SearchScopes: HKU\S-1-5-21-3236304322-3598382758-57917902-1000

DefaultScope {FD63BF63-BFFF-4B8F-9D26-4267DF7F17DD} URL = http://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=foxysecurity
SearchScopes: HKU\S-1-5-21-3236304322-3598382758-57917902-1000

{FD63BF63-BFFF-4B8F-9D26-4267DF7F17DD} URL = http://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=foxysecurity
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
Task: {419B148F-C2FD-4B52-B07B-BD598D27A04D} - System32\Tasks\Funmoods => C:\Users\Nakano\AppData\Roaming\Funmoods\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
C:\Users\Nakano\AppData\Roaming\Funmoods
Task: {DDF7CD91-B713-4742-A49B-76EB5F335011} - System32\Tasks\DealPly => C:\Users\Nakano\AppData\Roaming\DealPly\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
C:\Users\Nakano\AppData\Roaming\DealPly
2014-11-09 19:45 - 2015-04-04 11:45 - 00128240 _____ () C:\ProgramData\7bb6df21-8ca8-4eec-965d-8cd2261544c7\maintainer.exe
C:\ProgramData\7bb6df21-8ca8-4eec-965d-8cd2261544c7
EmptyTemp: