA6319C0-31B7-401E-A518-A07C3DB8F777} -> C:\Program Files\Google BAE\BAE.dll [2006-06-23] (Your Company Name)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-28] (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
Toolbar: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> No Name - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} -  No File
DPF: {00000161-9980-0010-8000-00AA00389B71} hxxp://codecs.microsoft.com/codecs/i386/msaud.cab
DPF: {33564D57-9980-0010-8000-00AA00389B71} hxxp://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-01-25] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Winsock: Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [507984 2015-02-21] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [507984 2015-02-21] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [507984 2015-02-21] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [507984 2015-02-21] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 05 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [507984 2015-02-21] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 06 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [507984 2015-02-21] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 07 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [507984 2015-02-21] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 08 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [507984 2015-02-21] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 56 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [507984 2015-02-21] (Avira Operations GmbH & Co. KG)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\*****-***** 2\AppData\Roaming\Mozilla\Firefox\Profiles\4qlxy2p6.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-28] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2007-07-13] (DivX, Inc)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-28] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-28] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-16] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin HKU\S-1-5-21-3850073437-3280287025-709413035-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-03-09] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-06-04] (Apple Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\googledesktop.xml [2010-06-26]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2012-12-12]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{D250ED92-1791-42C4-B441-E90BF89B9BEF}] - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF}
FF Extension: XULRunner - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF} [2011-04-02]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2011-08-12] (SUPERAntiSpyware.com) [File not signed]
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AdobeActiveFileMonitor5.0; C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [108712 2006-12-22] ()
S2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [815352 2015-04-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [434424 2015-04-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [434424 2015-04-08] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1004032 2015-04-08] (Avira Operations GmbH & Co. KG)
S2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe [443752 2008-08-18] (DisplayLink Corp.)
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
S4 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed]
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [74752 2011-12-30] (Freemake) [File not signed]
S4 GoogleDesktopManager-051210-111108; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-06-26] (Google)
S2 gupdate1ca0ac0f00c0a80; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeaserv.exe [193192 2010-04-14] (Lexmark International, Inc.)
R2 lxea_device; C:\Windows\system32\lxeacoms.exe [598696 2010-01-07] ( )
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [File not signed]
R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) [File not signed]
S4 OMSI download service; C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112 2009-04-30] () [File not signed]
S4 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [File not signed]
R2 Radio.fx; C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe [3673944 2011-11-18] ()
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [994360 2011-07-29] (Secunia)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [File not signed]
R2 STacSV; C:\Windows\system32\stacsv.exe [94208 2007-06-13] (SigmaTel, Inc.)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-09-28] (Ulead Systems, Inc.) [File not signed]
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2007-06-28] (Sony Corporation) [File not signed]
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182392 2007-07-12] (Sony Corporation)
S3 VAIOMediaPlatform-IntegratedServer-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2523136 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-Mobile-Gateway; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [499712 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe [745472 2007-01-10] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
R2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [292152 2007-07-05] (Sony Corporation)
R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [274432 2007-06-28] (Sony Corporation) [File not signed]
R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2007-08-28] (Sony Corporation) [File not signed]
R2 VzFw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe [131072 2007-08-28] (Sony Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 CLTNetCnService; "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-11-24] (Avira Operations GmbH & Co. KG)
S3 dlkmd; C:\Windows\system32\drivers\dlkmd.sys [287856 2008-08-18] (DisplayLink Corp.)
R0 dlkmdldr; C:\Windows\System32\drivers\dlkmdldr.sys [13424 2008-08-18] (DisplayLink Corp.)
R3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25624 2009-04-30] ()
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-03-14] (Malwarebytes Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia)
S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [86824 2008-10-21] (MCCI Corporation)
S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [15016 2008-10-21] (MCCI Corporation)
S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [114600 2008-10-21] (MCCI Corporation)
S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [108328 2008-10-21] (MCCI Corporation)
S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [26024 2008-10-21] (MCCI Corporation)
S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [104616 2008-10-21] (MCCI Corporation)
S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [109736 2008-10-21] (MCCI Corporation)
S3 s116bus; C:\Windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\Windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\Windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\Windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\Windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\Windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\Windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
S3 s3017bus; C:\Windows\System32\DRIVERS\s3017bus.sys [83880 2007-12-10] (MCCI Corporation)
S3 s3017mdfl; C:\Windows\System32\DRIVERS\s3017mdfl.sys [15016 2007-12-10] (MCCI Corporation)
S3 s3017mdm; C:\Windows\System32\DRIVERS\s3017mdm.sys [110632 2007-12-10] (MCCI Corporation)
S3 s3017mgmt; C:\Windows\System32\DRIVERS\s3017mgmt.sys [104616 2007-12-10] (MCCI Corporation)
S3 s3017nd5; C:\Windows\System32\DRIVERS\s3017nd5.sys [25512 2007-12-10] (MCCI Corporation)
S3 s3017obex; C:\Windows\System32\DRIVERS\s3017obex.sys [100648 2007-12-10] (MCCI Corporation)
S3 s3017unic; C:\Windows\System32\DRIVERS\s3017unic.sys [110120 2007-12-10] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-11-24] (Avira GmbH)
R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [326656 2007-06-13] (SigmaTel, Inc.)
S3 StkTMini; C:\Windows\System32\Drivers\StkTMini.sys [468096 2007-11-15] (Syntek)
R3 TelekomNM3; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM3.sys [35040 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
R3 ti21sony; C:\Windows\System32\drivers\ti21sony.sys [812544 2007-06-06] (Texas Instruments)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\Users\*****-~2\AppData\Local\Temp\catchme.sys [X]
S3 dsltestSp5; System32\Drivers\dsltestSp5.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-23 18:07 - 2015-04-23 18:10 - 00033766 _____ () C:\Users\*****-*****\Downloads\FRST.txt
2015-04-23 18:07 - 2015-04-23 18:07 - 00000000 ____D () C:\FRST
2015-04-23 18:05 - 2015-04-23 18:05 - 01139200 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST(1).exe
2015-04-23 07:46 - 2015-03-09 03:01 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-23 07:33 - 2015-03-05 04:24 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-23 07:29 - 2015-03-05 04:32 - 00244152 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-23 07:29 - 2015-03-05 04:23 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-23 07:27 - 2015-03-14 04:21 - 01205168 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-23 07:27 - 2015-03-13 03:51 - 03604920 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-04-23 07:27 - 2015-03-13 03:51 - 03552184 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-22 18:41 - 2015-03-10 01:06 - 12377600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-22 18:41 - 2015-03-10 01:03 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-22 18:41 - 2015-03-10 01:02 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-22 18:41 - 2015-03-10 01:00 - 09747968 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-22 18:41 - 2015-03-10 00:57 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-22 18:41 - 2015-03-10 00:57 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 01803264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-22 18:41 - 2015-03-10 00:56 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-22 18:41 - 2015-03-10 00:55 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-22 18:41 - 2015-03-10 00:55 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-04-22 18:41 - 2015-03-10 00:55 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-04-10 18:42 - 2015-04-10 18:45 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Mozilla Firefox
2015-04-06 11:55 - 2015-04-06 11:55 - 00139504 _____ () C:\Windows\Minidump\Mini040615-01.dmp
2015-04-05 18:53 - 2015-04-05 18:53 - 00000000 ____D () C:\Users\*****-*****\Documents\Citavi 3
2015-03-31 08:57 - 2015-03-31 09:00 - 00001547 _____ () C:\DelFix.txt
2015-03-31 08:57 - 2015-03-31 08:57 - 00000000 ____D () C:\Windows\ERUNT
2015-03-31 08:24 - 2015-03-31 08:25 - 00000000 ____D () C:\Users\*****-*****\Desktop\Neuer Ordner
2015-03-28 17:36 - 2015-03-28 17:36 - 00778928 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-03-28 17:36 - 2015-03-28 17:36 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-03-28 16:57 - 2015-03-28 16:57 - 00000000 ____D () C:\Program Files\Nero
2015-03-28 16:43 - 2015-03-28 16:43 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-03-28 16:39 - 2015-03-28 16:39 - 00561064 _____ (Oracle Corporation) C:\Users\*****-*****\Downloads\jxpiinstall.exe
2015-03-28 16:06 - 2015-03-28 16:06 - 00007869 _____ () C:\Users\*****-***** 2\Documents\ESET.txt
2015-03-28 12:23 - 2015-03-28 12:23 - 00852604 _____ () C:\Users\*****-*****\Downloads\SecurityCheck.exe
2015-03-28 12:16 - 2015-03-28 12:16 - 02347384 _____ (ESET) C:\Users\*****-*****\Downloads\esetsmartinstaller_deu(1).exe
2015-03-28 12:15 - 2015-03-28 12:15 - 02347384 _____ (ESET) C:\Users\*****-*****\Downloads\esetsmartinstaller_deu.exe
2015-03-27 19:15 - 2015-03-27 19:17 - 60302800 _____ (Sony Corporation ) C:\Users\*****-*****\Downloads\EP0000185336.exe
2015-03-25 18:06 - 2009-05-26 12:35 - 01079840 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpluir.dll
2015-03-25 18:06 - 2009-05-26 12:35 - 00760352 _____ (NVIDIA Corporation) C:\Windows\system32\nvcplui.exe
2015-03-25 18:06 - 2009-05-26 12:35 - 00420384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.cpl
2015-03-25 18:06 - 2009-05-26 12:35 - 00313888 _____ (NVIDIA Corporation) C:\Windows\system32\nvexpbar.dll
2015-03-24 21:50 - 2015-03-24 22:05 - 182414224 _____ (NVIDIA Corporation) C:\Users\*****-*****\Downloads\307.83-notebook-winvista-32bit-international-whql.exe
2015-03-24 21:44 - 2015-03-24 21:44 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Local\Secunia PSI
2015-03-24 21:29 - 2015-03-24 21:29 - 00000953 _____ () C:\Users\*****-*****\Desktop\firefox - Verknüpfung.lnk
2015-03-24 20:46 - 2015-03-24 20:48 - 40909304 _____ () C:\Users\*****-*****\Downloads\Firefox Setup 36.0.4.exe
2015-03-24 20:37 - 2015-03-24 20:37 - 00453424 _____ (Microsoft Corporation) C:\Users\*****-*****\Downloads\IE9-WindowsVista-x86-enu.exe
2015-03-24 19:21 - 2015-03-24 19:22 - 00000000 ____D () C:\61ecd8660e75c4c583c1

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-23 18:07 - 2008-02-06 15:54 - 01438649 _____ () C:\Windows\WindowsUpdate.log
2015-04-23 18:03 - 2011-06-30 12:07 - 00001356 _____ () C:\Users\*****-*****\AppData\Local\d3d9caps.dat
2015-04-23 18:03 - 2006-11-02 14:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-23 18:03 - 2006-11-02 14:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-23 17:42 - 2011-01-02 18:31 - 00196310 _____ () C:\ProgramData\lxeascan.log
2015-04-23 17:41 - 2013-07-13 11:20 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
2015-04-23 17:19 - 2009-07-22 13:50 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-23 17:03 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-04-23 16:56 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-23 08:18 - 2007-07-20 15:34 - 00000012 _____ () C:\Windows\bthservsdp.dat
2015-04-23 08:18 - 2006-11-02 15:01 - 00032558 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-04-23 07:46 - 2013-07-26 09:36 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-23 07:34 - 2006-11-02 12:24 - 125832184 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2015-04-23 07:33 - 2007-07-20 17:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-04-23 07:25 - 2006-11-02 12:33 - 01597796 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-12 12:35 - 2011-08-30 06:40 - 00001052 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-04-10 19:16 - 2008-02-16 15:49 - 00002673 _____ () C:\Users\*****-*****\Desktop\Microsoft Office PowerPoint 2007.lnk
2015-04-08 14:43 - 2007-07-20 16:28 - 01743920 _____ () C:\Windows\PFRO.log
2015-04-08 10:18 - 2015-02-21 14:06 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Avira
2015-04-08 10:07 - 2015-02-21 13:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-04-08 10:04 - 2012-04-26 06:31 - 00000000 ____D () C:\ProgramData\Avira
2015-04-06 12:54 - 2013-07-25 23:43 - 00000000 ____D () C:\ProgramData\Netzmanager
2015-04-06 12:54 - 2013-06-21 14:43 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-04-06 12:54 - 2012-06-24 11:07 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Akamai
2015-04-06 12:54 - 2012-05-23 07:59 - 00000000 ____D () C:\Users\*****-***** 2
2015-04-06 12:54 - 2011-05-25 13:59 - 00000000 ____D () C:\ProgramData\Ulead Systems
2015-04-06 12:54 - 2008-02-06 17:25 - 00000000 ____D () C:\Users\*****-*****
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\spool
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\Msdtc
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\registration
2015-04-06 12:54 - 2006-11-02 12:22 - 66846720 _____ () C:\Windows\system32\config\software_previous
2015-04-06 12:54 - 2006-11-02 12:22 - 52166656 _____ () C:\Windows\system32\config\system_previous
2015-04-06 12:45 - 2006-11-02 12:22 - 49283072 _____ () C:\Windows\system32\config\components_previous
2015-04-06 12:45 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous
2015-04-06 11:55 - 2010-08-25 19:12 - 216125677 _____ () C:\Windows\MEMORY.DMP
2015-04-06 11:55 - 2008-05-16 22:19 - 00000000 ____D () C:\Windows\Minidump
2015-04-05 19:50 - 2006-11-02 12:22 - 00524288 _____ () C:\Windows\system32\config\default_previous
2015-04-05 19:49 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\security_previous
2015-04-05 18:53 - 2008-02-06 17:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.dat
2015-04-05 18:53 - 2008-02-06 17:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.001
2015-03-29 14:14 - 2008-02-16 15:49 - 00002631 _____ () C:\Users\*****-*****\Desktop\Microsoft Office Word 2007.lnk
2015-03-29 12:55 - 2010-08-25 20:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-28 17:37 - 2012-05-23 07:59 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Local\Adobe
2015-03-28 17:01 - 2015-03-13 22:09 - 00001057 _____ () C:\Users\*****-***** 2\Desktop\Revo Uninstaller.lnk
2015-03-28 17:01 - 2015-03-13 22:09 - 00000000 ____D () C:\Program Files\VS Revo Group
2015-03-28 16:54 - 2007-07-20 17:11 - 00000000 ____D () C:\Program Files\Google
2015-03-28 16:53 - 2012-05-23 07:59 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Local\Google
2015-03-28 16:44 - 2015-02-20 21:42 - 00000000 ____D () C:\ProgramData\Oracle
2015-03-28 16:42 - 2012-05-23 07:59 - 00002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2015-03-28 16:41 - 2015-02-20 21:52 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2015-03-28 16:41 - 2008-08-31 10:27 - 00000000 ____D () C:\Program Files\Java
2015-03-28 16:21 - 2015-03-21 22:03 - 00062580 _____ () C:\Users\*****-*****\Downloads\Addition.txt
2015-03-24 21:26 - 2008-09-01 22:42 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-03-24 20:42 - 2007-07-20 17:27 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2015-03-24 20:41 - 2008-02-06 17:25 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Adobe
2015-03-24 20:41 - 2007-07-20 17:27 - 00000000 ____D () C:\ProgramData\Adobe
2015-03-24 20:37 - 2011-06-08 20:12 - 00006435 _____ () C:\Windows\IE9_main.log

==================== Files in the root of some directories =======

2012-05-23 07:59 - 2015-03-11 00:53 - 0043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2012-05-23 07:59 - 2007-08-06 15:21 - 0042479 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.dat
2012-06-30 11:35 - 2012-06-30 11:35 - 0000022 ___SH () C:\Users\*****-***** 2\AppData\Roaming\Windows1569_SettingsRepository.bin
2012-05-23 07:59 - 2015-03-28 16:42 - 0002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2012-05-23 07:59 - 2007-08-06 15:06 - 0018944 _____ () C:\Users\*****-***** 2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-30 11:35 - 2012-06-30 11:35 - 0000000 _____ () C:\Users\*****-***** 2\AppData\Local\jv16PT_temp.tmp
2008-02-21 12:45 - 2008-02-21 12:45 - 0000305 _____ () C:\ProgramData\addr_file.html
2009-02-05 22:42 - 2009-02-05 22:42 - 0000056 _____ () C:\ProgramData\ezsidmv.dat
2011-01-02 18:39 - 2011-01-02 18:39 - 0000252 _____ () C:\ProgramData\FastPics.log
2011-03-01 17:18 - 2015-03-07 18:01 - 0045024 _____ () C:\ProgramData\lxea.log
2011-01-02 18:40 - 2011-01-02 18:42 - 0000438 _____ () C:\ProgramData\lxeaDiagnostics.log
2011-01-02 18:44 - 2011-06-02 10:10 - 0004439 _____ () C:\ProgramData\lxeaJSW.log
2011-01-02 18:31 - 2015-04-23 17:42 - 0196310 _____ () C:\ProgramData\lxeascan.log
2011-01-02 18:27 - 2011-01-02 18:27 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

Some content of TEMP:
====================
C:\Users\*****-*****\AppData\Local\temp\avgnt.exe


Some zero byte size files/folders:
==========================
C:\Windows\System32\nsprs.dll
C:\Windows\System32\serauth1.dll
C:\Windows\System32\serauth2.dll
C:\Windows\System32\ssprs.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-04-23 17:05

==================== End Of Log ============================

--- --- ---

--- --- ---

--- --- ---

Code:

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 22-04-2015 01
Ran by *****-***** 2 at 2015-04-23 18:12:59
Running from C:\Users\*****-*****\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"Durchstarten mit Ponky - Deutsch 1+2" (HKLM\...\"Durchstarten mit Ponky - Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Durchstarten mit Ponky - Mathe 1+2" (HKLM\...\"Durchstarten mit Ponky - Mathe 1+2") (Version: 2.00 - Engel Edition)
"Englisch in der Grundschule mit Ponky 1.+2. Kl." (HKLM\...\"Englisch in der Grundschule mit Ponky 1.+2. Kl.") (Version: 2.00 - Engel Edition)
"Ponky gezielt Deutsch 1+2" (HKLM\...\"Ponky gezielt Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Ponky gezielt Mathe 1+2" (HKLM\...\"Ponky gezielt Mathe 1+2") (Version: 2.00 - Engel Edition)
7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
ABBYY FineReader 6.0 Sprint (HKLM\...\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}) (Version: 6.00.1395.4512 - ABBYY Software House)
ABBYY FineReader 9.0 Sprint (HKLM\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212 - ABBYY) Hidden
Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\Activation Assistant for the 2007 Microsoft Office suites) (Version:  - Microsoft Corporation)
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0 - Microsoft Corporation) Hidden
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Media Player (HKLM\...\{95264530-5A22-8E7E-FE9D-D63A927BCAEA}) (Version: 1.7 - Adobe Systems Incorporated)
Adobe Photoshop Elements 5.0 (HKLM\...\Adobe Photoshop Elements 5) (Version: 5.0 - Adobe Systems, Inc.)
Adobe Premiere Elements 3.0.2 (HKLM\...\PremElem30) (Version: 3.0.2 - Ihr Firmenname)
Adobe Premiere Elements 3.0.2 Templates (HKLM\...\{6EACDDF4-4220-49A3-9204-984C86852C3D}) (Version: 1.0.0 - Ihr Firmenname)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.)
Akamai NetSession Interface (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Akamai) (Version:  - Akamai Technologies, Inc)
All To WMA Converter 1.7 (HKLM\...\All To WMA Converter_is1) (Version: 1.7 - All To WMA Converter)
Alps Pointing-device for VAIO (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version:  - )
Amazon Cloud Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Amazon Amazon Cloud Player) (Version: 2.4.0.33 - Amazon Services LLC)
Any Video Converter 3.3.2 (HKLM\...\Any Video Converter_is1) (Version:  - Any-Video-Converter.com)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Aquanuma (HKLM\...\Aquanuma_is1) (Version:  - )
ArcSoft Magic-i Visual Effects Installer (HKLM\...\{9AB83A3C-604D-4B4F-AA25-A23A3FC39844}) (Version:  - ArcSoft)
Audacity 1.2.6 (HKLM\...\Audacity_is1) (Version:  - )
AutoUpdate (HKLM\...\{18D10072035C4515918F7E37EAFAACFC}) (Version: 1.1 - )
Avanquest update (HKLM\...\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}) (Version: 1.20 - Avanquest Software)
Avira (HKLM\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG)
Avira (Version: 1.1.30.21727 - Avira Operations & Co. KG) Hidden
Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.9.504 - Avira Operations GmbH & Co. KG)
AviSynth 2.5 (HKLM\...\AviSynth) (Version:  - )
Benutzerdefinierte Voreinstellungen für SonicStage Mastering Studio Audio Filter (HKLM\...\{EC37A846-53AC-4DA7-98FA-76A4E74AA900}) (Version: 2.3 - Sony Corporation)
Benutzerhandbuch - Grundlagen EPSON SX430 Series (HKLM\...\EPSON SX430 Series Bog) (Version:  - )
Benutzerhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Useg) (Version:  - )
Browser Address Error Redirector (HKLM\...\{3EE33958-7381-4E7B-A4F3-6E43098E9E9C}) (Version:  - )
Camera RAW Plug-In for EPSON Creativity Suite (HKLM\...\{93EA9C3E-BDFD-4309-A605-9B5BBC0CCEFD}) (Version: 2.2.0.0 - SEIKO EPSON CORPORATION)
Citavi (HKLM\...\{E12C6653-1FF0-4686-ADB8-589C13AE761F}) (Version: 3.3.0.0 - Swiss Academic Software)
Citavi 2.5 (HKLM\...\Citavi) (Version: 2.5.2.0 - Academic Software Zurich)
Click to DVD 2.0.05 Menu Data (HKLM\...\{9E407618-D9CD-4F39-9490-9ED45294073D}) (Version: 2.0.05 - Sony Corporation)
Click to DVD 2.6.00 (HKLM\...\{E809063C-51A3-4269-8984-D1EB742F2151}) (Version: 2.6.00 - Sony Corporation)
ConvertHelper 2.2 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version:  - DownloadHelper)
Denken und Rechnen 2 (HKLM\...\Denken und Rechnen 2) (Version:  - )
DHTML Editing Component (HKLM\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation)
DisplayLink Core Software (HKLM\...\{156E1F8D-3555-42F5-8DEC-5E830AF46847}) (Version: 4.5.13507.0 - DisplayLink Corp.)
DivX Codec (HKLM\...\{7B63B2922B174135AFC0E1377DD81EC2}) (Version: 6.6.1 - DivX, Inc.)
DivX Converter (HKLM\...\{B13A7C41581B411290FBC0395694E2A9}) (Version: 6.5 - DivX, Inc.)
DivX Player (HKLM\...\{8ADFC4160D694100B5B8A22DE9DCABD9}) (Version: 6.4.3 - DivXNetworks, Inc.)
DivxToDVD 0.5.2b (HKLM\...\VSO DivxToDVD_is1) (Version: 0.5.2b - VSO-Software SARL)
DSD Direct (HKLM\...\{82D5BACA-3619-4D34-99DB-3A65CFB4DA33}) (Version: 2.0.01 - Sony Corporation)
DSD Direct Player (HKLM\...\{533D0A8A-D7E7-4F15-BC9E-FF2916A6BAA7}) (Version: 1.0 - Sony Corporation)
DSD Playback Plug-in (HKLM\...\{009E7FB7-1775-4D89-8956-F5C9A1C019FC}) (Version: 1.1 - Sony Corporation)
EPSON Attach To Email (HKLM\...\InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}) (Version: 1.01.0000 - SEIKO EPSON)
EPSON Attach To Email (Version: 1.01.0000 - SEIKO EPSON) Hidden
EPSON Copy Utility 3 (HKLM\...\{67EDD823-135A-4D59-87BD-950616D6E857}) (Version: 3.3.0.0 - )
EPSON Easy Photo Print (HKLM\...\{3D78F2A2-C893-4ABD-B5FE-AD7011837755}) (Version: 1.5.0.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print 2 (HKLM\...\{A02D7029-C4EF-44C1-9FD4-C0D3CA518113}) (Version: 2.2.4.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM\...\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}) (Version: 2.50.0000 - SEIKO EPSON CORPORATION)
EPSON File Manager (HKLM\...\{2EB81825-E9EE-44F4-8F51-1240C3898DC6}) (Version: 1.3.0.0 - )
EPSON Scan (HKLM\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON Scan Assistant (HKLM\...\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}) (Version: 1.10.00 - )
EPSON Stylus CX7300_CX8300_DX7400_DX8400 Handbuch (HKLM\...\EPSON Stylus CX7300_CX8300_DX7400_DX8400 Benutzerhandbuch) (Version:  - )
EPSON SX430 Series Printer Uninstall (HKLM\...\EPSON SX430 Series) (Version:  - SEIKO EPSON Corporation)
EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.4j - SEIKO EPSON CORPORATION)
ffdshow [rev 2844] [2009-03-30] (HKLM\...\ffdshow_is1) (Version: 1.0 - )
Firebird SQL Server - MAGIX Edition (HKLM\...\Firebird SQL Server D) (Version: 2.0.1.13 - MAGIX AG)
flatster (HKLM\...\{0ADF1B89-17EA-489C-86DF-6E33DA8520A6}_is1) (Version: 1.5 - flatster GmbH)
Free FLV Converter V 6.4.1 (HKLM\...\Free FLV Converter_is1) (Version:  - Koyote Soft)
Free Mp3 Wma Converter V 1.9 (HKLM\...\Free Mp3 Wma Converter_is1) (Version: 1.9.0.0 - Koyote Soft)
Free PDF to Word Doc Converter v1.1 (HKLM\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - www.hellopdf.com)
Free YouTube Download version 3.0.20.1228 (HKLM\...\Free YouTube Download_is1) (Version:  - DVDVideoSoft Ltd.)
Freemake Video Converter Version 3.0.1 (HKLM\...\Freemake Video Converter_is1) (Version: 3.0.1 - Ellora Assets Corporation)
Furnish Pro (HKLM\...\Furnish Pro) (Version:  - )
GearDrvs (Version: 1 - Symantec Corporation) Hidden
Google Desktop (HKLM\...\Google Desktop) (Version: 5.9.1005.12335 - Google)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Talk (remove only) (HKLM\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Talk (remove only) (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
Google Updater (HKLM\...\Google Updater) (Version: 2.4.2432.1652 - Google Inc.)
HDAUDIO SoftV92 Data Fax Modem with SmartCP (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_104D0200) (Version:  - )
honestech VHS to DVD 2.0 SE (HKLM\...\{2856F5EA-E98A-40E4-BAD6-8C644A4A3F3C}) (Version: 2.0 - honestech)
IBM SPSS Statistics 22 (HKLM\...\{104875A1-D083-4A34-BC4F-3F635B7F8EF7}) (Version: 22.0.0.0 - IBM Corp)
ICQ7.2 (HKLM\...\{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}) (Version: 7.2 - ICQ)
Iminent (Version: 5.26.21.0 - Iminent) Hidden <==== ATTENTION
InterVideo Register Manager (Version: 1.0.4.0 - InterVideo Inc.) Hidden
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 40 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
jv16 PowerTools 2012 (HKLM\...\jv16 PowerTools 2011) (Version:  - Macecraft Software)
Lexmark S300-S400 Series (HKLM\...\Lexmark S300-S400 Series) (Version:  - Lexmark International, Inc.)
Lexmark Tools for Office (HKLM\...\{10812DE7-2E57-4740-B226-6B3BE34AF9D7}) (Version: 1.29.0.0 - )
Logitech Vid HD (HKLM\...\Logitech Vid) (Version: 7.2 (7259) - Logitech Inc..)
Logitech Webcam Software (HKLM\...\{AC96671C-2001-432C-9826-5266D84EF1DC}) (Version: 12.00.1280 - Logitech Inc.)
Logitech Webcam Software-Treiberpaket (HKLM\...\lvdrivers_12.0) (Version: 12.0.1278 - Logitech Inc.)
Löwenzahn und Pusteblume (HKLM\...\{C538AA5E-2F9C-48DC-AD5C-B21CE34EA10B}) (Version: 1.0.0 - *)
MAGIX Online Druck Service 2.3.2.0 (D) (HKLM\...\MAGIX Online Druck Service D) (Version: 2.3.2.0 - MAGIX AG)
MAGIX PC Visit (HKLM\...\MAGIX PC Visit D) (Version: 4.3.6.1987 - MAGIX AG)
MAGIX Video deluxe 2008 Trial 7.5.1.6 (D) (HKLM\...\MAGIX Video deluxe 2008 Trial D) (Version: 7.5.1.6 - MAGIX AG)
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
MAXQDA 10 (R250412) (HKLM\...\MAXQDA10) (Version: (R250412) - VERBI Software.Consult.Sozialforschung GmbH)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Medion GoPal Assistant 4.01.012 (HKLM\...\Medion GoPal Assistant) (Version: 4.1.12.0 - Medion)
Meine ersten Wörter (HKLM\...\it.clementoni.SapPrimeParoleDE.290A939A40FB4C06653AD1460C6BEBD4C065087B.1) (Version: 1.0 - Clementoni S.p.A.)
Meine ersten Wörter (Version: 1.0 - Clementoni S.p.A.) Hidden
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2698023) (HKLM\...\M2698023) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version:  - )
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - deu) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual J# .NET Redistributable Package 1.1 (HKLM\...\{1A655D51-1423-48A3-B748-8F5A0BE294C8}) (Version: 1.1.4322 - Microsoft)
Microsoft Works (HKLM\...\{4EA2F95F-A537-4d17-9E7F-6B3FF8D9BBE3}) (Version: 08.05.0822 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Moonlight MPEG-2 Decoder Pack (HKLM\...\Moonlight MPEG-2 Decoder Pack 2.1.4316) (Version: 2.1.4316 - Moonlight Cordless)
Mozilla Firefox 37.0.1 (x86 de) (HKLM\...\Mozilla Firefox 37.0.1 (x86 de)) (Version: 37.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 13.0.1 - Mozilla)
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB941833) (HKLM\...\{C523D256-313D-4866-B36A-F3DE528246EF}) (Version: 4.20.9849.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Musik & Audio Restaurator Pro 5.0 (HKLM\...\Musik & Audio Restaurator Pro 5_is1) (Version: 5.0 - Softfeld)
Nero Backup Drivers (HKLM\...\{F8EF9B71-53E7-41F5-8E54-47B4C979CB38}) (Version: 1.0.11100.8.0 - Nero AG)
Netzmanager (HKLM\...\Netzmanager) (Version: 1.081 - Deutsche Telekom AG)
Netzmanager (Version: 1.081 - Deutsche Telekom AG, Marmiko IT-Solutions GmbH) Hidden
Netzwerkhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Netg) (Version:  - )
Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - )
Norton 360 (Version: 1.2.0.10 - Symantec Corporation) Hidden
Notebook BatteryInfo 1.3  (HKLM\...\BatteryInfo_Suite) (Version: 1.3 - Thomas Michel)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version:  - )
OpenMG Limited Patch 4.7-07-15-19-01 (HKLM\...\OpenMG HotFix4.7-07-13-22-01) (Version:  - )
OpenMG Secure Module 4.7.00 (HKLM\...\InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}) (Version: 4.7.00.12140 - Sony Corporation)
OpenMG Secure Module 4.7.00 (Version: 4.7.00.12140 - Sony Corporation) Hidden
OpenOffice.org 3.2 (HKLM\...\{8D1E61D1-1395-4E97-997F-D002DB3A5074}) (Version: 3.2.9502 - OpenOffice.org)
PDF24 Creator 5.7.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
Photo Viewer V2.4 (HKLM\...\Photo Viewer) (Version:  - )
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Pixie 1.4.1 (HKLM\...\Pixie_is1) (Version: 1.4.1 - Pixie Developers)
QuickTime (HKLM\...\{5B09BD67-4C99-46A1-8161-B7208CE18121}) (Version: 7.3.0.70 - Apple Inc.)
Ravensburger tiptoi (HKLM\...\Ravensburger tiptoi) (Version:  - )
Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Rossmann Fotowelt Software 4.12.1 (HKLM\...\Rossmann Fotowelt Software) (Version: 4.12.1 - ORWO Net)
Rossmann Online Print Wizard Installer 1.0 (HKLM\...\Rossmannr Online Print Wizard Installer_is1) (Version:  - )
Roxio Easy Media Creator Home (HKLM\...\{B7FB0C86-41A4-4402-9A33-912C462042A0}) (Version: 9.0.178 - Roxio)
Scan2PDF 1.6 (HKLM\...\Scan2PDF_is1) (Version:  - Koma-Code)
Secunia PSI (2.0.0.4002) (HKLM\...\Secunia PSI) (Version:  - )
Secure Eraser (HKLM\...\Secure Eraser_is1) (Version: 4.2.0.1 - ASCOMP Software GmbH)
Setting Utility Series (HKLM\...\{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}) (Version: 3.0.00.07120 - Sony Corporation)
SigmaTel Audio (HKLM\...\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}) (Version: 5.10.5102.0 - SigmaTel)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SNAPFISH (HKLM\...\SNAPFISH) (Version:  - )
Snoopy 1.0 (HKLM\...\Snoopy_is1) (Version:  - )
SonicStage Mastering Studio (HKLM\...\{6332AFF1-9D9A-429C-AA03-F82749FA4F49}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio (Version: 2.3.01 - Sony Corporation) Hidden
SonicStage Mastering Studio Audio Filter (HKLM\...\{DF7DB916-90E5-40F2-9010-B8125EB5FD6F}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio Plugins (HKLM\...\{9C1C8A04-F8CA-4472-A92D-4288CE32DE86}) (Version: 2.4 - Sony Corporation)
Sony Ericsson Media Manager 1.1 (HKLM\...\{7E910FDA-CBBE-4451-8728-235E6A4DE162}) (Version: 1.1.550 - Sony Ericsson)
Sony Ericsson PC Suite 6.009.00 (HKLM\...\{2FFE93F0-BB72-4E52-8761-354D1AAA9387}) (Version: 6.009.00 - Sony Ericsson)
Sony PC Companion 2.10.251 (HKLM\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.251 - Sony)
Sony Picture Utility (HKLM\...\{D5068583-D569-468B-9755-5FBF5848F46F}) (Version: 2.1.00.04170 - Sony Corporation)
Sony USB Driver (HKLM\...\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}) (Version: 2.00 - Sony Corporation)
SONY VGP-UPR1 (Display Adapter) (HKLM\...\{94FBC09C-6F39-4B36-B9DE-66374A6FAAD2}) (Version: 4.5.13507.0 - Sony Corporation)
Sony Video Shared Library (HKLM\...\{01FDC9FC-4D4F-4DB0-ACD1-D3E8E1D52902}) (Version: 3.2.00 - Sony Corporation)
SpongeBob Schwammkopf - Der Film (HKLM\...\{E81A7285-8CA6-4430-B6C0-5F719E4D40D9}) (Version: 1.0 - )
SPSS 15.0 für Windows [Auswertung Version] (HKLM\...\{6D9B9CF3-1E9C-45B6-B41E-5CF568605556}) (Version: 15.0.1 - SPSS Inc.)
Super Mario PC Fun 2 (HKLM\...\Super Mario PC Fun 2) (Version:  - )
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.0.1148 - SUPERAntiSpyware.com)
Supreme Auction (HKLM\...\Supreme Auction_is1) (Version:  - )
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab (HKLM\...\SystemRequirementsLab) (Version:  - )
TMPGEnc 4.0 XPress Testversion (HKLM\...\{ECEF8EDE-0421-4E67-9264-5E84F26D4F55}) (Version: 4.7.2.285 - Pegasys Inc,)
Ulead VideoStudio SE DVD (HKLM\...\{8F8D9297-FDD2-405A-97E7-E52C7B2F97B3}) (Version: 10.0 - Ulead Systems)
Uninstall 1.0.0.1 (HKLM\...\Uninstall_is1) (Version:  - )
Unity Web Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
USB2.0 ATV (HKLM\...\{3C873221-12B9-475D-8DCB-62D0B2179AF9}) (Version: 6.10.000.001 - Regulus)
USB2.0 Capture Device (HKLM\...\{E337B156-DF81-48D8-8977-B1574EE87BCF}) (Version: 1.0.3.0 - )
VAIO Aqua Breeze Wallpaper (HKLM\...\{97BCD719-6ECB-458F-97D6-F38D2E07375E}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Camera Capture Utility (HKLM\...\{6D2576EC-A0E9-418A-A09A-409933A3B6F4}) (Version: 2.7.01.08030 - Sony Corporation)
VAIO Content Folder Setting (HKLM\...\{23825B69-36DF-4DAD-9CFD-118D11D80F16}) (Version: 1.1.02.11070 - Sony Corporation)
VAIO Content Importer  VAIO Content Exporter (Version: 1.2.00.06270 - Sony Corporation) Hidden
VAIO Content Importer / VAIO Content Exporter (HKLM\...\{68A69CFF-130D-4CDE-AB0E-7374ECB144C8}) (Version: 1.2.00.06270 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (HKLM\...\{FAA6B94E-78A7-489C-B2DB-050D9FEBFADA}) (Version: 2.0.01.07051 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (Version: 2.0.01.07051 - Sony Corporation) Hidden
VAIO Content Metadata Manager Setting (HKLM\...\{69351E9E-23ED-41D5-B146-EDBF83C63B66}) (Version: 2.0.01.07041 - Sony Corporation)
VAIO Content Metadata Manager Setting (Version: 2.0.01.07041 - Sony Corporation) Hidden
VAIO Content Metadata XML Interface Library (HKLM\...\{B5E2DF30-1061-4DB4-AF28-08996C8E5680}) (Version: 2.1.01.10292 - Sony Corporation)
VAIO Content Metadata XML Interface Library (Version: 2.1.01.10292 - Sony Corporation) Hidden
VAIO Control Center (HKLM\...\{72042FA6-5609-489F-A8EA-3C2DD650F667}) (Version: 2.1.00.07110 - Sony Corporation)
VAIO Cozy Orange Wallpaper (HKLM\...\{2A2FF7F5-6F0E-4A5D-A881-39365E718BD6}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Data Restore Tool (HKLM\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.0.02.06190 - Sony Corporation)
VAIO Entertainment Platform (HKLM\...\{6B1F20F2-6321-4669-A58C-33DF8E7517FF}) (Version: 3.0.00.06280 - Sony Corporation)
VAIO Event Service (HKLM\...\{F0D85ADD-DD61-4B43-87A0-6DA52A211A8B}) (Version: 3.2.00.07120 - Sony Corporation)
VAIO Launcher (HKLM\...\{15D5C238-4C2E-4AEA-A66D-D6989A4C586B}) (Version: 1.0.00.07090 - Sony Corporation)
VAIO Media (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media 6.0 (HKLM\...\{560F6B2E-F0DF-44E5-8190-A4A161F0E205}) (Version: 6.0.10 - Sony Corporation)
VAIO Media AC3 Decoder 1.0 (HKLM\...\{2063C2E8-3812-4BBD-9998-6610F80C1DD4}) (Version:  - )
VAIO Media Content Collection 6.0 (HKLM\...\{500162A0-4DD5-460A-BAFD-895AAE48C532}) (Version:  - Sony Corporation)
VAIO Media Integrated Server 6.1 (HKLM\...\{785EB1D4-ECEC-4195-99B4-73C47E187721}) (Version:  - Sony Corporation)
VAIO Media Redistribution 6.0 (HKLM\...\{5855C127-1F20-404D-B7FB-1FD84D7EAB5E}) (Version: 6.0.10 - Sony Corporation)
VAIO Media Registration Tool (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media Registration Tool 6.0 (HKLM\...\{AF9A04EB-7D8E-41DE-9EDE-4AB9BB2B71B6}) (Version: 6.0.10 - Sony Corporation)
VAIO Movie Story (HKLM\...\{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO Movie Story (Version: 1.0.00.18280 - Sony Corporation) Hidden
VAIO Movie Story Template Data (HKLM\...\{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO MusicBox (HKLM\...\{4EA55D20-27FB-45D7-8726-147E8A5F6C62}) (Version: 1.1.02.12100 - Sony Corporation)
VAIO MusicBox Sample Music (HKLM\...\{98FC7A64-774B-49B5-B046-4B4EBC053FA9}) (Version: 1.0.00.07030 - Sony Corporation)
VAIO Original Function Setting (HKLM\...\{A63E7492-A0BC-4BB9-89A7-352965222380}) (Version: 1.4.00.03240 - Sony Corporation)
VAIO Original Screen Saver (HKLM\...\{1BEF9285-5530-426B-A5F1-5836B95C7EB1}) (Version:  - )
VAIO Power Management (HKLM\...\{802889F8-6AF5-45A5-9764-CA5B999E50FC}) (Version: 2.2.00.06130 - Sony Corporation)
VAIO Tender Green Wallpaper (HKLM\...\{934A3213-1CB6-4264-84A2-EE080C017BCA}) (Version: 1.0.11.10180 - Sony Corporation)
VAIO Update 3 (HKLM\...\{48820099-ED7D-424B-890C-9A82EF00656D}) (Version: 3.0.02.05280 - Sony Corporation)
VAIO Xblack Contents (HKLM\...\VAIO Xblack Contents) (Version: 1.0.0.0-ENU - )
WDR RadioRecorder (HKLM\...\Tobit Radio.fx Server 1) (Version:  - Tobit.Software)
WIDCOMM Bluetooth Software 6.1.0.1203 (HKLM\...\{03D1988F-469F-4843-8E6E-E5FE9D17889D}) (Version: 6.1.0.1203 - Broadcom Corporation)
Windows Live Anmelde-Assistent (HKLM\...\{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}) (Version: 5.000.818.6 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinDVD BD for VAIO (HKLM\...\InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}) (Version: 8.0-B8.385 - InterVideo Inc.)
WinDVD BD for VAIO (Version: 8.0-B8.385 - InterVideo Inc.) Hidden
Wireless Switch Setting Utility (HKLM\...\{2A0F3EF9-68EE-49E9-A05B-ED5B82DF63E5}) (Version: 3.6.00.18210 - Sony Corporation)
WMA MP3 Converter v4.0 build 1217 (HKLM\...\{314AD191-596F-40C0-ACED-3AD78C9649F1}_is1) (Version:  - Hoo Technologies)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{33b07fd4-5917-43e1-968d-4c79231836bf}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{4052D303-74C5-49EA-BC6B-66099C8D4007}\InprocServer32 -> C:\Program Files\Google\Google Desktop Search\GoogleDesktopAPI2.dll (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{693566bc-21f8-401e-8d42-e2c5ce50dacc}\localserver32 -> C:\Users\*****-~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe  (the data entry has 7 more characters).
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{7F902AD4-FC6A-4B2F-8B8D-B6DD4E329B76}\InprocServer32 -> C:\Users\*****-~1\AppData\Local\ASKTOO~1\DOWNLO~1\AVIRAW~1.DLL No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{9E385F0A-0BA2-430C-96AA-4399C5E40F6C}\localserver32 -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{A8F086C3-2497-4229-82FE-586F2D326F95}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{BB6410D8-F879-4184-9C5C-6A02D16AE0B3}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CA1073A2-5F3F-4445-8E5E-7109BDCEDDBE}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{d33f3ced-d7d5-44f1-a9fe-6927dabb1934}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{D5A55D2D-C59D-42C3-A5BF-4C08EEE74339}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{33b07fd4-5917-43e1-968d-4c79231836bf}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{693566bc-21f8-401e-8d42-e2c5ce50dacc}\localserver32 -> C:\Users\*****-~2\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe  (the data entry has 7 more characters).
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{A8F086C3-2497-4229-82FE-586F2D326F95}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{d33f3ced-d7d5-44f1-a9fe-6927dabb1934}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)

