Zurück   Trojaner-Board > Web/PC > Alles rund um Windows

Alles rund um Windows: Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen

Windows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8 und 8.1 - als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows.

Antwort
Alt 24.06.2017, 14:11   #1
losprimeros
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Problem: Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen



Guten Tag zusammen,
Habe seit mehreren Tagen das Problem, dass Windows nicht mehr heruntergefahren bzw. neugestartet werden kann. Lediglich der Wechsel in den Energiesparmodus funktioniert ohne Probleme. Auch vom System selbst vorgenommene Neustarts durch Windows Update schlagen mit der Meldung fehl, dass keine passende Uhrzeit für den Neustart gefunden werde.
Die Wiederherstellung beginnt zwar, bricht dann nachdem 100% der Vorbereitungsphase erreicht sind kommentarlos ab.
Der FRST Scan ergab zahlreiche Anwendungs- und Systemfehler, siehe Anhang.

Was tun?

Code:
ATTFilter
HWiNFO64 Version 5.52-3161

LAPTOP-9CHC4QNU -----------------------------------------------------------

 [Current Computer]
  Computer Name:                          LAPTOP-9CHC4QNU
  Computer Brand Name:                    LENOVO Lenovo ideapad 100S-14IBR
 [Operating System]
  Operating System:                       Microsoft Windows 10 Home (x64) Build 15063.296 (RS2)
  UEFI Boot:                              Present

Central Processor(s) ------------------------------------------------------

 [CPU Unit Count]
  Number Of Processor Packages (Physical): 1
  Number Of Processor Cores:              4
  Number Of Logical Processors:           4

Intel Pentium N3710 -------------------------------------------------------

 [General Information]
  Processor Name:                         Intel Pentium N3710
  Original Processor Frequency:           1666.7 MHz
  Original Processor Frequency [MHz]:     1667
  CPU ID:                                 000406C4
  CPU Brand Name:                         Intel(R) Pentium(R) CPU  N3710  @ 1.60GHz
  CPU Vendor:                             GenuineIntel
  CPU Stepping:                           D1
  CPU Code Name:                          Braswell Refresh
  CPU S-Spec:                             SR2KL
  CPU Power Limit 1 - Long Duration:      Power = 1.38 W, Time = 28.00 sec [Unlocked]
  CPU Type:                               Production Unit
  CPU Platform:                           FCBGA1170
  Microcode Update Revision:              408
  Number of CPU Cores:                    4
  Number of Logical CPUs:                 4
 [Operating Points]
  CPU MFM (LowPower):                     166.7 MHz = 2 x 83.3 MHz @ 0.4500 V
  CPU LFM (Minimum):                      500.0 MHz = 6 x 83.3 MHz @ 0.4500 V
  CPU HFM (Maximum):                      1666.7 MHz = 20 x 83.3 MHz @ 0.6300 V [Unlocked]
  CPU Turbo:                              2666.7 MHz = 32 x 83.3 MHz @ 0.9600 V [Locked]
  CPU Current:                            1200.1 MHz = 15 x 80.0 MHz @ 0.6300 V
 [Cache and TLB]
  L1 Cache:                               Instruction: 4 x 32 KBytes, Data: 4 x 24 KBytes
  L2 Cache:                               Integrated: 2 x 1 MBytes
  Instruction TLB:                        4-KB Pages, Fully associative, 48 entries
  Data TLB:                               4-KB Pages, Fully associative, 32 entries
 [Standard Feature Flags]
  FPU on Chip                             Present
  Enhanced Virtual-86 Mode                Present
  I/O Breakpoints                         Present
  Page Size Extensions                    Present
  Time Stamp Counter                      Present
  Pentium-style Model Specific Registers  Present
  Physical Address Extension              Present
  Machine Check Exception                 Present
  CMPXCHG8B Instruction                   Present
  APIC On Chip / PGE (AMD)                Present
  Fast System Call                        Present
  Memory Type Range Registers             Present
  Page Global Feature                     Present
  Machine Check Architecture              Present
  CMOV Instruction                        Present
  Page Attribute Table                    Present
  36-bit Page Size Extensions             Present
  Processor Number                        Not Present
  CLFLUSH Instruction                     Present
  Debug Trace and EMON Store              Present
  Internal ACPI Support                   Present
  MMX Technology                          Present
  Fast FP Save/Restore (IA MMX-2)         Present
  Streaming SIMD Extensions               Present
  Streaming SIMD Extensions 2             Present
  Self-Snoop                              Present
  Multi-Threading Capable                 Present
  Automatic Clock Control                 Present
  IA-64 Processor                         Not Present
  Signal Break on FERR                    Present
  Virtual Machine Extensions (VMX)        Present
  Safer Mode Extensions (Intel TXT)       Not Present
  Streaming SIMD Extensions 3             Present
  Supplemental Streaming SIMD Extensions 3 Present
  Streaming SIMD Extensions 4.1           Present
  Streaming SIMD Extensions 4.2           Present
  AVX Support                             Not Present
  Fused Multiply Add (FMA)                Not Present
  Carryless Multiplication (PCLMULQDQ)/GFMUL Present
  CMPXCHG16B Support                      Present
  MOVBE Instruction                       Present
  POPCNT Instruction                      Present
  XSAVE/XRSTOR/XSETBV/XGETBV Instructions Not Present
  XGETBV/XSETBV OS Enabled                Not Present
  Float16 Instructions                    Not Present
  AES Cryptography Support                Present
  Random Number Read Instruction (RDRAND) Present
  Extended xAPIC                          Not Present
  MONITOR/MWAIT Support                   Present
  Thermal Monitor 2                       Present
  Enhanced SpeedStep Technology           Present
  L1 Context ID                           Not Present
  Send Task Priority Messages Disabling   Present
  Processor Context ID                    Not Present
  Direct Cache Access                     Not Present
  TSC-deadline Timer                      Present
  Performance/Debug Capability MSR        Present
  IA32 Debug Interface Support            Not Present
  64-Bit Debug Store                      Present
  CPL Qualified Debug Store               Present
 [Extended Feature Flags]
  64-bit Extensions                       Present
  RDTSCP and TSC_AUX Support              Present
  1 GB large page support                 Not Present
  No Execute                              Present
  SYSCALL/SYSRET Support                  Present
  Bit Manipulation Instructions Set 1     Not Present
  Bit Manipulation Instructions Set 2     Not Present
  Advanced Vector Extensions 2 (AVX2)     Not Present
  Advanced Vector Extensions 512 (AVX-512) Not Present
  AVX-512 Prefetch Instructions           Not Present
  AVX-512 Exponential and Reciprocal Instructions Not Present
  AVX-512 Conflict Detection Instructions Not Present
  AVX-512 Doubleword and Quadword Instructions Not Present
  AVX-512 Byte and Word Instructions      Not Present
  AVX-512 Vector Length Extensions        Not Present
  AVX-512 52-bit Integer FMA Instructions Not Present
  Secure Hash Algorithm (SHA) Extensions  Not Present
  Software Guard Extensions (SGX) Support Not Present
  Supervisor Mode Execution Protection (SMEP) Present
  Supervisor Mode Access Prevention (SMAP) Not Present
  Hardware Lock Elision (HLE)             Not Present
  Restricted Transactional Memory (RTM)   Not Present
  Memory Protection Extensions (MPX)      Not Present
  Read/Write FS/GS Base Instructions      Not Present
  Enhanced Performance String Instruction Present
  INVPCID Instruction                     Not Present
  RDSEED Instruction                      Not Present
  Multi-precision Add Carry Instructions (ADX) Not Present
  PCOMMIT Instructions                    Not Present
  CLFLUSHOPT Instructions                 Not Present
  CLWB Instructions                       Not Present
  TSC_THREAD_OFFSET                       Present
  Platform Quality of Service Monitoring (PQM) Not Present
  Platform Quality of Service Enforcement (PQE) Not Present
  FPU Data Pointer updated only on x87 Exceptions Not Present
  Deprecated FPU CS and FPU DS            Present
  Intel Processor Trace                   Not Present
  PREFETCHWT1 Instruction                 Not Present
  AVX-512 Vector Bit Manipulation Instructions Not Present
  User-Mode Instruction Prevention        Not Present
  Protection Keys for User-mode Pages     Not Present
  OS Enabled Protection Keys              Not Present
  AVX-512 VPOPCNTD/VPOPCNTQ Instructions  Not Present
  Read Processor ID                       Not Present
  SGX Launch Configuration                Not Present
  AVX-512 Deep Learning Enhanced Word Variable Precision Not Present
  AVX-512 Deep Learning Floating-point Single Precision Not Present
 [Enhanced Features]
  Thermal Monitor 1:                      Supported, Enabled
  Thermal Monitor 2:                      Supported, Enabled
  Enhanced Intel SpeedStep (GV3):         Supported, Enabled
  Bi-directional PROCHOT#:                N/A
  Extended Auto-HALT State C1E:           N/A
  MLC Streamer Prefetcher                 Not Supported
  MLC Spatial Prefetcher                  Not Supported
  DCU Streamer Prefetcher                 Not Supported
  DCU IP Prefetcher                       Not Supported
  Intel Dynamic Acceleration (IDA) Technology: Not Supported
  Intel Dynamic FSB Switching:            Not Supported
  Intel Turbo Boost Technology:           Supported, Enabled
  Programmable Ratio Limits:              Not Supported
  Programmable TDC/TDP Limits:            Not Supported
 [Memory Ranges]
  Maximum Physical Address Size:          36-bit (64 GBytes)
  Maximum Virtual Address Size:           48-bit (256 TBytes)
 [MTRRs]
  Range FFA00000-100000000 (4090MB-4096MB) Type: Write Protected (WP)
  Range 0-80000000 (0MB-2048MB) Type:     Write Back (WB)
  Range 7E000000-80000000 (2016MB-2048MB) Type: Uncacheable (UC)
  Range 7D000000-7E000000 (2000MB-2016MB) Type: Uncacheable (UC)
  Range 7C800000-7D000000 (1992MB-2000MB) Type: Uncacheable (UC)
  Range 7C400000-7C800000 (1988MB-1992MB) Type: Uncacheable (UC)

