Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 05.11.2016, 21:45   #1
Specht
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



Hallo,

ich ich habe das Notebook von der Tochter eines Bekannten stehen, der
mit mit der Aussage "irgendwas ist hier komisch" übergeben wurde...
Nachdem es Probleme mit dem NB gegeben hat wurde es eine ganze Weile nicht genutzt...

Ich habe zunächst einmal Avira (free) aktualisiert, der mir alsbald dann auch einen Fund gemeldet und diesen in Quarantäne verschoben hat.
Anschliessender Schnelldurschlauf war ohne Befund.

Anschliessend mit MBAM untersucht und es wurden knapp 700 Funde gemeldet und in Quarantäne verschoben...

Da ich mir nicht sicher bin, ob es sich nur um Malware handelt, würde ich mich freuen, wenn hier jemand mal draufschauen könnte.

Einen ersten Scan mit FRST habe ich dann auch noch durchgeführt.

Vielen Dank schonmal für Eure/Deine Mühen
Volker

Avira Fund:
Code:
ATTFilter
Free Antivirus
Erstellungsdatum der Reportdatei: Samstag, 5. November 2016  18:07


Das Programm läuft als uneingeschränkte Vollversion.
Online-Dienste stehen zur Verfügung.

Lizenznehmer   : Free
Seriennummer   : 0000149996-AVHOE-0000001
Plattform      : Windows 8.1
Windowsversion : (plain)  [6.3.9600]
Boot Modus     : Normal gebootet
Benutzername   : SYSTEM
Computername   : IDEA-PC

Versionsinformationen:
build.dat      : 15.0.16.282    92460 Bytes  22.02.2016 16:45:00
AVSCAN.EXE     : 15.0.16.276  1235360 Bytes  02.04.2016 18:49:22
AVSCANRC.DLL   : 15.0.16.269    65256 Bytes  02.04.2016 18:49:22
LUKE.DLL       : 15.0.16.273    67840 Bytes  02.04.2016 18:49:54
AVSCPLR.DLL    : 15.0.16.280   130712 Bytes  02.04.2016 18:49:22
REPAIR.DLL     : 15.0.16.251   596760 Bytes  02.04.2016 18:49:20
repair.rdf     : 1.0.15.96    1441708 Bytes  02.04.2016 18:50:39
AVREG.DLL      : 15.0.16.273   350584 Bytes  02.04.2016 18:49:19
avlode.dll     : 15.0.16.276   721384 Bytes  02.04.2016 18:49:15
avlode.rdf     : 14.0.5.36      94056 Bytes  02.04.2016 18:49:07
XBV00007.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00008.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00009.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00010.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00011.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00012.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00013.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00014.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00015.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00016.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00017.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00018.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:06
XBV00019.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00020.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00021.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00022.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00023.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00024.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00025.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00026.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00027.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00028.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00029.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00030.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00031.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00032.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:07
XBV00033.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:08
XBV00034.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:08
XBV00035.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:08
XBV00036.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:08
XBV00037.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:08
XBV00038.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:08
XBV00039.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:08
XBV00040.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:09
XBV00041.VDF   : 8.12.37.66      2048 Bytes  17.12.2015 16:37:09
XBV00176.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:30
XBV00177.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:30
XBV00178.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:30
XBV00179.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:30
XBV00180.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:30
XBV00181.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:30
XBV00182.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00183.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00184.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00185.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00186.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00187.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00188.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00189.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00190.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00191.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00192.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00193.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00194.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:31
XBV00195.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:32
XBV00196.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:32
XBV00197.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:32
XBV00198.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:32
XBV00199.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:32
XBV00200.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:32
XBV00201.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:32
XBV00202.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:32
XBV00203.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:32
XBV00204.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:33
XBV00205.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:33
XBV00206.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:33
XBV00207.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:33
XBV00208.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:33
XBV00209.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:33
XBV00210.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:33
XBV00211.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:33
XBV00212.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:33
XBV00213.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:34
XBV00214.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:34
XBV00215.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:34
XBV00216.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:34
XBV00217.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:34
XBV00218.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:34
XBV00219.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:34
XBV00220.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:35
XBV00221.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:35
XBV00222.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:35
XBV00223.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:35
XBV00224.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:35
XBV00225.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:35
XBV00226.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:35
XBV00227.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:35
XBV00228.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00229.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00230.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00231.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00232.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00233.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00234.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00235.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00236.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00237.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00238.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00239.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00240.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00241.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00242.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:36
XBV00243.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00244.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00245.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00246.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00247.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00248.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00249.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00250.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00251.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00252.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00253.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00254.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00255.VDF   : 8.12.71.186     2048 Bytes  19.03.2016 18:50:37
XBV00000.VDF   : 7.11.70.0   66736640 Bytes  04.04.2013 18:14:08
XBV00001.VDF   : 7.11.237.0  48041984 Bytes  02.06.2015 16:36:36
XBV00002.VDF   : 7.12.37.36  16452096 Bytes  17.12.2015 16:37:04
XBV00003.VDF   : 8.12.44.142  3948032 Bytes  09.01.2016 16:09:49
XBV00004.VDF   : 8.12.52.208  4036096 Bytes  02.02.2016 18:50:08
XBV00005.VDF   : 8.12.62.184  2779136 Bytes  26.02.2016 18:50:13
XBV00006.VDF   : 8.12.71.186  2191360 Bytes  19.03.2016 18:50:16
XBV00042.VDF   : 8.12.71.214    53248 Bytes  20.03.2016 18:50:16
XBV00043.VDF   : 8.12.71.242     6656 Bytes  20.03.2016 18:50:17
XBV00044.VDF   : 8.12.72.14     13312 Bytes  20.03.2016 18:50:17
XBV00045.VDF   : 8.12.72.90      2048 Bytes  20.03.2016 18:50:17
XBV00046.VDF   : 8.12.72.146    54272 Bytes  21.03.2016 18:50:17
XBV00047.VDF   : 8.12.72.174    10240 Bytes  21.03.2016 18:50:17
XBV00048.VDF   : 8.12.72.202     7680 Bytes  21.03.2016 18:50:17
XBV00049.VDF   : 8.12.72.204    22528 Bytes  21.03.2016 18:50:17
XBV00050.VDF   : 8.12.72.206     8704 Bytes  21.03.2016 18:50:17
XBV00051.VDF   : 8.12.72.210    17408 Bytes  21.03.2016 18:50:17
XBV00052.VDF   : 8.12.72.230     2048 Bytes  21.03.2016 18:50:17
XBV00053.VDF   : 8.12.72.250    26112 Bytes  21.03.2016 18:50:18
XBV00054.VDF   : 8.12.72.254     2048 Bytes  21.03.2016 18:50:18
XBV00055.VDF   : 8.12.73.18      9728 Bytes  21.03.2016 18:50:18
XBV00056.VDF   : 8.12.73.38      5120 Bytes  21.03.2016 18:50:18
XBV00057.VDF   : 8.12.73.58      8704 Bytes  21.03.2016 18:50:18
XBV00058.VDF   : 8.12.73.80     27136 Bytes  22.03.2016 18:50:18
XBV00059.VDF   : 8.12.73.82     14848 Bytes  22.03.2016 18:50:18
XBV00060.VDF   : 8.12.73.102    15872 Bytes  22.03.2016 18:50:18
XBV00061.VDF   : 8.12.73.120    10752 Bytes  22.03.2016 18:50:18
XBV00062.VDF   : 8.12.73.172    95232 Bytes  22.03.2016 18:50:18
XBV00063.VDF   : 8.12.73.190    11264 Bytes  22.03.2016 18:50:19
XBV00064.VDF   : 8.12.73.212    18432 Bytes  22.03.2016 18:50:19
XBV00065.VDF   : 8.12.73.232     9216 Bytes  22.03.2016 18:50:19
XBV00066.VDF   : 8.12.73.250     7680 Bytes  22.03.2016 18:50:19
XBV00067.VDF   : 8.12.74.12     12800 Bytes  22.03.2016 18:50:19
XBV00068.VDF   : 8.12.74.30      9728 Bytes  22.03.2016 18:50:19
XBV00069.VDF   : 8.12.74.32     12288 Bytes  22.03.2016 18:50:19
XBV00070.VDF   : 8.12.74.52     25600 Bytes  23.03.2016 18:50:20
XBV00071.VDF   : 8.12.74.68     15872 Bytes  23.03.2016 18:50:20
XBV00072.VDF   : 8.12.74.84     57856 Bytes  23.03.2016 18:50:20
XBV00073.VDF   : 8.12.74.100     2048 Bytes  23.03.2016 18:50:20
XBV00074.VDF   : 8.12.74.118    21504 Bytes  23.03.2016 18:50:20
XBV00075.VDF   : 8.12.74.120     9728 Bytes  23.03.2016 18:50:20
XBV00076.VDF   : 8.12.74.122     9728 Bytes  23.03.2016 18:50:20
XBV00077.VDF   : 8.12.74.124    10240 Bytes  23.03.2016 18:50:20
XBV00078.VDF   : 8.12.74.126     8704 Bytes  23.03.2016 18:50:20
XBV00079.VDF   : 8.12.74.144    39936 Bytes  24.03.2016 18:50:21
XBV00080.VDF   : 8.12.74.160     2048 Bytes  24.03.2016 18:50:21
XBV00081.VDF   : 8.12.74.176    19456 Bytes  24.03.2016 18:50:21
XBV00082.VDF   : 8.12.74.192     4096 Bytes  24.03.2016 18:50:21
XBV00083.VDF   : 8.12.74.208    14336 Bytes  24.03.2016 18:50:21
XBV00084.VDF   : 8.12.74.210    10240 Bytes  24.03.2016 18:50:21
XBV00085.VDF   : 8.12.74.212    16896 Bytes  24.03.2016 18:50:21
XBV00086.VDF   : 8.12.74.214    10752 Bytes  24.03.2016 18:50:21
XBV00087.VDF   : 8.12.74.216     8192 Bytes  24.03.2016 18:50:21
XBV00088.VDF   : 8.12.74.218     9728 Bytes  24.03.2016 18:50:21
XBV00089.VDF   : 8.12.74.220     2048 Bytes  24.03.2016 18:50:21
XBV00090.VDF   : 8.12.74.222    13312 Bytes  24.03.2016 18:50:22
XBV00091.VDF   : 8.12.74.224     9216 Bytes  24.03.2016 18:50:22
XBV00092.VDF   : 8.12.74.226     8704 Bytes  24.03.2016 18:50:22
XBV00093.VDF   : 8.12.74.228     6656 Bytes  24.03.2016 18:50:22
XBV00094.VDF   : 8.12.74.234    27136 Bytes  25.03.2016 18:50:22
XBV00095.VDF   : 8.12.74.236     2560 Bytes  25.03.2016 18:50:22
XBV00096.VDF   : 8.12.74.238     2560 Bytes  25.03.2016 18:50:22
XBV00097.VDF   : 8.12.74.240    14848 Bytes  25.03.2016 18:50:22
XBV00098.VDF   : 8.12.74.242    14848 Bytes  25.03.2016 18:50:22
XBV00099.VDF   : 8.12.74.244    18432 Bytes  25.03.2016 18:50:22
XBV00100.VDF   : 8.12.74.250    41472 Bytes  25.03.2016 18:50:22
XBV00101.VDF   : 8.12.74.252     6656 Bytes  25.03.2016 18:50:22
XBV00102.VDF   : 8.12.75.12     89600 Bytes  26.03.2016 18:50:23
XBV00103.VDF   : 8.12.75.26      2048 Bytes  26.03.2016 18:50:23
XBV00104.VDF   : 8.12.75.40     41472 Bytes  26.03.2016 18:50:23
XBV00105.VDF   : 8.12.75.54      2048 Bytes  26.03.2016 18:50:23
XBV00106.VDF   : 8.12.75.68     99840 Bytes  27.03.2016 18:50:23
XBV00107.VDF   : 8.12.75.94     20992 Bytes  27.03.2016 18:50:23
XBV00108.VDF   : 8.12.75.108    11776 Bytes  27.03.2016 18:50:23
XBV00109.VDF   : 8.12.75.122    12288 Bytes  27.03.2016 18:50:23
XBV00110.VDF   : 8.12.75.136     9728 Bytes  27.03.2016 18:50:24
XBV00111.VDF   : 8.12.75.138    99328 Bytes  28.03.2016 18:50:24
XBV00112.VDF   : 8.12.75.154    11776 Bytes  28.03.2016 18:50:24
XBV00113.VDF   : 8.12.75.168    10752 Bytes  28.03.2016 18:50:24
XBV00114.VDF   : 8.12.75.180     8192 Bytes  28.03.2016 18:50:24
XBV00115.VDF   : 8.12.75.192    29696 Bytes  28.03.2016 18:50:24
XBV00116.VDF   : 8.12.75.204     3072 Bytes  28.03.2016 18:50:24
XBV00117.VDF   : 8.12.75.220     2048 Bytes  28.03.2016 18:50:24
XBV00118.VDF   : 8.12.75.232    44032 Bytes  28.03.2016 18:50:24
XBV00119.VDF   : 8.12.75.244    14848 Bytes  28.03.2016 18:50:24
XBV00120.VDF   : 8.12.75.246    16384 Bytes  28.03.2016 18:50:25
XBV00121.VDF   : 8.12.75.248    29184 Bytes  28.03.2016 18:50:25
XBV00122.VDF   : 8.12.75.250    11264 Bytes  28.03.2016 18:50:25
XBV00123.VDF   : 8.12.75.254     2048 Bytes  28.03.2016 18:50:25
XBV00124.VDF   : 8.12.76.10     48128 Bytes  29.03.2016 18:50:25
XBV00125.VDF   : 8.12.76.22     10752 Bytes  29.03.2016 18:50:25
XBV00126.VDF   : 8.12.76.34     10752 Bytes  29.03.2016 18:50:25
XBV00127.VDF   : 8.12.76.46     32768 Bytes  29.03.2016 18:50:25
XBV00128.VDF   : 8.12.76.48     14848 Bytes  29.03.2016 18:50:25
XBV00129.VDF   : 8.12.76.50     28672 Bytes  29.03.2016 18:50:25
XBV00130.VDF   : 8.12.76.62      2048 Bytes  29.03.2016 18:50:25
XBV00131.VDF   : 8.12.76.64      2560 Bytes  29.03.2016 18:50:26
XBV00132.VDF   : 8.12.76.74     26112 Bytes  29.03.2016 18:50:26
XBV00133.VDF   : 8.12.76.84     24064 Bytes  29.03.2016 18:50:26
XBV00134.VDF   : 8.12.76.94     13312 Bytes  29.03.2016 18:50:26
XBV00135.VDF   : 8.12.76.104     2048 Bytes  29.03.2016 18:50:26
XBV00136.VDF   : 8.12.76.114    31744 Bytes  29.03.2016 18:50:26
XBV00137.VDF   : 8.12.76.116     2048 Bytes  29.03.2016 18:50:26
XBV00138.VDF   : 8.12.76.118    50688 Bytes  29.03.2016 18:50:26
XBV00139.VDF   : 8.12.76.124    54784 Bytes  30.03.2016 18:50:26
XBV00140.VDF   : 8.12.76.128    19456 Bytes  30.03.2016 18:50:26
XBV00141.VDF   : 8.12.76.130    19456 Bytes  30.03.2016 18:50:27
XBV00142.VDF   : 8.12.76.132     2048 Bytes  30.03.2016 18:50:27
XBV00143.VDF   : 8.12.76.136    61952 Bytes  30.03.2016 18:50:27
XBV00144.VDF   : 8.12.76.138     2048 Bytes  30.03.2016 18:50:27
XBV00145.VDF   : 8.12.76.148    22528 Bytes  30.03.2016 18:50:27
XBV00146.VDF   : 8.12.76.158    38400 Bytes  30.03.2016 18:50:27
XBV00147.VDF   : 8.12.76.168    17920 Bytes  30.03.2016 18:50:27
XBV00148.VDF   : 8.12.76.178    20480 Bytes  30.03.2016 18:50:27
XBV00149.VDF   : 8.12.76.180     2048 Bytes  30.03.2016 18:50:27
XBV00150.VDF   : 8.12.76.182     2048 Bytes  30.03.2016 18:50:27
XBV00151.VDF   : 8.12.76.186    66048 Bytes  31.03.2016 18:50:28
XBV00152.VDF   : 8.12.76.188    21504 Bytes  31.03.2016 18:50:28
XBV00153.VDF   : 8.12.76.190    20992 Bytes  31.03.2016 18:50:28
XBV00154.VDF   : 8.12.76.192    16896 Bytes  31.03.2016 18:50:28
XBV00155.VDF   : 8.12.76.202    29696 Bytes  31.03.2016 18:50:28
XBV00156.VDF   : 8.12.76.214    50176 Bytes  31.03.2016 18:50:28
XBV00157.VDF   : 8.12.76.216     2048 Bytes  31.03.2016 18:50:28
XBV00158.VDF   : 8.12.76.224    16896 Bytes  31.03.2016 18:50:28
XBV00159.VDF   : 8.12.76.232    16384 Bytes  31.03.2016 18:50:28
XBV00160.VDF   : 8.12.76.252    55808 Bytes  01.04.2016 18:50:29
XBV00161.VDF   : 8.12.77.4      20480 Bytes  01.04.2016 18:50:29
XBV00162.VDF   : 8.12.77.14     11264 Bytes  01.04.2016 18:50:29
XBV00163.VDF   : 8.12.77.22     13312 Bytes  01.04.2016 18:50:29
XBV00164.VDF   : 8.12.77.24     16896 Bytes  01.04.2016 18:50:29
XBV00165.VDF   : 8.12.77.26     14848 Bytes  01.04.2016 18:50:29
XBV00166.VDF   : 8.12.77.50      6656 Bytes  01.04.2016 18:50:29
XBV00167.VDF   : 8.12.77.56     14848 Bytes  01.04.2016 18:50:29
XBV00168.VDF   : 8.12.77.62     13824 Bytes  01.04.2016 18:50:29
XBV00169.VDF   : 8.12.77.64      2048 Bytes  01.04.2016 18:50:29
XBV00170.VDF   : 8.12.77.70     27136 Bytes  01.04.2016 18:50:30
XBV00171.VDF   : 8.12.77.76     11264 Bytes  01.04.2016 18:50:30
XBV00172.VDF   : 8.12.77.86     58880 Bytes  02.04.2016 18:50:30
XBV00173.VDF   : 8.12.77.90     16896 Bytes  02.04.2016 18:50:30
XBV00174.VDF   : 8.12.77.94     12288 Bytes  02.04.2016 18:50:30
XBV00175.VDF   : 8.12.77.98     22528 Bytes  02.04.2016 18:50:30
LOCAL000.VDF   : 8.12.77.98  148305920 Bytes  02.04.2016 18:53:24
Engineversion  : 8.3.38.10 
AEBB.DLL       : 8.1.3.0        59296 Bytes  03.12.2015 19:42:08
AECORE.DLL     : 8.3.12.4      247720 Bytes  02.04.2016 18:48:52
AEDROID.DLL    : 8.4.3.348    1800104 Bytes  03.12.2015 19:42:48
AEEMU.DLL      : 8.1.3.8       404328 Bytes  02.04.2016 18:48:53
AEEXP.DLL      : 8.4.2.152     293744 Bytes  02.04.2016 18:49:07
AEGEN.DLL      : 8.1.8.72      526240 Bytes  02.04.2016 18:48:53
AEHELP.DLL     : 8.3.2.10      284584 Bytes  02.04.2016 18:48:53
AEHEUR.DLL     : 8.1.4.2232  10144624 Bytes  02.04.2016 18:49:01
AEMOBILE.DLL   : 8.1.8.10      301936 Bytes  03.12.2015 19:42:49
AEOFFICE.DLL   : 8.3.3.22      456616 Bytes  02.04.2016 18:49:02
AEPACK.DLL     : 8.4.2.14      805744 Bytes  02.04.2016 18:49:04
AERDL.DLL      : 8.2.1.42      813928 Bytes  02.04.2016 18:49:04
AESBX.DLL      : 8.2.21.4     1629032 Bytes  02.04.2016 18:49:06
AESCN.DLL      : 8.3.4.4       142456 Bytes  02.04.2016 18:49:05
AESCRIPT.DLL   : 8.3.0.82      583592 Bytes  02.04.2016 18:49:05
AEVDF.DLL      : 8.3.3.4       142184 Bytes  02.04.2016 18:49:05
AVWINLL.DLL    : 15.0.16.227    27680 Bytes  02.04.2016 18:48:50
AVPREF.DLL     : 15.0.16.227    53944 Bytes  02.04.2016 18:49:18
AVREP.DLL      : 15.0.16.227   223400 Bytes  02.04.2016 18:49:19
AVARKT.DLL     : 15.0.16.227   230080 Bytes  02.04.2016 18:49:08
AVEVTLOG.DLL   : 15.0.16.251   200192 Bytes  02.04.2016 18:49:11
SQLITE3.DLL    : 15.0.16.227   459752 Bytes  02.04.2016 18:50:00
AVSMTP.DLL     : 15.0.16.227    80200 Bytes  02.04.2016 18:49:23
NETNT.DLL      : 15.0.16.227    16880 Bytes  02.04.2016 18:49:55
CommonImageRc.dll: 15.0.16.222  4307832 Bytes  02.04.2016 18:48:51
CommonTextRc.dll: 15.0.16.222    68864 Bytes  02.04.2016 18:48:51

Konfiguration für den aktuellen Suchlauf:
Job Name..............................: AVGuardAsyncScan
Konfigurationsdatei...................: C:\ProgramData\Avira\Antivirus\TEMP\AVGUARD_581dfe78\guard_slideup.avp
Protokollierung.......................: standard
Primäre Aktion........................: Reparieren
Sekundäre Aktion......................: Quarantäne
Durchsuche Masterbootsektoren.........: ein
Durchsuche Bootsektoren...............: aus
Durchsuche aktive Programme...........: ein
Durchsuche Registrierung..............: aus
Suche nach Rootkits...................: aus
Integritätsprüfung von Systemdateien..: aus
Prüfe alle Dateien....................: Alle Dateien
Durchsuche Archive....................: ein
Rekursionstiefe einschränken..........: 20
Archiv Smart Extensions...............: ein
Makrovirenheuristik...................: ein
Dateiheuristik........................: Vollständig
Auszulassende Dateien.................: 

Beginn des Suchlaufs: Samstag, 5. November 2016  18:07

Der Suchlauf über gestartete Prozesse wird begonnen:
Durchsuche Prozess 'svchost.exe' - '45' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '31' Modul(e) wurden durchsucht
Durchsuche Prozess 'dwm.exe' - '37' Modul(e) wurden durchsucht
Durchsuche Prozess 'atiesrxx.exe' - '16' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '81' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '199' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '67' Modul(e) wurden durchsucht
Durchsuche Prozess 'atieclxx.exe' - '45' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '112' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '73' Modul(e) wurden durchsucht
Durchsuche Prozess 'spoolsv.exe' - '74' Modul(e) wurden durchsucht
Durchsuche Prozess 'sched.exe' - '70' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '84' Modul(e) wurden durchsucht
Durchsuche Prozess 'Fuel.Service.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'avguard.exe' - '124' Modul(e) wurden durchsucht
Durchsuche Prozess 'AppleMobileDeviceService.exe' - '63' Modul(e) wurden durchsucht
Durchsuche Prozess 'mDNSResponder.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'CxAudMsg64.exe' - '29' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '59' Modul(e) wurden durchsucht
Durchsuche Prozess 'dashost.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'integratedoffice.exe' - '73' Modul(e) wurden durchsucht
Durchsuche Prozess 'Avira.ServiceHost.exe' - '107' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskeng.exe' - '32' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskhostex.exe' - '48' Modul(e) wurden durchsucht
Durchsuche Prozess 'WConnectorProductivity.exe' - '62' Modul(e) wurden durchsucht
Durchsuche Prozess 'Explorer.EXE' - '233' Modul(e) wurden durchsucht
Durchsuche Prozess 'YCMMirage.exe' - '41' Modul(e) wurden durchsucht
Durchsuche Prozess 'skydrive.exe' - '94' Modul(e) wurden durchsucht
Durchsuche Prozess 'avshadow.exe' - '23' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchIndexer.exe' - '60' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '41' Modul(e) wurden durchsucht
Durchsuche Prozess 'WUDFHost.exe' - '22' Modul(e) wurden durchsucht
Durchsuche Prozess 'CAudioFilterAgent64.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'Energy Management.exe' - '39' Modul(e) wurden durchsucht
Durchsuche Prozess 'utility.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'SynTPEnh.exe' - '45' Modul(e) wurden durchsucht
Durchsuche Prozess 'SpotifyWebHelper.exe' - '45' Modul(e) wurden durchsucht
Durchsuche Prozess 'SSScheduler.exe' - '21' Modul(e) wurden durchsucht
Durchsuche Prozess 'YouCamTray.exe' - '42' Modul(e) wurden durchsucht
Durchsuche Prozess 'PDVD10Serv.exe' - '32' Modul(e) wurden durchsucht
Durchsuche Prozess 'SYNTPHELPER.EXE' - '17' Modul(e) wurden durchsucht
Durchsuche Prozess 'avgnt.exe' - '118' Modul(e) wurden durchsucht
Durchsuche Prozess 'pdf24.exe' - '37' Modul(e) wurden durchsucht
Durchsuche Prozess 'Avira.Systray.exe' - '131' Modul(e) wurden durchsucht
Durchsuche Prozess 'SettingSyncHost.exe' - '114' Modul(e) wurden durchsucht
Durchsuche Prozess 'rundll32.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskhost.exe' - '44' Modul(e) wurden durchsucht
Durchsuche Prozess 'DllHost.exe' - '39' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmiprvse.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'firefox.exe' - '141' Modul(e) wurden durchsucht
Durchsuche Prozess 'plugin-container.exe' - '75' Modul(e) wurden durchsucht
Durchsuche Prozess 'avcenter.exe' - '124' Modul(e) wurden durchsucht
Durchsuche Prozess 'update.exe' - '82' Modul(e) wurden durchsucht
Durchsuche Prozess 'updrgui.exe' - '58' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchProtocolHost.exe' - '37' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchFilterHost.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'avscan.exe' - '114' Modul(e) wurden durchsucht
Durchsuche Prozess 'WBrowserKeeper.exe' - '8' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '8' Modul(e) wurden durchsucht
Durchsuche Prozess 'wininit.exe' - '15' Modul(e) wurden durchsucht
Durchsuche Prozess 'winlogon.exe' - '31' Modul(e) wurden durchsucht
Durchsuche Prozess 'lsass.exe' - '60' Modul(e) wurden durchsucht

Der Suchlauf über die ausgewählten Dateien wird begonnen:

Beginne mit der Suche in 'C:\Users\jarnds\Downloads\SafeDownload.exe'
C:\Users\jarnds\Downloads\SafeDownload.exe
    [0] Archivtyp: Inno Setup
    --> {tmp}\cinshlpr.dll
        [FUND]      Enthält Muster der Software PUA/Widdit.Gen4
        [WARNUNG]   Infizierte Dateien in Archiven können nicht repariert werden
  [HINWEIS]   Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '34019e45.qua' verschoben!


Ende des Suchlaufs: Samstag, 5. November 2016  18:24
Benötigte Zeit: 16:52 Minute(n)

Der Suchlauf wurde vollständig durchgeführt.

      0 Verzeichnisse wurden überprüft
   1025 Dateien wurden geprüft
      1 Viren bzw. unerwünschte Programme wurden gefunden
      0 Dateien wurden als verdächtig eingestuft
      0 Dateien wurden gelöscht
      0 Viren bzw. unerwünschte Programme wurden repariert
      1 Dateien wurden in die Quarantäne verschoben
      0 Dateien wurden umbenannt
      0 Dateien konnten nicht durchsucht werden
   1024 Dateien ohne Befall
      2 Archive wurden durchsucht
      1 Warnungen
      1 Hinweise
         
MBAM Log Teil 1 zu lang für einen Post:
Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlaufdatum: 05.11.2016
Suchlaufzeit: 19:08
Protokolldatei: mbam_161105_2000.txt
Administrator: Ja

Version: 2.2.1.1043
Malware-Datenbank: v2016.11.05.08
Rootkit-Datenbank: v2016.10.31.01
Lizenz: Testversion
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: jarnds

Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 324154
Abgelaufene Zeit: 50 Min., 30 Sek.

Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 1
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe, 4996, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b]

Module: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 102
PUP.Optional.Iminent, HKLM\SOFTWARE\CLASSES\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [75378537e4b6a78ff6209af613efef11], 
PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [75378537e4b6a78ff6209af613efef11], 
PUP.Optional.Iminent, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [75378537e4b6a78ff6209af613efef11], 
PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}, In Quarantäne, [c9e39527e5b5a4921afd0d8353af9967], 
PUP.Optional.Iminent, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}, In Quarantäne, [c9e39527e5b5a4921afd0d8353af9967], 
PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}, In Quarantäne, [307c8834257595a1c0cb296d2dd54eb2], 
PUP.Optional.Iminent, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}, In Quarantäne, [307c8834257595a1c0cb296d2dd54eb2], 
PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{0af350d9-3916-454b-ac53-0b0b65f41301}, In Quarantäne, [228a64580b8f4ee82aee197710f29d63], 
PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{68B81CCD-A80C-4060-8947-5AE69ED01199}, In Quarantäne, [08a409b37c1e3df9938a6a2612f09769], 
PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}, In Quarantäne, [ebc1ffbd3a60d95d34ee315fe919b44c], 
PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\TYPELIB\{5B191EA7-F309-4D2F-AAA5-C77D84D29CCD}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], 
PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\INTERFACE\{8DA8B89E-0C65-403B-8231-AB22ECFA0687}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], 
PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\INTERFACE\{A928E66C-F501-4E66-9953-855C712F93B2}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], 
PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\INTERFACE\{B0E28FA0-DF07-44B6-95CE-48BE26DB9266}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], 
PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\INTERFACE\{E6B4EE8F-C38E-4994-BE28-229A3F92262C}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], 
PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\INTERFACE\{FCA8936E-403A-4487-A966-70F80F1D5A6A}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], 
PUP.Optional.Iminent, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl, Löschen bei Neustart, [7636526ac2d8d95d94d57630ec1739c7], 
PUP.Optional.ProtectedSearch, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ProtectedSearch, Löschen bei Neustart, [812bba02c6d44de96a616c4423e0619f], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SystemSockets, Löschen bei Neustart, [595323998b0f9c9abb7f5d48f0136b95], 
PUP.Optional.Widdit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}, In Quarantäne, [5f4dc9f345556dc94db6a51753b03dc3], 
PUP.Optional.Widdit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}, In Quarantäne, [c7e501bb039758de3dc6328a26ddd828], 
PUP.Optional.ASK.Gen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{41564952-412D-5637-00A7-A758B70C0501}, In Quarantäne, [6c40c9f3fb9fe15552e585394bb8956b], 
PUP.Optional.APNToolBar.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\APNMCP, In Quarantäne, [bdef6c50b7e3c96da498fcddc43e11ef], 
PUP.Optional.HomeTab, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\APPDATALOW\SOFTWARE\SIMPLYTECH\HomeTab, In Quarantäne, [f1bb516b643663d3092904a1b84bc13f], 
PUP.Optional.SimplyTech, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\APPDATALOW\SOFTWARE\SIMPLYTECH\Toolbar, In Quarantäne, [e7c52e8ed3c73303853bab09e71c738d], 
PUP.Optional.Widdit, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}, In Quarantäne, [b9f3ba021f7bac8a22defcc0b84b9b65], 
PUP.Optional.Widdit, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}, In Quarantäne, [2b81aa12f7a347ef54ac823a9a6923dd], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\TYPELIB\{9945959C-AAD8-4312-8B57-2DE11927E770}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{BD125908-5F10-409F-9C01-F2207CA18887}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{BD125908-5F10-409F-9C01-F2207CA18887}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{9945959C-AAD8-4312-8B57-2DE11927E770}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{9945959C-AAD8-4312-8B57-2DE11927E770}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{80703783-E415-4EE3-AB60-D36981C5A6F1}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{80703783-E415-4EE3-AB60-D36981C5A6F1}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{41564952-412D-5637-00A7-7A786E7484D7}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{41564952-412D-5637-00A7-7A786E7484D7}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{41564952-412D-5637-00A7-7A786E7484D7}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{41564952-412D-5637-00A7-7A786E7484D7}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{41564952-412D-5637-00A7-7A786E7484D7}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\CLSID\{25e93bf1-df51-467b-b51d-fd4bd3ddb4f9}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{25e93bf1-df51-467b-b51d-fd4bd3ddb4f9}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\TYPELIB\{5b191ea7-f309-4d2f-aaa5-c77d84d29ccd}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{5b191ea7-f309-4d2f-aaa5-c77d84d29ccd}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{5b191ea7-f309-4d2f-aaa5-c77d84d29ccd}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.SourceSinkImpl.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.SourceSinkImpl, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.SourceSinkImpl, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.SourceSinkImpl, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.SourceSinkImpl, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.SourceSinkImpl.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.SourceSinkImpl.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.SourceSinkImpl.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{25E93BF1-DF51-467B-B51D-FD4BD3DDB4F9}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{6fa0479b-417c-4317-b7cd-64b238930796}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.NotificationSource.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.NotificationSource, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.NotificationSource, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.NotificationSource, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.NotificationSource, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.NotificationSource.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.NotificationSource.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.NotificationSource.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\CLSID\{6FA0479B-417C-4317-B7CD-64B238930796}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{6FA0479B-417C-4317-B7CD-64B238930796}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{af02e7d2-e73d-468c-9bbc-87367e8a4faf}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.ToolbarInfo.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.ToolbarInfo, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.ToolbarInfo, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.ToolbarInfo, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.ToolbarInfo, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.ToolbarInfo.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.ToolbarInfo.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.ToolbarInfo.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\CLSID\{AF02E7D2-E73D-468C-9BBC-87367E8A4FAF}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{AF02E7D2-E73D-468C-9BBC-87367E8A4FAF}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{ba696155-d96e-4281-b467-0367a0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.Band.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.Band, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.Band, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.Band, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.Band, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.Band.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.Band.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.Band.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\CLSID\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\CLSID\{BA696155-D96E-4281-B467-0367A0456474}\INPROCSERVER32, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\stdmfpam, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\TYPELIB\{F25FAEB1-AC58-4FE7-A2EB-F58578FA4A06}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\INTERFACE\{746DB37C-1206-42CF-9CE1-8D5AF2205E18}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{746DB37C-1206-42CF-9CE1-8D5AF2205E18}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{746DB37C-1206-42CF-9CE1-8D5AF2205E18}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{F25FAEB1-AC58-4FE7-A2EB-F58578FA4A06}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{F25FAEB1-AC58-4FE7-A2EB-F58578FA4A06}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 

Registrierungswerte: 25
PUP.Optional.SearchCertified, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, In Quarantäne, [8a220cb0f2a81e18b763ab08679cde22]
PUP.Optional.Widdit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|SuggestionsURL_JSON, hxxp://api.widdit.com/suggestions/?format=ffplugin&ua=ie&src=addon&si=46364&gid=46364-3869-1383841915030-248387-b5678&dbCode=1&command={searchTerms}, In Quarantäne, [5f4dc9f345556dc94db6a51753b03dc3]
PUP.Optional.Widdit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|SuggestionsURL_JSON, hxxp://api.widdit.com/suggestions/?format=ffplugin&ua=ie&src=addon&si=43168&gid=46364-3869-1383841915030-248387-b5678&dbCode=1&command={searchTerms}, In Quarantäne, [c7e501bb039758de3dc6328a26ddd828]
PUP.Optional.CertifiedTB, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|URL, hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=4.9&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [b9f3ead2287296a00492d5f4fe04728e]
PUP.Optional.CertifiedTB, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|TopResultURLFallback, hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=4.9&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [0ba100bc9ffb4fe71e787752f012eb15]
PUP.Optional.CertifiedTB, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|URL, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [515bbefe396185b1e0b62b9e79895da3]
PUP.Optional.CertifiedTB, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|TopResultURLFallback, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [39734478aeeca78fb4e2963330d28977]
PUP.Optional.CertifiedToolBar.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURI|(Default), hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, In Quarantäne, [f4b8d8e4afebd660c77c9a4fa260f10f]
PUP.Optional.SearchCertified, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURI, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, In Quarantäne, [d0dc3686207a55e185962d8648bb5ba5]
PUP.Optional.CertifiedToolBar.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|(Default), hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, In Quarantäne, [802c23994555cb6b89bb7871b25018e8]
PUP.Optional.SearchCertified, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURL, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, In Quarantäne, [47658438debccb6b3fdd288bb44f639d]
PUP.Optional.ASK.Gen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{41564952-412D-5637-00A7-A758B70C0501}|InstallSource, C:\ProgramData\APN\APN-Stub\AVIRA-V7\, In Quarantäne, [6c40c9f3fb9fe15552e585394bb8956b]
PUP.Optional.Iminent, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{35A2F0C6-7C2A-483D-836D-9C912592B3FC}, v2.20|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files (x86)\Iminent\Iminent.Messengers.exe|Name=Iminent.Messengers Firewall Rule|Edge=TRUE|, In Quarantäne, [09a31d9fa4f6e55134c5a14bb94a6d93]
PUP.Optional.SearchCertified, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, In Quarantäne, [5e4ee1db89112d096cada211cb38f40c]
PUP.Optional.Widdit, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|SuggestionsURL_JSON, hxxp://api.widdit.com/suggestions/?format=ffplugin&ua=ie&src=addon&si=46364&gid=46364-3869-1383841915030-248387-b5678&dbCode=1&command={searchTerms}, In Quarantäne, [b9f3ba021f7bac8a22defcc0b84b9b65]
PUP.Optional.Widdit, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|SuggestionsURL_JSON, hxxp://api.widdit.com/suggestions/?format=ffplugin&ua=ie&src=addon&si=43168&gid=46364-3869-1383841915030-248387-b5678&dbCode=1&command={searchTerms}, In Quarantäne, [2b81aa12f7a347ef54ac823a9a6923dd]
PUP.Optional.CertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|URL, hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=4.9&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [d6d6a81471291e187322b71250b26997]
PUP.Optional.CertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|TopResultURLFallback, hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=4.9&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [3e6e7d3ff6a47cba5243f1d8788a857b]
PUP.Optional.CertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|URL, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [f3b94478d6c4f640dbbaeddc12f02ed2]
PUP.Optional.CertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|TopResultURLFallback, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [0ca0e9d3c1d92115860f8c3da959af51]
PUP.Optional.HomeTab, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|AutoConfigURL, hxxp://cdn1.browsersecurity.net/safe/cloud.js?si=46364&tid=3869, In Quarantäne, [1e8ec3f97d1d4beb49eba9fcaa595ca4]
PUP.Optional.APNToolBar.Gen, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{41564952-412D-5637-00A7-7A786E7484D7}, ????????, In Quarantäne, [298300bc58428aac84c484277092f60a]
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{41564952-412D-5637-00A7-7A786E7484D7}, 0, In Quarantäne, [298300bc58428aac84c484277092f60a]
PUP.Optional.HomeTab, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 

Registrierungsdaten: 16
PUP.Optional.SimplyTech, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\ABOUTURLS|newtab, %appdata%\SimplyTech\home\home.htm, Gut: (www.google.com), Schlecht: (%appdata%\SimplyTech\home\home.htm),Ersetzt,[d7d5427a88120e2841ac215632d23ac6]
PUP.Optional.SimplyTech, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\ABOUTURLS|newtab, %appdata%\SimplyTech\home\home.htm, Gut: (www.google.com), Schlecht: (%appdata%\SimplyTech\home\home.htm),Ersetzt,[6943318b267470c606e7d89fb351cb35]
Hijack.StartPage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[b3f939835743ce688e41561f3fc5c838]
Hijack.SearchPage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[b3f99f1d5f3bd95db61ab0c564a0af51]
Hijack.SearchPage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[25873a82fd9dae883d93a7ced3319769]
Hijack.SearchPage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Page, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[5755e5d7e8b2bf7710c0472ef80c8977]
Hijack.StartPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[5656aa127e1ccd69e5e9d2a3798b43bd]
Hijack.StartPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[3a7276469efc81b5339b7df833d16c94]
Hijack.StartPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[ddcf5c60603a77bf7c528bea0301bf41]
Hijack.SearchPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[44681d9f8c0e3afc2da40b6ad72d46ba]
Hijack.SearchPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[5557dbe18119ab8bf3dec1b4eb195ba5]
Hijack.SearchPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Page, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[5b51c3f9900a8da970611d58f410b947]
PUP.Optional.SearchCertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURI|(Default), hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, Gut: (www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s),Ersetzt,[218b8834cfcba69005c199de31d3ef11]
PUP.Optional.SearchCertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURI, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, Gut: (www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s),Ersetzt,[9715a418dcbea492f9cd0e69c143a45c]
PUP.Optional.SearchCertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|(Default), hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, Gut: (www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s),Ersetzt,[189486362773e84e586fa5d2c73def11]
PUP.Optional.SearchCertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, Gut: (www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s),Ersetzt,[94189527b5e555e1ac1b90e76a9a817f]

Ordner: 133
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\foundation, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\font, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\gradient, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\font, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent, In Quarantäne, [03a904b871299f9769e0daccd03356aa], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\APN\APN-Stub, In Quarantäne, [3d6f38840d8d58dea79ed2d957ab47b9], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\avira, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\imesh, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\mindspark, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\plain, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\taskbar, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\v5parity, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\ask-avira-homepage, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-homepage, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-url-cloud, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-url-cloud\3.0, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-webguard, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-webguard\1.0, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\browser-security, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\browser-security\2.0, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\components, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\content-script, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\templates, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\lib, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\facebook, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\facebook\3.0, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\search-box-DLA, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\simple-email-list, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\hack, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\shims, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\search-suggestion, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater\Config, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater\Response, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\Users\jarnds\AppData\Local\AskPartnerNetwork, In Quarantäne, [05a7dbe17d1daa8c0c3bc0ebe51d7987], 
PUP.Optional.APNToolBar.Gen, C:\Users\jarnds\AppData\Local\AskPartnerNetwork\Toolbar, In Quarantäne, [05a7dbe17d1daa8c0c3bc0ebe51d7987], 
PUP.Optional.APNToolBar.Gen, C:\Users\jarnds\AppData\Local\AskPartnerNetwork\Toolbar\AVIRA-V7, In Quarantäne, [05a7dbe17d1daa8c0c3bc0ebe51d7987], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla\Firefox, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla\Firefox\Profiles, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\extensions, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}\CRX, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}\CRX\{Crx_Version}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Updater, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Updater\{PartnerID}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\{PartnerID}, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\AVIRA-V7, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.BrowserUpdater, C:\Windows\System32\Tasks\Browser Updater, In Quarantäne, [44682a924d4d90a6245c8727639f16ea], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\HomeTab, In Quarantäne, [8527c4f8d7c3b58191ae219459a9758b], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\HomeTab\64, In Quarantäne, [8527c4f8d7c3b58191ae219459a9758b], 
PUP.Optional.HomeTab, C:\Program Files\HomeTab, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, C:\Program Files\HomeTab\IE, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\IE, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\chrome, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\chrome, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\components, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\plugins, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.Iminent, C:\ProgramData\Iminent, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], 
PUP.Optional.Iminent, C:\ProgramData\Iminent\Mediator, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], 
PUP.Optional.Iminent, C:\ProgramData\Iminent\Mediator\Datas, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], 
PUP.Optional.Iminent, C:\ProgramData\Iminent\Mediator\Datas\Cache, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], 
PUP.Optional.Iminent, C:\ProgramData\Iminent\Mediator\Datas\Cache\apix.iminent.com, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], 
PUP.Optional.Iminent, C:\Users\jarnds\AppData\Roaming\Iminent, In Quarantäne, [29838e2e21797fb794226f4625ddc23e], 
PUP.Optional.Iminent, C:\Users\jarnds\AppData\Roaming\Iminent\Mediator, In Quarantäne, [29838e2e21797fb794226f4625ddc23e], 
PUP.Optional.Iminent, C:\Users\jarnds\AppData\Roaming\Iminent\Mediator\Datas, In Quarantäne, [29838e2e21797fb794226f4625ddc23e], 
PUP.Optional.SystemSockets, C:\Windows\System32\Tasks\SystemSockets, In Quarantäne, [2e7ee8d44f4b11258200c0febb479070], 
PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide, In Quarantäne, [aa02299305951f17d0318642de24916f], 
PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide\Offers, In Quarantäne, [aa02299305951f17d0318642de24916f],
         

Alt 05.11.2016, 21:46   #2
Specht
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



MBAM Teil 2:
Code:
ATTFilter
Dateien: 421
PUP.Optional.PriceCongress, C:\Users\jarnds\AppData\Roaming\HomeTab\HomeTab.dll, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Local\DownloadGuide\Offers\hometab.exe, In Quarantäne, [65478537821890a6043dc368a1605aa6], 
PUP.Optional.Iminent, C:\Users\jarnds\AppData\Local\DownloadGuide\Offers\iminent.exe, In Quarantäne, [b6f603b9ecae5ed87af8a883946d1fe1], 
PUP.Optional.Iminent, C:\Windows\Installer\ce5a5a8.msi, In Quarantäne, [bdef53695149a69085ed69c24eb328d8], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\home.htm, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquery-ui-1.10.1.custom.min.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquery.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquery.themepunch.plugins.min.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquery.themepunch.revolution.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquery.themepunch.revolution.min.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquiso.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\modernizr.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\socket.io.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\style.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\vars.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\animate.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\font-awesome.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\font-awesome.min.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\fontawesome-webfont.eot, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\fontawesome-webfont.svg, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\fontawesome-webfont.ttf, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\fontawesome-webfont.woff, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\FontAwesome.otf, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\foundation.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\foundation.min.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\main.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\normalize.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\style.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts\fontawesome-webfont.eot, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts\fontawesome-webfont.svg, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts\fontawesome-webfont.ttf, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts\fontawesome-webfont.woff, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts\FontAwesome.otf, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\foundation\foundation.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_left.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrowleft.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrowright.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrows.psd, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_large_left.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_large_right.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_left2.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_right.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_right2.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\black50.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\boxed_bgtile.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\bullet.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\bullets.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\bullets.psd, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\bullets2.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\bullet_boxed.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\coloredbg.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\grain.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\gridtile.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\gridtile_3x3.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\gridtile_3x3_white.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\gridtile_white.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\large_left.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\large_right.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\loader.gif, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\loader2.gif, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\navigdots.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\navigdots_bgtile.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\shadow1.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\shadow2.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\shadow3.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\small_arrows.psd, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\small_left.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\small_left_boxed.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\small_right.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\small_right_boxed.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\timer.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\timerdot.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\transparent.jpg, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\white50.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\css\settings-ie8.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\css\settings.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\font\revicons.eot, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\font\revicons.svg, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\font\revicons.ttf, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\font\revicons.woff, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\decor_inside.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\decor_inside_white.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\decor_testimonial.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\gradient\g30.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\gradient\g40.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\js\jquery.themepunch.plugins.min.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\js\jquery.themepunch.revolution.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\js\jquery.themepunch.revolution.min.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\demo.captions.vtt, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\demo.html, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video-js.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video-js.min.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video-js.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video-js.swf, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video.dev.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\font\vjs.eot, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\font\vjs.svg, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\font\vjs.ttf, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\font\vjs.woff, In Quarantäne, [04a879434951a88ea08deabb0003629e], 
PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\SearchTheWeb.lnk, In Quarantäne, [03a904b871299f9769e0daccd03356aa], 
PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Blog.lnk, In Quarantäne, [03a904b871299f9769e0daccd03356aa], 
PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\FAQ.lnk, In Quarantäne, [03a904b871299f9769e0daccd03356aa], 
PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Help.lnk, In Quarantäne, [03a904b871299f9769e0daccd03356aa], 
PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Iminent.lnk, In Quarantäne, [03a904b871299f9769e0daccd03356aa], 
PUP.Optional.Iminent, C:\Windows\System32\Tasks\FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl, In Quarantäne, [84287c407525d264a2a8ffa70cf72bd5], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe, In Quarantäne, [bdef6c50b7e3c96da498fcddc43e11ef], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\icon.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\manifest.json, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\Toolbar.crx, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\init-bg-messaging.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\background-options.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\background.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\background.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\browser-action.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\ChromeUtilPlugin.dll, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\cookies.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\feeds.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\fixup-jquery-for-ie.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\history.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\ie-bg-shim.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\keywordSearch.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\lifecycle.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\localStorage.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\OneTimeCode.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\popup.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\preference.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\rebuttal.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\registry.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\reporting.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\search.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\security.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\sideByside.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\tabs.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\utils.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\build.json, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\lang-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\tb-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\test-widget-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\widget-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\chrome-options.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\content-script.xul, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\init-tb-stuff.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\new-tab-page.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\newtab-overlay.xul, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\newtab-subscript.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\toolbar.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\toolbar.xul, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widget-bundled.xul, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widget-hosted.xul, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\chrome-options.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\containers.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\new-tab.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\searchbox.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\toolbar.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\avira\avira.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\imesh\imesh.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\mindspark\mindspark.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\mindspark\new-search-button-mid.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\mindspark\new-search-button-sides.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\plain\plain.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\taskbar\taskbar.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\v5parity\v5parity.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\IDR_WEBSTORE_ICON.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\logo_128x.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\logo_19x.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\logo_19x_grey.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\logo_24x.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\logo_32x.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\toolbar-icons.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\btn_search_ask_taskbar.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\logo_cobrand_18px.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\logo_cobrand_24px.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\new-search-button-mid.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\new-search-button-sides.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\search-button-mid.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\search-button-sides.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_1.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_10.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_10plus.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_2.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_3.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_4.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_5.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_6.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_7.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_8.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_9.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_exclaim.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_numbers.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\bdg-gradient.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\bg.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\curved-divider.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\left-bg.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\ask-avira-homepage\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-homepage\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-url-cloud\3.0\contentScript.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-webguard\1.0\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\browser-security\2.0\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\background.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\blank.gif, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\blank.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\button.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\config.json, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\window.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\components\AviraContentPolicy.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\components\IAviraContentPolicy.xpt, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\css\button.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\css\window.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\avira_abine_btn.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\btn-bg.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\dd-arrow.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\footer.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\header-top-plain.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\header-top.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\like.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\linkedin.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\on-off-knob.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\on-off.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\plus-minus.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\plusone.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\settings.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\tweet.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\button.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\common.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\lang-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\messaging.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\auto-update.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\background.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\content-policy.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\rules.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\tab-data.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\content-script\common.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\content-script\inpage.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\content-script\social-button.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\template.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\view.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\view_alert.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\view_global.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\window.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\templates\all.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\lib\ContentPolicy.dll, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\facebook\3.0\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\simple-email-list\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\simple-email-list\gmail.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\simple-email-list\hotmail.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\simple-email-list\yahoo!.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\options.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\css\options.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images\button-blue-1x20.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images\button-grey-1x26.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images\icons.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images\lightblue-1x43.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\js\options.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\content-script.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\injector.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\inline-html.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\positioning.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\toolbar.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\widget-hosted.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\widget.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\hack\facebook.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\hack\relative.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\hack\static.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\browser-shim.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\constant.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\default-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\i18n.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\jquery.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\json.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\polyfill.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\protocol.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\state-machine.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\tb-message.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\widget-messaging.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\window-position.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\shims\console.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\chrome-options.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\ieCS.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\IFrameButton.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\init-toolbar.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\new-tab-page.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\rebuttal.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\reel.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\searchbox.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\shimIE.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\SimpleButton.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\toolbar.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\options.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\options.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\options.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images\button-blue-1x20.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images\button-grey-1x26.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images\icons.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images\lightblue-1x43.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal\rebuttal.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal\rebuttal.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal\rebuttal.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal\images\warning.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\search-suggestion\search-suggestion.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\search-suggestion\search-suggestion.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\search-suggestion\search-suggestion.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\feed.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\menu.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\menu.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\images\footer_gradient.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\images\footer_shadow.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\images\image_placeholder.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\images\item-bg.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\js\api.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\js\feed.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\js\menu.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater\Config\Config.31.4.1.0-3.xml, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater\Response\Response.31.4.1.0-5.xml, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater\Response\Response.31.4.1.0-6.xml, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], 
PUP.Optional.APNToolBar.Gen, C:\Users\jarnds\AppData\Local\AskPartnerNetwork\Toolbar\AVIRA-V7\APNStorage.stg, In Quarantäne, [05a7dbe17d1daa8c0c3bc0ebe51d7987], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\APNSetup.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\searchhook.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ServiceLocator.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\SO.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\toolbar.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Toolbar.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ToolbarPS.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\UpdateManager.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1031.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1033.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1034.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1036.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1040.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1041.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1043.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1045.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1049.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\2070.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\AskToolbarInstaller-12.5.1_AVIRA-V7.msi, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\extensions\toolbar_AVIRA-V7@apn.ask.com.xpi, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}\CRX\ToolbarCR.crx, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}\CRX\Update.xml, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}\CRX\{Crx_Version}\Toolbar.crx, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\apnmcp.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\searchhook.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\ServiceLocator.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\SO.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\toolbar.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Toolbar.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\ToolbarPS.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\UpdateManager.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Updater\ask-search.xml, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Updater\{PartnerID}\config.xml, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\{PartnerID}\Passport.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\ask-search.xml, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\AVIRA-V7\config.xml, In Quarantäne, [298300bc58428aac84c484277092f60a], 
PUP.Optional.BrowserUpdater, C:\Windows\System32\Tasks\Browser Updater\Browser Updater, In Quarantäne, [44682a924d4d90a6245c8727639f16ea], 
PUP.Optional.HomeTab, c:\program files\hometab\ie\hometab.dll, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\IE\HomeTab.dll, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, C:\Program Files\HomeTab\IE\wdapimng.exe, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\cinshlpr.dll, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\hometab_icon.ico, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\InstallHelper.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\Interop.IWshRuntimeLibrary.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\is-SENOO.tmp, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\Microsoft.Win32.TaskScheduler.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\Microsoft.Win32.TaskScheduler.xml, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\ProtectedSearch.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\ProtectedSearch.ico, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\SQLite.Designer.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\SQLite.Interop.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\stdmfpam.dll, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\stinst.dat, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\STInst.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\STInst64.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\System.Data.SQLite.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\TaskSchedulerCreator.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\TBUpdater.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\ToolbarUninstall.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\unins000.dat, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\unins000.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\unins000.msg, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\unins001.dat, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\unins001.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, c:\program files (x86)\hometab\wbrowserupdate.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\IE\HomeTab_64.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\IE\wdapimng.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\IE\wdapimng_64.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\chrome\HomeTab.crx, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\chrome.manifest, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\install.js, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\install.rdf, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\pop.htm, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\chrome\HomeTab_3869.jar, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\components\wtb_complete.js, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\plugins\npwiddit.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\contact.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\default_logo.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\default_search_button.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\default_search_provider16.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\default_seperator.ico, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\help.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\home.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\refresh.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\settings.dat, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\shrink.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\stbcfg.bin, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\upgrade.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], 
PUP.Optional.Iminent, C:\ProgramData\Iminent\Mediator\Datas\Cache\apix.iminent.com\1031.11575f00-7bdc-4181-ba0a-b298aeab228c.dat, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], 
PUP.Optional.Iminent, C:\Users\jarnds\AppData\Roaming\Iminent\Mediator\Datas\globalcache.dat, In Quarantäne, [29838e2e21797fb794226f4625ddc23e], 
PUP.Optional.Iminent, C:\Users\jarnds\AppData\Roaming\Iminent\Mediator\Datas\user.dat, In Quarantäne, [29838e2e21797fb794226f4625ddc23e], 
PUP.Optional.SystemSockets, C:\Windows\System32\Tasks\SystemSockets\SystemSockets, In Quarantäne, [2e7ee8d44f4b11258200c0febb479070], 
PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide\amazon.ico, In Quarantäne, [aa02299305951f17d0318642de24916f], 
PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide\Free_PDF_Perfect_Setup_pdf_perfect_de.exe, In Quarantäne, [aa02299305951f17d0318642de24916f], 
PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide\Offers\foxydeal.exe, In Quarantäne, [aa02299305951f17d0318642de24916f], 
PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide\Offers\pricealarm.exe, In Quarantäne, [aa02299305951f17d0318642de24916f], 

Physische Sektoren: 0
(keine bösartigen Elemente erkannt)


(end)
         
__________________


Alt 05.11.2016, 21:48   #3
Specht
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



FRST:
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 04-11-2016
durchgeführt von jarnds (Administrator) auf IDEA-PC (05-11-2016 21:07:08)
Gestartet von C:\Users\jarnds\Desktop
Geladene Profile: jarnds (Verfügbare Profile: jarnds)
Platform: Windows 8.1 (Update) (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Spotify Ltd) C:\Users\jarnds\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe


==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [887968 2012-06-14] (Conexant Systems, Inc.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17079376 2012-11-24] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191568 2012-11-24] (Lenovo(beijing) Limited)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-14] (Synaptics Incorporated)
HKLM\...\Run: [EPSON Stylus DX4000 Series] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_FATIBEE.EXE /FU "C:\WINDOWS\TEMP\E_S8DD9.tmp" /EF "HKLM"
HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [YouCam Mirage] => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [136488 2012-07-27] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [167024 2012-07-27] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-18] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [831576 2016-11-05] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60136 2016-08-19] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Run: [Spotify] => C:\Users\jarnds\AppData\Roaming\Spotify\Spotify.exe [4736000 2014-04-12] (Spotify Ltd)
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Run: [Spotify Web Helper] => C:\Users\jarnds\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1140736 2014-04-12] (Spotify Ltd)
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> 
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
Startup: C:\Users\jarnds\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\net.lnk [2016-11-05]
ShortcutTarget: net.lnk -> C:\Users\jarnds\AppData\Roaming\Windows Net Data\net.exe (Windows Net)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.24.150
Tcpip\..\Interfaces\{3D9DD881-644D-44E1-9FC4-EBE582EB2E77}: [DhcpNameServer] 192.168.24.150

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
SearchScopes: HKLM-x32 -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = 
SearchScopes: HKU\S-1-5-21-2925157275-2194030336-170780499-1002 -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = 

FireFox:
========
FF ProfilePath: C:\Users\jarnds\AppData\Roaming\Mozilla\Firefox\Profiles\6yqza5ii.default [nicht gefunden]
FF ProfilePath: C:\Users\jarnds\AppData\Roaming\Mozilla\Firefox\Profiles\245ui9kl.default-1478367702295 [2016-11-05]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-09-04] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-09-04] ()

Chrome: 
=======
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-08-06] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [988184 2016-11-05] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [470600 2016-11-05] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [470600 2016-11-05] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1453696 2016-11-05] (Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [324304 2016-08-19] (Avira Operations GmbH & Co. KG)
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [1674720 2013-09-25] ()
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-10-31] (Microsoft Corporation)
S3 SXDS10; C:\Program Files (x86)\Common Files\soft Xpansion\sxds10.exe [234096 2013-07-24] (soft Xpansion)
S3 vmicguestinterface; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 vmicheartbeat; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 vmickvpexchange; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 vmicshutdown; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 vmictimesync; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [144664 2016-11-05] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [154392 2016-11-05] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [35488 2016-01-03] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [78208 2016-11-05] (Avira Operations GmbH & Co. KG)
R3 BCM43XX; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation)
S0 ebdrv; C:\WINDOWS\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-11-05] (Malwarebytes)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)
R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [8222736 2012-06-15] (Realtek Semiconductor Corp.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-11-05 21:07 - 2016-11-05 21:08 - 00013652 _____ C:\Users\jarnds\Desktop\FRST.txt
2016-11-05 20:07 - 2016-11-05 20:08 - 00000000 ____D C:\FRST
2016-11-05 19:02 - 2016-11-05 20:25 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-11-05 19:01 - 2016-11-05 20:17 - 00001119 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-11-05 19:01 - 2016-11-05 19:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-11-05 19:01 - 2016-11-05 19:01 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-11-05 19:01 - 2016-11-05 19:01 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2016-11-05 19:01 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-11-05 19:01 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-11-05 19:01 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-11-05 18:59 - 2016-11-05 18:59 - 00000000 ____D C:\ProgramData\McAfee
2016-11-05 18:41 - 2016-11-05 18:41 - 00000000 ____D C:\Users\jarnds\Desktop\Alte Firefox-Daten
2016-11-05 18:26 - 2016-11-05 20:17 - 00001159 _____ C:\Users\Public\Desktop\Avira Launcher.lnk
2016-11-05 18:16 - 2016-11-05 18:16 - 02409984 _____ (Farbar) C:\Users\jarnds\Desktop\FRST64.exe
2016-11-05 18:11 - 2016-11-05 18:13 - 22851472 _____ (Malwarebytes ) C:\Users\jarnds\Downloads\mbam-setup-2.2.1.1043.exe
2016-11-05 15:43 - 2016-11-05 15:47 - 00000826 _____ C:\WINDOWS\system32\Drivers\etc\hosts.txt

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-11-05 20:55 - 2013-11-14 08:27 - 01776918 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-11-05 20:55 - 2013-11-14 08:11 - 00765582 _____ C:\WINDOWS\system32\perfh007.dat
2016-11-05 20:55 - 2013-11-14 08:11 - 00159366 _____ C:\WINDOWS\system32\perfc007.dat
2016-11-05 20:55 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\Inf
2016-11-05 20:27 - 2014-03-11 23:44 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-11-05 20:23 - 2012-12-24 18:55 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2925157275-2194030336-170780499-1002
2016-11-05 20:19 - 2014-02-09 12:02 - 00000000 ___DO C:\Users\jarnds\SkyDrive
2016-11-05 20:18 - 2014-05-20 00:48 - 00001182 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-11-05 20:18 - 2014-02-08 20:51 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-11-05 20:18 - 2013-07-07 20:50 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-11-05 20:18 - 2012-11-24 11:11 - 00002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon.lnk
2016-11-05 20:18 - 2012-11-24 11:05 - 00001973 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Cloud Storage by SugarSync.lnk
2016-11-05 20:18 - 2012-11-24 10:54 - 00002435 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk
2016-11-05 20:18 - 2012-11-24 10:34 - 00002189 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerXpress.lnk
2016-11-05 20:17 - 2015-03-08 15:12 - 00001096 _____ C:\Users\Public\Desktop\PDF24 Creator.lnk
2016-11-05 20:17 - 2015-03-08 15:12 - 00001076 _____ C:\Users\Public\Desktop\PDF24 Fax.lnk
2016-11-05 20:17 - 2014-05-20 00:48 - 00001164 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-11-05 20:17 - 2013-11-09 09:49 - 00001996 _____ C:\Users\Public\Desktop\Lenovo Solution Center.lnk
2016-11-05 20:17 - 2012-11-24 11:20 - 00002135 _____ C:\Users\Public\Desktop\OneKey Recovery.lnk
2016-11-05 20:17 - 2012-11-24 11:18 - 00002244 _____ C:\Users\Public\Desktop\Intel AppUp(SM) center.lnk
2016-11-05 20:17 - 2012-11-24 11:10 - 00002182 _____ C:\Users\Public\Desktop\Lenovo PowerDVD 10.lnk
2016-11-05 20:17 - 2012-11-24 11:03 - 00001235 _____ C:\Users\Public\Desktop\Lenovo YouCam.lnk
2016-11-05 20:17 - 2012-11-24 10:57 - 00002077 _____ C:\Users\Public\Desktop\Benutzerhandbuch.lnk
2016-11-05 20:17 - 2012-11-24 10:56 - 00001182 _____ C:\Users\Public\Desktop\Microsoft Office 2010 Activation.lnk
2016-11-05 20:16 - 2014-02-09 11:53 - 00001461 _____ C:\Users\jarnds\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-11-05 20:16 - 2013-08-15 16:46 - 00001821 _____ C:\Users\jarnds\Desktop\Spotify.lnk
2016-11-05 20:16 - 2013-08-15 16:46 - 00001807 _____ C:\Users\jarnds\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2016-11-05 20:16 - 2012-12-24 18:45 - 00001133 _____ C:\Users\jarnds\Desktop\Cyberlink Power2Go.lnk
2016-11-05 20:11 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-11-05 20:10 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Camera
2016-11-05 20:10 - 2013-08-22 14:25 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-11-05 20:09 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-11-05 20:04 - 2013-09-25 19:18 - 00000000 ____D C:\ProgramData\APN
2016-11-05 20:04 - 2013-07-24 21:32 - 00000000 ____D C:\Users\jarnds\AppData\Roaming\SimplyTech
2016-11-05 18:58 - 2013-08-22 16:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-11-05 18:39 - 2013-11-09 10:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-11-05 18:32 - 2013-11-09 10:25 - 00154392 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2016-11-05 18:32 - 2013-11-09 10:25 - 00144664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2016-11-05 18:32 - 2013-11-09 10:25 - 00078208 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2016-11-05 18:26 - 2014-09-03 18:03 - 00000000 ____D C:\ProgramData\Package Cache
2016-11-05 16:56 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-11-05 16:00 - 2014-02-09 12:29 - 00003930 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{FEE97374-AEDC-4953-8182-67E829191DD3}
2016-11-05 15:44 - 2012-07-26 08:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-11-05 15:03 - 2014-05-20 00:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-11-05 15:03 - 2013-08-22 15:44 - 00338016 _____ C:\WINDOWS\system32\FNTCACHE.DAT

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2012-11-24 10:47 - 2012-11-24 10:47 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Einige Dateien in TEMP:
====================
C:\Users\jarnds\AppData\Local\Temp\avgnt.exe


==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-11-05 16:35

==================== Ende von FRST.txt ============================
         
Addition:
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-11-2016
durchgeführt von jarnds (05-11-2016 21:09:57)
Gestartet von C:\Users\jarnds\Desktop
Windows 8.1 (Update) (X64) (2014-02-09 10:52:35)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-2925157275-2194030336-170780499-500 - Administrator - Disabled)
Gast (S-1-5-21-2925157275-2194030336-170780499-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2925157275-2194030336-170780499-1004 - Limited - Enabled)
jarnds (S-1-5-21-2925157275-2194030336-170780499-1002 - Administrator - Enabled) => C:\Users\jarnds

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Avira Antivirus (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 19.0.0.190 - Adobe Systems Incorporated)
Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
Amazon Browser App (HKLM-x32\...\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6}) (Version: 1.0.0.0 - Amazon) <==== ACHTUNG
AMD Catalyst Install Manager (HKLM\...\{DA51A69D-5D86-8A3D-1A4E-CB7CA80BA803}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.)
Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2F72F540-1F60-4266-9506-952B21D6640D}) (Version: 6.1.0.13 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.19.164 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{82dc2ab6-088f-4e0a-8e27-bb829481d3bc}) (Version: 1.2.70.16079 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.2.70.16079 - Avira Operations GmbH & Co. KG) Hidden
Benutzerhandbuch (x32 Version: 1.0.0.9 - Lenovo) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.44.50 - Conexant)
Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.8000.16 - Dolby Laboratories Inc)
Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.3 - Lenovo)
Energy Management (x32 Version: 8.0.2.3 - Lenovo) Hidden
Iminent (x32 Version: 6.27.21.0 - Iminent) Hidden <==== ACHTUNG
Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel)
Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.1.7600.167 - Realtek Semiconductor Corp.)
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.0828 - CyberLink Corp.)
Lenovo OneKey Recovery (Version: 8.0.0.0828 - CyberLink Corp.) Hidden
Lenovo PowerDVD10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4310.52 - CyberLink Corp.)
Lenovo PowerDVD10 (x32 Version: 10.0.4310.52 - CyberLink Corp.) Hidden
Lenovo Solution Center (HKLM\...\{D60E3A84-5DDC-49ED-B9A5-E3466996EB36}) (Version: 2.3.002.00 - Lenovo Group Limited)
Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3127 - CyberLink Corp.)
Lenovo YouCam (x32 Version: 4.1.3127 - CyberLink Corp.) Hidden
Lenovo_Wireless_Driver (HKLM-x32\...\{5D642A72-8194-4A22-80DA-11FE610CCA8E}) (Version: 6.30.5926 - Lenovo)
Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 36.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 36.0.1 (x86 de)) (Version: 36.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
PIF DESIGNER (HKLM-x32\...\{B90450DF-E781-46FD-B1F1-0C86DA40E443}) (Version:  - )
Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.9109 - CyberLink Corp.)
PowerXpressHybrid (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.39030 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Spotify (HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Spotify) (Version: 0.9.4.178.g259772ba - Spotify AB)
SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.3 - Synaptics Incorporated)
UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.9 - Lenovo)
Windows Utils (HKLM-x32\...\Windows Utils) (Version:  - )
Windows-Treiberpaket - Lenovo (ACPIVPC) System  (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo)
Windows-Treiberpaket - Lenovo (WUDFRd) LenovoVhid  (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {1DF14AE3-088F-4BE5-890D-6563F6C61F4C} - \Browser Updater\Browser Updater -> Keine Datei <==== ACHTUNG
Task: {30FCF0F2-59EC-4698-8D0F-88D4FBC8EEEC} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2013-09-25] (Lenovo)
Task: {374BEFC5-C6E8-44C1-8E0D-3DB14FCCC3A9} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2013-09-25] (Lenovo)
Task: {40C8B641-12C6-41B5-9E21-FDCC90468F3F} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-09-04] (Adobe Systems Incorporated)
Task: {4636EB35-E9A7-4698-BBB9-7680B44F840D} - \FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl -> Keine Datei <==== ACHTUNG
Task: {48F65704-D1F1-4934-823F-40745AC69F81} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2012-07-27] (CyberLink)
Task: {5AF8D227-D5EB-43AA-AC8F-FED97A4D618A} - System32\Tasks\OFFICE2010ACT => C:\ProgramData\Microsoft\Windows\OFFICEICON.vbs [2012-03-08] ()
Task: {89792738-EA22-4631-8F08-9B31E23D9F20} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\WINDOWS\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
Task: {8FF1B24C-0761-4E0C-A6BF-6EEFA889A378} - \SystemSockets\SystemSockets -> Keine Datei <==== ACHTUNG
Task: {B0794DF4-8EBE-438D-8489-76814BCC683C} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-09-25] ()
Task: {C17D7A75-CE89-4E94-99D1-D3EEE22B6B24} - System32\Tasks\Microsoft\Office\Office First Run Task => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31] (Microsoft Corporation)
Task: {C216D323-DEA5-45F1-B4AC-9E71C2C9C328} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-09-25] ()
Task: {E5AEEE15-714D-4984-B535-88BFE03B9620} - \ProtectedSearch\Protected Search -> Keine Datei <==== ACHTUNG

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2012-08-06 12:09 - 2012-08-06 12:09 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2014-01-21 15:00 - 2013-08-23 14:45 - 00386216 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2rui.dll
2014-01-21 15:00 - 2013-10-31 09:08 - 00520872 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2r64.dll
2014-01-21 15:00 - 2013-10-31 09:07 - 00618152 _____ () C:\Program Files\Microsoft Office 15\ClientX64\StreamServer.dll
2013-04-21 20:44 - 2013-04-21 20:44 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2013-04-21 20:44 - 2013-04-21 20:44 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 14:25 - 2016-11-05 15:46 - 00000826 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.24.150
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