==================== Restore Points  =========================

06-04-2015 12:07:51 Windows Update
10-04-2015 17:00:38 Windows Update
22-04-2015 18:41:17 Windows Update
23-04-2015 07:13:48 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 12:23 - 2015-03-13 23:39 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1      localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {043D68F3-3670-43A0-B6D5-57F13FF9F9A7} - System32\Tasks\3cfc12c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup4282120128.exe <==== ATTENTION
Task: {10D60821-F8E1-475A-83E8-701EA8E4B1F4} - System32\Tasks\ef6fab80 => C:\Users\*****-~1\AppData\Local\Temp\\setup542040320.exe <==== ATTENTION
Task: {12385836-CA2D-47B9-A214-9F8B297A3DBA} - System32\Tasks\{95687664-AA78-4FC4-BAC4-858ABB1C0B69} => pcalua.exe -a C:\Users\*****-*****\Downloads\VirtualDubMod_1_5_10_2_All_inclusive\AuxSetup.exe -d C:\Users\*****-*****\Downloads\VirtualDubMod_1_5_10_2_All_inclusive
Task: {16D7CE70-497A-4FE4-8C4C-244FAA0734CE} - System32\Tasks\49055640 => C:\Users\*****-~1\AppData\Local\Temp\\setup499886528.exe <==== ATTENTION
Task: {1B4E5659-7DEF-46F9-A0BC-0E6629830B41} - System32\Tasks\Microsoft\Windows\MobilePC\DisplayLink TMM Control
Task: {1CE03B89-7F38-4BA1-A41C-4D8B07DAAE41} - System32\Tasks\SONY\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update 3\VAIOUpdt.exe [2007-05-31] (Sony Corporation)
Task: {1E6473EE-BE0D-4AF2-B139-363A948E362C} - System32\Tasks\{C1EA93FA-188F-4DB9-B64E-36A773014422} => pcalua.exe -a "C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma.cpl" -c Adobe Gamma
Task: {28E5CD67-956D-4936-A294-4AD90DDAE715} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {2FEF6F31-1C03-441F-95EE-C0881A257656} - System32\Tasks\7bb0880 => C:\Users\*****-~1\AppData\Local\Temp\\setup3595865216.exe <==== ATTENTION
Task: {38DC70C8-5701-41B4-807F-9D4516FF09E7} - System32\Tasks\46de95c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup3316319744.exe <==== ATTENTION
Task: {50AC27F5-D9EB-4BF2-BE03-FC9AF110F37B} - System32\Tasks\e3c09e00 => C:\Users\*****-~1\AppData\Local\Temp\\setup2577851392.exe <==== ATTENTION
Task: {51B468D0-8CEB-4BAE-AEA3-4EC761479B8B} - System32\Tasks\{9830AF16-9482-400B-9E1B-868E8CD8C205} => pcalua.exe -a "C:\Users\*****-*****\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZU0076JS\SOACCU-01363007-UN[1].exe" -d C:\Users\*****-*****
Task: {598F4D5D-0AAD-4486-9371-BD27A5EA6A80} - System32\Tasks\MCVSurveyReminder4 => reminder.exe
Task: {5DBB8895-2BE0-4495-A797-6009C173A108} - System32\Tasks\{1BF2E65A-1E39-4F45-92FD-E0EF4012BE8A} => pcalua.exe -a C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1050\INTEL3~1\IDriver.exe -c /M{430CADFA-CCEB-456D-9994-D9113F731644}
Task: {601E4951-95BA-4388-8522-79849722B245} - System32\Tasks\221db200 => C:\Users\*****-~1\AppData\Local\Temp\\setup4129418752.exe <==== ATTENTION
Task: {64CED321-9BDA-438C-8EAE-9FA9F12FD1F1} - System32\Tasks\d8662340 => C:\Users\*****-~1\AppData\Local\Temp\\setup2016372352.exe <==== ATTENTION
Task: {68F11EF1-2EA3-462C-A57B-420826834205} - System32\Tasks\{7AC43103-A4AE-481B-B197-07B3C364EB4B} => pcalua.exe -a C:\Users\*****-*****\Downloads\NVDVID-01587600-UN.exe -d "C:\Program Files\Mozilla Firefox"
Task: {7786971E-B57F-40FD-8139-281ABE1BD89E} - System32\Tasks\Google Software Updater => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-09-16] (Google)
Task: {7A796D5F-7CBC-4FAE-9015-B38AA747B38A} - System32\Tasks\8340e7c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup1373268928.exe <==== ATTENTION
Task: {874F7FCC-AF76-442E-A24A-E763321339C5} - System32\Tasks\b4899d80 => C:\Users\*****-~1\AppData\Local\Temp\\setup2355517632.exe <==== ATTENTION
Task: {8CA16ED4-2F50-4900-858E-059AC05BC624} - System32\Tasks\1d5fc740 => C:\Users\*****-~1\AppData\Local\Temp\\setup2435663488.exe <==== ATTENTION
Task: {8D109C3F-BFE7-40B0-B4E9-82D5B9DA3818} - System32\Tasks\{321F8462-3D73-467E-B9DC-B1D0A64C03FE} => Firefox.exe hxxp://ui.skype.com/ui/0/6.21.81.104/de/go/help.faq.installer?LastError=1618
Task: {91EEDBC4-E166-41C0-BD6A-0E0BAB4C9DAF} - System32\Tasks\f9bd8a40 => C:\Users\*****-~1\AppData\Local\Temp\\setup2014348480.exe <==== ATTENTION
Task: {9A0019CE-C77A-41B4-878B-F564DE55AD98} - System32\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0 => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {9EA1BE1B-B9AE-42DD-AFD5-8BAAD7523A32} - \Optimizer Pro Schedule No Task File <==== ATTENTION
Task: {A69B794D-07FE-4088-A6F5-FC92516DE4E7} - System32\Tasks\b7c95780 => C:\Users\*****-~1\AppData\Local\Temp\\setup2099225664.exe <==== ATTENTION
Task: {AE13D5DE-F830-4E3D-B01D-148530479116} - System32\Tasks\265edbc0 => C:\Users\*****-~1\AppData\Local\Temp\\setup4200798144.exe <==== ATTENTION
Task: {AF83CA38-58CE-4610-AFCA-459F88C6E38C} - System32\Tasks\MCVSurveyReminder3 => reminder.exe
Task: {BA9261A1-C464-4A08-B582-499B88C325EA} - System32\Tasks\{ABFA890E-19B0-46D9-A582-058578BB8F65} => pcalua.exe -a "C:\Program Files\Trojancheck 6\unins000.exe" -d "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojancheck 6"
Task: {BB74F04E-0A98-4793-85AC-588F73520826} - System32\Tasks\745cd680 => C:\Users\*****-~1\AppData\Local\Temp\\setup522521280.exe <==== ATTENTION
Task: {C03FCD7A-F17A-4C30-B194-412D951E162D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {CD69A141-90D3-4706-85A9-16E38748FB52} - System32\Tasks\bcd27f40 => C:\Users\*****-~1\AppData\Local\Temp\\setup1510311744.exe <==== ATTENTION
Task: {CFFD25B6-A21F-4F81-BEFF-A2EE387662A1} - System32\Tasks\f85fbf80 => C:\Users\*****-~1\AppData\Local\Temp\\setup2183864512.exe <==== ATTENTION
Task: {D3F07B14-4D25-435A-9FF1-A3665E731F9F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E1DC3877-6725-4C56-9628-258B877C3FDA} - \Microsoft\Windows\WindowsCalendar\Reminders - *****-***** No Task File <==== ATTENTION
Task: {E9A76A05-BDA6-4AB7-BAB0-45196D6AE30D} - System32\Tasks\MCVSurveyReminder1 => reminder.exe
Task: {EE04CFD9-B911-4ABA-B2D4-A1B0E90A25A4} - System32\Tasks\{A1EBE010-6567-4A23-BD72-27B12BE82F06} => Iexplore.exe hxxp://ui.skype.com/ui/0/6.20.0.104/de/abandoninstall?page=tsProgressBar
Task: {F276A72E-9ED4-4158-AFD5-139A0274CBA4} - System32\Tasks\9d1f9880 => C:\Users\*****-~1\AppData\Local\Temp\\setup978493568.exe <==== ATTENTION
Task: {F56357CF-48CE-4AAD-B481-98B03E68F168} - System32\Tasks\d8719480 => C:\Users\*****-~1\AppData\Local\Temp\\setup2386082240.exe <==== ATTENTION
Task: {FB47635A-451D-40A8-B9D8-5AAFECC166EC} - System32\Tasks\SONY\WSSU\WSSU => C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe [2007-06-15] (Sony Corporation)
Task: {FDC62037-CCDD-4758-9FF0-949A973B0161} - System32\Tasks\MCVSurveyReminder2 => reminder.exe
Task: {FEA7AE33-57B1-4E10-8F7C-24F88B867194} - System32\Tasks\3338ae00 => C:\Users\*****-~1\AppData\Local\Temp\\setup1972039872.exe <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2011-01-02 18:36 - 2009-11-04 13:14 - 00157696 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\lxeadrpp.dll
2006-12-22 08:31 - 2006-12-22 08:31 - 00108712 _____ () C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
2010-10-19 09:31 - 2010-10-19 09:31 - 00159744 _____ () C:\Program Files\Netzmanager\NMInfraIS2\driver\SoftplugLib.dll
2014-11-28 18:56 - 2011-11-18 15:51 - 03673944 _____ () C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
2007-07-20 17:37 - 2007-07-12 08:33 - 00010752 _____ () C:\Program Files\Sony\VAIO Event Service\VESBasePS.dll
2007-07-20 17:37 - 2007-07-12 08:33 - 00009728 _____ () C:\Program Files\Sony\VAIO Event Service\VESMgrSubPS.dll
2007-06-22 10:49 - 2007-06-22 10:49 - 00126976 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2015-03-21 21:19 - 2012-09-07 17:57 - 00452592 _____ () C:\Program Files\ASCOMP Software\Secure Eraser\SecEraser32.dll
2002-11-27 18:25 - 2002-11-27 18:25 - 00049152 _____ () C:\Program Files\LitexMedia\All To WMA Converter\WMAShellExt.dll
2011-01-02 18:29 - 2010-01-18 19:27 - 00770728 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
2011-01-02 18:29 - 2009-12-16 19:04 - 00389120 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeascw.dll
2011-01-02 18:31 - 2009-05-27 14:16 - 00192512 _____ () C:\Windows\system32\spool\drivers\w32x86\3\lxeadatr.dll
2011-01-02 18:29 - 2009-12-16 19:07 - 01159168 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeaDRS.dll
2011-01-02 18:29 - 2009-03-10 07:43 - 00155648 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeacaps.dll
2011-01-02 18:27 - 2009-02-20 10:48 - 00299008 _____ () C:\Windows\system32\lxeasm.dll
2011-01-02 18:27 - 2009-04-28 09:56 - 00024064 _____ () C:\Windows\system32\lxeasmr.dll
2011-01-02 18:28 - 2010-01-18 19:27 - 00139944 _____ () C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
2011-01-02 18:28 - 2009-03-30 14:37 - 00708608 _____ () C:\Program Files\Lexmark S300-S400 Series\Epwizard.DLL
2011-01-02 18:28 - 2009-03-30 14:35 - 00159744 _____ () C:\Program Files\Lexmark S300-S400 Series\customui.dll
2011-01-02 18:28 - 2009-03-30 14:35 - 00118784 _____ () C:\Program Files\Lexmark S300-S400 Series\Eputil.DLL
2011-01-02 18:28 - 2009-03-30 14:35 - 00139264 _____ () C:\Program Files\Lexmark S300-S400 Series\Imagutil.DLL
2011-01-02 18:28 - 2009-03-30 14:35 - 00061440 _____ () C:\Program Files\Lexmark S300-S400 Series\Epfunct.DLL
2011-01-02 18:29 - 2009-06-23 13:09 - 02203648 _____ () C:\Program Files\Lexmark S300-S400 Series\EPWizRes.dll
2011-01-02 18:29 - 2009-06-23 13:10 - 00045056 _____ () C:\Program Files\Lexmark S300-S400 Series\epstring.dll
2011-01-02 18:29 - 2009-06-23 13:11 - 00102400 _____ () C:\Program Files\Lexmark S300-S400 Series\EPOEMDll.dll
2011-01-02 18:28 - 2009-04-07 21:25 - 00409600 _____ () C:\Program Files\Lexmark S300-S400 Series\iptk.dll
2011-01-02 18:29 - 2009-03-02 16:25 - 00151552 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeaptp.dll
2015-03-29 13:58 - 2015-01-19 13:06 - 00053496 _____ () C:\Users\*****-*****\AppData\Local\temp\avgnt.exe\Avira.OE.ExtApi.dll
2012-03-20 20:44 - 2012-04-30 11:57 - 00039936 _____ () C:\Program Files\Sony\Sony PC Companion\TMonitorAPI.dll
2012-03-20 20:44 - 2014-12-04 15:18 - 00241152 _____ () C:\Program Files\Sony\Sony PC Companion\MExplorer.dll
2011-07-07 15:54 - 2011-07-07 15:54 - 00233984 _____ () C:\Program Files\Sony\Sony PC Companion\Report.dll
2011-11-01 20:32 - 2013-05-20 12:58 - 00620718 _____ () C:\Program Files\Sony\Sony PC Companion\sqlite3.dll
2012-03-20 20:44 - 2010-01-11 16:44 - 00053248 _____ () C:\Program Files\Sony\Sony PC Companion\VObject.dll
2012-01-27 12:02 - 2012-01-27 12:02 - 00569344 _____ () C:\Program Files\Sony\Sony PC Companion\PhoneUpdate.dll
2012-05-15 20:42 - 2012-05-15 20:42 - 00052224 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2012-05-15 20:42 - 2015-04-23 17:42 - 00065024 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll
2012-05-15 20:42 - 2015-04-23 17:42 - 00052736 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll
2012-05-15 20:42 - 2012-05-15 20:42 - 00117760 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2014-05-16 15:38 - 2014-05-08 19:26 - 03145536 _____ () C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
2007-06-22 10:34 - 2007-06-22 10:34 - 00389120 _____ () C:\Windows\system32\btwhidcs.DLL
2010-05-04 16:36 - 2010-05-04 16:36 - 00970752 _____ () C:\Program Files\OpenOffice.org 3\program\libxml2.dll
2012-03-20 20:44 - 2014-06-23 09:07 - 00113376 _____ () C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
2015-03-28 17:36 - 2015-03-28 17:36 - 16858288 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, the associated entry will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\intervideo.com -> www.intervideo.com


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\img19.jpg
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\Wallpaper -> C:\windows\Web\Wallpaper\img24.jpg
DNS Servers: 192.168.2.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: FirebirdServerMAGIXInstance => 3
MSCONFIG\Services: FLEXnet Licensing Service => 3
MSCONFIG\Services: GoogleDesktopManager-051210-111108 => 3
MSCONFIG\Services: gupdate1ca0ac0f00c0a80 => 2
MSCONFIG\Services: OMSI download service => 2
MSCONFIG\Services: PACSPTISVR => 3
MSCONFIG\Services: SBSDWSCService => 2
MSCONFIG\Services: sdAuxService => 2
MSCONFIG\Services: sdCoreService => 2
MSCONFIG\startupfolder: C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk => C:\Windows\pss\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk.Startup
MSCONFIG\startupfolder: C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Picture Motion Browser Medien-Prüfung.lnk => C:\Windows\pss\Picture Motion Browser Medien-Prüfung.lnk.Startup
MSCONFIG\startupreg: Apoint => C:\Program Files\Apoint\Apoint.exe
MSCONFIG\startupreg: Google Desktop Search => "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
MSCONFIG\startupreg: googletalk => C:\Program Files\Google\Google Talk\googletalk.exe /autostart
MSCONFIG\startupreg: ISBMgr.exe => "C:\Program Files\Sony\ISB Utility\ISBMgr.exe"
MSCONFIG\startupreg: LogitechQuickCamRibbon => "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: TrayServer => C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe

==================== Accounts: =============================

Administrator (S-1-5-21-3850073437-3280287025-709413035-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3850073437-3280287025-709413035-1002 - Limited - Enabled)
Gast (S-1-5-21-3850073437-3280287025-709413035-501 - Limited - Disabled)
*****-***** (S-1-5-21-3850073437-3280287025-709413035-1000 - Limited - Enabled) => C:\Users\*****-*****
*****-***** 2 (S-1-5-21-3850073437-3280287025-709413035-1003 - Administrator - Enabled) => C:\Users\*****-***** 2

==================== Faulty Device Manager Devices =============

Name: NVIDIA GeForce 8400M GT
Description: NVIDIA GeForce 8400M GT
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: nvlddmkm
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Intel(R) 82852/82855 GM/GME-Grafikcontroller (Microsoft Corporation - XDDM)
Description: Intel(R) 82852/82855 GM/GME-Grafikcontroller (Microsoft Corporation - XDDM)
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel Corporation
Service: ialm
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/23/2015 06:15:42 PM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (3236) Windows: Datenbank C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index indexRecovery von Tabelle SystemIndex_Gthr ist beschädigt (0).

Error: (04/23/2015 06:15:41 PM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (3236) Windows: Datenbank C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index indexRecovery von Tabelle SystemIndex_Gthr ist beschädigt (0).

Error: (04/23/2015 06:15:38 PM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (3236) Windows: Datenbank C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index indexRecovery von Tabelle SystemIndex_Gthr ist beschädigt (0).

Error: (04/23/2015 06:15:37 PM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (3236) Windows: Datenbank C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index indexRecovery von Tabelle SystemIndex_Gthr ist beschädigt (0).

Error: (04/23/2015 06:15:36 PM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (3236) Windows: Datenbank C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index indexRecovery von Tabelle SystemIndex_Gthr ist beschädigt (0).

Error: (04/23/2015 06:15:35 PM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (3236) Windows: Datenbank C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index indexRecovery von Tabelle SystemIndex_Gthr ist beschädigt (0).

Error: (04/23/2015 06:15:34 PM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (3236) Windows: Datenbank C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index indexRecovery von Tabelle SystemIndex_Gthr ist beschädigt (0).

Error: (04/23/2015 06:15:33 PM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (3236) Windows: Datenbank C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index indexRecovery von Tabelle SystemIndex_Gthr ist beschädigt (0).

Error: (04/23/2015 06:15:33 PM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (3236) Windows: Datenbank C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index indexRecovery von Tabelle SystemIndex_Gthr ist beschädigt (0).

Error: (04/23/2015 06:15:32 PM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (3236) Windows: Datenbank C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index indexRecovery von Tabelle SystemIndex_Gthr ist beschädigt (0).


System errors:
=============
Error: (04/23/2015 05:00:21 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Avira Service Host3

Error: (04/23/2015 04:59:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Avira Service Host2100001Neustart des Diensts

Error: (04/23/2015 04:58:56 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Avira Service Host1100001Neustart des Diensts

Error: (04/23/2015 04:58:48 PM) (Source: TermService) (EventID: 1057) (User: )
Description: Fehler beim Erstellen eines neuen selbstsignierten Zertifikats für die Terminalserver-Authentifizierung bei SSL-Verbindungen auf dem Terminalserver. Der betreffende Statuscode war Schlüssel ist im angegebenen Status nicht gültig.
.

Error: (04/23/2015 04:58:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: lxeaCATSCustConnectService%%1053

Error: (04/23/2015 04:58:41 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: 30000lxeaCATSCustConnectService

Error: (04/23/2015 04:58:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Parallel port driver%%1058

Error: (04/23/2015 04:57:18 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)

Error: (04/23/2015 08:18:03 AM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Gruppenrichtlinienclient

Error: (04/23/2015 08:13:41 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Avira Service Host3


Microsoft Office Sessions:
=========================
Error: (01/07/2015 11:09:14 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2993 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 11:09:13 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2965 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 11:09:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2951 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (03/26/2014 10:07:27 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 13351 seconds with 360 seconds of active time.  This session ended with a crash.

Error: (02/27/2014 06:29:37 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1742 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (05/02/2013 02:23:23 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 678 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (12/13/2012 11:26:31 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 436 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (07/11/2012 08:17:25 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 44 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (06/14/2012 10:14:17 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 700 seconds with 660 seconds of active time.  This session ended with a crash.

Error: (06/14/2012 10:02:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1237 seconds with 1200 seconds of active time.  This session ended with a crash.


CodeIntegrity Errors:
===================================
  Date: 2015-04-05 19:37:16.208
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-05 19:37:15.732
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-05 19:37:15.279
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-05 19:37:14.787
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-05 19:37:13.141
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-05 19:37:12.484
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-05 19:37:11.829
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-05 19:37:11.315
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-05 15:30:07.696
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-05 15:30:06.959
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz
Percentage of memory in use: 67%
Total physical RAM: 2045.69 MB
Available physical RAM: 668.79 MB
Total Pagefile: 4332.6 MB
Available Pagefile: 2103.04 MB
Total Virtual: 2047.88 MB
Available Virtual: 1914.87 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:176.24 GB) (Free:94.63 GB) NTFS ==>[Drive with boot components (obtained from BCD)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 186.3 GB) (Disk ID: A8CB6A4C)
Partition 1: (Not Active) - (Size=10.1 GB) - (Type=27)
Partition 2: (Active) - (Size=176.2 GB) - (Type=07 NTFS)

==================== End Of Log ============================


schrauber 24.04.2015 08:11

Ah okay, wenn die Platte ausgebaut war kann da nix passieren. 80 Tacken ist schon günstig, aber vielleicht war es auch nur ein Lötpunkt oder so :)


Aber Malware ist auch drauf.



Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.


Jami87 25.04.2015 12:06

Also das war ein Festpreisangebot - also ich habe 80€ zahlen müssen bzw. für 80€ das Angebot gekauft und erst dann wurde repariert... Habe nochmal nachgefragt, was gemacht wurde und es heißt: "GPU neu gelötet". Ob das paar Jahre anhält?!?

Und es ist schon wieder Malware auf dem PC? Wie kann das sein? Ich habe ihn doch kaum benutzt seit letztem Mal?!? Bekomme ich das Zeug überhaupt noch los?

Code:

Combofix Logfile:

       
Code:

       
ComboFix 15-04-19.01 - *****-***** 2 24.04.2015  19:02:41.1.2 - x86
Microsoft® Windows Vista™ Home Premium   6.0.6002.2.1252.49.1031.18.2046.698 [GMT 2:00]
ausgeführt von:: c:\users\*****-*****\Downloads\ComboFix.exe
AV: Avira Antivirus *Disabled/Updated* {4D041356-F94D-285F-8768-AAE50FA36859}
SP: Avira Antivirus *Disabled/Updated* {F665F2B2-DF77-27D1-BDD8-9197742422E4}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((   Dateien erstellt von 2015-03-24 bis 2015-04-24  ))))))))))))))))))))))))))))))
.
.
2015-04-24 17:36 . 2015-04-24 17:36        --------        d-----w-        c:\users\*****-***** 2\AppData\Local\temp
2015-04-24 17:36 . 2015-04-24 17:36        --------        d-----w-        c:\users\Public\AppData\Local\temp
2015-04-24 17:36 . 2015-04-24 17:36        --------        d-----w-        c:\users\Default\AppData\Local\temp
2015-04-24 15:29 . 2015-04-24 15:29        62576        ----a-w-        c:\programdata\Microsoft\Windows Defender\Definition Updates\{8DF970C2-75D8-47DD-A834-347E789B0CD9}\offreg.dll
2015-04-24 15:01 . 2015-04-04 06:39        9201616        ----a-w-        c:\programdata\Microsoft\Windows Defender\Definition Updates\{8DF970C2-75D8-47DD-A834-347E789B0CD9}\mpengine.dll
2015-04-23 16:20 . 2015-04-23 16:20        --------        d-----w-        c:\users\*****-*****\AppData\Local\Mozilla Firefox
2015-04-23 16:07 . 2015-04-23 16:15        --------        d-----w-        C:\FRST
2015-04-23 05:46 . 2015-03-09 01:01        1249280        ----a-w-        c:\windows\system32\msxml3.dll
2015-04-23 05:33 . 2015-03-05 02:24        297984        ----a-w-        c:\windows\system32\gdi32.dll
2015-04-23 05:29 . 2015-03-05 02:23        57344        ----a-w-        c:\windows\system32\clfsw32.dll
2015-04-23 05:29 . 2015-03-05 02:32        244152        ----a-w-        c:\windows\system32\clfs.sys
2015-04-23 05:27 . 2015-03-14 02:21        1205168        ----a-w-        c:\windows\system32\ntdll.dll
2015-04-23 05:27 . 2015-03-13 01:51        3604920        ----a-w-        c:\windows\system32\ntkrnlpa.exe
2015-04-23 05:27 . 2015-03-13 01:51        3552184        ----a-w-        c:\windows\system32\ntoskrnl.exe
2015-03-31 06:57 . 2015-03-31 06:57        --------        d-----w-        c:\windows\ERUNT
2015-03-28 15:36 . 2015-03-28 15:36        778928        ----a-w-        c:\windows\system32\FlashPlayerApp.exe
2015-03-28 15:36 . 2015-03-28 15:36        142512        ----a-w-        c:\windows\system32\FlashPlayerCPLApp.cpl
2015-03-28 14:57 . 2015-03-28 14:57        --------        d-----w-        c:\program files\Nero
2015-03-28 14:43 . 2015-03-28 14:43        --------        d-----w-        c:\program files\Common Files\Java
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-03-28 14:41 . 2015-02-20 19:52        96680        ----a-w-        c:\windows\system32\WindowsAccessBridge.dll
2015-03-14 12:03 . 2015-03-14 12:02        114904        ----a-w-        c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-03-10 19:05 . 2015-02-21 11:36        136216        ----a-w-        c:\windows\system32\drivers\avipbb.sys
2015-03-10 19:05 . 2015-02-21 11:36        105864        ----a-w-        c:\windows\system32\drivers\avgntflt.sys
2015-03-06 04:01 . 2015-03-11 16:05        279040        ----a-w-        c:\windows\system32\schannel.dll
2015-02-26 00:18 . 2015-03-11 18:44        2064384        ----a-w-        c:\windows\system32\win32k.sys
2015-02-24 02:23 . 2009-10-03 00:27        246920        ------w-        c:\windows\system32\MpSigStub.exe
2015-02-20 02:03 . 2015-03-11 16:14        34304        ----a-w-        c:\windows\system32\atmlib.dll
2015-02-20 00:28 . 2015-03-11 16:14        296960        ----a-w-        c:\windows\system32\atmfd.dll
2015-02-17 15:04 . 2015-02-17 15:04        1202848        ----a-w-        c:\windows\system32\FM20.DLL
2015-02-04 10:23 . 2015-02-04 10:23        875688        ----a-w-        c:\windows\system32\msvcr120_clr0400.dll
2015-01-29 01:35 . 2015-03-11 18:55        369664        ----a-w-        c:\windows\system32\WMPhoto.dll
2015-01-29 01:35 . 2015-03-11 18:51        975360        ----a-w-        c:\windows\system32\WindowsCodecs.dll
2010-06-26 06:12 . 2008-09-24 18:12        119808        ----a-w-        c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WindowsWelcomeCenter"="oobefldr.dll" [2009-04-11 2153472]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Mobile-based device management"="c:\windows\WindowsMobile\wmdSync.exe" [2006-11-02 215552]
"lxeamon.exe"="c:\program files\Lexmark S300-S400 Series\lxeamon.exe" [2010-01-18 770728]
"EzPrint"="c:\program files\Lexmark S300-S400 Series\ezprint.exe" [2010-01-18 139944]
"UVS10 Preload"="c:\program files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe" [2006-08-09 36864]
"EEventManager"="c:\program files\Epson Software\Event Manager\EEventManager.exe" [2010-10-12 979328]
"PDFPrint"="c:\program files\PDF24\pdf24.exe" [2013-07-22 162856]
"Avira Systray"="c:\program files\Avira\My Avira\Avira.OE.Systray.exe" [2015-01-19 126712]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2015-04-08 726320]
"NvSvc"="c:\windows\system32\nvsvc.dll" [2009-05-26 92704]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-05-26 8530464]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-05-26 88608]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2015-03-07 335232]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"{D2C5E510-BE6D-42CC-9F61-E4F939078474}"="rmdir" [X]
"*EmptyTemp"="rd" [X]
"*WerKernelReporting"="c:\windows\SYSTEM32\WerFault.exe" [2009-04-11 217088]
.
c:\users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Netzmanager.lnk - c:\program files\Netzmanager\netzmanager.exe /Autostart [2014-1-24 14140416]
OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
BTTray.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2007-6-22 739880]
McAfee Security Scan Plus.lnk - c:\program files\McAfee Security Scan\3.8.150\SSScheduler.exe [2014-4-9 279456]
Secunia PSI Tray.lnk - c:\program files\Secunia\PSI\psi_tray.exe [2011-7-29 291896]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableSecureUIAPath"= 1 (0x1)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2011-05-04 17:54        551296        ----a-w-        c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\VESWinlogon]
2007-07-12 06:33        98304        ----a-w-        c:\windows\System32\VESWinlogon.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux5"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk]
path=c:\users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk
backup=c:\windows\pss\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk.Startup
backupExtension=.Startup
.
[HKLM\~\startupfolder\C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Picture Motion Browser Medien-Prüfung.lnk]
path=c:\users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Picture Motion Browser Medien-Prüfung.lnk
backup=c:\windows\pss\Picture Motion Browser Medien-Prüfung.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Apoint]
2007-06-10 00:12        118784        ----a-w-        c:\program files\Apoint\Apoint.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
2010-06-26 06:12        30192        ----a-w-        c:\program files\Google\Google Desktop Search\GoogleDesktop.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\googletalk]
2007-01-01 21:22        3739648        ----a-w-        c:\program files\Google\Google Talk\googletalk.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISBMgr.exe]
2007-06-11 16:27        317560        ----a-w-        c:\program files\Sony\ISB Utility\ISBMgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechQuickCamRibbon]
2009-05-08 09:35        2780432        ----a-w-        c:\program files\Logitech\Logitech WebCam Software\LWS.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2007-10-19 18:16        286720        ----a-w-        c:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TrayServer]
2007-03-29 09:05        90112        ----a-w-        c:\program files\MAGIX\Video_deluxe_2008_e-version\Trayserver.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE.EXE [2011-08-11 116608]
S2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service;c:\program files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-05-14 759048]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs        REG_MULTI_SZ           BthServ
WindowsMobile        REG_MULTI_SZ           wcescomm rapimgr
LocalServiceRestricted        REG_MULTI_SZ           WcesComm RapiMgr
LocalServiceAndNoImpersonation        REG_MULTI_SZ           FontCache
.
Inhalt des "geplante Tasks" Ordners
.
2015-04-12 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-07-20 16:57]
.
2015-04-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-07-22 19:48]
.
2015-04-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-07-22 19:48]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = about:blank
mStart Page = www.google.com
IE: &Citavi Picker... - file://c:\programdata\Swiss Academic Software\Citavi Picker\Internet Explorer\ShowContextMenu.html
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Bild an &Bluetooth-Gerät senden... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Seite an &Bluetooth-Gerät senden... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
LSP: c:\program files\Avira\AntiVir Desktop\avsda.dll
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\*****-***** 2\AppData\Roaming\Mozilla\Firefox\Profiles\4qlxy2p6.default\
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
SafeBoot-WudfPf
SafeBoot-WudfRd
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net
Rootkit scan 2015-04-24 19:36
Windows 6.0.6002 Service Pack 2 NTFS
.
Scanne versteckte Prozesse...
.
Scanne versteckte Autostarteinträge...
.
Scanne versteckte Dateien...
.
.
c:\users\*****-~2\AppData\Local\Temp\catchme.dll 53248 bytes executable
.
Scan erfolgreich abgeschlossen
versteckte Dateien: 1
.
**************************************************************************
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- Durch laufende Prozesse gestartete DLLs ---------------------
.
- - - - - - - > 'Explorer.exe'(5884)
c:\windows\system32\btmmhook.dll
.
Zeit der Fertigstellung: 2015-04-24  19:42:31
ComboFix-quarantined-files.txt  2015-04-24 17:42
.
Vor Suchlauf: 28 Verzeichnis(se), 101.198.856.192 Bytes frei
Nach Suchlauf: 30 Verzeichnis(se), 101.200.691.200 Bytes frei
.
- - End Of File - - 8871CB96B444EAFB708C7292D65AB623


--- --- ---
5C616939100B85E558DA92B899A0FC36

P.S.: Aktuell fallen folgende Dinge auf: Wenn ich den PC gestartet habe, kommt "Avira funktioniert nicht mehr" - ist aber dann dennoch an, wenn ich es öffne... Zudem kommt wieder: "Hostprozess rundll.exe funktioniert nicht mehr". Und: Wenn ich den Laptopdeckel schließe, geht er nicht mehr in den Ruhezustand (war schonmal so, bis du sagtest, der PC sei nun "sauber" - dann war es weg bist jetzt).

schrauber 25.04.2015 19:32

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.

Jami87 26.04.2015 18:24

Oje - das klingt aber schon wieder nach viel Arbeit... Müssen wir jetzt nochmal alles wiederholen?!?

Und hast du eine Idee, wie das so schnell wieder passieren kann, dass da wieder Viren sind?!?

schrauber 27.04.2015 14:44

Nur noch die Scans und ein manueller Fix (evtl). Keine Ahnung wie das kam, ist leider nicht wirklich nachvollziehbar.

Jami87 27.04.2015 19:01

Code:

Malwarebytes Anti-Malware
www.malwarebytes.org


Update, 27.04.2015 18:41:47, SYSTEM, *****, Scheduler, Malware Database, 2015.4.26.4, 2015.4.27.3,
Scan, 27.04.2015 19:10:47, SYSTEM, *****, Manual, Start: % 1 "% 2", Dauer: % 1 min 23 Sekunden, Bedrohungs-Suchlauf, Abgeschlossen, 0 Malwareerkennung, 0-Malwareerkennung,

(end)

Kann es sein, dass das so kurz ist?!?

AdwCleaner Logfile:
Code:

# AdwCleaner v4.202 - Bericht erstellt 27/04/2015 um 19:26:14
# Aktualisiert 23/04/2015 von Xplode
# Datenbank : 2015-04-23.2 [Server]
# Betriebssystem : Windows Vista (TM) Home Premium Service Pack 2 (x86)
# Benutzername : *****-***** 2 - *****
# Gestarted von : C:\Users\*****-*****\Downloads\AdwCleaner_4.202.exe
# Option : Suchlauf

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Datei Gefunden : C:\Users\*****-***** 2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PC-Mechanic.lnk
Datei Gefunden : C:\Users\Public\Desktop\PC Mechanic.lnk
Ordner Gefunden : C:\Program Files\Uniblue
Ordner Gefunden : C:\ProgramData\{c5d7b5bd-e56a-bd77-c5d7-7b5bde56d6f7}
Ordner Gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue
Ordner Gefunden : C:\Users\*****-***** 2\AppData\Roaming\Uniblue
Ordner Gefunden : C:\Windows\system32\config\systemprofile\AppData\Local\FileTypeAssistant

***** [ Geplante Tasks ] *****

Task Gefunden : Optimizer Pro Schedule
Task Gefunden : PC-Mechanic Maintenance
Task Gefunden : PC-Mechanic Startup
Task Gefunden : PC-Mechanic Subscription

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1F88FC5D-4D46-448A-AF59-7061FFC6ABBF}_is1
Schlüssel Gefunden : HKLM\SOFTWARE\Uniblue
Schlüssel Gefunden : HKU\.DEFAULT\Software\AskPartnerNetwork

***** [ Internetbrowser ] *****

-\\ Internet Explorer v9.0.8112.16636


-\\ Mozilla Firefox v37.0.2 (x86 de)


*************************

AdwCleaner[R0].txt - [1603 Bytes] - [27/04/2015 19:26:14]

########## EOF - \AdwCleaner\AdwCleaner[R0].txt - [1662 Bytes] ##########

--- --- ---

Ich sehe gerade, dass es was bei dem "PC Mechanic" gefunden hat - kann ich mir damit wieder was draufgeladen haben?!?

AdwCleaner Logfile:
Code:

# AdwCleaner v4.202 - Bericht erstellt 27/04/2015 um 19:29:36
# Aktualisiert 23/04/2015 von Xplode
# Datenbank : 2015-04-23.2 [Server]
# Betriebssystem : Windows Vista (TM) Home Premium Service Pack 2 (x86)
# Benutzername : *****-***** 2 - *****
# Gestarted von : C:\Users\*****-*****\Downloads\AdwCleaner_4.202.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\{c5d7b5bd-e56a-bd77-c5d7-7b5bde56d6f7}
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue
Ordner Gelöscht : C:\Program Files\Uniblue
Ordner Gelöscht : C:\Windows\system32\config\systemprofile\AppData\Local\FileTypeAssistant
Ordner Gelöscht : C:\Users\*****-***** 2\AppData\Roaming\Uniblue
Datei Gelöscht : C:\Users\Public\Desktop\PC Mechanic.lnk
Datei Gelöscht : C:\Users\*****-***** 2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PC-Mechanic.lnk

***** [ Geplante Tasks ] *****

Task Gelöscht : PC-Mechanic Maintenance
Task Gelöscht : PC-Mechanic Startup
Task Gelöscht : PC-Mechanic Subscription

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKLM\SOFTWARE\Uniblue
Schlüssel Gelöscht : HKU\.DEFAULT\Software\AskPartnerNetwork
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1F88FC5D-4D46-448A-AF59-7061FFC6ABBF}_is1

***** [ Internetbrowser ] *****

-\\ Internet Explorer v9.0.8112.16636


-\\ Mozilla Firefox v37.0.2 (x86 de)


*************************

AdwCleaner[R0].txt - [1739 Bytes] - [27/04/2015 19:26:14]
AdwCleaner[S0].txt - [1621 Bytes] - [27/04/2015 19:29:36]

########## EOF - \AdwCleaner\AdwCleaner[S0].txt - [1680  Bytes] ##########

--- --- ---

JRT Logfile:
Code:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.6.5 (04.27.2015:1)
OS: Windows Vista (TM) Home Premium x86
Ran by *****-***** 2 on 27.04.2015 at 19:52:29,64
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{CA6319C0-31B7-401E-A518-A07C3DB8F777}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}



~~~ Files



~~~ Folders





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 27.04.2015 at 19:55:07,61
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