Motherboard ---------------------------------------------------------------

 [Computer]
  Computer Brand Name:                    LENOVO Lenovo ideapad 100S-14IBR
 [Motherboard]
  Motherboard Model:                      LENOVO Aristotle 14
  Motherboard Chipset:                    
  Motherboard Slots:                      3xPCI Express x1, 1xPCI Express x4
  PCI Express Version Supported:          v2.0
  USB Version Supported:                  v3.0
 [BIOS]
  BIOS Manufacturer:                      Lenovo
  BIOS Date:                              08/02/2016
  BIOS Version:                           E4CN34WW
  UEFI BIOS:                              Capable
  Super-IO/LPC Chip:                      Unknown

ACPI Devices --------------------------------------------------------------


Intel SD Host Controller --------------------------------------------------

  Device Name:                            Intel SD Host Controller
 [Assigned Resources]
  Memory Location:                        91319000 - 91319FFF
 [Alternative 1]
  Memory Location:                        91319000 - 91319FFF
  IRQ:                                    45

ELAN pointing device ------------------------------------------------------

  Device Name:                            ELAN pointing device
 [Assigned Resources]
  IRQ:                                    12
 [Alternative 1]
  IRQ:                                    12

Legacy device -------------------------------------------------------------

  Device Name:                            Legacy device
 [Assigned Resources]
  Memory Location:                        FF000000 - FFFFFFFF
 [Alternative 1]
  Memory Location:                        FF000000 - FFFFFFFF

Standard PS/2 Keyboard ----------------------------------------------------

  Device Name:                            Standard PS/2 Keyboard
 [Assigned Resources]
  I/O Port:                               0060
  I/O Port:                               0000
 [Alternative 1]
  I/O Port:                               0060
  I/O Port:                               0064
  IRQ:                                    1

Trusted Platform Module 2.0 -----------------------------------------------

  Device Name:                            Trusted Platform Module 2.0
 [Assigned Resources]
  Memory Location:                        7FF00000 - 7FF00FFF
 [Alternative 1]
  Memory Location:                        7FF00000 - 7FF00FFF

Programmable interrupt controller -----------------------------------------

  Device Name:                            Programmable interrupt controller
 [Assigned Resources]
  I/O Port:                               0020 - 0021
  I/O Port:                               0030 - 0031
  I/O Port:                               00A0 - 00A1
  I/O Port:                               00B0 - 00B1
  IRQ:                                    1114369
  IRQ:                                    1114369
  IRQ:                                    1114369
  IRQ:                                    1114369
 [Alternative 1]
  I/O Port:                               0020 - 0021
  I/O Port:                               0024 - 0025
  I/O Port:                               0028 - 0029
  I/O Port:                               002C - 002D
  I/O Port:                               0030 - 0031
  I/O Port:                               0034 - 0035
  I/O Port:                               0038 - 0039
  I/O Port:                               003C - 003D
  I/O Port:                               00A0 - 00A1
  I/O Port:                               00A4 - 00A5
  I/O Port:                               00A8 - 00A9
  I/O Port:                               00AC - 00AD
  I/O Port:                               00B0 - 00B1
  I/O Port:                               00B4 - 00B5
  I/O Port:                               00B8 - 00B9
  I/O Port:                               00BC - 00BD
  I/O Port:                               04D0 - 04D1

System timer --------------------------------------------------------------

  Device Name:                            System timer
 [Assigned Resources]
  I/O Port:                               0040 - 0043
  DMA:                                    0
 [Alternative 1]
  I/O Port:                               0040 - 0043
  I/O Port:                               0050 - 0053
  IRQ:                                    0

Kommunikationsanschluss ---------------------------------------------------

  Device Name:                            Kommunikationsanschluss
 [Assigned Resources]
  I/O Port:                               03F8 - 03FF
 [Alternative 1]
  I/O Port:                               03F8 - 03FF
  IRQ:                                    4

PCI Express Root Complex --------------------------------------------------

  Device Name:                            PCI Express Root Complex
 [Assigned Resources]
  I/O Port:                               0000 - FFFFFFFF
  I/O Port:                               0D00 - FFFF
  Memory Location:                        000C0000 - 000BFFFF
 [Alternative 1]
  I/O Port:                               0000 - 006F
  I/O Port:                               0078 - 0CF7
  I/O Port:                               0D00 - FFFF
  Memory Location:                        000A0000 - 000BFFFF
  Memory Location:                        000C0000 - 000DFFFF
  Memory Location:                        000E0000 - 000FFFFF
  Memory Location:                        80000000 - DFFFFFFF

System CMOS/real time clock -----------------------------------------------

  Device Name:                            System CMOS/real time clock
 [Assigned Resources]
  I/O Port:                               0070 - 0077
 [Alternative 1]
  I/O Port:                               0070 - 0077

Motherboard resources -----------------------------------------------------

  Device Name:                            Motherboard resources
 [Assigned Resources]
  Memory Location:                        E0000000 - EFFFFFFF
  Memory Location:                        FED06000 - FED06FFF
 [Alternative 1]
  Memory Location:                        E0000000 - EFFFFFFF
  Memory Location:                        FEA00000 - FEAFFFFF
  Memory Location:                        FED01000 - FED01FFF
  Memory Location:                        FED03000 - FED03FFF
  Memory Location:                        FED06000 - FED06FFF
  Memory Location:                        FED08000 - FED09FFF
  Memory Location:                        FED80000 - FEDBFFFF
  Memory Location:                        FED1C000 - FED1CFFF
  Memory Location:                        FEE00000 - FEEFFFFF

Motherboard resources -----------------------------------------------------

  Device Name:                            Motherboard resources
 [Assigned Resources]
  I/O Port:                               004E - 004F
  I/O Port:                               0000 - 0062
  I/O Port:                               0067
  I/O Port:                               0000 - 007F
  I/O Port:                               00B2 - 00B3
 [Alternative 1]
  I/O Port:                               004E - 004F
  I/O Port:                               0061
  I/O Port:                               0063
  I/O Port:                               0065
  I/O Port:                               0067
  I/O Port:                               0070
  I/O Port:                               0080 - 008F
  I/O Port:                               0092
  I/O Port:                               00B2 - 00B3
  I/O Port:                               0680 - 069F
  I/O Port:                               0400 - 047F
  I/O Port:                               0500 - 05FE

Motherboard resources -----------------------------------------------------

  Device Name:                            Motherboard resources
 [Assigned Resources]
  Memory Location:                        91318000 - 91318FFF
 [Alternative 1]
  Memory Location:                        91318000 - 91318FFF
  Memory Location:                        91316000 - 91316FFF

Microsoft ACPI-Compliant Embedded Controller ------------------------------

  Device Name:                            Microsoft ACPI-Compliant Embedded Controller
 [Assigned Resources]
  I/O Port:                               0062
 [Alternative 1]
  I/O Port:                               0062
  I/O Port:                               0066

SMBIOS DMI ----------------------------------------------------------------


BIOS ----------------------------------------------------------------------

  BIOS Vendor:                            Lenovo
  BIOS Version:                           E4CN34WW
  BIOS Release Date:                      08/02/2016
  BIOS Start Segment:                     E000
  BIOS Size:                              6144 KBytes
  System BIOS Version:                    1.34
  Embedded Controller Firmware Version:   1.34
  ISA Support:                            Not Present
  MCA Support:                            Not Present
  EISA Support:                           Not Present
  PCI Support:                            Present
  PC Card (PCMCIA) Support:               Not Present
  Plug-and-Play Support:                  Not Present
  APM Support:                            Not Present
  Flash BIOS:                             Present
  BIOS Shadow:                            Present
  VL-VESA Support:                        Not Present
  ESCD Support:                           Not Present
  Boot from CD:                           Present
  Selectable Boot:                        Present
  BIOS ROM Socketed:                      Not Present
  Boot from PC Card:                      Not Present
  EDD Support:                            Not Present
  NEC PC-98 Support:                      Present
  ACPI Support:                           Present
  USB Legacy Support:                     Present
  AGP Support:                            Not Present
  I2O Boot Support:                       Not Present
  LS-120 Boot Support:                    Not Present
  ATAPI ZIP Drive Boot Support:           Not Present
  IEE1394 Boot Support:                   Not Present
  Smart Battery Support:                  Not Present
  BIOS Boot Specification Support:        Present
  Function key-initiated Network Service Boot Support: Present
  Targeted Content Distribution Support:  Present
  UEFI Specification Support:             Present

System --------------------------------------------------------------------

  System Manufacturer:                    LENOVO
  Product Name:                           80R9
  Product Version:                        Lenovo ideapad 100S-14IBR
  Product Serial Number:                  YD01GLME
  UUID:                                   {AD9B02E4-3FB3-1620-0928-005431000000}
  SKU Number:                             LENOVO_MT_80R9_BU_idea_FM_Lenovo ideapad 100S-14IBR
  Family:                                 IDEAPAD

Mainboard -----------------------------------------------------------------

  Mainboard Manufacturer:                 LENOVO
  Mainboard Name:                         Aristotle 14
  Mainboard Version:                      SDK0J40700 WIN
  Mainboard Serial Number:                YD01GLME
  Asset Tag:                              No Asset Tag
  Location in chassis:                    Part Component