HKLM\...\StartupApproved\Run: => "SmartAudio"
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\StartupFolder: => "OpenOffice.org 3.4.1.lnk"
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\StartupFolder: => "net.lnk"
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\Run: => "Spotify"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{31590E0A-FAAE-447E-9B7A-FA87632EC5AE}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{9AF1C3AA-33BF-4701-A0B3-D8F60FBC89E4}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{4D266399-AE88-4B4B-ACD5-4ABC89A6CA15}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{52DA6642-1AFE-4251-873A-309CA185C268}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{38652F35-A200-4CF9-ACEE-330FC4F72EDE}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{83A415A1-FF13-4DEB-A172-1240E42B5EFC}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{E003B8C9-5E4F-402E-995B-F28E0C5A5203}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{2B9BA723-70F6-4F8B-A274-C0AF47FF86AF}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{951152AC-5938-463E-A4BD-1CC7A25EE652}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{911B08D9-9153-4F3F-B01F-E0B0BAFDF623}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{B539FE22-3BF6-49C5-92F4-7CCDB1FF0605}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{02D6218F-0D26-42E9-A6E5-EA98D68D91D5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{F5268360-5A40-4CBF-B932-538D0DD8C510}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{9CD77AAA-BE42-4B8D-BEE2-555940B52F94}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{9328B87C-00CC-4143-A01E-6FF904A9F231}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{3C2A740C-0B17-4328-88F7-28B3C1DB7CC8}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{D5DB7653-A0FA-4F31-A589-2817D54E5859}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{F7E4409A-FDDD-4CFD-9516-0968544317D3}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{BC162ED2-CA18-4227-84E2-58B65194C295}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{61C489B2-D70A-493D-872A-BE2838728531}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{20BA8097-93B8-40BD-A6F7-170E92874CEA}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{97057C07-7E9C-4CFC-A522-70F19AD1032C}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{48C87C68-9932-4AC1-9AFD-EF00B5A1EC36}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{8E595196-C629-4532-BAA4-856B1BCDF5DE}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{53F879C1-7615-4CC3-BDB2-5EDB27AEC893}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{014ACAD2-93CF-4CAB-A997-4362A4A0654C}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{8035EDEA-1935-416E-8BC7-CBCAF28922F3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{20595299-7EF0-49B4-BEBF-CF6C98162B15}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{F2B8D30D-D9A1-4453-9346-33F7C865E490}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{7C53AF69-78FD-4C1F-A8A7-F77F8E698709}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{4A0761E7-CDFD-4016-89D4-5A5124026644}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{C9A39840-A786-4F7F-88D8-CBC526DB72A8}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{499DE789-DD1E-4209-830C-95CF609F2F75}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{37BD4560-B275-43B2-A88B-EEA988F6A573}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{53DD9A22-7C68-47E9-B61B-990245D74E29}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{6E89E8D7-A98A-4EE4-935E-E8A7D783A13C}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{1537DDA4-8E1E-4D37-9D85-624DAF2867A6}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{2128FB05-D1A1-49DF-A15A-DC52FB56890F}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{FF6A9488-B212-4FF2-BA0E-A227ADA93438}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{2C473823-E1BB-4397-A7F2-67EEF4722759}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{0B241084-D2A6-4CE8-947F-5E7FE88324D4}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{2C534EE3-C0C0-42B5-9C72-576C4D3AE6E4}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{93BA86E4-D995-43D3-B8D2-324C8D221487}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{34C4EB29-30FC-487F-A042-6C31DDA02450}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{D2E92FA3-8BF9-430F-9F13-F046B87F3DB2}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{4AE533F3-BB8F-4520-870A-524E1335605E}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{8BD71011-69CA-4D20-A53F-BD1443F9FDCF}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{1ACEE7CF-44BB-463C-B477-22617906C956}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{948F7E6D-F190-4972-8D16-DF4B22B7B666}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{F288092D-3BAE-4AEC-B95D-C6B8F4F952CB}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{EB687779-4CEE-473C-989A-81EEC8B3C92D}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{CDD6AC48-A17D-4906-B78E-EC171D56E4E3}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{3C917DF0-2088-4B2E-BD10-2CC7680C3DEC}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{9D7B740B-B52F-4945-A8F9-93A8E353C1F0}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{7F3A91F9-334B-412C-AE42-A0A88B832705}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{B701500E-5E1D-452A-A92D-23A3D4D69CC2}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{7BE8A5A0-5F79-476F-8963-B2A7998D4E24}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{E01A2EBB-AE86-442E-B160-406A8C9FBFF9}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{9D6F68AD-4777-4421-BF54-2388C2F1297D}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{476B36F0-9672-45BD-BF9F-EBB3F36B011B}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{63600070-64BA-4C68-9A06-B5D84439B547}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{20098C27-19DA-4E10-9D0E-CB18CA2FFF8B}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{C2DA7802-338A-45EA-8535-9FA3003E7DD6}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{C0F30C29-EF1E-4F18-AC64-3C1830AC416D}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{693A86A9-189A-4236-8615-D45450DC8868}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{A8C50975-AB94-4988-A76F-DB67CBE080FA}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{5E8AE0F7-8651-497B-8574-34A2EACD4776}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{4A16538D-B50F-4542-BDB9-FE3FF9FCC450}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{BF243955-62D0-4D9F-BE34-345260D40EB9}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{A89EF238-D275-436C-98F8-58B8ABF5767B}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{2F656A69-11C2-4919-8753-6DCEBCAC3E09}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{D97B3C91-6C8D-4948-A40F-74A2955E7B43}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{1541082C-FE94-4792-A030-3C435490E22C}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{1046A633-9C0C-43E7-BE0A-E02068DBFDCB}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{52318557-024C-458A-AAAD-C191FED0E8BA}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{CCF808D5-014D-46BB-8C0E-44ECD1C556BD}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{7CCE5FAE-5891-4522-8A36-79E21D08B684}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{E728B728-F9D7-4E82-BDBA-74D6CDA3B168}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{C64B9D04-6013-44BF-8511-0D1BFE85D22A}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{94CB7B4F-13AC-4B74-96BC-CA4D3F23FC78}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{821A5ACD-982B-4AC4-9ACA-8627B413E92D}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{29B35728-AA64-4FF9-84BE-E66B7412F9CC}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{C4CA091C-0EC4-4289-90B9-8FA3AA499F29}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{9ACA624B-79F7-4160-B071-4A25A58C688E}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{CE301A57-222F-42AF-94C0-51B7F0FAECEA}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{2CF705A1-C2AB-4E5D-B7EA-DC622DAFAC7C}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{0233841C-A823-4887-A143-18D0A9D81440}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{3435CB49-FF3E-456B-B41A-FD8A3D5CF78A}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{DB43AAA0-A5BD-4767-B73F-4FCA082E6142}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{7CA83588-686B-4C8A-A9B7-1639510EF125}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{94C9006F-4AFB-45FE-8384-AE641CF1CD3E}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{A44A047C-C09B-4325-B6F4-6144CFB71A0C}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{CADAB205-56A4-4D0C-887F-60FBE60AF2C4}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{E6ABB99B-A441-4AC4-9681-C17F60ECFE27}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{8BF7239F-4D5C-453A-B8FE-981BC5BF9F9A}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{472B9BA0-E489-4F3C-B74C-C0A5BC7478DF}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{9ADA016F-DCBF-46BD-8779-C811C28A2EC8}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{4F000579-4F4C-40CD-B1AF-0862EACE9B83}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{EF46B84E-6601-4A07-A45B-3CC27CEFEA62}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{ABF3B025-76A8-4798-A93C-8075F6DF0AB6}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{D59AC634-3446-4845-A562-41292DA95DCB}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{2FFCBCD9-AEA7-49A9-8768-7EFA568FF079}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{770AAF42-670F-4B3E-8B12-F3E72DD2B80A}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{86ACE32E-52CE-4AEB-93D7-FEEDF04E689F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{4A54BCB0-E673-4B91-BCB8-A81D682F7565}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{C47693AE-5B43-44AC-AED3-CC8A8EDC542D}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{790C60EB-7796-4FE6-9F8B-1F2E78792961}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{69A3BAE8-8275-40FF-91B3-1BC71B7563CF}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{B8609BF9-EC93-43D8-A0BE-FC224843CCB0}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{9701986D-653C-47F8-8EC9-1412A0B3FB9C}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{610BD408-75E4-4311-B624-E03E171A7C4A}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{B06E2585-505A-403A-B619-677FD0602DD1}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{503D32B1-7F38-4AE8-BC39-6C6484A905E9}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{A3EB64BE-7EFF-41A8-8F62-73C4ECFF1759}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{EBA85F56-B894-4730-A716-043D7C054E6F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{300C32ED-70CA-4E9D-8BB2-967A751C8279}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{4C3D55E7-DE5F-46BA-9114-1493B0229134}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{A5451D3F-0135-407C-AAD7-C7AF50B7CE98}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{329971F4-2B7D-4DBD-A44C-14DA625A328E}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{A980C57B-6D4E-4093-8805-436194C4D372}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{C897E721-800C-4ABC-B263-92299E7D0F7C}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{3A6505B5-F2A7-44A4-A80F-B07E37F241F3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{FE1B8DF8-DB12-4BF3-8B06-3F25D130FF15}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{FC6C2A03-EE08-4564-9AC7-F76F35061579}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{522E4468-2BE3-445D-A078-A4A45085ACD8}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{F6B2FDBF-B457-4A62-973B-893D72342E14}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{0888CA5C-4836-42E6-80FC-EDA28C714F56}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{3B35E8AA-DFDE-405C-B3CD-9B6D6D06781F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{97CEB64D-315D-4796-B24C-666B2F3B1A7A}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{8F848D85-E43F-4BDE-A352-519FC1A1CDC9}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{7A8CFE98-57AF-4F46-A9B3-C704AC94AC01}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{B96DDD1E-B54C-45A6-9B7C-70DECB9F137E}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{224921CA-8021-4318-99BE-86CB06BB4E19}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{1C2F105A-6A10-4E4B-875B-EB004EEDD5A1}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{A9BE2356-0D5B-4DFC-BF3E-CFA1F6428232}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{80A1E00F-1D94-4E8E-B106-4BA94EB3D63F}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{08A43171-B012-4E94-AABA-2A48140D0B40}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{FAE1DA5E-ED48-4FE2-8642-AF8E67A53D81}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{2A192649-B91F-4D9F-A5C0-C1B54DADA4CC}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{51F69816-7C23-4146-899D-5A09FD6D4839}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{61BA7A75-D729-475B-9ECB-89E64EB560F3}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{F9285331-CC32-491A-8D75-32E0AD2F76D4}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{1DCFE372-F202-486B-AB2D-048A4C1CF7B8}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{862D11D4-8E55-482D-9BBA-681DAA213ED9}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{CFE2C457-231A-4D81-8D5B-B9BB9040F7FD}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{C6C5D205-6380-4168-B65C-DFF86C915D50}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{45A2FB6F-0AD9-49F5-AA09-0E07A55E190F}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{AA06C627-D612-444D-BEEF-15B33BADBA75}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{868F5610-B647-49E3-9064-C44D497F4F4F}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{860F54BC-AA58-468F-A879-D222E24C7516}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{3E9AE4D0-95E5-4A94-AA52-B3B97983F047}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{4FEED6F9-7DF3-483A-AD6F-6E7689DA8B9F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{D55AC898-A67D-45E0-A9A3-35868505FC88}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{9D1C5040-356F-448F-BB44-5C64E8A4840C}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{4EAC440F-B86F-4B96-A4DC-F3B50F84D3D3}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{4A0A1AC3-C263-4919-B2D4-57AFACA69717}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{BA50EE86-6A2A-43C2-994F-F1ACEA0030E3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{501A1B7C-E39B-48AE-9604-B98AFCC8522A}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{7425428F-C54E-4328-93CD-4975DA98956C}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{94B74269-59FD-4F2B-B768-802B96FFD1A4}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{B21FE7C4-5A1B-4D09-945B-ECD0A9205239}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{C59DE696-65D2-4457-AF40-06842B393ECF}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{23BB6799-7491-4032-ADE1-C5F9C9F088AE}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{2E74C9C2-968D-406D-903E-140B1B273626}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{A0438996-33C9-4ABE-A7C4-4EC0AF6DEFB3}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{640F2EA0-4FC4-4053-9EA6-1CDD2F7564CA}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{43556F8B-EC36-417E-ACD2-0D658FDE64AD}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{C5DCF058-9442-417F-B7E6-56A6E8D6B2D0}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{C82B50BF-370C-49E4-A0F5-E1D448495309}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{8608DC78-80C8-4086-9FE1-3575756BDF51}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{E8BB0448-0283-4DB2-868B-72AACDB35BAF}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{349DF183-2772-4F5D-92EF-9F171C6F21A6}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{F14A55C7-F424-4B89-AEA3-09F56841F687}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{9AF5F166-82F4-4F13-B9D8-96F696E2E070}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{8A2D7402-221E-4F7E-9B2C-DD7D6FC90F76}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{C121E0F4-4157-4DAD-85E8-BE6BDED25231}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{826B701C-E23B-412B-9183-0613317387C8}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{0A1361BB-499C-4C17-BE0B-1EC9296E91EE}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{0B96C217-51EF-4C32-8964-4CA1DF71BD2B}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{688C33BF-4622-4BB8-BA26-6E42D39382D8}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{87928ADE-1D57-4509-87C8-098DCB47D386}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{F00643B8-E3CE-4775-86F6-51E79413B137}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{22E2DFD3-B165-4BEF-A838-F5C3ACD9C859}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{B7C4AB21-E993-4175-B509-3398A8294059}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{68FD1505-5DA2-4605-BCCC-3A2346413B05}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{BD8B2BA2-B8C4-4E75-837F-FFE3C3070191}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{7477F066-FA29-4270-8B3A-15DEBCD84596}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{27ECA754-5039-4254-9DB9-3E4D7E17A5FA}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{F6B37D29-C842-403D-9DE6-229D2E7812B8}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{0410562A-BE0E-4524-94AF-D81F9F052BD5}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{597D5A60-57C5-4B8A-B685-A6A3C5716E16}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{49985A91-FEFF-4CAE-A561-2267D67E044F}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{BC8C0628-01A0-4D13-B6F2-4E1206909AC0}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{A0D7CC96-F058-4BD6-B9AC-495221EB8117}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{F199BC54-93B5-4ED2-AE6B-9241E4B030E1}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{D6FD0F52-2394-48BD-A416-3F82CEE0783F}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{79075692-1B8D-411E-9850-D4F466119479}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{6C39E8B8-A46F-41C8-98E1-43CDF7E167B5}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{E8777ECA-9981-4E03-B19C-A3CB016A13DE}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{98763CE1-0BA1-4823-93B6-6EC31228FF33}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{DA56AD0B-DDF4-403F-A100-FCE455329225}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{BE184A7B-A579-455C-B578-2D01DE8674C4}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{12099873-151E-40F8-B473-2D077BD5FFF6}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{25011FE2-5EE9-459A-9E8D-D77BF46A854D}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{EDE0BB71-693D-4B38-8263-27621FCB327F}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{CF95AC47-8CB6-4073-80A9-B5A4CD1DEF87}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{038B64F2-C6F3-4D0F-98C9-376BB96B8191}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{F82CB92D-C3FC-47D6-9936-7F1B12E2DA94}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{C000DC8D-E822-4C45-9431-CD3C02FC72A2}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{C36F51AE-7106-4284-832D-46F7844C76B5}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{9683FC4D-8B28-402C-A18C-2D2B5D5CF9E5}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{EE6E0641-8D7B-49AF-90BD-1234DED64F50}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{E7DE0040-D393-489E-B775-DD9DFA104580}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{94EEB4DC-D75D-4D1A-BBFF-F1E588E8E9C0}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{E07FC2BE-D183-4029-8871-B034E1F6F4DE}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{C144F242-B0D1-4895-A4E6-AD1401B36070}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{12D59EC9-BEF2-4105-AAB7-D8BB5ED0C85D}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{A7E35E64-C4F8-492C-9B31-E90E90E556EE}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{1CB617D2-2505-489C-949A-DC23600EF932}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{EA0D3658-EBB3-4C7C-8926-7E3B1EC0C122}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{6D34D0F9-0410-4AAD-991E-50D05EA692B5}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{9FF90B96-F508-435F-A01B-A47052B0A256}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{BCC020B5-99C8-4E29-913D-0F9691E0FCA3}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{56906E79-86DB-4BB7-97A5-FBAE89F83739}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{9008C01A-9D48-47F9-A396-9DE508CAB429}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{3182E752-92B7-4F2F-8A98-24863288CE4E}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{0B5C8683-63AB-4A72-8E5B-EDD9C4571AAE}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{653E02C0-9625-4593-8DB9-939629144265}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{A7CCCDE5-286C-4D23-AEEA-607F68EBE476}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{88745674-C7B8-4A18-9062-096E7D9016FF}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{41FBF40B-9C0C-42FE-ABF4-46A89EC818D8}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{AA5999D3-37CA-4E3B-86ED-DC0136BB500A}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{70FE0C02-5E55-4758-B640-82DA08071854}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{DBC761AC-83DF-4EF3-B636-65CDBEAF45F8}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{32F0025B-CAC6-4AB9-B511-977FA813541F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{BADB996C-7CC3-45D4-99D7-1803E13B4973}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{13B4CBD4-58FB-404A-ACA2-F787E74A0E2F}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{7EBD0A31-6CF6-4343-B655-F6EC023E2DE3}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{A6C5C766-6BA9-4579-8020-4EAE45C009B5}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{B0F2D13C-A47A-4BF6-A9A9-40A1A3C1782F}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{749141CD-8077-4F59-BCE7-764829287671}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{405C4447-A183-4A9D-BC87-EFC98180D983}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{6C814FD0-0094-4959-A215-04DE6EDEF98B}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{A6DCE084-3539-4421-A070-3709E87A7C25}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{16CF2BE6-B8CE-4D03-879E-3CB788550A65}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{9E321DAC-B3B8-4C5D-9656-061CBE7A8512}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{716B60C1-D593-48E4-8FC0-10AA221F71A4}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{9068F229-695C-4A19-BCB5-488A0A2579FA}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{7B404E5B-09BA-41AC-9160-C8E52C34CC9D}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{3BBDFA93-C1AC-43AB-8DEA-3DBAD02E44D9}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{CD9D11BA-6FFC-4B30-B7F9-EC008CD11E62}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{DBCDC030-3B58-480D-A38A-C2019A9E2DD3}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{ABDE343B-78B4-4B44-A148-B9BC5F8BAB74}] => (Allow) C:\Program Files (x86)\Iminent\Iminent.exe
FirewallRules: [{1D22FFEE-3D08-40BD-9A4C-8D3D3949BD83}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{415864A7-9908-4246-9F86-E1A5E31E8F87}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{428EAA71-A610-49EA-9E7F-392B8F308D25}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{793BD6DF-DCD4-4A56-B352-9D95940E9C7D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{20A83936-11C4-400D-9615-2EE09871FD75}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{9DCD87DF-07B0-4745-98E9-3E1084481DF8}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{CC95D4E5-9334-4944-A5CD-9720B4CB26C8}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{94C036E6-8C28-49C8-A6D1-BE4D52FF77C1}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD10.EXE
FirewallRules: [{22130532-8E60-4BF6-A954-4023004A95AC}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe
FirewallRules: [TCP Query User{398197DB-BBB5-42E4-B2E8-2322FCABEE5C}C:\users\jarnds\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jarnds\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{DE2EC066-64A1-4826-8E29-FBDC30D2980A}C:\users\jarnds\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jarnds\appdata\roaming\spotify\spotify.exe
FirewallRules: [{706D0B25-8F5A-49E4-A092-BB322D7A7CC5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{91F479DE-C747-4F78-988E-A93B6D9C2258}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{F257BBDB-A209-44A9-9162-305CE609AD90}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{4DD5178B-61CD-43BC-9B00-BA1ABDA93A84}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{70297660-F42E-4B92-B1B5-94D31A85F393}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{17BA08DB-E255-4B76-AB97-D2AE49B86DA6}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{36C2D94F-147C-476C-9FA8-986E1994B9F7}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{BF0472E3-99D2-4589-8A70-04EF63F89C96}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{031BB25A-8509-4373-89B0-1F132EBD91B4}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{503503CC-1003-42F4-9A54-B0F35F6894C8}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{6F0318AA-12AF-4271-BCC3-25F7A0AA9E06}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{0BA3770D-B148-4F0A-865A-22FD6C139713}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{15E2EE43-0831-43A2-8155-A19B13332F0C}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{59592524-F01C-4961-ABFE-31D8D906612C}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{E2A31FFC-E0F7-44F7-8809-0622DF087C17}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{D83DC77B-C665-4363-A75E-FC081BEDD191}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{6624CBFF-0E82-436C-BE4E-28F0ED0DFD97}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{6DA21A69-8476-4D31-9CC8-555ACDAB3B06}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{EB887EF1-072C-4CEE-A53F-222A5CF1840F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{325D826D-4AE6-4123-AA82-37C9EE0341A8}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{FCE81CCC-07BE-472B-BA0E-FAE5FDB7CD81}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{91FF10B0-5791-44BA-A346-8E3F20B20DBA}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{6AC3201B-F2D9-46B5-9D52-806AB0BBD50A}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{6F537ECA-AC5D-46D7-8F32-A015DAC39F3C}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{A6C9E89E-E9CE-4E55-B83F-D5A62297F8EC}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{A88C80A9-2C62-47D3-983F-E068741FC4B5}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{2C591D70-20AC-42A6-B51D-40C5DD41127B}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{83C21D89-78E2-4AC9-B5B9-6212B62D29AC}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [TCP Query User{C2934761-D822-4864-BB08-2C60312059F1}C:\windows\system32\settingsynchost.exe] => (Block) C:\windows\system32\settingsynchost.exe
FirewallRules: [UDP Query User{BCAF1FFB-A14D-4D05-A55F-95B55E9DBA6F}C:\windows\system32\settingsynchost.exe] => (Block) C:\windows\system32\settingsynchost.exe
FirewallRules: [{6CB4D00D-EDE5-4A86-89AE-C8A6E15B0888}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{5F748ADD-F759-4CA1-8DB3-2757976044A7}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{59AD263C-6B51-422E-8930-A0406CCF3CD5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{71BDC5D6-A6EF-4BA9-8A4A-EADA018F8483}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{8A195016-EBAE-46D5-AD01-A929EB9D6048}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{F8E040BB-53E9-46DA-B3C3-9ADA2DADB83B}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{42FFD4EA-04B1-4A91-9831-7C831C27A2F7}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{0BD01A86-0249-44EB-A4AA-EAC51F0AA84D}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{8E452D66-D046-41DA-A018-3704BCCBC16F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{B74ECE61-A8AA-4B6A-B4F1-E23ED68DFF97}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{492D74C7-EE95-40D4-B16E-83A6E0C99A11}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{F9635B67-F3BD-4F0E-8C45-9E19115E397D}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{649DE97B-6335-4F8D-A618-FD5653C9682A}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{7819A9DE-C509-4894-B451-9C1E632DD45A}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{053C0C1F-15C9-4FF3-B93B-F3DF39ED83DD}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{4C62D7DE-1371-4148-A557-6BCC08D79995}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{60F9F069-6D70-47B9-915B-09C9524226A6}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{735637BF-9406-445C-AFB8-04D3CC6F4884}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{E71CFAAD-84CB-44D1-97B5-2EC93EB74338}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{6000085B-525E-4554-981C-AD9D606DC35F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{5FFB4236-6DB6-4384-A55C-F9B4013CB927}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{3DF20882-D778-4A89-9580-70A40B2AD9AD}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{9EDC2681-A33A-470F-90BA-7FC9178DC72C}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{B763D42E-A30B-4A75-9739-E79CA77395D5}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{4179F09D-4086-467B-A821-D54701973C8C}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{6406F1A1-A104-42DC-99B4-252BFE515FE5}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{1EF125B0-495A-4AE0-B226-48DAACA72C16}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{F7D78CE8-4DDB-4568-94A6-65077085B46B}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{988A2686-7ABE-40BE-9833-713FAF1D21B9}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{833406FE-D17C-487A-BDD8-3DA3DC014FAC}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{0D6EC598-BB65-45D0-A429-1C3A633E65D7}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{9E8A2B25-B995-464D-A4CC-542E2DC69B25}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{67B8C221-4A00-4743-BB74-13FEFC9021E7}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{790B64F2-387D-4F22-87D6-3816B8664750}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{CA2CC5EC-51EB-4CB6-8803-DAC82943877E}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{2BD181B4-BFB9-4EBF-A6EB-762FC05F0F17}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{317FA637-1153-4422-84BE-A0D4A348BD4F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{E4BAAB0D-F2A5-4521-941E-E37F4323A425}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{C4CA3589-08D4-43BB-9810-A9000825F61B}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{07B4D4BE-C20C-4A8F-BD5F-A127740B0EC3}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{367EE6D9-C351-4BD7-A824-A3CC1224866E}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{7AC8D249-BD35-404C-AD0B-B239AF0B1308}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{483F804F-2FAE-40FF-9862-763EE177AF2B}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{7F141270-9A23-498D-AA6D-4BBF55219B36}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{598115EC-2488-4CB7-8ED5-A67911F28860}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{980C7CF4-4799-4E58-B1AE-968F20C4909A}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{E516CAB4-9275-4DF5-ADAC-FC08BB6C463F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{12F6B406-3C7C-479B-B594-50F7A832BE11}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{A11F19F8-4A64-4AC2-8FCB-BA8F52CA3912}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{9B4FF904-C223-49E3-AA6C-02CB5CFAB61B}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{1AB2677D-6D04-41FE-868E-DB4EEFE216AF}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{7BC657FA-3358-427D-A249-3E51C2CC1D2A}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{E9CC747E-848E-4E28-B954-9FEAC8165CEF}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{45BB6DBD-49EA-41B3-936C-609E6FD0F625}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{BC2AA80B-D18F-4E45-9C42-EEA12D986289}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{72D5AB06-49C4-449C-89FB-4D3CF1E8900F}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{FD8EC38E-3100-453D-80E0-556B9B689254}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{1D27C5A3-0D8C-4A17-9857-C24CF49F9A64}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{46633FB3-D418-4F81-99A7-2AA0712DF0EF}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{81F48220-AF5F-4529-9C00-23E5ACA88788}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{06DD50F3-2A08-48AB-8020-EBBF57167AAD}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{225DE175-DCD5-4FC2-BD4F-FD8B31C8B85E}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{EC687276-60EC-4DC3-83FB-0CA7BCEF1BA4}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{592BBFC3-8637-44F8-B881-AE1B977422E7}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{71F90671-ABDC-40DB-81D0-C9A7417AB9ED}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{7EAF8E20-6972-425D-8A2C-45538F6EB327}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{757F9A66-6F84-4312-8DA2-D94F3742725F}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{E34CCF70-560D-4AAC-9907-AC07A4819010}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{314B8DCD-4662-4621-8A38-21C618496255}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{08FCB74A-84DE-44E8-921F-EBE798F09C3F}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{C5BF1D58-5A58-4AFF-B841-31A5CB76990C}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{4A823372-ABB7-4576-A3CA-EAFE0448C988}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{3A07D5AC-01DF-40DF-A0D7-F7C234378AC9}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{EC02A358-5179-4A5D-A1F3-EA1CF8D0DFE2}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{1944CFBA-931E-4DEF-81E3-8B2E4AE0B268}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{D79D63FF-E808-48A3-877D-E48C777ADD5C}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{4F23B67D-ED14-43D6-B414-73C9B478261A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F4505983-B86D-4C28-A59D-BA5CD43ACBF0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{36F15323-E970-40F7-B583-FC14DA4095D5}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{BD1E0414-7266-4F2C-9D7F-964FC8A95D76}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe

==================== Wiederherstellungspunkte =========================

01-11-2015 16:58:08 Windows Update
02-01-2016 23:56:28 Windows Update
02-04-2016 17:46:05 Windows Update
04-09-2016 14:20:47 Removed iTunes
05-11-2016 16:34:50 Windows Update

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (11/05/2016 08:54:06 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 967922

Error: (11/05/2016 08:54:06 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 967922

Error: (11/05/2016 08:54:06 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/05/2016 08:22:48 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm avscan.exe, Version 15.0.19.163 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 1360

Startzeit: 01d23799ce70844e

Endzeit: 15039

Anwendungspfad: C:\Program Files (x86)\Avira\AntiVir Desktop\avscan.exe

Berichts-ID: 327a2e84-a38d-11e6-bebb-b888e3999fb4

Vollständiger Name des fehlerhaften Pakets: 

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (11/05/2016 08:10:11 PM) (Source: COM) (EventID: 18221) (User: NT-AUTORITÄT)
Description: Beim Herstellen der Verbindung mit dem RPCSS-Dienst wurde dem Benutzer "Nicht verfügbar\Nicht verfügbar" (SID: S-1-5-18) der Zugriff auf die COM-Serveranwendung "C:\WINDOWS\system32\schtasks.exe" im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) verweigert. Wahrscheinlichste Ursache: Dem Benutzer oder der Anwendung werden aufgrund der computerweiten Zugriffslimits keine lokalen Zugriffsberechtigungen gewährt. Die Zugriffslimits können mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (11/05/2016 07:17:36 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm avscan.exe, Version 15.0.19.163 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: aac

Startzeit: 01d23790923011a0

Endzeit: 4294967295

Anwendungspfad: c:\program files (x86)\avira\antivir desktop\avscan.exe

Berichts-ID: 1e94aeb3-a384-11e6-beba-b888e3999fb4

Vollständiger Name des fehlerhaften Pakets: 

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (11/05/2016 06:54:59 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15266

Error: (11/05/2016 06:54:59 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15266

Error: (11/05/2016 06:54:59 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/05/2016 06:50:54 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm avscan.exe, Version 15.0.19.163 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: e1c

Startzeit: 01d2378cb81580d7

Endzeit: 57333

Anwendungspfad: C:\Program Files (x86)\Avira\AntiVir Desktop\avscan.exe

Berichts-ID: 42a77c10-a380-11e6-beba-b888e3999fb4

Vollständiger Name des fehlerhaften Pakets: 

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:


Systemfehler:
=============
Error: (11/05/2016 08:19:30 PM) (Source: ACPI) (EventID: 13) (User: )
Description: : Der eingebettete Controller (EC) hat nicht innerhalb des angegebenen Zeitlimits reagiert. Dies deutet auf einen Fehler in der EC-Hardware oder -Firmware hin bzw. darauf, dass das BIOS auf falsche Art auf den EC zugreift. Fragen Sie den Computerhersteller nach einem aktualisierten BIOS. Dieser Fehler kann in einigen Situationen zur Folge haben, dass der Computer fehlerhaft läuft.

Error: (11/05/2016 08:13:32 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: Der Server "{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (11/05/2016 08:09:34 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070490 fehlgeschlagen: Microsoft.ZuneVideo

Error: (11/05/2016 08:08:51 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (11/05/2016 03:23:26 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: Der Server "{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (11/05/2016 03:19:23 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Der Dienst Windows Update konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.

Error: (11/05/2016 03:01:27 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Der Dienst Windows Update konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.

Error: (04/08/2016 04:56:30 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: Der Server "{4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (04/08/2016 04:56:30 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: Der Server "{4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (04/02/2016 09:59:45 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: Der Server "{4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.


==================== Speicherinformationen =========================== 

Prozessor: AMD E1-1200 APU with Radeon(tm) HD Graphics
Prozentuale Nutzung des RAM: 64%
Installierter physikalischer RAM: 1606.26 MB
Verfügbarer physikalischer RAM: 568.97 MB
Summe virtueller Speicher: 3142.26 MB
Verfügbarer virtueller Speicher: 1475.91 MB

==================== Laufwerke ================================

Drive c: (Windows8_OS) (Fixed) (Total:250.42 GB) (Free:206.6 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:23.27 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 298.1 GB) (Disk ID: 1A079A73)

Partition: GPT.

==================== Ende von Addition.txt ============================
         
__________________

Alt 10.11.2016, 14:50   #4
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



Hallo und


+++ WICHTIGER HINWEIS +++


Während der Analyse und Bereinigung nimmst du KEINERLEI Änderungen auf eigene Faust vor, d.h. du installierst oder deinstallierst keine Software ohne Absprache.
Auch veränderst du keine Systemeinstellungen, solange wir deinen Fall bearbeiten. Änderungen, Installationen oder Deinstallationen machst du AUSSCHLIESSLICH nur auf Anweisung!
Es wird erforderlich sein, deinen Virenscanner zu deaktivieren und in bestimmten Fällen auch zu deinstallieren, damit vernünftig bereinigt werden kann. Dein System ist daher erst wenn wir hier fertig sind wieder für den alltäglichen Gebrauch wie surfen oder mailen von mir freigegeben.

Gelesen und verstanden?





Bitte Avira deinstallieren. Das Teil empfehlen wir schon seit Jahren aus mehreren Gründen nicht mehr. Ein Grund ist ne rel. hohe Fehlalarmquote, der zweite Hauptgrund ist, dass die immer noch mit ASK zusammenarbeiten (Avira Suchfunktion geht über ASK). Auch andere Freewareanbieter wie AVG, Avast oder Panda sprangen auf diesen Zug auf; so was ist bei Sicherheitssoftware einfach inakzeptabel. Vgl. Antivirensoftware: Schutz Für Ihre Dateien, Aber Auf Kosten Ihrer Privatsphäre? | Emsisoft Blog

Gib Bescheid wenn Avira weg ist; wenn wir hier durch sind, kannst du auf einen anderen Virenscanner umsteigen, Infos folgen dann im Abschlussposting. Bitte JETZT nix mehr ohne Absprache installieren!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 10.11.2016, 20:27   #5
Specht
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



Hallo Cosinus,
Vielen Dank schonmal für Deine Unterstützung.

Avira habe ich soeben deinstalliert.
Den Rest habe ich gelesen und verstanden ;-)
warte auf weitere Anweisungen.


Alt 10.11.2016, 21:59   #6
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



1. Schritt: Malwarebytes Anti-Rootkit (MBAR)

Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers




2. Schritt: Kaspersky TDSS-Killer

Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.




Lesestoff:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit.
Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten.
Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________
--> Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde

Alt 11.11.2016, 02:07   #7
Specht
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



beides ohne Funde:
mbar:
Code:
ATTFilter
Malwarebytes Anti-Rootkit BETA 1.9.3.1001
www.malwarebytes.org

Database version:
  main:    v2016.11.10.10
  rootkit: v2016.10.31.01

Windows 8.1 x64 NTFS
Internet Explorer 11.0.9600.18053
jarnds :: IDEA-PC [administrator]

10.11.2016 23:38:31
mbar-log-2016-11-10 (23-38-31).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 301340
Time elapsed: 36 minute(s), 58 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
         