--- --- ---





FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-04-2015 01
Ran by *****-***** 2 (administrator) on ***** on 27-04-2015 19:59:11
Running from C:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Platform: Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
() C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
() C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(Mozilla Corporation) C:\Users\*****-*****\AppData\Local\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdSync.exe [215552 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [lxeamon.exe] => C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe [770728 2010-01-18] ()
HKLM\...\Run: [EzPrint] => C:\Program Files\Lexmark S300-S400 Series\ezprint.exe [139944 2010-01-18] ()
HKLM\...\Run: [UVS10 Preload] => C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [36864 2006-08-09] (Ulead Systems, Inc.)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [726320 2015-04-08] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [NvSvc] => RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
HKLM\...\RunOnce: [{D2C5E510-BE6D-42CC-9F61-E4F939078474}] => C:\Windows\system32\cmd.exe /c rmdir /q /s "C:\Program Files\Lexmark Printable Web"
HKLM\...\RunOnce: [*EmptyTemp] => cmd /c rd /q/s C:\FRST\Temp
HKLM\...\RunOnce: [*WerKernelReporting] => C:\Windows\SYSTEM32\WerFault.exe [217088 2009-04-11] (Microsoft Corporation)
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2011-05-04] (SUPERAntiSpyware.com)
Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll [2007-07-12] (Sony Corporation)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [466144 2014-11-27] (Sony)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [3905920 2012-06-05] (SUPERAntiSpyware.com)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Akamai NetSession Interface] => C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Amazon Cloud Player] => C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3145536 2014-05-08] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON SX430 Series (Kopie 1)] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHAE.EXE [212480 2012-05-18] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON Stylus DX8400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE [182272 2007-04-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\...\RunOnce: [Report] => \AdwCleaner\AdwCleaner[S0].txt [1747 2015-04-27] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk [2007-07-20]
ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014-02-17]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2012-05-16]
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk [2008-02-26]
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\DSL-Manager\DslMgr.exe (No File)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk [2014-05-18]
ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2010-12-14]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.club-vaio.com
hxxp://partnerpage.google.com/eu.sony.com/de
hxxp://www.club-vaio.com/vbc
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {399AFF92-3607-4429-B2E3-99BECE8D2374} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=internet-tab&tpc=internet&ptl=std&classification=internet-tab_internet_std&q={searchTerms}&br=ie7-toi
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {53DBFD01-FF03-4A5F-8F4B-7BF8E909A975} URL = hxxp://www.amazon.de/gp/search?ie=UTF8&keywords={searchTerms}&tag=interactivemesuche-21&index=blended&linkCode=ur2&camp=1638&creative=6742
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {C4802B53-BBDC-409E-B3EF-57C0B6708018} URL = hxxp://adfarm.mediaplex.com/ad/ck/707-1403-18840-0?mpro=hxxp://search.ebay.de/search/search.dll?shortcut=4&query={searchTerms}
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {E6BFE530-DE68-4D85-A111-513CA45EFAF0} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=wiki-tab&tpc=internet&ptl=std&classification=wiki-tab_internet_std&q={searchTerms}&br=ie7-toi
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-28] (Oracle Corporation)
BHO: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-28] (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
Toolbar: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> No Name - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} -  No File
DPF: {00000161-9980-0010-8000-00AA00389B71} hxxp://codecs.microsoft.com/codecs/i386/msaud.cab
DPF: {33564D57-9980-0010-8000-00AA00389B71} hxxp://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-01-25] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\*****-***** 2\AppData\Roaming\Mozilla\Firefox\Profiles\4qlxy2p6.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-28] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2007-07-13] (DivX, Inc)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-28] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-28] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-16] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin HKU\S-1-5-21-3850073437-3280287025-709413035-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-03-09] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-06-04] (Apple Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\googledesktop.xml [2010-06-26]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2012-12-12]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{D250ED92-1791-42C4-B441-E90BF89B9BEF}] - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF}
FF Extension: XULRunner - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF} [2011-04-02]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2011-08-12] (SUPERAntiSpyware.com) [File not signed]
S2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AdobeActiveFileMonitor5.0; C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [108712 2006-12-22] ()
S2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [815352 2015-04-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [434424 2015-04-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [434424 2015-04-08] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1004032 2015-04-08] (Avira Operations GmbH & Co. KG)
S2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
S2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe [443752 2008-08-18] (DisplayLink Corp.)
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
S4 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed]
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [74752 2011-12-30] (Freemake) [File not signed]
S4 GoogleDesktopManager-051210-111108; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-06-26] (Google)
S2 gupdate1ca0ac0f00c0a80; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeaserv.exe [193192 2010-04-14] (Lexmark International, Inc.)
S2 lxea_device; C:\Windows\system32\lxeacoms.exe [598696 2010-01-07] ( )
S2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [File not signed]
R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) [File not signed]
S4 OMSI download service; C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112 2009-04-30] () [File not signed]
S4 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [File not signed]
R2 Radio.fx; C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe [3673944 2011-11-18] ()
S2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [994360 2011-07-29] (Secunia)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [File not signed]
S2 STacSV; C:\Windows\system32\stacsv.exe [94208 2007-06-13] (SigmaTel, Inc.)
S2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-09-28] (Ulead Systems, Inc.) [File not signed]
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2007-06-28] (Sony Corporation) [File not signed]
S2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182392 2007-07-12] (Sony Corporation)
S3 VAIOMediaPlatform-IntegratedServer-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2523136 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-Mobile-Gateway; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [499712 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe [745472 2007-01-10] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [292152 2007-07-05] (Sony Corporation)
S3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [274432 2007-06-28] (Sony Corporation) [File not signed]
S2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2007-08-28] (Sony Corporation) [File not signed]
S2 VzFw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe [131072 2007-08-28] (Sony Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 CLTNetCnService; "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-11-24] (Avira Operations GmbH & Co. KG)
R3 dlkmd; C:\Windows\system32\drivers\dlkmd.sys [287856 2008-08-18] (DisplayLink Corp.)
R0 dlkmdldr; C:\Windows\System32\drivers\dlkmdldr.sys [13424 2008-08-18] (DisplayLink Corp.)
R3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25624 2009-04-30] ()
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-03-14] (Malwarebytes Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia)
S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [86824 2008-10-21] (MCCI Corporation)
S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [15016 2008-10-21] (MCCI Corporation)
S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [114600 2008-10-21] (MCCI Corporation)
S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [108328 2008-10-21] (MCCI Corporation)
S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [26024 2008-10-21] (MCCI Corporation)
S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [104616 2008-10-21] (MCCI Corporation)
S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [109736 2008-10-21] (MCCI Corporation)
S3 s116bus; C:\Windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\Windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\Windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\Windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\Windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\Windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\Windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
S3 s3017bus; C:\Windows\System32\DRIVERS\s3017bus.sys [83880 2007-12-10] (MCCI Corporation)
S3 s3017mdfl; C:\Windows\System32\DRIVERS\s3017mdfl.sys [15016 2007-12-10] (MCCI Corporation)
S3 s3017mdm; C:\Windows\System32\DRIVERS\s3017mdm.sys [110632 2007-12-10] (MCCI Corporation)
S3 s3017mgmt; C:\Windows\System32\DRIVERS\s3017mgmt.sys [104616 2007-12-10] (MCCI Corporation)
S3 s3017nd5; C:\Windows\System32\DRIVERS\s3017nd5.sys [25512 2007-12-10] (MCCI Corporation)
S3 s3017obex; C:\Windows\System32\DRIVERS\s3017obex.sys [100648 2007-12-10] (MCCI Corporation)
S3 s3017unic; C:\Windows\System32\DRIVERS\s3017unic.sys [110120 2007-12-10] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-11-24] (Avira GmbH)
R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [326656 2007-06-13] (SigmaTel, Inc.)
S3 StkTMini; C:\Windows\System32\Drivers\StkTMini.sys [468096 2007-11-15] (Syntek)
R3 TelekomNM3; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM3.sys [35040 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
R3 ti21sony; C:\Windows\System32\drivers\ti21sony.sys [812544 2007-06-06] (Texas Instruments)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\Users\*****-~2\AppData\Local\Temp\catchme.sys [X]
S3 dsltestSp5; System32\Drivers\dsltestSp5.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month C
==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-27 19:59 - 2015-04-27 19:59 - 00000000 ____D () C:\Users\*****-*****\Downloads\FRST-OlderVersion
2015-04-27 19:55 - 2015-04-27 19:55 - 00001163 _____ () C:\Users\*****-***** 2\Desktop\JRT.txt
2015-04-27 19:52 - 2015-04-27 19:52 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-*****-Windows-Vista-(TM)-Home-Premium-(32-bit).dat
2015-04-27 19:52 - 2015-04-27 19:52 - 00000000 ____D () C:\RegBackup
2015-04-27 19:47 - 2015-04-27 19:48 - 02715845 _____ (Thisisu) C:\Users\*****-*****\Downloads\JRT(1).exe
2015-04-27 19:27 - 2015-04-27 19:27 - 00000341 _____ () C:\Users\*****-*****\Desktop\*****-***** - Verknüpfung.lnk
2015-04-27 19:26 - 2015-04-27 19:31 - 00000000 ____D () C:\AdwCleaner
2015-04-27 19:25 - 2015-04-27 19:25 - 02224640 _____ () C:\Users\*****-*****\Downloads\AdwCleaner_4.202.exe
2015-04-27 19:17 - 2015-04-27 19:22 - 00000343 _____ () C:\Users\*****-*****\Documents\mbam.txt
2015-04-27 19:16 - 2015-04-27 19:16 - 00000343 _____ () C:\Users\*****-*****\Documents\mbam2.txt
2015-04-25 10:17 - 2015-04-25 10:17 - 01187872 _____ (Uniblue Systems Limited ) C:\Users\*****-*****\Downloads\pcmechanicpm.exe
2015-04-24 19:42 - 2015-04-24 19:42 - 00013954 _____ () C:\ComboFix.txt
2015-04-24 18:58 - 2015-04-24 19:42 - 00000000 ____D () C:\ComboFix
2015-04-24 18:22 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-04-24 18:22 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-04-24 18:22 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2015-04-24 18:19 - 2015-04-24 19:42 - 00000000 ____D () C:\Qoobox
2015-04-24 18:14 - 2015-04-24 18:41 - 05619466 ____R (Swearware) C:\Users\*****-*****\Downloads\ComboFix.exe
2015-04-23 18:20 - 2015-04-23 18:20 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Mozilla Firefox
2015-04-23 18:07 - 2015-04-27 20:05 - 00044875 _____ () C:\Users\*****-*****\Downloads\FRST.txt
2015-04-23 18:07 - 2015-04-27 20:04 - 00000000 ____D () C:\FRST
2015-04-23 07:46 - 2015-03-09 03:01 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-23 07:33 - 2015-03-05 04:24 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-23 07:29 - 2015-03-05 04:32 - 00244152 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-23 07:29 - 2015-03-05 04:23 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-23 07:27 - 2015-03-14 04:21 - 01205168 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-23 07:27 - 2015-03-13 03:51 - 03604920 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-04-23 07:27 - 2015-03-13 03:51 - 03552184 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-22 18:41 - 2015-03-10 01:06 - 12377600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-22 18:41 - 2015-03-10 01:03 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-22 18:41 - 2015-03-10 01:02 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-22 18:41 - 2015-03-10 01:00 - 09747968 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-22 18:41 - 2015-03-10 00:57 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-22 18:41 - 2015-03-10 00:57 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 01803264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-22 18:41 - 2015-03-10 00:56 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-22 18:41 - 2015-03-10 00:55 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-22 18:41 - 2015-03-10 00:55 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-04-22 18:41 - 2015-03-10 00:55 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-04-06 11:55 - 2015-04-06 11:55 - 00139504 _____ () C:\Windows\Minidump\Mini040615-01.dmp
2015-04-05 18:53 - 2015-04-05 18:53 - 00000000 ____D () C:\Users\*****-*****\Documents\Citavi 3
2015-03-31 08:57 - 2015-03-31 09:00 - 00001547 _____ () C:\DelFix.txt
2015-03-31 08:57 - 2015-03-31 08:57 - 00000000 ____D () C:\Windows\ERUNT
2015-03-31 08:24 - 2015-03-31 08:25 - 00000000 ____D () C:\Users\*****-*****\Desktop\Neuer Ordner
2015-03-28 17:36 - 2015-03-28 17:36 - 00778928 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-03-28 17:36 - 2015-03-28 17:36 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-03-28 16:57 - 2015-03-28 16:57 - 00000000 ____D () C:\Program Files\Nero
2015-03-28 16:43 - 2015-03-28 16:43 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-03-28 16:39 - 2015-03-28 16:39 - 00561064 _____ (Oracle Corporation) C:\Users\*****-*****\Downloads\jxpiinstall.exe
2015-03-28 16:06 - 2015-03-28 16:06 - 00007869 _____ () C:\Users\*****-***** 2\Documents\ESET.txt
2015-03-28 12:23 - 2015-03-28 12:23 - 00852604 _____ () C:\Users\*****-*****\Downloads\SecurityCheck.exe
2015-03-28 12:16 - 2015-03-28 12:16 - 02347384 _____ (ESET) C:\Users\*****-*****\Downloads\esetsmartinstaller_deu(1).exe
2015-03-28 12:15 - 2015-03-28 12:15 - 02347384 _____ (ESET) C:\Users\*****-*****\Downloads\esetsmartinstaller_deu.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-27 19:59 - 2015-03-21 21:54 - 01140736 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST.exe
2015-04-27 19:55 - 2006-11-02 14:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-27 19:55 - 2006-11-02 14:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-27 19:50 - 2008-02-06 15:54 - 01593374 _____ () C:\Windows\WindowsUpdate.log
2015-04-27 19:43 - 2006-11-02 12:33 - 01623482 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-27 19:38 - 2011-01-02 18:31 - 00197190 _____ () C:\ProgramData\lxeascan.log
2015-04-27 19:38 - 2008-02-06 17:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.001
2015-04-27 19:36 - 2013-07-13 11:20 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
2015-04-27 19:33 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-27 19:31 - 2007-07-20 15:34 - 00000012 _____ () C:\Windows\bthservsdp.dat
2015-04-27 19:31 - 2006-11-02 15:01 - 00032612 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-04-27 19:28 - 2008-02-06 17:25 - 00000000 ____D () C:\Users\*****-*****
2015-04-27 19:19 - 2009-07-22 13:50 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-27 19:16 - 2015-03-22 20:21 - 00000343 _____ () C:\Users\*****-*****\Desktop\mbam.txt
2015-04-27 17:58 - 2010-01-02 11:33 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2015-04-26 20:22 - 2008-02-10 12:56 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Skype
2015-04-26 18:34 - 2008-02-06 17:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.dat
2015-04-26 17:36 - 2011-08-30 06:40 - 00001052 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-04-25 14:41 - 2011-06-30 12:07 - 00001356 _____ () C:\Users\*****-*****\AppData\Local\d3d9caps.dat
2015-04-25 09:23 - 2007-07-20 16:28 - 01744874 _____ () C:\Windows\PFRO.log
2015-04-24 19:37 - 2006-11-02 12:23 - 00000215 _____ () C:\Windows\system.ini
2015-04-23 18:58 - 2015-03-21 22:03 - 00060356 _____ () C:\Users\*****-*****\Downloads\Addition.txt
2015-04-23 17:03 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-04-23 07:46 - 2013-07-26 09:36 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-23 07:34 - 2006-11-02 12:24 - 125832184 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2015-04-23 07:33 - 2007-07-20 17:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-04-10 19:16 - 2008-02-16 15:49 - 00002673 _____ () C:\Users\*****-*****\Desktop\Microsoft Office PowerPoint 2007.lnk
2015-04-08 10:18 - 2015-02-21 14:06 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Avira
2015-04-08 10:07 - 2015-02-21 13:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-04-08 10:04 - 2012-04-26 06:31 - 00000000 ____D () C:\ProgramData\Avira
2015-04-06 12:54 - 2013-07-25 23:43 - 00000000 ____D () C:\ProgramData\Netzmanager
2015-04-06 12:54 - 2013-06-21 14:43 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-04-06 12:54 - 2012-06-24 11:07 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Akamai
2015-04-06 12:54 - 2012-05-23 07:59 - 00000000 ____D () C:\Users\*****-***** 2
2015-04-06 12:54 - 2011-05-25 13:59 - 00000000 ____D () C:\ProgramData\Ulead Systems
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\spool
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\Msdtc
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\registration
2015-04-06 12:54 - 2006-11-02 12:22 - 66846720 _____ () C:\Windows\system32\config\software_previous
2015-04-06 12:54 - 2006-11-02 12:22 - 52166656 _____ () C:\Windows\system32\config\system_previous
2015-04-06 12:45 - 2006-11-02 12:22 - 49283072 _____ () C:\Windows\system32\config\components_previous
2015-04-06 12:45 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous
2015-04-06 11:55 - 2010-08-25 19:12 - 216125677 _____ () C:\Windows\MEMORY.DMP
2015-04-06 11:55 - 2008-05-16 22:19 - 00000000 ____D () C:\Windows\Minidump
2015-04-05 19:50 - 2006-11-02 12:22 - 00524288 _____ () C:\Windows\system32\config\default_previous
2015-04-05 19:49 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\security_previous
2015-03-29 14:14 - 2008-02-16 15:49 - 00002631 _____ () C:\Users\*****-*****\Desktop\Microsoft Office Word 2007.lnk
2015-03-29 12:55 - 2010-08-25 20:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-28 17:37 - 2012-05-23 07:59 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Local\Adobe
2015-03-28 17:01 - 2015-03-13 22:09 - 00001057 _____ () C:\Users\*****-***** 2\Desktop\Revo Uninstaller.lnk
2015-03-28 17:01 - 2015-03-13 22:09 - 00000000 ____D () C:\Program Files\VS Revo Group
2015-03-28 16:54 - 2007-07-20 17:11 - 00000000 ____D () C:\Program Files\Google
2015-03-28 16:53 - 2012-05-23 07:59 - 00000000 ____D () C:\Users\*****-***** 2\AppData\Local\Google
2015-03-28 16:44 - 2015-02-20 21:42 - 00000000 ____D () C:\ProgramData\Oracle
2015-03-28 16:42 - 2012-05-23 07:59 - 00002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2015-03-28 16:41 - 2015-02-20 21:52 - 00096680 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2015-03-28 16:41 - 2008-08-31 10:27 - 00000000 ____D () C:\Program Files\Java

==================== Files in the root of some directories =======

2012-05-23 07:59 - 2015-03-11 00:53 - 0043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2012-05-23 07:59 - 2007-08-06 15:21 - 0042479 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.dat
2012-06-30 11:35 - 2012-06-30 11:35 - 0000022 ___SH () C:\Users\*****-***** 2\AppData\Roaming\Windows1569_SettingsRepository.bin
2012-05-23 07:59 - 2015-03-28 16:42 - 0002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2012-05-23 07:59 - 2007-08-06 15:06 - 0018944 _____ () C:\Users\*****-***** 2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-30 11:35 - 2012-06-30 11:35 - 0000000 _____ () C:\Users\*****-***** 2\AppData\Local\jv16PT_temp.tmp
2008-02-21 12:45 - 2008-02-21 12:45 - 0000305 _____ () C:\ProgramData\addr_file.html
2009-02-05 22:42 - 2009-02-05 22:42 - 0000056 _____ () C:\ProgramData\ezsidmv.dat
2011-01-02 18:39 - 2011-01-02 18:39 - 0000252 _____ () C:\ProgramData\FastPics.log
2011-03-01 17:18 - 2015-03-07 18:01 - 0045024 _____ () C:\ProgramData\lxea.log
2011-01-02 18:40 - 2011-01-02 18:42 - 0000438 _____ () C:\ProgramData\lxeaDiagnostics.log
2011-01-02 18:44 - 2011-06-02 10:10 - 0004439 _____ () C:\ProgramData\lxeaJSW.log
2011-01-02 18:31 - 2015-04-27 19:38 - 0197190 _____ () C:\ProgramData\lxeascan.log
2011-01-02 18:27 - 2011-01-02 18:27 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

Some content of TEMP:
====================
C:\Users\*****-*****\AppData\Local\temp\avgnt.exe


Some zero byte size files/folders:
==========================
C:\Windows\System32\nsprs.dll
C:\Windows\System32\serauth1.dll
C:\Windows\System32\serauth2.dll
C:\Windows\System32\ssprs.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-04-27 19:53

==================== End Of Log ============================

--- --- ---

Jami87 27.04.2015 19:12

Code:

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 27-04-2015 01
Ran by *****-***** 2 at 2015-04-27 20:05:44
Running from C:\Users\*****-*****\Downloads
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3850073437-3280287025-709413035-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3850073437-3280287025-709413035-1002 - Limited - Enabled)
Gast (S-1-5-21-3850073437-3280287025-709413035-501 - Limited - Disabled)
*****-***** (S-1-5-21-3850073437-3280287025-709413035-1000 - Limited - Enabled) => C:\Users\*****-*****
*****-***** 2 (S-1-5-21-3850073437-3280287025-709413035-1003 - Administrator - Enabled) => C:\Users\*****-***** 2

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"Durchstarten mit Ponky - Deutsch 1+2" (HKLM\...\"Durchstarten mit Ponky - Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Durchstarten mit Ponky - Mathe 1+2" (HKLM\...\"Durchstarten mit Ponky - Mathe 1+2") (Version: 2.00 - Engel Edition)
"Englisch in der Grundschule mit Ponky 1.+2. Kl." (HKLM\...\"Englisch in der Grundschule mit Ponky 1.+2. Kl.") (Version: 2.00 - Engel Edition)
"Ponky gezielt Deutsch 1+2" (HKLM\...\"Ponky gezielt Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Ponky gezielt Mathe 1+2" (HKLM\...\"Ponky gezielt Mathe 1+2") (Version: 2.00 - Engel Edition)
7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
ABBYY FineReader 6.0 Sprint (HKLM\...\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}) (Version: 6.00.1395.4512 - ABBYY Software House)
ABBYY FineReader 9.0 Sprint (HKLM\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212 - ABBYY) Hidden
Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\Activation Assistant for the 2007 Microsoft Office suites) (Version:  - Microsoft Corporation)
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0 - Microsoft Corporation) Hidden
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Media Player (HKLM\...\{95264530-5A22-8E7E-FE9D-D63A927BCAEA}) (Version: 1.7 - Adobe Systems Incorporated)
Adobe Photoshop Elements 5.0 (HKLM\...\Adobe Photoshop Elements 5) (Version: 5.0 - Adobe Systems, Inc.)
Adobe Premiere Elements 3.0.2 (HKLM\...\PremElem30) (Version: 3.0.2 - Ihr Firmenname)
Adobe Premiere Elements 3.0.2 Templates (HKLM\...\{6EACDDF4-4220-49A3-9204-984C86852C3D}) (Version: 1.0.0 - Ihr Firmenname)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.)
Akamai NetSession Interface (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Akamai) (Version:  - Akamai Technologies, Inc)
All To WMA Converter 1.7 (HKLM\...\All To WMA Converter_is1) (Version: 1.7 - All To WMA Converter)
Alps Pointing-device for VAIO (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version:  - )
Amazon Cloud Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Amazon Amazon Cloud Player) (Version: 2.4.0.33 - Amazon Services LLC)
Any Video Converter 3.3.2 (HKLM\...\Any Video Converter_is1) (Version:  - Any-Video-Converter.com)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Aquanuma (HKLM\...\Aquanuma_is1) (Version:  - )
ArcSoft Magic-i Visual Effects Installer (HKLM\...\{9AB83A3C-604D-4B4F-AA25-A23A3FC39844}) (Version:  - ArcSoft)
Audacity 1.2.6 (HKLM\...\Audacity_is1) (Version:  - )
AutoUpdate (HKLM\...\{18D10072035C4515918F7E37EAFAACFC}) (Version: 1.1 - )
Avanquest update (HKLM\...\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}) (Version: 1.20 - Avanquest Software)
Avira (HKLM\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG)
Avira (Version: 1.1.30.21727 - Avira Operations & Co. KG) Hidden
Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.9.504 - Avira Operations GmbH & Co. KG)
AviSynth 2.5 (HKLM\...\AviSynth) (Version:  - )
Benutzerdefinierte Voreinstellungen für SonicStage Mastering Studio Audio Filter (HKLM\...\{EC37A846-53AC-4DA7-98FA-76A4E74AA900}) (Version: 2.3 - Sony Corporation)
Benutzerhandbuch - Grundlagen EPSON SX430 Series (HKLM\...\EPSON SX430 Series Bog) (Version:  - )
Benutzerhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Useg) (Version:  - )
Browser Address Error Redirector (HKLM\...\{3EE33958-7381-4E7B-A4F3-6E43098E9E9C}) (Version:  - )
Camera RAW Plug-In for EPSON Creativity Suite (HKLM\...\{93EA9C3E-BDFD-4309-A605-9B5BBC0CCEFD}) (Version: 2.2.0.0 - SEIKO EPSON CORPORATION)
Citavi (HKLM\...\{E12C6653-1FF0-4686-ADB8-589C13AE761F}) (Version: 3.3.0.0 - Swiss Academic Software)
Citavi 2.5 (HKLM\...\Citavi) (Version: 2.5.2.0 - Academic Software Zurich)
Click to DVD 2.0.05 Menu Data (HKLM\...\{9E407618-D9CD-4F39-9490-9ED45294073D}) (Version: 2.0.05 - Sony Corporation)
Click to DVD 2.6.00 (HKLM\...\{E809063C-51A3-4269-8984-D1EB742F2151}) (Version: 2.6.00 - Sony Corporation)
ConvertHelper 2.2 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version:  - DownloadHelper)
Denken und Rechnen 2 (HKLM\...\Denken und Rechnen 2) (Version:  - )
DHTML Editing Component (HKLM\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation)
DisplayLink Core Software (HKLM\...\{156E1F8D-3555-42F5-8DEC-5E830AF46847}) (Version: 4.5.13507.0 - DisplayLink Corp.)
DivX Codec (HKLM\...\{7B63B2922B174135AFC0E1377DD81EC2}) (Version: 6.6.1 - DivX, Inc.)
DivX Converter (HKLM\...\{B13A7C41581B411290FBC0395694E2A9}) (Version: 6.5 - DivX, Inc.)
DivX Player (HKLM\...\{8ADFC4160D694100B5B8A22DE9DCABD9}) (Version: 6.4.3 - DivXNetworks, Inc.)
DivxToDVD 0.5.2b (HKLM\...\VSO DivxToDVD_is1) (Version: 0.5.2b - VSO-Software SARL)
DSD Direct (HKLM\...\{82D5BACA-3619-4D34-99DB-3A65CFB4DA33}) (Version: 2.0.01 - Sony Corporation)
DSD Direct Player (HKLM\...\{533D0A8A-D7E7-4F15-BC9E-FF2916A6BAA7}) (Version: 1.0 - Sony Corporation)
DSD Playback Plug-in (HKLM\...\{009E7FB7-1775-4D89-8956-F5C9A1C019FC}) (Version: 1.1 - Sony Corporation)
EPSON Attach To Email (HKLM\...\InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}) (Version: 1.01.0000 - SEIKO EPSON)
EPSON Attach To Email (Version: 1.01.0000 - SEIKO EPSON) Hidden
EPSON Copy Utility 3 (HKLM\...\{67EDD823-135A-4D59-87BD-950616D6E857}) (Version: 3.3.0.0 - )
EPSON Easy Photo Print (HKLM\...\{3D78F2A2-C893-4ABD-B5FE-AD7011837755}) (Version: 1.5.0.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print 2 (HKLM\...\{A02D7029-C4EF-44C1-9FD4-C0D3CA518113}) (Version: 2.2.4.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM\...\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}) (Version: 2.50.0000 - SEIKO EPSON CORPORATION)
EPSON File Manager (HKLM\...\{2EB81825-E9EE-44F4-8F51-1240C3898DC6}) (Version: 1.3.0.0 - )
EPSON Scan (HKLM\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON Scan Assistant (HKLM\...\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}) (Version: 1.10.00 - )
EPSON Stylus CX7300_CX8300_DX7400_DX8400 Handbuch (HKLM\...\EPSON Stylus CX7300_CX8300_DX7400_DX8400 Benutzerhandbuch) (Version:  - )
EPSON SX430 Series Printer Uninstall (HKLM\...\EPSON SX430 Series) (Version:  - SEIKO EPSON Corporation)
EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.4j - SEIKO EPSON CORPORATION)
ffdshow [rev 2844] [2009-03-30] (HKLM\...\ffdshow_is1) (Version: 1.0 - )
Firebird SQL Server - MAGIX Edition (HKLM\...\Firebird SQL Server D) (Version: 2.0.1.13 - MAGIX AG)
flatster (HKLM\...\{0ADF1B89-17EA-489C-86DF-6E33DA8520A6}_is1) (Version: 1.5 - flatster GmbH)
Free FLV Converter V 6.4.1 (HKLM\...\Free FLV Converter_is1) (Version:  - Koyote Soft)
Free Mp3 Wma Converter V 1.9 (HKLM\...\Free Mp3 Wma Converter_is1) (Version: 1.9.0.0 - Koyote Soft)
Free PDF to Word Doc Converter v1.1 (HKLM\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - www.hellopdf.com)
Free YouTube Download version 3.0.20.1228 (HKLM\...\Free YouTube Download_is1) (Version:  - DVDVideoSoft Ltd.)
Freemake Video Converter Version 3.0.1 (HKLM\...\Freemake Video Converter_is1) (Version: 3.0.1 - Ellora Assets Corporation)
Furnish Pro (HKLM\...\Furnish Pro) (Version:  - )
GearDrvs (Version: 1 - Symantec Corporation) Hidden
Google Desktop (HKLM\...\Google Desktop) (Version: 5.9.1005.12335 - Google)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Talk (remove only) (HKLM\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Talk (remove only) (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
Google Updater (HKLM\...\Google Updater) (Version: 2.4.2432.1652 - Google Inc.)
HDAUDIO SoftV92 Data Fax Modem with SmartCP (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_104D0200) (Version:  - )
honestech VHS to DVD 2.0 SE (HKLM\...\{2856F5EA-E98A-40E4-BAD6-8C644A4A3F3C}) (Version: 2.0 - honestech)
IBM SPSS Statistics 22 (HKLM\...\{104875A1-D083-4A34-BC4F-3F635B7F8EF7}) (Version: 22.0.0.0 - IBM Corp)
ICQ7.2 (HKLM\...\{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}) (Version: 7.2 - ICQ)
Iminent (Version: 5.26.21.0 - Iminent) Hidden <==== ATTENTION
InterVideo Register Manager (Version: 1.0.4.0 - InterVideo Inc.) Hidden
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 40 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
jv16 PowerTools 2012 (HKLM\...\jv16 PowerTools 2011) (Version:  - Macecraft Software)
Lexmark S300-S400 Series (HKLM\...\Lexmark S300-S400 Series) (Version:  - Lexmark International, Inc.)
Lexmark Tools for Office (HKLM\...\{10812DE7-2E57-4740-B226-6B3BE34AF9D7}) (Version: 1.29.0.0 - )
Logitech Vid HD (HKLM\...\Logitech Vid) (Version: 7.2 (7259) - Logitech Inc..)
Logitech Webcam Software (HKLM\...\{AC96671C-2001-432C-9826-5266D84EF1DC}) (Version: 12.00.1280 - Logitech Inc.)
Logitech Webcam Software-Treiberpaket (HKLM\...\lvdrivers_12.0) (Version: 12.0.1278 - Logitech Inc.)
Löwenzahn und Pusteblume (HKLM\...\{C538AA5E-2F9C-48DC-AD5C-B21CE34EA10B}) (Version: 1.0.0 - *)
MAGIX Online Druck Service 2.3.2.0 (D) (HKLM\...\MAGIX Online Druck Service D) (Version: 2.3.2.0 - MAGIX AG)
MAGIX PC Visit (HKLM\...\MAGIX PC Visit D) (Version: 4.3.6.1987 - MAGIX AG)
MAGIX Video deluxe 2008 Trial 7.5.1.6 (D) (HKLM\...\MAGIX Video deluxe 2008 Trial D) (Version: 7.5.1.6 - MAGIX AG)
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
MAXQDA 10 (R250412) (HKLM\...\MAXQDA10) (Version: (R250412) - VERBI Software.Consult.Sozialforschung GmbH)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Medion GoPal Assistant 4.01.012 (HKLM\...\Medion GoPal Assistant) (Version: 4.1.12.0 - Medion)
Meine ersten Wörter (HKLM\...\it.clementoni.SapPrimeParoleDE.290A939A40FB4C06653AD1460C6BEBD4C065087B.1) (Version: 1.0 - Clementoni S.p.A.)
Meine ersten Wörter (Version: 1.0 - Clementoni S.p.A.) Hidden
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2698023) (HKLM\...\M2698023) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version:  - )
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - deu) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual J# .NET Redistributable Package 1.1 (HKLM\...\{1A655D51-1423-48A3-B748-8F5A0BE294C8}) (Version: 1.1.4322 - Microsoft)
Microsoft Works (HKLM\...\{4EA2F95F-A537-4d17-9E7F-6B3FF8D9BBE3}) (Version: 08.05.0822 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Moonlight MPEG-2 Decoder Pack (HKLM\...\Moonlight MPEG-2 Decoder Pack 2.1.4316) (Version: 2.1.4316 - Moonlight Cordless)
Mozilla Firefox 37.0.2 (x86 de) (HKLM\...\Mozilla Firefox 37.0.2 (x86 de)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 13.0.1 - Mozilla)
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB941833) (HKLM\...\{C523D256-313D-4866-B36A-F3DE528246EF}) (Version: 4.20.9849.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Musik & Audio Restaurator Pro 5.0 (HKLM\...\Musik & Audio Restaurator Pro 5_is1) (Version: 5.0 - Softfeld)
Nero Backup Drivers (HKLM\...\{F8EF9B71-53E7-41F5-8E54-47B4C979CB38}) (Version: 1.0.11100.8.0 - Nero AG)
Netzmanager (HKLM\...\Netzmanager) (Version: 1.081 - Deutsche Telekom AG)
Netzmanager (Version: 1.081 - Deutsche Telekom AG, Marmiko IT-Solutions GmbH) Hidden
Netzwerkhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Netg) (Version:  - )
Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - )
Norton 360 (Version: 1.2.0.10 - Symantec Corporation) Hidden
Notebook BatteryInfo 1.3  (HKLM\...\BatteryInfo_Suite) (Version: 1.3 - Thomas Michel)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version:  - )
OpenMG Limited Patch 4.7-07-15-19-01 (HKLM\...\OpenMG HotFix4.7-07-13-22-01) (Version:  - )
OpenMG Secure Module 4.7.00 (HKLM\...\InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}) (Version: 4.7.00.12140 - Sony Corporation)
OpenMG Secure Module 4.7.00 (Version: 4.7.00.12140 - Sony Corporation) Hidden
OpenOffice.org 3.2 (HKLM\...\{8D1E61D1-1395-4E97-997F-D002DB3A5074}) (Version: 3.2.9502 - OpenOffice.org)
PDF24 Creator 5.7.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
Photo Viewer V2.4 (HKLM\...\Photo Viewer) (Version:  - )
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Pixie 1.4.1 (HKLM\...\Pixie_is1) (Version: 1.4.1 - Pixie Developers)
QuickTime (HKLM\...\{5B09BD67-4C99-46A1-8161-B7208CE18121}) (Version: 7.3.0.70 - Apple Inc.)
Ravensburger tiptoi (HKLM\...\Ravensburger tiptoi) (Version:  - )
Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Rossmann Fotowelt Software 4.12.1 (HKLM\...\Rossmann Fotowelt Software) (Version: 4.12.1 - ORWO Net)
Rossmann Online Print Wizard Installer 1.0 (HKLM\...\Rossmannr Online Print Wizard Installer_is1) (Version:  - )
Roxio Easy Media Creator Home (HKLM\...\{B7FB0C86-41A4-4402-9A33-912C462042A0}) (Version: 9.0.178 - Roxio)
Scan2PDF 1.6 (HKLM\...\Scan2PDF_is1) (Version:  - Koma-Code)
Secunia PSI (2.0.0.4002) (HKLM\...\Secunia PSI) (Version:  - )
Secure Eraser (HKLM\...\Secure Eraser_is1) (Version: 4.2.0.1 - ASCOMP Software GmbH)
Setting Utility Series (HKLM\...\{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}) (Version: 3.0.00.07120 - Sony Corporation)
SigmaTel Audio (HKLM\...\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}) (Version: 5.10.5102.0 - SigmaTel)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SNAPFISH (HKLM\...\SNAPFISH) (Version:  - )
Snoopy 1.0 (HKLM\...\Snoopy_is1) (Version:  - )
SonicStage Mastering Studio (HKLM\...\{6332AFF1-9D9A-429C-AA03-F82749FA4F49}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio (Version: 2.3.01 - Sony Corporation) Hidden
SonicStage Mastering Studio Audio Filter (HKLM\...\{DF7DB916-90E5-40F2-9010-B8125EB5FD6F}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio Plugins (HKLM\...\{9C1C8A04-F8CA-4472-A92D-4288CE32DE86}) (Version: 2.4 - Sony Corporation)
Sony Ericsson Media Manager 1.1 (HKLM\...\{7E910FDA-CBBE-4451-8728-235E6A4DE162}) (Version: 1.1.550 - Sony Ericsson)
Sony Ericsson PC Suite 6.009.00 (HKLM\...\{2FFE93F0-BB72-4E52-8761-354D1AAA9387}) (Version: 6.009.00 - Sony Ericsson)
Sony PC Companion 2.10.251 (HKLM\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.251 - Sony)
Sony Picture Utility (HKLM\...\{D5068583-D569-468B-9755-5FBF5848F46F}) (Version: 2.1.00.04170 - Sony Corporation)
Sony USB Driver (HKLM\...\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}) (Version: 2.00 - Sony Corporation)
SONY VGP-UPR1 (Display Adapter) (HKLM\...\{94FBC09C-6F39-4B36-B9DE-66374A6FAAD2}) (Version: 4.5.13507.0 - Sony Corporation)
Sony Video Shared Library (HKLM\...\{01FDC9FC-4D4F-4DB0-ACD1-D3E8E1D52902}) (Version: 3.2.00 - Sony Corporation)
SpongeBob Schwammkopf - Der Film (HKLM\...\{E81A7285-8CA6-4430-B6C0-5F719E4D40D9}) (Version: 1.0 - )
SPSS 15.0 für Windows [Auswertung Version] (HKLM\...\{6D9B9CF3-1E9C-45B6-B41E-5CF568605556}) (Version: 15.0.1 - SPSS Inc.)
Super Mario PC Fun 2 (HKLM\...\Super Mario PC Fun 2) (Version:  - )
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.0.1148 - SUPERAntiSpyware.com)
Supreme Auction (HKLM\...\Supreme Auction_is1) (Version:  - )
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab (HKLM\...\SystemRequirementsLab) (Version:  - )
TMPGEnc 4.0 XPress Testversion (HKLM\...\{ECEF8EDE-0421-4E67-9264-5E84F26D4F55}) (Version: 4.7.2.285 - Pegasys Inc,)
Ulead VideoStudio SE DVD (HKLM\...\{8F8D9297-FDD2-405A-97E7-E52C7B2F97B3}) (Version: 10.0 - Ulead Systems)
Uninstall 1.0.0.1 (HKLM\...\Uninstall_is1) (Version:  - )
Unity Web Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
USB2.0 ATV (HKLM\...\{3C873221-12B9-475D-8DCB-62D0B2179AF9}) (Version: 6.10.000.001 - Regulus)
USB2.0 Capture Device (HKLM\...\{E337B156-DF81-48D8-8977-B1574EE87BCF}) (Version: 1.0.3.0 - )
VAIO Aqua Breeze Wallpaper (HKLM\...\{97BCD719-6ECB-458F-97D6-F38D2E07375E}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Camera Capture Utility (HKLM\...\{6D2576EC-A0E9-418A-A09A-409933A3B6F4}) (Version: 2.7.01.08030 - Sony Corporation)
VAIO Content Folder Setting (HKLM\...\{23825B69-36DF-4DAD-9CFD-118D11D80F16}) (Version: 1.1.02.11070 - Sony Corporation)
VAIO Content Importer  VAIO Content Exporter (Version: 1.2.00.06270 - Sony Corporation) Hidden
VAIO Content Importer / VAIO Content Exporter (HKLM\...\{68A69CFF-130D-4CDE-AB0E-7374ECB144C8}) (Version: 1.2.00.06270 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (HKLM\...\{FAA6B94E-78A7-489C-B2DB-050D9FEBFADA}) (Version: 2.0.01.07051 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (Version: 2.0.01.07051 - Sony Corporation) Hidden
VAIO Content Metadata Manager Setting (HKLM\...\{69351E9E-23ED-41D5-B146-EDBF83C63B66}) (Version: 2.0.01.07041 - Sony Corporation)
VAIO Content Metadata Manager Setting (Version: 2.0.01.07041 - Sony Corporation) Hidden
VAIO Content Metadata XML Interface Library (HKLM\...\{B5E2DF30-1061-4DB4-AF28-08996C8E5680}) (Version: 2.1.01.10292 - Sony Corporation)
VAIO Content Metadata XML Interface Library (Version: 2.1.01.10292 - Sony Corporation) Hidden
VAIO Control Center (HKLM\...\{72042FA6-5609-489F-A8EA-3C2DD650F667}) (Version: 2.1.00.07110 - Sony Corporation)
VAIO Cozy Orange Wallpaper (HKLM\...\{2A2FF7F5-6F0E-4A5D-A881-39365E718BD6}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Data Restore Tool (HKLM\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.0.02.06190 - Sony Corporation)
VAIO Entertainment Platform (HKLM\...\{6B1F20F2-6321-4669-A58C-33DF8E7517FF}) (Version: 3.0.00.06280 - Sony Corporation)
VAIO Event Service (HKLM\...\{F0D85ADD-DD61-4B43-87A0-6DA52A211A8B}) (Version: 3.2.00.07120 - Sony Corporation)
VAIO Launcher (HKLM\...\{15D5C238-4C2E-4AEA-A66D-D6989A4C586B}) (Version: 1.0.00.07090 - Sony Corporation)
VAIO Media (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media 6.0 (HKLM\...\{560F6B2E-F0DF-44E5-8190-A4A161F0E205}) (Version: 6.0.10 - Sony Corporation)
VAIO Media AC3 Decoder 1.0 (HKLM\...\{2063C2E8-3812-4BBD-9998-6610F80C1DD4}) (Version:  - )
VAIO Media Content Collection 6.0 (HKLM\...\{500162A0-4DD5-460A-BAFD-895AAE48C532}) (Version:  - Sony Corporation)
VAIO Media Integrated Server 6.1 (HKLM\...\{785EB1D4-ECEC-4195-99B4-73C47E187721}) (Version:  - Sony Corporation)
VAIO Media Redistribution 6.0 (HKLM\...\{5855C127-1F20-404D-B7FB-1FD84D7EAB5E}) (Version: 6.0.10 - Sony Corporation)
VAIO Media Registration Tool (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media Registration Tool 6.0 (HKLM\...\{AF9A04EB-7D8E-41DE-9EDE-4AB9BB2B71B6}) (Version: 6.0.10 - Sony Corporation)
VAIO Movie Story (HKLM\...\{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO Movie Story (Version: 1.0.00.18280 - Sony Corporation) Hidden
VAIO Movie Story Template Data (HKLM\...\{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO MusicBox (HKLM\...\{4EA55D20-27FB-45D7-8726-147E8A5F6C62}) (Version: 1.1.02.12100 - Sony Corporation)
VAIO MusicBox Sample Music (HKLM\...\{98FC7A64-774B-49B5-B046-4B4EBC053FA9}) (Version: 1.0.00.07030 - Sony Corporation)
VAIO Original Function Setting (HKLM\...\{A63E7492-A0BC-4BB9-89A7-352965222380}) (Version: 1.4.00.03240 - Sony Corporation)
VAIO Original Screen Saver (HKLM\...\{1BEF9285-5530-426B-A5F1-5836B95C7EB1}) (Version:  - )
VAIO Power Management (HKLM\...\{802889F8-6AF5-45A5-9764-CA5B999E50FC}) (Version: 2.2.00.06130 - Sony Corporation)
VAIO Tender Green Wallpaper (HKLM\...\{934A3213-1CB6-4264-84A2-EE080C017BCA}) (Version: 1.0.11.10180 - Sony Corporation)
VAIO Update 3 (HKLM\...\{48820099-ED7D-424B-890C-9A82EF00656D}) (Version: 3.0.02.05280 - Sony Corporation)
VAIO Xblack Contents (HKLM\...\VAIO Xblack Contents) (Version: 1.0.0.0-ENU - )
WDR RadioRecorder (HKLM\...\Tobit Radio.fx Server 1) (Version:  - Tobit.Software)
WIDCOMM Bluetooth Software 6.1.0.1203 (HKLM\...\{03D1988F-469F-4843-8E6E-E5FE9D17889D}) (Version: 6.1.0.1203 - Broadcom Corporation)
Windows Live Anmelde-Assistent (HKLM\...\{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}) (Version: 5.000.818.6 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinDVD BD for VAIO (HKLM\...\InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}) (Version: 8.0-B8.385 - InterVideo Inc.)
WinDVD BD for VAIO (Version: 8.0-B8.385 - InterVideo Inc.) Hidden
Wireless Switch Setting Utility (HKLM\...\{2A0F3EF9-68EE-49E9-A05B-ED5B82DF63E5}) (Version: 3.6.00.18210 - Sony Corporation)
WMA MP3 Converter v4.0 build 1217 (HKLM\...\{314AD191-596F-40C0-ACED-3AD78C9649F1}_is1) (Version:  - Hoo Technologies)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{33b07fd4-5917-43e1-968d-4c79231836bf}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{4052D303-74C5-49EA-BC6B-66099C8D4007}\InprocServer32 -> C:\Program Files\Google\Google Desktop Search\GoogleDesktopAPI2.dll (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{693566bc-21f8-401e-8d42-e2c5ce50dacc}\localserver32 -> C:\Users\*****-~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe  (the data entry has 7 more characters).
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{7F902AD4-FC6A-4B2F-8B8D-B6DD4E329B76}\InprocServer32 -> C:\Users\*****-~1\AppData\Local\ASKTOO~1\DOWNLO~1\AVIRAW~1.DLL No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{9E385F0A-0BA2-430C-96AA-4399C5E40F6C}\localserver32 -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{A8F086C3-2497-4229-82FE-586F2D326F95}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{BB6410D8-F879-4184-9C5C-6A02D16AE0B3}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CA1073A2-5F3F-4445-8E5E-7109BDCEDDBE}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{d33f3ced-d7d5-44f1-a9fe-6927dabb1934}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{D5A55D2D-C59D-42C3-A5BF-4C08EEE74339}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{33b07fd4-5917-43e1-968d-4c79231836bf}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{693566bc-21f8-401e-8d42-e2c5ce50dacc}\localserver32 -> C:\Users\*****-~2\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe  (the data entry has 7 more characters).
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{A8F086C3-2497-4229-82FE-586F2D326F95}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{d33f3ced-d7d5-44f1-a9fe-6927dabb1934}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)

==================== Restore Points  =========================

22-04-2015 18:41:17 Windows Update
23-04-2015 07:13:48 Windows Update
25-04-2015 10:18:36 Uniblue PC Mechanic installation
26-04-2015 10:38:01 Geplanter Prüfpunkt