System Enclosure ----------------------------------------------------------

  Manufacturer:                           LENOVO
  Case Type:                              Notebook
  Version:                                Lenovo ideapad 100S-14IBR
  Serial Number:                          YD01GLME
  Asset Tag Number:                       No Asset Tag

Processor -----------------------------------------------------------------

  Processor Manufacturer:                 Intel(R) Corporation
  Processor Version:                      Intel(R) Pentium(R) CPU  N3710  @ 1.60GHz
  External Clock:                         83 MHz
  Maximum Clock Supported:                1660 MHz
  Current Clock:                          480 MHz
  CPU Socket:                             Populated
  CPU Status:                             Enabled
  Processor Type:                         Central Processor
  Processor Voltage:                      3.9 V
  Processor Upgrade:                      Slot 1
  Socket Designation:                     CHV

L1 Cache ------------------------------------------------------------------

  Socket Designation:                     L1 Cache
  Cache State:                            Enabled
  Cache Type:                             Internal, Data
  Cache Scheme:                           Write-Back
  Supported SRAM Type:                    Synchronous
  Current SRAM Type:                      Synchronous
  Cache Speed:                            Unknown
  Error Correction Type:                  Parity
  Maximum Cache Size:                     24 KBytes
  Installed Cache Size:                   24 KBytes
  Cache Associativity:                    Unknown

L1 Cache ------------------------------------------------------------------

  Socket Designation:                     L1 Cache
  Cache State:                            Enabled
  Cache Type:                             Internal, Instruction
  Cache Scheme:                           Write-Back
  Supported SRAM Type:                    Synchronous
  Current SRAM Type:                      Synchronous
  Cache Speed:                            Unknown
  Error Correction Type:                  Parity
  Maximum Cache Size:                     32 KBytes
  Installed Cache Size:                   32 KBytes
  Cache Associativity:                    8-way Set-Associative

L2 Cache ------------------------------------------------------------------

  Socket Designation:                     L2 Cache
  Cache State:                            Enabled
  Cache Type:                             Internal, Unified
  Cache Scheme:                           Write-Back
  Supported SRAM Type:                    Synchronous
  Current SRAM Type:                      Synchronous
  Cache Speed:                            Unknown
  Error Correction Type:                  Single-bit ECC
  Maximum Cache Size:                     1024 KBytes
  Installed Cache Size:                   1024 KBytes
  Cache Associativity:                    16-way Set-Associative

On Board Device -----------------------------------------------------------

  Device Description:                     Intel(R) Extreme Graphics 3 Controller
  Device Type:                            Video Adapter
  Device Status:                          Enabled

On Board Device -----------------------------------------------------------

  Device Description:                     Intel(R) Azalia Audio Device
  Device Type:                            Audio Device
  Device Status:                          Enabled

OEM Strings ---------------------------------------------------------------






System Configuration Options ----------------------------------------------


BIOS Language -------------------------------------------------------------








System Event Log ----------------------------------------------------------


Portable Battery ----------------------------------------------------------

  Battery Location:                       Rear
  Battery Manufacturer:                   Intel Corp.
  Manufacture Date:                       2010
  Serial Number:                          1.0
  Device Name:                            Smart Battery
  Device Chemistry:                       Unknown
  Design Capacity:                        Unknown
  Design Voltage:                         Unknown
  SBDS Verison Number:                    V1.0
  Max. Error in Battery Data:             Unknown
  SBDS Serial Number:                     Unknown
  SBDS Manufacture Date:                  Unknown
  SBDS Device Chemistry:                  Lithium-Ion

Hardware Security ---------------------------------------------------------

  Power-on Password:                      Disabled
  Keyboard Password:                      Disabled
  Administrator Password:                 Disabled
  Front Panel Reset:                      Disabled

System Boot Information ---------------------------------------------------

  Boot Status:                            No error occured

Memory Devices ------------------------------------------------------------


Physical Memory Array -----------------------------------------------------

  Array Location:                         System board
  Array Use:                              System memory
  Error Detecting Method:                 None
  Memory Capacity:                        8 GBytes
  Memory Devices:                         2

Memory Device -------------------------------------------------------------

  Total Width:                            8 bits
  Data Width:                             8 bits
  Device Size:                            2048 MBytes
  Device Form Factor:                     SODIMM
  Device Locator:                         ChannelA-DIMM0
  Bank Locator:                           BANK 0
  Device Type:                            DDR3 SDRAM
  Device Type Detail:                     Synchronous
  Memory Speed:                           1600 MHz
  Manufacturer:                           Hynix/Hyundai
  Serial Number:                          00000000
  Part Number:                                              
  Asset Tag:                              9876543210

Memory Device -------------------------------------------------------------

  Total Width:                            8 bits
  Data Width:                             8 bits
  Device Size:                            2048 MBytes
  Device Form Factor:                     SODIMM
  Device Locator:                         ChannelB-DIMM0
  Bank Locator:                           BANK 1
  Device Type:                            DDR3 SDRAM
  Device Type Detail:                     Synchronous
  Memory Speed:                           1600 MHz
  Manufacturer:                           Hynix/Hyundai
  Serial Number:                          00000000
  Part Number:                                              
  Asset Tag:                              9876543210

Memory Array Mapped Address -----------------------------------------------

  Starting Address:                       00000000
  Ending Address:                         003FFFFF
  Partition Width:                        2

Port Connectors -----------------------------------------------------------


Keyboard Port -------------------------------------------------------------

  Port Type:                              Keyboard Port
  Internal Reference:                     None
  Internal Connector Type:                None
  External Reference:                     Keyboard
  External Connector Type:                PS/2

Mouse Port ----------------------------------------------------------------

  Port Type:                              Mouse Port
  Internal Reference:                     None
  Internal Connector Type:                None
  External Reference:                     Mouse
  External Connector Type:                PS/2

Serial Port 16550A Compatible ---------------------------------------------

  Port Type:                              Serial Port 16550A Compatible
  Internal Reference:                     None
  Internal Connector Type:                Unknown
  External Reference:                     COM 1
  External Connector Type:                DB-9 pin male

Video Port ----------------------------------------------------------------

  Port Type:                              Video Port
  Internal Reference:                     None
  Internal Connector Type:                Unknown
  External Reference:                     Video
  External Connector Type:                DB-15 pin female

Video Port ----------------------------------------------------------------

  Port Type:                              Video Port
  Internal Reference:                     None
  Internal Connector Type:                Unknown
  External Reference:                     HDMI
  External Connector Type:                None

USB -----------------------------------------------------------------------

  Port Type:                              USB
  Internal Reference:                     None
  Internal Connector Type:                None
  External Reference:                     USB3.0 - 1#
  External Connector Type:                Access Bus (USB)

USB -----------------------------------------------------------------------

  Port Type:                              USB
  Internal Reference:                     None
  Internal Connector Type:                None
  External Reference:                     USB3.0 - 2#
  External Connector Type:                Access Bus (USB)

USB -----------------------------------------------------------------------

  Port Type:                              USB
  Internal Reference:                     None
  Internal Connector Type:                None
  External Reference:                     USB2.0 - 3#
  External Connector Type:                Access Bus (USB)

USB -----------------------------------------------------------------------

  Port Type:                              USB
  Internal Reference:                     None
  Internal Connector Type:                None
  External Reference:                     USB2.0 - 4#
  External Connector Type:                Access Bus (USB)

Network Port --------------------------------------------------------------

  Port Type:                              Network Port
  Internal Reference:                     None
  Internal Connector Type:                None
  External Reference:                     Ethernet
  External Connector Type:                RJ-45

SATA ----------------------------------------------------------------------

  Port Type:                              SATA
  Internal Reference:                     None
  Internal Connector Type:                SAS/SATA Plug Receptacle
  External Reference:                     SATA Port 1 Direct Connect
  External Connector Type:                None

SATA ----------------------------------------------------------------------

  Port Type:                              SATA
  Internal Reference:                     SATA Port 2
  Internal Connector Type:                SAS/SATA Plug Receptacle
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     None
  Internal Connector Type:                None
  External Reference:                     AC IN
  External Connector Type:                Unknown

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     TPM/PORT 80
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     HDA 2X8 Header
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     HDA 8Pin Header
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     HDA HDMI
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     Scan Matrix Keyboard
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     SPI Program
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     LPC Hot Docking
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     LPC SIDE BAND
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     LPC Slot
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     SATA Power
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     FP Header
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     ATX Power
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     BATT B
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     BATT A
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     CPU Fan
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     XDP
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     Memory Slot 1
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     Memory Slot 2
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

Port Connector ------------------------------------------------------------

  Port Type:                              Unknown
  Internal Reference:                     FAN PWR
  Internal Connector Type:                Unknown
  External Reference:                     None
  External Connector Type:                None

System Slots --------------------------------------------------------------


PCI-Express 1 X4 ----------------------------------------------------------

  Slot Designation:                       PCI-Express 1 X4
  Slot Type:                              PCI Express
  Slot Usage:                             Empty
  Slot Data Bus Width:                    4x / x4
  Slot Length:                            Short

PCI-Express 2 X1 ----------------------------------------------------------

  Slot Designation:                       PCI-Express 2 X1
  Slot Type:                              PCI Express
  Slot Usage:                             Empty
  Slot Data Bus Width:                    1x / x1
  Slot Length:                            Short

PCI-Express 3 X1 ----------------------------------------------------------

  Slot Designation:                       PCI-Express 3 X1
  Slot Type:                              PCI Express
  Slot Usage:                             In use
  Slot Data Bus Width:                    1x / x1
  Slot Length:                            Short