TDSS Killer:
Code:
ATTFilter
02:00:51.0206 0x0414  TDSS rootkit removing tool 3.1.0.12 Nov  7 2016 07:10:01
02:00:51.0224 0x0414  UEFI system
02:00:58.0081 0x0414  ============================================================
02:00:58.0081 0x0414  Current date / time: 2016/11/11 02:00:58.0081
02:00:58.0082 0x0414  SystemInfo:
02:00:58.0082 0x0414  
02:00:58.0082 0x0414  OS Version: 6.3.9600 ServicePack: 0.0
02:00:58.0082 0x0414  Product type: Workstation
02:00:58.0082 0x0414  ComputerName: IDEA-PC
02:00:58.0083 0x0414  UserName: jarnds
02:00:58.0083 0x0414  Windows directory: C:\WINDOWS
02:00:58.0083 0x0414  System windows directory: C:\WINDOWS
02:00:58.0083 0x0414  Running under WOW64
02:00:58.0083 0x0414  Processor architecture: Intel x64
02:00:58.0083 0x0414  Number of processors: 2
02:00:58.0083 0x0414  Page size: 0x1000
02:00:58.0083 0x0414  Boot type: Normal boot
02:00:58.0083 0x0414  CodeIntegrityOptions = 0x00000001
02:00:58.0083 0x0414  ============================================================
02:00:58.0656 0x0414  KLMD registered as C:\WINDOWS\system32\drivers\17556757.sys
02:00:58.0656 0x0414  KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 9600.18066, osProperties = 0x19
02:00:59.0121 0x0414  System UUID: {769E906D-200A-0C92-B449-10341E2432B4}
02:01:00.0592 0x0414  Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 ( 298.09 Gb ), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
02:01:00.0614 0x0414  ============================================================
02:01:00.0615 0x0414  \Device\Harddisk0\DR0:
02:01:00.0615 0x0414  GPT partitions:
02:01:00.0616 0x0414  \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {FA3B1158-CAF0-455E-B1A5-105AA893863B}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x1F4000
02:01:00.0616 0x0414  \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {404F6E88-9F3A-4A37-847C-9DD1372882D9}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000
02:01:00.0616 0x0414  \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {BFBFAFE7-A34F-448A-9A5B-6213EB736C22}, UniqueGUID: {E651E3A0-9408-4A60-8AF2-AC840ABDDE3F}, Name: Basic data partition, StartLBA 0x276800, BlocksNum 0x1F4000
02:01:00.0616 0x0414  \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {5554BE3B-6484-47F0-B8AD-B2BF10F579CD}, Name: Microsoft reserved partition, StartLBA 0x46A800, BlocksNum 0x40000
02:01:00.0616 0x0414  \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {B2324A29-DEDE-40CD-9B87-94F2FE8F927A}, Name: Basic data partition, StartLBA 0x4AA800, BlocksNum 0x1F4D5000
02:01:00.0616 0x0414  \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {F444E5E3-2A00-4FDB-A2FE-A0F6054772EC}, Name: , StartLBA 0x1F97F800, BlocksNum 0xAF000
02:01:00.0616 0x0414  \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {9894E6C9-B037-4764-B757-9B3CE66FD676}, Name: Basic data partition, StartLBA 0x1FA2E800, BlocksNum 0x3200000
02:01:00.0616 0x0414  \Device\Harddisk0\DR0\Partition8: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {69476984-44CD-494F-8B9B-B63CE99304A8}, Name: Basic data partition, StartLBA 0x22C2E800, BlocksNum 0x2800000
02:01:00.0617 0x0414  MBR partitions:
02:01:00.0617 0x0414  ============================================================
02:01:00.0653 0x0414  C: <-> \Device\Harddisk0\DR0\Partition5
02:01:00.0778 0x0414  D: <-> \Device\Harddisk0\DR0\Partition7
02:01:00.0778 0x0414  ============================================================
02:01:00.0778 0x0414  Initialize success
02:01:00.0778 0x0414  ============================================================
02:03:01.0776 0x0a9c  ============================================================
02:03:01.0776 0x0a9c  Scan started
02:03:01.0776 0x0a9c  Mode: Manual; SigCheck; TDLFS; 
02:03:01.0776 0x0a9c  ============================================================
02:03:01.0776 0x0a9c  KSN ping started
02:03:04.0230 0x0a9c  KSN ping finished: true
02:03:10.0100 0x0a9c  ================ Scan system memory ========================
02:03:10.0100 0x0a9c  System memory - ok
02:03:10.0102 0x0a9c  ================ Scan services =============================
02:03:10.0338 0x0a9c  [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci        C:\WINDOWS\System32\drivers\1394ohci.sys
02:03:10.0542 0x0a9c  1394ohci - ok
02:03:10.0651 0x0a9c  [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware           C:\WINDOWS\system32\drivers\3ware.sys
02:03:10.0686 0x0a9c  3ware - ok
02:03:10.0845 0x0a9c  [ E796AE43DDD1844281DB4D57294D17C0, 21AE69615044A96041E46476BE814B52C22624B6C7EA6BFC77BB64F69C3C21F5 ] ACPI            C:\WINDOWS\system32\drivers\ACPI.sys
02:03:10.0915 0x0a9c  ACPI - ok
02:03:10.0970 0x0a9c  [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex          C:\WINDOWS\system32\Drivers\acpiex.sys
02:03:11.0005 0x0a9c  acpiex - ok
02:03:11.0031 0x0a9c  [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr        C:\WINDOWS\System32\drivers\acpipagr.sys
02:03:11.0093 0x0a9c  acpipagr - ok
02:03:11.0137 0x0a9c  [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi         C:\WINDOWS\System32\drivers\acpipmi.sys
02:03:11.0218 0x0a9c  AcpiPmi - ok
02:03:11.0242 0x0a9c  [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime        C:\WINDOWS\System32\drivers\acpitime.sys
02:03:11.0287 0x0a9c  acpitime - ok
02:03:11.0338 0x0a9c  [ 3B42D95D20CD2AACDB0564471AE43ED7, BF49568D7060159F61D5F6DE7ECDECCCD1F920A2881544BA83CF420C822F6653 ] ACPIVPC         C:\WINDOWS\System32\drivers\AcpiVpc.sys
02:03:11.0424 0x0a9c  ACPIVPC - ok
02:03:11.0654 0x0a9c  [ 9BAF21BA600EC4E5FD9A66AD3E4FF5A6, 5E02E5E80557F6EC870EB7CC2DE95169D4225B87A2FE7E796736205F51C15816 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
02:03:11.0691 0x0a9c  AdobeFlashPlayerUpdateSvc - ok
02:03:11.0774 0x0a9c  [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX         C:\WINDOWS\system32\drivers\ADP80XX.SYS
02:03:11.0865 0x0a9c  ADP80XX - ok
02:03:11.0989 0x0a9c  [ BCD58DACAA1EAAADC115EDD940478F6D, F31613F583C302F62A00E6766B031531C9E193CAED563689B178BA257715B992 ] AeLookupSvc     C:\WINDOWS\System32\aelupsvc.dll
02:03:12.0140 0x0a9c  AeLookupSvc - ok
02:03:12.0300 0x0a9c  [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD             C:\WINDOWS\system32\drivers\afd.sys
02:03:12.0557 0x0a9c  AFD - ok
02:03:12.0654 0x0a9c  [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440          C:\WINDOWS\system32\drivers\agp440.sys
02:03:12.0698 0x0a9c  agp440 - ok
02:03:12.0752 0x0a9c  [ FE14D249D39368CA62D8DA6BC94AC694, E1036E22BFBD3750FD2D3DA6AB939B2DD54E824F4BD3E6539EF0E45AB5453DD1 ] ahcache         C:\WINDOWS\system32\DRIVERS\ahcache.sys
02:03:12.0858 0x0a9c  ahcache - ok
02:03:12.0926 0x0a9c  [ 14A45BE6F5678339F0EC5752D9849410, DD0F60E96FAC68FBD5B86382E541408C613BD0F871D0E0A1EF9AB6E7B26E545C ] ALG             C:\WINDOWS\System32\alg.exe
02:03:13.0040 0x0a9c  ALG - ok
02:03:13.0104 0x0a9c  [ 66B54471B5856E314947881E28263A6D, 2D60706B52A2CE98FF806337D62CD010C1DEB2AEDDF899C7B67173928B2D7C4C ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe
02:03:13.0213 0x0a9c  AMD External Events Utility - ok
02:03:13.0267 0x0a9c  AMD FUEL Service - ok
02:03:13.0300 0x0a9c  [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8           C:\WINDOWS\System32\drivers\amdk8.sys
02:03:13.0367 0x0a9c  AmdK8 - ok
02:03:14.0369 0x0a9c  [ FBB35875FEFE53D4280259842069ED72, B1A1B5799A6C50C244182CD201A1E9FCB7BE3B5ED4BB2E2E6BCF8E1BF53B75DB ] amdkmdag        C:\WINDOWS\system32\DRIVERS\atikmdag.sys
02:03:15.0444 0x0a9c  amdkmdag - ok
02:03:15.0588 0x0a9c  [ A32BCAD9377E3B75D034CAFBA463A0AE, F504895D9C9CD1B4607806BCAF15A1CBFBAC2E5824903277A1350C9F35045602 ] amdkmdap        C:\WINDOWS\system32\DRIVERS\atikmpag.sys
02:03:15.0684 0x0a9c  amdkmdap - ok
02:03:15.0737 0x0a9c  [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM          C:\WINDOWS\System32\drivers\amdppm.sys
02:03:15.0787 0x0a9c  AmdPPM - ok
02:03:15.0832 0x0a9c  [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata         C:\WINDOWS\system32\drivers\amdsata.sys
02:03:15.0870 0x0a9c  amdsata - ok
02:03:15.0916 0x0a9c  [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs          C:\WINDOWS\system32\drivers\amdsbs.sys
02:03:15.0965 0x0a9c  amdsbs - ok
02:03:15.0991 0x0a9c  [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata         C:\WINDOWS\system32\drivers\amdxata.sys
02:03:16.0032 0x0a9c  amdxata - ok
02:03:16.0081 0x0a9c  [ 415DD71628795197F7AFC176CBADC74E, 5F0359053A6CD6EE239139E0E6F46E1FA9A73F017C0CE9B7BC052216B2C846EC ] AppID           C:\WINDOWS\system32\drivers\appid.sys
02:03:16.0187 0x0a9c  AppID - ok
02:03:16.0211 0x0a9c  [ 88358135810B9DFD830A9D3A8C3D149A, DF914DA3828EE2310895D156342E3B3DF5E8C6F6F9B851C359E82A1F48180D4B ] AppIDSvc        C:\WINDOWS\System32\appidsvc.dll
02:03:16.0261 0x0a9c  AppIDSvc - ok
02:03:16.0319 0x0a9c  [ 680BFB820C5A943AB709BAA2B1EF27F2, A51D2A7976A762FE470C13C6D1BA0319A0FB19C9E66BF02AA44F83EAEC7130F8 ] Appinfo         C:\WINDOWS\System32\appinfo.dll
02:03:16.0450 0x0a9c  Appinfo - ok
02:03:16.0581 0x0a9c  [ 4FE5C6D40664AE07BE5105874357D2ED, 70DD05EE80B77EB2F781E0919885D1BBB1119EA1A8955935AF5AECD05E30F14A ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
02:03:16.0607 0x0a9c  Apple Mobile Device - ok
02:03:16.0679 0x0a9c  [ 35E28923A23ADABAA5A1B43256D0AB58, A5F3AF8BBEE58B2165BAFACC5FF8B167B55B020998D3D1565C2229ED8753B269 ] AppReadiness    C:\WINDOWS\system32\AppReadiness.dll
02:03:16.0811 0x0a9c  AppReadiness - ok
02:03:16.0996 0x0a9c  [ 573542B5E97772021B73E854DA861DAA, C3FD00FA28060F8D7CDFD455BBB5FF8239CB76DDFFF2BDAE6AA944674DD993D3 ] AppXSvc         C:\WINDOWS\system32\appxdeploymentserver.dll
02:03:17.0164 0x0a9c  AppXSvc - ok
02:03:17.0197 0x0a9c  [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas          C:\WINDOWS\system32\drivers\arcsas.sys
02:03:17.0234 0x0a9c  arcsas - ok
02:03:17.0275 0x0a9c  [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi           C:\WINDOWS\system32\drivers\atapi.sys
02:03:17.0304 0x0a9c  atapi - ok
02:03:17.0364 0x0a9c  [ 431FE56F5A2F5937994CB2DA330B47DB, E5AED551529A21494114959251FDF566802DD6D9B9D86A937A0EECE53338CAC7 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
02:03:17.0463 0x0a9c  AudioEndpointBuilder - ok
02:03:17.0602 0x0a9c  [ 0F03CC00645D7F841879A048787D6AC7, 3ECD2486157469F2EDB63D4868338D1445F2909153DF0AFFE432083730EEE3F5 ] Audiosrv        C:\WINDOWS\System32\Audiosrv.dll
02:03:17.0702 0x0a9c  Audiosrv - ok
02:03:17.0767 0x0a9c  [ 3C6ED74AF41DD1A5585CE5EF3D00915F, A742F576407776634E5A8E49C60023FFDF395DE0B2DE36662A23F85B79405ED2 ] AxInstSV        C:\WINDOWS\System32\AxInstSV.dll
02:03:17.0850 0x0a9c  AxInstSV - ok
02:03:17.0973 0x0a9c  [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv         C:\WINDOWS\system32\drivers\bxvbda.sys
02:03:18.0041 0x0a9c  b06bdrv - ok
02:03:18.0092 0x0a9c  [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay    C:\WINDOWS\System32\drivers\BasicDisplay.sys
02:03:18.0136 0x0a9c  BasicDisplay - ok
02:03:18.0205 0x0a9c  [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender     C:\WINDOWS\System32\drivers\BasicRender.sys
02:03:18.0245 0x0a9c  BasicRender - ok
02:03:18.0975 0x0a9c  [ 9A4EF701A4FC835F7DDD8956D930010F, 28A555B98098ECE47912C40A74CA92AFA76F51A711F2DEFF1A498FF212505F23 ] BCM43XX         C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys
02:03:19.0693 0x0a9c  BCM43XX - ok
02:03:19.0802 0x0a9c  [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2          C:\WINDOWS\System32\drivers\bcmfn2.sys
02:03:19.0821 0x0a9c  bcmfn2 - ok
02:03:19.0902 0x0a9c  [ 4B6F61BD394DCEDA9B06D702836531C2, 83C739467BD9A00FE09BCE83BB9409EA2DA62FCDD2384F9EE98626226223E918 ] BDESVC          C:\WINDOWS\System32\bdesvc.dll
02:03:20.0010 0x0a9c  BDESVC - ok
02:03:20.0071 0x0a9c  [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
02:03:20.0188 0x0a9c  Beep - ok
02:03:20.0281 0x0a9c  [ 8F2AD111B47A190F325EE7495D3C1803, C61F1506E74A9EFBB61B8A06B30886B6E891C33211F755F30B924EBA202ECEC5 ] BFE             C:\WINDOWS\System32\bfe.dll
02:03:20.0430 0x0a9c  BFE - ok
02:03:20.0549 0x0a9c  [ 48554994279BFE17A3D2B00076D0CB1A, 6521B1EC0BC6B01F63976370D89FE7DC2E7404899F68B6FAC37A9173B9C5D489 ] BITS            C:\WINDOWS\System32\qmgr.dll
02:03:23.0076 0x0a9c  BITS - ok
02:03:23.0193 0x0a9c  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
02:03:23.0246 0x0a9c  Bonjour Service - ok
02:03:23.0286 0x0a9c  [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser          C:\WINDOWS\system32\DRIVERS\bowser.sys
02:03:23.0403 0x0a9c  bowser - ok
02:03:23.0485 0x0a9c  [ FA601515FF2B59F25FDD8EDB1D2A1104, 21DFB53241F8E880F7546B9ADF38F47D6AD0782EC7F8F0284ED69DE7CEF7DCB9 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
02:03:23.0612 0x0a9c  BrokerInfrastructure - ok
02:03:23.0680 0x0a9c  [ BC111AADACD0BF59D56547461D13AB6E, 91E3619930C29EE4B2683683888BA7EE3CF6B1DDB0C19A14E0880470CBE40EF4 ] Browser         C:\WINDOWS\System32\browser.dll
02:03:23.0742 0x0a9c  Browser - ok
02:03:23.0784 0x0a9c  [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg      C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
02:03:23.0833 0x0a9c  BthAvrcpTg - ok
02:03:23.0873 0x0a9c  [ 272A62B660A48AEF366F8A1836CED19F, 78EFAC6B1B2313482329BBFFBF0DDA6462BD88E5BE3C817C5E8E0EAF3074C925 ] BthHFEnum       C:\WINDOWS\System32\drivers\bthhfenum.sys
02:03:23.0965 0x0a9c  BthHFEnum - ok
02:03:24.0013 0x0a9c  [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid        C:\WINDOWS\System32\drivers\BthHFHid.sys
02:03:24.0065 0x0a9c  bthhfhid - ok
02:03:24.0137 0x0a9c  [ 9307A4B743D277C499CDA8E19E5687AC, 7A01989EC3D54581F292BDEDC9B9445F2ABD50165102617E3089BDD061C63A19 ] BthHFSrv        C:\WINDOWS\System32\BthHFSrv.dll
02:03:24.0240 0x0a9c  BthHFSrv - ok
02:03:24.0280 0x0a9c  [ 07E33226AD218A2A162662A05CAFB52F, 0AC3D8B79EDA6DA232FA4E1CAF6592420A9EDE96350D1F0504C2434261684F0B ] BTHMODEM        C:\WINDOWS\System32\drivers\bthmodem.sys
02:03:24.0335 0x0a9c  BTHMODEM - ok
02:03:24.0385 0x0a9c  [ 043A0F37631BF453F16D478B71320F46, C368296B802984F438852927B8A40EA3F4205724A05828F3173F08EC17228356 ] bthserv         C:\WINDOWS\system32\bthserv.dll
02:03:24.0500 0x0a9c  bthserv - ok
02:03:24.0537 0x0a9c  [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs            C:\WINDOWS\system32\DRIVERS\cdfs.sys
02:03:24.0628 0x0a9c  cdfs - ok
02:03:24.0670 0x0a9c  [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom           C:\WINDOWS\System32\drivers\cdrom.sys
02:03:24.0719 0x0a9c  cdrom - ok
02:03:24.0792 0x0a9c  [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] CertPropSvc     C:\WINDOWS\System32\certprop.dll
02:03:24.0870 0x0a9c  CertPropSvc - ok
02:03:24.0944 0x0a9c  [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass        C:\WINDOWS\System32\drivers\circlass.sys
02:03:24.0989 0x0a9c  circlass - ok
02:03:25.0048 0x0a9c  [ 8EB7E70C2D348FE2476A2E3F2D585E3D, 2B5D407FACF1D049261026CC552A7C93B028A661B0F4E959815EAE7670054127 ] CLFS            C:\WINDOWS\system32\drivers\CLFS.sys
02:03:25.0104 0x0a9c  CLFS - ok
02:03:25.0186 0x0a9c  [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt          C:\WINDOWS\System32\drivers\CmBatt.sys
02:03:25.0232 0x0a9c  CmBatt - ok
02:03:25.0366 0x0a9c  [ 5E5AB950693F2C6D6ACBEE3A74697ED7, 3790A7DD0AC65F47A697A577744FDFA4CC1CA3422884C84E499F97AC91BA84F3 ] CNG             C:\WINDOWS\system32\Drivers\cng.sys
02:03:25.0439 0x0a9c  CNG - ok
02:03:25.0605 0x0a9c  [ 1F925AA990A6A446E8BA926B2D0A5201, F278C272E3F40C37D04935CE19938C4B63A4BC2AA378D0F56C32FE78308D6993 ] CnxtHdAudService C:\WINDOWS\system32\drivers\CHDRT64.sys
02:03:25.0724 0x0a9c  CnxtHdAudService - ok
02:03:25.0796 0x0a9c  [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus    C:\WINDOWS\System32\drivers\CompositeBus.sys
02:03:25.0838 0x0a9c  CompositeBus - ok
02:03:25.0854 0x0a9c  COMSysApp - ok
02:03:25.0899 0x0a9c  [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv          C:\WINDOWS\system32\drivers\condrv.sys
02:03:26.0003 0x0a9c  condrv - ok
02:03:26.0084 0x0a9c  [ 6324F0D18FB52833BA64BC828E29054C, 04118FA1BDFC512F76E4A81FEF34C78B6BD98429DB1D65123B6802B4A1E30584 ] CryptSvc        C:\WINDOWS\system32\cryptsvc.dll
02:03:26.0231 0x0a9c  CryptSvc - ok
02:03:26.0296 0x0a9c  [ 48AED45DF009081AF3F5144F7D624674, 4425C15EB9E1177EE5134A33F63DAF7FF876577946DBF1EAD92C5614025113BB ] CxAudMsg        C:\WINDOWS\system32\CxAudMsg64.exe
02:03:26.0325 0x0a9c  CxAudMsg - ok
02:03:26.0353 0x0a9c  [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam             C:\WINDOWS\system32\drivers\dam.sys
02:03:26.0386 0x0a9c  dam - ok
02:03:26.0526 0x0a9c  [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
02:03:26.0720 0x0a9c  DcomLaunch - ok
02:03:26.0839 0x0a9c  [ 95E1ABFB27F8A62ED764805775F0D2F3, 692865DA60C93481E01592883678B2C51FD9AC9A835DFB00A8E3F2DFEE7AB0ED ] defragsvc       C:\WINDOWS\System32\defragsvc.dll
02:03:26.0995 0x0a9c  defragsvc - ok
02:03:27.0062 0x0a9c  [ FF086DEF5995558CCB1B5AAC2110195D, CED52FF01F9247BFDAFC5C7EFC538F8638146ED715574A422496EE0F846CB079 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
02:03:27.0146 0x0a9c  DeviceAssociationService - ok
02:03:27.0192 0x0a9c  [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] DeviceInstall   C:\WINDOWS\system32\umpnpmgr.dll
02:03:27.0271 0x0a9c  DeviceInstall - ok
02:03:27.0347 0x0a9c  [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc            C:\WINDOWS\system32\Drivers\dfsc.sys
02:03:27.0474 0x0a9c  Dfsc - ok
02:03:27.0556 0x0a9c  [ 3EEAADA3125431980E5804ED7143458A, 381E12C83E3211C255B321D35536F4049D67E31061F8D82155E4D4509E97F43D ] Dhcp            C:\WINDOWS\system32\dhcpcore.dll
02:03:27.0691 0x0a9c  Dhcp - ok
02:03:27.0957 0x0a9c  [ 21EDAD8188372C912B7BB9B1C6CB0D38, 4A102745DE8A2A82D2C069B30503BF9FF2312A035A82854F84EF9C27E3533CEE ] DiagTrack       C:\WINDOWS\system32\diagtrack.dll
02:03:28.0194 0x0a9c  DiagTrack - ok
02:03:28.0260 0x0a9c  [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk            C:\WINDOWS\system32\drivers\disk.sys
02:03:28.0301 0x0a9c  disk - ok
02:03:28.0352 0x0a9c  [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc           C:\WINDOWS\System32\drivers\dmvsc.sys
02:03:28.0488 0x0a9c  dmvsc - ok
02:03:28.0552 0x0a9c  [ 33ADFB7453BF3271463712C4BCE61AD1, A1DB30F874BA7B2C4C653494D70B46B94BF7D39D0DD8559F6CA7A14B676FD617 ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
02:03:28.0615 0x0a9c  Dnscache - ok
02:03:28.0691 0x0a9c  [ 811EACBCC7C51A03AE11F13CC27B2AB6, FAB94F84950FFB7D3649BAFB8D96D43B880D7FDE8D5B879472AE26C4BC4203B0 ] dot3svc         C:\WINDOWS\System32\dot3svc.dll
02:03:28.0857 0x0a9c  dot3svc - ok
02:03:28.0927 0x0a9c  [ B99CB575986789A93A683DCF292A43A1, 6ACEA31C723B74003E106FC8303542FCC6DBC4952B6B523F6590D006BE57238D ] DPS             C:\WINDOWS\system32\dps.dll
02:03:29.0002 0x0a9c  DPS - ok
02:03:29.0028 0x0a9c  [ 00C594D5A1DBD22AD8B2902B9F6EFF94, 2920D62B5F7C49A8AFA80FCAD1E834BBAA670AEBDD7E6F21F0496D1D3CCB4E90 ] drmkaud         C:\WINDOWS\system32\drivers\drmkaud.sys
02:03:29.0065 0x0a9c  drmkaud - ok
02:03:29.0116 0x0a9c  [ 263625A4F616538EB867B6306A6590DB, 2A064720C247EAA3446EFDCC9E01D84CBA875905D78DFED0FBD62D1EE422D416 ] DsmSvc          C:\WINDOWS\System32\DeviceSetupManager.dll
02:03:29.0172 0x0a9c  DsmSvc - ok
02:03:29.0381 0x0a9c  [ E1BB0B6F00F470B451AB45EA13EBA0B3, 3A2FC2175B69A5EB98D6C2D563DBFDCB320647AB87A14E47FAE800423DCACDAB ] DXGKrnl         C:\WINDOWS\System32\drivers\dxgkrnl.sys
02:03:29.0570 0x0a9c  DXGKrnl - ok
02:03:29.0609 0x0a9c  [ E253530BD5EDE28F1FF6AF93C4D8034D, 787A70C3E946348F066FB8EB81FCE60157217D93FD78ADC631B5835E8D76A253 ] Eaphost         C:\WINDOWS\System32\eapsvc.dll
02:03:29.0721 0x0a9c  Eaphost - ok
02:03:30.0121 0x0a9c  [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv           C:\WINDOWS\system32\drivers\evbda.sys
02:03:30.0474 0x0a9c  ebdrv - ok
02:03:30.0551 0x0a9c  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] EFS             C:\WINDOWS\System32\lsass.exe
02:03:30.0584 0x0a9c  EFS - ok
02:03:30.0623 0x0a9c  [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass     C:\WINDOWS\system32\drivers\EhStorClass.sys
02:03:30.0661 0x0a9c  EhStorClass - ok
02:03:30.0696 0x0a9c  [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv    C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
02:03:30.0733 0x0a9c  EhStorTcgDrv - ok
02:03:30.0761 0x0a9c  [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev          C:\WINDOWS\System32\drivers\errdev.sys
02:03:30.0805 0x0a9c  ErrDev - ok
02:03:30.0947 0x0a9c  [ F00C593994D57C75273F820653440536, 2DC986D9890EC907405FB2045E6F55ACC384169B45F0B56CCB1A953CF71D9A5D ] EventSystem     C:\WINDOWS\system32\es.dll
02:03:31.0076 0x0a9c  EventSystem - ok
02:03:31.0141 0x0a9c  [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat           C:\WINDOWS\system32\drivers\exfat.sys
02:03:31.0266 0x0a9c  exfat - ok
02:03:31.0317 0x0a9c  [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat         C:\WINDOWS\system32\drivers\fastfat.sys
02:03:31.0362 0x0a9c  fastfat - ok
02:03:31.0438 0x0a9c  [ 304B6AEC4639A7CCCCF544C6BA6177B2, B75CDD52FD3890B3008E06C503945D1E36478F0EC5E067C8DBC2822D7935D24B ] Fax             C:\WINDOWS\system32\fxssvc.exe
02:03:31.0564 0x0a9c  Fax - ok
02:03:31.0601 0x0a9c  [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc             C:\WINDOWS\System32\drivers\fdc.sys
02:03:31.0650 0x0a9c  fdc - ok
02:03:31.0700 0x0a9c  [ 020D2F29009F893ADEFF4405B4B44565, 9F8501064C72933D1442DA00E70392B30D0207EB7D60F50E6648FF363799E6F1 ] fdPHost         C:\WINDOWS\system32\fdPHost.dll
02:03:31.0779 0x0a9c  fdPHost - ok
02:03:31.0828 0x0a9c  [ E80D2EDD2F88B6E20076A0A4F5A5A245, E3CD6E0BE152B22E8A7340EFFD10CCDB1B632CD3EDF487E83F697D2E22A7D594 ] FDResPub        C:\WINDOWS\system32\fdrespub.dll
02:03:31.0878 0x0a9c  FDResPub - ok
02:03:31.0924 0x0a9c  [ 47AB7D16EDE434B934AA4D661456C2D5, D375A92FB3E4BB0A8DA5270DACC888E53FB9F514516039FE6DAE4D4EF6B9A970 ] fhsvc           C:\WINDOWS\system32\fhsvc.dll
02:03:32.0023 0x0a9c  fhsvc - ok
02:03:32.0059 0x0a9c  [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo        C:\WINDOWS\system32\drivers\fileinfo.sys
02:03:32.0092 0x0a9c  FileInfo - ok
02:03:32.0142 0x0a9c  [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace       C:\WINDOWS\system32\drivers\filetrace.sys
02:03:32.0197 0x0a9c  Filetrace - ok
02:03:32.0224 0x0a9c  [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk        C:\WINDOWS\System32\drivers\flpydisk.sys
02:03:32.0275 0x0a9c  flpydisk - ok
02:03:32.0344 0x0a9c  [ C1FB505A73FA2E9019D32444AB33B75A, 765F0635C18295855CA4C0394192E8B94BA2EA1C4D74F86B720358ABA019FFAA ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
02:03:32.0398 0x0a9c  FltMgr - ok
02:03:32.0522 0x0a9c  [ 1E93CBB75D167CDF85501A8C790097A8, C9E5DD090C94E7855939CE1F416460DB408EFF897C2CD52E0D52A734D8ED18B7 ] FontCache       C:\WINDOWS\system32\FntCache.dll
02:03:32.0714 0x0a9c  FontCache - ok
02:03:32.0850 0x0a9c  [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
02:03:32.0880 0x0a9c  FontCache3.0.0.0 - ok
02:03:32.0923 0x0a9c  [ A7C31B168F371E8E6796219F23E354DB, C51C9BF568F1E96CBBE57D2432B38F93F40520086DDB6AAAAC48CBCD1691B441 ] FsDepends       C:\WINDOWS\system32\drivers\FsDepends.sys
02:03:32.0960 0x0a9c  FsDepends - ok
02:03:32.0988 0x0a9c  [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
02:03:33.0018 0x0a9c  Fs_Rec - ok
02:03:33.0124 0x0a9c  [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol          C:\WINDOWS\system32\DRIVERS\fvevol.sys
02:03:33.0196 0x0a9c  fvevol - ok
02:03:33.0248 0x0a9c  [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM           C:\WINDOWS\System32\drivers\fxppm.sys
02:03:33.0293 0x0a9c  FxPPM - ok
02:03:33.0319 0x0a9c  [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx        C:\WINDOWS\system32\drivers\gagp30kx.sys
02:03:33.0367 0x0a9c  gagp30kx - ok
02:03:33.0421 0x0a9c  [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter      C:\WINDOWS\System32\drivers\vmgencounter.sys
02:03:33.0463 0x0a9c  gencounter - ok
02:03:33.0502 0x0a9c  [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101     C:\WINDOWS\system32\Drivers\msgpioclx.sys
02:03:33.0541 0x0a9c  GPIOClx0101 - ok
02:03:33.0729 0x0a9c  [ 0D03F87D4FF4ADBAF8336DD80548155A, BC10CFA88EA2F41A8D96CB810B7953A4C168B79273A3E804A9F020F49AB58CD3 ] gpsvc           C:\WINDOWS\System32\gpsvc.dll
02:03:33.0871 0x0a9c  gpsvc - ok
02:03:33.0927 0x0a9c  [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus        C:\WINDOWS\System32\drivers\HDAudBus.sys
02:03:33.0978 0x0a9c  HDAudBus - ok
02:03:34.0008 0x0a9c  [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt         C:\WINDOWS\System32\drivers\HidBatt.sys
02:03:34.0040 0x0a9c  HidBatt - ok
02:03:34.0088 0x0a9c  [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth          C:\WINDOWS\System32\drivers\hidbth.sys
02:03:34.0222 0x0a9c  HidBth - ok
02:03:34.0262 0x0a9c  [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c          C:\WINDOWS\System32\drivers\hidi2c.sys
02:03:34.0302 0x0a9c  hidi2c - ok
02:03:34.0355 0x0a9c  [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr           C:\WINDOWS\System32\drivers\hidir.sys
02:03:34.0388 0x0a9c  HidIr - ok
02:03:34.0429 0x0a9c  [ EA85B5093DF7B5C3E80362B053740AE2, 1D4251385402A2ADEE8FA1642F54180304F88337DA74989BDE44025ABB145FE5 ] hidserv         C:\WINDOWS\system32\hidserv.dll
02:03:34.0511 0x0a9c  hidserv - ok
02:03:34.0557 0x0a9c  [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb          C:\WINDOWS\System32\drivers\hidusb.sys
02:03:34.0598 0x0a9c  HidUsb - ok
02:03:34.0648 0x0a9c  [ 93C4315F47F8D635C6DB0DF49FCE10EE, 70C52B8927D54ACD23F27948780B522974250FD5CD81AA9801C3F158C402889F ] hkmsvc          C:\WINDOWS\system32\kmsvc.dll
02:03:34.0740 0x0a9c  hkmsvc - ok
02:03:34.0800 0x0a9c  [ AC49522ED106BD4B545D6614D71C2445, 40BD738A301170378ECFC031635EB04E2F812B676376CADDD6607ECABEC9255F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
02:03:34.0930 0x0a9c  HomeGroupListener - ok
02:03:35.0022 0x0a9c  [ 99932E30CE0283B73BB6E5019E150394, 1F88C2F56A7B8E1F75E6359281F418F9661DA4FB7B7D7B14FA7F718B15D4DCE0 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
02:03:35.0098 0x0a9c  HomeGroupProvider - ok
02:03:35.0139 0x0a9c  [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD          C:\WINDOWS\system32\drivers\HpSAMD.sys
02:03:35.0176 0x0a9c  HpSAMD - ok
02:03:35.0365 0x0a9c  [ E87A6D3B8FECD5B93BC0CFBB48C27970, 55C49B6F3822450447C082B40A263F3370694DB53AD0018ADEB911E4A9F65A88 ] HTTP            C:\WINDOWS\system32\drivers\HTTP.sys
02:03:35.0469 0x0a9c  HTTP - ok
02:03:35.0522 0x0a9c  [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy        C:\WINDOWS\system32\drivers\hwpolicy.sys
02:03:35.0562 0x0a9c  hwpolicy - ok
02:03:35.0614 0x0a9c  [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd        C:\WINDOWS\System32\drivers\hyperkbd.sys
02:03:35.0659 0x0a9c  hyperkbd - ok
02:03:35.0691 0x0a9c  [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo      C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
02:03:35.0736 0x0a9c  HyperVideo - ok
02:03:35.0777 0x0a9c  [ 49EE0AE9E5B64FFBBD06D55C4984B598, 8866627F9241B24A59C81D8BCC67A4DCA87576F589599BA291D0E323F679EB4D ] i8042prt        C:\WINDOWS\System32\drivers\i8042prt.sys
02:03:35.0838 0x0a9c  i8042prt - ok
02:03:35.0889 0x0a9c  [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO    C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
02:03:35.0922 0x0a9c  iaLPSSi_GPIO - ok
02:03:35.0954 0x0a9c  [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C     C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
02:03:35.0980 0x0a9c  iaLPSSi_I2C - ok
02:03:36.0110 0x0a9c  [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV        C:\WINDOWS\system32\drivers\iaStorAV.sys
02:03:36.0172 0x0a9c  iaStorAV - ok
02:03:36.0251 0x0a9c  [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV         C:\WINDOWS\system32\drivers\iaStorV.sys
02:03:36.0314 0x0a9c  iaStorV - ok
02:03:36.0331 0x0a9c  IEEtwCollectorService - ok
02:03:36.0513 0x0a9c  [ AF8A43C376F83A4A1E7DA16461EDE114, EBA10519B074888355A4FC11D52FF1E6A52F88F754B7F1F9863A8313638645CB ] IKEEXT          C:\WINDOWS\System32\ikeext.dll
02:03:36.0668 0x0a9c  IKEEXT - ok
02:03:36.0711 0x0a9c  [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide        C:\WINDOWS\system32\drivers\intelide.sys
02:03:36.0742 0x0a9c  intelide - ok
02:03:36.0779 0x0a9c  [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep        C:\WINDOWS\system32\drivers\intelpep.sys
02:03:36.0812 0x0a9c  intelpep - ok
02:03:36.0862 0x0a9c  [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm        C:\WINDOWS\System32\drivers\intelppm.sys
02:03:36.0908 0x0a9c  intelppm - ok
02:03:36.0938 0x0a9c  [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
02:03:37.0039 0x0a9c  IpFilterDriver - ok
02:03:37.0220 0x0a9c  [ A5800036E4EA06697A34742A24ACFBE1, BA67060526E9213000B4206F86A74F904999AD7018EFCBE4FE9708650DA9D973 ] iphlpsvc        C:\WINDOWS\System32\iphlpsvc.dll
02:03:37.0322 0x0a9c  iphlpsvc - ok
02:03:37.0382 0x0a9c  [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV         C:\WINDOWS\System32\drivers\IPMIDrv.sys
02:03:37.0571 0x0a9c  IPMIDRV - ok
02:03:37.0623 0x0a9c  [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT           C:\WINDOWS\system32\drivers\ipnat.sys
02:03:37.0736 0x0a9c  IPNAT - ok
02:03:37.0773 0x0a9c  [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM          C:\WINDOWS\system32\drivers\irenum.sys
02:03:37.0834 0x0a9c  IRENUM - ok
02:03:37.0884 0x0a9c  [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp          C:\WINDOWS\system32\drivers\isapnp.sys
02:03:37.0913 0x0a9c  isapnp - ok
02:03:37.0973 0x0a9c  [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt        C:\WINDOWS\System32\drivers\msiscsi.sys
02:03:38.0021 0x0a9c  iScsiPrt - ok
02:03:38.0065 0x0a9c  [ 5917AFE4A3F695A54B99C1849C8207FE, DD57638966F2F0387DCF9DA4BBAEE3CDD8CC6F1A2D49581A0374D46A565BED4F ] kbdclass        C:\WINDOWS\System32\drivers\kbdclass.sys
02:03:38.0097 0x0a9c  kbdclass - ok
02:03:38.0124 0x0a9c  [ 8CD840A062F6BDF41DDE3ACB96164B72, AEAE867F3557C1CE6B931E19D7144A3BD3CBABD81B1542667680D54FC24DEBE1 ] kbdhid          C:\WINDOWS\System32\drivers\kbdhid.sys
02:03:38.0207 0x0a9c  kbdhid - ok
02:03:38.0248 0x0a9c  [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic           C:\WINDOWS\system32\DRIVERS\kdnic.sys
02:03:38.0280 0x0a9c  kdnic - ok
02:03:38.0318 0x0a9c  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] KeyIso          C:\WINDOWS\system32\lsass.exe
02:03:38.0350 0x0a9c  KeyIso - ok
02:03:38.0400 0x0a9c  [ 4E829B18D5BAEC29893792A3C671A847, 64C3B99F53A9D1ACA802B46B09E820AD210B667D5A1CD0ADAF1F12944B15B52E ] KSecDD          C:\WINDOWS\system32\Drivers\ksecdd.sys
02:03:38.0437 0x0a9c  KSecDD - ok