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 12:23 - 2015-03-13 23:39 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1      localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {043D68F3-3670-43A0-B6D5-57F13FF9F9A7} - System32\Tasks\3cfc12c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup4282120128.exe <==== ATTENTION
Task: {10D60821-F8E1-475A-83E8-701EA8E4B1F4} - System32\Tasks\ef6fab80 => C:\Users\*****-~1\AppData\Local\Temp\\setup542040320.exe <==== ATTENTION
Task: {12385836-CA2D-47B9-A214-9F8B297A3DBA} - System32\Tasks\{95687664-AA78-4FC4-BAC4-858ABB1C0B69} => pcalua.exe -a C:\Users\*****-*****\Downloads\VirtualDubMod_1_5_10_2_All_inclusive\AuxSetup.exe -d C:\Users\*****-*****\Downloads\VirtualDubMod_1_5_10_2_All_inclusive
Task: {16D7CE70-497A-4FE4-8C4C-244FAA0734CE} - System32\Tasks\49055640 => C:\Users\*****-~1\AppData\Local\Temp\\setup499886528.exe <==== ATTENTION
Task: {1B4E5659-7DEF-46F9-A0BC-0E6629830B41} - System32\Tasks\Microsoft\Windows\MobilePC\DisplayLink TMM Control
Task: {1CE03B89-7F38-4BA1-A41C-4D8B07DAAE41} - System32\Tasks\SONY\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update 3\VAIOUpdt.exe [2007-05-31] (Sony Corporation)
Task: {1E6473EE-BE0D-4AF2-B139-363A948E362C} - System32\Tasks\{C1EA93FA-188F-4DB9-B64E-36A773014422} => pcalua.exe -a "C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma.cpl" -c Adobe Gamma
Task: {28E5CD67-956D-4936-A294-4AD90DDAE715} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {2FEF6F31-1C03-441F-95EE-C0881A257656} - System32\Tasks\7bb0880 => C:\Users\*****-~1\AppData\Local\Temp\\setup3595865216.exe <==== ATTENTION
Task: {38DC70C8-5701-41B4-807F-9D4516FF09E7} - System32\Tasks\46de95c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup3316319744.exe <==== ATTENTION
Task: {50AC27F5-D9EB-4BF2-BE03-FC9AF110F37B} - System32\Tasks\e3c09e00 => C:\Users\*****-~1\AppData\Local\Temp\\setup2577851392.exe <==== ATTENTION
Task: {51B468D0-8CEB-4BAE-AEA3-4EC761479B8B} - System32\Tasks\{9830AF16-9482-400B-9E1B-868E8CD8C205} => pcalua.exe -a "C:\Users\*****-*****\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZU0076JS\SOACCU-01363007-UN[1].exe" -d C:\Users\*****-*****
Task: {598F4D5D-0AAD-4486-9371-BD27A5EA6A80} - System32\Tasks\MCVSurveyReminder4 => reminder.exe
Task: {5DBB8895-2BE0-4495-A797-6009C173A108} - System32\Tasks\{1BF2E65A-1E39-4F45-92FD-E0EF4012BE8A} => pcalua.exe -a C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1050\INTEL3~1\IDriver.exe -c /M{430CADFA-CCEB-456D-9994-D9113F731644}
Task: {601E4951-95BA-4388-8522-79849722B245} - System32\Tasks\221db200 => C:\Users\*****-~1\AppData\Local\Temp\\setup4129418752.exe <==== ATTENTION
Task: {64CED321-9BDA-438C-8EAE-9FA9F12FD1F1} - System32\Tasks\d8662340 => C:\Users\*****-~1\AppData\Local\Temp\\setup2016372352.exe <==== ATTENTION
Task: {68F11EF1-2EA3-462C-A57B-420826834205} - System32\Tasks\{7AC43103-A4AE-481B-B197-07B3C364EB4B} => pcalua.exe -a C:\Users\*****-*****\Downloads\NVDVID-01587600-UN.exe -d "C:\Program Files\Mozilla Firefox"
Task: {7786971E-B57F-40FD-8139-281ABE1BD89E} - System32\Tasks\Google Software Updater => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-09-16] (Google)
Task: {7A796D5F-7CBC-4FAE-9015-B38AA747B38A} - System32\Tasks\8340e7c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup1373268928.exe <==== ATTENTION
Task: {874F7FCC-AF76-442E-A24A-E763321339C5} - System32\Tasks\b4899d80 => C:\Users\*****-~1\AppData\Local\Temp\\setup2355517632.exe <==== ATTENTION
Task: {8CA16ED4-2F50-4900-858E-059AC05BC624} - System32\Tasks\1d5fc740 => C:\Users\*****-~1\AppData\Local\Temp\\setup2435663488.exe <==== ATTENTION
Task: {8D109C3F-BFE7-40B0-B4E9-82D5B9DA3818} - System32\Tasks\{321F8462-3D73-467E-B9DC-B1D0A64C03FE} => Firefox.exe hxxp://ui.skype.com/ui/0/6.21.81.104/de/go/help.faq.installer?LastError=1618
Task: {91EEDBC4-E166-41C0-BD6A-0E0BAB4C9DAF} - System32\Tasks\f9bd8a40 => C:\Users\*****-~1\AppData\Local\Temp\\setup2014348480.exe <==== ATTENTION
Task: {9A0019CE-C77A-41B4-878B-F564DE55AD98} - System32\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0 => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {9EA1BE1B-B9AE-42DD-AFD5-8BAAD7523A32} - \Optimizer Pro Schedule No Task File <==== ATTENTION
Task: {A69B794D-07FE-4088-A6F5-FC92516DE4E7} - System32\Tasks\b7c95780 => C:\Users\*****-~1\AppData\Local\Temp\\setup2099225664.exe <==== ATTENTION
Task: {AE13D5DE-F830-4E3D-B01D-148530479116} - System32\Tasks\265edbc0 => C:\Users\*****-~1\AppData\Local\Temp\\setup4200798144.exe <==== ATTENTION
Task: {AF83CA38-58CE-4610-AFCA-459F88C6E38C} - System32\Tasks\MCVSurveyReminder3 => reminder.exe
Task: {BA9261A1-C464-4A08-B582-499B88C325EA} - System32\Tasks\{ABFA890E-19B0-46D9-A582-058578BB8F65} => pcalua.exe -a "C:\Program Files\Trojancheck 6\unins000.exe" -d "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojancheck 6"
Task: {BB74F04E-0A98-4793-85AC-588F73520826} - System32\Tasks\745cd680 => C:\Users\*****-~1\AppData\Local\Temp\\setup522521280.exe <==== ATTENTION
Task: {C03FCD7A-F17A-4C30-B194-412D951E162D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {CD69A141-90D3-4706-85A9-16E38748FB52} - System32\Tasks\bcd27f40 => C:\Users\*****-~1\AppData\Local\Temp\\setup1510311744.exe <==== ATTENTION
Task: {CFFD25B6-A21F-4F81-BEFF-A2EE387662A1} - System32\Tasks\f85fbf80 => C:\Users\*****-~1\AppData\Local\Temp\\setup2183864512.exe <==== ATTENTION
Task: {D3F07B14-4D25-435A-9FF1-A3665E731F9F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E1DC3877-6725-4C56-9628-258B877C3FDA} - \Microsoft\Windows\WindowsCalendar\Reminders - *****-***** No Task File <==== ATTENTION
Task: {E9A76A05-BDA6-4AB7-BAB0-45196D6AE30D} - System32\Tasks\MCVSurveyReminder1 => reminder.exe
Task: {EE04CFD9-B911-4ABA-B2D4-A1B0E90A25A4} - System32\Tasks\{A1EBE010-6567-4A23-BD72-27B12BE82F06} => Iexplore.exe hxxp://ui.skype.com/ui/0/6.20.0.104/de/abandoninstall?page=tsProgressBar
Task: {F276A72E-9ED4-4158-AFD5-139A0274CBA4} - System32\Tasks\9d1f9880 => C:\Users\*****-~1\AppData\Local\Temp\\setup978493568.exe <==== ATTENTION
Task: {F56357CF-48CE-4AAD-B481-98B03E68F168} - System32\Tasks\d8719480 => C:\Users\*****-~1\AppData\Local\Temp\\setup2386082240.exe <==== ATTENTION
Task: {FB47635A-451D-40A8-B9D8-5AAFECC166EC} - System32\Tasks\SONY\WSSU\WSSU => C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe [2007-06-15] (Sony Corporation)
Task: {FDC62037-CCDD-4758-9FF0-949A973B0161} - System32\Tasks\MCVSurveyReminder2 => reminder.exe
Task: {FEA7AE33-57B1-4E10-8F7C-24F88B867194} - System32\Tasks\3338ae00 => C:\Users\*****-~1\AppData\Local\Temp\\setup1972039872.exe <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2006-12-22 08:31 - 2006-12-22 08:31 - 00108712 _____ () C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
2002-11-27 18:25 - 2002-11-27 18:25 - 00049152 _____ () C:\Program Files\LitexMedia\All To WMA Converter\WMAShellExt.dll
2015-03-21 21:19 - 2012-09-07 17:57 - 00452592 _____ () C:\Program Files\ASCOMP Software\Secure Eraser\SecEraser32.dll
2015-03-29 13:58 - 2015-01-19 13:06 - 00053496 _____ () C:\Users\*****-*****\AppData\Local\temp\avgnt.exe\Avira.OE.ExtApi.dll
2012-05-15 20:42 - 2012-05-15 20:42 - 00052224 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2012-05-15 20:42 - 2015-04-27 19:39 - 00065024 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll
2012-05-15 20:42 - 2015-04-27 19:39 - 00052736 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll
2012-05-15 20:42 - 2012-05-15 20:42 - 00117760 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2010-05-04 16:36 - 2010-05-04 16:36 - 00970752 _____ () C:\Program Files\OpenOffice.org 3\program\libxml2.dll
2014-11-28 18:56 - 2011-11-18 15:51 - 03673944 _____ () C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
2011-01-02 18:36 - 2009-11-04 13:14 - 00157696 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\lxeadrpp.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, the associated entry will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\intervideo.com -> www.intervideo.com


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\img19.jpg
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\Wallpaper -> C:\windows\Web\Wallpaper\img24.jpg
DNS Servers: 192.168.2.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: FirebirdServerMAGIXInstance => 3
MSCONFIG\Services: FLEXnet Licensing Service => 3
MSCONFIG\Services: GoogleDesktopManager-051210-111108 => 3
MSCONFIG\Services: gupdate1ca0ac0f00c0a80 => 2
MSCONFIG\Services: OMSI download service => 2
MSCONFIG\Services: PACSPTISVR => 3
MSCONFIG\Services: SBSDWSCService => 2
MSCONFIG\Services: sdAuxService => 2
MSCONFIG\Services: sdCoreService => 2
MSCONFIG\startupfolder: C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk => C:\Windows\pss\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk.Startup
MSCONFIG\startupfolder: C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Picture Motion Browser Medien-Prüfung.lnk => C:\Windows\pss\Picture Motion Browser Medien-Prüfung.lnk.Startup
MSCONFIG\startupreg: Apoint => C:\Program Files\Apoint\Apoint.exe
MSCONFIG\startupreg: Google Desktop Search => "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
MSCONFIG\startupreg: googletalk => C:\Program Files\Google\Google Talk\googletalk.exe /autostart
MSCONFIG\startupreg: ISBMgr.exe => "C:\Program Files\Sony\ISB Utility\ISBMgr.exe"
MSCONFIG\startupreg: LogitechQuickCamRibbon => "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: TrayServer => C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe

==================== FirewallRules (whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

FirewallRules: [WinCollab-Out-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-Out-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-DFSR-Out-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe
FirewallRules: [WinCollab-DFSR-In-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe
FirewallRules: [TCP Query User{3B5F652A-2913-4AA5-B3B0-E5CC4BBA9F70}C:\program files\internet explorer\iexplore.exe] => (Block) C:\program files\internet explorer\iexplore.exe
FirewallRules: [UDP Query User{A36CB363-2FF8-4903-8A7C-C02CE966C1F1}C:\program files\internet explorer\iexplore.exe] => (Block) C:\program files\internet explorer\iexplore.exe
FirewallRules: [TCP Query User{E80BA0B8-D827-458C-8FD9-2D631C0FFD53}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{23E3452E-7136-4515-9716-FDED0157294D}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [{B1A8B887-4149-4978-8C22-5B4E4EF82C9D}] => (Allow) C:\Program Files\Google\Google Talk\googletalk.exe
FirewallRules: [{CD94BE39-19A6-4FBE-9FB5-AEA69041C4CA}] => (Allow) C:\Program Files\Google\Google Talk\googletalk.exe
FirewallRules: [TCP Query User{5E869D36-5320-423E-9517-9CE576D8EE6E}C:\program files\icq6\icq.exe] => (Allow) C:\program files\icq6\icq.exe
FirewallRules: [UDP Query User{7272C993-B27A-4643-A1FA-239F96ABF88A}C:\program files\icq6\icq.exe] => (Allow) C:\program files\icq6\icq.exe
FirewallRules: [{2F76F63C-3E81-46B8-A40F-C090250E5121}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{7B883190-8DCA-48D9-BF04-B6436BF2D68F}] => (Allow) C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe
FirewallRules: [{582A7AD1-45D1-41F9-BC17-967E429CAD2B}] => (Allow) C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe
FirewallRules: [TCP Query User{979E4801-5A3C-4C83-BEC9-282B531A3BCA}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe
FirewallRules: [UDP Query User{88714FC2-53DC-4290-83FA-FC17966E8607}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe
FirewallRules: [{4C069130-9D72-4690-ABAD-59264BEBDE46}] => (Allow) C:\Program Files\Logitech\Logitech Vid\Vid.exe
FirewallRules: [{55DD818E-E59D-4D8F-A931-8186811C12FA}] => (Allow) C:\Program Files\Logitech\Logitech Vid\Vid.exe
FirewallRules: [{E7F71EDC-C852-482E-A9B3-C7FF11DCA41C}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{976B6ED5-5F4A-49F7-B6EF-EE60BE4C79EC}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{62D57FE4-9C0D-4B5A-AEA3-9DEECCCD2DD5}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{975D58E6-48F6-44F5-88EF-C500CF0B31CB}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{0E545E18-1A24-4409-81B0-C5323F823E18}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [{D6E42861-8F37-4A0E-A7F6-5B974FD73C18}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [{5313CBFB-A857-44D6-9D0A-49542EDBFA07}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [{9C3F0B2E-5001-4202-AF2C-9766A24078B5}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [TCP Query User{51A1958F-15D5-4163-836D-24DD28F87BDA}C:\program files\google\google earth\client\googleearth.exe] => (Allow) C:\program files\google\google earth\client\googleearth.exe
FirewallRules: [UDP Query User{77C0DF32-131E-4C60-A2A9-4407B44931DA}C:\program files\google\google earth\client\googleearth.exe] => (Allow) C:\program files\google\google earth\client\googleearth.exe
FirewallRules: [{54386AB4-35A0-41A9-AC43-3F393890E8C5}] => (Allow) C:\Users\*****-*****\Downloads\SweetImSetup(2).exe
FirewallRules: [{C1AF6C87-ADE7-4F01-B286-182C3B27031C}] => (Allow) C:\Users\*****-*****\Downloads\SweetImSetup(2).exe
FirewallRules: [{19F499D9-E22F-4B7B-A625-2536A4161B5D}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{5E615F98-E78C-4F14-B759-A062E0E5A7E3}] => (Allow) svchost.exe
FirewallRules: [{1A45F8CA-5A2B-45D0-A425-5E56F27CB0C6}] => (Allow) C:\Windows\system32\lxeacoms.exe
FirewallRules: [{F893CABE-D527-44E0-AD3B-4B58AAA1E35F}] => (Allow) C:\Windows\system32\LXEAcoms.exe
FirewallRules: [{2FA57709-F8ED-4E11-9026-1A8D6C5587D2}] => (Allow) C:\Windows\system32\LXEAcoms.exe
FirewallRules: [{86CA48FB-F57A-4219-8856-305C1A74FD07}] => (Allow) C:\Windows\system32\LXEAcoms.exe
FirewallRules: [{923D2D0D-2946-49A1-B658-29E21F747F8E}] => (Allow) LPort=80
FirewallRules: [{165A8488-4303-4BF4-8B78-5F1292778B64}] => (Allow) LPort=80
FirewallRules: [{CE82E6BD-BEE2-4A92-BE44-91249CEE4865}] => (Allow) LPort=80
FirewallRules: [TCP Query User{E1B1D6BA-97D1-428C-8D6F-4BF2877C9B25}C:\program files\mozilla firefox\plugin-container.exe] => (Allow) C:\program files\mozilla firefox\plugin-container.exe
FirewallRules: [UDP Query User{B7526044-05C8-4C49-964A-6EC5237DA87B}C:\program files\mozilla firefox\plugin-container.exe] => (Allow) C:\program files\mozilla firefox\plugin-container.exe
FirewallRules: [TCP Query User{0CA17F66-DBB8-4BB7-AF9C-FA8F4EBC634F}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [UDP Query User{156CD726-4881-4067-B22F-EFA8889397A4}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [{16642D4E-0A46-4768-AB55-F971CE044475}] => (Allow) C:\Users\*****-*****\Downloads\Facemoods.exe
FirewallRules: [{DA4DB6A1-FB7B-40AC-B99A-CA71037185C7}] => (Allow) C:\Users\*****-*****\Downloads\Facemoods.exe
FirewallRules: [{7DFBF625-08A6-482F-BBED-1F7D8A225DCF}] => (Allow) C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
FirewallRules: [{6658554D-038D-45BD-B83D-712744C6681F}] => (Allow) C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
FirewallRules: [{CD4CF5F6-A738-48D1-9197-ACCB676AC8B0}] => (Allow) F:\Network\EpsonNetSetup\ENEasyApp.exe
FirewallRules: [{B6400087-61E2-48E7-A628-2428D77210A7}] => (Allow) F:\Network\EpsonNetSetup\ENEasyApp.exe
FirewallRules: [TCP Query User{3A4DF019-0634-481F-A9A2-10FE650CFC10}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [UDP Query User{6C32446C-F773-4F95-BB11-489C4328A2D6}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [TCP Query User{E8F0CD5E-56CF-412D-ABC6-AB8AE51DDDB2}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [UDP Query User{02802447-B624-4CD1-94AB-56D1F8911D0A}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [{AB520453-681B-4C74-A0D1-C14D9C45364D}] => (Allow) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
FirewallRules: [{F32889DA-746A-4104-9EF4-0B494E4CE06B}] => (Allow) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
FirewallRules: [TCP Query User{5CD138C6-6F08-4D37-8B0E-21BC1778CFA0}C:\users\*****-*****\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\*****-*****\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{583F07B1-2C96-4C1C-991F-A64EDD56D7A8}C:\users\*****-*****\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\*****-*****\appdata\local\akamai\netsession_win.exe
FirewallRules: [{B4196523-6227-4D9D-A336-BEFFFB00C074}] => (Allow) C:\Program Files\Iminent\Iminent.exe
FirewallRules: [{9A384077-6EB8-4A1B-9527-0F82284AED5E}] => (Allow) C:\Program Files\Iminent\Iminent.Messengers.exe
FirewallRules: [{840500EA-1B36-49F8-ADA1-72DF568513BE}] => (Allow) C:\Users\*****-***** 2\AppData\Local\temp\incredibar_installer.exe
FirewallRules: [{8F9428E9-58F9-4111-A8D1-DD743E4D99BE}] => (Allow) C:\Users\*****-***** 2\AppData\Local\temp\incredibar_installer.exe
FirewallRules: [{E31B7123-C67D-4429-8454-8B78998A650D}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com
FirewallRules: [{0C8AC61D-91C4-4850-8976-4F6D6AE16C88}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe
FirewallRules: [{EACCA4A9-8378-42DB-A710-66EF61F99DF4}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe
FirewallRules: [{E5892559-F382-4172-A6E5-5AE724BF8F70}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com
FirewallRules: [{299E924D-BFDE-473E-A87E-ABE967C11DF3}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe
FirewallRules: [{5C89EA99-D2E8-4781-8B6E-25BD47198E52}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe
FirewallRules: [TCP Query User{2F219C78-FFFD-48C4-BD02-3808C8B52B6C}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Block) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe
FirewallRules: [UDP Query User{18F63728-CE3A-4BDA-A23B-CCADE5A22D47}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Block) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe
FirewallRules: [{1FD3EA95-53CB-4DAB-9529-2F6D44F51E50}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [TCP Query User{7B048147-BBF8-477D-BB55-C179514AAE1C}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [UDP Query User{CD09FD84-DFA0-4C0D-B682-28676FC5DD0F}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [{27DF86F7-0EFA-4AC5-80CF-59150145427F}] => (Allow) C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
FirewallRules: [{1CA8A470-28FA-4CBF-8691-14E995457C68}] => (Allow) C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
FirewallRules: [{C2E9A825-94BE-4DFF-8E8D-C3389A3B24BB}] => (Allow) C:\Program Files\Tobit Radio.fx\Client\rfx-client.exe
FirewallRules: [{A9DB86FF-43AF-41D5-BD16-8A25A84AE13D}] => (Allow) C:\Program Files\Tobit Radio.fx\Client\rfx-client.exe
FirewallRules: [TCP Query User{A72AE89A-F6B7-4F79-B2C8-06F12EFFC27D}C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe] => (Block) C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{00871E66-EC05-4BA8-93F3-340056C50437}C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe] => (Block) C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe

==================== Faulty Device Manager Devices =============

Name: Intel(R) 82852/82855 GM/GME-Grafikcontroller (Microsoft Corporation - XDDM)
Description: Intel(R) 82852/82855 GM/GME-Grafikcontroller (Microsoft Corporation - XDDM)
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel Corporation
Service: ialm
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/27/2015 07:38:55 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.ServiceHost.ServiceHost.SetDefaultCulture()
  bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
  bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
  bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
  bei System.Threading.ThreadPoolWorkQueue.Dispatch()
  bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (04/27/2015 07:38:34 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.Systray.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.Systray.Program.Main(System.String[])

Error: (04/27/2015 07:38:13 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.ServiceHost.ServiceHost.SetDefaultCulture()
  bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
  bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
  bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
  bei System.Threading.ThreadPoolWorkQueue.Dispatch()
  bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (04/27/2015 07:38:13 PM) (Source: .NET Runtime) (EventID: 1024) (User: )
Description: .NET Runtime version : 4.0.30319.34209 - ProgrammfehlerDie Anwendung hat einen Ausnahmefehler generiert, der nicht verarbeitet werden konnte.

Prozess-ID=0x168c (5772), Thread-ID=0x16e8 (5864)

Klicken Sie auf "OK", um die Anwendung zu beenden,
oder auf "Abbrechen", um sie zu debuggen.

Error: (04/27/2015 07:37:10 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.ServiceHost.ServiceHost.SetDefaultCulture()
  bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
  bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
  bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
  bei System.Threading.ThreadPoolWorkQueue.Dispatch()
  bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (04/27/2015 07:35:58 PM) (Source: EventSystem) (EventID: 4609) (User: )
Description: d:\longhorn\com\complus\src\events\tier2\eventsystem2.cpp38180070005

Error: (04/27/2015 07:35:58 PM) (Source: Avira Service Host) (EventID: 0) (User: )
Description: Fehler beim Verarbeiten von Sitzungsänderung. System.NullReferenceException: Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt.
  bei Avira.OE.ServiceHost.ServiceHost.OnSessionChange(SessionChangeDescription changeDescription)
  bei System.ServiceProcess.ServiceBase.DeferredSessionChange(Int32 eventType, Int32 sessionId)

Error: (04/27/2015 07:35:25 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Das Plug-In-Modul konnte nicht geladen werden. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5}) (Fehlercode = 0x80042019)

Error: (04/27/2015 06:10:43 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.Systray.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.Systray.Program.Main(System.String[])

Error: (04/27/2015 06:02:16 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.ServiceHost.ServiceHost.SetDefaultCulture()
  bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
  bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
  bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
  bei System.Threading.ThreadPoolWorkQueue.Dispatch()
  bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()


System errors:
=============
Error: (04/27/2015 07:53:26 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Windows Modules Installer11200001Neustart des Diensts

Error: (04/27/2015 07:53:23 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Windows Presentation Foundation-Schriftartcache 3.0.0.0101Neustart des Diensts

Error: (04/27/2015 07:53:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: VAIO Entertainment File Import Service1

Error: (04/27/2015 07:53:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: VAIO Entertainment Database Service1

Error: (04/27/2015 07:53:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Softwarelizenzierung11200001Neustart des Diensts

Error: (04/27/2015 07:53:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: XAudioService1

Error: (04/27/2015 07:53:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: VAIO Content Metadata Intelligent Analyzing Manager1

Error: (04/27/2015 07:53:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: VAIO Entertainment UPnP Client Adapter1

Error: (04/27/2015 07:53:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: VAIO Event Service1

Error: (04/27/2015 07:53:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Ulead Burning Helper1


Microsoft Office Sessions:
=========================
Error: (01/07/2015 11:09:14 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2993 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 11:09:13 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2965 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 11:09:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2951 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (03/26/2014 10:07:27 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 13351 seconds with 360 seconds of active time.  This session ended with a crash.

Error: (02/27/2014 06:29:37 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1742 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (05/02/2013 02:23:23 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 678 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (12/13/2012 11:26:31 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 436 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (07/11/2012 08:17:25 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 44 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (06/14/2012 10:14:17 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 700 seconds with 660 seconds of active time.  This session ended with a crash.

Error: (06/14/2012 10:02:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1237 seconds with 1200 seconds of active time.  This session ended with a crash.


CodeIntegrity Errors:
===================================
  Date: 2015-04-27 19:02:11.918
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:11.212
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:10.589
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:09.988
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:08.591
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:07.927
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:07.287
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:06.589
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-24 19:06:11.038
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-24 19:06:10.195
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz
Percentage of memory in use: 60%
Total physical RAM: 2045.69 MB
Available physical RAM: 809.35 MB
Total Pagefile: 4334.6 MB
Available Pagefile: 2688.18 MB
Total Virtual: 2047.88 MB
Available Virtual: 1911.3 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:176.24 GB) (Free:92.77 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive h: () (Removable) (Total:7.21 GB) (Free:6.94 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 186.3 GB) (Disk ID: A8CB6A4C)
Partition 1: (Not Active) - (Size=10.1 GB) - (Type=27)
Partition 2: (Active) - (Size=176.2 GB) - (Type=07 NTFS)

========================================================
Disk: 3 (Size: 7.2 GB) (Disk ID: 00000000)

Partition: GPT Partition Type.

==================== End Of Log ============================

Was haben denn diese ganzen "Error"s zu bedeuten?

schrauber 28.04.2015 13:57

Ja, genau so einen Download meine ich. PC Mechanic is a) Schrott und b) ne Adware Schleuder.


Die Errors sind aus dem Eventviewer, der ist immer voll mit Errormeldungen :)



ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme? :)

Jami87 29.04.2015 15:45

Code:

ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=3d83703d8e9a2b42adc31e9054d2558f
# engine=23603
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2015-04-28 09:43:15
# local_time=2015-04-28 11:43:15 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1031
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode_1=''
# compatibility_mode=5892 16776573 100 100 18842 267790123 0 0
# scanned=260418
# found=4
# cleaned=4
# scan_time=16980
sh=AB3B3853CD7E8C655F1FA74AD583D08CDB06F114 ft=1 fh=69c9688eb3132994 vn="Win32/UniBlue.E evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Uniblue\PC-Mechanic\pc-mechanic.exe.vir"
sh=3BEE248BC20A32EB4B1BC508FBE84068F21770A6 ft=1 fh=098424b81a118044 vn="Win32/UniBlue.D evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Uniblue\PC-Mechanic\thirdpartyinstaller.exe.vir"
sh=14DA2E4E7F53132896287BB58184CAAEC5D10D25 ft=1 fh=1bec1ab865c11ba7 vn="Win32/UniBlue.E evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\*****-***** 2\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TV91NK4O\pcmechanicpm-standalone-setup[1].exe"
sh=14DA2E4E7F53132896287BB58184CAAEC5D10D25 ft=1 fh=1bec1ab865c11ba7 vn="Win32/UniBlue.E evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\*****-***** 2\AppData\Local\temp\is-KQLRI.tmp\pm-standalone-setup.exe"

Code:

Results of screen317's Security Check version 1.00 
 Windows Vista Service Pack 2 x86 (UAC is enabled) 
 Internet Explorer 9 
 Internet Explorer 8 
``````````````Antivirus/Firewall Check:``````````````
Avira Antivirus 
 Antivirus up to date! 
`````````Anti-malware/Other Utilities Check:`````````
 SUPERAntiSpyware   
 Secunia PSI (2.0.0.4002) 
 Java 8 Update 31 
 Java 8 Update 40 
 Adobe Flash Player        17.0.0.134 
 Mozilla Firefox (37.0.2)
````````Process Check: objlist.exe by Laurent```````` 
 Avira Antivir avgnt.exe
 Avira Antivir avguard.exe
 Malwarebytes Anti-Malware mbamscheduler.exe 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:  %
````````````````````End of Log``````````````````````


FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 29-04-2015
Ran by *****-***** 2 (administrator) on ***** on 29-04-2015 16:36:33
Running from c:\Users\*****-*****\Downloads\FRST-OlderVersion
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Platform: Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
() C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
( ) C:\Windows\System32\lxeacoms.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe
() C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
(Secunia) C:\Program Files\Secunia\PSI\psia.exe
(SigmaTel, Inc.) C:\Windows\System32\stacsv.exe
(Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
(Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdSync.exe
() C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
() C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
() C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Mozilla Corporation) C:\Users\*****-*****\AppData\Local\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Google) C:\Program Files\Google\Google Earth\client\googleearth.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdSync.exe [215552 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [lxeamon.exe] => C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe [770728 2010-01-18] ()
HKLM\...\Run: [EzPrint] => C:\Program Files\Lexmark S300-S400 Series\ezprint.exe [139944 2010-01-18] ()
HKLM\...\Run: [UVS10 Preload] => C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [36864 2006-08-09] (Ulead Systems, Inc.)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [726320 2015-04-08] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [NvSvc] => RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
HKLM\...\RunOnce: [{D2C5E510-BE6D-42CC-9F61-E4F939078474}] => C:\Windows\system32\cmd.exe /c rmdir /q /s "C:\Program Files\Lexmark Printable Web"
HKLM\...\RunOnce: [*EmptyTemp] => cmd /c rd /q/s C:\FRST\Temp
HKLM\...\RunOnce: [*WerKernelReporting] => C:\Windows\SYSTEM32\WerFault.exe [217088 2009-04-11] (Microsoft Corporation)
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2011-05-04] (SUPERAntiSpyware.com)
Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll [2007-07-12] (Sony Corporation)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [466144 2014-11-27] (Sony)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [3905920 2012-06-05] (SUPERAntiSpyware.com)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Akamai NetSession Interface] => C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Amazon Cloud Player] => C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3145536 2014-05-08] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON SX430 Series (Kopie 1)] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHAE.EXE [212480 2012-05-18] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON Stylus DX8400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE [182272 2007-04-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\...\RunOnce: [Report] => \AdwCleaner\AdwCleaner[S0].txt [1747 2015-04-27] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk [2007-07-20]
ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014-02-17]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2012-05-16]
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk [2008-02-26]
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\DSL-Manager\DslMgr.exe (No File)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk [2014-05-18]
ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2010-12-14]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.club-vaio.com
hxxp://partnerpage.google.com/eu.sony.com/de
hxxp://www.club-vaio.com/vbc
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {399AFF92-3607-4429-B2E3-99BECE8D2374} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=internet-tab&tpc=internet&ptl=std&classification=internet-tab_internet_std&q={searchTerms}&br=ie7-toi
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {53DBFD01-FF03-4A5F-8F4B-7BF8E909A975} URL = hxxp://www.amazon.de/gp/search?ie=UTF8&keywords={searchTerms}&tag=interactivemesuche-21&index=blended&linkCode=ur2&camp=1638&creative=6742
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {C4802B53-BBDC-409E-B3EF-57C0B6708018} URL = hxxp://adfarm.mediaplex.com/ad/ck/707-1403-18840-0?mpro=hxxp://search.ebay.de/search/search.dll?shortcut=4&query={searchTerms}
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {E6BFE530-DE68-4D85-A111-513CA45EFAF0} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=wiki-tab&tpc=internet&ptl=std&classification=wiki-tab_internet_std&q={searchTerms}&br=ie7-toi
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-28] (Oracle Corporation)
BHO: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-28] (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
Toolbar: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> No Name - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} -  No File
DPF: {00000161-9980-0010-8000-00AA00389B71} hxxp://codecs.microsoft.com/codecs/i386/msaud.cab
DPF: {33564D57-9980-0010-8000-00AA00389B71} hxxp://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-01-25] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\*****-***** 2\AppData\Roaming\Mozilla\Firefox\Profiles\4qlxy2p6.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-28] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2007-07-13] (DivX, Inc)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-28] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-28] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-16] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin HKU\S-1-5-21-3850073437-3280287025-709413035-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-03-09] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-06-04] (Apple Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\googledesktop.xml [2010-06-26]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2012-12-12]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{D250ED92-1791-42C4-B441-E90BF89B9BEF}] - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF}
FF Extension: XULRunner - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF} [2011-04-02]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2011-08-12] (SUPERAntiSpyware.com) [File not signed]
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AdobeActiveFileMonitor5.0; C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [108712 2006-12-22] ()
S2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [815352 2015-04-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [434424 2015-04-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [434424 2015-04-08] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1004032 2015-04-08] (Avira Operations GmbH & Co. KG)
S2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe [443752 2008-08-18] (DisplayLink Corp.)
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
S4 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed]
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [74752 2011-12-30] (Freemake) [File not signed]
S4 GoogleDesktopManager-051210-111108; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-06-26] (Google)
S2 gupdate1ca0ac0f00c0a80; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeaserv.exe [193192 2010-04-14] (Lexmark International, Inc.)
R2 lxea_device; C:\Windows\system32\lxeacoms.exe [598696 2010-01-07] ( )
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [File not signed]
R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) [File not signed]
S4 OMSI download service; C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112 2009-04-30] () [File not signed]
S4 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [File not signed]
R2 Radio.fx; C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe [3673944 2011-11-18] ()
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [994360 2011-07-29] (Secunia)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [File not signed]
R2 STacSV; C:\Windows\system32\stacsv.exe [94208 2007-06-13] (SigmaTel, Inc.)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-09-28] (Ulead Systems, Inc.) [File not signed]
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2007-06-28] (Sony Corporation) [File not signed]
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182392 2007-07-12] (Sony Corporation)
S3 VAIOMediaPlatform-IntegratedServer-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2523136 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-Mobile-Gateway; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [499712 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe [745472 2007-01-10] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
R2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [292152 2007-07-05] (Sony Corporation)
R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [274432 2007-06-28] (Sony Corporation) [File not signed]
R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2007-08-28] (Sony Corporation) [File not signed]
R2 VzFw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe [131072 2007-08-28] (Sony Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 CLTNetCnService; "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-11-24] (Avira Operations GmbH & Co. KG)
R3 dlkmd; C:\Windows\system32\drivers\dlkmd.sys [287856 2008-08-18] (DisplayLink Corp.)
R0 dlkmdldr; C:\Windows\System32\drivers\dlkmdldr.sys [13424 2008-08-18] (DisplayLink Corp.)
R3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25624 2009-04-30] ()
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-03-14] (Malwarebytes Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia)
S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [86824 2008-10-21] (MCCI Corporation)
S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [15016 2008-10-21] (MCCI Corporation)
S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [114600 2008-10-21] (MCCI Corporation)
S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [108328 2008-10-21] (MCCI Corporation)
S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [26024 2008-10-21] (MCCI Corporation)
S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [104616 2008-10-21] (MCCI Corporation)
S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [109736 2008-10-21] (MCCI Corporation)
S3 s116bus; C:\Windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\Windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\Windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\Windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\Windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\Windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\Windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
S3 s3017bus; C:\Windows\System32\DRIVERS\s3017bus.sys [83880 2007-12-10] (MCCI Corporation)
S3 s3017mdfl; C:\Windows\System32\DRIVERS\s3017mdfl.sys [15016 2007-12-10] (MCCI Corporation)
S3 s3017mdm; C:\Windows\System32\DRIVERS\s3017mdm.sys [110632 2007-12-10] (MCCI Corporation)
S3 s3017mgmt; C:\Windows\System32\DRIVERS\s3017mgmt.sys [104616 2007-12-10] (MCCI Corporation)
S3 s3017nd5; C:\Windows\System32\DRIVERS\s3017nd5.sys [25512 2007-12-10] (MCCI Corporation)
S3 s3017obex; C:\Windows\System32\DRIVERS\s3017obex.sys [100648 2007-12-10] (MCCI Corporation)
S3 s3017unic; C:\Windows\System32\DRIVERS\s3017unic.sys [110120 2007-12-10] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-11-24] (Avira GmbH)
R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [326656 2007-06-13] (SigmaTel, Inc.)
S3 StkTMini; C:\Windows\System32\Drivers\StkTMini.sys [468096 2007-11-15] (Syntek)
R3 TelekomNM3; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM3.sys [35040 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
R3 ti21sony; C:\Windows\System32\drivers\ti21sony.sys [812544 2007-06-06] (Texas Instruments)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\Users\*****-~2\AppData\Local\Temp\catchme.sys [X]
S3 dsltestSp5; System32\Drivers\dsltestSp5.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-29 16:21 - 2015-04-29 16:22 - 00852616 _____ () C:\Users\*****-*****\Desktop\SecurityCheck(3).exe
2015-04-28 23:48 - 2015-04-28 23:48 - 00852616 _____ () C:\Users\*****-*****\Downloads\SecurityCheck(2).exe
2015-04-28 23:46 - 2015-04-28 23:47 - 00852616 _____ () C:\Users\*****-*****\Downloads\SecurityCheck(1).exe
2015-04-28 18:52 - 2015-04-28 18:53 - 02347384 _____ (ESET) C:\Users\*****-*****\Downloads\esetsmartinstaller_deu(2).exe
2015-04-27 19:59 - 2015-04-29 16:36 - 00000000 ____D () C:\Users\*****-*****\Downloads\FRST-OlderVersion
2015-04-27 19:55 - 2015-04-27 19:55 - 00001163 _____ () C:\Users\*****-***** 2\Desktop\JRT.txt
2015-04-27 19:52 - 2015-04-27 19:52 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-*****-Windows-Vista-(TM)-Home-Premium-(32-bit).dat
2015-04-27 19:52 - 2015-04-27 19:52 - 00000000 ____D () C:\RegBackup
2015-04-27 19:47 - 2015-04-27 19:48 - 02715845 _____ (Thisisu) C:\Users\*****-*****\Downloads\JRT(1).exe
2015-04-27 19:27 - 2015-04-27 19:27 - 00000341 _____ () C:\Users\*****-*****\Desktop\*****-***** - Verknüpfung.lnk
2015-04-27 19:26 - 2015-04-27 19:31 - 00000000 ____D () C:\AdwCleaner
2015-04-27 19:25 - 2015-04-27 19:25 - 02224640 _____ () C:\Users\*****-*****\Downloads\AdwCleaner_4.202.exe
2015-04-27 19:17 - 2015-04-27 19:22 - 00000343 _____ () C:\Users\*****-*****\Documents\mbam.txt
2015-04-27 19:16 - 2015-04-27 19:16 - 00000343 _____ () C:\Users\*****-*****\Documents\mbam2.txt
2015-04-25 10:17 - 2015-04-25 10:17 - 01187872 _____ (Uniblue Systems Limited ) C:\Users\*****-*****\Downloads\pcmechanicpm.exe
2015-04-24 19:42 - 2015-04-24 19:42 - 00013954 _____ () C:\ComboFix.txt
2015-04-24 18:58 - 2015-04-24 19:42 - 00000000 ____D () C:\ComboFix
2015-04-24 18:22 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-04-24 18:22 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-04-24 18:22 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2015-04-24 18:19 - 2015-04-24 19:42 - 00000000 ____D () C:\Qoobox
2015-04-24 18:14 - 2015-04-24 18:41 - 05619466 ____R (Swearware) C:\Users\*****-*****\Downloads\ComboFix.exe
2015-04-23 18:20 - 2015-04-23 18:20 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Mozilla Firefox
2015-04-23 18:07 - 2015-04-29 16:36 - 00000000 ____D () C:\FRST
2015-04-23 18:07 - 2015-04-27 20:19 - 00044909 _____ () C:\Users\*****-*****\Downloads\FRST.txt
2015-04-23 07:46 - 2015-03-09 03:01 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-23 07:33 - 2015-03-05 04:24 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-23 07:29 - 2015-03-05 04:32 - 00244152 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-23 07:29 - 2015-03-05 04:23 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-23 07:27 - 2015-03-14 04:21 - 01205168 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-23 07:27 - 2015-03-13 03:51 - 03604920 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-04-23 07:27 - 2015-03-13 03:51 - 03552184 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-22 18:41 - 2015-03-10 01:06 - 12377600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-22 18:41 - 2015-03-10 01:03 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-22 18:41 - 2015-03-10 01:02 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-22 18:41 - 2015-03-10 01:00 - 09747968 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-22 18:41 - 2015-03-10 00:57 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-22 18:41 - 2015-03-10 00:57 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 01803264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-22 18:41 - 2015-03-10 00:56 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-22 18:41 - 2015-03-10 00:55 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-22 18:41 - 2015-03-10 00:55 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-04-22 18:41 - 2015-03-10 00:55 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-04-06 11:55 - 2015-04-06 11:55 - 00139504 _____ () C:\Windows\Minidump\Mini040615-01.dmp
2015-04-05 18:53 - 2015-04-05 18:53 - 00000000 ____D () C:\Users\*****-*****\Documents\Citavi 3
2015-03-31 08:57 - 2015-03-31 09:00 - 00001547 _____ () C:\DelFix.txt
2015-03-31 08:57 - 2015-03-31 08:57 - 00000000 ____D () C:\Windows\ERUNT
2015-03-31 08:24 - 2015-03-31 08:25 - 00000000 ____D () C:\Users\*****-*****\Desktop\Neuer Ordner

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-29 16:22 - 2008-02-06 17:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.001
2015-04-29 16:19 - 2009-07-22 13:50 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-29 16:19 - 2008-02-06 15:54 - 01661587 _____ () C:\Windows\WindowsUpdate.log
2015-04-29 16:03 - 2011-01-02 18:31 - 00197520 _____ () C:\ProgramData\lxeascan.log
2015-04-29 16:01 - 2013-07-13 11:20 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
2015-04-29 15:56 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-29 15:56 - 2006-11-02 14:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-29 15:56 - 2006-11-02 14:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-29 15:55 - 2007-07-20 16:28 - 01745672 _____ () C:\Windows\PFRO.log
2015-04-28 21:39 - 2008-02-06 17:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.dat
2015-04-28 07:24 - 2007-07-20 15:34 - 00000012 _____ () C:\Windows\bthservsdp.dat
2015-04-28 07:24 - 2006-11-02 15:01 - 00032612 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-04-27 20:24 - 2008-02-16 15:49 - 00002631 _____ () C:\Users\*****-*****\Desktop\Microsoft Office Word 2007.lnk
2015-04-27 20:10 - 2015-03-21 22:03 - 00074678 _____ () C:\Users\*****-*****\Downloads\Addition.txt
2015-04-27 19:59 - 2015-03-21 21:54 - 01140736 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST.exe
2015-04-27 19:43 - 2006-11-02 12:33 - 01623482 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-27 19:28 - 2008-02-06 17:25 - 00000000 ____D () C:\Users\*****-*****
2015-04-27 19:16 - 2015-03-22 20:21 - 00000343 _____ () C:\Users\*****-*****\Desktop\mbam.txt
2015-04-27 17:58 - 2010-01-02 11:33 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2015-04-26 20:22 - 2008-02-10 12:56 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Skype
2015-04-26 17:36 - 2011-08-30 06:40 - 00001052 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-04-25 14:41 - 2011-06-30 12:07 - 00001356 _____ () C:\Users\*****-*****\AppData\Local\d3d9caps.dat
2015-04-24 19:37 - 2006-11-02 12:23 - 00000215 _____ () C:\Windows\system.ini
2015-04-23 17:03 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-04-23 07:46 - 2013-07-26 09:36 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-23 07:34 - 2006-11-02 12:24 - 125832184 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2015-04-23 07:33 - 2007-07-20 17:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-04-10 19:16 - 2008-02-16 15:49 - 00002673 _____ () C:\Users\*****-*****\Desktop\Microsoft Office PowerPoint 2007.lnk
2015-04-08 10:18 - 2015-02-21 14:06 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Avira
2015-04-08 10:07 - 2015-02-21 13:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-04-08 10:04 - 2012-04-26 06:31 - 00000000 ____D () C:\ProgramData\Avira
2015-04-06 12:54 - 2013-07-25 23:43 - 00000000 ____D () C:\ProgramData\Netzmanager
2015-04-06 12:54 - 2013-06-21 14:43 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-04-06 12:54 - 2012-06-24 11:07 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Akamai
2015-04-06 12:54 - 2012-05-23 07:59 - 00000000 ____D () C:\Users\*****-***** 2
2015-04-06 12:54 - 2011-05-25 13:59 - 00000000 ____D () C:\ProgramData\Ulead Systems
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\spool
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\Msdtc
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\registration
2015-04-06 12:54 - 2006-11-02 12:22 - 66846720 _____ () C:\Windows\system32\config\software_previous
2015-04-06 12:54 - 2006-11-02 12:22 - 52166656 _____ () C:\Windows\system32\config\system_previous
2015-04-06 12:45 - 2006-11-02 12:22 - 49283072 _____ () C:\Windows\system32\config\components_previous
2015-04-06 12:45 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous
2015-04-06 11:55 - 2010-08-25 19:12 - 216125677 _____ () C:\Windows\MEMORY.DMP
2015-04-06 11:55 - 2008-05-16 22:19 - 00000000 ____D () C:\Windows\Minidump
2015-04-05 19:50 - 2006-11-02 12:22 - 00524288 _____ () C:\Windows\system32\config\default_previous
2015-04-05 19:49 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\security_previous