PCI-Express 4 X1 ----------------------------------------------------------

  Slot Designation:                       PCI-Express 4 X1
  Slot Type:                              PCI Express
  Slot Usage:                             Empty
  Slot Data Bus Width:                    1x / x1
  Slot Length:                            Short

Intel ME ------------------------------------------------------------------

 [Intel Manageability Engine Features]
  Intel ME Version:                       2.0, Build 2092, Hot Fix 2
  Intel ME Recovery Image Version:        2.0, Build 2092, Hot Fix 2
  Intel ME FITC Version:                  2.0, Build 2092, Hot Fix 2
 [ME Firmware Capabilities]
  Full Network Manageability:             Not Capable
  Standard Network Manageability:         Not Capable
  Manageability (AMT):                    Not Capable
  Remote Wake Technology:                 Not Capable
  Quiet System Technology:                Not Capable
  Intel Anti-Theft:                       Not Capable
  Capability Licensing Service:           Capable
  Virtualization Engine:                  Not Capable
  Power Sharing Technology (MPC):         Not Capable
  ICC Over Clocking:                      Not Capable
  Protected Audio Video Path (PAVP):      Capable
  Identity Protection Technology (IPT):   Not Capable
  Remote PC Assist (RPAT):                Not Capable
  IPV6:                                   Not Capable
  KVM Remote Control:                     Not Capable
  Outbreak Containment Heuristic (OCH):   Not Capable
  Virtual LAN (VLAN):                     Capable
  Cipher Transport Layer (TLS):           Not Capable
  Wireless LAN (WLAN):                    Not Capable
  Platform Trust Technology (PTT):        Capable
  Near Field Communication (NFC):         Capable
 [ME Firmware Feature State]
  Full Network Manageability:             Disabled
  Standard Network Manageability:         Disabled
  Manageability (AMT):                    Disabled
  Remote Wake Technology:                 Not Capable
  Quiet System Technology:                Not Capable
  Intel Anti-Theft:                       Disabled
  Capability Licensing Service:           Enabled
  Virtualization Engine:                  Disabled
  Power Sharing Technology (MPC):         Disabled
  ICC Over Clocking:                      Disabled
  Protected Audio Video Path (PAVP):      Enabled
  Identity Protection Technology (IPT):   Not Capable
  Remote PC Assist (RPAT):                Disabled
  IPV6:                                   Disabled
  KVM Remote Control:                     Disabled
  Outbreak Containment Heuristic (OCH):   Disabled
  Virtual LAN (VLAN):                     Capable
  Cipher Transport Layer (TLS):           Disabled
  Wireless LAN (WLAN):                    Disabled
  Platform Trust Technology (PTT):        Enabled
  Near Field Communication (NFC):         Enabled
 [ME Firmware Platform Type]
  SKU:                                    Regular SKU
  Host ME Region Flash Protection Override (HMRFPO) Status: Disabled

Memory --------------------------------------------------------------------

 [General information]
  Total Memory Size:                      3950 MBytes
  Total Memory Size [MB]:                 3950
 [Current Performance Settings]
  Current Memory Clock:                   800.0 MHz
  Current Timing (tCAS-tRCD-tRP-tRAS):    11-11-11-28
  Memory Runs At:                         Dual-Channel
  Command Rate:                           1T
  Read to Read Delay (tRD_RD) Different Rank: 7T
  Write to Write Delay (tWR_WR) Different Rank: 6T
  Read to Write Delay (tRD_WR) Same Rank: 10T
  Read to Write Delay (tRD_WR) Different Rank: 10T
  Read to Write Delay (tRD_WR) Different DIMM: 10T
  Write to Read Delay (tWR_RD) Same Rank (tWTR): 19T
  Write to Read Delay (tWR_RD) Different Rank: 7T
  Read to Precharge Delay (tRTP):         7T
  Write to Precharge Delay (tWTP):        25T
  Write Recovery Time (tWR):              14T
  RAS# to RAS# Delay (tRRD):              6T
  Four Activate Window (tFAW):            32T

Bus -----------------------------------------------------------------------


PCI Bus #0 ----------------------------------------------------------------


Intel Cherryview/Braswell SoC - Transaction Router ------------------------

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - Transaction Router
  Original Device Name:                   Intel Cherryview/Braswell SoC - Transaction Router
  Device Class:                           Host-to-PCI Bridge
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:0:0
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_2280&SUBSYS_390517AA&REV_35
 [System Resources]
  Interrupt Line:                         N/A
  Interrupt Pin:                          N/A
 [Features]
  Bus Mastering:                          Enabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Not Capable
 [Driver Information]
  Driver Manufacturer:                    (Standardsystemgeräte)
  Driver Description:                     PCI Standard-Host-CPU-Brücke
  Driver Provider:                        Microsoft
  Driver Version:                         10.0.15063.0
  Driver Date:                            21-Jun-2006
  DeviceInstanceId                        PCI\VEN_8086&DEV_2280&SUBSYS_390517AA&REV_35\3&11583659&1&00

Intel Cherryview/Braswell SoC - Integrated Graphics Controller ------------

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - Integrated Graphics Controller
  Original Device Name:                   Intel Cherryview/Braswell SoC - Integrated Graphics Controller
  Device Class:                           VGA Compatible Adapter
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:2:0
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35
 [System Resources]
  Interrupt Line:                         N/A
  Interrupt Pin:                          INTA#
  Memory Base Address 0                   90000000
  Memory Base Address 2                   80000000
  I/O Base Address 4                      1000
 [Features]
  Bus Mastering:                          Enabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Not Capable
 [Driver Information]
  Driver Manufacturer:                    Intel Corporation
  Driver Description:                     Intel(R) HD Graphics
  Driver Provider:                        Intel Corporation
  Driver Version:                         20.19.15.4568
  Driver Date:                            16-Dec-2016
  DeviceInstanceId                        PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35\3&11583659&1&10

Intel Cherryview/Braswell SoC - P-Unit ------------------------------------

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - P-Unit
  Original Device Name:                   Intel Cherryview/Braswell SoC - P-Unit
  Device Class:                           Unknown Data Acquisition/Signal Processing Controller
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:11:0
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_22DC&SUBSYS_390517AA&REV_35
 [System Resources]
  Interrupt Line:                         IRQ21
  Interrupt Pin:                          INTA#
  Memory Base Address 0                   91314000
 [Features]
  Bus Mastering:                          Enabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Not Capable
 [Driver Information]
  Driver Manufacturer:                    Intel
  Driver Description:                     Intel(R) Dynamic Platform and Thermal Framework Processor Participant
  Driver Provider:                        Intel
  Driver Version:                         8.1.10603.192
  Driver Date:                            07-Aug-2015
  DeviceInstanceId                        PCI\VEN_8086&DEV_22DC&SUBSYS_390517AA&REV_35\3&11583659&1&58

Intel Cherryview/Braswell SoC - Storage Control Cluster - SD Controller ---

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - Storage Control Cluster - SD Controller
  Original Device Name:                   Intel Cherryview/Braswell SoC - Storage Control Cluster - SD Controller
  Device Class:                           SD Host Controller
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:18:0
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_2296&SUBSYS_390517AA&REV_35
 [System Resources]
  Interrupt Line:                         IRQ18
  Interrupt Pin:                          INTA#
  Memory Base Address 0                   91315000
 [Features]
  Bus Mastering:                          Enabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Not Capable
 [Driver Information]
  Driver Manufacturer:                    SDA-Standard konformer SD-Hostcontrollerhersteller
  Driver Description:                     SDA-Standard konformer SD-Hostcontroller
  Driver Provider:                        Microsoft
  Driver Version:                         10.0.15063.0
  Driver Date:                            21-Jun-2006
  DeviceInstanceId                        PCI\VEN_8086&DEV_2296&SUBSYS_390517AA&REV_35\3&11583659&1&90

Intel Cherryview/Braswell SoC - SATA AHCI Controller ----------------------

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - SATA AHCI Controller
  Original Device Name:                   Intel Cherryview/Braswell SoC - SATA AHCI Controller
  Device Class:                           SATA AHCI Controller
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:19:0
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_22A3&SUBSYS_390517AA&REV_35
 [System Resources]
  Interrupt Line:                         N/A
  Interrupt Pin:                          INTA#
  I/O Base Address 4                      1060
  Memory Base Address 5                   9131A000
 [Features]
  Bus Mastering:                          Enabled
  Running At 66 MHz:                      Capable
  Fast Back-to-Back Transactions:         Capable
 [SATA Host Controller]
  Interface Speed Supported:              Gen3 6.0 Gbps
  Number Of Ports:                        2
  External SATA Support:                  Not Capable
  Aggressive Link Power Management:       Not Capable
  Staggered Spin-up:                      Not Capable
  Mechanical Presence Switch:             Not Capable
  Command Queue Acceleration:             Capable
  64-bit Addressing:                      Capable
  AHCI Status:                            Enabled
  AHCI Version:                           1.31
  Ports Implemented:                      0, 1
 [SATA Port#0]
  Port Status:                            Device Present, Phy communication established
  Current Interface Speed:                Gen3 6.0 Gbps
  External SATA Port:                     Not Capable
  Hot Plug:                               Not Capable
  Device Type:                            SATA
 [SATA Port#1]
  Port Status:                            Phy in offline mode
  External SATA Port:                     Not Capable
  Hot Plug:                               Not Capable
 [Driver Information]
  Driver Manufacturer:                    Standardmäßiger SATA AHCI- Controller
  Driver Description:                     Standardmäßiger SATA AHCI- Controller
  Driver Provider:                        Microsoft
  Driver Version:                         10.0.15063.0
  Driver Date:                            21-Jun-2006
  DeviceInstanceId                        PCI\VEN_8086&DEV_22A3&SUBSYS_390517AA&REV_35\3&11583659&1&98