02:03:38.0532 0x0a9c  [ 46711F40D0F9E63F786ED23F9BD5215E, 1FBC5101D843E5B43184C98B3D9AF3015C9409EEA6C7BB01B143FD08D4946FC0 ] KSecPkg         C:\WINDOWS\system32\Drivers\ksecpkg.sys
02:03:38.0582 0x0a9c  KSecPkg - ok
02:03:38.0621 0x0a9c  [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk         C:\WINDOWS\system32\drivers\ksthunk.sys
02:03:38.0661 0x0a9c  ksthunk - ok
02:03:38.0709 0x0a9c  [ C1591A66028C71147A3E2EAB0B1CCB7E, 82F3D5DCC1614398A144D9791E4BAA814DBA9112677341FD57D5E9834CEDEB41 ] KtmRm           C:\WINDOWS\system32\msdtckrm.dll
02:03:38.0766 0x0a9c  KtmRm - ok
02:03:38.0891 0x0a9c  [ CA2828DDE4B09FEFFDB7CE68B3D8D00A, B514792FF1EF36C678BB51644A1C420105D5E2CD6DD5A89A3FB252D08277A40C ] LanmanServer    C:\WINDOWS\system32\srvsvc.dll
02:03:38.0973 0x0a9c  LanmanServer - ok
02:03:39.0049 0x0a9c  [ 3DBD9100745F9B8506B8FEC6FE6CCDE3, C3EF2856A1680AFDE133887E48946CF9CAB6755C3BDC07F0326965DCD4096F62 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
02:03:39.0132 0x0a9c  LanmanWorkstation - ok
02:03:39.0235 0x0a9c  [ 8B9F3796EC1762CF255BDB324E5529C8, F73D6BEF19BE20AEB18DA82CB63E9D8B50ACBBE4ED9B646EF0C9F598F6B81F94 ] lfsvc           C:\WINDOWS\System32\GeofenceMonitorService.dll
02:03:39.0348 0x0a9c  lfsvc - ok
02:03:39.0397 0x0a9c  [ BE166935083F9C38EDFDC21B9A7A679B, 89C64DBE58E1B974208AAAA5CC757C599B1439C205C3C48BF16BA054A06DBC94 ] LHDmgr          C:\WINDOWS\system32\DRIVERS\LhdX64.sys
02:03:39.0417 0x0a9c  LHDmgr - ok
02:03:39.0459 0x0a9c  [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio          C:\WINDOWS\system32\DRIVERS\lltdio.sys
02:03:39.0517 0x0a9c  lltdio - ok
02:03:39.0573 0x0a9c  [ DAE98CC96C5EE308BF4EA7B18F226CB8, 7A6CC56BF075010707715AB6608764291E358EDF27C806A025532869004C686B ] lltdsvc         C:\WINDOWS\System32\lltdsvc.dll
02:03:39.0637 0x0a9c  lltdsvc - ok
02:03:39.0693 0x0a9c  [ 1E2662D847B7D9995C65D90D254A7E0F, AFD4063D2071FFCB6B0EAC0715276D986F42326919C86E525DCE12E1109A93E2 ] lmhosts         C:\WINDOWS\System32\lmhsvc.dll
02:03:39.0780 0x0a9c  lmhosts - ok
02:03:40.0119 0x0a9c  [ 649982D990F825800FAA8BDAD98A1C30, 1871CDA2817F89F7A563B76EBE60913843CA09917DFE3EB1CD78F674DF1578B9 ] LSCWinService   C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
02:03:40.0290 0x0a9c  LSCWinService - ok
02:03:40.0346 0x0a9c  [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS         C:\WINDOWS\system32\drivers\lsi_sas.sys
02:03:40.0388 0x0a9c  LSI_SAS - ok
02:03:40.0417 0x0a9c  [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2        C:\WINDOWS\system32\drivers\lsi_sas2.sys
02:03:40.0458 0x0a9c  LSI_SAS2 - ok
02:03:40.0496 0x0a9c  [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3        C:\WINDOWS\system32\drivers\lsi_sas3.sys
02:03:40.0537 0x0a9c  LSI_SAS3 - ok
02:03:40.0588 0x0a9c  [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS         C:\WINDOWS\system32\drivers\lsi_sss.sys
02:03:40.0629 0x0a9c  LSI_SSS - ok
02:03:40.0726 0x0a9c  [ 9A7A7E45DAED2E8C2816716D8D28236A, C94787988826E546A8DC752BD6BE4EA7423DC3762B2D371DB297A63F865A95FF ] LSM             C:\WINDOWS\System32\lsm.dll
02:03:40.0881 0x0a9c  LSM - ok
02:03:40.0940 0x0a9c  [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv           C:\WINDOWS\system32\drivers\luafv.sys
02:03:41.0025 0x0a9c  luafv - ok
02:03:41.0103 0x0a9c  [ 78BFF5425E044086E74E78650A359FBB, 294738C10F3ED933D4EC40EA0659372FCF19A3C6D45D356917438CA495F2CB45 ] MBAMProtector   C:\WINDOWS\system32\drivers\mbam.sys
02:03:41.0128 0x0a9c  MBAMProtector - ok
02:03:41.0329 0x0a9c  [ 9611577752E293259C7DCE19E9026362, 8CB5DFD63FA15603BB6FA6B501E09ED7F4DE0E8F68CB28B78CECAC3711BEFD24 ] MBAMScheduler   C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
02:03:41.0444 0x0a9c  MBAMScheduler - ok
02:03:41.0562 0x0a9c  [ F1A89A34388B5626F1548D393B23ECB1, EA00AC76C4C8C9340753B58A3313C9177A9B98F9F1BDE08F184CD0F53D0C186F ] MBAMService     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
02:03:41.0656 0x0a9c  MBAMService - ok
02:03:41.0705 0x0a9c  [ 898415AC0B5F1D2A9A48ABCB68A6DC4B, E1FD9AE5E22E3E5A18288E66A6184E92A4B63A1274DCE147A7728BB09C6A225E ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys
02:03:41.0730 0x0a9c  MBAMWebAccessControl - ok
02:03:41.0781 0x0a9c  [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas         C:\WINDOWS\system32\drivers\megasas.sys
02:03:41.0822 0x0a9c  megasas - ok
02:03:41.0880 0x0a9c  [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr          C:\WINDOWS\system32\drivers\megasr.sys
02:03:41.0953 0x0a9c  megasr - ok
02:03:42.0013 0x0a9c  [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] MMCSS           C:\WINDOWS\system32\mmcss.dll
02:03:42.0093 0x0a9c  MMCSS - ok
02:03:42.0138 0x0a9c  [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem           C:\WINDOWS\system32\drivers\modem.sys
02:03:42.0196 0x0a9c  Modem - ok
02:03:42.0224 0x0a9c  [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor         C:\WINDOWS\System32\drivers\monitor.sys
02:03:42.0262 0x0a9c  monitor - ok
02:03:42.0292 0x0a9c  [ 08374E4E5B8914DE6067CBA99F61E930, CBB1390D6523FC968BEDF78FD13699488621ACB2CD1DF55D1606316090548661 ] mouclass        C:\WINDOWS\System32\drivers\mouclass.sys
02:03:42.0324 0x0a9c  mouclass - ok
02:03:42.0346 0x0a9c  [ 5FCBAB60598AE119E02B4C27DE6B99EA, 36F30094F700DE41C293047ACB49ED1961DD927BEDAD8DFDAB7023D4D24CB0DE ] mouhid          C:\WINDOWS\System32\drivers\mouhid.sys
02:03:42.0507 0x0a9c  mouhid - ok
02:03:42.0548 0x0a9c  [ 9A788037D768809DFD677F4BA08A224A, E0686B3318F924E440ADA439D6671D44D3FF97C13D45C2E0A3A7B9E23DA38350 ] mountmgr        C:\WINDOWS\system32\drivers\mountmgr.sys
02:03:42.0590 0x0a9c  mountmgr - ok
02:03:42.0698 0x0a9c  [ 81E8AF6407EC3F41908FE37F054353EA, 756C7656ED68AEAE4225E952ED1CED0717264D3378DB8DF0B2D70B6EBC67C62F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
02:03:42.0729 0x0a9c  MozillaMaintenance - ok
02:03:42.0782 0x0a9c  [ 6FC047578785B0435F4E2660946D1ADC, 8AEA5659F01FC2F75160922C69622502DABA39F33CB90D5178DD679A1CDE617D ] mpsdrv          C:\WINDOWS\system32\drivers\mpsdrv.sys
02:03:42.0857 0x0a9c  mpsdrv - ok
02:03:42.0943 0x0a9c  [ C18AA14126ADC66478E8E962B2DFAA98, A6F8CE9D88D590DC083253004392572C3BD02C33433CD6C0D9117D2AA7171EEC ] MpsSvc          C:\WINDOWS\system32\mpssvc.dll
02:03:43.0047 0x0a9c  MpsSvc - ok
02:03:43.0109 0x0a9c  [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV          C:\WINDOWS\system32\drivers\mrxdav.sys
02:03:43.0189 0x0a9c  MRxDAV - ok
02:03:43.0265 0x0a9c  [ 6FBDF2B1B025A8E6E069234362FFFFB7, CF1AFC088F59AD61037F4C4650F3BAEE7FE37C40B3A27B903475F005410F8155 ] mrxsmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
02:03:43.0400 0x0a9c  mrxsmb - ok
02:03:43.0522 0x0a9c  [ BCBD64220AD85C26823453FF1DC3EFBD, 0245E3659E9135B9276F3CCFBEA0CEFFC4F4C0826F6D19B6329057620235F087 ] mrxsmb10        C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
02:03:43.0680 0x0a9c  mrxsmb10 - ok
02:03:43.0719 0x0a9c  [ 57C2473D501331211D6885FD59F3E44B, 10253703DB32A32291C61B6962A79E374B5DF7DD14A6B6AFD08A99EF26206619 ] mrxsmb20        C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
02:03:43.0804 0x0a9c  mrxsmb20 - ok
02:03:43.0858 0x0a9c  [ F3C060444777A59FC63D920719E43CCD, 8766A2746E3DFB0749E902F458141269335CA6F0CEDCA3D5F8C204637C19E783 ] MsBridge        C:\WINDOWS\system32\DRIVERS\bridge.sys
02:03:43.0915 0x0a9c  MsBridge - ok
02:03:43.0980 0x0a9c  [ 915747E010A9414B069173284A9B93F4, 8A335C28FE1EF96DD71485877F2E86155D24B5614ACE05468F4B07E2ACD56331 ] MSDTC           C:\WINDOWS\System32\msdtc.exe
02:03:44.0021 0x0a9c  MSDTC - ok
02:03:44.0072 0x0a9c  [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
02:03:44.0117 0x0a9c  Msfs - ok
02:03:44.0162 0x0a9c  [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32     C:\WINDOWS\System32\drivers\msgpiowin32.sys
02:03:44.0197 0x0a9c  msgpiowin32 - ok
02:03:44.0234 0x0a9c  [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf       C:\WINDOWS\System32\drivers\mshidkmdf.sys
02:03:44.0284 0x0a9c  mshidkmdf - ok
02:03:44.0307 0x0a9c  [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf       C:\WINDOWS\System32\drivers\mshidumdf.sys
02:03:44.0374 0x0a9c  mshidumdf - ok
02:03:44.0411 0x0a9c  [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv        C:\WINDOWS\system32\drivers\msisadrv.sys
02:03:44.0453 0x0a9c  msisadrv - ok
02:03:44.0497 0x0a9c  [ 4EAEEBAC8CFF4E0D717DFA920BC58A90, A65CB1BB3392B6A04B978348CAC18A414560A6B04A727F22DFC0ADB20DD3AF6B ] MSiSCSI         C:\WINDOWS\system32\iscsiexe.dll
02:03:44.0559 0x0a9c  MSiSCSI - ok
02:03:44.0572 0x0a9c  msiserver - ok
02:03:44.0601 0x0a9c  [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV         C:\WINDOWS\system32\drivers\MSKSSRV.sys
02:03:44.0653 0x0a9c  MSKSSRV - ok
02:03:44.0724 0x0a9c  [ 51B3AC0560848CD6D65AC2033E293113, 73A27E88774C6929328E6C9FC9C389F4DF76D4D4D5CBFC4F51651CC308829628 ] MsLldp          C:\WINDOWS\system32\DRIVERS\mslldp.sys
02:03:44.0820 0x0a9c  MsLldp - ok
02:03:44.0854 0x0a9c  [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK        C:\WINDOWS\system32\drivers\MSPCLOCK.sys
02:03:44.0912 0x0a9c  MSPCLOCK - ok
02:03:44.0950 0x0a9c  [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM           C:\WINDOWS\system32\drivers\MSPQM.sys
02:03:44.0996 0x0a9c  MSPQM - ok
02:03:45.0063 0x0a9c  [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC           C:\WINDOWS\system32\drivers\MsRPC.sys
02:03:45.0121 0x0a9c  MsRPC - ok
02:03:45.0155 0x0a9c  [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios        C:\WINDOWS\System32\drivers\mssmbios.sys
02:03:45.0185 0x0a9c  mssmbios - ok
02:03:45.0205 0x0a9c  [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE           C:\WINDOWS\system32\drivers\MSTEE.sys
02:03:45.0251 0x0a9c  MSTEE - ok
02:03:45.0295 0x0a9c  [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig        C:\WINDOWS\System32\drivers\MTConfig.sys
02:03:45.0328 0x0a9c  MTConfig - ok
02:03:45.0361 0x0a9c  [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup             C:\WINDOWS\system32\Drivers\mup.sys
02:03:45.0407 0x0a9c  Mup - ok
02:03:45.0437 0x0a9c  [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis          C:\WINDOWS\system32\drivers\mvumis.sys
02:03:45.0475 0x0a9c  mvumis - ok
02:03:45.0583 0x0a9c  [ 8DF30698BDD9492A9D45A4B94FB4A82A, 26B1B2D7E785E29B8BCB74C467C66AE4EBDD481ACFF36334F3BDF4506B778244 ] napagent        C:\WINDOWS\system32\qagentRT.dll
02:03:45.0658 0x0a9c  napagent - ok
02:03:45.0771 0x0a9c  [ 008F7CED69FD5B30CBDE1E03C6F36A27, D4ADA7834C470B17A3CD976012DC5A511B32545B9F91D23D09A85722E0B75320 ] NativeWifiP     C:\WINDOWS\system32\DRIVERS\nwifi.sys
02:03:45.0894 0x0a9c  NativeWifiP - ok
02:03:45.0978 0x0a9c  [ BFCE1225D10619029E68946929CEB64C, 499F560331FFBA82E3D673B47F027FDAB7BEE4F2CB5B811D69E0218839F6E6A5 ] NcaSvc          C:\WINDOWS\System32\ncasvc.dll
02:03:46.0077 0x0a9c  NcaSvc - ok
02:03:46.0142 0x0a9c  [ 267C97373110B7AFD3B46DF60B6CBB85, CEBB99F71D47634BB9C04DF2836DF6B47F15B3073FEFC237F85526DF01E4E38B ] NcbService      C:\WINDOWS\System32\ncbservice.dll
02:03:46.0239 0x0a9c  NcbService - ok
02:03:46.0296 0x0a9c  [ 0813B71EAF097208DC76CE0605B48AF0, A93A2E6A8FB77B58AC4D580E6F8BF307A25BADC9493994F9BE235EBFB0E1DB22 ] NcdAutoSetup    C:\WINDOWS\System32\NcdAutoSetup.dll
02:03:46.0390 0x0a9c  NcdAutoSetup - ok
02:03:46.0590 0x0a9c  [ 97DC5967F65503213FD1F1B3E4A6F983, 3EC515856C7CE9B30032F963DC04190F66EE62402A819781DC45B7D088C84229 ] NDIS            C:\WINDOWS\system32\drivers\ndis.sys
02:03:46.0724 0x0a9c  NDIS - ok
02:03:46.0802 0x0a9c  [ 8CECC8DA55F3274181FD1EA28AD76664, 188112424CEF97FB926A0FB915260B803555A775DD2E1846725A9C8616300F42 ] NdisCap         C:\WINDOWS\system32\DRIVERS\ndiscap.sys
02:03:46.0856 0x0a9c  NdisCap - ok
02:03:46.0901 0x0a9c  [ 269882812E9A68FFF1AFE1283D428322, 50B99EBC42DA9B46A8C2C28C9BADCF58AE3079535CDD1227D0F5C86291C715FF ] NdisImPlatform  C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys
02:03:46.0978 0x0a9c  NdisImPlatform - ok
02:03:47.0019 0x0a9c  [ 82821F4EEC776B4CF11695A38F3ABA46, 23184F9D31E662855DC4D23EFE7C2FE00E5487D3762B6024704A5D8C87762E1C ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
02:03:47.0087 0x0a9c  NdisTapi - ok
02:03:47.0129 0x0a9c  [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio         C:\WINDOWS\system32\DRIVERS\ndisuio.sys
02:03:47.0222 0x0a9c  Ndisuio - ok
02:03:47.0251 0x0a9c  [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus  C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
02:03:47.0313 0x0a9c  NdisVirtualBus - ok
02:03:47.0354 0x0a9c  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan         C:\WINDOWS\system32\DRIVERS\ndiswan.sys
02:03:47.0423 0x0a9c  NdisWan - ok
02:03:47.0447 0x0a9c  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy   C:\WINDOWS\system32\DRIVERS\ndiswan.sys
02:03:47.0498 0x0a9c  NdisWanLegacy - ok
02:03:47.0568 0x0a9c  [ DDD7F92A83F74D1476B71FBA9530A8DC, D3F94FC9F48854E09B0B77CE5E1C1DB948D54EAC63C5583437051BB893B5A386 ] NDProxy         C:\WINDOWS\system32\drivers\NDProxy.sys
02:03:47.0607 0x0a9c  NDProxy - ok
02:03:47.0658 0x0a9c  [ 3083926D1CC5B56EA0786527B557DD1B, 3C3F0CA0D43398576DBE8F677B353ADDA7E8F56829874958CE668E31261C1590 ] Ndu             C:\WINDOWS\system32\drivers\Ndu.sys
02:03:47.0754 0x0a9c  Ndu - ok
02:03:47.0792 0x0a9c  [ 42FF4975D032CAE558AE4BB8448F6E5A, 0B8FACF3382443DED79A8004A6AA14C32471A6A1C6BAA543AA9F3FEC52620A6D ] NetBIOS         C:\WINDOWS\system32\DRIVERS\netbios.sys
02:03:47.0859 0x0a9c  NetBIOS - ok
02:03:47.0934 0x0a9c  [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
02:03:48.0029 0x0a9c  NetBT - ok
02:03:48.0063 0x0a9c  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] Netlogon        C:\WINDOWS\system32\lsass.exe
02:03:48.0096 0x0a9c  Netlogon - ok
02:03:48.0179 0x0a9c  [ 8F074B62E66B6117D9598C62A12069C5, 5FDB19045D3E2F6D0F0C5158AC2ECB0D5404CD2AF7A319755D7E3753CA3B7CF3 ] Netman          C:\WINDOWS\System32\netman.dll
02:03:48.0249 0x0a9c  Netman - ok
02:03:48.0384 0x0a9c  [ 4A04B1CD5BFB4A978C5F60E86D6C3E45, A946922C1C38ADD3CF9D3B09DDCC301AE4DAC960A081B2F42B32BE1E7095B3FD ] netprofm        C:\WINDOWS\System32\netprofmsvc.dll
02:03:48.0466 0x0a9c  netprofm - ok
02:03:48.0604 0x0a9c  [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
02:03:48.0666 0x0a9c  NetTcpPortSharing - ok
02:03:48.0738 0x0a9c  [ D4DCE03870314D3354F3501F9DDD4123, 5BFE8299B3F72B8C39A4965365CBF5BA151024451F02DD872FAD1CC35CF94CEA ] netvsc          C:\WINDOWS\System32\drivers\netvsc63.sys
02:03:48.0853 0x0a9c  netvsc - ok
02:03:48.0973 0x0a9c  [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc          C:\WINDOWS\System32\nlasvc.dll
02:03:49.0096 0x0a9c  NlaSvc - ok
02:03:49.0142 0x0a9c  [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
02:03:49.0212 0x0a9c  Npfs - ok
02:03:49.0258 0x0a9c  [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig       C:\WINDOWS\System32\drivers\npsvctrig.sys
02:03:49.0342 0x0a9c  npsvctrig - ok
02:03:49.0405 0x0a9c  [ 0F12A72A753CFD7FB0631EE8D08FE983, 860A96471F6CD90DDA9AB3A48E95CEAD826C87D2FA98A00EF91B61C44A4C8B82 ] nsi             C:\WINDOWS\system32\nsisvc.dll
02:03:49.0510 0x0a9c  nsi - ok
02:03:49.0571 0x0a9c  [ 0E046FF5823B95326D10CF1B4AF23541, 39D22715003746527AB4BFEDED8C34B695DAF589091AE7F3A2A2C4B8A35675A9 ] nsiproxy        C:\WINDOWS\system32\drivers\nsiproxy.sys
02:03:49.0626 0x0a9c  nsiproxy - ok
02:03:49.0935 0x0a9c  [ 7F68063A5A0461E02BC860CE0E6BFDDC, 47E9F75D27B97278B74034B7D3951A26B1644911ED321455E08D935731C858DE ] Ntfs            C:\WINDOWS\system32\drivers\Ntfs.sys
02:03:50.0162 0x0a9c  Ntfs - ok
02:03:50.0213 0x0a9c  [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null            C:\WINDOWS\system32\drivers\Null.sys
02:03:50.0266 0x0a9c  Null - ok
02:03:50.0296 0x0a9c  [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid          C:\WINDOWS\system32\drivers\nvraid.sys
02:03:50.0335 0x0a9c  nvraid - ok
02:03:50.0396 0x0a9c  [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor          C:\WINDOWS\system32\drivers\nvstor.sys
02:03:50.0436 0x0a9c  nvstor - ok
02:03:50.0485 0x0a9c  [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp          C:\WINDOWS\system32\drivers\nv_agp.sys
02:03:50.0525 0x0a9c  nv_agp - ok
02:03:50.0692 0x0a9c  [ E7D8C7748AAED52F1700D048A0087158, 3DD1652460C3AC9809A01DFC39326614C738CBF8196AC1DB73D88231EB860C90 ] OfficeSvc       C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe
02:03:50.0829 0x0a9c  OfficeSvc - ok
02:03:50.0976 0x0a9c  [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] p2pimsvc        C:\WINDOWS\system32\pnrpsvc.dll
02:03:51.0107 0x0a9c  p2pimsvc - ok
02:03:51.0187 0x0a9c  [ FD8F61F0D1F64BBB3D835F39A3F979C9, E5C5F86576488EA7F605E26C06EE5AFB36506A446F60C894D55E0A148BF7F02D ] p2psvc          C:\WINDOWS\system32\p2psvc.dll
02:03:51.0284 0x0a9c  p2psvc - ok
02:03:51.0350 0x0a9c  [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport         C:\WINDOWS\System32\drivers\parport.sys
02:03:51.0401 0x0a9c  Parport - ok
02:03:51.0446 0x0a9c  [ BAFF6122CFC9F95CA175AD8C348179A4, 079A912D951DF6A57BC1BDB0D182977EE9592751EC9DDCDA2932BDEDB333850C ] partmgr         C:\WINDOWS\system32\drivers\partmgr.sys
02:03:51.0479 0x0a9c  partmgr - ok
02:03:51.0588 0x0a9c  [ ABE95ABE27A8BD9701782BBCD82C9925, AE3BA1E9ECDE692374D8DAC95A8DAA289DD2470E3D8D58EFAD9F83A37F3AC8E5 ] PcaSvc          C:\WINDOWS\System32\pcasvc.dll
02:03:51.0665 0x0a9c  PcaSvc - ok
02:03:51.0760 0x0a9c  [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci             C:\WINDOWS\system32\drivers\pci.sys
02:03:51.0808 0x0a9c  pci - ok
02:03:51.0833 0x0a9c  [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide          C:\WINDOWS\system32\drivers\pciide.sys
02:03:51.0864 0x0a9c  pciide - ok
02:03:51.0941 0x0a9c  [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia          C:\WINDOWS\system32\drivers\pcmcia.sys
02:03:51.0980 0x0a9c  pcmcia - ok
02:03:52.0005 0x0a9c  [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw             C:\WINDOWS\system32\drivers\pcw.sys
02:03:52.0036 0x0a9c  pcw - ok
02:03:52.0073 0x0a9c  [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc             C:\WINDOWS\system32\drivers\pdc.sys
02:03:52.0107 0x0a9c  pdc - ok
02:03:52.0186 0x0a9c  [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH          C:\WINDOWS\system32\drivers\peauth.sys
02:03:52.0317 0x0a9c  PEAUTH - ok
02:03:52.0539 0x0a9c  [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost        C:\WINDOWS\SysWow64\perfhost.exe
02:03:52.0653 0x0a9c  PerfHost - ok
02:03:52.0871 0x0a9c  [ 70B39E7241F750A248798CE82C44596D, 54A72199EB277EE586611DCBC21654786FD2196F91D5884C4F531297893CC3EC ] pla             C:\WINDOWS\system32\pla.dll
02:03:53.0028 0x0a9c  pla - ok
02:03:53.0093 0x0a9c  [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] PlugPlay        C:\WINDOWS\system32\umpnpmgr.dll
02:03:53.0134 0x0a9c  PlugPlay - ok
02:03:53.0176 0x0a9c  [ 4570F8A37D221660F3A09D6F4DD4BA94, 0EA190CFFA53DF9CCA2D53A4EF1BCB837BA3F2489A3AC5BD11F6D6ED811D118E ] PNRPAutoReg     C:\WINDOWS\system32\pnrpauto.dll
02:03:53.0229 0x0a9c  PNRPAutoReg - ok
02:03:53.0321 0x0a9c  [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] PNRPsvc         C:\WINDOWS\system32\pnrpsvc.dll
02:03:53.0383 0x0a9c  PNRPsvc - ok
02:03:53.0472 0x0a9c  [ BDD52AB4AEBB8B1904568DBD0CCB70CB, C3D1DBA349C79B43DCDD9EF5255C5EE973EFB844235B808B5EF9B63A51FF00AA ] PolicyAgent     C:\WINDOWS\System32\ipsecsvc.dll
02:03:53.0542 0x0a9c  PolicyAgent - ok
02:03:53.0598 0x0a9c  [ C8DD82C3035E60D671B8CC5DF128D3A9, 6AABF632CBEDA9A7B553BC9134FF100CB6FDC88000D499D2883408FCEDD97576 ] Power           C:\WINDOWS\system32\umpo.dll
02:03:53.0702 0x0a9c  Power - ok
02:03:54.0979 0x0a9c  [ E3514CE7CB4AF80ECCA383F065BC77C0, 1EA06D358A07EB9DFB703CEFC4EB834B947B899E0ACFE1C494E2DAED63F1D4B5 ] PrintNotify     C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
02:03:55.0504 0x0a9c  PrintNotify - ok
02:03:55.0586 0x0a9c  [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor       C:\WINDOWS\System32\drivers\processr.sys
02:03:55.0648 0x0a9c  Processor - ok
02:03:55.0711 0x0a9c  [ 6E409D818C6B342544EAE741B1422B85, B4ADFB7809FC42C432C984C3AC13FAFD1B7AD53BCC7FB16E86371DE4C829DD1A ] ProfSvc         C:\WINDOWS\system32\profsvc.dll
02:03:55.0815 0x0a9c  ProfSvc - ok
02:03:55.0899 0x0a9c  [ FC0141B4A5AD6D637D883C1A89FC45C5, DCE8942C02EEDAE7A57707CA60CAC3A8CD6BA68E6571E405CA882D4DD6D69E43 ] Psched          C:\WINDOWS\system32\DRIVERS\pacer.sys
02:03:55.0969 0x0a9c  Psched - ok
02:03:56.0022 0x0a9c  [ DAA9DEE0A5D5F238C4EE54C2C7FB67C5, 7EC8C603BD92699AC35BDCD294F13BEE90D5C2C195FD93A3F16928BFCF53CA93 ] QWAVE           C:\WINDOWS\system32\qwave.dll
02:03:56.0122 0x0a9c  QWAVE - ok
02:03:56.0173 0x0a9c  [ 83868EB2924E6BC21A54337C65D614D1, 8D1BE01EBD190231153B867C32120DC8FBFBD32050448A778134D435D76A0B07 ] QWAVEdrv        C:\WINDOWS\system32\drivers\qwavedrv.sys
02:03:56.0242 0x0a9c  QWAVEdrv - ok
02:03:56.0285 0x0a9c  [ B337B1F1E82A83E20A1743E008E25C0F, A2E8AF041B4CAB78AEE28A2147A189FF0F9D2FCEFB167D60FBBA0A787A5A5BE7 ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
02:03:56.0357 0x0a9c  RasAcd - ok
02:03:56.0402 0x0a9c  [ 044638489B4A5FE5334F46C5314A0826, E06CC2A9EF369794DAD69FBB5AFD1676D4283DDAB2AD5E3EFE454C473F62F955 ] RasAuto         C:\WINDOWS\System32\rasauto.dll
02:03:56.0474 0x0a9c  RasAuto - ok
02:03:56.0622 0x0a9c  [ F83B38FCD4F69157B3D158433FA149CC, AB103BD3E2B3B134CB355C556DF70BCF0CF4DB11EFF7DB4A9876D5AA43D81293 ] RasMan          C:\WINDOWS\System32\rasmans.dll
02:03:56.0724 0x0a9c  RasMan - ok
02:03:56.0776 0x0a9c  [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
02:03:56.0847 0x0a9c  RasPppoe - ok
02:03:56.0973 0x0a9c  [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
02:03:57.0150 0x0a9c  rdbss - ok
02:03:57.0216 0x0a9c  [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus          C:\WINDOWS\System32\drivers\rdpbus.sys
02:03:57.0258 0x0a9c  rdpbus - ok
02:03:57.0295 0x0a9c  [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR           C:\WINDOWS\system32\drivers\rdpdr.sys
02:03:57.0390 0x0a9c  RDPDR - ok
02:03:57.0439 0x0a9c  [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
02:03:57.0480 0x0a9c  RdpVideoMiniport - ok
02:03:57.0567 0x0a9c  [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost        C:\WINDOWS\system32\drivers\rdyboost.sys
02:03:57.0621 0x0a9c  rdyboost - ok
02:03:57.0859 0x0a9c  [ 615DFD97DEA56CE1C3A52185A3038FF8, 707BF5F9FAE478A12656D15013F507CC1335E7B72BD21CA99BB813CB95E37BC0 ] ReFS            C:\WINDOWS\system32\drivers\ReFS.sys
02:03:57.0967 0x0a9c  ReFS - ok
02:03:58.0048 0x0a9c  [ 0CF7CB56BF2D5E9DBCEE0185CB626FAD, 2BD2E2FB1D2EADD1F70EF55E8523C353F95D4FEB1BAD5017FA4D94F790F27825 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
02:03:58.0113 0x0a9c  RemoteAccess - ok
02:03:58.0206 0x0a9c  [ AC8785B53F8436058C90450DA1840AE7, CC1FFC2713910211F8A6AD532DBB9253ACD188CBD784F1BE6613DF382825A3C1 ] RemoteRegistry  C:\WINDOWS\system32\regsvc.dll
02:03:58.0287 0x0a9c  RemoteRegistry - ok
02:03:58.0344 0x0a9c  [ 65B9FDE300A6DECC03BA44C4616DCAD6, CAD992982733DD20282A3453DC4E554AE1FC077C35479C0CA4E8BC3A9DCD3BB0 ] RpcEptMapper    C:\WINDOWS\System32\RpcEpMap.dll
02:03:58.0406 0x0a9c  RpcEptMapper - ok
02:03:58.0473 0x0a9c  [ A737B433ABAF3F2DCB2BD7B4CC582B26, 3B5706B0CF0969A9F82060FD4DCC745F2D83C066B663FE8A4F0F493B64032C9C ] RpcLocator      C:\WINDOWS\system32\locator.exe
02:03:58.0551 0x0a9c  RpcLocator - ok
02:03:58.0753 0x0a9c  [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] RpcSs           C:\WINDOWS\system32\rpcss.dll
02:03:58.0841 0x0a9c  RpcSs - ok
02:03:58.0899 0x0a9c  [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr          C:\WINDOWS\system32\DRIVERS\rspndr.sys
02:03:58.0954 0x0a9c  rspndr - ok
02:03:59.0054 0x0a9c  [ 8EB6DCEB7473C232D8BC9A886E3183AC, D81B089443306AD9D89F59DBC5F9C2F5B6A86112B4AB59316B97EE7D8B97D2FA ] RSUSBVSTOR      C:\WINDOWS\System32\Drivers\RtsUVStor.sys
02:03:59.0091 0x0a9c  RSUSBVSTOR - ok
02:03:59.0246 0x0a9c  [ 19764658C1468C2C0CEF133D28414A6B, 87AD4056F6C67052433A366B200B75613148B69B9B9D502AD926A7F7F037B8DE ] RTL8168         C:\WINDOWS\system32\DRIVERS\Rt630x64.sys
02:03:59.0326 0x0a9c  RTL8168 - ok
02:03:59.0994 0x0a9c  [ 5B51809556BCAB9EAE08C0665D9A658C, DE851A7FB79D802CC0AF376A92D1A701918E035A6673555B10D3205BBAA34650 ] rtsuvc          C:\WINDOWS\system32\DRIVERS\rtsuvc.sys
02:04:00.0658 0x0a9c  rtsuvc - ok
02:04:00.0775 0x0a9c  [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap           C:\WINDOWS\System32\drivers\vms3cap.sys
02:04:00.0854 0x0a9c  s3cap - ok
02:04:00.0885 0x0a9c  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] SamSs           C:\WINDOWS\system32\lsass.exe
02:04:00.0918 0x0a9c  SamSs - ok
02:04:00.0954 0x0a9c  [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port        C:\WINDOWS\system32\drivers\sbp2port.sys
02:04:00.0991 0x0a9c  sbp2port - ok
02:04:01.0071 0x0a9c  [ 74A3B67F03877D06B09B1B40C5ED582E, A8FF9BF416F0BF365BFB4E1796859825C811A74B5E54DDDCE8345193BEEBE206 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.dll
02:04:01.0130 0x0a9c  SCardSvr - ok
02:04:01.0228 0x0a9c  [ 8B9C4D55B4A536FB01C360DDB9533574, 9B939FE68F6F9C171ED0D91E2CE1E67515295D34EC23606BCDFD097DCC8CFD4A ] ScDeviceEnum    C:\WINDOWS\System32\ScDeviceEnum.dll
02:04:01.0298 0x0a9c  ScDeviceEnum - ok
02:04:01.0340 0x0a9c  [ 13BEA6C882D4D877A5A85CA149C86BC1, 8E9BE5C2A36D5881D9985C3A31309FE03966EA13A3541D3C5B542AB67FA0D55F ] scfilter        C:\WINDOWS\system32\DRIVERS\scfilter.sys
02:04:01.0390 0x0a9c  scfilter - ok
02:04:01.0528 0x0a9c  [ 3151A020E03DDE31AAC49F35C5EFB4DB, 5ABB1103009979F86C862357E28F37C2744979F2C99F7CF6ABB4EB1B8416B3F6 ] Schedule        C:\WINDOWS\system32\schedsvc.dll
02:04:01.0678 0x0a9c  Schedule - ok
02:04:01.0756 0x0a9c  [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] SCPolicySvc     C:\WINDOWS\System32\certprop.dll
02:04:01.0798 0x0a9c  SCPolicySvc - ok
02:04:01.0842 0x0a9c  [ C54B6B2170BF628FD42F799A66956D75, BCF460A124CAA6F1F1A9A7BCBDCC2D5E39B0404D96B7C9FFAC806E041782B91E ] sdbus           C:\WINDOWS\System32\drivers\sdbus.sys
02:04:01.0888 0x0a9c  sdbus - ok
02:04:01.0946 0x0a9c  [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor          C:\WINDOWS\System32\drivers\sdstor.sys
02:04:01.0982 0x0a9c  sdstor - ok
02:04:02.0038 0x0a9c  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\WINDOWS\system32\drivers\secdrv.sys
02:04:02.0123 0x0a9c  secdrv - ok
02:04:02.0178 0x0a9c  [ BA24CEA7152239F42ECD04AFB7C89D24, A2A11EABB0C283772B74667C7544B61BEB1B9745FBF065E831542129EB585AFA ] seclogon        C:\WINDOWS\system32\seclogon.dll
02:04:02.0245 0x0a9c  seclogon - ok
02:04:02.0291 0x0a9c  [ 81FE9A81EDF8016816C9E91FBFBF7D35, 87FB92A3D15F312F0B9C423EF851061A944B013E5668D8C9A441B4DC0EB690AF ] SENS            C:\WINDOWS\System32\sens.dll
02:04:02.0343 0x0a9c  SENS - ok
02:04:02.0416 0x0a9c  [ 6E4012AE67F09F867EF620C8D5524C0B, 63933E51F8E413E63481369CE2F9FD224560550FBD3BD2B4573E9F4AD88708A2 ] SensrSvc        C:\WINDOWS\system32\sensrsvc.dll
02:04:02.0493 0x0a9c  SensrSvc - ok
02:04:02.0548 0x0a9c  [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx           C:\WINDOWS\system32\drivers\SerCx.sys
02:04:02.0586 0x0a9c  SerCx - ok
02:04:02.0651 0x0a9c  [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2          C:\WINDOWS\system32\drivers\SerCx2.sys
02:04:02.0696 0x0a9c  SerCx2 - ok
02:04:02.0725 0x0a9c  [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum         C:\WINDOWS\System32\drivers\serenum.sys
02:04:02.0773 0x0a9c  Serenum - ok
02:04:02.0832 0x0a9c  [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial          C:\WINDOWS\System32\drivers\serial.sys
02:04:02.0886 0x0a9c  Serial - ok
02:04:02.0925 0x0a9c  [ 148195AE95D9BC7375A08846439FDAC1, 3A2F78FD18AA7A6D659921E19335E943894530874AC5AB5E7219CEF28FA54F7A ] sermouse        C:\WINDOWS\System32\drivers\sermouse.sys
02:04:02.0975 0x0a9c  sermouse - ok
02:04:03.0167 0x0a9c  [ 3A2F1A7472C3B7CC9B89C8516C726488, 9BCBBAC10C900EA7B30822B463A77EE5067F217C4B490857A09E5277983CB89B ] SessionEnv      C:\WINDOWS\system32\sessenv.dll
02:04:03.0279 0x0a9c  SessionEnv - ok
02:04:03.0317 0x0a9c  [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy         C:\WINDOWS\System32\drivers\sfloppy.sys
02:04:03.0366 0x0a9c  sfloppy - ok
02:04:03.0532 0x0a9c  [ 8081FF3DAE8159FE8956B09BC29CE983, AC0F305AEE8B1AB2E1275F1D33EC1D2F3E23F234F831BD9D41F415A94A19D3AB ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
02:04:03.0615 0x0a9c  SharedAccess - ok
02:04:03.0701 0x0a9c  [ 7FD9A61A3523A61FC135D61D6E160314, 409E1CF7A62FD90CBC31AEAFBB7230B02DBEC6CFCA2D266D221A7643FAEBA13B ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
02:04:03.0873 0x0a9c  ShellHWDetection - ok
02:04:03.0916 0x0a9c  [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2        C:\WINDOWS\system32\drivers\SiSRaid2.sys
02:04:03.0946 0x0a9c  SiSRaid2 - ok
02:04:03.0992 0x0a9c  [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4        C:\WINDOWS\system32\drivers\sisraid4.sys
02:04:04.0032 0x0a9c  SiSRaid4 - ok
02:04:04.0066 0x0a9c  [ 3C84DCCE5B322F745A75CA8BA3A0F6B3, 1FB94A8A1C63D6FDB82E28ED5B696B3CB1F64183A89A3B5153B266C292CB7815 ] smphost         C:\WINDOWS\System32\smphost.dll
02:04:04.0157 0x0a9c  smphost - ok
02:04:04.0223 0x0a9c  [ D0EB0DF8C603BBA084351A92732B1CBE, E24ED8F78EF41C1BC17386AE4BBCE0DC892C5B89B12C03FC9FB61D359B13F1B4 ] SNMPTRAP        C:\WINDOWS\System32\snmptrap.exe
02:04:04.0271 0x0a9c  SNMPTRAP - ok
02:04:04.0359 0x0a9c  [ D24B1945ED1F9C96DA786DBBF1E983CE, B46CB0B72B7A3DF94A46B8D65E38535C5F8E72A55CF2DC48EFA1F9A0108691C4 ] spaceport       C:\WINDOWS\system32\drivers\spaceport.sys
02:04:04.0416 0x0a9c  spaceport - ok
02:04:04.0484 0x0a9c  [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx           C:\WINDOWS\system32\drivers\SpbCx.sys
02:04:04.0530 0x0a9c  SpbCx - ok
02:04:04.0620 0x0a9c  [ FCB156A6745631A67DEA61827061D483, 9275ABFA1E1E595969A71C0DA228D18D1B868BF46E097E1276142BD80F8A32C9 ] Spooler         C:\WINDOWS\System32\spoolsv.exe
02:04:04.0755 0x0a9c  Spooler - ok
02:04:05.0355 0x0a9c  [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc          C:\WINDOWS\system32\sppsvc.exe
02:04:06.0006 0x0a9c  sppsvc - ok
02:04:06.0122 0x0a9c  [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv             C:\WINDOWS\system32\DRIVERS\srv.sys
02:04:06.0323 0x0a9c  srv - ok
02:04:06.0520 0x0a9c  [ 00D8AC8E3053290BDE6EA2FB6810D2FC, 957FEF84CBBAE71829529AE99A1B24F52D7831BD666442D0132FBB825409A75D ] srv2            C:\WINDOWS\system32\DRIVERS\srv2.sys
02:04:06.0673 0x0a9c  srv2 - ok
02:04:06.0724 0x0a9c  [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet          C:\WINDOWS\system32\DRIVERS\srvnet.sys
02:04:06.0855 0x0a9c  srvnet - ok
02:04:06.0950 0x0a9c  [ CF6C3037839CF78421A94F9060C2886F, CA98C180AE03F5BE8FEFFBA75BD98DEE2AD4FA975E1EF83215C9CD2476946811 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