==================== Files in the root of some directories =======

2012-05-23 07:59 - 2015-03-11 00:53 - 0043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2012-05-23 07:59 - 2007-08-06 15:21 - 0042479 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.dat
2012-06-30 11:35 - 2012-06-30 11:35 - 0000022 ___SH () C:\Users\*****-***** 2\AppData\Roaming\Windows1569_SettingsRepository.bin
2012-05-23 07:59 - 2015-03-28 16:42 - 0002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2012-05-23 07:59 - 2007-08-06 15:06 - 0018944 _____ () C:\Users\*****-***** 2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-30 11:35 - 2012-06-30 11:35 - 0000000 _____ () C:\Users\*****-***** 2\AppData\Local\jv16PT_temp.tmp
2008-02-21 12:45 - 2008-02-21 12:45 - 0000305 _____ () C:\ProgramData\addr_file.html
2009-02-05 22:42 - 2009-02-05 22:42 - 0000056 _____ () C:\ProgramData\ezsidmv.dat
2011-01-02 18:39 - 2011-01-02 18:39 - 0000252 _____ () C:\ProgramData\FastPics.log
2011-03-01 17:18 - 2015-03-07 18:01 - 0045024 _____ () C:\ProgramData\lxea.log
2011-01-02 18:40 - 2011-01-02 18:42 - 0000438 _____ () C:\ProgramData\lxeaDiagnostics.log
2011-01-02 18:44 - 2011-06-02 10:10 - 0004439 _____ () C:\ProgramData\lxeaJSW.log
2011-01-02 18:31 - 2015-04-29 16:03 - 0197520 _____ () C:\ProgramData\lxeascan.log
2011-01-02 18:27 - 2011-01-02 18:27 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

Some content of TEMP:
====================
C:\Users\*****-*****\AppData\Local\temp\avgnt.exe


Some zero byte size files/folders:
==========================
C:\Windows\System32\nsprs.dll
C:\Windows\System32\serauth1.dll
C:\Windows\System32\serauth2.dll
C:\Windows\System32\ssprs.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-04-29 16:22

==================== End Of Log ============================

--- --- ---

--- --- ---

Jami87 29.04.2015 15:45

Code:

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 29-04-2015
Ran by *****-***** 2 at 2015-04-29 16:39:01
Running from c:\Users\*****-*****\Downloads\FRST-OlderVersion
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3850073437-3280287025-709413035-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3850073437-3280287025-709413035-1002 - Limited - Enabled)
Gast (S-1-5-21-3850073437-3280287025-709413035-501 - Limited - Disabled)
*****-***** (S-1-5-21-3850073437-3280287025-709413035-1000 - Limited - Enabled) => C:\Users\*****-*****
*****-***** 2 (S-1-5-21-3850073437-3280287025-709413035-1003 - Administrator - Enabled) => C:\Users\*****-***** 2

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"Durchstarten mit Ponky - Deutsch 1+2" (HKLM\...\"Durchstarten mit Ponky - Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Durchstarten mit Ponky - Mathe 1+2" (HKLM\...\"Durchstarten mit Ponky - Mathe 1+2") (Version: 2.00 - Engel Edition)
"Englisch in der Grundschule mit Ponky 1.+2. Kl." (HKLM\...\"Englisch in der Grundschule mit Ponky 1.+2. Kl.") (Version: 2.00 - Engel Edition)
"Ponky gezielt Deutsch 1+2" (HKLM\...\"Ponky gezielt Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Ponky gezielt Mathe 1+2" (HKLM\...\"Ponky gezielt Mathe 1+2") (Version: 2.00 - Engel Edition)
7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
ABBYY FineReader 6.0 Sprint (HKLM\...\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}) (Version: 6.00.1395.4512 - ABBYY Software House)
ABBYY FineReader 9.0 Sprint (HKLM\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212 - ABBYY) Hidden
Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\Activation Assistant for the 2007 Microsoft Office suites) (Version:  - Microsoft Corporation)
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0 - Microsoft Corporation) Hidden
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Media Player (HKLM\...\{95264530-5A22-8E7E-FE9D-D63A927BCAEA}) (Version: 1.7 - Adobe Systems Incorporated)
Adobe Photoshop Elements 5.0 (HKLM\...\Adobe Photoshop Elements 5) (Version: 5.0 - Adobe Systems, Inc.)
Adobe Premiere Elements 3.0.2 (HKLM\...\PremElem30) (Version: 3.0.2 - Ihr Firmenname)
Adobe Premiere Elements 3.0.2 Templates (HKLM\...\{6EACDDF4-4220-49A3-9204-984C86852C3D}) (Version: 1.0.0 - Ihr Firmenname)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.)
Akamai NetSession Interface (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Akamai) (Version:  - Akamai Technologies, Inc)
All To WMA Converter 1.7 (HKLM\...\All To WMA Converter_is1) (Version: 1.7 - All To WMA Converter)
Alps Pointing-device for VAIO (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version:  - )
Amazon Cloud Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Amazon Amazon Cloud Player) (Version: 2.4.0.33 - Amazon Services LLC)
Any Video Converter 3.3.2 (HKLM\...\Any Video Converter_is1) (Version:  - Any-Video-Converter.com)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Aquanuma (HKLM\...\Aquanuma_is1) (Version:  - )
ArcSoft Magic-i Visual Effects Installer (HKLM\...\{9AB83A3C-604D-4B4F-AA25-A23A3FC39844}) (Version:  - ArcSoft)
Audacity 1.2.6 (HKLM\...\Audacity_is1) (Version:  - )
AutoUpdate (HKLM\...\{18D10072035C4515918F7E37EAFAACFC}) (Version: 1.1 - )
Avanquest update (HKLM\...\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}) (Version: 1.20 - Avanquest Software)
Avira (HKLM\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG)
Avira (Version: 1.1.30.21727 - Avira Operations & Co. KG) Hidden
Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.9.504 - Avira Operations GmbH & Co. KG)
AviSynth 2.5 (HKLM\...\AviSynth) (Version:  - )
Benutzerdefinierte Voreinstellungen für SonicStage Mastering Studio Audio Filter (HKLM\...\{EC37A846-53AC-4DA7-98FA-76A4E74AA900}) (Version: 2.3 - Sony Corporation)
Benutzerhandbuch - Grundlagen EPSON SX430 Series (HKLM\...\EPSON SX430 Series Bog) (Version:  - )
Benutzerhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Useg) (Version:  - )
Browser Address Error Redirector (HKLM\...\{3EE33958-7381-4E7B-A4F3-6E43098E9E9C}) (Version:  - )
Camera RAW Plug-In for EPSON Creativity Suite (HKLM\...\{93EA9C3E-BDFD-4309-A605-9B5BBC0CCEFD}) (Version: 2.2.0.0 - SEIKO EPSON CORPORATION)
Citavi (HKLM\...\{E12C6653-1FF0-4686-ADB8-589C13AE761F}) (Version: 3.3.0.0 - Swiss Academic Software)
Citavi 2.5 (HKLM\...\Citavi) (Version: 2.5.2.0 - Academic Software Zurich)
Click to DVD 2.0.05 Menu Data (HKLM\...\{9E407618-D9CD-4F39-9490-9ED45294073D}) (Version: 2.0.05 - Sony Corporation)
Click to DVD 2.6.00 (HKLM\...\{E809063C-51A3-4269-8984-D1EB742F2151}) (Version: 2.6.00 - Sony Corporation)
ConvertHelper 2.2 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version:  - DownloadHelper)
Denken und Rechnen 2 (HKLM\...\Denken und Rechnen 2) (Version:  - )
DHTML Editing Component (HKLM\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation)
DisplayLink Core Software (HKLM\...\{156E1F8D-3555-42F5-8DEC-5E830AF46847}) (Version: 4.5.13507.0 - DisplayLink Corp.)
DivX Codec (HKLM\...\{7B63B2922B174135AFC0E1377DD81EC2}) (Version: 6.6.1 - DivX, Inc.)
DivX Converter (HKLM\...\{B13A7C41581B411290FBC0395694E2A9}) (Version: 6.5 - DivX, Inc.)
DivX Player (HKLM\...\{8ADFC4160D694100B5B8A22DE9DCABD9}) (Version: 6.4.3 - DivXNetworks, Inc.)
DivxToDVD 0.5.2b (HKLM\...\VSO DivxToDVD_is1) (Version: 0.5.2b - VSO-Software SARL)
DSD Direct (HKLM\...\{82D5BACA-3619-4D34-99DB-3A65CFB4DA33}) (Version: 2.0.01 - Sony Corporation)
DSD Direct Player (HKLM\...\{533D0A8A-D7E7-4F15-BC9E-FF2916A6BAA7}) (Version: 1.0 - Sony Corporation)
DSD Playback Plug-in (HKLM\...\{009E7FB7-1775-4D89-8956-F5C9A1C019FC}) (Version: 1.1 - Sony Corporation)
EPSON Attach To Email (HKLM\...\InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}) (Version: 1.01.0000 - SEIKO EPSON)
EPSON Attach To Email (Version: 1.01.0000 - SEIKO EPSON) Hidden
EPSON Copy Utility 3 (HKLM\...\{67EDD823-135A-4D59-87BD-950616D6E857}) (Version: 3.3.0.0 - )
EPSON Easy Photo Print (HKLM\...\{3D78F2A2-C893-4ABD-B5FE-AD7011837755}) (Version: 1.5.0.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print 2 (HKLM\...\{A02D7029-C4EF-44C1-9FD4-C0D3CA518113}) (Version: 2.2.4.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM\...\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}) (Version: 2.50.0000 - SEIKO EPSON CORPORATION)
EPSON File Manager (HKLM\...\{2EB81825-E9EE-44F4-8F51-1240C3898DC6}) (Version: 1.3.0.0 - )
EPSON Scan (HKLM\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON Scan Assistant (HKLM\...\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}) (Version: 1.10.00 - )
EPSON Stylus CX7300_CX8300_DX7400_DX8400 Handbuch (HKLM\...\EPSON Stylus CX7300_CX8300_DX7400_DX8400 Benutzerhandbuch) (Version:  - )
EPSON SX430 Series Printer Uninstall (HKLM\...\EPSON SX430 Series) (Version:  - SEIKO EPSON Corporation)
EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.4j - SEIKO EPSON CORPORATION)
ffdshow [rev 2844] [2009-03-30] (HKLM\...\ffdshow_is1) (Version: 1.0 - )
Firebird SQL Server - MAGIX Edition (HKLM\...\Firebird SQL Server D) (Version: 2.0.1.13 - MAGIX AG)
flatster (HKLM\...\{0ADF1B89-17EA-489C-86DF-6E33DA8520A6}_is1) (Version: 1.5 - flatster GmbH)
Free FLV Converter V 6.4.1 (HKLM\...\Free FLV Converter_is1) (Version:  - Koyote Soft)
Free Mp3 Wma Converter V 1.9 (HKLM\...\Free Mp3 Wma Converter_is1) (Version: 1.9.0.0 - Koyote Soft)
Free PDF to Word Doc Converter v1.1 (HKLM\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - www.hellopdf.com)
Free YouTube Download version 3.0.20.1228 (HKLM\...\Free YouTube Download_is1) (Version:  - DVDVideoSoft Ltd.)
Freemake Video Converter Version 3.0.1 (HKLM\...\Freemake Video Converter_is1) (Version: 3.0.1 - Ellora Assets Corporation)
Furnish Pro (HKLM\...\Furnish Pro) (Version:  - )
GearDrvs (Version: 1 - Symantec Corporation) Hidden
Google Desktop (HKLM\...\Google Desktop) (Version: 5.9.1005.12335 - Google)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Talk (remove only) (HKLM\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Talk (remove only) (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
Google Updater (HKLM\...\Google Updater) (Version: 2.4.2432.1652 - Google Inc.)
HDAUDIO SoftV92 Data Fax Modem with SmartCP (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_104D0200) (Version:  - )
honestech VHS to DVD 2.0 SE (HKLM\...\{2856F5EA-E98A-40E4-BAD6-8C644A4A3F3C}) (Version: 2.0 - honestech)
IBM SPSS Statistics 22 (HKLM\...\{104875A1-D083-4A34-BC4F-3F635B7F8EF7}) (Version: 22.0.0.0 - IBM Corp)
ICQ7.2 (HKLM\...\{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}) (Version: 7.2 - ICQ)
Iminent (Version: 5.26.21.0 - Iminent) Hidden <==== ATTENTION
InterVideo Register Manager (Version: 1.0.4.0 - InterVideo Inc.) Hidden
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 40 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
jv16 PowerTools 2012 (HKLM\...\jv16 PowerTools 2011) (Version:  - Macecraft Software)
Lexmark S300-S400 Series (HKLM\...\Lexmark S300-S400 Series) (Version:  - Lexmark International, Inc.)
Lexmark Tools for Office (HKLM\...\{10812DE7-2E57-4740-B226-6B3BE34AF9D7}) (Version: 1.29.0.0 - )
Logitech Vid HD (HKLM\...\Logitech Vid) (Version: 7.2 (7259) - Logitech Inc..)
Logitech Webcam Software (HKLM\...\{AC96671C-2001-432C-9826-5266D84EF1DC}) (Version: 12.00.1280 - Logitech Inc.)
Logitech Webcam Software-Treiberpaket (HKLM\...\lvdrivers_12.0) (Version: 12.0.1278 - Logitech Inc.)
Löwenzahn und Pusteblume (HKLM\...\{C538AA5E-2F9C-48DC-AD5C-B21CE34EA10B}) (Version: 1.0.0 - *)
MAGIX Online Druck Service 2.3.2.0 (D) (HKLM\...\MAGIX Online Druck Service D) (Version: 2.3.2.0 - MAGIX AG)
MAGIX PC Visit (HKLM\...\MAGIX PC Visit D) (Version: 4.3.6.1987 - MAGIX AG)
MAGIX Video deluxe 2008 Trial 7.5.1.6 (D) (HKLM\...\MAGIX Video deluxe 2008 Trial D) (Version: 7.5.1.6 - MAGIX AG)
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
MAXQDA 10 (R250412) (HKLM\...\MAXQDA10) (Version: (R250412) - VERBI Software.Consult.Sozialforschung GmbH)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Medion GoPal Assistant 4.01.012 (HKLM\...\Medion GoPal Assistant) (Version: 4.1.12.0 - Medion)
Meine ersten Wörter (HKLM\...\it.clementoni.SapPrimeParoleDE.290A939A40FB4C06653AD1460C6BEBD4C065087B.1) (Version: 1.0 - Clementoni S.p.A.)
Meine ersten Wörter (Version: 1.0 - Clementoni S.p.A.) Hidden
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2698023) (HKLM\...\M2698023) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version:  - )
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - deu) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual J# .NET Redistributable Package 1.1 (HKLM\...\{1A655D51-1423-48A3-B748-8F5A0BE294C8}) (Version: 1.1.4322 - Microsoft)
Microsoft Works (HKLM\...\{4EA2F95F-A537-4d17-9E7F-6B3FF8D9BBE3}) (Version: 08.05.0822 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Moonlight MPEG-2 Decoder Pack (HKLM\...\Moonlight MPEG-2 Decoder Pack 2.1.4316) (Version: 2.1.4316 - Moonlight Cordless)
Mozilla Firefox 37.0.2 (x86 de) (HKLM\...\Mozilla Firefox 37.0.2 (x86 de)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 13.0.1 - Mozilla)
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB941833) (HKLM\...\{C523D256-313D-4866-B36A-F3DE528246EF}) (Version: 4.20.9849.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Musik & Audio Restaurator Pro 5.0 (HKLM\...\Musik & Audio Restaurator Pro 5_is1) (Version: 5.0 - Softfeld)
Nero Backup Drivers (HKLM\...\{F8EF9B71-53E7-41F5-8E54-47B4C979CB38}) (Version: 1.0.11100.8.0 - Nero AG)
Netzmanager (HKLM\...\Netzmanager) (Version: 1.081 - Deutsche Telekom AG)
Netzmanager (Version: 1.081 - Deutsche Telekom AG, Marmiko IT-Solutions GmbH) Hidden
Netzwerkhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Netg) (Version:  - )
Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - )
Norton 360 (Version: 1.2.0.10 - Symantec Corporation) Hidden
Notebook BatteryInfo 1.3  (HKLM\...\BatteryInfo_Suite) (Version: 1.3 - Thomas Michel)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version:  - )
OpenMG Limited Patch 4.7-07-15-19-01 (HKLM\...\OpenMG HotFix4.7-07-13-22-01) (Version:  - )
OpenMG Secure Module 4.7.00 (HKLM\...\InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}) (Version: 4.7.00.12140 - Sony Corporation)
OpenMG Secure Module 4.7.00 (Version: 4.7.00.12140 - Sony Corporation) Hidden
OpenOffice.org 3.2 (HKLM\...\{8D1E61D1-1395-4E97-997F-D002DB3A5074}) (Version: 3.2.9502 - OpenOffice.org)
PDF24 Creator 5.7.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
Photo Viewer V2.4 (HKLM\...\Photo Viewer) (Version:  - )
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Pixie 1.4.1 (HKLM\...\Pixie_is1) (Version: 1.4.1 - Pixie Developers)
QuickTime (HKLM\...\{5B09BD67-4C99-46A1-8161-B7208CE18121}) (Version: 7.3.0.70 - Apple Inc.)
Ravensburger tiptoi (HKLM\...\Ravensburger tiptoi) (Version:  - )
Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Rossmann Fotowelt Software 4.12.1 (HKLM\...\Rossmann Fotowelt Software) (Version: 4.12.1 - ORWO Net)
Rossmann Online Print Wizard Installer 1.0 (HKLM\...\Rossmannr Online Print Wizard Installer_is1) (Version:  - )
Roxio Easy Media Creator Home (HKLM\...\{B7FB0C86-41A4-4402-9A33-912C462042A0}) (Version: 9.0.178 - Roxio)
Scan2PDF 1.6 (HKLM\...\Scan2PDF_is1) (Version:  - Koma-Code)
Secunia PSI (2.0.0.4002) (HKLM\...\Secunia PSI) (Version:  - )
Secure Eraser (HKLM\...\Secure Eraser_is1) (Version: 4.2.0.1 - ASCOMP Software GmbH)
Setting Utility Series (HKLM\...\{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}) (Version: 3.0.00.07120 - Sony Corporation)
SigmaTel Audio (HKLM\...\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}) (Version: 5.10.5102.0 - SigmaTel)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SNAPFISH (HKLM\...\SNAPFISH) (Version:  - )
Snoopy 1.0 (HKLM\...\Snoopy_is1) (Version:  - )
SonicStage Mastering Studio (HKLM\...\{6332AFF1-9D9A-429C-AA03-F82749FA4F49}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio (Version: 2.3.01 - Sony Corporation) Hidden
SonicStage Mastering Studio Audio Filter (HKLM\...\{DF7DB916-90E5-40F2-9010-B8125EB5FD6F}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio Plugins (HKLM\...\{9C1C8A04-F8CA-4472-A92D-4288CE32DE86}) (Version: 2.4 - Sony Corporation)
Sony Ericsson Media Manager 1.1 (HKLM\...\{7E910FDA-CBBE-4451-8728-235E6A4DE162}) (Version: 1.1.550 - Sony Ericsson)
Sony Ericsson PC Suite 6.009.00 (HKLM\...\{2FFE93F0-BB72-4E52-8761-354D1AAA9387}) (Version: 6.009.00 - Sony Ericsson)
Sony PC Companion 2.10.251 (HKLM\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.251 - Sony)
Sony Picture Utility (HKLM\...\{D5068583-D569-468B-9755-5FBF5848F46F}) (Version: 2.1.00.04170 - Sony Corporation)
Sony USB Driver (HKLM\...\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}) (Version: 2.00 - Sony Corporation)
SONY VGP-UPR1 (Display Adapter) (HKLM\...\{94FBC09C-6F39-4B36-B9DE-66374A6FAAD2}) (Version: 4.5.13507.0 - Sony Corporation)
Sony Video Shared Library (HKLM\...\{01FDC9FC-4D4F-4DB0-ACD1-D3E8E1D52902}) (Version: 3.2.00 - Sony Corporation)
SpongeBob Schwammkopf - Der Film (HKLM\...\{E81A7285-8CA6-4430-B6C0-5F719E4D40D9}) (Version: 1.0 - )
SPSS 15.0 für Windows [Auswertung Version] (HKLM\...\{6D9B9CF3-1E9C-45B6-B41E-5CF568605556}) (Version: 15.0.1 - SPSS Inc.)
Super Mario PC Fun 2 (HKLM\...\Super Mario PC Fun 2) (Version:  - )
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.0.1148 - SUPERAntiSpyware.com)
Supreme Auction (HKLM\...\Supreme Auction_is1) (Version:  - )
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab (HKLM\...\SystemRequirementsLab) (Version:  - )
TMPGEnc 4.0 XPress Testversion (HKLM\...\{ECEF8EDE-0421-4E67-9264-5E84F26D4F55}) (Version: 4.7.2.285 - Pegasys Inc,)
Ulead VideoStudio SE DVD (HKLM\...\{8F8D9297-FDD2-405A-97E7-E52C7B2F97B3}) (Version: 10.0 - Ulead Systems)
Uninstall 1.0.0.1 (HKLM\...\Uninstall_is1) (Version:  - )
Unity Web Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
USB2.0 ATV (HKLM\...\{3C873221-12B9-475D-8DCB-62D0B2179AF9}) (Version: 6.10.000.001 - Regulus)
USB2.0 Capture Device (HKLM\...\{E337B156-DF81-48D8-8977-B1574EE87BCF}) (Version: 1.0.3.0 - )
VAIO Aqua Breeze Wallpaper (HKLM\...\{97BCD719-6ECB-458F-97D6-F38D2E07375E}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Camera Capture Utility (HKLM\...\{6D2576EC-A0E9-418A-A09A-409933A3B6F4}) (Version: 2.7.01.08030 - Sony Corporation)
VAIO Content Folder Setting (HKLM\...\{23825B69-36DF-4DAD-9CFD-118D11D80F16}) (Version: 1.1.02.11070 - Sony Corporation)
VAIO Content Importer  VAIO Content Exporter (Version: 1.2.00.06270 - Sony Corporation) Hidden
VAIO Content Importer / VAIO Content Exporter (HKLM\...\{68A69CFF-130D-4CDE-AB0E-7374ECB144C8}) (Version: 1.2.00.06270 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (HKLM\...\{FAA6B94E-78A7-489C-B2DB-050D9FEBFADA}) (Version: 2.0.01.07051 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (Version: 2.0.01.07051 - Sony Corporation) Hidden
VAIO Content Metadata Manager Setting (HKLM\...\{69351E9E-23ED-41D5-B146-EDBF83C63B66}) (Version: 2.0.01.07041 - Sony Corporation)
VAIO Content Metadata Manager Setting (Version: 2.0.01.07041 - Sony Corporation) Hidden
VAIO Content Metadata XML Interface Library (HKLM\...\{B5E2DF30-1061-4DB4-AF28-08996C8E5680}) (Version: 2.1.01.10292 - Sony Corporation)
VAIO Content Metadata XML Interface Library (Version: 2.1.01.10292 - Sony Corporation) Hidden
VAIO Control Center (HKLM\...\{72042FA6-5609-489F-A8EA-3C2DD650F667}) (Version: 2.1.00.07110 - Sony Corporation)
VAIO Cozy Orange Wallpaper (HKLM\...\{2A2FF7F5-6F0E-4A5D-A881-39365E718BD6}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Data Restore Tool (HKLM\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.0.02.06190 - Sony Corporation)
VAIO Entertainment Platform (HKLM\...\{6B1F20F2-6321-4669-A58C-33DF8E7517FF}) (Version: 3.0.00.06280 - Sony Corporation)
VAIO Event Service (HKLM\...\{F0D85ADD-DD61-4B43-87A0-6DA52A211A8B}) (Version: 3.2.00.07120 - Sony Corporation)
VAIO Launcher (HKLM\...\{15D5C238-4C2E-4AEA-A66D-D6989A4C586B}) (Version: 1.0.00.07090 - Sony Corporation)
VAIO Media (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media 6.0 (HKLM\...\{560F6B2E-F0DF-44E5-8190-A4A161F0E205}) (Version: 6.0.10 - Sony Corporation)
VAIO Media AC3 Decoder 1.0 (HKLM\...\{2063C2E8-3812-4BBD-9998-6610F80C1DD4}) (Version:  - )
VAIO Media Content Collection 6.0 (HKLM\...\{500162A0-4DD5-460A-BAFD-895AAE48C532}) (Version:  - Sony Corporation)
VAIO Media Integrated Server 6.1 (HKLM\...\{785EB1D4-ECEC-4195-99B4-73C47E187721}) (Version:  - Sony Corporation)
VAIO Media Redistribution 6.0 (HKLM\...\{5855C127-1F20-404D-B7FB-1FD84D7EAB5E}) (Version: 6.0.10 - Sony Corporation)
VAIO Media Registration Tool (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media Registration Tool 6.0 (HKLM\...\{AF9A04EB-7D8E-41DE-9EDE-4AB9BB2B71B6}) (Version: 6.0.10 - Sony Corporation)
VAIO Movie Story (HKLM\...\{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO Movie Story (Version: 1.0.00.18280 - Sony Corporation) Hidden
VAIO Movie Story Template Data (HKLM\...\{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO MusicBox (HKLM\...\{4EA55D20-27FB-45D7-8726-147E8A5F6C62}) (Version: 1.1.02.12100 - Sony Corporation)
VAIO MusicBox Sample Music (HKLM\...\{98FC7A64-774B-49B5-B046-4B4EBC053FA9}) (Version: 1.0.00.07030 - Sony Corporation)
VAIO Original Function Setting (HKLM\...\{A63E7492-A0BC-4BB9-89A7-352965222380}) (Version: 1.4.00.03240 - Sony Corporation)
VAIO Original Screen Saver (HKLM\...\{1BEF9285-5530-426B-A5F1-5836B95C7EB1}) (Version:  - )
VAIO Power Management (HKLM\...\{802889F8-6AF5-45A5-9764-CA5B999E50FC}) (Version: 2.2.00.06130 - Sony Corporation)
VAIO Tender Green Wallpaper (HKLM\...\{934A3213-1CB6-4264-84A2-EE080C017BCA}) (Version: 1.0.11.10180 - Sony Corporation)
VAIO Update 3 (HKLM\...\{48820099-ED7D-424B-890C-9A82EF00656D}) (Version: 3.0.02.05280 - Sony Corporation)
VAIO Xblack Contents (HKLM\...\VAIO Xblack Contents) (Version: 1.0.0.0-ENU - )
WDR RadioRecorder (HKLM\...\Tobit Radio.fx Server 1) (Version:  - Tobit.Software)
WIDCOMM Bluetooth Software 6.1.0.1203 (HKLM\...\{03D1988F-469F-4843-8E6E-E5FE9D17889D}) (Version: 6.1.0.1203 - Broadcom Corporation)
Windows Live Anmelde-Assistent (HKLM\...\{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}) (Version: 5.000.818.6 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinDVD BD for VAIO (HKLM\...\InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}) (Version: 8.0-B8.385 - InterVideo Inc.)
WinDVD BD for VAIO (Version: 8.0-B8.385 - InterVideo Inc.) Hidden
Wireless Switch Setting Utility (HKLM\...\{2A0F3EF9-68EE-49E9-A05B-ED5B82DF63E5}) (Version: 3.6.00.18210 - Sony Corporation)
WMA MP3 Converter v4.0 build 1217 (HKLM\...\{314AD191-596F-40C0-ACED-3AD78C9649F1}_is1) (Version:  - Hoo Technologies)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{33b07fd4-5917-43e1-968d-4c79231836bf}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{4052D303-74C5-49EA-BC6B-66099C8D4007}\InprocServer32 -> C:\Program Files\Google\Google Desktop Search\GoogleDesktopAPI2.dll (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{693566bc-21f8-401e-8d42-e2c5ce50dacc}\localserver32 -> C:\Users\*****-~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe  (the data entry has 7 more characters).
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{7F902AD4-FC6A-4B2F-8B8D-B6DD4E329B76}\InprocServer32 -> C:\Users\*****-~1\AppData\Local\ASKTOO~1\DOWNLO~1\AVIRAW~1.DLL No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{9E385F0A-0BA2-430C-96AA-4399C5E40F6C}\localserver32 -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{A8F086C3-2497-4229-82FE-586F2D326F95}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{BB6410D8-F879-4184-9C5C-6A02D16AE0B3}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CA1073A2-5F3F-4445-8E5E-7109BDCEDDBE}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{d33f3ced-d7d5-44f1-a9fe-6927dabb1934}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{D5A55D2D-C59D-42C3-A5BF-4C08EEE74339}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{33b07fd4-5917-43e1-968d-4c79231836bf}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{693566bc-21f8-401e-8d42-e2c5ce50dacc}\localserver32 -> C:\Users\*****-~2\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe  (the data entry has 7 more characters).
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{A8F086C3-2497-4229-82FE-586F2D326F95}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{d33f3ced-d7d5-44f1-a9fe-6927dabb1934}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)

==================== Restore Points  =========================

23-04-2015 07:13:48 Windows Update
25-04-2015 10:18:36 Uniblue PC Mechanic installation
26-04-2015 10:38:01 Geplanter Prüfpunkt
27-04-2015 21:13:00 Geplanter Prüfpunkt
28-04-2015 17:59:42 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 12:23 - 2015-03-13 23:39 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1      localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {043D68F3-3670-43A0-B6D5-57F13FF9F9A7} - System32\Tasks\3cfc12c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup4282120128.exe <==== ATTENTION
Task: {10D60821-F8E1-475A-83E8-701EA8E4B1F4} - System32\Tasks\ef6fab80 => C:\Users\*****-~1\AppData\Local\Temp\\setup542040320.exe <==== ATTENTION
Task: {12385836-CA2D-47B9-A214-9F8B297A3DBA} - System32\Tasks\{95687664-AA78-4FC4-BAC4-858ABB1C0B69} => pcalua.exe -a C:\Users\*****-*****\Downloads\VirtualDubMod_1_5_10_2_All_inclusive\AuxSetup.exe -d C:\Users\*****-*****\Downloads\VirtualDubMod_1_5_10_2_All_inclusive
Task: {16D7CE70-497A-4FE4-8C4C-244FAA0734CE} - System32\Tasks\49055640 => C:\Users\*****-~1\AppData\Local\Temp\\setup499886528.exe <==== ATTENTION
Task: {1B4E5659-7DEF-46F9-A0BC-0E6629830B41} - System32\Tasks\Microsoft\Windows\MobilePC\DisplayLink TMM Control
Task: {1CE03B89-7F38-4BA1-A41C-4D8B07DAAE41} - System32\Tasks\SONY\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update 3\VAIOUpdt.exe [2007-05-31] (Sony Corporation)
Task: {1E6473EE-BE0D-4AF2-B139-363A948E362C} - System32\Tasks\{C1EA93FA-188F-4DB9-B64E-36A773014422} => pcalua.exe -a "C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma.cpl" -c Adobe Gamma
Task: {28E5CD67-956D-4936-A294-4AD90DDAE715} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {2FEF6F31-1C03-441F-95EE-C0881A257656} - System32\Tasks\7bb0880 => C:\Users\*****-~1\AppData\Local\Temp\\setup3595865216.exe <==== ATTENTION
Task: {38DC70C8-5701-41B4-807F-9D4516FF09E7} - System32\Tasks\46de95c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup3316319744.exe <==== ATTENTION
Task: {50AC27F5-D9EB-4BF2-BE03-FC9AF110F37B} - System32\Tasks\e3c09e00 => C:\Users\*****-~1\AppData\Local\Temp\\setup2577851392.exe <==== ATTENTION
Task: {51B468D0-8CEB-4BAE-AEA3-4EC761479B8B} - System32\Tasks\{9830AF16-9482-400B-9E1B-868E8CD8C205} => pcalua.exe -a "C:\Users\*****-*****\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZU0076JS\SOACCU-01363007-UN[1].exe" -d C:\Users\*****-*****
Task: {598F4D5D-0AAD-4486-9371-BD27A5EA6A80} - System32\Tasks\MCVSurveyReminder4 => reminder.exe
Task: {5DBB8895-2BE0-4495-A797-6009C173A108} - System32\Tasks\{1BF2E65A-1E39-4F45-92FD-E0EF4012BE8A} => pcalua.exe -a C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1050\INTEL3~1\IDriver.exe -c /M{430CADFA-CCEB-456D-9994-D9113F731644}
Task: {601E4951-95BA-4388-8522-79849722B245} - System32\Tasks\221db200 => C:\Users\*****-~1\AppData\Local\Temp\\setup4129418752.exe <==== ATTENTION
Task: {64CED321-9BDA-438C-8EAE-9FA9F12FD1F1} - System32\Tasks\d8662340 => C:\Users\*****-~1\AppData\Local\Temp\\setup2016372352.exe <==== ATTENTION
Task: {68F11EF1-2EA3-462C-A57B-420826834205} - System32\Tasks\{7AC43103-A4AE-481B-B197-07B3C364EB4B} => pcalua.exe -a C:\Users\*****-*****\Downloads\NVDVID-01587600-UN.exe -d "C:\Program Files\Mozilla Firefox"
Task: {7786971E-B57F-40FD-8139-281ABE1BD89E} - System32\Tasks\Google Software Updater => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-09-16] (Google)
Task: {7A796D5F-7CBC-4FAE-9015-B38AA747B38A} - System32\Tasks\8340e7c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup1373268928.exe <==== ATTENTION
Task: {874F7FCC-AF76-442E-A24A-E763321339C5} - System32\Tasks\b4899d80 => C:\Users\*****-~1\AppData\Local\Temp\\setup2355517632.exe <==== ATTENTION
Task: {8CA16ED4-2F50-4900-858E-059AC05BC624} - System32\Tasks\1d5fc740 => C:\Users\*****-~1\AppData\Local\Temp\\setup2435663488.exe <==== ATTENTION
Task: {8D109C3F-BFE7-40B0-B4E9-82D5B9DA3818} - System32\Tasks\{321F8462-3D73-467E-B9DC-B1D0A64C03FE} => Firefox.exe hxxp://ui.skype.com/ui/0/6.21.81.104/de/go/help.faq.installer?LastError=1618
Task: {91EEDBC4-E166-41C0-BD6A-0E0BAB4C9DAF} - System32\Tasks\f9bd8a40 => C:\Users\*****-~1\AppData\Local\Temp\\setup2014348480.exe <==== ATTENTION
Task: {9A0019CE-C77A-41B4-878B-F564DE55AD98} - System32\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0 => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {9EA1BE1B-B9AE-42DD-AFD5-8BAAD7523A32} - \Optimizer Pro Schedule No Task File <==== ATTENTION
Task: {A69B794D-07FE-4088-A6F5-FC92516DE4E7} - System32\Tasks\b7c95780 => C:\Users\*****-~1\AppData\Local\Temp\\setup2099225664.exe <==== ATTENTION
Task: {AE13D5DE-F830-4E3D-B01D-148530479116} - System32\Tasks\265edbc0 => C:\Users\*****-~1\AppData\Local\Temp\\setup4200798144.exe <==== ATTENTION
Task: {AF83CA38-58CE-4610-AFCA-459F88C6E38C} - System32\Tasks\MCVSurveyReminder3 => reminder.exe
Task: {BA9261A1-C464-4A08-B582-499B88C325EA} - System32\Tasks\{ABFA890E-19B0-46D9-A582-058578BB8F65} => pcalua.exe -a "C:\Program Files\Trojancheck 6\unins000.exe" -d "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojancheck 6"
Task: {BB74F04E-0A98-4793-85AC-588F73520826} - System32\Tasks\745cd680 => C:\Users\*****-~1\AppData\Local\Temp\\setup522521280.exe <==== ATTENTION
Task: {C03FCD7A-F17A-4C30-B194-412D951E162D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {CD69A141-90D3-4706-85A9-16E38748FB52} - System32\Tasks\bcd27f40 => C:\Users\*****-~1\AppData\Local\Temp\\setup1510311744.exe <==== ATTENTION
Task: {CFFD25B6-A21F-4F81-BEFF-A2EE387662A1} - System32\Tasks\f85fbf80 => C:\Users\*****-~1\AppData\Local\Temp\\setup2183864512.exe <==== ATTENTION
Task: {D3F07B14-4D25-435A-9FF1-A3665E731F9F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E1DC3877-6725-4C56-9628-258B877C3FDA} - \Microsoft\Windows\WindowsCalendar\Reminders - *****-***** No Task File <==== ATTENTION
Task: {E9A76A05-BDA6-4AB7-BAB0-45196D6AE30D} - System32\Tasks\MCVSurveyReminder1 => reminder.exe
Task: {EE04CFD9-B911-4ABA-B2D4-A1B0E90A25A4} - System32\Tasks\{A1EBE010-6567-4A23-BD72-27B12BE82F06} => Iexplore.exe hxxp://ui.skype.com/ui/0/6.20.0.104/de/abandoninstall?page=tsProgressBar
Task: {F276A72E-9ED4-4158-AFD5-139A0274CBA4} - System32\Tasks\9d1f9880 => C:\Users\*****-~1\AppData\Local\Temp\\setup978493568.exe <==== ATTENTION
Task: {F56357CF-48CE-4AAD-B481-98B03E68F168} - System32\Tasks\d8719480 => C:\Users\*****-~1\AppData\Local\Temp\\setup2386082240.exe <==== ATTENTION
Task: {FB47635A-451D-40A8-B9D8-5AAFECC166EC} - System32\Tasks\SONY\WSSU\WSSU => C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe [2007-06-15] (Sony Corporation)
Task: {FDC62037-CCDD-4758-9FF0-949A973B0161} - System32\Tasks\MCVSurveyReminder2 => reminder.exe
Task: {FEA7AE33-57B1-4E10-8F7C-24F88B867194} - System32\Tasks\3338ae00 => C:\Users\*****-~1\AppData\Local\Temp\\setup1972039872.exe <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2011-01-02 18:36 - 2009-11-04 13:14 - 00157696 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\lxeadrpp.dll
2006-12-22 08:31 - 2006-12-22 08:31 - 00108712 _____ () C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
2014-11-28 18:56 - 2011-11-18 15:51 - 03673944 _____ () C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
2007-07-20 17:37 - 2007-07-12 08:33 - 00010752 _____ () C:\Program Files\Sony\VAIO Event Service\VESBasePS.dll
2007-07-20 17:37 - 2007-07-12 08:33 - 00009728 _____ () C:\Program Files\Sony\VAIO Event Service\VESMgrSubPS.dll
2002-11-27 18:25 - 2002-11-27 18:25 - 00049152 _____ () C:\Program Files\LitexMedia\All To WMA Converter\WMAShellExt.dll
2015-03-21 21:19 - 2012-09-07 17:57 - 00452592 _____ () C:\Program Files\ASCOMP Software\Secure Eraser\SecEraser32.dll
2007-06-22 10:49 - 2007-06-22 10:49 - 00126976 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2011-01-02 18:29 - 2010-01-18 19:27 - 00770728 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
2011-01-02 18:29 - 2009-12-16 19:04 - 00389120 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeascw.dll
2011-01-02 18:31 - 2009-05-27 14:16 - 00192512 _____ () C:\Windows\system32\spool\drivers\w32x86\3\lxeadatr.dll
2011-01-02 18:29 - 2009-12-16 19:07 - 01159168 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeaDRS.dll
2011-01-02 18:29 - 2009-03-10 07:43 - 00155648 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeacaps.dll
2011-01-02 18:27 - 2009-02-20 10:48 - 00299008 _____ () C:\Windows\system32\lxeasm.dll
2011-01-02 18:27 - 2009-04-28 09:56 - 00024064 _____ () C:\Windows\system32\lxeasmr.dll
2011-01-02 18:28 - 2010-01-18 19:27 - 00139944 _____ () C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
2011-01-02 18:28 - 2009-03-30 14:37 - 00708608 _____ () C:\Program Files\Lexmark S300-S400 Series\Epwizard.DLL
2011-01-02 18:28 - 2009-03-30 14:35 - 00159744 _____ () C:\Program Files\Lexmark S300-S400 Series\customui.dll
2011-01-02 18:28 - 2009-03-30 14:35 - 00118784 _____ () C:\Program Files\Lexmark S300-S400 Series\Eputil.DLL
2011-01-02 18:28 - 2009-03-30 14:35 - 00139264 _____ () C:\Program Files\Lexmark S300-S400 Series\Imagutil.DLL
2011-01-02 18:28 - 2009-03-30 14:35 - 00061440 _____ () C:\Program Files\Lexmark S300-S400 Series\Epfunct.DLL
2011-01-02 18:29 - 2009-06-23 13:09 - 02203648 _____ () C:\Program Files\Lexmark S300-S400 Series\EPWizRes.dll
2011-01-02 18:29 - 2009-06-23 13:10 - 00045056 _____ () C:\Program Files\Lexmark S300-S400 Series\epstring.dll
2011-01-02 18:29 - 2009-06-23 13:11 - 00102400 _____ () C:\Program Files\Lexmark S300-S400 Series\EPOEMDll.dll
2011-01-02 18:28 - 2009-04-07 21:25 - 00409600 _____ () C:\Program Files\Lexmark S300-S400 Series\iptk.dll
2011-01-02 18:29 - 2009-03-02 16:25 - 00151552 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeaptp.dll
2015-03-29 13:58 - 2015-01-19 13:06 - 00053496 _____ () C:\Users\*****-*****\AppData\Local\temp\avgnt.exe\Avira.OE.ExtApi.dll
2012-03-20 20:44 - 2012-04-30 11:57 - 00039936 _____ () C:\Program Files\Sony\Sony PC Companion\TMonitorAPI.dll
2012-03-20 20:44 - 2014-12-04 15:18 - 00241152 _____ () C:\Program Files\Sony\Sony PC Companion\MExplorer.dll
2011-07-07 15:54 - 2011-07-07 15:54 - 00233984 _____ () C:\Program Files\Sony\Sony PC Companion\Report.dll
2011-11-01 20:32 - 2013-05-20 12:58 - 00620718 _____ () C:\Program Files\Sony\Sony PC Companion\sqlite3.dll
2012-03-20 20:44 - 2010-01-11 16:44 - 00053248 _____ () C:\Program Files\Sony\Sony PC Companion\VObject.dll
2012-01-27 12:02 - 2012-01-27 12:02 - 00569344 _____ () C:\Program Files\Sony\Sony PC Companion\PhoneUpdate.dll
2012-05-15 20:42 - 2012-05-15 20:42 - 00052224 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2012-05-15 20:42 - 2015-04-29 16:05 - 00065024 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll
2012-05-15 20:42 - 2015-04-29 16:05 - 00052736 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll
2012-05-15 20:42 - 2012-05-15 20:42 - 00117760 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2014-05-16 15:38 - 2014-05-08 19:26 - 03145536 _____ () C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
2007-06-22 10:34 - 2007-06-22 10:34 - 00389120 _____ () C:\Windows\system32\btwhidcs.DLL
2012-03-20 20:44 - 2014-06-23 09:07 - 00113376 _____ () C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
2010-05-04 16:36 - 2010-05-04 16:36 - 00970752 _____ () C:\Program Files\OpenOffice.org 3\program\libxml2.dll
2013-10-07 21:21 - 2013-10-07 21:21 - 01777664 _____ () C:\Program Files\Google\Google Earth\client\QtCore4.dll
2013-10-07 21:24 - 2013-10-07 21:24 - 01224192 _____ () C:\Program Files\Google\Google Earth\client\IGCore.dll
2013-10-07 21:24 - 2013-10-07 21:24 - 00290816 _____ () C:\Program Files\Google\Google Earth\client\IGUtils.dll
2013-10-07 21:24 - 2013-10-07 21:24 - 00631808 _____ () C:\Program Files\Google\Google Earth\client\IGMath.dll
2013-10-07 21:24 - 2013-10-07 21:24 - 01393664 _____ () C:\Program Files\Google\Google Earth\client\alchemy\ogl\IGSg.dll
2013-10-07 21:24 - 2013-10-07 21:24 - 00751104 _____ () C:\Program Files\Google\Google Earth\client\alchemy\ogl\IGAttrs.dll
2013-10-07 21:24 - 2013-10-07 21:24 - 03148288 _____ () C:\Program Files\Google\Google Earth\client\alchemy\ogl\IGGfx.dll
2013-10-07 21:52 - 2013-10-07 21:52 - 17652224 _____ () C:\Program Files\Google\Google Earth\client\googleearth_free.dll
2013-10-07 21:24 - 2013-10-07 21:24 - 00726016 _____ () C:\Program Files\Google\Google Earth\client\IGExportCommon.dll
2013-10-07 21:24 - 2013-10-07 21:24 - 01050624 _____ () C:\Program Files\Google\Google Earth\client\IGOpt.dll
2013-10-07 21:32 - 2013-10-07 21:32 - 00015872 _____ () C:\Program Files\Google\Google Earth\client\alchemyext.dll
2013-10-07 21:21 - 2013-10-07 21:21 - 07877632 _____ () C:\Program Files\Google\Google Earth\client\QtWebKit4.dll
2013-10-07 21:21 - 2013-10-07 21:21 - 06174208 _____ () C:\Program Files\Google\Google Earth\client\QtGui4.dll
2013-10-07 21:21 - 2013-10-07 21:21 - 00518656 _____ () C:\Program Files\Google\Google Earth\client\QtNetwork4.dll
2013-10-07 21:28 - 2013-10-07 21:28 - 00086528 _____ () C:\Program Files\Google\Google Earth\client\ge_expat.dll
2013-10-07 21:21 - 2013-10-07 21:21 - 00018944 _____ () C:\Program Files\Google\Google Earth\client\imageformats\qgif4.dll
2013-10-07 21:21 - 2013-10-07 21:21 - 00158208 _____ () C:\Program Files\Google\Google Earth\client\imageformats\qjpeg4.dll
2013-10-07 21:24 - 2013-10-07 21:24 - 00145408 _____ () C:\Program Files\Google\Google Earth\client\alchemy\optimizations\IGOptExtension.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, the associated entry will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\intervideo.com -> www.intervideo.com