Intel Cherryview/Braswell SoC - USB 3.0 xHCI Controller -------------------

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - USB 3.0 xHCI Controller
  Original Device Name:                   Intel Cherryview/Braswell SoC - USB 3.0 xHCI Controller
  Device Class:                           USB xHCI Controller
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:20:0
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_22B5&SUBSYS_390517AA&REV_35
 [System Resources]
  Interrupt Line:                         N/A
  Interrupt Pin:                          INTA#
  Memory Base Address 0                   91300000
 [Features]
  Bus Mastering:                          Disabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Capable
  USB Version Supported:                  3.0
 [Driver Information]
  Driver Manufacturer:                    Generischer USB-xHCI-Hostcontroller
  Driver Description:                     USB-xHCI-kompatibler Hostcontroller
  Driver Provider:                        Microsoft
  Driver Version:                         10.0.15063.296
  Driver Date:                            27-Apr-2017
  DeviceInstanceId                        PCI\VEN_8086&DEV_22B5&SUBSYS_390517AA&REV_35\3&11583659&1&A0

USB Root Hub --------------------------------------------------------------


[Port1] : No Device Connected ---------------------------------------------


[Port2] : No Device Connected ---------------------------------------------


[Port3] : Intel Bluetooth V4.0 Module -------------------------------------

 [Device Information]
  Device Manufacturer:                    Intel
  Product Name:                           Intel Bluetooth V4.0 Module
  Serial Number:                          -
  USB Version Supported:                  2.00
  USB Device Speed:                       USB 1.1 Full-speed
  Driver Description:                     Intel(R) Wireless Bluetooth(R)
  Hardware ID:                            USB\VID_8087&PID_07DC
 [Driver Information]
  Driver Manufacturer:                    Intel Corporation
  Driver Description:                     Intel(R) Wireless Bluetooth(R)
  Driver Provider:                        Intel Corporation
  Driver Version:                         19.10.1635.483
  Driver Date:                            02-Sep-2016
  DeviceInstanceId                        USB\VID_8087&PID_07DC\5&196FB8FE&0&3

[Port4] : No Device Connected ---------------------------------------------


[Port5] : USB-Verbundgerät ------------------------------------------------

 [Device Information]
  Device Manufacturer:                    -
  Product Name:                           -
  Serial Number:                          -
  USB Version Supported:                  2.00
  USB Device Speed:                       USB 2.0 High-speed
  Driver Description:                     USB-Verbundgerät
  Hardware ID:                            USB\VID_5986&PID_0673
 [Driver Information]
  Driver Manufacturer:                    (Standard-USB-Hostcontroller)
  Driver Description:                     USB-Verbundgerät
  Driver Provider:                        Microsoft
  Driver Version:                         10.0.15063.0
  Driver Date:                            21-Jun-2006
  DeviceInstanceId                        USB\VID_5986&PID_0673\200901010001

[Port6] : No Device Connected ---------------------------------------------


[Port7] : No Device Connected ---------------------------------------------


[Port8] : No Device Connected ---------------------------------------------


[Port9] : No Device Connected ---------------------------------------------


[Port10] : No Device Connected --------------------------------------------


[Port11] : No Device Connected --------------------------------------------


[Port12] : No Device Connected --------------------------------------------


[Port13] : No Device Connected --------------------------------------------


Intel Cherryview/Braswell SoC - Trusted Execution Engine ------------------

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - Trusted Execution Engine
  Original Device Name:                   Intel Cherryview/Braswell SoC - Trusted Execution Engine
  Device Class:                           Unknown En/Decryption
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:26:0
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_2298&SUBSYS_390517AA&REV_35
 [System Resources]
  Interrupt Line:                         N/A
  Interrupt Pin:                          INTA#
  Memory Base Address 0                   91200000
  Memory Base Address 1                   91100000
 [Features]
  Bus Mastering:                          Enabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Not Capable
 [Driver Information]
  Driver Manufacturer:                    Intel
  Driver Description:                     Intel(R) Trusted Execution Engine Interface 
  Driver Provider:                        Intel
  Driver Version:                         2.0.0.1094
  Driver Date:                            11-Oct-2015
  DeviceInstanceId                        PCI\VEN_8086&DEV_2298&SUBSYS_390517AA&REV_35\3&11583659&1&D0

Intel Cherryview/Braswell SoC - HD Audio Controller -----------------------

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - HD Audio Controller
  Original Device Name:                   Intel Cherryview/Braswell SoC - HD Audio Controller
  Device Class:                           Mixed mode device
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:27:0
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_2284&SUBSYS_390517AA&REV_35
 [System Resources]
  Interrupt Line:                         IRQ22
  Interrupt Pin:                          INTA#
  Memory Base Address 0                   91310000
 [Features]
  Bus Mastering:                          Enabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Not Capable
 [Driver Information]
  Driver Manufacturer:                    Microsoft
  Driver Description:                     High Definition Audio-Controller
  Driver Provider:                        Microsoft
  Driver Version:                         10.0.15063.0
  Driver Date:                            17-Mar-2017
  DeviceInstanceId                        PCI\VEN_8086&DEV_2284&SUBSYS_390517AA&REV_35\3&11583659&1&D8

Intel Cherryview/Braswell SoC - PCI Express Root Port 1 -------------------

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - PCI Express Root Port 1
  Original Device Name:                   Intel Cherryview/Braswell SoC - PCI Express Root Port 1
  Device Class:                           PCI-to-PCI Bridge
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:28:0
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_22C8&SUBSYS_00000000&REV_35
 [PCI Express]
  Version:                                2.0
  Maximum Link Width:                     1x
  Current Link Width:                     Not negotiated
  Maximum Link Speed:                     5.0 GT/s
  Current Link Speed:                     2.5 GT/s
  Device/Port Type:                       Root Port of PCI Express Root Complex
  Slot Implemented:                       Yes
  Hot-Plug:                               Capable
  Hot-Plug Surprise:                      Capable
  Emergency Power Reduction:              Not Supported
  Active State Power Management (ASPM) Support: L0s and L1
  Active State Power Management (ASPM) Status: Disabled
  L0s Exit Latency:                       512 ns - 1 us
  L1 Exit Latency:                        2 - 4 us
 [System Resources]
  Interrupt Line:                         N/A
  Interrupt Pin:                          N/A
 [Features]
  Bus Mastering:                          Enabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Not Capable
 [Driver Information]
  Driver Manufacturer:                    (Standardsystemgeräte)
  Driver Description:                     PCI-zu-PCI-Brücke
  Driver Provider:                        Microsoft
  Driver Version:                         10.0.15063.0
  Driver Date:                            21-Jun-2006
  DeviceInstanceId                        PCI\VEN_8086&DEV_22C8&SUBSYS_390517AA&REV_35\3&11583659&1&E0

PCI Express x1 Bus #1 -----------------------------------------------------


Intel Cherryview/Braswell SoC - PCI Express Root Port 3 -------------------

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - PCI Express Root Port 3
  Original Device Name:                   Intel Cherryview/Braswell SoC - PCI Express Root Port 3
  Device Class:                           PCI-to-PCI Bridge
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:28:2
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_22CC&SUBSYS_00000000&REV_35
 [PCI Express]
  Version:                                1.1
  Maximum Link Width:                     1x
  Current Link Width:                     1x
  Maximum Link Speed:                     2.5 GT/s
  Current Link Speed:                     2.5 GT/s
  Device/Port Type:                       Root Port of PCI Express Root Complex
  Slot Implemented:                       Yes
  Hot-Plug:                               Not Capable
  Hot-Plug Surprise:                      Not Capable
  Slot Power Limit:                       10.000 W
  Emergency Power Reduction:              Not Supported
  Active State Power Management (ASPM) Support: L0s and L1
  Active State Power Management (ASPM) Status: Disabled
  L0s Exit Latency:                       256 - 512 ns
  L1 Exit Latency:                        8 - 16 us
 [System Resources]
  Interrupt Line:                         N/A
  Interrupt Pin:                          INTC#
 [Features]
  Bus Mastering:                          Enabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Not Capable
 [Driver Information]
  Driver Manufacturer:                    (Standardsystemgeräte)
  Driver Description:                     PCI-zu-PCI-Brücke
  Driver Provider:                        Microsoft
  Driver Version:                         10.0.15063.0
  Driver Date:                            21-Jun-2006
  DeviceInstanceId                        PCI\VEN_8086&DEV_22CC&SUBSYS_390517AA&REV_35\3&11583659&1&E2

PCI Express x1 Bus #2 -----------------------------------------------------


Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter -------------------------

 [General Information]
  Device Name:                            Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter
  Original Device Name:                   Intel Wireless 3160 WiFi Adapter
  Device Class:                           Unknown Network Adapter
  Revision ID:                            93
  PCI Address (Bus:Device:Function) Number: 2:0:0
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93
 [PCI Express]
  Version:                                1.1
  Maximum Link Width:                     1x
  Current Link Width:                     1x
  Maximum Link Speed:                     2.5 GT/s
  Current Link Speed:                     2.5 GT/s
  Device/Port Type:                       PCI Express Endpoint
  Slot Implemented:                       No
  Emergency Power Reduction:              Not Supported
  Active State Power Management (ASPM) Support: L0s and L1
  Active State Power Management (ASPM) Status: Disabled
  L0s Exit Latency:                       2 - 4 us
  L1 Exit Latency:                        16 - 32 us
 [System Resources]
  Interrupt Line:                         N/A
  Interrupt Pin:                          INTA#
  Memory Base Address 0                   91000000
 [Features]
  Bus Mastering:                          Enabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Not Capable
 [Driver Information]
  Driver Manufacturer:                    Intel Corporation
  Driver Description:                     Intel(R) Dual Band Wireless-AC 3160
  Driver Provider:                        Intel
  Driver Version:                         18.12.0.3
  Driver Date:                            16-Jul-2015
  DeviceInstanceId                        PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93\4&2EAAB296&0&00E2

Intel Cherryview/Braswell SoC - Platform Controller Unit - LPC ------------

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - Platform Controller Unit - LPC
  Original Device Name:                   Intel Cherryview/Braswell SoC - Platform Controller Unit - LPC
  Device Class:                           PCI-to-ISA Bridge
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:31:0
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_229C&SUBSYS_390517AA&REV_35
 [System Resources]
  Interrupt Line:                         N/A
  Interrupt Pin:                          N/A
 [Features]
  Bus Mastering:                          Enabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Not Capable
 [Driver Information]
  Driver Manufacturer:                    (Standardsystemgeräte)
  Driver Description:                     PCI Standard-ISA-Brücke
  Driver Provider:                        Microsoft
  Driver Version:                         10.0.15063.0
  Driver Date:                            21-Jun-2006
  DeviceInstanceId                        PCI\VEN_8086&DEV_229C&SUBSYS_390517AA&REV_35\3&11583659&1&F8

Intel Cherryview/Braswell SoC - SMBus Controller --------------------------

 [General Information]
  Device Name:                            Intel Cherryview/Braswell SoC - SMBus Controller
  Original Device Name:                   Intel Cherryview/Braswell SoC - SMBus Controller
  Device Class:                           SMBus (System Management Bus)
  Revision ID:                            35
  PCI Address (Bus:Device:Function) Number: 0:31:3
  PCI Latency Timer:                      0
  Hardware ID:                            PCI\VEN_8086&DEV_2292&SUBSYS_390517AA&REV_35
 [System Resources]
  Interrupt Line:                         N/A
  Interrupt Pin:                          INTB#
  Memory Base Address 0                   9131A800
  I/O Base Address 4                      1040
 [Features]
  Bus Mastering:                          Disabled
  Running At 66 MHz:                      Not Capable
  Fast Back-to-Back Transactions:         Capable
 [Driver Information]
  Driver Manufacturer:                    INTEL
  Driver Description:                     Intel(R) Celeron(R)/Pentium(R) SM Bus Controller - 2292
  Driver Provider:                        INTEL
  Driver Version:                         10.1.1.11
  Driver Date:                            17-Aug-2015
  DeviceInstanceId                        PCI\VEN_8086&DEV_2292&SUBSYS_390517AA&REV_35\3&11583659&1&FB

Video Adapter -------------------------------------------------------------


Intel HD Graphics 400/405 -------------------------------------------------

 [Video chipset]
  Video Chipset:                          Intel HD Graphics 400/405
  Video Chipset Codename:                 Braswell
  Video Memory:                           1024 MBytes
 [Video Card]
  Video Card:                             Intel Cherryview/Braswell SoC - Integrated Graphics Controller [Lenovo]
  Video Bus:                              Integrated
  Video RAMDAC:                           Internal
  Video BIOS Version:                     Unknown
 [Performance]
  Processor Clock:                        400.0 MHz
  Hardware ID:                            PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35
  PCI Location (Bus:Dev:Fnc):             0:02:0
 [Driver Information]
  Driver Manufacturer:                    Intel Corporation
  Driver Description:                     Intel(R) HD Graphics
  Driver Provider:                        Intel Corporation
  Driver Version:                         20.19.15.4568
  Driver Date:                            16-Dec-2016
  DeviceInstanceId                        PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35\3&11583659&1&10

Monitor -------------------------------------------------------------------


Chi Mei [Unknown Model: CMN1487] ------------------------------------------

 [General information]
  Monitor Name:                           Chi Mei [Unknown Model: CMN1487]
  Monitor Name (Manuf):                   N140BGE-EB3  CMN          N140BGE-EB3  
  Serial Number:                          Unknown
  Date Of Manufacture:                    Week: 40, Year: 2013
  Monitor Hardware ID:                    Monitor\CMN1487
  Max. Vertical Size:                     17 cm
  Max. Horizontal Size:                   31 cm
 [Advanced parameters]
  Input Signal:                           Digital
  Color Bit Depth:                        6 Bits per Primary Color
  Digital Video Interface Standard Supported: DisplayPort
  Display Type:                           Monochrome/grey scale
  Gamma Factor:                           2.20
 [DPMS Modes]
  Standby:                                Not Supported
  Suspend:                                Not Supported
  Active Off:                             Not Supported
  Standard Colour Space:                  Not Supported
  Preferred Timing Mode:                  Supported
  Default GTF Supported:                  Not Supported
  DFP 1.x Compatible:                     Yes
 [Supported Video Modes]
  1366 x 768                              309 x 173 mm, Pixel Clock 76.42 MHz

Drives --------------------------------------------------------------------


Floppy Drives -------------------------------------------------------------


Unknown -------------------------------------------------------------------


Unknown -------------------------------------------------------------------


(S)ATA/ATAPI Drives -------------------------------------------------------


LITEON CV3-8D128 ----------------------------------------------------------

 [General Information]
  Drive Controller:                       Serial ATA 6Gb/s @ 6Gb/s
  Drive Model:                            LITEON CV3-8D128
  Drive Revision:                         T876201
  Drive Serial Number:                    SD0L02318L1TH6810GAA
  World Wide Name:                        50023031B0DCD8
  Drive Capacity:                         122,104 MBytes (128 GB)
  Drive Capacity [MB]:                    122104
  Media Rotation Rate:                    SSD Drive (Non-rotating)
  ATA Major Version Supported:            ATA/ATAPI-5, ATA/ATAPI-6, ATA/ATAPI-7, ATA8-ACS, ACS-2
  ATA Minor Version Supported:            ATA/ATAPI-7 T13 1532D version 4a
  ATA Transport Version Supported:        SATA 3.1
 [Drive Geometry]
  Number of Cylinders:                    16383
  Number of Heads:                        16
  Sectors Per Track:                      63
  Number of Sectors:                      16514064
  Total 32-bit LBA Sectors:               250069680
  Total 48-bit LBA Sectors:               250069680
  Logical Sector Size:                    512 Bytes
  Cache Buffer Size:                      N/A
 [Transfer Modes]
  Sectors Per Interrupt:                  Total: 1, Active: 0
  Max. PIO Transfer Mode:                 4
  Multiword DMA Mode:                     Total: 2, Active: -
  Singleword DMA Mode:                    Total: -, Active: -
  Ultra-DMA Mode:                         Total: 6 (ATA-133), Active: 6 (ATA-133)
  Max. Multiword DMA Transfer Rate:       16.7 MBytes/s
  Max. PIO with IORDY Transfer Rate:      16.7 MBytes/s
  Max. PIO w/o IORDY Transfer Rate:       16.7 MBytes/s
  Native Command Queuing:                 Supported, Max. Depth: 32
  TRIM Command:                           Supported (Deterministic Read After TRIM, Words = 0)
 [Device flags]
  Fixed Drive:                            Not Present
  Removable Drive:                        Not Present
  Magnetic Storage:                       Present
  LBA Mode:                               Supported
  DMA Mode:                               Supported
  IORDY:                                  Supported
  IORDY Disableable:                      Supported
 [Features]
  Write Cache:                            Present, Active
  S.M.A.R.T. Feature:                     Present, Active
  Security Feature:                       Present, Inactive
  Removable Media Feature:                Not Present, Disabled
  Power Management:                       Present, Active
  Advanced Power Management:              Not Present, Inactive
  Packet Interface:                       Not Present, Disabled
  Look-Ahead Buffer:                      Present, Active
  Host Protected Area:                    Present, Enabled
  Power-Up In Standby:                    Not Suppported, Inactive
  Automatic Acoustic Management:          Not Suppported, Inactive
  48-bit LBA:                             Supported, Active
  Host-Initiated Link Power Management:   Not Supported
  Device-Initiated Link Power Management: Supported, Disabled
  In-Order Data Delivery:                 Not Supported
  Hardware Feature Control:               Not Supported
  Software Settings Preservation:         Supported, Enabled
  NCQ Autosense:                          Not Supported
  Link Power State Device Sleep:          Supported, Disabled
  Hybrid Information Feature:             Not Supported
  Rebuild Assist:                         Not Supported
  Power Disable:                          Not Supported
  All Write Cache Non-Volatile:           Not Supported
  Extended Number of User Addressable Sectors: Not Supported
  CFast Specification:                    Not Supported
  NCQ Priority Information:               Not Supported
  Host Automatic Partial to Slumber Transitions: Not Supported
  Device Automatic Partial to Slumber Transitions: Not Supported
  NCQ Streaming:                          Not Supported
  NCQ Queue Management Command:           Not Supported
  DevSleep to Reduced Power State:        Supported
  Extended Power Conditions Feature:      Not Supported
  Sense Data Reporting Feature:           Not Supported
  Free-Fall Control Feature:              Not Supported
  Write-Read-Verify Feature:              Not Supported
 [Security]
  Security Feature:                       Supported
  Security Status:                        Disabled
  Security Locked:                        Disabled
  Security Frozen:                        Enabled
  Enhanced Security Erase:                Supported
  Sanitize Feature:                       Not Supported
  Sanitize Device - Crypto Scramble:      Not Supported
  Sanitize Device - Overwrite:            Not Supported
  Sanitize Device - Block Erase:          Not Supported
  Sanitize Device - Antifreeze Lock:      Not Supported
  Device Encrypts All User Data:          Not Supported
  Trusted Computing:                      Not Supported
 [Self-Monitoring, Analysis and Reporting Technology (S.M.A.R.T.)]
  [05] Reallocated Sector Count:          100/Always OK, Worst: 100
  [09] Power-On Hours/Cycle Count:        100/Always OK, Worst: 100 (220 hours / 9.2 days)
  [0C] Power Cycle Count:                 100/Always OK, Worst: 100 (Data = 321,0)
  [AA] Grown Failing:                     100/Always OK, Worst: 100
  [AB] Program Fail Block Count:          100/Always OK, Worst: 100
  [AC] Erase Fail Block Count:            100/Always OK, Worst: 100
  [AD] Wear Leveling Count/Erase Count:   100/Always OK, Worst: 100 (Data = 2,0)
  [AE] Unexpected Power Loss Count:       100/Always OK, Worst: 100 (Data = 3,0)
  [B2] Used Reserved Block Count (Chip):  100/Always OK, Worst: 100
  [B4] Unused Reserved Block Count (Total): 100/10, Worst: 100 (Data = 632,0)
  [B8] End to End Error Detection Count:  100/Always OK, Worst: 100
  [BB] Reported Uncorrectable Errors:     100/Always OK, Worst: 100
  [C2] Temperature                        100/Always OK, Worst: 100 (69.0 °C)
  [C7] UltraDMA/SATA CRC Error Rate:      100/Always OK, Worst: 100
  [E9] Power-On Hours                     100/1, Worst: 100 (Data = 100,0)
  [F1] Lifetime Writes from Host (LBAs Written): 100/Always OK, Worst: 100 (Data = 649,0)
  [F2] Lifetime Reads from Host (LBAs Read): 100/Always OK, Worst: 100 (Data = 873,0)
  [F9] Total NAND Writes:                 100/Always OK, Worst: 100 (Data = 341,0)