02:04:07.0021 0x0a9c  SSDPSRV - ok
02:04:07.0098 0x0a9c  [ 198A737DBA666F4808D62E9A8277A6B7, 90B6E5E2ACE95D850C913A3A1DA1F966C44955C530004C228FA93B2A536F5C27 ] SstpSvc         C:\WINDOWS\system32\sstpsvc.dll
02:04:07.0200 0x0a9c  SstpSvc - ok
02:04:07.0225 0x0a9c  [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor        C:\WINDOWS\system32\drivers\stexstor.sys
02:04:07.0255 0x0a9c  stexstor - ok
02:04:07.0467 0x0a9c  [ 63E9CE568CF1192771A5F0460DE7D2B9, C27B21FD2C14AD41A59EF62EB8AC95C08EB13CCB1CEECD8378B8CDD4DC352E69 ] stisvc          C:\WINDOWS\System32\wiaservc.dll
02:04:07.0616 0x0a9c  stisvc - ok
02:04:07.0664 0x0a9c  [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci        C:\WINDOWS\system32\drivers\storahci.sys
02:04:07.0699 0x0a9c  storahci - ok
02:04:07.0734 0x0a9c  [ 8B9486B64E5FC17FB9CC04CA10B77A34, C1EAC9D27DC83E4C56B890D97988C3CCFAE3877309610601F2E3FFFE97686D43 ] storflt         C:\WINDOWS\system32\drivers\vmstorfl.sys
02:04:07.0782 0x0a9c  storflt - ok
02:04:07.0849 0x0a9c  [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme        C:\WINDOWS\system32\drivers\stornvme.sys
02:04:07.0880 0x0a9c  stornvme - ok
02:04:07.0935 0x0a9c  [ A45F5AC9D8069D0EC66E3CA73103073B, 996788F1C58E016E8E5CF3FD1D220A3C40AFFD6C21361A34636415DB12E0D381 ] StorSvc         C:\WINDOWS\system32\storsvc.dll
02:04:08.0033 0x0a9c  StorSvc - ok
02:04:08.0117 0x0a9c  [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc         C:\WINDOWS\system32\drivers\storvsc.sys
02:04:08.0160 0x0a9c  storvsc - ok
02:04:08.0226 0x0a9c  [ E395BE02F80A79A6CF973BA38DBB8135, 4C6F85B0EB8E7725BA720F9742561D229726C0D7C17505D1E79F19A5626F6325 ] svsvc           C:\WINDOWS\system32\svsvc.dll
02:04:08.0343 0x0a9c  svsvc - ok
02:04:08.0426 0x0a9c  [ 65454187E0F8B6C0DCECB0287D06EC43, 87550000CF5B3C1DF3E69633934AFE8554AE40B6638F190D3185AD63F1D7A2EE ] swenum          C:\WINDOWS\System32\drivers\swenum.sys
02:04:08.0454 0x0a9c  swenum - ok
02:04:08.0614 0x0a9c  [ 1C71D72D4997A284128FBEE770726330, 21682BDE74A1108FED1124FB1EA35A03CBFA94ABE1B89CC0FADB4DD82596C43E ] swprv           C:\WINDOWS\System32\swprv.dll
02:04:08.0735 0x0a9c  swprv - ok
02:04:08.0874 0x0a9c  [ B54FD2CFB84FAC78D136434530461BA4, 5FEDAD9CD96B73ABA43223CAA66CFF981C09CFE188BFBEA2BE9018663A9444F0 ] SXDS10          C:\Program Files (x86)\Common Files\soft Xpansion\sxds10.exe
02:04:08.0909 0x0a9c  SXDS10 - ok
02:04:08.0979 0x0a9c  [ 3675657B3A4A2868A2C2B2A160E4A3C9, 1E2D115D2454596B139360815B24574CF331920513E71EA151324DC2922BC59B ] SynTP           C:\WINDOWS\system32\DRIVERS\SynTP.sys
02:04:09.0026 0x0a9c  SynTP - ok
02:04:09.0158 0x0a9c  [ 7E85DB0463AD2403AE84AD162B162279, 996C42ECAFC6E24C623068AFAFCC0A2612526333AF9315F7536C6D40C2570632 ] SysMain         C:\WINDOWS\system32\sysmain.dll
02:04:09.0347 0x0a9c  SysMain - ok
02:04:09.0428 0x0a9c  [ D73DBBB96CEE90C2856164AAD8543425, D11ADB5D4C5DD355314CA656D375D0062CAE7462E866F94F1B26D5803F65DCB2 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
02:04:09.0546 0x0a9c  SystemEventsBroker - ok
02:04:09.0613 0x0a9c  [ D6A71B95ACF71ACA63B67232059F1BCD, C5CEC032E7AB507500D1CC7A4E65DA6322412C798201A9D770CBDE892E50DFC8 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
02:04:09.0714 0x0a9c  TabletInputService - ok
02:04:09.0780 0x0a9c  [ 5A5BAB1CA9621E73E25EE4744B67CDA6, 479EBD7BAE1E2AD431153FDC016742F7A8D824716EAB1A4CA87EBBD21D61DECD ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
02:04:09.0886 0x0a9c  TapiSrv - ok
02:04:10.0346 0x0a9c  [ 746DDF7D59AB8D721C88D48434597E8D, 78BDBAB8D1E86A11804FEB19B355C0FAD04ACE8DD4BDDFDADCE5461E259BCE82 ] Tcpip           C:\WINDOWS\system32\drivers\tcpip.sys
02:04:10.0605 0x0a9c  Tcpip - ok
02:04:10.0827 0x0a9c  [ 746DDF7D59AB8D721C88D48434597E8D, 78BDBAB8D1E86A11804FEB19B355C0FAD04ACE8DD4BDDFDADCE5461E259BCE82 ] TCPIP6          C:\WINDOWS\system32\DRIVERS\tcpip.sys
02:04:11.0099 0x0a9c  TCPIP6 - ok
02:04:11.0194 0x0a9c  [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg        C:\WINDOWS\system32\drivers\tcpipreg.sys
02:04:11.0277 0x0a9c  tcpipreg - ok
02:04:11.0383 0x0a9c  [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx             C:\WINDOWS\system32\DRIVERS\tdx.sys
02:04:11.0434 0x0a9c  tdx - ok
02:04:11.0500 0x0a9c  [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt        C:\WINDOWS\System32\drivers\terminpt.sys
02:04:11.0543 0x0a9c  terminpt - ok
02:04:11.0722 0x0a9c  [ C50997E282576DA492EBA66B059D4196, EBD793CB396F9503376207FA60353F5672DEDB620C8E01C8D6AE0030B3B03339 ] TermService     C:\WINDOWS\System32\termsrv.dll
02:04:11.0882 0x0a9c  TermService - ok
02:04:11.0944 0x0a9c  [ 2180DBCE75B914E5E5BBFFFAAE97AA21, 8000AECC8855903DB50ABA7E304396D1FCEAE8DC9ADD4FC50275CF24B4D914DE ] Themes          C:\WINDOWS\system32\themeservice.dll
02:04:11.0991 0x0a9c  Themes - ok
02:04:12.0037 0x0a9c  [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] THREADORDER     C:\WINDOWS\system32\mmcss.dll
02:04:12.0073 0x0a9c  THREADORDER - ok
02:04:12.0209 0x0a9c  [ B5ED9CC61798C7D44BD535D40B89EFB5, 1BDCEAA9AF2096381870D92129C748F4EE06A1167ABA9367B9DD43BAF27E3F5B ] TimeBroker      C:\WINDOWS\System32\TimeBrokerServer.dll
02:04:12.0302 0x0a9c  TimeBroker - ok
02:04:12.0410 0x0a9c  [ 80A2FC1A089A71F2DBE5D8394FFB009F, DEA30E751F6EA42E43E16869713FC7E37832B15DAFA0062B1798DFA476981385 ] TPM             C:\WINDOWS\system32\drivers\tpm.sys
02:04:12.0453 0x0a9c  TPM - ok
02:04:12.0493 0x0a9c  [ 884113C2BB703FE806C8608B75F34831, 24DE5750CA4363455412BABB0B1FAB08497153E8F158ED44958F100410F93506 ] TrkWks          C:\WINDOWS\System32\trkwks.dll
02:04:12.0543 0x0a9c  TrkWks - ok
02:04:12.0646 0x0a9c  [ 44A94FB4C76528D2382FFE04B05827C3, B0BCDF7CD1D65E61A9061D539D83527A89B69583958F8A26C6BF9766C1B61E0C ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
02:04:12.0730 0x0a9c  TrustedInstaller - ok
02:04:12.0761 0x0a9c  [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt        C:\WINDOWS\system32\drivers\tsusbflt.sys
02:04:12.0846 0x0a9c  TsUsbFlt - ok
02:04:12.0908 0x0a9c  [ 20185BEB7512EDE4EFECDFA148AC9F99, 6F539478493C0F87F3DDF67A4A6D4D41E9474EEF21434E856350CE149A34EA9F ] TsUsbGD         C:\WINDOWS\System32\drivers\TsUsbGD.sys
02:04:13.0005 0x0a9c  TsUsbGD - ok
02:04:13.0099 0x0a9c  [ E85916632CD3B9E9B546968DB950BF42, DECE3852C763CC6293C7D1B772296C43A0AE1E47BBCC4979C96B3B2AD70413F3 ] tunnel          C:\WINDOWS\system32\DRIVERS\tunnel.sys
02:04:13.0202 0x0a9c  tunnel - ok
02:04:13.0244 0x0a9c  [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35          C:\WINDOWS\system32\drivers\uagp35.sys
02:04:13.0286 0x0a9c  uagp35 - ok
02:04:13.0312 0x0a9c  [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor        C:\WINDOWS\System32\drivers\uaspstor.sys
02:04:13.0359 0x0a9c  UASPStor - ok
02:04:13.0461 0x0a9c  [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000        C:\WINDOWS\System32\drivers\ucx01000.sys
02:04:13.0502 0x0a9c  UCX01000 - ok
02:04:13.0614 0x0a9c  [ C61EAF8E1E4B2F62BA4FDF457440B2C6, 961F76A789925234AC27F56AAE34556FA06088D71580B42C24B0BC209EAFD67E ] udfs            C:\WINDOWS\system32\DRIVERS\udfs.sys
02:04:13.0712 0x0a9c  udfs - ok
02:04:13.0748 0x0a9c  [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI            C:\WINDOWS\System32\drivers\UEFI.sys
02:04:13.0792 0x0a9c  UEFI - ok
02:04:13.0861 0x0a9c  [ A867F0F978EE64C87FADC3B100869EE4, 2686BE85F963D0D0BB275E92E5B543280D8742CF10772303E3189D0719B6A277 ] UI0Detect       C:\WINDOWS\system32\UI0Detect.exe
02:04:13.0942 0x0a9c  UI0Detect - ok
02:04:13.0987 0x0a9c  [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx        C:\WINDOWS\system32\drivers\uliagpkx.sys
02:04:14.0022 0x0a9c  uliagpkx - ok
02:04:14.0051 0x0a9c  [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus           C:\WINDOWS\System32\drivers\umbus.sys
02:04:14.0110 0x0a9c  umbus - ok
02:04:14.0140 0x0a9c  [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass          C:\WINDOWS\System32\drivers\umpass.sys
02:04:14.0185 0x0a9c  UmPass - ok
02:04:14.0284 0x0a9c  [ A023F267A262D5DA6CE1436D9C5E8FD9, 92AD7AF91184C244A7E392F49663143193A80D5D81114546A00F18227DE31D23 ] UmRdpService    C:\WINDOWS\System32\umrdp.dll
02:04:14.0406 0x0a9c  UmRdpService - ok
02:04:14.0588 0x0a9c  [ C98493DD8E6A50154FAC75C15E1C36BB, CECD1C826C8F7AF05468871BF6A0ACDBB6B0202F4F87F48C6D367E5BD699E800 ] upnphost        C:\WINDOWS\System32\upnphost.dll
02:04:14.0658 0x0a9c  upnphost - ok
02:04:14.0720 0x0a9c  [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64       C:\WINDOWS\System32\Drivers\usbaapl64.sys
02:04:14.0849 0x0a9c  USBAAPL64 - ok
02:04:14.0906 0x0a9c  [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp         C:\WINDOWS\System32\drivers\usbccgp.sys
02:04:14.0944 0x0a9c  usbccgp - ok
02:04:14.0978 0x0a9c  [ 0139248F6B95CF0D837B5B46A2722D40, 38E3E704E0364F07732DB418AEBD126B040FB3CDB7D78EA36E8605D50D528A80 ] usbcir          C:\WINDOWS\System32\drivers\usbcir.sys
02:04:15.0038 0x0a9c  usbcir - ok
02:04:15.0135 0x0a9c  [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci         C:\WINDOWS\System32\drivers\usbehci.sys
02:04:15.0169 0x0a9c  usbehci - ok
02:04:15.0316 0x0a9c  [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub          C:\WINDOWS\System32\drivers\usbhub.sys
02:04:15.0398 0x0a9c  usbhub - ok
02:04:15.0513 0x0a9c  [ 95B0179BDA907252025DEEA183699FB3, A6BDFB93EE9418A83407024204A41640A08638C60E2BE75C249D102601DC1D80 ] USBHUB3         C:\WINDOWS\System32\drivers\UsbHub3.sys
02:04:15.0576 0x0a9c  USBHUB3 - ok
02:04:15.0661 0x0a9c  [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci         C:\WINDOWS\System32\drivers\usbohci.sys
02:04:15.0825 0x0a9c  usbohci - ok
02:04:15.0861 0x0a9c  [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint        C:\WINDOWS\System32\drivers\usbprint.sys
02:04:15.0896 0x0a9c  usbprint - ok
02:04:15.0974 0x0a9c  [ F04D164C4168701A4E7835607722E5F1, 6F743CF2CF73945B4A4B1C4402744BC2FE1624F1346C194493AD2F7110F9EB35 ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
02:04:16.0032 0x0a9c  usbscan - ok
02:04:16.0080 0x0a9c  [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR         C:\WINDOWS\System32\drivers\USBSTOR.SYS
02:04:16.0120 0x0a9c  USBSTOR - ok
02:04:16.0176 0x0a9c  [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci         C:\WINDOWS\System32\drivers\usbuhci.sys
02:04:16.0247 0x0a9c  usbuhci - ok
02:04:16.0336 0x0a9c  [ 44603DA5A87FB491EF59C889EBBB4DDB, 59AA9B6B0B5D66F9312CD3F999D0D9F12F1A2C5D230365AD7287CD71FD86961C ] USBXHCI         C:\WINDOWS\System32\drivers\USBXHCI.SYS
02:04:16.0395 0x0a9c  USBXHCI - ok
02:04:16.0419 0x0a9c  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] VaultSvc        C:\WINDOWS\system32\lsass.exe
02:04:16.0453 0x0a9c  VaultSvc - ok
02:04:16.0485 0x0a9c  [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot        C:\WINDOWS\system32\drivers\vdrvroot.sys
02:04:16.0516 0x0a9c  vdrvroot - ok
02:04:16.0792 0x0a9c  [ 8A4D808D1EC7C1C47B2C8BF488A9A07A, 63C07312ADB6F8A8BDE93361C30AC63DAB4DE1141AF54630EEF11E54B0BF983D ] vds             C:\WINDOWS\System32\vds.exe
02:04:16.0949 0x0a9c  vds - ok
02:04:17.0014 0x0a9c  [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt     C:\WINDOWS\system32\drivers\VerifierExt.sys
02:04:17.0058 0x0a9c  VerifierExt - ok
02:04:17.0175 0x0a9c  [ C06E8481E068F170A258441639AC5792, 2F550530BACB511A195D5047F003B01CB6E04FA9A0DCCF638CB3D51FF5467DC7 ] vhdmp           C:\WINDOWS\System32\drivers\vhdmp.sys
02:04:17.0245 0x0a9c  vhdmp - ok
02:04:17.0301 0x0a9c  [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide          C:\WINDOWS\system32\drivers\viaide.sys
02:04:17.0332 0x0a9c  viaide - ok
02:04:17.0393 0x0a9c  [ 511AD3FF957A0127E6BD336FF6F89C38, 55325BFD0857A1204F7F6F8ED8C91C07B0E20A50402105708E7365ECD9E25A21 ] vmbus           C:\WINDOWS\system32\drivers\vmbus.sys
02:04:17.0435 0x0a9c  vmbus - ok
02:04:17.0479 0x0a9c  [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID        C:\WINDOWS\System32\drivers\VMBusHID.sys
02:04:17.0520 0x0a9c  VMBusHID - ok
02:04:17.0584 0x0a9c  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
02:04:17.0676 0x0a9c  vmicguestinterface - ok
02:04:17.0730 0x0a9c  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicheartbeat   C:\WINDOWS\System32\ICSvc.dll
02:04:17.0792 0x0a9c  vmicheartbeat - ok
02:04:17.0834 0x0a9c  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
02:04:17.0897 0x0a9c  vmickvpexchange - ok
02:04:17.0939 0x0a9c  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicrdv         C:\WINDOWS\System32\ICSvc.dll
02:04:18.0000 0x0a9c  vmicrdv - ok
02:04:18.0043 0x0a9c  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicshutdown    C:\WINDOWS\System32\ICSvc.dll
02:04:18.0106 0x0a9c  vmicshutdown - ok
02:04:18.0152 0x0a9c  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmictimesync    C:\WINDOWS\System32\ICSvc.dll
02:04:18.0275 0x0a9c  vmictimesync - ok
02:04:18.0330 0x0a9c  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicvss         C:\WINDOWS\System32\ICSvc.dll
02:04:18.0394 0x0a9c  vmicvss - ok
02:04:18.0469 0x0a9c  [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr          C:\WINDOWS\system32\drivers\volmgr.sys
02:04:18.0507 0x0a9c  volmgr - ok
02:04:18.0601 0x0a9c  [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx         C:\WINDOWS\system32\drivers\volmgrx.sys
02:04:18.0658 0x0a9c  volmgrx - ok
02:04:18.0766 0x0a9c  [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap         C:\WINDOWS\system32\drivers\volsnap.sys
02:04:18.0817 0x0a9c  volsnap - ok
02:04:18.0866 0x0a9c  [ EF31713EE4C7CCFE4049F7E7F15645A2, 35D198D3F1061E19A7EF89FA1E75377049CD6BCA9702F8076B9F95BB8737E0D4 ] vpci            C:\WINDOWS\System32\drivers\vpci.sys
02:04:18.0905 0x0a9c  vpci - ok
02:04:18.0975 0x0a9c  [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid         C:\WINDOWS\system32\drivers\vsmraid.sys
02:04:19.0015 0x0a9c  vsmraid - ok
02:04:19.0275 0x0a9c  [ 94FAFD473CDD80CE19A21FB9503D7ED1, 953E5E8C753C0017E1258695A76F60CC05D283F7476B9D9C5C8AC78B8E3FCE18 ] VSS             C:\WINDOWS\system32\vssvc.exe
02:04:19.0443 0x0a9c  VSS - ok
02:04:19.0532 0x0a9c  [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID        C:\WINDOWS\system32\drivers\vstxraid.sys
02:04:19.0586 0x0a9c  VSTXRAID - ok
02:04:19.0640 0x0a9c  [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus        C:\WINDOWS\System32\drivers\vwifibus.sys
02:04:19.0728 0x0a9c  vwifibus - ok
02:04:19.0772 0x0a9c  [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt        C:\WINDOWS\system32\DRIVERS\vwififlt.sys
02:04:19.0838 0x0a9c  vwififlt - ok
02:04:19.0870 0x0a9c  [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] vwifimp         C:\WINDOWS\system32\DRIVERS\vwifimp.sys
02:04:19.0915 0x0a9c  vwifimp - ok
02:04:20.0034 0x0a9c  [ DC821E811EFBB65CDD77FBB8B6ECA385, B7C8AACDF81DBA298F2F384983D36B269876C31F0398D89BF9070217A069B96F ] W32Time         C:\WINDOWS\system32\w32time.dll
02:04:20.0213 0x0a9c  W32Time - ok
02:04:20.0254 0x0a9c  [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen        C:\WINDOWS\System32\drivers\wacompen.sys
02:04:20.0299 0x0a9c  WacomPen - ok
02:04:20.0477 0x0a9c  [ A81988DCC4FA440AA88B84CA452F5E22, 3573AAA09971E8ADB6FEFA778E02B2D8EE5E4249267CF37A524D9F019CC836FB ] wbengine        C:\WINDOWS\system32\wbengine.exe
02:04:20.0687 0x0a9c  wbengine - ok
02:04:20.0781 0x0a9c  [ 0F1DFA2FED73FA78B8C3CDE332A870F6, 1089F6F585F5350D349A640EBD3117832DF6B3657EB6667CB00AE217E04ACA17 ] WbioSrvc        C:\WINDOWS\System32\wbiosrvc.dll
02:04:20.0927 0x0a9c  WbioSrvc - ok
02:04:21.0040 0x0a9c  [ 0EAEC313B24837613621B4A2536ED382, 61C194ED7FA7D65BBE61A546D5FCA52F52AB08324E084D3EC23C9706E9BF0175 ] Wcmsvc          C:\WINDOWS\System32\wcmsvc.dll
02:04:21.0115 0x0a9c  Wcmsvc - ok
02:04:21.0258 0x0a9c  [ F6B4C2280FF7C7156AC8A4687B9DA35E, 1899D584D7469BB49355D84080051E2575B033E6312009D9C6C1DD3F7F9AA4C5 ] wcncsvc         C:\WINDOWS\System32\wcncsvc.dll
02:04:21.0339 0x0a9c  wcncsvc - ok
02:04:21.0398 0x0a9c  [ B7BF1D783F5B2484E8CE1C0C78257F16, 468601199FCCF63DBAE86EE6B8825EA85B2A1EE177413353FFA2CC9CA5249FCD ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
02:04:21.0497 0x0a9c  WcsPlugInService - ok
02:04:21.0529 0x0a9c  [ 81285DDC994F03379DB46419300B2DCB, 98D3622E11F375718AEA1DE3B5F0104DDAB4F96B6D4C19788C14F7B338A6F235 ] WdBoot          C:\WINDOWS\system32\drivers\WdBoot.sys
02:04:21.0560 0x0a9c  WdBoot - ok
02:04:21.0746 0x0a9c  [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000        C:\WINDOWS\system32\drivers\Wdf01000.sys
02:04:21.0831 0x0a9c  Wdf01000 - ok
02:04:21.0927 0x0a9c  [ 26B8FED3F3B85F5F0C4BD03FD00B9941, 7F94FE7954498223B33C025258DB588A3AC9FF25C58EEAD204514FD20652FE40 ] WdFilter        C:\WINDOWS\system32\drivers\WdFilter.sys
02:04:21.0974 0x0a9c  WdFilter - ok
02:04:22.0049 0x0a9c  [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiServiceHost  C:\WINDOWS\system32\wdi.dll
02:04:22.0113 0x0a9c  WdiServiceHost - ok
02:04:22.0127 0x0a9c  [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiSystemHost   C:\WINDOWS\system32\wdi.dll
02:04:22.0173 0x0a9c  WdiSystemHost - ok
02:04:22.0231 0x0a9c  [ CE67080F00E0AF32755096CEA6430ABA, 0E5D626F9F76C0BC63B2D246AD66D9CBF7D92F34B56398417BCFD0C331DBD282 ] WdNisDrv        C:\WINDOWS\system32\Drivers\WdNisDrv.sys
02:04:22.0271 0x0a9c  WdNisDrv - ok
02:04:22.0305 0x0a9c  WdNisSvc - ok
02:04:22.0395 0x0a9c  [ 40F83492DB9ABBA59773A45FB487C8B2, 0D0DE0B0C9B929FEFD2674CCF17F5F2FC4B16EAB8E1981BBCE51B0305FD7D75E ] WebClient       C:\WINDOWS\System32\webclnt.dll
02:04:22.0487 0x0a9c  WebClient - ok
02:04:22.0545 0x0a9c  [ 384E1D04FE20845B2559D292F17A9FA1, AD3B0B2B2219691AC30FEEC8AFDB3BBB74B51BB7D02038AE2B4DEA514E245315 ] Wecsvc          C:\WINDOWS\system32\wecsvc.dll
02:04:22.0606 0x0a9c  Wecsvc - ok
02:04:22.0647 0x0a9c  [ 455014F4E48B67EBE0F032E2B0E06BF2, A36435784A034B27056A0E606683A20C69F1B0AB2B6BAEDEAEAA190F6287CAEF ] WEPHOSTSVC      C:\WINDOWS\system32\wephostsvc.dll
02:04:22.0696 0x0a9c  WEPHOSTSVC - ok
02:04:22.0745 0x0a9c  [ F13DBA57CEA9B7074B95EDCA6AD2635E, 1D9BA4841EF1343A5D9096B5FE27FC65DC1901D6683DD13516171638549666B5 ] wercplsupport   C:\WINDOWS\System32\wercplsupport.dll
02:04:22.0838 0x0a9c  wercplsupport - ok
02:04:22.0891 0x0a9c  [ FD7E58B6AA3EABF2D12B9762A20E11E4, 4C5E2E246C5C70074866BB3DBC2AAF483ECE4345004CCB8D1FE285047268685D ] WerSvc          C:\WINDOWS\System32\WerSvc.dll
02:04:22.0954 0x0a9c  WerSvc - ok
02:04:23.0006 0x0a9c  [ 715ABA3DD164D06457A2A3C92F6EA9D5, E6F8269D2FFC4A548B65724C0A3F53756ED15E47229861FBD40B656EE40FE166 ] WFPLWFS         C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
02:04:23.0049 0x0a9c  WFPLWFS - ok
02:04:23.0108 0x0a9c  [ 8C840E1FD7584E74BD0CC1EA581EC187, 148E534A94B4882E7396B13FABE17407802292E7890713540080D03D5629C81D ] WiaRpc          C:\WINDOWS\System32\wiarpc.dll
02:04:23.0171 0x0a9c  WiaRpc - ok
02:04:23.0203 0x0a9c  [ 5F66B7BB330AA80067FC66149A692620, 92C5D7115A168A23108B65EEEB5FBA8FA43D781855355792596D2419160263C2 ] WIMMount        C:\WINDOWS\system32\drivers\wimmount.sys
02:04:23.0245 0x0a9c  WIMMount - ok
02:04:23.0253 0x0a9c  WinDefend - ok
02:04:23.0374 0x0a9c  [ 10DAD6A7FC617A221313BD584E3C3A00, F139B878668ECF38FE59831E8595A207D5CEEE76C6FFDA8C9F735435E601A763 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
02:04:23.0471 0x0a9c  WinHttpAutoProxySvc - ok
02:04:23.0593 0x0a9c  [ FC8BD690321216C32BB58B035B6D5674, D61698DB19D9DB2593B60B6BA13F7B7735667206F41D751D507135469D6D3CDD ] Winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
02:04:23.0699 0x0a9c  Winmgmt - ok
02:04:24.0002 0x0a9c  [ 75436315AA383CF527695C6D49D0CA59, E3D55F2ACBD45D4D031FA6CA799394459C89BE50FF6ADE4FE36F2CAB2D2E63D0 ] WinRM           C:\WINDOWS\system32\WsmSvc.dll
02:04:24.0278 0x0a9c  WinRM - ok
02:04:24.0365 0x0a9c  [ AC263C2F66405589528995AA41040599, 81B46E551D6130A2C3D113EC3B563CEDB5A06BB340986C0E03136CE5BE729481 ] WinUsb          C:\WINDOWS\System32\drivers\WinUsb.sys
02:04:24.0443 0x0a9c  WinUsb - ok
02:04:24.0793 0x0a9c  [ DC079BA8390089E4EBCA63D27EEA3ECB, 4D549217A68292E2B16C09FD9F84317011EE54A2DAF4E2AB85554267DF0D3249 ] WlanSvc         C:\WINDOWS\System32\wlansvc.dll
02:04:24.0978 0x0a9c  WlanSvc - ok
02:04:25.0166 0x0a9c  [ 06BF5897949A8F24893F792E876B71F5, 9D3719492A86BF52A56E2EA798FD6FDB5862A03F6D360FCC4B0CEA9BE9792AE4 ] wlidsvc         C:\WINDOWS\system32\wlidsvc.dll
02:04:25.0320 0x0a9c  wlidsvc - ok
02:04:25.0377 0x0a9c  [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi         C:\WINDOWS\System32\drivers\wmiacpi.sys
02:04:25.0452 0x0a9c  WmiAcpi - ok
02:04:25.0549 0x0a9c  [ B96F7A1236C3F21212DE2C40A3DDB005, 5A29EBB6DA036E303611EB1304192655021405BB05452FD37886DDE604FF0D9D ] wmiApSrv        C:\WINDOWS\system32\wbem\WmiApSrv.exe
02:04:25.0618 0x0a9c  wmiApSrv - ok
02:04:25.0654 0x0a9c  WMPNetworkSvc - ok
02:04:25.0716 0x0a9c  [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof             C:\WINDOWS\system32\drivers\Wof.sys
02:04:25.0757 0x0a9c  Wof - ok
02:04:25.0987 0x0a9c  [ 588040D595BBF0856CA1ADD941A8ED17, CBC92BB5453FE1BEA6F33239B7CE884F312559591383408EA5F95A006156C5D3 ] workfolderssvc  C:\WINDOWS\system32\workfolderssvc.dll
02:04:26.0203 0x0a9c  workfolderssvc - ok
02:04:26.0250 0x0a9c  [ A2468CC3509394A33C4C32F99563D845, 62690C7D41F382DF74B8F4B942647842858E37DE35FF2DE028192E4D09ABB2C5 ] wpcfltr         C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
02:04:26.0294 0x0a9c  wpcfltr - ok
02:04:26.0335 0x0a9c  [ 19F4DF69876DA7E9C4965351560FE6B7, 127247A7964F55EE3AF842D25120F5ACD387632BEE2BF3D28FAC05840CEA19BA ] WPCSvc          C:\WINDOWS\System32\wpcsvc.dll
02:04:26.0415 0x0a9c  WPCSvc - ok
02:04:26.0453 0x0a9c  [ 2ADE11F3D84709C5F6781E4C59F11683, F003C43396CF8FCF44EAB87583650DB4D2A233322D28D6A78D1694945D9073BB ] WPDBusEnum      C:\WINDOWS\system32\wpdbusenum.dll
02:04:26.0553 0x0a9c  WPDBusEnum - ok
02:04:26.0615 0x0a9c  [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr       C:\WINDOWS\system32\drivers\WpdUpFltr.sys
02:04:26.0649 0x0a9c  WpdUpFltr - ok
02:04:26.0692 0x0a9c  [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl         C:\WINDOWS\system32\drivers\ws2ifsl.sys
02:04:26.0751 0x0a9c  ws2ifsl - ok
02:04:26.0799 0x0a9c  [ 5596C0960ED6ED7494BF2A55DE428684, C95CF09A657F37F421CC80E16F2F95B8EC59A8D5D48F104551155EAC8E53DCB2 ] wscsvc          C:\WINDOWS\System32\wscsvc.dll
02:04:26.0890 0x0a9c  wscsvc - ok
02:04:26.0901 0x0a9c  WSearch - ok
02:04:27.0462 0x0a9c  [ 6B2D71124C1EA86B74412F414C42431D, 078CC6C9667EF6BDA3E6900BC26A5A5B030CAA66928A6BBB7B7DC43C5C199EDC ] WSService       C:\WINDOWS\System32\WSService.dll
02:04:27.0831 0x0a9c  WSService - ok
02:04:27.0900 0x0a9c  [ 72B4E9DF6456C43C42A1419B09486045, 536BA7377B5BEA7EA46864453933111DB88DB8FB689C68915ACD7261A996E61D ] wsvd            C:\WINDOWS\system32\DRIVERS\wsvd.sys
02:04:27.0930 0x0a9c  wsvd - ok
02:04:28.0593 0x0a9c  [ FA2F8EA0DFACE3B3E935B106EDEF4150, 7BFFFAE521BF579CD33463DEB7E19CE83C69A5AB40BB71AF96C3FE141C7B16FD ] wuauserv        C:\WINDOWS\system32\wuaueng.dll
02:04:28.0976 0x0a9c  wuauserv - ok
02:04:29.0036 0x0a9c  [ 481286719402E4BAEFEA0604AB1B5113, F3CF65DF2AB39F79AE4C1335831408418E40726706E0242677E8B96B0FAD988F ] WudfPf          C:\WINDOWS\system32\drivers\WudfPf.sys
02:04:29.0121 0x0a9c  WudfPf - ok
02:04:29.0203 0x0a9c  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFRd          C:\WINDOWS\System32\drivers\WUDFRd.sys
02:04:29.0268 0x0a9c  WUDFRd - ok
02:04:29.0294 0x0a9c  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFSensorLP    C:\WINDOWS\System32\drivers\WUDFRd.sys
02:04:29.0348 0x0a9c  WUDFSensorLP - ok
02:04:29.0410 0x0a9c  [ 51D28F7F1F888DDCF2C67DCF3B79A5D3, 74FF2936AFCEB9A36175D5B00EB91A5AD614B52BE3FB3FA9B994A025A484D2B7 ] wudfsvc         C:\WINDOWS\System32\WUDFSvc.dll
02:04:29.0481 0x0a9c  wudfsvc - ok
02:04:29.0548 0x0a9c  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdFs       C:\WINDOWS\System32\drivers\WUDFRd.sys
02:04:29.0590 0x0a9c  WUDFWpdFs - ok
02:04:29.0620 0x0a9c  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdMtp      C:\WINDOWS\System32\drivers\WUDFRd.sys
02:04:29.0663 0x0a9c  WUDFWpdMtp - ok
02:04:29.0770 0x0a9c  [ A0900F8F628B5AF6841414EB3CF11E50, 8A531F2472FF4B4D895D469D28C215C834ECADBEF539894B8F3F606079A86184 ] WwanSvc         C:\WINDOWS\System32\wwansvc.dll
02:04:29.0874 0x0a9c  WwanSvc - ok
02:04:29.0924 0x0a9c  ================ Scan global ===============================
02:04:29.0975 0x0a9c  [ 05B08C20B8428ECE088CB5635696A48D, 471642A2D0E5C3BB235962FC8D86A49AC30D7DDE80B97E348425BBFCDE4DCDC3 ] C:\WINDOWS\system32\basesrv.dll
02:04:30.0025 0x0a9c  [ EAB311B0A7A8EA0346F14F08D4BC8F46, 11168E4074679F8A69DA714C0ABD0C68BA49D171B379343F14783C9C563202CA ] C:\WINDOWS\system32\winsrv.dll
02:04:30.0090 0x0a9c  [ 3600ED7EA8AED849E20700551C0BD63B, 4A8C346C1646E80B58EF93F87F915A41E05CA2E993BB1C96955AE62A0669AF66 ] C:\WINDOWS\system32\sxssrv.dll
02:04:30.0155 0x0a9c  [ E0C7813A97CA7947FF5C18A8F3B61A45, 083BB4F3B20419C87DB656F1465E5F782ACDE76838CDE6207F26AAD035C69DE0 ] C:\WINDOWS\system32\services.exe
02:04:30.0190 0x0a9c  [ Global ] - ok
02:04:30.0191 0x0a9c  ================ Scan MBR ==================================
02:04:30.0212 0x0a9c  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
02:04:30.0451 0x0a9c  \Device\Harddisk0\DR0 - ok
02:04:30.0452 0x0a9c  ================ Scan VBR ==================================
02:04:30.0510 0x0a9c  [ 9F90FE19A379A604E82F2698BD36CBF3 ] \Device\Harddisk0\DR0\Partition1
02:04:30.0545 0x0a9c  \Device\Harddisk0\DR0\Partition1 - ok
02:04:30.0570 0x0a9c  [ 849601DCDBECCB66D67458B5E0D08284 ] \Device\Harddisk0\DR0\Partition2
02:04:30.0597 0x0a9c  \Device\Harddisk0\DR0\Partition2 - ok
02:04:30.0618 0x0a9c  [ 9252910AD9B6BC8C455A6BEAE8631DD5 ] \Device\Harddisk0\DR0\Partition3
02:04:30.0621 0x0a9c  \Device\Harddisk0\DR0\Partition3 - ok
02:04:30.0636 0x0a9c  [ 4618E6A167D6C4D83D2202CFEA88C509 ] \Device\Harddisk0\DR0\Partition4
02:04:30.0637 0x0a9c  \Device\Harddisk0\DR0\Partition4 - ok
02:04:30.0671 0x0a9c  [ 094444FB72804184DD6BB65D2B221016 ] \Device\Harddisk0\DR0\Partition5
02:04:30.0711 0x0a9c  \Device\Harddisk0\DR0\Partition5 - ok
02:04:30.0749 0x0a9c  [ F833A2A0F7C98696D68DB3273D45695B ] \Device\Harddisk0\DR0\Partition6
02:04:30.0807 0x0a9c  \Device\Harddisk0\DR0\Partition6 - ok
02:04:30.0837 0x0a9c  [ C136D13C5ADA1DAAC78059BC885DD936 ] \Device\Harddisk0\DR0\Partition7
02:04:30.0862 0x0a9c  \Device\Harddisk0\DR0\Partition7 - ok
02:04:30.0890 0x0a9c  [ BAC77A71A9A89F0339928A27551B102D ] \Device\Harddisk0\DR0\Partition8
02:04:30.0921 0x0a9c  \Device\Harddisk0\DR0\Partition8 - ok
02:04:30.0923 0x0a9c  ================ Scan generic autorun ======================
02:04:31.0374 0x0a9c  [ 8970A59A838FF1CDC3D62D85823AA61E, 5842DAFD20C1A024CF8984652A08D12DBA1DE15788794D01FF6070D4E24D2479 ] C:\Program Files\CONEXANT\SAII\SACpl.exe
02:04:31.0561 0x0a9c  SmartAudio - detected UnsignedFile.Multi.Generic ( 1 )
02:04:33.0963 0x0a9c  Detect skipped due to KSN trusted
02:04:33.0964 0x0a9c  SmartAudio - ok
02:04:34.0060 0x0a9c  [ DD8C5A331E1F83510C5A788CB9AA8727, BDEDB9B9D3B0C16B217A67B9B02C9E339E133E4FE05E144DCB344D80C6786078 ] C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
02:04:34.0131 0x0a9c  cAudioFilterAgent - ok
02:04:35.0324 0x0a9c  [ 65EE16AACAEBAF3D8EDEA422177B2DA0, D15F841043D04ACE2F3D376F0EA2A3F42B4FAAE78C82913529EB8576608D0B22 ] C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
02:04:36.0558 0x0a9c  Energy Management - ok
02:04:36.0646 0x0a9c  [ 5EAF38FC08B9DE07AE8A3D814A3CF959, F9F1844F20106EE77664B848A056D6E06105647C61FC2F2B64BDFD05F76E7E3D ] C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe
02:04:36.0675 0x0a9c  EnergyUtility - ok
02:04:36.0677 0x0a9c  SynTPEnh - ok
02:04:36.0751 0x0a9c  EPSON Stylus DX4000 Series - ok
02:04:36.0816 0x0a9c  [ 5C80FBEE03ED1CBF108AFC029D73D857, 472508F140286868051D0AF557D11EB8FF2ACC6352C278970BB4D94F02428B6B ] C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
02:04:36.0866 0x0a9c  Dolby Advanced Audio v2 - ok
02:04:36.0940 0x0a9c  [ A1741C3B79F9DF8895E05EF43579E74B, 446094FDBA93518ABE1CDEC50E24AB60BC7CA78022A289AF5C21461778FD8001 ] C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
02:04:36.0964 0x0a9c  YouCam Mirage - ok
02:04:36.0994 0x0a9c  [ 79EDDBCBFFC23585BC1495AFC03CC4D7, 325A6C067A52BAD7070C1C758EA69645FD8083AC6D0ABA8340BDBE1A712E005F ] C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
02:04:37.0022 0x0a9c  YouCam Tray - ok
02:04:37.0114 0x0a9c  [ 16D807D8B07A868298A8044E576BE419, 148399752A497E7FEA07C59C89834E266652AC1C0793B5C9C429FDBB37AB7617 ] C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe
02:04:37.0151 0x0a9c  UpdateP2GShortCut - detected UnsignedFile.Multi.Generic ( 1 )
02:04:39.0553 0x0a9c  Detect skipped due to KSN trusted
02:04:39.0553 0x0a9c  UpdateP2GShortCut - ok
02:04:39.0638 0x0a9c  [ B7995C675014EEBE77A0BEB7AFCCFC08, 41D186C63273301CF0A1C1EE7B6EB0BB75A251DD441532C5CEB7A4095FB103CD ] C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
02:04:39.0659 0x0a9c  RemoteControl10 - ok
02:04:39.0795 0x0a9c  [ 43E946AAD268FEAFB1E286677E70CB5D, 7798926B3CF11D1CF7DFF9B3D67AD3DC67010A62F3132CAEA273EB299A61B176 ] C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
02:04:39.0828 0x0a9c  Intel AppUp(SM) center - ok
02:04:39.0911 0x0a9c  [ 61E4289E91E88C90478D7F4BEB10DCF7, 1D0F4034E0111CF5758F470C15A22A0A28EB8269CB5BF07222C9C0FB07A15C55 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
02:04:39.0937 0x0a9c  APSDaemon - ok
02:04:40.0034 0x0a9c  [ 2199723879C9F75A709680E2935C052F, DDD5B5CC86463284D9137372CB8541D1258AC020EA811F1AD3735809F314B086 ] C:\Program Files (x86)\PDF24\pdf24.exe
02:04:40.0084 0x0a9c  PDFPrint - ok
02:04:40.0899 0x0a9c  [ AEE2CE1C695EAC531F5DA07D48CC7C9C, 88BA80E318E6DCA59C89EB222CCE33E7AD143F1A4A7EB7DB71327B4245901812 ] C:\Users\jarnds\AppData\Roaming\Spotify\Spotify.exe
02:04:41.0308 0x0a9c  Spotify - ok
02:04:41.0446 0x0a9c  [ 6B6B7E9192854FD8812D3B0CAEF6F0FE, D56B071EA7660F8F2F5B80269E641AE33DC409FBC2583E9749551E92E23FE30D ] C:\Users\jarnds\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
02:04:41.0532 0x0a9c  Spotify Web Helper - ok
02:04:41.0538 0x0a9c  Waiting for KSN requests completion. In queue: 12
02:04:42.0539 0x0a9c  Waiting for KSN requests completion. In queue: 12
02:04:43.0540 0x0a9c  Waiting for KSN requests completion. In queue: 12
02:04:44.0933 0x0a9c  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.8.207.0 ), 0x61110 ( enabled : outofdate )
02:04:44.0982 0x0a9c  Win FW state via NFP2: enabled ( trusted )
02:04:47.0360 0x0a9c  ============================================================
02:04:47.0360 0x0a9c  Scan finished
02:04:47.0360 0x0a9c  ============================================================
02:04:47.0384 0x0ed4  Detected object count: 0
02:04:47.0384 0x0ed4  Actual detected object count: 0
         