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\img19.jpg
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\Wallpaper -> C:\windows\Web\Wallpaper\img24.jpg
DNS Servers: 192.168.2.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: FirebirdServerMAGIXInstance => 3
MSCONFIG\Services: FLEXnet Licensing Service => 3
MSCONFIG\Services: GoogleDesktopManager-051210-111108 => 3
MSCONFIG\Services: gupdate1ca0ac0f00c0a80 => 2
MSCONFIG\Services: OMSI download service => 2
MSCONFIG\Services: PACSPTISVR => 3
MSCONFIG\Services: SBSDWSCService => 2
MSCONFIG\Services: sdAuxService => 2
MSCONFIG\Services: sdCoreService => 2
MSCONFIG\startupfolder: C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk => C:\Windows\pss\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk.Startup
MSCONFIG\startupfolder: C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Picture Motion Browser Medien-Prüfung.lnk => C:\Windows\pss\Picture Motion Browser Medien-Prüfung.lnk.Startup
MSCONFIG\startupreg: Apoint => C:\Program Files\Apoint\Apoint.exe
MSCONFIG\startupreg: Google Desktop Search => "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
MSCONFIG\startupreg: googletalk => C:\Program Files\Google\Google Talk\googletalk.exe /autostart
MSCONFIG\startupreg: ISBMgr.exe => "C:\Program Files\Sony\ISB Utility\ISBMgr.exe"
MSCONFIG\startupreg: LogitechQuickCamRibbon => "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: TrayServer => C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe

==================== FirewallRules (whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

FirewallRules: [WinCollab-Out-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-Out-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-DFSR-Out-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe
FirewallRules: [WinCollab-DFSR-In-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe
FirewallRules: [TCP Query User{3B5F652A-2913-4AA5-B3B0-E5CC4BBA9F70}C:\program files\internet explorer\iexplore.exe] => (Block) C:\program files\internet explorer\iexplore.exe
FirewallRules: [UDP Query User{A36CB363-2FF8-4903-8A7C-C02CE966C1F1}C:\program files\internet explorer\iexplore.exe] => (Block) C:\program files\internet explorer\iexplore.exe
FirewallRules: [TCP Query User{E80BA0B8-D827-458C-8FD9-2D631C0FFD53}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{23E3452E-7136-4515-9716-FDED0157294D}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [{B1A8B887-4149-4978-8C22-5B4E4EF82C9D}] => (Allow) C:\Program Files\Google\Google Talk\googletalk.exe
FirewallRules: [{CD94BE39-19A6-4FBE-9FB5-AEA69041C4CA}] => (Allow) C:\Program Files\Google\Google Talk\googletalk.exe
FirewallRules: [TCP Query User{5E869D36-5320-423E-9517-9CE576D8EE6E}C:\program files\icq6\icq.exe] => (Allow) C:\program files\icq6\icq.exe
FirewallRules: [UDP Query User{7272C993-B27A-4643-A1FA-239F96ABF88A}C:\program files\icq6\icq.exe] => (Allow) C:\program files\icq6\icq.exe
FirewallRules: [{2F76F63C-3E81-46B8-A40F-C090250E5121}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{7B883190-8DCA-48D9-BF04-B6436BF2D68F}] => (Allow) C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe
FirewallRules: [{582A7AD1-45D1-41F9-BC17-967E429CAD2B}] => (Allow) C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe
FirewallRules: [TCP Query User{979E4801-5A3C-4C83-BEC9-282B531A3BCA}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe
FirewallRules: [UDP Query User{88714FC2-53DC-4290-83FA-FC17966E8607}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe
FirewallRules: [{4C069130-9D72-4690-ABAD-59264BEBDE46}] => (Allow) C:\Program Files\Logitech\Logitech Vid\Vid.exe
FirewallRules: [{55DD818E-E59D-4D8F-A931-8186811C12FA}] => (Allow) C:\Program Files\Logitech\Logitech Vid\Vid.exe
FirewallRules: [{E7F71EDC-C852-482E-A9B3-C7FF11DCA41C}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{976B6ED5-5F4A-49F7-B6EF-EE60BE4C79EC}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{62D57FE4-9C0D-4B5A-AEA3-9DEECCCD2DD5}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{975D58E6-48F6-44F5-88EF-C500CF0B31CB}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{0E545E18-1A24-4409-81B0-C5323F823E18}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [{D6E42861-8F37-4A0E-A7F6-5B974FD73C18}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [{5313CBFB-A857-44D6-9D0A-49542EDBFA07}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [{9C3F0B2E-5001-4202-AF2C-9766A24078B5}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [TCP Query User{51A1958F-15D5-4163-836D-24DD28F87BDA}C:\program files\google\google earth\client\googleearth.exe] => (Allow) C:\program files\google\google earth\client\googleearth.exe
FirewallRules: [UDP Query User{77C0DF32-131E-4C60-A2A9-4407B44931DA}C:\program files\google\google earth\client\googleearth.exe] => (Allow) C:\program files\google\google earth\client\googleearth.exe
FirewallRules: [{54386AB4-35A0-41A9-AC43-3F393890E8C5}] => (Allow) C:\Users\*****-*****\Downloads\SweetImSetup(2).exe
FirewallRules: [{C1AF6C87-ADE7-4F01-B286-182C3B27031C}] => (Allow) C:\Users\*****-*****\Downloads\SweetImSetup(2).exe
FirewallRules: [{19F499D9-E22F-4B7B-A625-2536A4161B5D}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{5E615F98-E78C-4F14-B759-A062E0E5A7E3}] => (Allow) svchost.exe
FirewallRules: [{1A45F8CA-5A2B-45D0-A425-5E56F27CB0C6}] => (Allow) C:\Windows\system32\lxeacoms.exe
FirewallRules: [{F893CABE-D527-44E0-AD3B-4B58AAA1E35F}] => (Allow) C:\Windows\system32\LXEAcoms.exe
FirewallRules: [{2FA57709-F8ED-4E11-9026-1A8D6C5587D2}] => (Allow) C:\Windows\system32\LXEAcoms.exe
FirewallRules: [{86CA48FB-F57A-4219-8856-305C1A74FD07}] => (Allow) C:\Windows\system32\LXEAcoms.exe
FirewallRules: [{923D2D0D-2946-49A1-B658-29E21F747F8E}] => (Allow) LPort=80
FirewallRules: [{165A8488-4303-4BF4-8B78-5F1292778B64}] => (Allow) LPort=80
FirewallRules: [{CE82E6BD-BEE2-4A92-BE44-91249CEE4865}] => (Allow) LPort=80
FirewallRules: [TCP Query User{E1B1D6BA-97D1-428C-8D6F-4BF2877C9B25}C:\program files\mozilla firefox\plugin-container.exe] => (Allow) C:\program files\mozilla firefox\plugin-container.exe
FirewallRules: [UDP Query User{B7526044-05C8-4C49-964A-6EC5237DA87B}C:\program files\mozilla firefox\plugin-container.exe] => (Allow) C:\program files\mozilla firefox\plugin-container.exe
FirewallRules: [TCP Query User{0CA17F66-DBB8-4BB7-AF9C-FA8F4EBC634F}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [UDP Query User{156CD726-4881-4067-B22F-EFA8889397A4}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [{16642D4E-0A46-4768-AB55-F971CE044475}] => (Allow) C:\Users\*****-*****\Downloads\Facemoods.exe
FirewallRules: [{DA4DB6A1-FB7B-40AC-B99A-CA71037185C7}] => (Allow) C:\Users\*****-*****\Downloads\Facemoods.exe
FirewallRules: [{7DFBF625-08A6-482F-BBED-1F7D8A225DCF}] => (Allow) C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
FirewallRules: [{6658554D-038D-45BD-B83D-712744C6681F}] => (Allow) C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
FirewallRules: [{CD4CF5F6-A738-48D1-9197-ACCB676AC8B0}] => (Allow) F:\Network\EpsonNetSetup\ENEasyApp.exe
FirewallRules: [{B6400087-61E2-48E7-A628-2428D77210A7}] => (Allow) F:\Network\EpsonNetSetup\ENEasyApp.exe
FirewallRules: [TCP Query User{3A4DF019-0634-481F-A9A2-10FE650CFC10}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [UDP Query User{6C32446C-F773-4F95-BB11-489C4328A2D6}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [TCP Query User{E8F0CD5E-56CF-412D-ABC6-AB8AE51DDDB2}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [UDP Query User{02802447-B624-4CD1-94AB-56D1F8911D0A}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [{AB520453-681B-4C74-A0D1-C14D9C45364D}] => (Allow) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
FirewallRules: [{F32889DA-746A-4104-9EF4-0B494E4CE06B}] => (Allow) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
FirewallRules: [TCP Query User{5CD138C6-6F08-4D37-8B0E-21BC1778CFA0}C:\users\*****-*****\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\*****-*****\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{583F07B1-2C96-4C1C-991F-A64EDD56D7A8}C:\users\*****-*****\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\*****-*****\appdata\local\akamai\netsession_win.exe
FirewallRules: [{B4196523-6227-4D9D-A336-BEFFFB00C074}] => (Allow) C:\Program Files\Iminent\Iminent.exe
FirewallRules: [{9A384077-6EB8-4A1B-9527-0F82284AED5E}] => (Allow) C:\Program Files\Iminent\Iminent.Messengers.exe
FirewallRules: [{840500EA-1B36-49F8-ADA1-72DF568513BE}] => (Allow) C:\Users\*****-***** 2\AppData\Local\temp\incredibar_installer.exe
FirewallRules: [{8F9428E9-58F9-4111-A8D1-DD743E4D99BE}] => (Allow) C:\Users\*****-***** 2\AppData\Local\temp\incredibar_installer.exe
FirewallRules: [{E31B7123-C67D-4429-8454-8B78998A650D}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com
FirewallRules: [{0C8AC61D-91C4-4850-8976-4F6D6AE16C88}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe
FirewallRules: [{EACCA4A9-8378-42DB-A710-66EF61F99DF4}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe
FirewallRules: [{E5892559-F382-4172-A6E5-5AE724BF8F70}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com
FirewallRules: [{299E924D-BFDE-473E-A87E-ABE967C11DF3}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe
FirewallRules: [{5C89EA99-D2E8-4781-8B6E-25BD47198E52}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe
FirewallRules: [TCP Query User{2F219C78-FFFD-48C4-BD02-3808C8B52B6C}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Block) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe
FirewallRules: [UDP Query User{18F63728-CE3A-4BDA-A23B-CCADE5A22D47}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Block) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe
FirewallRules: [{1FD3EA95-53CB-4DAB-9529-2F6D44F51E50}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [TCP Query User{7B048147-BBF8-477D-BB55-C179514AAE1C}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [UDP Query User{CD09FD84-DFA0-4C0D-B682-28676FC5DD0F}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [{27DF86F7-0EFA-4AC5-80CF-59150145427F}] => (Allow) C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
FirewallRules: [{1CA8A470-28FA-4CBF-8691-14E995457C68}] => (Allow) C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
FirewallRules: [{C2E9A825-94BE-4DFF-8E8D-C3389A3B24BB}] => (Allow) C:\Program Files\Tobit Radio.fx\Client\rfx-client.exe
FirewallRules: [{A9DB86FF-43AF-41D5-BD16-8A25A84AE13D}] => (Allow) C:\Program Files\Tobit Radio.fx\Client\rfx-client.exe
FirewallRules: [TCP Query User{A72AE89A-F6B7-4F79-B2C8-06F12EFFC27D}C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe] => (Block) C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{00871E66-EC05-4BA8-93F3-340056C50437}C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe] => (Block) C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe

==================== Faulty Device Manager Devices =============

Name: Intel(R) 82852/82855 GM/GME-Grafikcontroller (Microsoft Corporation - XDDM)
Description: Intel(R) 82852/82855 GM/GME-Grafikcontroller (Microsoft Corporation - XDDM)
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel Corporation
Service: ialm
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/29/2015 04:06:24 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.Systray.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.Systray.Program.Main(System.String[])

Error: (04/29/2015 04:01:40 PM) (Source: EventSystem) (EventID: 4609) (User: )
Description: d:\longhorn\com\complus\src\events\tier2\eventsystem2.cpp38180070005

Error: (04/29/2015 03:59:10 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.ServiceHost.ServiceHost.SetDefaultCulture()
  bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
  bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
  bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
  bei System.Threading.ThreadPoolWorkQueue.Dispatch()
  bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (04/29/2015 03:58:41 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.ServiceHost.ServiceHost.SetDefaultCulture()
  bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
  bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
  bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
  bei System.Threading.ThreadPoolWorkQueue.Dispatch()
  bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (04/29/2015 03:58:01 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.ServiceHost.ServiceHost.SetDefaultCulture()
  bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
  bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
  bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
  bei System.Threading.ThreadPoolWorkQueue.Dispatch()
  bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (04/29/2015 03:56:27 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Das Plug-In-Modul konnte nicht geladen werden. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5}) (Fehlercode = 0x80042019)

Error: (04/29/2015 03:56:10 PM) (Source: ESENT) (EventID: 489) (User: )
Description: avguard (552) GaviDB_0: Versuch, Datei "C:\ProgramData\Avira\AntiVir Desktop\EVENTDB\gavi3.db" für den Lesezugriff zu öffnen, ist mit Systemfehler 3 (0x00000003): "Das System kann den angegebenen Pfad nicht finden. " fehlgeschlagen. Fehler -1023 (0xfffffc01) beim Öffnen von Dateien.

Error: (04/29/2015 03:56:10 PM) (Source: ESENT) (EventID: 489) (User: )
Description: avguard (552) GaviDB_0: Versuch, Datei "C:\ProgramData\Avira\AntiVir Desktop\EVENTDB\gavi3.db" für den Lesezugriff zu öffnen, ist mit Systemfehler 3 (0x00000003): "Das System kann den angegebenen Pfad nicht finden. " fehlgeschlagen. Fehler -1023 (0xfffffc01) beim Öffnen von Dateien.

Error: (04/29/2015 03:56:10 PM) (Source: ESENT) (EventID: 489) (User: )
Description: avguard (552) GaviDB_0: Versuch, Datei "C:\ProgramData\Avira\AntiVir Desktop\EVENTDB\gavi3.db" für den Lesezugriff zu öffnen, ist mit Systemfehler 3 (0x00000003): "Das System kann den angegebenen Pfad nicht finden. " fehlgeschlagen. Fehler -1023 (0xfffffc01) beim Öffnen von Dateien.

Error: (04/29/2015 03:56:10 PM) (Source: ESENT) (EventID: 489) (User: )
Description: avguard (552) GaviDB_0: Versuch, Datei "C:\ProgramData\Avira\AntiVir Desktop\EVENTDB\gavi3.db" für den Lesezugriff zu öffnen, ist mit Systemfehler 3 (0x00000003): "Das System kann den angegebenen Pfad nicht finden. " fehlgeschlagen. Fehler -1023 (0xfffffc01) beim Öffnen von Dateien.


System errors:
=============
Error: (04/29/2015 03:59:10 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Avira Service Host3

Error: (04/29/2015 03:58:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Avira Service Host2100001Neustart des Diensts

Error: (04/29/2015 03:58:01 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Avira Service Host1100001Neustart des Diensts

Error: (04/29/2015 03:57:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: lxeaCATSCustConnectService%%1053

Error: (04/29/2015 03:57:33 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: 30000lxeaCATSCustConnectService

Error: (04/29/2015 03:57:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Parallel port driver%%1058

Error: (04/29/2015 03:57:09 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)

Error: (04/29/2015 03:56:53 PM) (Source: TermService) (EventID: 1057) (User: )
Description: Fehler beim Erstellen eines neuen selbstsignierten Zertifikats für die Terminalserver-Authentifizierung bei SSL-Verbindungen auf dem Terminalserver. Der betreffende Statuscode war Schlüssel ist im angegebenen Status nicht gültig.
.

Error: (04/29/2015 03:55:57 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am 28.04.2015 um 23:54:10 unerwartet heruntergefahren.

Error: (04/28/2015 06:07:28 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: 0x80070643Definition Update for Windows Defender - KB915597 (Definition 1.197.802.0){9D5EC6AB-2B6E-4A21-ACCF-92E5510C9E5D}200


Microsoft Office Sessions:
=========================
Error: (01/07/2015 11:09:14 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2993 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 11:09:13 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2965 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 11:09:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2951 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (03/26/2014 10:07:27 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 13351 seconds with 360 seconds of active time.  This session ended with a crash.

Error: (02/27/2014 06:29:37 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1742 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (05/02/2013 02:23:23 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 678 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (12/13/2012 11:26:31 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 436 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (07/11/2012 08:17:25 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 44 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (06/14/2012 10:14:17 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 700 seconds with 660 seconds of active time.  This session ended with a crash.

Error: (06/14/2012 10:02:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1237 seconds with 1200 seconds of active time.  This session ended with a crash.


CodeIntegrity Errors:
===================================
  Date: 2015-04-27 19:02:11.918
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:11.212
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:10.589
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:09.988
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:08.591
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:07.927
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:07.287
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:06.589
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-24 19:06:11.038
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-24 19:06:10.195
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz
Percentage of memory in use: 93%
Total physical RAM: 2045.69 MB
Available physical RAM: 132.7 MB
Total Pagefile: 4336.6 MB
Available Pagefile: 1812.91 MB
Total Virtual: 2047.88 MB
Available Virtual: 1911.32 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:176.24 GB) (Free:92.46 GB) NTFS ==>[Drive with boot components (obtained from BCD)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 186.3 GB) (Disk ID: A8CB6A4C)
Partition 1: (Not Active) - (Size=10.1 GB) - (Type=27)
Partition 2: (Active) - (Size=176.2 GB) - (Type=07 NTFS)

==================== End Of Log ============================


schrauber 30.04.2015 07:22

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

Task: {043D68F3-3670-43A0-B6D5-57F13FF9F9A7} - System32\Tasks\3cfc12c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup4282120128.exe <==== ATTENTION

Task: {10D60821-F8E1-475A-83E8-701EA8E4B1F4} - System32\Tasks\ef6fab80 => C:\Users\*****-~1\AppData\Local\Temp\\setup542040320.exe <==== ATTENTION

Task: {16D7CE70-497A-4FE4-8C4C-244FAA0734CE} - System32\Tasks\49055640 => C:\Users\*****-~1\AppData\Local\Temp\\setup499886528.exe <==== ATTENTION

Task: {2FEF6F31-1C03-441F-95EE-C0881A257656} - System32\Tasks\7bb0880 => C:\Users\*****-~1\AppData\Local\Temp\\setup3595865216.exe <==== ATTENTION

Task: {38DC70C8-5701-41B4-807F-9D4516FF09E7} - System32\Tasks\46de95c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup3316319744.exe <==== ATTENTION

Task: {50AC27F5-D9EB-4BF2-BE03-FC9AF110F37B} - System32\Tasks\e3c09e00 => C:\Users\*****-~1\AppData\Local\Temp\\setup2577851392.exe <==== ATTENTION

Task: {601E4951-95BA-4388-8522-79849722B245} - System32\Tasks\221db200 => C:\Users\*****-~1\AppData\Local\Temp\\setup4129418752.exe <==== ATTENTION

Task: {64CED321-9BDA-438C-8EAE-9FA9F12FD1F1} - System32\Tasks\d8662340 => C:\Users\*****-~1\AppData\Local\Temp\\setup2016372352.exe <==== ATTENTION

Task: {7A796D5F-7CBC-4FAE-9015-B38AA747B38A} - System32\Tasks\8340e7c0 => C:\Users\*****-~1\AppData\Local\Temp\\setup1373268928.exe <==== ATTENTION

Task: {874F7FCC-AF76-442E-A24A-E763321339C5} - System32\Tasks\b4899d80 => C:\Users\*****-~1\AppData\Local\Temp\\setup2355517632.exe <==== ATTENTION

Task: {8CA16ED4-2F50-4900-858E-059AC05BC624} - System32\Tasks\1d5fc740 => C:\Users\*****-~1\AppData\Local\Temp\\setup2435663488.exe <==== ATTENTION

Task: {91EEDBC4-E166-41C0-BD6A-0E0BAB4C9DAF} - System32\Tasks\f9bd8a40 => C:\Users\*****-~1\AppData\Local\Temp\\setup2014348480.exe <==== ATTENTION

Task: {9EA1BE1B-B9AE-42DD-AFD5-8BAAD7523A32} - \Optimizer Pro Schedule No Task File <==== ATTENTION

Task: {A69B794D-07FE-4088-A6F5-FC92516DE4E7} - System32\Tasks\b7c95780 => C:\Users\*****-~1\AppData\Local\Temp\\setup2099225664.exe <==== ATTENTION

Task: {AE13D5DE-F830-4E3D-B01D-148530479116} - System32\Tasks\265edbc0 => C:\Users\*****-~1\AppData\Local\Temp\\setup4200798144.exe <==== ATTENTION

Task: {BB74F04E-0A98-4793-85AC-588F73520826} - System32\Tasks\745cd680 => C:\Users\*****-~1\AppData\Local\Temp\\setup522521280.exe <==== ATTENTION

Task: {CD69A141-90D3-4706-85A9-16E38748FB52} - System32\Tasks\bcd27f40 => C:\Users\*****-~1\AppData\Local\Temp\\setup1510311744.exe <==== ATTENTION

Task: {CFFD25B6-A21F-4F81-BEFF-A2EE387662A1} - System32\Tasks\f85fbf80 => C:\Users\*****-~1\AppData\Local\Temp\\setup2183864512.exe <==== ATTENTION

Task: {E1DC3877-6725-4C56-9628-258B877C3FDA} - \Microsoft\Windows\WindowsCalendar\Reminders - *****-***** No Task File <==== ATTENTION

Task: {F276A72E-9ED4-4158-AFD5-139A0274CBA4} - System32\Tasks\9d1f9880 => C:\Users\*****-~1\AppData\Local\Temp\\setup978493568.exe <==== ATTENTION

Task: {F56357CF-48CE-4AAD-B481-98B03E68F168} - System32\Tasks\d8719480 => C:\Users\*****-~1\AppData\Local\Temp\\setup2386082240.exe <==== ATTENTION

Task: {FEA7AE33-57B1-4E10-8F7C-24F88B867194} - System32\Tasks\3338ae00 => C:\Users\*****-~1\AppData\Local\Temp\\setup1972039872.exe <==== ATTENTION
Emptytemp:


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.




FRST öffnen, Haken setzen bei Addition und scannen, poste bitte beide Logs.

Jami87 30.04.2015 17:55

Durch was muss ich denn die Sterne ersetzen? Durch den Benutzernamen oder PC-Namen oder woher weiß ich, was das jetzt ist?!?

schrauber 01.05.2015 15:30

Na, wer hat denn den Namen rausgelöscht und durch Sterne ersetzt? DU, also musst DU das ja wissen :D

Benutzername :)

Jami87 01.05.2015 19:27

Mh, ja, das war ich wohl ;-). Aber ob das mit dem Benutzernamen stimmt? Irgendwie besteht der Nutzername ja aus 2 Bestandteilen und einem Bindestrich, der ja nun hier gar nicht mehr da ist?!? Wenn ich das jetzt falsch ersetze: Kann ich da was "kaputt" machen?

Also ich weiß nicht, ob ich "*****-~1" jetzt durch
"NutzernameTeil1-~1" ersetzen muss oder durch
"NutzernameTeil1-NutzernameTeil2-~1" oder durch
"NutzernameTeil1-NutzernameTeil2~1" oder wie auch immer?!?

schrauber 02.05.2015 14:03

Lösch die **** inklusive der Tilde und der 1, also zwischen den Backslashes alles weg, und Nutzername komplett rein.

Wenn was schief geht wird der Fix nicht funktionieren, sonst nix :)

Jami87 02.05.2015 20:57

So, hier nun die Fixlog, ich hoffe, es ist richtig so geworden?!?

Code:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 27-04-2015 01
Ran by *****-***** 2 at 2015-05-02 21:25:44 Run:1
Running from c:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Task: {043D68F3-3670-43A0-B6D5-57F13FF9F9A7} - System32\Tasks\3cfc12c0 => C:\Users\*****-*****\AppData\Local\Temp\\setup4282120128.exe <==== ATTENTION

Task: {10D60821-F8E1-475A-83E8-701EA8E4B1F4} - System32\Tasks\ef6fab80 => C:\Users\*****-*****\AppData\Local\Temp\\setup542040320.exe <==== ATTENTION

Task: {16D7CE70-497A-4FE4-8C4C-244FAA0734CE} - System32\Tasks\49055640 => C:\Users\*****-*****\AppData\Local\Temp\\setup499886528.exe <==== ATTENTION

Task: {2FEF6F31-1C03-441F-95EE-C0881A257656} - System32\Tasks\7bb0880 => C:\Users\*****-*****\AppData\Local\Temp\\setup3595865216.exe <==== ATTENTION

Task: {38DC70C8-5701-41B4-807F-9D4516FF09E7} - System32\Tasks\46de95c0 => C:\Users\*****-*****\AppData\Local\Temp\\setup3316319744.exe <==== ATTENTION

Task: {50AC27F5-D9EB-4BF2-BE03-FC9AF110F37B} - System32\Tasks\e3c09e00 => C:\Users\*****-*****\AppData\Local\Temp\\setup2577851392.exe <==== ATTENTION

Task: {601E4951-95BA-4388-8522-79849722B245} - System32\Tasks\221db200 => C:\Users\*****-*****\AppData\Local\Temp\\setup4129418752.exe <==== ATTENTION

Task: {64CED321-9BDA-438C-8EAE-9FA9F12FD1F1} - System32\Tasks\d8662340 => C:\Users\*****-*****\AppData\Local\Temp\\setup2016372352.exe <==== ATTENTION

Task: {7A796D5F-7CBC-4FAE-9015-B38AA747B38A} - System32\Tasks\8340e7c0 => C:\Users\*****-*****\AppData\Local\Temp\\setup1373268928.exe <==== ATTENTION

Task: {874F7FCC-AF76-442E-A24A-E763321339C5} - System32\Tasks\b4899d80 => C:\Users\*****-*****\AppData\Local\Temp\\setup2355517632.exe <==== ATTENTION

Task: {8CA16ED4-2F50-4900-858E-059AC05BC624} - System32\Tasks\1d5fc740 => C:\Users\*****-*****\AppData\Local\Temp\\setup2435663488.exe <==== ATTENTION

Task: {91EEDBC4-E166-41C0-BD6A-0E0BAB4C9DAF} - System32\Tasks\f9bd8a40 => C:\Users\*****-*****\AppData\Local\Temp\\setup2014348480.exe <==== ATTENTION

Task: {9EA1BE1B-B9AE-42DD-AFD5-8BAAD7523A32} - \Optimizer Pro Schedule No Task File <==== ATTENTION

Task: {A69B794D-07FE-4088-A6F5-FC92516DE4E7} - System32\Tasks\b7c95780 => C:\Users\*****-*****\AppData\Local\Temp\\setup2099225664.exe <==== ATTENTION

Task: {AE13D5DE-F830-4E3D-B01D-148530479116} - System32\Tasks\265edbc0 => C:\Users\*****-*****\AppData\Local\Temp\\setup4200798144.exe <==== ATTENTION

Task: {BB74F04E-0A98-4793-85AC-588F73520826} - System32\Tasks\745cd680 => C:\Users\*****-*****\AppData\Local\Temp\\setup522521280.exe <==== ATTENTION

Task: {CD69A141-90D3-4706-85A9-16E38748FB52} - System32\Tasks\bcd27f40 => C:\Users\*****-*****\AppData\Local\Temp\\setup1510311744.exe <==== ATTENTION

Task: {CFFD25B6-A21F-4F81-BEFF-A2EE387662A1} - System32\Tasks\f85fbf80 => C:\Users\*****-*****\AppData\Local\Temp\\setup2183864512.exe <==== ATTENTION

Task: {E1DC3877-6725-4C56-9628-258B877C3FDA} - \Microsoft\Windows\WindowsCalendar\Reminders - *****-***** No Task File <==== ATTENTION

Task: {F276A72E-9ED4-4158-AFD5-139A0274CBA4} - System32\Tasks\9d1f9880 => C:\Users\*****-*****\AppData\Local\Temp\\setup978493568.exe <==== ATTENTION

Task: {F56357CF-48CE-4AAD-B481-98B03E68F168} - System32\Tasks\d8719480 => C:\Users\*****-*****\AppData\Local\Temp\\setup2386082240.exe <==== ATTENTION

Task: {FEA7AE33-57B1-4E10-8F7C-24F88B867194} - System32\Tasks\3338ae00 => C:\Users\*****-*****\AppData\Local\Temp\\setup1972039872.exe <==== ATTENTION
Emptytemp:
       
*****************

"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{043D68F3-3670-43A0-B6D5-57F13FF9F9A7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{043D68F3-3670-43A0-B6D5-57F13FF9F9A7}" => Key deleted successfully.
C:\Windows\System32\Tasks\3cfc12c0 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3cfc12c0" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{10D60821-F8E1-475A-83E8-701EA8E4B1F4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{10D60821-F8E1-475A-83E8-701EA8E4B1F4}" => Key deleted successfully.
C:\Windows\System32\Tasks\ef6fab80 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ef6fab80" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{16D7CE70-497A-4FE4-8C4C-244FAA0734CE}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16D7CE70-497A-4FE4-8C4C-244FAA0734CE}" => Key deleted successfully.
C:\Windows\System32\Tasks\49055640 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\49055640" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2FEF6F31-1C03-441F-95EE-C0881A257656}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2FEF6F31-1C03-441F-95EE-C0881A257656}" => Key deleted successfully.
C:\Windows\System32\Tasks\7bb0880 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\7bb0880" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{38DC70C8-5701-41B4-807F-9D4516FF09E7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{38DC70C8-5701-41B4-807F-9D4516FF09E7}" => Key deleted successfully.
C:\Windows\System32\Tasks\46de95c0 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\46de95c0" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{50AC27F5-D9EB-4BF2-BE03-FC9AF110F37B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{50AC27F5-D9EB-4BF2-BE03-FC9AF110F37B}" => Key deleted successfully.
C:\Windows\System32\Tasks\e3c09e00 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e3c09e00" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{601E4951-95BA-4388-8522-79849722B245}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{601E4951-95BA-4388-8522-79849722B245}" => Key deleted successfully.
C:\Windows\System32\Tasks\221db200 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\221db200" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{64CED321-9BDA-438C-8EAE-9FA9F12FD1F1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{64CED321-9BDA-438C-8EAE-9FA9F12FD1F1}" => Key deleted successfully.
C:\Windows\System32\Tasks\d8662340 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d8662340" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7A796D5F-7CBC-4FAE-9015-B38AA747B38A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A796D5F-7CBC-4FAE-9015-B38AA747B38A}" => Key deleted successfully.
C:\Windows\System32\Tasks\8340e7c0 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8340e7c0" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{874F7FCC-AF76-442E-A24A-E763321339C5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{874F7FCC-AF76-442E-A24A-E763321339C5}" => Key deleted successfully.
C:\Windows\System32\Tasks\b4899d80 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b4899d80" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8CA16ED4-2F50-4900-858E-059AC05BC624}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8CA16ED4-2F50-4900-858E-059AC05BC624}" => Key deleted successfully.
C:\Windows\System32\Tasks\1d5fc740 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1d5fc740" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{91EEDBC4-E166-41C0-BD6A-0E0BAB4C9DAF}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91EEDBC4-E166-41C0-BD6A-0E0BAB4C9DAF}" => Key deleted successfully.
C:\Windows\System32\Tasks\f9bd8a40 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f9bd8a40" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9EA1BE1B-B9AE-42DD-AFD5-8BAAD7523A32}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9EA1BE1B-B9AE-42DD-AFD5-8BAAD7523A32}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Optimizer Pro Schedule" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A69B794D-07FE-4088-A6F5-FC92516DE4E7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A69B794D-07FE-4088-A6F5-FC92516DE4E7}" => Key deleted successfully.
C:\Windows\System32\Tasks\b7c95780 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b7c95780" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AE13D5DE-F830-4E3D-B01D-148530479116}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AE13D5DE-F830-4E3D-B01D-148530479116}" => Key deleted successfully.
C:\Windows\System32\Tasks\265edbc0 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\265edbc0" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BB74F04E-0A98-4793-85AC-588F73520826}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BB74F04E-0A98-4793-85AC-588F73520826}" => Key deleted successfully.
C:\Windows\System32\Tasks\745cd680 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\745cd680" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CD69A141-90D3-4706-85A9-16E38748FB52}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CD69A141-90D3-4706-85A9-16E38748FB52}" => Key deleted successfully.
C:\Windows\System32\Tasks\bcd27f40 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\bcd27f40" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CFFD25B6-A21F-4F81-BEFF-A2EE387662A1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CFFD25B6-A21F-4F81-BEFF-A2EE387662A1}" => Key deleted successfully.
C:\Windows\System32\Tasks\f85fbf80 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f85fbf80" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E1DC3877-6725-4C56-9628-258B877C3FDA}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E1DC3877-6725-4C56-9628-258B877C3FDA}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsCalendar\Reminders - *****-*****" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F276A72E-9ED4-4158-AFD5-139A0274CBA4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F276A72E-9ED4-4158-AFD5-139A0274CBA4}" => Key deleted successfully.
C:\Windows\System32\Tasks\9d1f9880 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\9d1f9880" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F56357CF-48CE-4AAD-B481-98B03E68F168}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F56357CF-48CE-4AAD-B481-98B03E68F168}" => Key deleted successfully.
C:\Windows\System32\Tasks\d8719480 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d8719480" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FEA7AE33-57B1-4E10-8F7C-24F88B867194}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FEA7AE33-57B1-4E10-8F7C-24F88B867194}" => Key deleted successfully.
C:\Windows\System32\Tasks\3338ae00 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3338ae00" => Key deleted successfully.
EmptyTemp: => Removed 107.4 MB temporary data.


The system needed a reboot.

==== End of Fixlog 21:26:15 ====


Code:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 27-04-2015 01
Ran by *****-***** 2 at 2015-05-02 21:25:44 Run:1
Running from c:\Users\*****-*****\Downloads
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Task: {043D68F3-3670-43A0-B6D5-57F13FF9F9A7} - System32\Tasks\3cfc12c0 => C:\Users\*****-*****\AppData\Local\Temp\\setup4282120128.exe <==== ATTENTION

Task: {10D60821-F8E1-475A-83E8-701EA8E4B1F4} - System32\Tasks\ef6fab80 => C:\Users\*****-*****\AppData\Local\Temp\\setup542040320.exe <==== ATTENTION

Task: {16D7CE70-497A-4FE4-8C4C-244FAA0734CE} - System32\Tasks\49055640 => C:\Users\*****-*****\AppData\Local\Temp\\setup499886528.exe <==== ATTENTION

Task: {2FEF6F31-1C03-441F-95EE-C0881A257656} - System32\Tasks\7bb0880 => C:\Users\*****-*****\AppData\Local\Temp\\setup3595865216.exe <==== ATTENTION

Task: {38DC70C8-5701-41B4-807F-9D4516FF09E7} - System32\Tasks\46de95c0 => C:\Users\*****-*****\AppData\Local\Temp\\setup3316319744.exe <==== ATTENTION

Task: {50AC27F5-D9EB-4BF2-BE03-FC9AF110F37B} - System32\Tasks\e3c09e00 => C:\Users\*****-*****\AppData\Local\Temp\\setup2577851392.exe <==== ATTENTION

Task: {601E4951-95BA-4388-8522-79849722B245} - System32\Tasks\221db200 => C:\Users\*****-*****\AppData\Local\Temp\\setup4129418752.exe <==== ATTENTION

Task: {64CED321-9BDA-438C-8EAE-9FA9F12FD1F1} - System32\Tasks\d8662340 => C:\Users\*****-*****\AppData\Local\Temp\\setup2016372352.exe <==== ATTENTION

Task: {7A796D5F-7CBC-4FAE-9015-B38AA747B38A} - System32\Tasks\8340e7c0 => C:\Users\*****-*****\AppData\Local\Temp\\setup1373268928.exe <==== ATTENTION

Task: {874F7FCC-AF76-442E-A24A-E763321339C5} - System32\Tasks\b4899d80 => C:\Users\*****-*****\AppData\Local\Temp\\setup2355517632.exe <==== ATTENTION

Task: {8CA16ED4-2F50-4900-858E-059AC05BC624} - System32\Tasks\1d5fc740 => C:\Users\*****-*****\AppData\Local\Temp\\setup2435663488.exe <==== ATTENTION

Task: {91EEDBC4-E166-41C0-BD6A-0E0BAB4C9DAF} - System32\Tasks\f9bd8a40 => C:\Users\*****-*****\AppData\Local\Temp\\setup2014348480.exe <==== ATTENTION

Task: {9EA1BE1B-B9AE-42DD-AFD5-8BAAD7523A32} - \Optimizer Pro Schedule No Task File <==== ATTENTION

Task: {A69B794D-07FE-4088-A6F5-FC92516DE4E7} - System32\Tasks\b7c95780 => C:\Users\*****-*****\AppData\Local\Temp\\setup2099225664.exe <==== ATTENTION

Task: {AE13D5DE-F830-4E3D-B01D-148530479116} - System32\Tasks\265edbc0 => C:\Users\*****-*****\AppData\Local\Temp\\setup4200798144.exe <==== ATTENTION

Task: {BB74F04E-0A98-4793-85AC-588F73520826} - System32\Tasks\745cd680 => C:\Users\*****-*****\AppData\Local\Temp\\setup522521280.exe <==== ATTENTION

Task: {CD69A141-90D3-4706-85A9-16E38748FB52} - System32\Tasks\bcd27f40 => C:\Users\*****-*****\AppData\Local\Temp\\setup1510311744.exe <==== ATTENTION

Task: {CFFD25B6-A21F-4F81-BEFF-A2EE387662A1} - System32\Tasks\f85fbf80 => C:\Users\*****-*****\AppData\Local\Temp\\setup2183864512.exe <==== ATTENTION

Task: {E1DC3877-6725-4C56-9628-258B877C3FDA} - \Microsoft\Windows\WindowsCalendar\Reminders - *****-***** No Task File <==== ATTENTION

Task: {F276A72E-9ED4-4158-AFD5-139A0274CBA4} - System32\Tasks\9d1f9880 => C:\Users\*****-*****\AppData\Local\Temp\\setup978493568.exe <==== ATTENTION

Task: {F56357CF-48CE-4AAD-B481-98B03E68F168} - System32\Tasks\d8719480 => C:\Users\*****-*****\AppData\Local\Temp\\setup2386082240.exe <==== ATTENTION

Task: {FEA7AE33-57B1-4E10-8F7C-24F88B867194} - System32\Tasks\3338ae00 => C:\Users\*****-*****\AppData\Local\Temp\\setup1972039872.exe <==== ATTENTION
Emptytemp:
       
*****************

"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{043D68F3-3670-43A0-B6D5-57F13FF9F9A7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{043D68F3-3670-43A0-B6D5-57F13FF9F9A7}" => Key deleted successfully.
C:\Windows\System32\Tasks\3cfc12c0 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3cfc12c0" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{10D60821-F8E1-475A-83E8-701EA8E4B1F4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{10D60821-F8E1-475A-83E8-701EA8E4B1F4}" => Key deleted successfully.
C:\Windows\System32\Tasks\ef6fab80 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ef6fab80" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{16D7CE70-497A-4FE4-8C4C-244FAA0734CE}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16D7CE70-497A-4FE4-8C4C-244FAA0734CE}" => Key deleted successfully.
C:\Windows\System32\Tasks\49055640 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\49055640" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2FEF6F31-1C03-441F-95EE-C0881A257656}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2FEF6F31-1C03-441F-95EE-C0881A257656}" => Key deleted successfully.
C:\Windows\System32\Tasks\7bb0880 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\7bb0880" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{38DC70C8-5701-41B4-807F-9D4516FF09E7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{38DC70C8-5701-41B4-807F-9D4516FF09E7}" => Key deleted successfully.
C:\Windows\System32\Tasks\46de95c0 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\46de95c0" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{50AC27F5-D9EB-4BF2-BE03-FC9AF110F37B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{50AC27F5-D9EB-4BF2-BE03-FC9AF110F37B}" => Key deleted successfully.
C:\Windows\System32\Tasks\e3c09e00 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e3c09e00" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{601E4951-95BA-4388-8522-79849722B245}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{601E4951-95BA-4388-8522-79849722B245}" => Key deleted successfully.
C:\Windows\System32\Tasks\221db200 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\221db200" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{64CED321-9BDA-438C-8EAE-9FA9F12FD1F1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{64CED321-9BDA-438C-8EAE-9FA9F12FD1F1}" => Key deleted successfully.
C:\Windows\System32\Tasks\d8662340 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d8662340" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7A796D5F-7CBC-4FAE-9015-B38AA747B38A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A796D5F-7CBC-4FAE-9015-B38AA747B38A}" => Key deleted successfully.
C:\Windows\System32\Tasks\8340e7c0 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\8340e7c0" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{874F7FCC-AF76-442E-A24A-E763321339C5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{874F7FCC-AF76-442E-A24A-E763321339C5}" => Key deleted successfully.
C:\Windows\System32\Tasks\b4899d80 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b4899d80" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8CA16ED4-2F50-4900-858E-059AC05BC624}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8CA16ED4-2F50-4900-858E-059AC05BC624}" => Key deleted successfully.
C:\Windows\System32\Tasks\1d5fc740 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1d5fc740" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{91EEDBC4-E166-41C0-BD6A-0E0BAB4C9DAF}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91EEDBC4-E166-41C0-BD6A-0E0BAB4C9DAF}" => Key deleted successfully.
C:\Windows\System32\Tasks\f9bd8a40 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f9bd8a40" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9EA1BE1B-B9AE-42DD-AFD5-8BAAD7523A32}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9EA1BE1B-B9AE-42DD-AFD5-8BAAD7523A32}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Optimizer Pro Schedule" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A69B794D-07FE-4088-A6F5-FC92516DE4E7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A69B794D-07FE-4088-A6F5-FC92516DE4E7}" => Key deleted successfully.
C:\Windows\System32\Tasks\b7c95780 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\b7c95780" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AE13D5DE-F830-4E3D-B01D-148530479116}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AE13D5DE-F830-4E3D-B01D-148530479116}" => Key deleted successfully.
C:\Windows\System32\Tasks\265edbc0 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\265edbc0" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BB74F04E-0A98-4793-85AC-588F73520826}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BB74F04E-0A98-4793-85AC-588F73520826}" => Key deleted successfully.
C:\Windows\System32\Tasks\745cd680 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\745cd680" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CD69A141-90D3-4706-85A9-16E38748FB52}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CD69A141-90D3-4706-85A9-16E38748FB52}" => Key deleted successfully.
C:\Windows\System32\Tasks\bcd27f40 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\bcd27f40" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CFFD25B6-A21F-4F81-BEFF-A2EE387662A1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CFFD25B6-A21F-4F81-BEFF-A2EE387662A1}" => Key deleted successfully.
C:\Windows\System32\Tasks\f85fbf80 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f85fbf80" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E1DC3877-6725-4C56-9628-258B877C3FDA}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E1DC3877-6725-4C56-9628-258B877C3FDA}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsCalendar\Reminders - *****-*****" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F276A72E-9ED4-4158-AFD5-139A0274CBA4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F276A72E-9ED4-4158-AFD5-139A0274CBA4}" => Key deleted successfully.
C:\Windows\System32\Tasks\9d1f9880 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\9d1f9880" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F56357CF-48CE-4AAD-B481-98B03E68F168}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F56357CF-48CE-4AAD-B481-98B03E68F168}" => Key deleted successfully.
C:\Windows\System32\Tasks\d8719480 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\d8719480" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FEA7AE33-57B1-4E10-8F7C-24F88B867194}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FEA7AE33-57B1-4E10-8F7C-24F88B867194}" => Key deleted successfully.
C:\Windows\System32\Tasks\3338ae00 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3338ae00" => Key deleted successfully.
EmptyTemp: => Removed 107.4 MB temporary data.


