OPR Extension: (DotVPN - Free and Secure VPN) - C:\Users\Schnarchnase\AppData\Roaming\Opera Software\Opera Stable\Extensions\hiegahbgoabbpoieploedhfnobmpgbeg HKU\S-1-5-21-2017956324-529535752-2850090790-1000\.\MountPoints2: ] - C:\Program Files\version87IneedSpeed\192.xpiĬHR Profile: C:\Users\Schnarchnase\AppData\Local\Google\Chrome\User Data\DefaultĬHR Extension: (Google Drive) - C:\Users\Schnarchnase\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf ĬHR Extension: (YouTube) - C:\Users\Schnarchnase\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo ĬHR Extension: (Google Search) - C:\Users\Schnarchnase\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf ĬHR Extension: (Tampermonkey) - C:\Users\Schnarchnase\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo ĬHR Extension: (Bookmark Manager) - C:\Users\Schnarchnase\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik ĬHR Extension: (Chrome Hotword Shared Module) - C:\Users\Schnarchnase\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg ĬHR Extension: (IneedSpeed) - C:\Users\Schnarchnase\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfkkhecnpcdmonaccakhgidmdjmldlih ĬHR Extension: (Google Wallet) - C:\Users\Schnarchnase\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda ĬHR Extension: (Gmail) - C:\Users\Schnarchnase\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia Winlogon\Notify\SDWinLogon: SDWinLogon.dll HKLM\.\Run: => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) HKLM\.\Run: => C:\Windows\V0700Mon.exe (Creative Technology Ltd.) HKLM\.\Run: => C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe (Realtek Semiconductor) HKLM\.\Run: => C:\Program Files\AMD\ATI.ACE\Core-Static\x86\CLIStart.exe (Advanced Micro Devices, Inc.) (If an entry is included in the fixlist, the registry item will be restored to default or removed. (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Opera Software) C:\Program Files\Opera\.47\opera.exe (Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe (ATI Technologies Inc.) C:\Program Files\AMD\ATI.ACE\Core-Static\CCC.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Advanced Micro Devices Inc.) C:\Program Files\AMD\ATI.ACE\Core-Static\MOM.exe (Creative Technology Ltd.) C:\Windows\V0700Mon.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (If an entry is included in the fixlist, the process will be closed. Tutorial for Farbar Recovery Scan Tool: hxxp://= Processes (Whitelisted) =
Internet Explorer Version 11 (Default browser: Opera)
EASYVPN POPUP WINDOWS 7
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Deutsch (Deutschland) Loaded Profiles: Schnarchnase (Available profiles: Schnarchnase) Running from C:\Users\Schnarchnase\Desktop Ran by Schnarchnase (administrator) on SCHNARCHNASE-PC on 20-05-2015 02:35:48 ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 19-05-2015