Alt 11.11.2016, 02:25   #8
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



Adware/Junkware/Toolbars entfernen

Alte Versionen von adwCleaner und falls vorhanden JRT vorher löschen, danach neu runterladen auf den Desktop!
Virenscanner jetzt vor dem Einsatz dieser Tools bitte komplett deaktivieren!


1. Schritt: adwCleaner

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).




2. Schritt: JRT - Junkware Removal Tool

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 11.11.2016, 08:32   #9
Specht
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



Guten Morgen,
AdwCleaner ist beim Löschen in der Registry abgestürzt,
beim Zweiten Mal dann durchgelaufen - vom Ersten lauf gibt es keinen "Cx" log nur "S0"
soll ich den noch nachreichen? Hier der Log vom zweiten Durchlauf:
Code:
ATTFilter
# AdwCleaner v6.030 - Bericht erstellt am 11/11/2016 um 08:20:06
# Aktualisiert am 19/10/2016 von Malwarebytes
# Datenbank : 2016-11-10.1 [Server]
# Betriebssystem : Windows 8.1  (X64)
# Benutzername : jarnds - IDEA-PC
# Gestartet von : C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe
# Modus: Löschen
# Unterstützung : hxxps://www.malwarebytes.com/support



***** [ Dienste ] *****



***** [ Ordner ] *****



***** [ Dateien ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Verknüpfungen ] *****



***** [ Aufgabenplanung ] *****



***** [ Registrierungsdatenbank ] *****

[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{7017502F-0194-46B2-AA5A-F713E6C0E366}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{94952EC4-DB66-3F32-BE4C-F0BB875EA98E}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
[-] Wert gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{58124A0B-DC32-4180-9BFF-E0E21AE34026}]
[-] Wert gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{977AE9CC-AF83-45E8-9E03-E2798216E2D5}]
[-] Wert gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}]
[-] Schlüssel gelöscht: HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\foxydeal
[-] Schlüssel gelöscht: HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\AppDataLow\Software\simplytech
[#] Schlüssel mit Neustart gelöscht: HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\AppDataLow\Software\SIMPLYTECH
[-] Schlüssel gelöscht: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2925157275-2194030336-170780499-1002\Software\AskPartnerNetwork
[#] Schlüssel mit Neustart gelöscht: HKCU\Software\foxydeal
[#] Schlüssel mit Neustart gelöscht: HKCU\Software\AppDataLow\Software\simplytech
[#] Schlüssel mit Neustart gelöscht: HKCU\Software\AppDataLow\Software\SIMPLYTECH
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5CDCDBCD-119A-4AE1-9C55-B816DBBE4245}
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
[#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2925157275-2194030336-170780499-1002\Software\AskPartnerNetwork
[#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\foxydeal
[#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\AppDataLow\Software\simplytech
[#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\AppDataLow\Software\SIMPLYTECH
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Installer\Features\C3F6D7A0BA2FDE84EB329997B1FF786D
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Installer\Products\C3F6D7A0BA2FDE84EB329997B1FF786D
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C3F6D7A0BA2FDE84EB329997B1FF786D
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0702826FCAC36EE52AC0441EEEEE2170
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1198E28F40C3E185E9958608554D4253
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\14C66209FCA938858B9729645C666684
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A073601B9AEC3549BE4A9314794615
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F7C80F9CE5CDF44E9AADDC99402534C
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\206AF45B775E3A445B3B2273827DA85F
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\225C3CBCEB850204D860A6C7CC7724AF
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2310FC151CD4F185798FA0996B3524D7
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28572D2E2DE533256AC6B560EA573C22
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29C79786B109AC443B0DC7BFD61B1896
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ABB56EABB920EB59B04BDDD26A62083
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DABA02DFED47E352A2FA2EBDD6F6187
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\311567B4A9A002050BB9423FD73FB880
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\373FCED70D7F84E5FB5F3F7B76BEE024
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BE992C130B235E53A2937391FDCA35B
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DA5F64B3483DE549947A9164ACBAD21
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3ED93605BB9B6635E9D0D86615AF31F1
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4759B017032BA185F9BA6F7DBC95A2D4
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A78ABCBB54E46E5482A3EE0AD66C39E
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F9E947B6B895EB5A86757FC5D3DB862
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4FEEA83BF72B97E43A2DF0EE4BE4F261
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\509EC7EFB89B7D942997574AB14037A4
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A730A9A3A61BF5BA70CA8A3B7C133B
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51A95A1D4CDE4F958A9451FBB39BF54A
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536133807DE80465BA6CD0A9742B7DE5
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E25036E68895D45B95E72D1C3C58C74
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60ECC80C54085B141A40437A96CA2618
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60FD8CD5BE007315CA3B5C7E41F24017
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\618E7D05458C4F257909ED9C8CDC0D66
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\621C21014D3C152529E2460FA6304EE3
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6241FF6F317CABD4EBBEE0DE9076BD94
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\636B9C23C79154B57AB561F39A139BFD
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65AAF0F0CB7F0B45F900FDF19CEAAF2B
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6879A5E348601C45986308CA84958E94
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A6F3B7A9805E1F5492A1020EEDF2341
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B1F5D204E4EEB342A5AD1D7E60D61BF
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7005A2A4DCF9DD7548137AB17E3A3AF3
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\712EAF07EE73CC65C822CC3BAE3B2483
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75FF6D97AF9FC004A9521D4B83FA6321
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7947B301B2446E752A3FE06EAD7D26B5
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7987CE52D13E16258B0E1E3DB1BB0974
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BEED197C514FDA53901AE8DD8EF0891
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DFDCF03D46C34159BDE29FBDBF1ACF5
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\87EC9ACEAFE8ECD52A529663CD35213F
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\890F436B85B790A55A582B7307DA12CE
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C13DA6755F685B529615C8E92B3CA39
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D07CD9CB3E6BE652872BF06A1CCA782
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90841B1FC98200349925C88999866F17
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94194FDD4DF523E53A888D65722A135D
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95266D07D008D2E4E9B6F8E0DD15432A
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A4223BBC9438CAD49BBE10B4E344B1DD
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71991503412AEB42838B02C5ED9F9CD
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A72F23B1D745C27508518132197BC982
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A89E2B6FB14D8275DA63D075171DA184
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9C43CD4001E9E4518B274AF9A0EFDA9
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AABA081CF7F19915FBB80B3BAF47CE63
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC2A0FFD0A1686D53A4E24D6E96949E4
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE5BDB2750259915D8442D4591A7717B
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1A79C71D5DC1C150B76B6ED11195DFC
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D497DB33974935488761F7C4C3D755
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B752EF3300008394886C402CC27B474F
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8C8BCC1206978D51A8B9EECBF806C53
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAD3576CEA646895B962F94754612791
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB4091512C8F4295E99CE2D061ED2020
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE6BBC9A31531F598794A62120B51C7
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C19162788CA4D235E829F88E2F771567
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C71F07DA356B66B5484A8E7F2ADEB7DC
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C96AD15EE8E887B56BAF2136A9088503
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C9E6B66ECC49D155888399C51D05C49E
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA360F24F0B214744BE40657FDA0B727
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB13D869D7D092348847B7481BB59E27
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE85F265816AE2D4E9B73C3E207E679C
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5389AEEA4A1E20428D045E86BCF643B
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5B62BB7BC607FB539585E2B7B6AFD16
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB027F01D4D53765C8E4FBE7DB77E07E
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC2EB492393411F5ABE8ED13C59FBF20
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDA2534BD056D1F44B6EC96AAA7F1F6E
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDCA763D4C48A105086B4CCCEE78043F
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEF7558C7CD27EF46AF802AFBE402675
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E05B987540A9E2849AAF9E5B06C27DA8
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E09F4A6B9D2A08B599AE9E38BFC93CD6
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E27B6535D0D94A24E91047C7D86F27BC
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E45D171E075A5425CBACF6631A45FA39
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E513C2076D90AD04F888BD762143F191
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F4C985459564F5B8DCFF2B3C7EBD27
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96E33222BAC06B57A1FA9D72951C945
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAA46CE9007F70A5CAFA5F26E5DDEBE5
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE43FF091A8714A599F33EF2533FB59A
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE790015CF30DAA569960905FF1651A0
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEB44C47185BD304D80FDF5A4BBE8F54
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F214EB834D2EC474CA76C1CDE306CF3A
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F25491036D0FA5D5FA6742F5742F151A
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F2E0D3DD9E5E4B74CA43BCE77815E287
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4D1BA8B482D9734E943EE260A7ADEF2
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6704141BAAF6884785EC6843143D6A7
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7507D4D4C310125E9A22BD909A41FB6
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F79C21D785419125595AC59458A6142D
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA15C90F092A60F53A4E0F88CED02968
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA1CF130B3D58B553833ACB6BE8AFAD4
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB0F1A18E4F0DBD509A42F4D4C05C02A
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD17ED194F1C2B457B4F6EF4AE8DEAF3
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8036C72171EF4ba46856BF57969F6A36
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\89BB7852687BDC34B9A81E01C7FF9173
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CBC85D72B148084ABE8C2F072F781F4
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CC5A38A64D6098468BC8395BA0EFF03
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8DF9A1AC557F56c49B56F6B83E293C15
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A97C590397DCC454AA8923563BAB10E4
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C6A54B56C58C82a4688AFB93F42EA17B
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CFA51B44D54927c4E9B7BC1D3FD1E49F
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D14A7F65792054F418578C78367D13F7
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DFE9F0BD163D827438CB6AD6B100EC48
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F739A19A8327dc64C9A8B641A9E89646
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\158D6D9E3FE81fa428925F22ACB3A965
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15E6C514FEFC09f45BAFAAE1D7546ED4
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DB42320A8525634AA089F0BEC86473B
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22468B0D6050b2e46B9C4B67A8F59577
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2251BF05A2F606d43BB064BD63CBD87E
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3255D95681398614190EDF0A4F3F77DB
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CDF313E9B28c944FBC7579CF4949414
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\71E54748EDD3dc1468548785DC856EDA
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\754590DD06DE8d249B526503432F99D4
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\18C9E3869A16248439FE3FF9EB02207A
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D8011310B2622942868A458964FFDC5
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C63F7979DCC2154CB9591969A5CB89D
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DD31E6C1A73B334383DF186676F4D20
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB3204F747B20694B8D49EF92D8DC94B
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C81E33A400B6F814E90C7A3354E2A3A5
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EDBF68C5F16790341B7C6FD7C7F8E4FC
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FFA531D0F3A71504DA7AC6A11CE33739
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3038A20B9089EC34D8F74220191FAB30
[#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C3F6D7A0BA2FDE84EB329997B1FF786D
[#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\Installer\Features\C3F6D7A0BA2FDE84EB329997B1FF786D
[#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\Installer\Products\C3F6D7A0BA2FDE84EB329997B1FF786D
[#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A
[#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
[-] Daten  wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] 
[-] Daten  wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Search Bar] 
[-] Daten  wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] 
[-] Daten  wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Default_Search_URL] 
[-] Daten  wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar] 
[-] Daten  wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page] 
[-] Daten  wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchURI [(Default)] 
[-] Daten  wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchURI [] 
[-] Daten  wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)] 
[-] Daten  wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [] 
[-] Daten  wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] 
[-] Daten  wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Search Bar] 
[-] Daten  wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] 
[-] Daten  wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Default_Search_URL] 
[-] Daten  wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar] 
[-] Daten  wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page] 
[-] Daten  wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchURI [(Default)] 
[-] Daten  wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchURI [] 
[-] Daten  wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)] 
[-] Daten  wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [] 
[-] Wert gelöscht: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DisplayName]
[-] Wert gelöscht: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes 
[-] Wert gelöscht: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [TopResultURLFallback]
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[-] Daten  wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[#] Wert mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DisplayName]
[#] Wert mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes 
[#] Wert mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [TopResultURLFallback]
[#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
[-] Daten  wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[-] Schlüssel gelöscht: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\superfish.com
[-] Schlüssel gelöscht: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com
[#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\superfish.com
[#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\HomeTab.DLL
[-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\wdapimng.exe
[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Browser Updater


***** [ Browser ] *****



*************************

:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
:: Proxy Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [35743 Bytes] - [11/11/2016 08:20:06]
C:\AdwCleaner\AdwCleaner[S0].txt - [40048 Bytes] - [11/11/2016 08:11:12]
C:\AdwCleaner\AdwCleaner[S1].txt - [37312 Bytes] - [11/11/2016 08:17:06]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [35965 Bytes] ##########
         
JRT Log:
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.9 (09.30.2016)
Operating System: Windows 8.1 x64 
Ran by jarnds (Administrator) on 11.11.2016 at  8:23:50,97
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 1 

Successfully deleted: C:\WINDOWS\prefetch\SPEEDUP.EXE-CD38A4B5.pf (File) 



Registry: 0 





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 11.11.2016 at  8:28:37,68
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         

Alt 11.11.2016, 10:26   #10
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



Ok, bitte mal den adwCleaner wiederholen, oder findest es nix mehr, hast das schon geprüft?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 11.11.2016, 19:41   #11
Specht
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



Hallo Cosinus,
nur damit wir uns richtig verstehen:
a. mit AdwCleaner ersten Scan durchgeführt und es gab Funde in Ordnern, Dateien, Registry etc.
b. weiter mit Löschen - Ordner und Dateien wurde abgearbeitet, beim Löschen in der Registry kam Windows Fenster" AdwCleaner funktioniert nicht mehr mit Schliessen Button.
Von der bis dahin gelaufenen Entfernung gibt es keinen logfile, vermutlich wegen dem Absturz.

c. ohne Neustart o.ä. AdwCleaner erneut gestartet, zweiter Scan und es gab keine Funde mehr bei Ordnern oder Dateien, jedoch bei Registry aber etwa 25-50 weniger als zuvor.
d. weiter mit Löschen - lief dann ohne Absturz durch und Neustart.

e. JRT laufen lassen

f. logs gepostet : AdwCleaner der nach dem zweiten Lauf und Neustart:
"AdwCleaner[C0].txt" der gehört zum Suchlauf "AdwCleaner[S1].txt"
Macht es für's Verständnis Sinn die "AdwCleaner[C0].txt" in "AdwCleaner[C1].txt" umzubenenen,
damit die Zurdnung zum Scan gegeben ist?

Wenn ich heute am Nachmittag wieder zu hause bin werde ich den AdwCleaner nochmal laufen lassen...

Vielen Dank schonmal
Volker

Hallo Cosinus,
nochmal gescannt und einen Fund, gelöscht, automatischer neustart
manuell nochmal neustart, nochmal gescannt gleicher Fund erneut aufgetreten
nochmal gelöscht...:
Code:
ATTFilter
# AdwCleaner v6.030 - Bericht erstellt am 11/11/2016 um 19:17:16
# Aktualisiert am 19/10/2016 von Malwarebytes
# Datenbank : 2016-11-10.1 [Server]
# Betriebssystem : Windows 8.1  (X64)
# Benutzername : jarnds - IDEA-PC
# Gestartet von : C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe
# Modus: Löschen
# Unterstützung : hxxps://www.malwarebytes.com/support



***** [ Dienste ] *****



***** [ Ordner ] *****



***** [ Dateien ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Verknüpfungen ] *****



***** [ Aufgabenplanung ] *****



***** [ Registrierungsdatenbank ] *****

[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Browser Updater


***** [ Browser ] *****



*************************

:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
:: Proxy Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [0 Bytes] - [11/11/2016 19:08:29]
C:\AdwCleaner\AdwCleaner[C1].txt - [36704 Bytes] - [11/11/2016 08:20:06]
C:\AdwCleaner\AdwCleaner[C3].txt - [1186 Bytes] - [11/11/2016 19:17:16]
C:\AdwCleaner\AdwCleaner[S0].txt - [40048 Bytes] - [11/11/2016 08:11:12]
C:\AdwCleaner\AdwCleaner[S1].txt - [37312 Bytes] - [11/11/2016 08:17:06]
C:\AdwCleaner\AdwCleaner[S2].txt - [1676 Bytes] - [11/11/2016 19:16:37]

########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [1480 Bytes] ##########
         

Code:
ATTFilter
# AdwCleaner v6.030 - Bericht erstellt am 11/11/2016 um 19:33:22
# Aktualisiert am 19/10/2016 von Malwarebytes
# Datenbank : 2016-11-10.1 [Server]
# Betriebssystem : Windows 8.1  (X64)
# Benutzername : jarnds - IDEA-PC
# Gestartet von : C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe
# Modus: Löschen
# Unterstützung : hxxps://www.malwarebytes.com/support



***** [ Dienste ] *****



***** [ Ordner ] *****



***** [ Dateien ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Verknüpfungen ] *****



***** [ Aufgabenplanung ] *****



***** [ Registrierungsdatenbank ] *****

[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Browser Updater


***** [ Browser ] *****



*************************

:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
:: Proxy Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [0 Bytes] - [11/11/2016 19:08:29]
C:\AdwCleaner\AdwCleaner[C1].txt - [36704 Bytes] - [11/11/2016 08:20:06]
C:\AdwCleaner\AdwCleaner[C3].txt - [1563 Bytes] - [11/11/2016 19:17:16]
C:\AdwCleaner\AdwCleaner[C4].txt - [1259 Bytes] - [11/11/2016 19:33:22]
C:\AdwCleaner\AdwCleaner[S0].txt - [40048 Bytes] - [11/11/2016 08:11:12]
C:\AdwCleaner\AdwCleaner[S1].txt - [37312 Bytes] - [11/11/2016 08:17:06]
C:\AdwCleaner\AdwCleaner[S2].txt - [1676 Bytes] - [11/11/2016 19:16:37]
C:\AdwCleaner\AdwCleaner[S3].txt - [1822 Bytes] - [11/11/2016 19:31:22]

########## EOF - C:\AdwCleaner\AdwCleaner[C4].txt - [1626 Bytes] ##########
         
werde jetzt nochmal Neustarten und nochmal prüfen
edit:
war immernoch da und ich gehe davon aus das auch diese Löschung nicht von Dauer war:
Code:
ATTFilter
# AdwCleaner v6.030 - Bericht erstellt am 11/11/2016 um 19:52:37
# Aktualisiert am 19/10/2016 von Malwarebytes
# Datenbank : 2016-11-10.1 [Server]
# Betriebssystem : Windows 8.1  (X64)
# Benutzername : jarnds - IDEA-PC
# Gestartet von : C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe
# Modus: Löschen
# Unterstützung : hxxps://www.malwarebytes.com/support



***** [ Dienste ] *****



***** [ Ordner ] *****



***** [ Dateien ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Verknüpfungen ] *****



***** [ Aufgabenplanung ] *****



***** [ Registrierungsdatenbank ] *****

[-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Browser Updater


***** [ Browser ] *****



*************************

:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
:: Proxy Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [0 Bytes] - [11/11/2016 19:08:29]
C:\AdwCleaner\AdwCleaner[C1].txt - [36704 Bytes] - [11/11/2016 08:20:06]
C:\AdwCleaner\AdwCleaner[C3].txt - [1563 Bytes] - [11/11/2016 19:17:16]
C:\AdwCleaner\AdwCleaner[C4].txt - [1709 Bytes] - [11/11/2016 19:33:22]
C:\AdwCleaner\AdwCleaner[C5].txt - [1332 Bytes] - [11/11/2016 19:52:37]
C:\AdwCleaner\AdwCleaner[S0].txt - [40048 Bytes] - [11/11/2016 08:11:12]
C:\AdwCleaner\AdwCleaner[S1].txt - [37312 Bytes] - [11/11/2016 08:17:06]
C:\AdwCleaner\AdwCleaner[S2].txt - [1676 Bytes] - [11/11/2016 19:16:37]
C:\AdwCleaner\AdwCleaner[S3].txt - [1822 Bytes] - [11/11/2016 19:31:22]
C:\AdwCleaner\AdwCleaner[S4].txt - [1968 Bytes] - [11/11/2016 19:51:58]

########## EOF - C:\AdwCleaner\AdwCleaner[C5].txt - [1772 Bytes] ##########
         

Geändert von Specht (11.11.2016 um 19:56 Uhr) Grund: logfile C5 hinzu

Alt 11.11.2016, 22:27   #12
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



Dann zeig mal frische FRST Logs. Haken setzen bei addition.txt dann auf Untersuchen klicken

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 11.11.2016, 23:49   #13
Specht
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



Bitte sehr:
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 04-11-2016
durchgeführt von jarnds (Administrator) auf IDEA-PC (11-11-2016 23:45:13)
Gestartet von C:\Users\jarnds\Desktop
Geladene Profile: jarnds (Verfügbare Profile: jarnds)
Platform: Windows 8.1 (Update) (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Spotify Ltd) C:\Users\jarnds\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe


==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [887968 2012-06-14] (Conexant Systems, Inc.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17079376 2012-11-24] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191568 2012-11-24] (Lenovo(beijing) Limited)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-14] (Synaptics Incorporated)
HKLM\...\Run: [EPSON Stylus DX4000 Series] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_FATIBEE.EXE /FU "C:\WINDOWS\TEMP\E_S8DD9.tmp" /EF "HKLM"
HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [YouCam Mirage] => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [136488 2012-07-27] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [167024 2012-07-27] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-18] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH)
HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Run: [Spotify] => C:\Users\jarnds\AppData\Roaming\Spotify\Spotify.exe [4736000 2014-04-12] (Spotify Ltd)
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Run: [Spotify Web Helper] => C:\Users\jarnds\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1140736 2014-04-12] (Spotify Ltd)
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> 
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> 
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.179.1
Tcpip\..\Interfaces\{3D9DD881-644D-44E1-9FC4-EBE582EB2E77}: [DhcpNameServer] 192.168.179.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
SearchScopes: HKLM-x32 -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = 
SearchScopes: HKU\S-1-5-21-2925157275-2194030336-170780499-1002 -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = 

FireFox:
========
FF DefaultProfile: 34iib2ul.Standard-Benutzer
FF ProfilePath: C:\Users\jarnds\AppData\Roaming\Mozilla\Firefox\Profiles\6yqza5ii.default [nicht gefunden]
FF ProfilePath: C:\Users\jarnds\AppData\Roaming\Mozilla\Firefox\Profiles\245ui9kl.default-1478367702295 [2016-11-05]
FF ProfilePath: C:\Users\jarnds\AppData\Roaming\Mozilla\Firefox\Profiles\34iib2ul.Standard-Benutzer [2016-11-11]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-10] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-10] ()

Chrome: 
=======
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-08-06] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [1674720 2013-09-25] ()
S4 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-10-31] (Microsoft Corporation)
S3 SXDS10; C:\Program Files (x86)\Common Files\soft Xpansion\sxds10.exe [234096 2013-07-24] (soft Xpansion)
S3 vmicguestinterface; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 vmicheartbeat; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 vmickvpexchange; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 vmicshutdown; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 vmictimesync; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 BCM43XX; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation)
S0 ebdrv; C:\WINDOWS\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)
R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [8222736 2012-06-15] (Realtek Semiconductor Corp.)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-11-11 23:45 - 2016-11-11 23:46 - 00011533 _____ C:\Users\jarnds\Desktop\FRST.txt
2016-11-11 23:45 - 2016-11-11 23:45 - 00000000 ____D C:\Users\jarnds\Desktop\FRST-OlderVersion
2016-11-11 08:06 - 2016-11-11 19:52 - 00000000 ____D C:\AdwCleaner
2016-11-11 02:00 - 2016-11-11 02:10 - 00212572 _____ C:\TDSSKiller.3.1.0.12_11.11.2016_02.00.51_log.txt
2016-11-11 01:57 - 2016-11-11 01:57 - 04747704 _____ (AO Kaspersky Lab) C:\Users\jarnds\Desktop\tdsskiller.exe
2016-11-11 00:18 - 2016-11-11 00:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-11-10 23:38 - 2016-11-11 01:56 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-11-10 23:36 - 2016-11-11 01:56 - 00000000 ____D C:\Users\jarnds\Desktop\mbar
2016-11-10 23:30 - 2016-11-10 23:31 - 16563352 _____ (Malwarebytes Corp.) C:\Users\jarnds\Desktop\mbar-1.09.3.1001.exe
2016-11-05 22:17 - 2016-11-05 22:17 - 01631928 _____ (Malwarebytes) C:\Users\jarnds\Desktop\JRT.exe
2016-11-05 22:13 - 2016-11-05 22:13 - 03910208 _____ C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe
2016-11-05 20:07 - 2016-11-11 23:45 - 00000000 ____D C:\FRST
2016-11-05 19:02 - 2016-11-10 23:38 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-11-05 19:01 - 2016-11-10 23:38 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-11-05 19:01 - 2016-11-10 23:36 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-11-05 19:01 - 2016-11-05 20:17 - 00001119 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-11-05 19:01 - 2016-11-05 19:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-11-05 19:01 - 2016-11-05 19:01 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2016-11-05 19:01 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-11-05 19:01 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-11-05 18:59 - 2016-11-05 18:59 - 00000000 ____D C:\ProgramData\McAfee
2016-11-05 18:41 - 2016-11-05 18:41 - 00000000 ____D C:\Users\jarnds\Desktop\Alte Firefox-Daten
2016-11-05 18:16 - 2016-11-11 23:45 - 02410496 _____ (Farbar) C:\Users\jarnds\Desktop\FRST64.exe
2016-11-05 18:11 - 2016-11-05 18:13 - 22851472 _____ (Malwarebytes ) C:\Users\jarnds\Downloads\mbam-setup-2.2.1.1043.exe
2016-11-05 15:43 - 2016-11-05 15:47 - 00000826 _____ C:\WINDOWS\system32\Drivers\etc\hosts.txt

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-11-11 23:47 - 2012-12-24 18:55 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2925157275-2194030336-170780499-1002
2016-11-11 23:43 - 2014-02-09 12:02 - 00000000 __RDO C:\Users\jarnds\SkyDrive
2016-11-11 23:43 - 2013-11-14 08:27 - 01776918 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-11-11 23:43 - 2013-11-14 08:11 - 00765582 _____ C:\WINDOWS\system32\perfh007.dat
2016-11-11 23:43 - 2013-11-14 08:11 - 00159366 _____ C:\WINDOWS\system32\perfc007.dat
2016-11-11 23:43 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\Inf
2016-11-11 19:54 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-11-11 19:27 - 2014-03-11 23:44 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-11-11 19:06 - 2014-02-09 12:29 - 00003930 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{FEE97374-AEDC-4953-8182-67E829191DD3}
2016-11-11 19:02 - 2014-05-20 00:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-11-11 19:02 - 2013-08-22 14:25 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-11-11 08:12 - 2012-11-24 11:11 - 00000000 ____D C:\Program Files (x86)\Amazon
2016-11-10 20:34 - 2013-08-22 16:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-11-10 20:34 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-11-10 20:27 - 2014-03-11 23:44 - 00003772 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-11-10 20:27 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-11-10 20:27 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-11-10 20:25 - 2013-11-09 10:24 - 00000000 ____D C:\ProgramData\Avira
2016-11-10 20:16 - 2013-11-09 10:34 - 00000000 ____D C:\Users\jarnds\AppData\Roaming\Avira
2016-11-05 20:18 - 2014-05-20 00:48 - 00001182 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-11-05 20:18 - 2014-02-08 20:51 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-11-05 20:18 - 2013-07-07 20:50 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-11-05 20:18 - 2012-11-24 11:11 - 00002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon.lnk
2016-11-05 20:18 - 2012-11-24 11:05 - 00001973 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Cloud Storage by SugarSync.lnk
2016-11-05 20:18 - 2012-11-24 10:54 - 00002435 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk
2016-11-05 20:18 - 2012-11-24 10:34 - 00002189 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerXpress.lnk
2016-11-05 20:17 - 2015-03-08 15:12 - 00001096 _____ C:\Users\Public\Desktop\PDF24 Creator.lnk
2016-11-05 20:17 - 2015-03-08 15:12 - 00001076 _____ C:\Users\Public\Desktop\PDF24 Fax.lnk
2016-11-05 20:17 - 2014-05-20 00:48 - 00001164 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-11-05 20:17 - 2013-11-09 09:49 - 00001996 _____ C:\Users\Public\Desktop\Lenovo Solution Center.lnk
2016-11-05 20:17 - 2012-11-24 11:20 - 00002135 _____ C:\Users\Public\Desktop\OneKey Recovery.lnk
2016-11-05 20:17 - 2012-11-24 11:18 - 00002244 _____ C:\Users\Public\Desktop\Intel AppUp(SM) center.lnk
2016-11-05 20:17 - 2012-11-24 11:10 - 00002182 _____ C:\Users\Public\Desktop\Lenovo PowerDVD 10.lnk
2016-11-05 20:17 - 2012-11-24 11:03 - 00001235 _____ C:\Users\Public\Desktop\Lenovo YouCam.lnk
2016-11-05 20:17 - 2012-11-24 10:57 - 00002077 _____ C:\Users\Public\Desktop\Benutzerhandbuch.lnk
2016-11-05 20:17 - 2012-11-24 10:56 - 00001182 _____ C:\Users\Public\Desktop\Microsoft Office 2010 Activation.lnk
2016-11-05 20:16 - 2014-02-09 11:53 - 00001461 _____ C:\Users\jarnds\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-11-05 20:16 - 2013-08-15 16:46 - 00001821 _____ C:\Users\jarnds\Desktop\Spotify.lnk
2016-11-05 20:16 - 2013-08-15 16:46 - 00001807 _____ C:\Users\jarnds\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2016-11-05 20:16 - 2012-12-24 18:45 - 00001133 _____ C:\Users\jarnds\Desktop\Cyberlink Power2Go.lnk
2016-11-05 20:10 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Camera
2016-11-05 16:56 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-11-05 15:44 - 2012-07-26 08:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-11-05 15:03 - 2013-08-22 15:44 - 00338016 _____ C:\WINDOWS\system32\FNTCACHE.DAT

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2012-11-24 10:47 - 2012-11-24 10:47 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Einige Dateien in TEMP:
====================
C:\Users\jarnds\AppData\Local\Temp\avgnt.exe
C:\Users\jarnds\AppData\Local\Temp\libeay32.dll
C:\Users\jarnds\AppData\Local\Temp\msvcr120.dll
C:\Users\jarnds\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-11-05 16:35

==================== Ende von FRST.txt ============================
         
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-11-2016
durchgeführt von jarnds (11-11-2016 23:47:44)
Gestartet von C:\Users\jarnds\Desktop
Windows 8.1 (Update) (X64) (2014-02-09 10:52:35)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-2925157275-2194030336-170780499-500 - Administrator - Disabled)
Gast (S-1-5-21-2925157275-2194030336-170780499-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2925157275-2194030336-170780499-1004 - Limited - Enabled)
jarnds (S-1-5-21-2925157275-2194030336-170780499-1002 - Administrator - Enabled) => C:\Users\jarnds

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 19.0.0.190 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{DA51A69D-5D86-8A3D-1A4E-CB7CA80BA803}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.)
Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2F72F540-1F60-4266-9506-952B21D6640D}) (Version: 6.1.0.13 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Benutzerhandbuch (x32 Version: 1.0.0.9 - Lenovo) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.44.50 - Conexant)
Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.8000.16 - Dolby Laboratories Inc)
Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.3 - Lenovo)
Energy Management (x32 Version: 8.0.2.3 - Lenovo) Hidden
Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel)
Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.1.7600.167 - Realtek Semiconductor Corp.)
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.0828 - CyberLink Corp.)
Lenovo OneKey Recovery (Version: 8.0.0.0828 - CyberLink Corp.) Hidden
Lenovo PowerDVD10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4310.52 - CyberLink Corp.)
Lenovo PowerDVD10 (x32 Version: 10.0.4310.52 - CyberLink Corp.) Hidden
Lenovo Solution Center (HKLM\...\{D60E3A84-5DDC-49ED-B9A5-E3466996EB36}) (Version: 2.3.002.00 - Lenovo Group Limited)
Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3127 - CyberLink Corp.)
Lenovo YouCam (x32 Version: 4.1.3127 - CyberLink Corp.) Hidden
Lenovo_Wireless_Driver (HKLM-x32\...\{5D642A72-8194-4A22-80DA-11FE610CCA8E}) (Version: 6.30.5926 - Lenovo)
Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 43.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 43.0.1 (x86 de)) (Version: 43.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.1.5828 - Mozilla)
PIF DESIGNER (HKLM-x32\...\{B90450DF-E781-46FD-B1F1-0C86DA40E443}) (Version:  - )
Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.9109 - CyberLink Corp.)
PowerXpressHybrid (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.39030 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Spotify (HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Spotify) (Version: 0.9.4.178.g259772ba - Spotify AB)
SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.3 - Synaptics Incorporated)
UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.9 - Lenovo)
Windows Utils (HKLM-x32\...\Windows Utils) (Version:  - )
Windows-Treiberpaket - Lenovo (ACPIVPC) System  (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo)
Windows-Treiberpaket - Lenovo (WUDFRd) LenovoVhid  (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {30FCF0F2-59EC-4698-8D0F-88D4FBC8EEEC} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2013-09-25] (Lenovo)
Task: {374BEFC5-C6E8-44C1-8E0D-3DB14FCCC3A9} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2013-09-25] (Lenovo)
Task: {40C8B641-12C6-41B5-9E21-FDCC90468F3F} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-10] (Adobe Systems Incorporated)
Task: {4636EB35-E9A7-4698-BBB9-7680B44F840D} - \FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl -> Keine Datei <==== ACHTUNG
Task: {48F65704-D1F1-4934-823F-40745AC69F81} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2012-07-27] (CyberLink)
Task: {5AF8D227-D5EB-43AA-AC8F-FED97A4D618A} - System32\Tasks\OFFICE2010ACT => C:\ProgramData\Microsoft\Windows\OFFICEICON.vbs [2012-03-08] ()
Task: {89792738-EA22-4631-8F08-9B31E23D9F20} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\WINDOWS\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
Task: {8FF1B24C-0761-4E0C-A6BF-6EEFA889A378} - \SystemSockets\SystemSockets -> Keine Datei <==== ACHTUNG
Task: {B0794DF4-8EBE-438D-8489-76814BCC683C} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-09-25] ()
Task: {C17D7A75-CE89-4E94-99D1-D3EEE22B6B24} - System32\Tasks\Microsoft\Office\Office First Run Task => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31] (Microsoft Corporation)
Task: {C216D323-DEA5-45F1-B4AC-9E71C2C9C328} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-09-25] ()
Task: {E5AEEE15-714D-4984-B535-88BFE03B9620} - \ProtectedSearch\Protected Search -> Keine Datei <==== ACHTUNG