The system needed a reboot.

==== End of Fixlog 21:26:15 ====


FRST Logfile:

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02-05-2015
Ran by *****-***** 2 (administrator) on ***** on 02-05-2015 21:50:37
Running from c:\Users\*****-*****\Downloads\FRST-OlderVersion\FRST-OlderVersion\FRST-OlderVersion
Loaded Profiles: *****-***** & *****-***** 2 (Available profiles: *****-***** & *****-***** 2)
Platform: Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
() C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
( ) C:\Windows\System32\lxeacoms.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe
() C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
(Secunia) C:\Program Files\Secunia\PSI\psia.exe
(SigmaTel, Inc.) C:\Windows\System32\stacsv.exe
(Ulead Systems, Inc.) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
(Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdSync.exe
() C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
() C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
() C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Secunia) C:\Program Files\Secunia\PSI\psi_tray.exe
(Deutsche Telekom AG) C:\Program Files\Netzmanager\netzmanager.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(Akamai Technologies, Inc.) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Mozilla Corporation) C:\Users\*****-*****\AppData\Local\Mozilla Firefox\firefox.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdSync.exe [215552 2006-11-02] (Microsoft Corporation)
HKLM\...\Run: [lxeamon.exe] => C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe [770728 2010-01-18] ()
HKLM\...\Run: [EzPrint] => C:\Program Files\Lexmark S300-S400 Series\ezprint.exe [139944 2010-01-18] ()
HKLM\...\Run: [UVS10 Preload] => C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe [36864 2006-08-09] (Ulead Systems, Inc.)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [726320 2015-04-08] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [NvSvc] => RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
HKLM\...\RunOnce: [{D2C5E510-BE6D-42CC-9F61-E4F939078474}] => C:\Windows\system32\cmd.exe /c rmdir /q /s "C:\Program Files\Lexmark Printable Web"
HKLM\...\RunOnce: [*EmptyTemp] => cmd /c rd /q/s C:\FRST\Temp
HKLM\...\RunOnce: [*WerKernelReporting] => C:\Windows\SYSTEM32\WerFault.exe [217088 2009-04-11] (Microsoft Corporation)
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2011-05-04] (SUPERAntiSpyware.com)
Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll [2007-07-12] (Sony Corporation)
HKLM\...\Policies\Explorer: [NoCDBurning] 0
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [455392 2015-04-10] (Sony)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [3905920 2012-06-05] (SUPERAntiSpyware.com)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Akamai NetSession Interface] => C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [Amazon Cloud Player] => C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3145536 2014-05-08] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON SX430 Series (Kopie 1)] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHAE.EXE [212480 2012-05-18] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Run: [EPSON Stylus DX8400 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEE.EXE [182272 2007-04-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\...\RunOnce: [Report] => \AdwCleaner\AdwCleaner[S0].txt [1747 2015-04-27] ()
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\System32\vaiomov.scr [53248 2004-12-27] (Sony Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk [2007-07-20]
ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014-02-17]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2012-05-16]
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DSL-Manager.lnk [2008-02-26]
ShortcutTarget: DSL-Manager.lnk -> C:\Program Files\DSL-Manager\DslMgr.exe (No File)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Netzmanager.lnk [2014-05-18]
ShortcutTarget: Netzmanager.lnk -> C:\Program Files\Netzmanager\netzmanager.exe (Deutsche Telekom AG)
Startup: C:\Users\*****-*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2010-12-14]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://vosteran.com/?f=1&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzyyCyByCyCyDzyyD0BtCzytN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFyBtFtCtN1L1CzutCyEtBzytDyD1V1BtAtN1L1G1B1V1N2Y1L1Qzu2SyB0E0EyCyE0DyE0EtGtAzy0AzztG0AtCzztCtGyCtAtC0AtGyCyEyDtDtC0AtB0C0Fzz0E0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0EtA0E0F0AyC0CzztGyDtAzzyCtGyEyD0D0CtGzyzzyCtAtGyDtD0Bzyzz0EzzyCzzyByEtD2Q&cr=1074813290&ir=
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.club-vaio.com
hxxp://partnerpage.google.com/eu.sony.com/de
hxxp://www.club-vaio.com/vbc
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {399AFF92-3607-4429-B2E3-99BECE8D2374} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=internet-tab&tpc=internet&ptl=std&classification=internet-tab_internet_std&q={searchTerms}&br=ie7-toi
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {53DBFD01-FF03-4A5F-8F4B-7BF8E909A975} URL = hxxp://www.amazon.de/gp/search?ie=UTF8&keywords={searchTerms}&tag=interactivemesuche-21&index=blended&linkCode=ur2&camp=1638&creative=6742
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {C4802B53-BBDC-409E-B3EF-57C0B6708018} URL = hxxp://adfarm.mediaplex.com/ad/ck/707-1403-18840-0?mpro=hxxp://search.ebay.de/search/search.dll?shortcut=4&query={searchTerms}
SearchScopes: HKU\S-1-5-21-3850073437-3280287025-709413035-1003 -> {E6BFE530-DE68-4D85-A111-513CA45EFAF0} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=wiki-tab&tpc=internet&ptl=std&classification=wiki-tab_internet_std&q={searchTerms}&br=ie7-toi
BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-28] (Oracle Corporation)
BHO: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-28] (Oracle Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-03-30] (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
Toolbar: HKU\S-1-5-21-3850073437-3280287025-709413035-1000 -> No Name - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} -  No File
DPF: {00000161-9980-0010-8000-00AA00389B71} hxxp://codecs.microsoft.com/codecs/i386/msaud.cab
DPF: {33564D57-9980-0010-8000-00AA00389B71} hxxp://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-01-25] (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} -  No File
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\*****-***** 2\AppData\Roaming\Mozilla\Firefox\Profiles\4qlxy2p6.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-28] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2007-07-13] (DivX, Inc)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @google.com/npPicasa2,version=2.0.0 -> C:\Program Files\Picasa2\npPicasa2.dll [2008-08-21] (Google, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Picasa2\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-28] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-28] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @pack.google.com/Google Updater;version=14 -> C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll [2011-09-16] (Google)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin HKU\S-1-5-21-3850073437-3280287025-709413035-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-03-09] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-06-04] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-06-04] (Apple Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\googledesktop.xml [2010-06-26]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2009-02-14]
FF HKLM\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2012-12-12]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{D250ED92-1791-42C4-B441-E90BF89B9BEF}] - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF}
FF Extension: XULRunner - C:\Users\*****-*****\AppData\Local\{D250ED92-1791-42C4-B441-E90BF89B9BEF} [2011-04-02]
FF HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3850073437-3280287025-709413035-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2011-08-12] (SUPERAntiSpyware.com) [File not signed]
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AdobeActiveFileMonitor5.0; C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [108712 2006-12-22] ()
S2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [815352 2015-04-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [434424 2015-04-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [434424 2015-04-08] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1004032 2015-04-08] (Avira Operations GmbH & Co. KG)
S2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe [443752 2008-08-18] (DisplayLink Corp.)
R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION)
S4 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [File not signed]
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [74752 2011-12-30] (Freemake) [File not signed]
S4 GoogleDesktopManager-051210-111108; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2010-06-26] (Google)
S2 gupdate1ca0ac0f00c0a80; C:\Program Files\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S2 lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeaserv.exe [193192 2010-04-14] (Lexmark International, Inc.)
R2 lxea_device; C:\Windows\system32\lxeacoms.exe [598696 2010-01-07] ( )
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation) [File not signed]
R2 Netzmanager Service; C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [2635776 2012-07-20] (Deutsche Telekom AG) [File not signed]
S4 OMSI download service; C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [90112 2009-04-30] () [File not signed]
S4 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] () [File not signed]
R2 Radio.fx; C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe [3673944 2011-11-18] ()
R2 Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [994360 2011-07-29] (Secunia)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
S3 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation) [File not signed]
R2 STacSV; C:\Windows\system32\stacsv.exe [94208 2007-06-13] (SigmaTel, Inc.)
R2 UleadBurningHelper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [49152 2006-09-28] (Ulead Systems, Inc.) [File not signed]
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2007-06-28] (Sony Corporation) [File not signed]
R2 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182392 2007-07-12] (Sony Corporation)
S3 VAIOMediaPlatform-IntegratedServer-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe [2523136 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-IntegratedServer-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-Mobile-Gateway; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe [499712 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-AppServer; C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe [745472 2007-01-10] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-HTTP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe [397312 2007-06-20] (Sony Corporation) [File not signed]
S3 VAIOMediaPlatform-UCLS-UPnP; C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe [1089536 2007-06-20] (Sony Corporation) [File not signed]
R2 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [292152 2007-07-05] (Sony Corporation)
R3 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [274432 2007-06-28] (Sony Corporation) [File not signed]
R2 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2007-08-28] (Sony Corporation) [File not signed]
R2 VzFw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe [131072 2007-08-28] (Sony Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)
S2 CLTNetCnService; "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2014-11-24] (Avira Operations GmbH & Co. KG)
R3 dlkmd; C:\Windows\system32\drivers\dlkmd.sys [287856 2008-08-18] (DisplayLink Corp.)
R0 dlkmdldr; C:\Windows\System32\drivers\dlkmdldr.sys [13424 2008-08-18] (DisplayLink Corp.)
R3 KMWDFILTER; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [17408 2008-10-09] (Windows (R) Codename Longhorn DDK provider)
R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25624 2009-04-30] ()
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-03-14] (Malwarebytes Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf.sys [15544 2010-09-01] (Secunia)
S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [86824 2008-10-21] (MCCI Corporation)
S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [15016 2008-10-21] (MCCI Corporation)
S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [114600 2008-10-21] (MCCI Corporation)
S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [108328 2008-10-21] (MCCI Corporation)
S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [26024 2008-10-21] (MCCI Corporation)
S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [104616 2008-10-21] (MCCI Corporation)
S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [109736 2008-10-21] (MCCI Corporation)
S3 s116bus; C:\Windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation)
S3 s116mdfl; C:\Windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation)
S3 s116mdm; C:\Windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation)
S3 s116mgmt; C:\Windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation)
S3 s116nd5; C:\Windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation)
S3 s116obex; C:\Windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation)
S3 s116unic; C:\Windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation)
S3 s3017bus; C:\Windows\System32\DRIVERS\s3017bus.sys [83880 2007-12-10] (MCCI Corporation)
S3 s3017mdfl; C:\Windows\System32\DRIVERS\s3017mdfl.sys [15016 2007-12-10] (MCCI Corporation)
S3 s3017mdm; C:\Windows\System32\DRIVERS\s3017mdm.sys [110632 2007-12-10] (MCCI Corporation)
S3 s3017mgmt; C:\Windows\System32\DRIVERS\s3017mgmt.sys [104616 2007-12-10] (MCCI Corporation)
S3 s3017nd5; C:\Windows\System32\DRIVERS\s3017nd5.sys [25512 2007-12-10] (MCCI Corporation)
S3 s3017obex; C:\Windows\System32\DRIVERS\s3017obex.sys [100648 2007-12-10] (MCCI Corporation)
S3 s3017unic; C:\Windows\System32\DRIVERS\s3017unic.sys [110120 2007-12-10] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2014-11-24] (Avira GmbH)
R3 STHDA; C:\Windows\System32\drivers\stwrt.sys [326656 2007-06-13] (SigmaTel, Inc.)
S3 StkTMini; C:\Windows\System32\Drivers\StkTMini.sys [468096 2007-11-15] (Syntek)
R3 TelekomNM3; C:\Program Files\Netzmanager\NMInfraIS2\Driver\TelekomNM3.sys [35040 2010-09-16] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH)
R3 ti21sony; C:\Windows\System32\drivers\ti21sony.sys [812544 2007-06-06] (Texas Instruments)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 catchme; \??\C:\Users\*****-~2\AppData\Local\Temp\catchme.sys [X]
S3 dsltestSp5; System32\Drivers\dsltestSp5.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-02 21:25 - 2015-05-02 21:22 - 00003377 _____ () C:\Users\*****-*****\Desktop\Fixlist.txt
2015-04-30 18:08 - 2015-04-30 18:08 - 00001879 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2015-04-29 16:21 - 2015-04-29 16:22 - 00852616 _____ () C:\Users\*****-*****\Desktop\SecurityCheck(3).exe
2015-04-28 23:48 - 2015-04-28 23:48 - 00852616 _____ () C:\Users\*****-*****\Downloads\SecurityCheck(2).exe
2015-04-28 23:46 - 2015-04-28 23:47 - 00852616 _____ () C:\Users\*****-*****\Downloads\SecurityCheck(1).exe
2015-04-28 18:52 - 2015-04-28 18:53 - 02347384 _____ (ESET) C:\Users\*****-*****\Downloads\esetsmartinstaller_deu(2).exe
2015-04-27 19:59 - 2015-04-29 16:39 - 00000000 ____D () C:\Users\*****-*****\Downloads\FRST-OlderVersion
2015-04-27 19:55 - 2015-04-27 19:55 - 00001163 _____ () C:\Users\*****-***** 2\Desktop\JRT.txt
2015-04-27 19:52 - 2015-04-27 19:52 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-*****-Windows-Vista-(TM)-Home-Premium-(32-bit).dat
2015-04-27 19:52 - 2015-04-27 19:52 - 00000000 ____D () C:\RegBackup
2015-04-27 19:47 - 2015-04-27 19:48 - 02715845 _____ (Thisisu) C:\Users\*****-*****\Downloads\JRT(1).exe
2015-04-27 19:27 - 2015-04-27 19:27 - 00000341 _____ () C:\Users\*****-*****\Desktop\*****-***** - Verknüpfung.lnk
2015-04-27 19:26 - 2015-04-27 19:31 - 00000000 ____D () C:\AdwCleaner
2015-04-27 19:25 - 2015-04-27 19:25 - 02224640 _____ () C:\Users\*****-*****\Downloads\AdwCleaner_4.202.exe
2015-04-27 19:17 - 2015-04-27 19:22 - 00000343 _____ () C:\Users\*****-*****\Documents\mbam.txt
2015-04-27 19:16 - 2015-04-27 19:16 - 00000343 _____ () C:\Users\*****-*****\Documents\mbam2.txt
2015-04-25 10:17 - 2015-04-25 10:17 - 01187872 _____ (Uniblue Systems Limited ) C:\Users\*****-*****\Downloads\pcmechanicpm.exe
2015-04-24 19:42 - 2015-04-24 19:42 - 00013954 _____ () C:\ComboFix.txt
2015-04-24 18:58 - 2015-04-24 19:42 - 00000000 ____D () C:\ComboFix
2015-04-24 18:22 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-04-24 18:22 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-04-24 18:22 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2015-04-24 18:22 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2015-04-24 18:19 - 2015-04-24 19:42 - 00000000 ____D () C:\Qoobox
2015-04-24 18:14 - 2015-04-24 18:41 - 05619466 ____R (Swearware) C:\Users\*****-*****\Downloads\ComboFix.exe
2015-04-23 18:20 - 2015-04-23 18:20 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Mozilla Firefox
2015-04-23 18:07 - 2015-05-02 21:50 - 00000000 ____D () C:\FRST
2015-04-23 18:07 - 2015-04-27 20:19 - 00044909 _____ () C:\Users\*****-*****\Downloads\FRST.txt
2015-04-23 07:46 - 2015-03-09 03:01 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-23 07:33 - 2015-03-05 04:24 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-23 07:29 - 2015-03-05 04:32 - 00244152 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-23 07:29 - 2015-03-05 04:23 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-23 07:27 - 2015-03-14 04:21 - 01205168 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-23 07:27 - 2015-03-13 03:51 - 03604920 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-04-23 07:27 - 2015-03-13 03:51 - 03552184 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-22 18:41 - 2015-03-10 01:06 - 12377600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-22 18:41 - 2015-03-10 01:03 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-22 18:41 - 2015-03-10 01:02 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-22 18:41 - 2015-03-10 01:00 - 09747968 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-22 18:41 - 2015-03-10 00:57 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-22 18:41 - 2015-03-10 00:57 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 01803264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-22 18:41 - 2015-03-10 00:56 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-04-22 18:41 - 2015-03-10 00:56 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-22 18:41 - 2015-03-10 00:55 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-22 18:41 - 2015-03-10 00:55 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-04-22 18:41 - 2015-03-10 00:55 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-04-22 18:41 - 2015-03-10 00:55 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-04-06 11:55 - 2015-04-06 11:55 - 00139504 _____ () C:\Windows\Minidump\Mini040615-01.dmp
2015-04-05 18:53 - 2015-05-01 13:06 - 00000000 ____D () C:\Users\*****-*****\Documents\Citavi 3

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-02 21:52 - 2008-02-16 15:49 - 00002631 _____ () C:\Users\*****-*****\Desktop\Microsoft Office Word 2007.lnk
2015-05-02 21:40 - 2008-02-06 15:54 - 01774589 _____ () C:\Windows\WindowsUpdate.log
2015-05-02 21:33 - 2011-01-02 18:31 - 00198070 _____ () C:\ProgramData\lxeascan.log
2015-05-02 21:33 - 2008-02-06 17:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.001
2015-05-02 21:31 - 2013-07-13 11:20 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job
2015-05-02 21:29 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-02 21:29 - 2006-11-02 14:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-02 21:29 - 2006-11-02 14:47 - 00003568 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-02 21:28 - 2007-07-20 16:28 - 01748782 _____ () C:\Windows\PFRO.log
2015-05-02 21:27 - 2007-07-20 15:34 - 00000012 _____ () C:\Windows\bthservsdp.dat
2015-05-02 21:27 - 2006-11-02 15:01 - 00032612 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-02 21:18 - 2009-07-22 13:50 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-02 12:35 - 2011-08-30 06:40 - 00001052 _____ () C:\Windows\Tasks\Google Software Updater.job
2015-05-02 12:27 - 2006-11-02 12:33 - 01623482 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-01 21:28 - 2008-02-06 17:25 - 00252513 _____ () C:\Users\*****-*****\AppData\Roaming\nvModes.dat
2015-04-30 18:10 - 2007-07-20 15:51 - 00805926 _____ () C:\Windows\DPINST.LOG
2015-04-30 18:08 - 2007-07-20 17:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-04-30 18:07 - 2007-07-20 16:01 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-04-29 18:32 - 2011-06-30 12:07 - 00001356 _____ () C:\Users\*****-*****\AppData\Local\d3d9caps.dat
2015-04-27 20:10 - 2015-03-21 22:03 - 00074678 _____ () C:\Users\*****-*****\Downloads\Addition.txt
2015-04-27 19:59 - 2015-03-21 21:54 - 01140736 _____ (Farbar) C:\Users\*****-*****\Downloads\FRST.exe
2015-04-27 19:28 - 2008-02-06 17:25 - 00000000 ____D () C:\Users\*****-*****
2015-04-27 19:16 - 2015-03-22 20:21 - 00000343 _____ () C:\Users\*****-*****\Desktop\mbam.txt
2015-04-27 17:58 - 2010-01-02 11:33 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2015-04-26 20:22 - 2008-02-10 12:56 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Skype
2015-04-24 19:37 - 2006-11-02 12:23 - 00000215 _____ () C:\Windows\system.ini
2015-04-23 17:03 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-04-23 07:46 - 2013-07-26 09:36 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-23 07:34 - 2006-11-02 12:24 - 125832184 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2015-04-23 07:33 - 2007-07-20 17:22 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-04-10 19:16 - 2008-02-16 15:49 - 00002673 _____ () C:\Users\*****-*****\Desktop\Microsoft Office PowerPoint 2007.lnk
2015-04-08 10:18 - 2015-02-21 14:06 - 00000000 ____D () C:\Users\*****-*****\AppData\Roaming\Avira
2015-04-08 10:07 - 2015-02-21 13:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-04-08 10:04 - 2012-04-26 06:31 - 00000000 ____D () C:\ProgramData\Avira
2015-04-06 12:54 - 2013-07-25 23:43 - 00000000 ____D () C:\ProgramData\Netzmanager
2015-04-06 12:54 - 2013-06-21 14:43 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-04-06 12:54 - 2012-06-24 11:07 - 00000000 ____D () C:\Users\*****-*****\AppData\Local\Akamai
2015-04-06 12:54 - 2012-05-23 07:59 - 00000000 ____D () C:\Users\*****-***** 2
2015-04-06 12:54 - 2011-05-25 13:59 - 00000000 ____D () C:\ProgramData\Ulead Systems
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\spool
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\Msdtc
2015-04-06 12:54 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\registration
2015-04-06 12:54 - 2006-11-02 12:22 - 66846720 _____ () C:\Windows\system32\config\software_previous
2015-04-06 12:54 - 2006-11-02 12:22 - 52166656 _____ () C:\Windows\system32\config\system_previous
2015-04-06 12:45 - 2006-11-02 12:22 - 49283072 _____ () C:\Windows\system32\config\components_previous
2015-04-06 12:45 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous
2015-04-06 11:55 - 2010-08-25 19:12 - 216125677 _____ () C:\Windows\MEMORY.DMP
2015-04-06 11:55 - 2008-05-16 22:19 - 00000000 ____D () C:\Windows\Minidump
2015-04-05 19:50 - 2006-11-02 12:22 - 00524288 _____ () C:\Windows\system32\config\default_previous
2015-04-05 19:49 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\security_previous

==================== Files in the root of some directories =======

2012-05-23 07:59 - 2015-03-11 00:53 - 0043239 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.001
2012-05-23 07:59 - 2007-08-06 15:21 - 0042479 _____ () C:\Users\*****-***** 2\AppData\Roaming\nvModes.dat
2012-06-30 11:35 - 2012-06-30 11:35 - 0000022 ___SH () C:\Users\*****-***** 2\AppData\Roaming\Windows1569_SettingsRepository.bin
2012-05-23 07:59 - 2015-03-28 16:42 - 0002032 _____ () C:\Users\*****-***** 2\AppData\Local\d3d9caps.dat
2012-05-23 07:59 - 2007-08-06 15:06 - 0018944 _____ () C:\Users\*****-***** 2\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-06-30 11:35 - 2012-06-30 11:35 - 0000000 _____ () C:\Users\*****-***** 2\AppData\Local\jv16PT_temp.tmp
2008-02-21 12:45 - 2008-02-21 12:45 - 0000305 _____ () C:\ProgramData\addr_file.html
2009-02-05 22:42 - 2009-02-05 22:42 - 0000056 _____ () C:\ProgramData\ezsidmv.dat
2011-01-02 18:39 - 2011-01-02 18:39 - 0000252 _____ () C:\ProgramData\FastPics.log
2011-03-01 17:18 - 2015-03-07 18:01 - 0045024 _____ () C:\ProgramData\lxea.log
2011-01-02 18:40 - 2011-01-02 18:42 - 0000438 _____ () C:\ProgramData\lxeaDiagnostics.log
2011-01-02 18:44 - 2011-06-02 10:10 - 0004439 _____ () C:\ProgramData\lxeaJSW.log
2011-01-02 18:31 - 2015-05-02 21:33 - 0198070 _____ () C:\ProgramData\lxeascan.log
2011-01-02 18:27 - 2011-01-02 18:27 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

Some content of TEMP:
====================
C:\Users\*****-*****\AppData\Local\temp\avgnt.exe


Some zero byte size files/folders:
==========================
C:\Windows\System32\nsprs.dll
C:\Windows\System32\serauth1.dll
C:\Windows\System32\serauth2.dll
C:\Windows\System32\ssprs.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-02 21:36

==================== End Of Log ============================

--- --- ---

--- --- ---

Jami87 02.05.2015 20:57

Code:

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 02-05-2015
Ran by *****-***** 2 at 2015-05-02 21:54:04
Running from c:\Users\*****-*****\Downloads\FRST-OlderVersion\FRST-OlderVersion\FRST-OlderVersion
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3850073437-3280287025-709413035-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3850073437-3280287025-709413035-1002 - Limited - Enabled)
Gast (S-1-5-21-3850073437-3280287025-709413035-501 - Limited - Disabled)
*****-***** (S-1-5-21-3850073437-3280287025-709413035-1000 - Limited - Enabled) => C:\Users\*****-*****
*****-***** 2 (S-1-5-21-3850073437-3280287025-709413035-1003 - Administrator - Enabled) => C:\Users\*****-***** 2

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"Durchstarten mit Ponky - Deutsch 1+2" (HKLM\...\"Durchstarten mit Ponky - Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Durchstarten mit Ponky - Mathe 1+2" (HKLM\...\"Durchstarten mit Ponky - Mathe 1+2") (Version: 2.00 - Engel Edition)
"Englisch in der Grundschule mit Ponky 1.+2. Kl." (HKLM\...\"Englisch in der Grundschule mit Ponky 1.+2. Kl.") (Version: 2.00 - Engel Edition)
"Ponky gezielt Deutsch 1+2" (HKLM\...\"Ponky gezielt Deutsch 1+2") (Version: 2.00 - Engel Edition)
"Ponky gezielt Mathe 1+2" (HKLM\...\"Ponky gezielt Mathe 1+2") (Version: 2.00 - Engel Edition)
7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
ABBYY FineReader 6.0 Sprint (HKLM\...\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}) (Version: 6.00.1395.4512 - ABBYY Software House)
ABBYY FineReader 9.0 Sprint (HKLM\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212 - ABBYY) Hidden
Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\Activation Assistant for the 2007 Microsoft Office suites) (Version:  - Microsoft Corporation)
Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0 - Microsoft Corporation) Hidden
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Media Player (HKLM\...\{95264530-5A22-8E7E-FE9D-D63A927BCAEA}) (Version: 1.7 - Adobe Systems Incorporated)
Adobe Photoshop Elements 5.0 (HKLM\...\Adobe Photoshop Elements 5) (Version: 5.0 - Adobe Systems, Inc.)
Adobe Premiere Elements 3.0.2 (HKLM\...\PremElem30) (Version: 3.0.2 - Ihr Firmenname)
Adobe Premiere Elements 3.0.2 Templates (HKLM\...\{6EACDDF4-4220-49A3-9204-984C86852C3D}) (Version: 1.0.0 - Ihr Firmenname)
Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.)
Akamai NetSession Interface (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Akamai) (Version:  - Akamai Technologies, Inc)
All To WMA Converter 1.7 (HKLM\...\All To WMA Converter_is1) (Version: 1.7 - All To WMA Converter)
Alps Pointing-device for VAIO (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version:  - )
Amazon Cloud Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\Amazon Amazon Cloud Player) (Version: 2.4.0.33 - Amazon Services LLC)
Any Video Converter 3.3.2 (HKLM\...\Any Video Converter_is1) (Version:  - Any-Video-Converter.com)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Aquanuma (HKLM\...\Aquanuma_is1) (Version:  - )
ArcSoft Magic-i Visual Effects Installer (HKLM\...\{9AB83A3C-604D-4B4F-AA25-A23A3FC39844}) (Version:  - ArcSoft)
Audacity 1.2.6 (HKLM\...\Audacity_is1) (Version:  - )
AutoUpdate (HKLM\...\{18D10072035C4515918F7E37EAFAACFC}) (Version: 1.1 - )
Avanquest update (HKLM\...\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}) (Version: 1.20 - Avanquest Software)
Avira (HKLM\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG)
Avira (Version: 1.1.30.21727 - Avira Operations & Co. KG) Hidden
Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.9.504 - Avira Operations GmbH & Co. KG)
AviSynth 2.5 (HKLM\...\AviSynth) (Version:  - )
Benutzerdefinierte Voreinstellungen für SonicStage Mastering Studio Audio Filter (HKLM\...\{EC37A846-53AC-4DA7-98FA-76A4E74AA900}) (Version: 2.3 - Sony Corporation)
Benutzerhandbuch - Grundlagen EPSON SX430 Series (HKLM\...\EPSON SX430 Series Bog) (Version:  - )
Benutzerhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Useg) (Version:  - )
Browser Address Error Redirector (HKLM\...\{3EE33958-7381-4E7B-A4F3-6E43098E9E9C}) (Version:  - )
Camera RAW Plug-In for EPSON Creativity Suite (HKLM\...\{93EA9C3E-BDFD-4309-A605-9B5BBC0CCEFD}) (Version: 2.2.0.0 - SEIKO EPSON CORPORATION)
Citavi (HKLM\...\{E12C6653-1FF0-4686-ADB8-589C13AE761F}) (Version: 3.3.0.0 - Swiss Academic Software)
Citavi 2.5 (HKLM\...\Citavi) (Version: 2.5.2.0 - Academic Software Zurich)
Click to DVD 2.0.05 Menu Data (HKLM\...\{9E407618-D9CD-4F39-9490-9ED45294073D}) (Version: 2.0.05 - Sony Corporation)
Click to DVD 2.6.00 (HKLM\...\{E809063C-51A3-4269-8984-D1EB742F2151}) (Version: 2.6.00 - Sony Corporation)
ConvertHelper 2.2 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version:  - DownloadHelper)
Denken und Rechnen 2 (HKLM\...\Denken und Rechnen 2) (Version:  - )
DHTML Editing Component (HKLM\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation)
DisplayLink Core Software (HKLM\...\{156E1F8D-3555-42F5-8DEC-5E830AF46847}) (Version: 4.5.13507.0 - DisplayLink Corp.)
DivX Codec (HKLM\...\{7B63B2922B174135AFC0E1377DD81EC2}) (Version: 6.6.1 - DivX, Inc.)
DivX Converter (HKLM\...\{B13A7C41581B411290FBC0395694E2A9}) (Version: 6.5 - DivX, Inc.)
DivX Player (HKLM\...\{8ADFC4160D694100B5B8A22DE9DCABD9}) (Version: 6.4.3 - DivXNetworks, Inc.)
DivxToDVD 0.5.2b (HKLM\...\VSO DivxToDVD_is1) (Version: 0.5.2b - VSO-Software SARL)
DSD Direct (HKLM\...\{82D5BACA-3619-4D34-99DB-3A65CFB4DA33}) (Version: 2.0.01 - Sony Corporation)
DSD Direct Player (HKLM\...\{533D0A8A-D7E7-4F15-BC9E-FF2916A6BAA7}) (Version: 1.0 - Sony Corporation)
DSD Playback Plug-in (HKLM\...\{009E7FB7-1775-4D89-8956-F5C9A1C019FC}) (Version: 1.1 - Sony Corporation)
EPSON Attach To Email (HKLM\...\InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5}) (Version: 1.01.0000 - SEIKO EPSON)
EPSON Attach To Email (Version: 1.01.0000 - SEIKO EPSON) Hidden
EPSON Copy Utility 3 (HKLM\...\{67EDD823-135A-4D59-87BD-950616D6E857}) (Version: 3.3.0.0 - )
EPSON Easy Photo Print (HKLM\...\{3D78F2A2-C893-4ABD-B5FE-AD7011837755}) (Version: 1.5.0.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print 2 (HKLM\...\{A02D7029-C4EF-44C1-9FD4-C0D3CA518113}) (Version: 2.2.4.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM\...\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}) (Version: 2.50.0000 - SEIKO EPSON CORPORATION)
EPSON File Manager (HKLM\...\{2EB81825-E9EE-44F4-8F51-1240C3898DC6}) (Version: 1.3.0.0 - )
EPSON Scan (HKLM\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON Scan Assistant (HKLM\...\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}) (Version: 1.10.00 - )
EPSON Stylus CX7300_CX8300_DX7400_DX8400 Handbuch (HKLM\...\EPSON Stylus CX7300_CX8300_DX7400_DX8400 Benutzerhandbuch) (Version:  - )
EPSON SX430 Series Printer Uninstall (HKLM\...\EPSON SX430 Series) (Version:  - SEIKO EPSON Corporation)
EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.4j - SEIKO EPSON CORPORATION)
ffdshow [rev 2844] [2009-03-30] (HKLM\...\ffdshow_is1) (Version: 1.0 - )
Firebird SQL Server - MAGIX Edition (HKLM\...\Firebird SQL Server D) (Version: 2.0.1.13 - MAGIX AG)
flatster (HKLM\...\{0ADF1B89-17EA-489C-86DF-6E33DA8520A6}_is1) (Version: 1.5 - flatster GmbH)
Free FLV Converter V 6.4.1 (HKLM\...\Free FLV Converter_is1) (Version:  - Koyote Soft)
Free Mp3 Wma Converter V 1.9 (HKLM\...\Free Mp3 Wma Converter_is1) (Version: 1.9.0.0 - Koyote Soft)
Free PDF to Word Doc Converter v1.1 (HKLM\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - www.hellopdf.com)
Free YouTube Download version 3.0.20.1228 (HKLM\...\Free YouTube Download_is1) (Version:  - DVDVideoSoft Ltd.)
Freemake Video Converter Version 3.0.1 (HKLM\...\Freemake Video Converter_is1) (Version: 3.0.1 - Ellora Assets Corporation)
Furnish Pro (HKLM\...\Furnish Pro) (Version:  - )
GearDrvs (Version: 1 - Symantec Corporation) Hidden
Google Desktop (HKLM\...\Google Desktop) (Version: 5.9.1005.12335 - Google)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Talk (remove only) (HKLM\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Talk (remove only) (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\{226b64e8-dc75-4eea-a6c8-abcb496320f2}-Google Talk) (Version:  - )
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
Google Updater (HKLM\...\Google Updater) (Version: 2.4.2432.1652 - Google Inc.)
HDAUDIO SoftV92 Data Fax Modem with SmartCP (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_104D0200) (Version:  - )
honestech VHS to DVD 2.0 SE (HKLM\...\{2856F5EA-E98A-40E4-BAD6-8C644A4A3F3C}) (Version: 2.0 - honestech)
IBM SPSS Statistics 22 (HKLM\...\{104875A1-D083-4A34-BC4F-3F635B7F8EF7}) (Version: 22.0.0.0 - IBM Corp)
ICQ7.2 (HKLM\...\{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}) (Version: 7.2 - ICQ)
Iminent (Version: 5.26.21.0 - Iminent) Hidden <==== ATTENTION
InterVideo Register Manager (Version: 1.0.4.0 - InterVideo Inc.) Hidden
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 40 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
jv16 PowerTools 2012 (HKLM\...\jv16 PowerTools 2011) (Version:  - Macecraft Software)
Lexmark S300-S400 Series (HKLM\...\Lexmark S300-S400 Series) (Version:  - Lexmark International, Inc.)
Lexmark Tools for Office (HKLM\...\{10812DE7-2E57-4740-B226-6B3BE34AF9D7}) (Version: 1.29.0.0 - )
Logitech Vid HD (HKLM\...\Logitech Vid) (Version: 7.2 (7259) - Logitech Inc..)
Logitech Webcam Software (HKLM\...\{AC96671C-2001-432C-9826-5266D84EF1DC}) (Version: 12.00.1280 - Logitech Inc.)
Logitech Webcam Software-Treiberpaket (HKLM\...\lvdrivers_12.0) (Version: 12.0.1278 - Logitech Inc.)
Löwenzahn und Pusteblume (HKLM\...\{C538AA5E-2F9C-48DC-AD5C-B21CE34EA10B}) (Version: 1.0.0 - *)
MAGIX Online Druck Service 2.3.2.0 (D) (HKLM\...\MAGIX Online Druck Service D) (Version: 2.3.2.0 - MAGIX AG)
MAGIX PC Visit (HKLM\...\MAGIX PC Visit D) (Version: 4.3.6.1987 - MAGIX AG)
MAGIX Video deluxe 2008 Trial 7.5.1.6 (D) (HKLM\...\MAGIX Video deluxe 2008 Trial D) (Version: 7.5.1.6 - MAGIX AG)
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
MAXQDA 10 (R250412) (HKLM\...\MAXQDA10) (Version: (R250412) - VERBI Software.Consult.Sozialforschung GmbH)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Medion GoPal Assistant 4.01.012 (HKLM\...\Medion GoPal Assistant) (Version: 4.1.12.0 - Medion)
Meine ersten Wörter (HKLM\...\it.clementoni.SapPrimeParoleDE.290A939A40FB4C06653AD1460C6BEBD4C065087B.1) (Version: 1.0 - Clementoni S.p.A.)
Meine ersten Wörter (Version: 1.0 - Clementoni S.p.A.) Hidden
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2698023) (HKLM\...\M2698023) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version:  - )
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - deu) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual J# .NET Redistributable Package 1.1 (HKLM\...\{1A655D51-1423-48A3-B748-8F5A0BE294C8}) (Version: 1.1.4322 - Microsoft)
Microsoft Works (HKLM\...\{4EA2F95F-A537-4d17-9E7F-6B3FF8D9BBE3}) (Version: 08.05.0822 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Moonlight MPEG-2 Decoder Pack (HKLM\...\Moonlight MPEG-2 Decoder Pack 2.1.4316) (Version: 2.1.4316 - Moonlight Cordless)
Mozilla Firefox 37.0.2 (x86 de) (HKLM\...\Mozilla Firefox 37.0.2 (x86 de)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 13.0.1 - Mozilla)
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB941833) (HKLM\...\{C523D256-313D-4866-B36A-F3DE528246EF}) (Version: 4.20.9849.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Musik & Audio Restaurator Pro 5.0 (HKLM\...\Musik & Audio Restaurator Pro 5_is1) (Version: 5.0 - Softfeld)
Nero Backup Drivers (HKLM\...\{F8EF9B71-53E7-41F5-8E54-47B4C979CB38}) (Version: 1.0.11100.8.0 - Nero AG)
Netzmanager (HKLM\...\Netzmanager) (Version: 1.081 - Deutsche Telekom AG)
Netzmanager (Version: 1.081 - Deutsche Telekom AG, Marmiko IT-Solutions GmbH) Hidden
Netzwerkhandbuch EPSON SX430 Series (HKLM\...\EPSON SX430 Series Netg) (Version:  - )
Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - )
Norton 360 (Version: 1.2.0.10 - Symantec Corporation) Hidden
Notebook BatteryInfo 1.3  (HKLM\...\BatteryInfo_Suite) (Version: 1.3 - Thomas Michel)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version:  - )
OpenMG Limited Patch 4.7-07-15-19-01 (HKLM\...\OpenMG HotFix4.7-07-13-22-01) (Version:  - )
OpenMG Secure Module 4.7.00 (HKLM\...\InstallShield_{CCD663AE-610D-4BDF-AAB0-E914B044527D}) (Version: 4.7.00.12140 - Sony Corporation)
OpenMG Secure Module 4.7.00 (Version: 4.7.00.12140 - Sony Corporation) Hidden
OpenOffice.org 3.2 (HKLM\...\{8D1E61D1-1395-4E97-997F-D002DB3A5074}) (Version: 3.2.9502 - OpenOffice.org)
PDF24 Creator 5.7.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
Photo Viewer V2.4 (HKLM\...\Photo Viewer) (Version:  - )
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Pixie 1.4.1 (HKLM\...\Pixie_is1) (Version: 1.4.1 - Pixie Developers)
QuickTime (HKLM\...\{5B09BD67-4C99-46A1-8161-B7208CE18121}) (Version: 7.3.0.70 - Apple Inc.)
Ravensburger tiptoi (HKLM\...\Ravensburger tiptoi) (Version:  - )
Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Rossmann Fotowelt Software 4.12.1 (HKLM\...\Rossmann Fotowelt Software) (Version: 4.12.1 - ORWO Net)
Rossmann Online Print Wizard Installer 1.0 (HKLM\...\Rossmannr Online Print Wizard Installer_is1) (Version:  - )
Roxio Easy Media Creator Home (HKLM\...\{B7FB0C86-41A4-4402-9A33-912C462042A0}) (Version: 9.0.178 - Roxio)
Scan2PDF 1.6 (HKLM\...\Scan2PDF_is1) (Version:  - Koma-Code)
Secunia PSI (2.0.0.4002) (HKLM\...\Secunia PSI) (Version:  - )
Secure Eraser (HKLM\...\Secure Eraser_is1) (Version: 4.2.0.1 - ASCOMP Software GmbH)
Setting Utility Series (HKLM\...\{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}) (Version: 3.0.00.07120 - Sony Corporation)
SigmaTel Audio (HKLM\...\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}) (Version: 5.10.5102.0 - SigmaTel)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SNAPFISH (HKLM\...\SNAPFISH) (Version:  - )
Snoopy 1.0 (HKLM\...\Snoopy_is1) (Version:  - )
SonicStage Mastering Studio (HKLM\...\{6332AFF1-9D9A-429C-AA03-F82749FA4F49}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio (Version: 2.3.01 - Sony Corporation) Hidden
SonicStage Mastering Studio Audio Filter (HKLM\...\{DF7DB916-90E5-40F2-9010-B8125EB5FD6F}) (Version: 2.3.01 - Sony Corporation)
SonicStage Mastering Studio Plugins (HKLM\...\{9C1C8A04-F8CA-4472-A92D-4288CE32DE86}) (Version: 2.4 - Sony Corporation)
Sony Ericsson Media Manager 1.1 (HKLM\...\{7E910FDA-CBBE-4451-8728-235E6A4DE162}) (Version: 1.1.550 - Sony Ericsson)
Sony Ericsson PC Suite 6.009.00 (HKLM\...\{2FFE93F0-BB72-4E52-8761-354D1AAA9387}) (Version: 6.009.00 - Sony Ericsson)
Sony PC Companion 2.10.259 (HKLM\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.259 - Sony)
Sony Picture Utility (HKLM\...\{D5068583-D569-468B-9755-5FBF5848F46F}) (Version: 2.1.00.04170 - Sony Corporation)
Sony USB Driver (HKLM\...\{5C29CB8B-AC1E-4114-8D68-9CD080140D4A}) (Version: 2.00 - Sony Corporation)
SONY VGP-UPR1 (Display Adapter) (HKLM\...\{94FBC09C-6F39-4B36-B9DE-66374A6FAAD2}) (Version: 4.5.13507.0 - Sony Corporation)
Sony Video Shared Library (HKLM\...\{01FDC9FC-4D4F-4DB0-ACD1-D3E8E1D52902}) (Version: 3.2.00 - Sony Corporation)
SpongeBob Schwammkopf - Der Film (HKLM\...\{E81A7285-8CA6-4430-B6C0-5F719E4D40D9}) (Version: 1.0 - )
SPSS 15.0 für Windows [Auswertung Version] (HKLM\...\{6D9B9CF3-1E9C-45B6-B41E-5CF568605556}) (Version: 15.0.1 - SPSS Inc.)
Super Mario PC Fun 2 (HKLM\...\Super Mario PC Fun 2) (Version:  - )
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.0.1148 - SUPERAntiSpyware.com)
Supreme Auction (HKLM\...\Supreme Auction_is1) (Version:  - )
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab (HKLM\...\SystemRequirementsLab) (Version:  - )
TMPGEnc 4.0 XPress Testversion (HKLM\...\{ECEF8EDE-0421-4E67-9264-5E84F26D4F55}) (Version: 4.7.2.285 - Pegasys Inc,)
Ulead VideoStudio SE DVD (HKLM\...\{8F8D9297-FDD2-405A-97E7-E52C7B2F97B3}) (Version: 10.0 - Ulead Systems)
Uninstall 1.0.0.1 (HKLM\...\Uninstall_is1) (Version:  - )
Unity Web Player (HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
USB2.0 ATV (HKLM\...\{3C873221-12B9-475D-8DCB-62D0B2179AF9}) (Version: 6.10.000.001 - Regulus)
USB2.0 Capture Device (HKLM\...\{E337B156-DF81-48D8-8977-B1574EE87BCF}) (Version: 1.0.3.0 - )
VAIO Aqua Breeze Wallpaper (HKLM\...\{97BCD719-6ECB-458F-97D6-F38D2E07375E}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Camera Capture Utility (HKLM\...\{6D2576EC-A0E9-418A-A09A-409933A3B6F4}) (Version: 2.7.01.08030 - Sony Corporation)
VAIO Content Folder Setting (HKLM\...\{23825B69-36DF-4DAD-9CFD-118D11D80F16}) (Version: 1.1.02.11070 - Sony Corporation)
VAIO Content Importer  VAIO Content Exporter (Version: 1.2.00.06270 - Sony Corporation) Hidden
VAIO Content Importer / VAIO Content Exporter (HKLM\...\{68A69CFF-130D-4CDE-AB0E-7374ECB144C8}) (Version: 1.2.00.06270 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (HKLM\...\{FAA6B94E-78A7-489C-B2DB-050D9FEBFADA}) (Version: 2.0.01.07051 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (Version: 2.0.01.07051 - Sony Corporation) Hidden
VAIO Content Metadata Manager Setting (HKLM\...\{69351E9E-23ED-41D5-B146-EDBF83C63B66}) (Version: 2.0.01.07041 - Sony Corporation)
VAIO Content Metadata Manager Setting (Version: 2.0.01.07041 - Sony Corporation) Hidden
VAIO Content Metadata XML Interface Library (HKLM\...\{B5E2DF30-1061-4DB4-AF28-08996C8E5680}) (Version: 2.1.01.10292 - Sony Corporation)
VAIO Content Metadata XML Interface Library (Version: 2.1.01.10292 - Sony Corporation) Hidden
VAIO Control Center (HKLM\...\{72042FA6-5609-489F-A8EA-3C2DD650F667}) (Version: 2.1.00.07110 - Sony Corporation)
VAIO Cozy Orange Wallpaper (HKLM\...\{2A2FF7F5-6F0E-4A5D-A881-39365E718BD6}) (Version: 1.0.11.13240 - Sony Corporation)
VAIO Data Restore Tool (HKLM\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.0.02.06190 - Sony Corporation)
VAIO Entertainment Platform (HKLM\...\{6B1F20F2-6321-4669-A58C-33DF8E7517FF}) (Version: 3.0.00.06280 - Sony Corporation)
VAIO Event Service (HKLM\...\{F0D85ADD-DD61-4B43-87A0-6DA52A211A8B}) (Version: 3.2.00.07120 - Sony Corporation)
VAIO Launcher (HKLM\...\{15D5C238-4C2E-4AEA-A66D-D6989A4C586B}) (Version: 1.0.00.07090 - Sony Corporation)
VAIO Media (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media 6.0 (HKLM\...\{560F6B2E-F0DF-44E5-8190-A4A161F0E205}) (Version: 6.0.10 - Sony Corporation)
VAIO Media AC3 Decoder 1.0 (HKLM\...\{2063C2E8-3812-4BBD-9998-6610F80C1DD4}) (Version:  - )
VAIO Media Content Collection 6.0 (HKLM\...\{500162A0-4DD5-460A-BAFD-895AAE48C532}) (Version:  - Sony Corporation)
VAIO Media Integrated Server 6.1 (HKLM\...\{785EB1D4-ECEC-4195-99B4-73C47E187721}) (Version:  - Sony Corporation)
VAIO Media Redistribution 6.0 (HKLM\...\{5855C127-1F20-404D-B7FB-1FD84D7EAB5E}) (Version: 6.0.10 - Sony Corporation)
VAIO Media Registration Tool (Version: 6.0.10 - Sony Corporation) Hidden
VAIO Media Registration Tool 6.0 (HKLM\...\{AF9A04EB-7D8E-41DE-9EDE-4AB9BB2B71B6}) (Version: 6.0.10 - Sony Corporation)
VAIO Movie Story (HKLM\...\{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO Movie Story (Version: 1.0.00.18280 - Sony Corporation) Hidden
VAIO Movie Story Template Data (HKLM\...\{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}) (Version: 1.0.00.18280 - Sony Corporation)
VAIO MusicBox (HKLM\...\{4EA55D20-27FB-45D7-8726-147E8A5F6C62}) (Version: 1.1.02.12100 - Sony Corporation)
VAIO MusicBox Sample Music (HKLM\...\{98FC7A64-774B-49B5-B046-4B4EBC053FA9}) (Version: 1.0.00.07030 - Sony Corporation)
VAIO Original Function Setting (HKLM\...\{A63E7492-A0BC-4BB9-89A7-352965222380}) (Version: 1.4.00.03240 - Sony Corporation)
VAIO Original Screen Saver (HKLM\...\{1BEF9285-5530-426B-A5F1-5836B95C7EB1}) (Version:  - )
VAIO Power Management (HKLM\...\{802889F8-6AF5-45A5-9764-CA5B999E50FC}) (Version: 2.2.00.06130 - Sony Corporation)
VAIO Tender Green Wallpaper (HKLM\...\{934A3213-1CB6-4264-84A2-EE080C017BCA}) (Version: 1.0.11.10180 - Sony Corporation)
VAIO Update 3 (HKLM\...\{48820099-ED7D-424B-890C-9A82EF00656D}) (Version: 3.0.02.05280 - Sony Corporation)
VAIO Xblack Contents (HKLM\...\VAIO Xblack Contents) (Version: 1.0.0.0-ENU - )
WDR RadioRecorder (HKLM\...\Tobit Radio.fx Server 1) (Version:  - Tobit.Software)
WIDCOMM Bluetooth Software 6.1.0.1203 (HKLM\...\{03D1988F-469F-4843-8E6E-E5FE9D17889D}) (Version: 6.1.0.1203 - Broadcom Corporation)
Windows Live Anmelde-Assistent (HKLM\...\{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}) (Version: 5.000.818.6 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinDVD BD for VAIO (HKLM\...\InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}) (Version: 8.0-B8.385 - InterVideo Inc.)
WinDVD BD for VAIO (Version: 8.0-B8.385 - InterVideo Inc.) Hidden
Wireless Switch Setting Utility (HKLM\...\{2A0F3EF9-68EE-49E9-A05B-ED5B82DF63E5}) (Version: 3.6.00.18210 - Sony Corporation)
WMA MP3 Converter v4.0 build 1217 (HKLM\...\{314AD191-596F-40C0-ACED-3AD78C9649F1}_is1) (Version:  - Hoo Technologies)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{33b07fd4-5917-43e1-968d-4c79231836bf}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{4052D303-74C5-49EA-BC6B-66099C8D4007}\InprocServer32 -> C:\Program Files\Google\Google Desktop Search\GoogleDesktopAPI2.dll (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\*****-*****\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{693566bc-21f8-401e-8d42-e2c5ce50dacc}\localserver32 -> C:\Users\*****-~1\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe  (the data entry has 7 more characters).
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{7F902AD4-FC6A-4B2F-8B8D-B6DD4E329B76}\InprocServer32 -> C:\Users\*****-~1\AppData\Local\ASKTOO~1\DOWNLO~1\AVIRAW~1.DLL No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{9E385F0A-0BA2-430C-96AA-4399C5E40F6C}\localserver32 -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{A8F086C3-2497-4229-82FE-586F2D326F95}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{BB6410D8-F879-4184-9C5C-6A02D16AE0B3}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{CA1073A2-5F3F-4445-8E5E-7109BDCEDDBE}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{d33f3ced-d7d5-44f1-a9fe-6927dabb1934}\localserver32 -> C:\Users\*****-*****\AppData\Roaming\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1000_Classes\CLSID\{D5A55D2D-C59D-42C3-A5BF-4C08EEE74339}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{0507EEDE-3AE7-49c7-BF37-0EB4A62D8638}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{33b07fd4-5917-43e1-968d-4c79231836bf}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{693566bc-21f8-401e-8d42-e2c5ce50dacc}\localserver32 -> C:\Users\*****-~2\AppData\Local\Temp\{d5641912-e47a-429c-879e-cfe13eac7a13}\IDriver.NonElevated.exe  (the data entry has 7 more characters).
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{A8F086C3-2497-4229-82FE-586F2D326F95}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)
CustomCLSID: HKU\S-1-5-21-3850073437-3280287025-709413035-1003_Classes\CLSID\{d33f3ced-d7d5-44f1-a9fe-6927dabb1934}\localserver32 -> C:\Program Files\Google\Google Talk\googletalk.exe (Google)