Audio ---------------------------------------------------------------------


Intel Cherryview/Braswell SoC - HD Audio Controller -----------------------

  Audio Adapter:                          Intel Cherryview/Braswell SoC - HD Audio Controller
  Audio Controller Hardware ID:           PCI\VEN_8086&DEV_2284&SUBSYS_390517AA&REV_35

Network -------------------------------------------------------------------


Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter -------------------------

 [General information]
  Network Card:                           Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter
  Vendor Description:                     Microsoft
  MAC Address:                            E4-02-9B-AD-B3-3F
 [Capabilities]
  Maximum Link Speed:                     40 Mbps
  Transmit Buffer Size:                   6201344 Bytes
  Receive Buffer Size:                    6201344 Bytes
  Hardware ID:                            PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93
 [Driver Information]
  Driver Manufacturer:                    Intel Corporation
  Driver Description:                     Intel(R) Dual Band Wireless-AC 3160
  Driver Provider:                        Intel
  Driver Version:                         18.12.0.3
  Driver Date:                            16-Jul-2015
  DeviceInstanceId                        PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93\4&2EAAB296&0&00E2

Ports ---------------------------------------------------------------------


Serial Ports --------------------------------------------------------------


Parallel Ports ------------------------------------------------------------


USB -----------------------------------------------------------------------


USB-xHCI-kompatibler Hostcontroller ---------------------------------------


Root Hub ------------------------------------------------------------------


[Port1] : No Device Connected ---------------------------------------------


[Port2] : No Device Connected ---------------------------------------------


[Port3] : Intel Bluetooth V4.0 Module -------------------------------------

 [Device Information]
  Device Manufacturer:                    Intel
  Product Name:                           Intel Bluetooth V4.0 Module
  Serial Number:                          -
  USB Version Supported:                  2.00
  USB Device Speed:                       USB 1.1 Full-speed
  Driver Description:                     Intel(R) Wireless Bluetooth(R)
  Hardware ID:                            USB\VID_8087&PID_07DC
 [Driver Information]
  Driver Manufacturer:                    Intel Corporation
  Driver Description:                     Intel(R) Wireless Bluetooth(R)
  Driver Provider:                        Intel Corporation
  Driver Version:                         19.10.1635.483
  Driver Date:                            02-Sep-2016
  DeviceInstanceId                        USB\VID_8087&PID_07DC\5&196FB8FE&0&3

[Port4] : No Device Connected ---------------------------------------------


[Port5] : USB-Verbundgerät ------------------------------------------------

 [Device Information]
  Device Manufacturer:                    -
  Product Name:                           -
  Serial Number:                          -
  USB Version Supported:                  2.00
  USB Device Speed:                       USB 2.0 High-speed
  Driver Description:                     USB-Verbundgerät
  Hardware ID:                            USB\VID_5986&PID_0673
 [Driver Information]
  Driver Manufacturer:                    (Standard-USB-Hostcontroller)
  Driver Description:                     USB-Verbundgerät
  Driver Provider:                        Microsoft
  Driver Version:                         10.0.15063.0
  Driver Date:                            21-Jun-2006
  DeviceInstanceId                        USB\VID_5986&PID_0673\200901010001

[Port6] : No Device Connected ---------------------------------------------


[Port7] : No Device Connected ---------------------------------------------


[Port8] : No Device Connected ---------------------------------------------


[Port9] : No Device Connected ---------------------------------------------


[Port10] : No Device Connected --------------------------------------------


[Port11] : No Device Connected --------------------------------------------


[Port12] : No Device Connected --------------------------------------------


[Port13] : No Device Connected --------------------------------------------


Smart Battery -------------------------------------------------------------


Battery #0 ----------------------------------------------------------------

 [General Properties]
  Device Name:                            Harris Beach
  Manufacturer Name:                      Intel SR 1
  Serial Number:                          123456789
  Unique ID:                              123456789Intel SR 1Harris Beach
  Chemistry:                              Lithium Ion
  Designed Capacity:                      33060 mWh
  Full Charged Capacity:                  24898 mWh
  Wear Level:                             24.7 %
  Cycle Count:                            47
 [Current Power Status]
  Power Status:                           Charging On AC Power
  Current Capacity:                       20923 mWh (84.0 %)
  Current Voltage:                        8.552 V
  Charge Rate:                            16401 mW
         
Angehängte Dateien
Dateityp: zip FRST.zip (15,2 KB, 8x aufgerufen)

Geändert von losprimeros (24.06.2017 um 14:38 Uhr)

Alt 25.06.2017, 14:54   #2
losprimeros
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Anleitung / Hilfe



Nochmal einzeln zur besseren Übersicht

FRST:

Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 21-06-2017 01
durchgeführt von hesse (Administrator) auf LAPTOP-9CHC4QNU (24-06-2017 13:04:51)
Gestartet von C:\Users\hesse\Desktop
Geladene Profile: hesse (Verfügbare Profile: hesse)
Platform: Windows 10 Home Version 1703 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
() C:\Program Files\Lenovo\LenovoUtility\utility.exe
(Flux Software LLC) C:\Users\hesse\AppData\Local\FluxSoftware\Flux\flux.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files (x86)\Lenovo\System Update\SUService.exe
(Microsoft Corporation) C:\Windows\System32\MusNotificationUx.exe
(Microsoft Corporation) C:\Windows\HelpPane.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Lenovo Group Limited) C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe

==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-01-13] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1410168 2016-01-13] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1410168 2016-01-13] (Realtek Semiconductor)
HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [791848 2016-09-29] ()
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\Run: [f.lux] => C:\Users\hesse\AppData\Local\FluxSoftware\Flux\flux.exe [1024240 2016-12-06] (Flux Software LLC)
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\RunOnce: [Uninstall 17.3.6816.0313\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\hesse\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64"
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\RunOnce: [Uninstall 17.3.6816.0313] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\hesse\AppData\Local\Microsoft\OneDrive\17.3.6816.0313"

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{cac6f97e-a143-4844-b9a2-28bd400435aa}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{fd987693-8ab4-4e75-acec-ec4ac2b4fb57}: [DhcpNameServer] 169.254.73.172

Internet Explorer:
==================
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo15.msn.com/?pc=LCTE
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-06-18] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-06-18] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-01] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-01] (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-05-27] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.)