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2012-08-06 12:09 - 2012-08-06 12:09 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2014-01-21 15:00 - 2013-08-23 14:45 - 00386216 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2rui.dll
2014-01-21 15:00 - 2013-10-31 09:08 - 00520872 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2r64.dll
2014-01-21 15:00 - 2013-10-31 09:07 - 00618152 _____ () C:\Program Files\Microsoft Office 15\ClientX64\StreamServer.dll
2013-04-21 20:44 - 2013-04-21 20:44 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2013-04-21 20:44 - 2013-04-21 20:44 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 14:25 - 2016-11-05 15:46 - 00000826 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.179.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

HKLM\...\StartupApproved\Run: => "SmartAudio"
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\StartupFolder: => "OpenOffice.org 3.4.1.lnk"
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\StartupFolder: => "net.lnk"
HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\Run: => "Spotify"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{31590E0A-FAAE-447E-9B7A-FA87632EC5AE}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{9AF1C3AA-33BF-4701-A0B3-D8F60FBC89E4}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{4D266399-AE88-4B4B-ACD5-4ABC89A6CA15}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{52DA6642-1AFE-4251-873A-309CA185C268}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{38652F35-A200-4CF9-ACEE-330FC4F72EDE}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{83A415A1-FF13-4DEB-A172-1240E42B5EFC}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{E003B8C9-5E4F-402E-995B-F28E0C5A5203}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{2B9BA723-70F6-4F8B-A274-C0AF47FF86AF}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{951152AC-5938-463E-A4BD-1CC7A25EE652}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{911B08D9-9153-4F3F-B01F-E0B0BAFDF623}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{B539FE22-3BF6-49C5-92F4-7CCDB1FF0605}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{02D6218F-0D26-42E9-A6E5-EA98D68D91D5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{F5268360-5A40-4CBF-B932-538D0DD8C510}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{9CD77AAA-BE42-4B8D-BEE2-555940B52F94}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{9328B87C-00CC-4143-A01E-6FF904A9F231}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{3C2A740C-0B17-4328-88F7-28B3C1DB7CC8}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{D5DB7653-A0FA-4F31-A589-2817D54E5859}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{F7E4409A-FDDD-4CFD-9516-0968544317D3}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{BC162ED2-CA18-4227-84E2-58B65194C295}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{61C489B2-D70A-493D-872A-BE2838728531}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{20BA8097-93B8-40BD-A6F7-170E92874CEA}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{97057C07-7E9C-4CFC-A522-70F19AD1032C}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{48C87C68-9932-4AC1-9AFD-EF00B5A1EC36}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{8E595196-C629-4532-BAA4-856B1BCDF5DE}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{53F879C1-7615-4CC3-BDB2-5EDB27AEC893}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{014ACAD2-93CF-4CAB-A997-4362A4A0654C}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{8035EDEA-1935-416E-8BC7-CBCAF28922F3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{20595299-7EF0-49B4-BEBF-CF6C98162B15}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{F2B8D30D-D9A1-4453-9346-33F7C865E490}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{7C53AF69-78FD-4C1F-A8A7-F77F8E698709}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{4A0761E7-CDFD-4016-89D4-5A5124026644}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{C9A39840-A786-4F7F-88D8-CBC526DB72A8}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{499DE789-DD1E-4209-830C-95CF609F2F75}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{37BD4560-B275-43B2-A88B-EEA988F6A573}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{53DD9A22-7C68-47E9-B61B-990245D74E29}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{6E89E8D7-A98A-4EE4-935E-E8A7D783A13C}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{1537DDA4-8E1E-4D37-9D85-624DAF2867A6}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{2128FB05-D1A1-49DF-A15A-DC52FB56890F}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{FF6A9488-B212-4FF2-BA0E-A227ADA93438}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{2C473823-E1BB-4397-A7F2-67EEF4722759}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{0B241084-D2A6-4CE8-947F-5E7FE88324D4}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{2C534EE3-C0C0-42B5-9C72-576C4D3AE6E4}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{93BA86E4-D995-43D3-B8D2-324C8D221487}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{34C4EB29-30FC-487F-A042-6C31DDA02450}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{D2E92FA3-8BF9-430F-9F13-F046B87F3DB2}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{4AE533F3-BB8F-4520-870A-524E1335605E}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{8BD71011-69CA-4D20-A53F-BD1443F9FDCF}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{1ACEE7CF-44BB-463C-B477-22617906C956}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{948F7E6D-F190-4972-8D16-DF4B22B7B666}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{F288092D-3BAE-4AEC-B95D-C6B8F4F952CB}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{EB687779-4CEE-473C-989A-81EEC8B3C92D}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{CDD6AC48-A17D-4906-B78E-EC171D56E4E3}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{3C917DF0-2088-4B2E-BD10-2CC7680C3DEC}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{9D7B740B-B52F-4945-A8F9-93A8E353C1F0}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{7F3A91F9-334B-412C-AE42-A0A88B832705}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{B701500E-5E1D-452A-A92D-23A3D4D69CC2}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{7BE8A5A0-5F79-476F-8963-B2A7998D4E24}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{E01A2EBB-AE86-442E-B160-406A8C9FBFF9}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{9D6F68AD-4777-4421-BF54-2388C2F1297D}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{476B36F0-9672-45BD-BF9F-EBB3F36B011B}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{63600070-64BA-4C68-9A06-B5D84439B547}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{20098C27-19DA-4E10-9D0E-CB18CA2FFF8B}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{C2DA7802-338A-45EA-8535-9FA3003E7DD6}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{C0F30C29-EF1E-4F18-AC64-3C1830AC416D}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{693A86A9-189A-4236-8615-D45450DC8868}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{A8C50975-AB94-4988-A76F-DB67CBE080FA}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{5E8AE0F7-8651-497B-8574-34A2EACD4776}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{4A16538D-B50F-4542-BDB9-FE3FF9FCC450}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{BF243955-62D0-4D9F-BE34-345260D40EB9}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{A89EF238-D275-436C-98F8-58B8ABF5767B}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{2F656A69-11C2-4919-8753-6DCEBCAC3E09}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{D97B3C91-6C8D-4948-A40F-74A2955E7B43}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{1541082C-FE94-4792-A030-3C435490E22C}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{1046A633-9C0C-43E7-BE0A-E02068DBFDCB}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{52318557-024C-458A-AAAD-C191FED0E8BA}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{CCF808D5-014D-46BB-8C0E-44ECD1C556BD}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{7CCE5FAE-5891-4522-8A36-79E21D08B684}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{E728B728-F9D7-4E82-BDBA-74D6CDA3B168}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{C64B9D04-6013-44BF-8511-0D1BFE85D22A}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{94CB7B4F-13AC-4B74-96BC-CA4D3F23FC78}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{821A5ACD-982B-4AC4-9ACA-8627B413E92D}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{29B35728-AA64-4FF9-84BE-E66B7412F9CC}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{C4CA091C-0EC4-4289-90B9-8FA3AA499F29}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{9ACA624B-79F7-4160-B071-4A25A58C688E}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{CE301A57-222F-42AF-94C0-51B7F0FAECEA}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{2CF705A1-C2AB-4E5D-B7EA-DC622DAFAC7C}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{0233841C-A823-4887-A143-18D0A9D81440}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{3435CB49-FF3E-456B-B41A-FD8A3D5CF78A}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{DB43AAA0-A5BD-4767-B73F-4FCA082E6142}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{7CA83588-686B-4C8A-A9B7-1639510EF125}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{94C9006F-4AFB-45FE-8384-AE641CF1CD3E}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{A44A047C-C09B-4325-B6F4-6144CFB71A0C}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{CADAB205-56A4-4D0C-887F-60FBE60AF2C4}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{E6ABB99B-A441-4AC4-9681-C17F60ECFE27}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe
FirewallRules: [{8BF7239F-4D5C-453A-B8FE-981BC5BF9F9A}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{472B9BA0-E489-4F3C-B74C-C0A5BC7478DF}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{9ADA016F-DCBF-46BD-8779-C811C28A2EC8}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{4F000579-4F4C-40CD-B1AF-0862EACE9B83}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{EF46B84E-6601-4A07-A45B-3CC27CEFEA62}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{ABF3B025-76A8-4798-A93C-8075F6DF0AB6}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{D59AC634-3446-4845-A562-41292DA95DCB}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{2FFCBCD9-AEA7-49A9-8768-7EFA568FF079}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{770AAF42-670F-4B3E-8B12-F3E72DD2B80A}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{86ACE32E-52CE-4AEB-93D7-FEEDF04E689F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{4A54BCB0-E673-4B91-BCB8-A81D682F7565}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{C47693AE-5B43-44AC-AED3-CC8A8EDC542D}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{790C60EB-7796-4FE6-9F8B-1F2E78792961}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{69A3BAE8-8275-40FF-91B3-1BC71B7563CF}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{B8609BF9-EC93-43D8-A0BE-FC224843CCB0}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{9701986D-653C-47F8-8EC9-1412A0B3FB9C}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{610BD408-75E4-4311-B624-E03E171A7C4A}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{B06E2585-505A-403A-B619-677FD0602DD1}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{503D32B1-7F38-4AE8-BC39-6C6484A905E9}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{A3EB64BE-7EFF-41A8-8F62-73C4ECFF1759}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{EBA85F56-B894-4730-A716-043D7C054E6F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{300C32ED-70CA-4E9D-8BB2-967A751C8279}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{4C3D55E7-DE5F-46BA-9114-1493B0229134}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{A5451D3F-0135-407C-AAD7-C7AF50B7CE98}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{329971F4-2B7D-4DBD-A44C-14DA625A328E}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{A980C57B-6D4E-4093-8805-436194C4D372}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{C897E721-800C-4ABC-B263-92299E7D0F7C}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{3A6505B5-F2A7-44A4-A80F-B07E37F241F3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{FE1B8DF8-DB12-4BF3-8B06-3F25D130FF15}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{FC6C2A03-EE08-4564-9AC7-F76F35061579}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{522E4468-2BE3-445D-A078-A4A45085ACD8}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{F6B2FDBF-B457-4A62-973B-893D72342E14}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{0888CA5C-4836-42E6-80FC-EDA28C714F56}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{3B35E8AA-DFDE-405C-B3CD-9B6D6D06781F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{97CEB64D-315D-4796-B24C-666B2F3B1A7A}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{8F848D85-E43F-4BDE-A352-519FC1A1CDC9}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{7A8CFE98-57AF-4F46-A9B3-C704AC94AC01}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{B96DDD1E-B54C-45A6-9B7C-70DECB9F137E}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{224921CA-8021-4318-99BE-86CB06BB4E19}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{1C2F105A-6A10-4E4B-875B-EB004EEDD5A1}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{A9BE2356-0D5B-4DFC-BF3E-CFA1F6428232}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{80A1E00F-1D94-4E8E-B106-4BA94EB3D63F}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{08A43171-B012-4E94-AABA-2A48140D0B40}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{FAE1DA5E-ED48-4FE2-8642-AF8E67A53D81}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{2A192649-B91F-4D9F-A5C0-C1B54DADA4CC}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{51F69816-7C23-4146-899D-5A09FD6D4839}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{61BA7A75-D729-475B-9ECB-89E64EB560F3}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{F9285331-CC32-491A-8D75-32E0AD2F76D4}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{1DCFE372-F202-486B-AB2D-048A4C1CF7B8}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{862D11D4-8E55-482D-9BBA-681DAA213ED9}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{CFE2C457-231A-4D81-8D5B-B9BB9040F7FD}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{C6C5D205-6380-4168-B65C-DFF86C915D50}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{45A2FB6F-0AD9-49F5-AA09-0E07A55E190F}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{AA06C627-D612-444D-BEEF-15B33BADBA75}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{868F5610-B647-49E3-9064-C44D497F4F4F}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{860F54BC-AA58-468F-A879-D222E24C7516}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{3E9AE4D0-95E5-4A94-AA52-B3B97983F047}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{4FEED6F9-7DF3-483A-AD6F-6E7689DA8B9F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{D55AC898-A67D-45E0-A9A3-35868505FC88}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{9D1C5040-356F-448F-BB44-5C64E8A4840C}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{4EAC440F-B86F-4B96-A4DC-F3B50F84D3D3}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{4A0A1AC3-C263-4919-B2D4-57AFACA69717}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{BA50EE86-6A2A-43C2-994F-F1ACEA0030E3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{501A1B7C-E39B-48AE-9604-B98AFCC8522A}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{7425428F-C54E-4328-93CD-4975DA98956C}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{94B74269-59FD-4F2B-B768-802B96FFD1A4}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{B21FE7C4-5A1B-4D09-945B-ECD0A9205239}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{C59DE696-65D2-4457-AF40-06842B393ECF}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{23BB6799-7491-4032-ADE1-C5F9C9F088AE}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{2E74C9C2-968D-406D-903E-140B1B273626}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{A0438996-33C9-4ABE-A7C4-4EC0AF6DEFB3}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{640F2EA0-4FC4-4053-9EA6-1CDD2F7564CA}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{43556F8B-EC36-417E-ACD2-0D658FDE64AD}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{C5DCF058-9442-417F-B7E6-56A6E8D6B2D0}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{C82B50BF-370C-49E4-A0F5-E1D448495309}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{8608DC78-80C8-4086-9FE1-3575756BDF51}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{E8BB0448-0283-4DB2-868B-72AACDB35BAF}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{349DF183-2772-4F5D-92EF-9F171C6F21A6}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{F14A55C7-F424-4B89-AEA3-09F56841F687}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{9AF5F166-82F4-4F13-B9D8-96F696E2E070}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{8A2D7402-221E-4F7E-9B2C-DD7D6FC90F76}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{C121E0F4-4157-4DAD-85E8-BE6BDED25231}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{826B701C-E23B-412B-9183-0613317387C8}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{0A1361BB-499C-4C17-BE0B-1EC9296E91EE}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{0B96C217-51EF-4C32-8964-4CA1DF71BD2B}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{688C33BF-4622-4BB8-BA26-6E42D39382D8}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{87928ADE-1D57-4509-87C8-098DCB47D386}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{F00643B8-E3CE-4775-86F6-51E79413B137}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{22E2DFD3-B165-4BEF-A838-F5C3ACD9C859}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{B7C4AB21-E993-4175-B509-3398A8294059}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{68FD1505-5DA2-4605-BCCC-3A2346413B05}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{BD8B2BA2-B8C4-4E75-837F-FFE3C3070191}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{7477F066-FA29-4270-8B3A-15DEBCD84596}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{27ECA754-5039-4254-9DB9-3E4D7E17A5FA}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{F6B37D29-C842-403D-9DE6-229D2E7812B8}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{0410562A-BE0E-4524-94AF-D81F9F052BD5}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{597D5A60-57C5-4B8A-B685-A6A3C5716E16}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{49985A91-FEFF-4CAE-A561-2267D67E044F}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{BC8C0628-01A0-4D13-B6F2-4E1206909AC0}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{A0D7CC96-F058-4BD6-B9AC-495221EB8117}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{F199BC54-93B5-4ED2-AE6B-9241E4B030E1}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{D6FD0F52-2394-48BD-A416-3F82CEE0783F}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{79075692-1B8D-411E-9850-D4F466119479}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{6C39E8B8-A46F-41C8-98E1-43CDF7E167B5}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{E8777ECA-9981-4E03-B19C-A3CB016A13DE}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{98763CE1-0BA1-4823-93B6-6EC31228FF33}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{DA56AD0B-DDF4-403F-A100-FCE455329225}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{BE184A7B-A579-455C-B578-2D01DE8674C4}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{12099873-151E-40F8-B473-2D077BD5FFF6}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{25011FE2-5EE9-459A-9E8D-D77BF46A854D}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{EDE0BB71-693D-4B38-8263-27621FCB327F}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{CF95AC47-8CB6-4073-80A9-B5A4CD1DEF87}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{038B64F2-C6F3-4D0F-98C9-376BB96B8191}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{F82CB92D-C3FC-47D6-9936-7F1B12E2DA94}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{C000DC8D-E822-4C45-9431-CD3C02FC72A2}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{C36F51AE-7106-4284-832D-46F7844C76B5}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{9683FC4D-8B28-402C-A18C-2D2B5D5CF9E5}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{EE6E0641-8D7B-49AF-90BD-1234DED64F50}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{E7DE0040-D393-489E-B775-DD9DFA104580}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{94EEB4DC-D75D-4D1A-BBFF-F1E588E8E9C0}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{E07FC2BE-D183-4029-8871-B034E1F6F4DE}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{C144F242-B0D1-4895-A4E6-AD1401B36070}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{12D59EC9-BEF2-4105-AAB7-D8BB5ED0C85D}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{A7E35E64-C4F8-492C-9B31-E90E90E556EE}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{1CB617D2-2505-489C-949A-DC23600EF932}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{EA0D3658-EBB3-4C7C-8926-7E3B1EC0C122}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{6D34D0F9-0410-4AAD-991E-50D05EA692B5}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{9FF90B96-F508-435F-A01B-A47052B0A256}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{BCC020B5-99C8-4E29-913D-0F9691E0FCA3}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{56906E79-86DB-4BB7-97A5-FBAE89F83739}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{9008C01A-9D48-47F9-A396-9DE508CAB429}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{3182E752-92B7-4F2F-8A98-24863288CE4E}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{0B5C8683-63AB-4A72-8E5B-EDD9C4571AAE}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{653E02C0-9625-4593-8DB9-939629144265}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{A7CCCDE5-286C-4D23-AEEA-607F68EBE476}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{88745674-C7B8-4A18-9062-096E7D9016FF}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{41FBF40B-9C0C-42FE-ABF4-46A89EC818D8}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{AA5999D3-37CA-4E3B-86ED-DC0136BB500A}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{70FE0C02-5E55-4758-B640-82DA08071854}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{DBC761AC-83DF-4EF3-B636-65CDBEAF45F8}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{32F0025B-CAC6-4AB9-B511-977FA813541F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{BADB996C-7CC3-45D4-99D7-1803E13B4973}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{13B4CBD4-58FB-404A-ACA2-F787E74A0E2F}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{7EBD0A31-6CF6-4343-B655-F6EC023E2DE3}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{A6C5C766-6BA9-4579-8020-4EAE45C009B5}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{B0F2D13C-A47A-4BF6-A9A9-40A1A3C1782F}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{749141CD-8077-4F59-BCE7-764829287671}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{405C4447-A183-4A9D-BC87-EFC98180D983}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe
FirewallRules: [{6C814FD0-0094-4959-A215-04DE6EDEF98B}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{A6DCE084-3539-4421-A070-3709E87A7C25}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{16CF2BE6-B8CE-4D03-879E-3CB788550A65}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{9E321DAC-B3B8-4C5D-9656-061CBE7A8512}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{716B60C1-D593-48E4-8FC0-10AA221F71A4}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{9068F229-695C-4A19-BCB5-488A0A2579FA}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{7B404E5B-09BA-41AC-9160-C8E52C34CC9D}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{3BBDFA93-C1AC-43AB-8DEA-3DBAD02E44D9}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{CD9D11BA-6FFC-4B30-B7F9-EC008CD11E62}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{DBCDC030-3B58-480D-A38A-C2019A9E2DD3}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll
FirewallRules: [{ABDE343B-78B4-4B44-A148-B9BC5F8BAB74}] => (Allow) C:\Program Files (x86)\Iminent\Iminent.exe
FirewallRules: [{1D22FFEE-3D08-40BD-9A4C-8D3D3949BD83}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{415864A7-9908-4246-9F86-E1A5E31E8F87}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{428EAA71-A610-49EA-9E7F-392B8F308D25}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{793BD6DF-DCD4-4A56-B352-9D95940E9C7D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{20A83936-11C4-400D-9615-2EE09871FD75}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{9DCD87DF-07B0-4745-98E9-3E1084481DF8}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{CC95D4E5-9334-4944-A5CD-9720B4CB26C8}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{94C036E6-8C28-49C8-A6D1-BE4D52FF77C1}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD10.EXE
FirewallRules: [{22130532-8E60-4BF6-A954-4023004A95AC}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe
FirewallRules: [TCP Query User{398197DB-BBB5-42E4-B2E8-2322FCABEE5C}C:\users\jarnds\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jarnds\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{DE2EC066-64A1-4826-8E29-FBDC30D2980A}C:\users\jarnds\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jarnds\appdata\roaming\spotify\spotify.exe
FirewallRules: [{706D0B25-8F5A-49E4-A092-BB322D7A7CC5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{91F479DE-C747-4F78-988E-A93B6D9C2258}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{F257BBDB-A209-44A9-9162-305CE609AD90}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{4DD5178B-61CD-43BC-9B00-BA1ABDA93A84}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{70297660-F42E-4B92-B1B5-94D31A85F393}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{17BA08DB-E255-4B76-AB97-D2AE49B86DA6}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{36C2D94F-147C-476C-9FA8-986E1994B9F7}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{BF0472E3-99D2-4589-8A70-04EF63F89C96}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{031BB25A-8509-4373-89B0-1F132EBD91B4}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{503503CC-1003-42F4-9A54-B0F35F6894C8}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{6F0318AA-12AF-4271-BCC3-25F7A0AA9E06}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{0BA3770D-B148-4F0A-865A-22FD6C139713}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{15E2EE43-0831-43A2-8155-A19B13332F0C}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{59592524-F01C-4961-ABFE-31D8D906612C}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{E2A31FFC-E0F7-44F7-8809-0622DF087C17}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{D83DC77B-C665-4363-A75E-FC081BEDD191}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{6624CBFF-0E82-436C-BE4E-28F0ED0DFD97}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{6DA21A69-8476-4D31-9CC8-555ACDAB3B06}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{EB887EF1-072C-4CEE-A53F-222A5CF1840F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{325D826D-4AE6-4123-AA82-37C9EE0341A8}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{FCE81CCC-07BE-472B-BA0E-FAE5FDB7CD81}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{91FF10B0-5791-44BA-A346-8E3F20B20DBA}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{6AC3201B-F2D9-46B5-9D52-806AB0BBD50A}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{6F537ECA-AC5D-46D7-8F32-A015DAC39F3C}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{A6C9E89E-E9CE-4E55-B83F-D5A62297F8EC}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{A88C80A9-2C62-47D3-983F-E068741FC4B5}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{2C591D70-20AC-42A6-B51D-40C5DD41127B}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{83C21D89-78E2-4AC9-B5B9-6212B62D29AC}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [TCP Query User{C2934761-D822-4864-BB08-2C60312059F1}C:\windows\system32\settingsynchost.exe] => (Block) C:\windows\system32\settingsynchost.exe
FirewallRules: [UDP Query User{BCAF1FFB-A14D-4D05-A55F-95B55E9DBA6F}C:\windows\system32\settingsynchost.exe] => (Block) C:\windows\system32\settingsynchost.exe
FirewallRules: [{6CB4D00D-EDE5-4A86-89AE-C8A6E15B0888}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{5F748ADD-F759-4CA1-8DB3-2757976044A7}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{59AD263C-6B51-422E-8930-A0406CCF3CD5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{71BDC5D6-A6EF-4BA9-8A4A-EADA018F8483}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{8A195016-EBAE-46D5-AD01-A929EB9D6048}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{F8E040BB-53E9-46DA-B3C3-9ADA2DADB83B}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{42FFD4EA-04B1-4A91-9831-7C831C27A2F7}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{0BD01A86-0249-44EB-A4AA-EAC51F0AA84D}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{8E452D66-D046-41DA-A018-3704BCCBC16F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{B74ECE61-A8AA-4B6A-B4F1-E23ED68DFF97}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{492D74C7-EE95-40D4-B16E-83A6E0C99A11}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{F9635B67-F3BD-4F0E-8C45-9E19115E397D}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{649DE97B-6335-4F8D-A618-FD5653C9682A}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{7819A9DE-C509-4894-B451-9C1E632DD45A}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{053C0C1F-15C9-4FF3-B93B-F3DF39ED83DD}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{4C62D7DE-1371-4148-A557-6BCC08D79995}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{60F9F069-6D70-47B9-915B-09C9524226A6}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{735637BF-9406-445C-AFB8-04D3CC6F4884}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{E71CFAAD-84CB-44D1-97B5-2EC93EB74338}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{6000085B-525E-4554-981C-AD9D606DC35F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{5FFB4236-6DB6-4384-A55C-F9B4013CB927}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{3DF20882-D778-4A89-9580-70A40B2AD9AD}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{9EDC2681-A33A-470F-90BA-7FC9178DC72C}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{B763D42E-A30B-4A75-9739-E79CA77395D5}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{4179F09D-4086-467B-A821-D54701973C8C}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{6406F1A1-A104-42DC-99B4-252BFE515FE5}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{1EF125B0-495A-4AE0-B226-48DAACA72C16}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{F7D78CE8-4DDB-4568-94A6-65077085B46B}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{988A2686-7ABE-40BE-9833-713FAF1D21B9}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{833406FE-D17C-487A-BDD8-3DA3DC014FAC}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{0D6EC598-BB65-45D0-A429-1C3A633E65D7}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{9E8A2B25-B995-464D-A4CC-542E2DC69B25}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{67B8C221-4A00-4743-BB74-13FEFC9021E7}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{790B64F2-387D-4F22-87D6-3816B8664750}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{CA2CC5EC-51EB-4CB6-8803-DAC82943877E}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{2BD181B4-BFB9-4EBF-A6EB-762FC05F0F17}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{317FA637-1153-4422-84BE-A0D4A348BD4F}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{E4BAAB0D-F2A5-4521-941E-E37F4323A425}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{C4CA3589-08D4-43BB-9810-A9000825F61B}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{07B4D4BE-C20C-4A8F-BD5F-A127740B0EC3}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{367EE6D9-C351-4BD7-A824-A3CC1224866E}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{7AC8D249-BD35-404C-AD0B-B239AF0B1308}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{483F804F-2FAE-40FF-9862-763EE177AF2B}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{7F141270-9A23-498D-AA6D-4BBF55219B36}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{598115EC-2488-4CB7-8ED5-A67911F28860}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{980C7CF4-4799-4E58-B1AE-968F20C4909A}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{E516CAB4-9275-4DF5-ADAC-FC08BB6C463F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{12F6B406-3C7C-479B-B594-50F7A832BE11}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{A11F19F8-4A64-4AC2-8FCB-BA8F52CA3912}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{9B4FF904-C223-49E3-AA6C-02CB5CFAB61B}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{1AB2677D-6D04-41FE-868E-DB4EEFE216AF}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{7BC657FA-3358-427D-A249-3E51C2CC1D2A}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{E9CC747E-848E-4E28-B954-9FEAC8165CEF}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{45BB6DBD-49EA-41B3-936C-609E6FD0F625}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{BC2AA80B-D18F-4E45-9C42-EEA12D986289}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{72D5AB06-49C4-449C-89FB-4D3CF1E8900F}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{FD8EC38E-3100-453D-80E0-556B9B689254}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{1D27C5A3-0D8C-4A17-9857-C24CF49F9A64}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{46633FB3-D418-4F81-99A7-2AA0712DF0EF}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{81F48220-AF5F-4529-9C00-23E5ACA88788}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{06DD50F3-2A08-48AB-8020-EBBF57167AAD}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{225DE175-DCD5-4FC2-BD4F-FD8B31C8B85E}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{EC687276-60EC-4DC3-83FB-0CA7BCEF1BA4}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{592BBFC3-8637-44F8-B881-AE1B977422E7}] => (Allow) C:\SoloApp\SoloApp.exe
FirewallRules: [{71F90671-ABDC-40DB-81D0-C9A7417AB9ED}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{7EAF8E20-6972-425D-8A2C-45538F6EB327}] => (Allow) C:\SoloApp\WebDriver.dll
FirewallRules: [{757F9A66-6F84-4312-8DA2-D94F3742725F}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{E34CCF70-560D-4AAC-9907-AC07A4819010}] => (Allow) C:\SoloApp\chromedriver.exe
FirewallRules: [{314B8DCD-4662-4621-8A38-21C618496255}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{08FCB74A-84DE-44E8-921F-EBE798F09C3F}] => (Allow) C:\SoloApp\IEDriverServer.exe
FirewallRules: [{C5BF1D58-5A58-4AFF-B841-31A5CB76990C}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{4A823372-ABB7-4576-A3CA-EAFE0448C988}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe
FirewallRules: [{3A07D5AC-01DF-40DF-A0D7-F7C234378AC9}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{EC02A358-5179-4A5D-A1F3-EA1CF8D0DFE2}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe
FirewallRules: [{1944CFBA-931E-4DEF-81E3-8B2E4AE0B268}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{D79D63FF-E808-48A3-877D-E48C777ADD5C}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe
FirewallRules: [{4F23B67D-ED14-43D6-B414-73C9B478261A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F4505983-B86D-4C28-A59D-BA5CD43ACBF0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{36F15323-E970-40F7-B583-FC14DA4095D5}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{BD1E0414-7266-4F2C-9D7F-964FC8A95D76}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe

==================== Wiederherstellungspunkte =========================

02-01-2016 23:56:28 Windows Update
02-04-2016 17:46:05 Windows Update
04-09-2016 14:20:47 Removed iTunes
05-11-2016 16:34:50 Windows Update
11-11-2016 08:23:58 JRT Pre-Junkware Removal

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (11/11/2016 08:12:18 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: AdwCleaner_6.030.exe, Version: 6.0.3.0, Zeitstempel: 0x58078d71
Name des fehlerhaften Moduls: AdwCleaner_6.030.exe, Version: 6.0.3.0, Zeitstempel: 0x58078d71
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000211de
ID des fehlerhaften Prozesses: 0xac0
Startzeit der fehlerhaften Anwendung: 0x01d23bea21bcc909
Pfad der fehlerhaften Anwendung: C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe
Pfad des fehlerhaften Moduls: C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe
Berichtskennung: 2dd1bc52-a7de-11e6-bebd-b888e3999fb4
Vollständiger Name des fehlerhaften Pakets: 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (11/11/2016 05:11:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 16171

Error: (11/11/2016 05:11:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 16171

Error: (11/11/2016 05:11:46 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/11/2016 05:11:44 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 14468

Error: (11/11/2016 05:11:44 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 14468

Error: (11/11/2016 05:11:44 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/11/2016 05:11:42 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 12718

Error: (11/11/2016 05:11:42 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 12718

Error: (11/11/2016 05:11:42 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second


Systemfehler:
=============
Error: (11/11/2016 08:07:26 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: Der Server "{4545DEA0-2DFC-4906-A728-6D986BA399A9}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (11/11/2016 08:07:26 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: Der Server "{4545DEA0-2DFC-4906-A728-6D986BA399A9}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (11/11/2016 07:53:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Apple Mobile Device" wurde aufgrund folgenden Fehlers nicht gestartet: 
Die Pipe wurde beendet.

Error: (11/11/2016 07:52:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (11/11/2016 07:52:19 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Microsoft Office-Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts.

Error: (11/11/2016 07:52:19 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Conexant Audio Message Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (11/11/2016 07:52:19 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Dienst "Bonjour"" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (11/11/2016 07:52:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Apple Mobile Device" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (11/11/2016 07:52:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "AMD FUEL Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (11/11/2016 07:52:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Druckwarteschlange" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 5000 Millisekunden durchgeführt: Neustart des Diensts.


==================== Speicherinformationen =========================== 

Prozessor: AMD E1-1200 APU with Radeon(tm) HD Graphics
Prozentuale Nutzung des RAM: 44%
Installierter physikalischer RAM: 1606.26 MB
Verfügbarer physikalischer RAM: 896.16 MB
Summe virtueller Speicher: 3142.26 MB
Verfügbarer virtueller Speicher: 2299.39 MB

==================== Laufwerke ================================

Drive c: (Windows8_OS) (Fixed) (Total:250.42 GB) (Free:213.11 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:23.27 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 298.1 GB) (Disk ID: 1A079A73)

Partition: GPT.

==================== Ende von Addition.txt ============================
         

Alt 11.11.2016, 23:51   #14
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



FRST-Fix

Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft!


Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
Task: {4636EB35-E9A7-4698-BBB9-7680B44F840D} - \FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl -> Keine Datei <==== ACHTUNG
Task: {8FF1B24C-0761-4E0C-A6BF-6EEFA889A378} - \SystemSockets\SystemSockets -> Keine Datei <==== ACHTUNG
Task: {E5AEEE15-714D-4984-B535-88BFE03B9620} - \ProtectedSearch\Protected Search -> Keine Datei <==== ACHTUNG
emptytemp:
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 12.11.2016, 00:10   #15
Specht
 
Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Standard

Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde



Fixlog:
Code:
ATTFilter
Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-11-2016
durchgeführt von jarnds (12-11-2016 00:05:56) Run:1
Gestartet von C:\Users\jarnds\Desktop
Geladene Profile: jarnds (Verfügbare Profile: jarnds)
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
Task: {4636EB35-E9A7-4698-BBB9-7680B44F840D} - \FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl -> Keine Datei <==== ACHTUNG
Task: {8FF1B24C-0761-4E0C-A6BF-6EEFA889A378} - \SystemSockets\SystemSockets -> Keine Datei <==== ACHTUNG
Task: {E5AEEE15-714D-4984-B535-88BFE03B9620} - \ProtectedSearch\Protected Search -> Keine Datei <==== ACHTUNG
emptytemp:
         
*****************

"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4636EB35-E9A7-4698-BBB9-7680B44F840D}" => Schlüssel erfolgreich entfernt
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4636EB35-E9A7-4698-BBB9-7680B44F840D}" => Schlüssel erfolgreich entfernt
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl => Schlüssel nicht gefunden. 
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8FF1B24C-0761-4E0C-A6BF-6EEFA889A378}" => Schlüssel erfolgreich entfernt
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8FF1B24C-0761-4E0C-A6BF-6EEFA889A378}" => Schlüssel erfolgreich entfernt
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SystemSockets\SystemSockets => Schlüssel nicht gefunden. 
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E5AEEE15-714D-4984-B535-88BFE03B9620}" => Schlüssel erfolgreich entfernt
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E5AEEE15-714D-4984-B535-88BFE03B9620}" => Schlüssel erfolgreich entfernt
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ProtectedSearch\Protected Search => Schlüssel nicht gefunden. 

=========== EmptyTemp: ==========

BITS transfer queue => 25165824 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 30606676 B
Java, Flash, Steam htmlcache => 47338 B
Windows/system/drivers => 79209612 B
Edge => 0 B
Chrome => 0 B
Firefox => 117169643 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 3797 B
systemprofile32 => 128 B
LocalService => 2330226 B
NetworkService => 108464750 B
jarnds => 453375816 B

RecycleBin => 642 B
EmptyTemp: => 778.6 MB temporäre Dateien entfernt.

================================


Das System musste neu gestartet werden.

==== Ende von Fixlog 00:08:51 ====
         

Antwort

Themen zu Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde
askbar, avira, browser-security, datei, dllhost.exe, explorer.exe, free, infizierte, lsass.exe, malware, modul, namen, notebook, pdf, probleme, programm, prozesse, rundll, rundll32.exe, scan, software, spoolsv.exe, svchost.exe, temp, tmp, warnung, windows, winlogon.exe



Ähnliche Themen: Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde


  1. PUP.Optional.Crossrider.A Fund von mbam Windows 7
    Plagegeister aller Art und deren Bekämpfung - 02.02.2015 (18)
  2. Viele Funde via MBAM Windows 8, kein log file gespeichert?
    Log-Analyse und Auswertung - 12.11.2014 (7)
  3. Windows 7: ADWARE/CrossRider.Gen4, ADWARE/EoRezo.Gen4 und ADWARE/MPlug 6.14 durch AntiVir gefunden
    Log-Analyse und Auswertung - 22.10.2014 (4)
  4. Windows 7: 30 Funde mbam, 2 Funde avira
    Log-Analyse und Auswertung - 30.08.2014 (12)
  5. Win-XP, Avira und MBAM Fund, Trojaner "TR/Drop.Softomat.AN"
    Log-Analyse und Auswertung - 23.02.2014 (9)
  6. Windows 7: Wiederholte Funde bösartiger Software durch MBAM
    Log-Analyse und Auswertung - 09.02.2014 (7)
  7. Windows 7: POPups im Browser und MBAM-Funde, Absturz
    Log-Analyse und Auswertung - 02.02.2014 (12)
  8. Windows 8.1: evtl. BKA-Virus und Funde durch MBAM
    Log-Analyse und Auswertung - 20.12.2013 (13)
  9. XP Fehlermeldung nach Start - je 2 Funde mit Avira + MBAM
    Log-Analyse und Auswertung - 01.12.2013 (21)
  10. avira virus-fund -> COMBOFIX + OLT+MBAM
    Log-Analyse und Auswertung - 24.11.2013 (4)
  11. Windows 7: MBAM Fund: PUP.Optional.Opencandy
    Log-Analyse und Auswertung - 29.10.2013 (9)
  12. Windows 7: MBAM Fund: PUP.Optional.Spigot.A
    Log-Analyse und Auswertung - 26.10.2013 (9)
  13. Dualboot XP/Vista; MBAM-Fund, Dateien verschwinden & tauchen wieder auf, 1 MBAM-log weg
    Log-Analyse und Auswertung - 24.10.2013 (9)
  14. Win7: Avira Fund: Java/Dldr.Obfshlp.JC, Malwarbytes Funde: Hijack.SearchPage in Quarantäne - 35 Funde insgesamt
    Log-Analyse und Auswertung - 06.10.2013 (5)
  15. Windows 7: Funde mit MBAM / entrusted toolbar gefunden
    Log-Analyse und Auswertung - 15.09.2013 (9)
  16. Windows 7: Avira hat 172 Viren gefunden, davor mehrer Funde einzel Funde bei Malwarebytes bzw. Avira
    Log-Analyse und Auswertung - 15.09.2013 (13)
  17. Malwarebytes Fund Backdoor.Agent / Avira mehrere Funde
    Plagegeister aller Art und deren Bekämpfung - 08.08.2012 (3)

Zum Thema Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde - Hallo, ich ich habe das Notebook von der Tochter eines Bekannten stehen, der mit mit der Aussage "irgendwas ist hier komisch" übergeben wurde... Nachdem es Probleme mit dem NB gegeben - Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde...
Archiv
Du betrachtest: Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.