==================== Restore Points  =========================

25-04-2015 10:18:36 Uniblue PC Mechanic installation
26-04-2015 10:38:01 Geplanter Prüfpunkt
27-04-2015 21:13:00 Geplanter Prüfpunkt
28-04-2015 17:59:42 Windows Update
30-04-2015 18:10:01 Sony Ericsson PC Suite Drivers
01-05-2015 18:09:59 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 12:23 - 2015-03-13 23:39 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1      localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {12385836-CA2D-47B9-A214-9F8B297A3DBA} - System32\Tasks\{95687664-AA78-4FC4-BAC4-858ABB1C0B69} => pcalua.exe -a C:\Users\*****-*****\Downloads\VirtualDubMod_1_5_10_2_All_inclusive\AuxSetup.exe -d C:\Users\*****-*****\Downloads\VirtualDubMod_1_5_10_2_All_inclusive
Task: {1B4E5659-7DEF-46F9-A0BC-0E6629830B41} - System32\Tasks\Microsoft\Windows\MobilePC\DisplayLink TMM Control
Task: {1CE03B89-7F38-4BA1-A41C-4D8B07DAAE41} - System32\Tasks\SONY\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update 3\VAIOUpdt.exe [2007-05-31] (Sony Corporation)
Task: {1E6473EE-BE0D-4AF2-B139-363A948E362C} - System32\Tasks\{C1EA93FA-188F-4DB9-B64E-36A773014422} => pcalua.exe -a "C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma.cpl" -c Adobe Gamma
Task: {28E5CD67-956D-4936-A294-4AD90DDAE715} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {51B468D0-8CEB-4BAE-AEA3-4EC761479B8B} - System32\Tasks\{9830AF16-9482-400B-9E1B-868E8CD8C205} => pcalua.exe -a "C:\Users\*****-*****\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZU0076JS\SOACCU-01363007-UN[1].exe" -d C:\Users\*****-*****
Task: {598F4D5D-0AAD-4486-9371-BD27A5EA6A80} - System32\Tasks\MCVSurveyReminder4 => reminder.exe
Task: {5DBB8895-2BE0-4495-A797-6009C173A108} - System32\Tasks\{1BF2E65A-1E39-4F45-92FD-E0EF4012BE8A} => pcalua.exe -a C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1050\INTEL3~1\IDriver.exe -c /M{430CADFA-CCEB-456D-9994-D9113F731644}
Task: {68F11EF1-2EA3-462C-A57B-420826834205} - System32\Tasks\{7AC43103-A4AE-481B-B197-07B3C364EB4B} => pcalua.exe -a C:\Users\*****-*****\Downloads\NVDVID-01587600-UN.exe -d "C:\Program Files\Mozilla Firefox"
Task: {7786971E-B57F-40FD-8139-281ABE1BD89E} - System32\Tasks\Google Software Updater => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-09-16] (Google)
Task: {8D109C3F-BFE7-40B0-B4E9-82D5B9DA3818} - System32\Tasks\{321F8462-3D73-467E-B9DC-B1D0A64C03FE} => Firefox.exe hxxp://ui.skype.com/ui/0/6.21.81.104/de/go/help.faq.installer?LastError=1618
Task: {9A0019CE-C77A-41B4-878B-F564DE55AD98} - System32\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0 => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {AF83CA38-58CE-4610-AFCA-459F88C6E38C} - System32\Tasks\MCVSurveyReminder3 => reminder.exe
Task: {BA9261A1-C464-4A08-B582-499B88C325EA} - System32\Tasks\{ABFA890E-19B0-46D9-A582-058578BB8F65} => pcalua.exe -a "C:\Program Files\Trojancheck 6\unins000.exe" -d "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojancheck 6"
Task: {C03FCD7A-F17A-4C30-B194-412D951E162D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {D3F07B14-4D25-435A-9FF1-A3665E731F9F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E9A76A05-BDA6-4AB7-BAB0-45196D6AE30D} - System32\Tasks\MCVSurveyReminder1 => reminder.exe
Task: {EE04CFD9-B911-4ABA-B2D4-A1B0E90A25A4} - System32\Tasks\{A1EBE010-6567-4A23-BD72-27B12BE82F06} => Iexplore.exe hxxp://ui.skype.com/ui/0/6.20.0.104/de/abandoninstall?page=tsProgressBar
Task: {FB47635A-451D-40A8-B9D8-5AAFECC166EC} - System32\Tasks\SONY\WSSU\WSSU => C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe [2007-06-15] (Sony Corporation)
Task: {FDC62037-CCDD-4758-9FF0-949A973B0161} - System32\Tasks\MCVSurveyReminder2 => reminder.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Google Software Updater.job => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7faa4579dfd0.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2011-01-02 18:36 - 2009-11-04 13:14 - 00157696 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\lxeadrpp.dll
2006-12-22 08:31 - 2006-12-22 08:31 - 00108712 _____ () C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
2010-10-19 09:31 - 2010-10-19 09:31 - 00159744 _____ () C:\Program Files\Netzmanager\NMInfraIS2\driver\SoftplugLib.dll
2014-11-28 18:56 - 2011-11-18 15:51 - 03673944 _____ () C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
2007-07-20 17:37 - 2007-07-12 08:33 - 00010752 _____ () C:\Program Files\Sony\VAIO Event Service\VESBasePS.dll
2007-07-20 17:37 - 2007-07-12 08:33 - 00009728 _____ () C:\Program Files\Sony\VAIO Event Service\VESMgrSubPS.dll
2015-03-21 21:19 - 2012-09-07 17:57 - 00452592 _____ () C:\Program Files\ASCOMP Software\Secure Eraser\SecEraser32.dll
2002-11-27 18:25 - 2002-11-27 18:25 - 00049152 _____ () C:\Program Files\LitexMedia\All To WMA Converter\WMAShellExt.dll
2007-06-22 10:49 - 2007-06-22 10:49 - 00126976 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2011-01-02 18:29 - 2010-01-18 19:27 - 00770728 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
2011-01-02 18:29 - 2009-12-16 19:04 - 00389120 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeascw.dll
2011-01-02 18:31 - 2009-05-27 14:16 - 00192512 _____ () C:\Windows\system32\spool\drivers\w32x86\3\lxeadatr.dll
2011-01-02 18:29 - 2009-12-16 19:07 - 01159168 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeaDRS.dll
2011-01-02 18:29 - 2009-03-10 07:43 - 00155648 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeacaps.dll
2011-01-02 18:27 - 2009-02-20 10:48 - 00299008 _____ () C:\Windows\system32\lxeasm.dll
2011-01-02 18:27 - 2009-04-28 09:56 - 00024064 _____ () C:\Windows\system32\lxeasmr.dll
2011-01-02 18:28 - 2010-01-18 19:27 - 00139944 _____ () C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
2011-01-02 18:28 - 2009-03-30 14:37 - 00708608 _____ () C:\Program Files\Lexmark S300-S400 Series\Epwizard.DLL
2011-01-02 18:28 - 2009-03-30 14:35 - 00159744 _____ () C:\Program Files\Lexmark S300-S400 Series\customui.dll
2011-01-02 18:28 - 2009-03-30 14:35 - 00118784 _____ () C:\Program Files\Lexmark S300-S400 Series\Eputil.DLL
2011-01-02 18:28 - 2009-03-30 14:35 - 00139264 _____ () C:\Program Files\Lexmark S300-S400 Series\Imagutil.DLL
2011-01-02 18:28 - 2009-03-30 14:35 - 00061440 _____ () C:\Program Files\Lexmark S300-S400 Series\Epfunct.DLL
2011-01-02 18:29 - 2009-06-23 13:09 - 02203648 _____ () C:\Program Files\Lexmark S300-S400 Series\EPWizRes.dll
2011-01-02 18:29 - 2009-06-23 13:10 - 00045056 _____ () C:\Program Files\Lexmark S300-S400 Series\epstring.dll
2011-01-02 18:29 - 2009-06-23 13:11 - 00102400 _____ () C:\Program Files\Lexmark S300-S400 Series\EPOEMDll.dll
2011-01-02 18:28 - 2009-04-07 21:25 - 00409600 _____ () C:\Program Files\Lexmark S300-S400 Series\iptk.dll
2011-01-02 18:29 - 2009-03-02 16:25 - 00151552 _____ () C:\Program Files\Lexmark S300-S400 Series\lxeaptp.dll
2012-03-20 20:44 - 2012-04-30 11:57 - 00039936 _____ () C:\Program Files\Sony\Sony PC Companion\TMonitorAPI.dll
2012-03-20 20:44 - 2014-12-04 15:18 - 00241152 _____ () C:\Program Files\Sony\Sony PC Companion\MExplorer.dll
2011-07-07 15:54 - 2011-07-07 15:54 - 00233984 _____ () C:\Program Files\Sony\Sony PC Companion\Report.dll
2011-11-01 20:32 - 2013-05-20 12:58 - 00620718 _____ () C:\Program Files\Sony\Sony PC Companion\sqlite3.dll
2012-03-20 20:44 - 2010-01-11 16:44 - 00053248 _____ () C:\Program Files\Sony\Sony PC Companion\VObject.dll
2012-01-27 12:02 - 2012-01-27 12:02 - 00569344 _____ () C:\Program Files\Sony\Sony PC Companion\PhoneUpdate.dll
2012-05-15 20:42 - 2012-05-15 20:42 - 00052224 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2012-05-15 20:42 - 2015-05-02 21:34 - 00065024 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll
2012-05-15 20:42 - 2015-05-02 21:34 - 00052736 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll
2012-05-15 20:42 - 2012-05-15 20:42 - 00117760 _____ () C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2014-05-16 15:38 - 2014-05-08 19:26 - 03145536 _____ () C:\Users\*****-*****\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe
2007-06-22 10:34 - 2007-06-22 10:34 - 00389120 _____ () C:\Windows\system32\btwhidcs.DLL
2012-03-20 20:44 - 2014-06-23 09:07 - 00113376 _____ () C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
2010-05-04 16:36 - 2010-05-04 16:36 - 00970752 _____ () C:\Program Files\OpenOffice.org 3\program\libxml2.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, the associated entry will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3850073437-3280287025-709413035-1000\...\intervideo.com -> www.intervideo.com


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3850073437-3280287025-709413035-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\img19.jpg
HKU\S-1-5-21-3850073437-3280287025-709413035-1003\Control Panel\Desktop\\Wallpaper -> C:\windows\Web\Wallpaper\img24.jpg
DNS Servers: 192.168.2.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: FirebirdServerMAGIXInstance => 3
MSCONFIG\Services: FLEXnet Licensing Service => 3
MSCONFIG\Services: GoogleDesktopManager-051210-111108 => 3
MSCONFIG\Services: gupdate1ca0ac0f00c0a80 => 2
MSCONFIG\Services: OMSI download service => 2
MSCONFIG\Services: PACSPTISVR => 3
MSCONFIG\Services: SBSDWSCService => 2
MSCONFIG\Services: sdAuxService => 2
MSCONFIG\Services: sdCoreService => 2
MSCONFIG\startupfolder: C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk => C:\Windows\pss\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk.Startup
MSCONFIG\startupfolder: C:^Users^*****-*****^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Picture Motion Browser Medien-Prüfung.lnk => C:\Windows\pss\Picture Motion Browser Medien-Prüfung.lnk.Startup
MSCONFIG\startupreg: Apoint => C:\Program Files\Apoint\Apoint.exe
MSCONFIG\startupreg: Google Desktop Search => "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
MSCONFIG\startupreg: googletalk => C:\Program Files\Google\Google Talk\googletalk.exe /autostart
MSCONFIG\startupreg: ISBMgr.exe => "C:\Program Files\Sony\ISB Utility\ISBMgr.exe"
MSCONFIG\startupreg: LogitechQuickCamRibbon => "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: TrayServer => C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe

==================== FirewallRules (whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

FirewallRules: [WinCollab-Out-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-Out-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-DFSR-Out-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe
FirewallRules: [WinCollab-DFSR-In-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe
FirewallRules: [TCP Query User{3B5F652A-2913-4AA5-B3B0-E5CC4BBA9F70}C:\program files\internet explorer\iexplore.exe] => (Block) C:\program files\internet explorer\iexplore.exe
FirewallRules: [UDP Query User{A36CB363-2FF8-4903-8A7C-C02CE966C1F1}C:\program files\internet explorer\iexplore.exe] => (Block) C:\program files\internet explorer\iexplore.exe
FirewallRules: [TCP Query User{E80BA0B8-D827-458C-8FD9-2D631C0FFD53}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{23E3452E-7136-4515-9716-FDED0157294D}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [{B1A8B887-4149-4978-8C22-5B4E4EF82C9D}] => (Allow) C:\Program Files\Google\Google Talk\googletalk.exe
FirewallRules: [{CD94BE39-19A6-4FBE-9FB5-AEA69041C4CA}] => (Allow) C:\Program Files\Google\Google Talk\googletalk.exe
FirewallRules: [TCP Query User{5E869D36-5320-423E-9517-9CE576D8EE6E}C:\program files\icq6\icq.exe] => (Allow) C:\program files\icq6\icq.exe
FirewallRules: [UDP Query User{7272C993-B27A-4643-A1FA-239F96ABF88A}C:\program files\icq6\icq.exe] => (Allow) C:\program files\icq6\icq.exe
FirewallRules: [{2F76F63C-3E81-46B8-A40F-C090250E5121}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{7B883190-8DCA-48D9-BF04-B6436BF2D68F}] => (Allow) C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe
FirewallRules: [{582A7AD1-45D1-41F9-BC17-967E429CAD2B}] => (Allow) C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe
FirewallRules: [TCP Query User{979E4801-5A3C-4C83-BEC9-282B531A3BCA}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe
FirewallRules: [UDP Query User{88714FC2-53DC-4290-83FA-FC17966E8607}C:\program files\icq6.5\icq.exe] => (Block) C:\program files\icq6.5\icq.exe
FirewallRules: [{4C069130-9D72-4690-ABAD-59264BEBDE46}] => (Allow) C:\Program Files\Logitech\Logitech Vid\Vid.exe
FirewallRules: [{55DD818E-E59D-4D8F-A931-8186811C12FA}] => (Allow) C:\Program Files\Logitech\Logitech Vid\Vid.exe
FirewallRules: [{E7F71EDC-C852-482E-A9B3-C7FF11DCA41C}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{976B6ED5-5F4A-49F7-B6EF-EE60BE4C79EC}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{62D57FE4-9C0D-4B5A-AEA3-9DEECCCD2DD5}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{975D58E6-48F6-44F5-88EF-C500CF0B31CB}] => (Allow) C:\Program Files\ICQ7.2\ICQ.exe
FirewallRules: [{0E545E18-1A24-4409-81B0-C5323F823E18}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [{D6E42861-8F37-4A0E-A7F6-5B974FD73C18}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [{5313CBFB-A857-44D6-9D0A-49542EDBFA07}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [{9C3F0B2E-5001-4202-AF2C-9766A24078B5}] => (Allow) C:\Program Files\ICQ7.2\aolload.exe
FirewallRules: [TCP Query User{51A1958F-15D5-4163-836D-24DD28F87BDA}C:\program files\google\google earth\client\googleearth.exe] => (Allow) C:\program files\google\google earth\client\googleearth.exe
FirewallRules: [UDP Query User{77C0DF32-131E-4C60-A2A9-4407B44931DA}C:\program files\google\google earth\client\googleearth.exe] => (Allow) C:\program files\google\google earth\client\googleearth.exe
FirewallRules: [{54386AB4-35A0-41A9-AC43-3F393890E8C5}] => (Allow) C:\Users\*****-*****\Downloads\SweetImSetup(2).exe
FirewallRules: [{C1AF6C87-ADE7-4F01-B286-182C3B27031C}] => (Allow) C:\Users\*****-*****\Downloads\SweetImSetup(2).exe
FirewallRules: [{19F499D9-E22F-4B7B-A625-2536A4161B5D}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{5E615F98-E78C-4F14-B759-A062E0E5A7E3}] => (Allow) svchost.exe
FirewallRules: [{1A45F8CA-5A2B-45D0-A425-5E56F27CB0C6}] => (Allow) C:\Windows\system32\lxeacoms.exe
FirewallRules: [{F893CABE-D527-44E0-AD3B-4B58AAA1E35F}] => (Allow) C:\Windows\system32\LXEAcoms.exe
FirewallRules: [{2FA57709-F8ED-4E11-9026-1A8D6C5587D2}] => (Allow) C:\Windows\system32\LXEAcoms.exe
FirewallRules: [{86CA48FB-F57A-4219-8856-305C1A74FD07}] => (Allow) C:\Windows\system32\LXEAcoms.exe
FirewallRules: [{923D2D0D-2946-49A1-B658-29E21F747F8E}] => (Allow) LPort=80
FirewallRules: [{165A8488-4303-4BF4-8B78-5F1292778B64}] => (Allow) LPort=80
FirewallRules: [{CE82E6BD-BEE2-4A92-BE44-91249CEE4865}] => (Allow) LPort=80
FirewallRules: [TCP Query User{E1B1D6BA-97D1-428C-8D6F-4BF2877C9B25}C:\program files\mozilla firefox\plugin-container.exe] => (Allow) C:\program files\mozilla firefox\plugin-container.exe
FirewallRules: [UDP Query User{B7526044-05C8-4C49-964A-6EC5237DA87B}C:\program files\mozilla firefox\plugin-container.exe] => (Allow) C:\program files\mozilla firefox\plugin-container.exe
FirewallRules: [TCP Query User{0CA17F66-DBB8-4BB7-AF9C-FA8F4EBC634F}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [UDP Query User{156CD726-4881-4067-B22F-EFA8889397A4}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [{16642D4E-0A46-4768-AB55-F971CE044475}] => (Allow) C:\Users\*****-*****\Downloads\Facemoods.exe
FirewallRules: [{DA4DB6A1-FB7B-40AC-B99A-CA71037185C7}] => (Allow) C:\Users\*****-*****\Downloads\Facemoods.exe
FirewallRules: [{7DFBF625-08A6-482F-BBED-1F7D8A225DCF}] => (Allow) C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
FirewallRules: [{6658554D-038D-45BD-B83D-712744C6681F}] => (Allow) C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
FirewallRules: [{CD4CF5F6-A738-48D1-9197-ACCB676AC8B0}] => (Allow) F:\Network\EpsonNetSetup\ENEasyApp.exe
FirewallRules: [{B6400087-61E2-48E7-A628-2428D77210A7}] => (Allow) F:\Network\EpsonNetSetup\ENEasyApp.exe
FirewallRules: [TCP Query User{3A4DF019-0634-481F-A9A2-10FE650CFC10}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [UDP Query User{6C32446C-F773-4F95-BB11-489C4328A2D6}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [TCP Query User{E8F0CD5E-56CF-412D-ABC6-AB8AE51DDDB2}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [UDP Query User{02802447-B624-4CD1-94AB-56D1F8911D0A}C:\program files\epson software\event manager\eeventmanager.exe] => (Block) C:\program files\epson software\event manager\eeventmanager.exe
FirewallRules: [{AB520453-681B-4C74-A0D1-C14D9C45364D}] => (Allow) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
FirewallRules: [{F32889DA-746A-4104-9EF4-0B494E4CE06B}] => (Allow) C:\Users\*****-*****\AppData\Local\Akamai\netsession_win.exe
FirewallRules: [TCP Query User{5CD138C6-6F08-4D37-8B0E-21BC1778CFA0}C:\users\*****-*****\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\*****-*****\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{583F07B1-2C96-4C1C-991F-A64EDD56D7A8}C:\users\*****-*****\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\*****-*****\appdata\local\akamai\netsession_win.exe
FirewallRules: [{B4196523-6227-4D9D-A336-BEFFFB00C074}] => (Allow) C:\Program Files\Iminent\Iminent.exe
FirewallRules: [{9A384077-6EB8-4A1B-9527-0F82284AED5E}] => (Allow) C:\Program Files\Iminent\Iminent.Messengers.exe
FirewallRules: [{840500EA-1B36-49F8-ADA1-72DF568513BE}] => (Allow) C:\Users\*****-***** 2\AppData\Local\temp\incredibar_installer.exe
FirewallRules: [{8F9428E9-58F9-4111-A8D1-DD743E4D99BE}] => (Allow) C:\Users\*****-***** 2\AppData\Local\temp\incredibar_installer.exe
FirewallRules: [{E31B7123-C67D-4429-8454-8B78998A650D}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com
FirewallRules: [{0C8AC61D-91C4-4850-8976-4F6D6AE16C88}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe
FirewallRules: [{EACCA4A9-8378-42DB-A710-66EF61F99DF4}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe
FirewallRules: [{E5892559-F382-4172-A6E5-5AE724BF8F70}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com
FirewallRules: [{299E924D-BFDE-473E-A87E-ABE967C11DF3}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe
FirewallRules: [{5C89EA99-D2E8-4781-8B6E-25BD47198E52}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe
FirewallRules: [TCP Query User{2F219C78-FFFD-48C4-BD02-3808C8B52B6C}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Block) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe
FirewallRules: [UDP Query User{18F63728-CE3A-4BDA-A23B-CCADE5A22D47}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Block) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe
FirewallRules: [{1FD3EA95-53CB-4DAB-9529-2F6D44F51E50}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [TCP Query User{7B048147-BBF8-477D-BB55-C179514AAE1C}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [UDP Query User{CD09FD84-DFA0-4C0D-B682-28676FC5DD0F}C:\program files\logitech\vid hd\vid.exe] => (Block) C:\program files\logitech\vid hd\vid.exe
FirewallRules: [{27DF86F7-0EFA-4AC5-80CF-59150145427F}] => (Allow) C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
FirewallRules: [{1CA8A470-28FA-4CBF-8691-14E995457C68}] => (Allow) C:\Program Files\Tobit Radio.fx\Server\rfx-server.exe
FirewallRules: [{C2E9A825-94BE-4DFF-8E8D-C3389A3B24BB}] => (Allow) C:\Program Files\Tobit Radio.fx\Client\rfx-client.exe
FirewallRules: [{A9DB86FF-43AF-41D5-BD16-8A25A84AE13D}] => (Allow) C:\Program Files\Tobit Radio.fx\Client\rfx-client.exe
FirewallRules: [TCP Query User{A72AE89A-F6B7-4F79-B2C8-06F12EFFC27D}C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe] => (Block) C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{00871E66-EC05-4BA8-93F3-340056C50437}C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe] => (Block) C:\users\*****-*****\appdata\local\mozilla firefox\firefox.exe

==================== Faulty Device Manager Devices =============

Name: Intel(R) 82852/82855 GM/GME-Grafikcontroller (Microsoft Corporation - XDDM)
Description: Intel(R) 82852/82855 GM/GME-Grafikcontroller (Microsoft Corporation - XDDM)
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel Corporation
Service: ialm
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (05/02/2015 09:45:01 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.Systray.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.Systray.Program.Main(System.String[])

Error: (05/02/2015 09:33:01 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.ServiceHost.ServiceHost.SetDefaultCulture()
  bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
  bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
  bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
  bei System.Threading.ThreadPoolWorkQueue.Dispatch()
  bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (05/02/2015 09:31:48 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.ServiceHost.ServiceHost.SetDefaultCulture()
  bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
  bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
  bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
  bei System.Threading.ThreadPoolWorkQueue.Dispatch()
  bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (05/02/2015 09:31:15 PM) (Source: EventSystem) (EventID: 4609) (User: )
Description: d:\longhorn\com\complus\src\events\tier2\eventsystem2.cpp38180070005

Error: (05/02/2015 09:31:14 PM) (Source: Avira Service Host) (EventID: 0) (User: )
Description: Fehler beim Verarbeiten von Sitzungsänderung. System.NullReferenceException: Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt.
  bei Avira.OE.ServiceHost.ServiceHost.OnSessionChange(SessionChangeDescription changeDescription)
  bei System.ServiceProcess.ServiceBase.DeferredSessionChange(Int32 eventType, Int32 sessionId)

Error: (05/02/2015 09:31:14 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.ServiceHost.ServiceHost.SetDefaultCulture()
  bei Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
  bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
  bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
  bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
  bei System.Threading.ThreadPoolWorkQueue.Dispatch()
  bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (05/02/2015 09:29:41 PM) (Source: VzCdbSvc) (EventID: 7) (User: )
Description: Das Plug-In-Modul konnte nicht geladen werden. (GUID = {56F9312C-C989-4E04-8C23-299DEE3A36F5}) (Fehlercode = 0x80042019)

Error: (05/02/2015 09:25:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fehlerhafte Anwendung plugin-container.exe, Version 37.0.2.5583, Zeitstempel 0x552ef76c, fehlerhaftes Modul mozalloc.dll, Version 37.0.2.5583, Zeitstempel 0x552ee9ae, Ausnahmecode 0x80000003, Fehleroffset 0x00001aa1,
Prozess-ID 0x14d8, Anwendungsstartzeit plugin-container.exe0.

Error: (05/02/2015 11:14:17 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.OE.Systray.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund eines Ausnahmefehlers beendet.
Ausnahmeinformationen: System.Xml.XmlException
Stapel:
  bei System.Xml.XmlTextReaderImpl.Throw(System.Exception)
  bei System.Xml.XmlTextReaderImpl.ParseDocumentContent()
  bei System.Xml.XmlTextReaderImpl.Read()
  bei System.Xml.XmlLoader.Load(System.Xml.XmlDocument, System.Xml.XmlReader, Boolean)
  bei System.Xml.XmlDocument.Load(System.Xml.XmlReader)
  bei System.Xml.XmlDocument.Load(System.String)
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.LoadXmlDocumentFromFile()
  bei Avira.OE.WinCore.OeSharedSettingsAccessor.Get(System.String)
  bei Avira.OE.WinCore.OeProductInfo.get_Culture()
  bei Avira.OE.WinCore.Utility.CultureSetter.SetDefaultCultureDefinedInAppsettings()
  bei Avira.OE.Systray.Program.Main(System.String[])

Error: (05/02/2015 10:50:32 AM) (Source: EventSystem) (EventID: 4609) (User: )
Description: d:\longhorn\com\complus\src\events\tier2\eventsystem2.cpp38180070005


System errors:
=============
Error: (05/02/2015 09:35:56 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Windows Update

Error: (05/02/2015 09:33:01 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Avira Service Host3

Error: (05/02/2015 09:31:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Avira Service Host2100001Neustart des Diensts

Error: (05/02/2015 09:31:14 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Avira Service Host1100001Neustart des Diensts

Error: (05/02/2015 09:30:40 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: lxeaCATSCustConnectService%%1053

Error: (05/02/2015 09:30:40 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: 30000lxeaCATSCustConnectService

Error: (05/02/2015 09:30:40 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Parallel port driver%%1058

Error: (05/02/2015 09:30:15 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)

Error: (05/02/2015 09:29:56 PM) (Source: TermService) (EventID: 1057) (User: )
Description: Fehler beim Erstellen eines neuen selbstsignierten Zertifikats für die Terminalserver-Authentifizierung bei SSL-Verbindungen auf dem Terminalserver. Der betreffende Statuscode war Schlüssel ist im angegebenen Status nicht gültig.
.

Error: (05/02/2015 09:26:34 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}


Microsoft Office Sessions:
=========================
Error: (05/02/2015 09:26:26 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6720.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 554 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 11:09:14 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2993 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 11:09:13 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2965 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (01/07/2015 11:09:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6713.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 2951 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (03/26/2014 10:07:27 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 13351 seconds with 360 seconds of active time.  This session ended with a crash.

Error: (02/27/2014 06:29:37 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6690.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1742 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (05/02/2013 02:23:23 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 678 seconds with 60 seconds of active time.  This session ended with a crash.

Error: (12/13/2012 11:26:31 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 436 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (07/11/2012 08:17:25 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 44 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (06/14/2012 10:14:17 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 700 seconds with 660 seconds of active time.  This session ended with a crash.


CodeIntegrity Errors:
===================================
  Date: 2015-04-27 19:02:11.918
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:11.212
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:10.589
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:09.988
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:08.591
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:07.927
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:07.287
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-27 19:02:06.589
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mbamchameleon.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-24 19:06:11.038
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2015-04-24 19:06:10.195
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz
Percentage of memory in use: 68%
Total physical RAM: 2045.69 MB
Available physical RAM: 634.46 MB
Total Pagefile: 4334.6 MB
Available Pagefile: 2316.81 MB
Total Virtual: 2047.88 MB
Available Virtual: 1910.73 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:176.24 GB) (Free:91.64 GB) NTFS ==>[Drive with boot components (obtained from BCD)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 186.3 GB) (Disk ID: A8CB6A4C)
Partition 1: (Not Active) - (Size=10.1 GB) - (Type=27)
Partition 2: (Active) - (Size=176.2 GB) - (Type=07 NTFS)

==================== End Of Log ============================


schrauber 03.05.2015 13:49

Perfekt. Noch Probleme?

Jami87 03.05.2015 16:08

Sieht gut aus, ja?

Also Probleme an für sich nicht mehr, nur von Avira kommt immernoch eine Fehlermeldung, wenn ich den PC starte (dass es nicht richtig funktioniert) - aber vielleicht hilft da ja eine Neuinstallation? Wobei es ja läuft...

schrauber 04.05.2015 11:34

Ja, installier mal neu.

Jami87 04.05.2015 17:55

Ok, danke dir nochmals. Hoffe, dass ich jetzt mal ne Weile hinkomme ohne Viren und Grafikkartenfehler ;-).

schrauber 05.05.2015 08:09

Läuft Avira jetzt? :)

Jami87 05.05.2015 14:32

Also heute morgen ging es beim Hochfahren (also die Fehlermeldung kam nicht mehr). Allerdings kam sie auch schon manchmal nicht und war dann plötzlich wieder da...

schrauber 06.05.2015 07:36

Beobachte mal und melde dich wieder.

Jami87 06.05.2015 19:03

Ok, danke, mache ich :-)

schrauber 07.05.2015 07:49

jop :)

Jami87 25.05.2015 17:25

So, ich bin es nochmal... Ich habe den Eindruck, mein PC wird immer langsamer - finde das irgendwie komisch?!? Ob da schon wieder was drauf ist? Habe aber auch langsam keine Lust mehr, danach zu suchen :-(.

Und sag mal: Ich kenne jemanden, der im Bereich Polizei, o.ä. arbeitet - er möchte aber nicht verraten, was er genau macht... Kann jemand, der so einen Job hat, eher etwas auf den PC schleusen, ohne dass wir es mit den üblichen Tests hier merken und ausspionieren?!?

schrauber 26.05.2015 07:35

Manchmal hilft eben nur Neuaufsetzen.

Und nein, kann er nicht. Er müsste schon in ner Cyber-Spezialeinheit arbeiten, um mehr als normalen Plan von einem PC zu haben, und dann brauch er immer noch direkten, physischen Zugang zum Rechner.


Alle Zeitangaben in WEZ +1. Es ist jetzt 02:45 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55