Chrome: 
=======
CHR HomePage: Default -> hxxps://www.google.de/
CHR StartupUrls: Default -> "hxxps://www.google.de/","hxxp://www.mystartsearch.com/?type=hp&ts=1429435474&from=cor&uid=ST31000524AS_9VPFPKH3"
CHR Session Restore: Default -> ist aktiviert.
CHR Profile: C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default [2017-06-24]
CHR Extension: (ProxFlow) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2017-03-27]
CHR Extension: (Google Präsentationen) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-01-03]
CHR Extension: (Google Docs) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-01-03]
CHR Extension: (Google Drive) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-01-03]
CHR Extension: (Open with Microsoft Office Online Viewer) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcknfcclbcpdeopdopomkdbjmldgdeld [2017-03-27]
CHR Extension: (YouTube) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-01-03]
CHR Extension: (Ecosia Omnibar Redirect (Legacy)) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\clellnciejhoedgepbdilbkdkaoecgpc [2017-05-11]
CHR Extension: (Ecosia) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\eedlgdlajadkbbjoobobefphmfkcchfk [2017-06-06]
CHR Extension: (Google Tabellen) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-01-03]
CHR Extension: (Google Docs Offline) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-01-03]
CHR Extension: (AdBlock) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-06-22]
CHR Extension: (Auto-HD für YouTube™) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\koiaokdomkpjdgniimnkhgbilbjgpeak [2017-03-27]
CHR Extension: (Top Eleven) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljphpjlafmmdmegmfbkacafhbegjfkkn [2017-03-27]
CHR Extension: (Ghostery) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2017-06-02]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09]
CHR Extension: (Google Mail) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-01-03]
CHR Extension: (Chrome Media Router) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-06-15]

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [4122816 2017-06-10] (Microsoft Corporation)
R2 esifsvc; C:\WINDOWS\SysWOW64\esif_uf.exe [1385640 2015-08-07] (Intel Corporation)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [134880 2016-12-27] (ELAN Microelectronics Corp.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373752 2017-05-16] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [887784 2015-09-03] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Datei ist nicht signiert]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Datei ist nicht signiert]
R2 jhi_service; C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [174368 2015-04-21] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-07-09] ()
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [4088608 2016-09-21] (Safer-Networking Ltd.) [Datei ist nicht signiert]
S2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [235984 2016-11-24] (Safer-Networking Ltd.) [Datei ist nicht signiert]
R3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [28544 2016-09-10] ()
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-03-18] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831712 2015-07-09] (Intel® Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [55816 2015-08-13] (Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [53752 2015-08-13] (Intel Corporation)
R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [261624 2015-08-13] (Intel Corporation)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [230144 2016-11-11] (Intel Corporation)
R3 igfxLP; C:\WINDOWS\system32\DRIVERS\igdkmd64lp.sys [7407096 2017-05-16] (Intel Corporation)
R1 MpKsl43a2972f; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6294BDD-C6B5-4EB5-8D28-2F2C5ECC33A0}\MpKsl43a2972f.sys [44928 2017-06-24] (Microsoft Corporation)
R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [4043544 2015-07-16] (Intel Corporation)
R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3057920 2015-10-08] (Realtek Semiconductor Corp.)
S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] ()
R3 TXEIx64; C:\WINDOWS\System32\drivers\TXEIx64.sys [146200 2015-10-15] (Intel Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2017-06-24 13:04 - 2017-06-24 13:05 - 00015374 _____ C:\Users\hesse\Desktop\FRST.txt
2017-06-24 13:01 - 2017-06-24 13:02 - 04110280 _____ C:\Users\hesse\Desktop\AdwCleaner_6.047.exe
2017-06-24 12:59 - 2017-06-24 13:04 - 00000000 ____D C:\FRST
2017-06-24 12:56 - 2017-06-24 12:56 - 02439680 _____ (Farbar) C:\Users\hesse\Desktop\FRST64.exe
2017-06-24 12:48 - 2017-06-24 12:52 - 00000000 ___HD C:\$SysReset
2017-06-24 12:47 - 2017-06-24 12:47 - 00000000 ____D C:\Users\hesse\AppData\Local\DBG
2017-06-15 20:38 - 2017-06-22 02:47 - 00000000 ____D C:\Users\hesse\AppData\LocalLow\Mozilla
2017-06-15 09:40 - 2017-06-15 09:40 - 00001285 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2017-06-15 09:40 - 2017-06-15 09:40 - 00001273 _____ C:\Users\Public\Desktop\Mozilla Thunderbird.lnk
2017-06-15 09:35 - 2017-06-15 09:35 - 00002132 _____ C:\Users\hesse\Desktop\shutdown.lnk
2017-06-15 09:26 - 2017-06-15 09:26 - 00000000 ____D C:\WINDOWS\System32\Tasks\TVT
2017-06-15 09:26 - 2017-06-15 09:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools
2017-06-15 09:25 - 2017-06-15 09:26 - 00000000 ____D C:\ProgramData\Lenovo
2017-06-15 09:25 - 2017-06-15 09:25 - 00000000 ____D C:\Users\hesse\AppData\Local\LenovoServiceBridge
2017-06-15 09:24 - 2017-06-15 09:26 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo
2017-06-15 09:24 - 2017-06-15 09:24 - 02723976 _____ (Lenovo ) C:\Users\hesse\Downloads\LSBSetup.exe
2017-06-15 09:24 - 2017-06-15 09:24 - 00000000 ____D C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2017-06-24 12:52 - 2017-03-18 22:51 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-06-24 01:06 - 2017-03-18 23:03 - 00000000 ___HD C:\Program Files\WindowsApps
2017-06-24 01:06 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-06-20 17:02 - 2016-09-29 04:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2017-06-20 00:27 - 2017-01-03 12:10 - 00002343 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-06-19 23:55 - 2017-05-23 22:50 - 00003290 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-06-19 23:55 - 2017-01-03 12:03 - 00002390 _____ C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-06-19 23:55 - 2017-01-03 12:03 - 00000000 ___RD C:\Users\hesse\OneDrive
2017-06-18 20:21 - 2017-05-23 22:52 - 01958306 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-06-18 20:21 - 2017-03-20 06:35 - 00859952 _____ C:\WINDOWS\system32\perfh007.dat
2017-06-18 20:21 - 2017-03-20 06:35 - 00178552 _____ C:\WINDOWS\system32\perfc007.dat
2017-06-18 20:17 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\NDF
2017-06-18 10:09 - 2017-03-18 23:03 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-06-15 20:07 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\rescache
2017-06-15 09:40 - 2017-01-03 13:35 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2017-06-15 09:40 - 2017-01-03 13:35 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-06-15 09:38 - 2017-02-26 16:36 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2017-06-15 09:26 - 2017-03-18 23:01 - 00000000 ____D C:\WINDOWS\INF
2017-06-15 09:26 - 2016-09-29 04:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2017-06-15 09:26 - 2016-09-29 04:50 - 00000000 ____D C:\Program Files (x86)\Lenovo
2017-06-14 20:58 - 2017-01-03 12:44 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-06-14 20:50 - 2017-05-23 22:40 - 00000000 ____D C:\Users\hesse
2017-06-14 20:49 - 2017-01-03 12:44 - 133627792 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-06-11 18:38 - 2017-05-23 22:38 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-06-11 18:38 - 2017-01-03 12:01 - 00000000 __SHD C:\Users\hesse\IntelGraphicsProfiles
2017-06-04 22:52 - 2017-05-23 22:50 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-06-04 22:52 - 2017-03-18 13:40 - 01310720 _____ C:\WINDOWS\system32\config\BBI
2017-06-03 08:32 - 2017-03-18 23:06 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-06-03 08:32 - 2017-03-18 23:06 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-05-31 00:50 - 2017-01-03 12:30 - 00565416 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2017-05-27 18:55 - 2017-05-23 22:37 - 00382176 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-05-27 18:31 - 2017-01-03 12:01 - 00000000 ____D C:\Users\hesse\AppData\Local\Packages
2017-05-25 19:51 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\appcompat

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2017-05-23 22:39 - 2017-05-23 22:39 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert

LastRegBack: 2017-06-24 02:28

==================== Ende von FRST.txt ============================
         
Shortcut

Code:
ATTFilter
Untersuchungsergebnis der Verknüpfungen des Benutzers (x64) Version: 21-06-2017 01
durchgeführt von hesse (24-06-2017 13:07:04)
Gestartet von C:\Users\hesse\Desktop
Start-Modus: Normal

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)


Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\01 - File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\03 - Documents.lnk -> C:\Users\hesse\Documents ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\04 - Downloads.lnk -> C:\Users\hesse\Downloads ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\05 - Music.lnk -> C:\Users\hesse\Music ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\06 - Pictures.lnk -> C:\Users\hesse\Pictures ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\07 - Videos.lnk -> C:\Users\hesse\Videos ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\08 - Homegroup.lnk -> Microsoft.Windows.Homegroup
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\09 - Network.lnk -> Microsoft.Windows.Network
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\10 - UserProfile.lnk -> C:\Users\hesse ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel(R) HD Graphics Control Panel.lnk -> C:\Windows\System32\GfxUIEx.exe (Intel Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiracastView.lnk -> C:\Windows\MiracastView\MiracastView.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk -> C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PrintDialog.lnk -> C:\Windows\PrintDialog\PrintDialog.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Repair Toolbox\Uninstall Windows Repair Toolbox.lnk -> C:\Windows_Repair_Toolbox\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Repair Toolbox\Windows Repair Toolbox.lnk -> C:\Windows_Repair_Toolbox\Windows_Repair_Toolbox.exe (Alexandre Miguel Canotilho Coelho)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Create System Report.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDLogReport.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\File Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Immunization.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Rootkit Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDRootAlyzer.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\System Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Tray Icon (Live Protection).lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Uninstall Spybot-S&D.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek\Realtek HD Audio-Manager.lnk -> C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Office 2016-Spracheinstellungen.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\SETLANG.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools\System Update.lnk -> C:\Program Files (x86)\Lenovo\System Update\tvsu.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo\Benutzerhandbücher.lnk -> C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe (Lenovo)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo\System Update.lnk -> C:\Program Files (x86)\Lenovo\System Update\tvsu.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Quick Assist.lnk -> C:\Windows\System32\quickassist.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\Links\Desktop.lnk -> C:\Users\hesse\Desktop ()
Shortcut: C:\Users\hesse\Links\Downloads.lnk -> C:\Users\hesse\Downloads ()
Shortcut: C:\Users\hesse\Links\OneDrive.lnk -> C:\Users\hesse\OneDrive ()
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk -> C:\Users\hesse\AppData\Local\FluxSoftware\Flux\flux.exe (Flux Software LLC)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\hesse\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Lenovo Service Bridge entfernen.lnk -> C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\unins000.exe ()
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Lenovo Service Bridge.lnk -> C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe (Lenovo Group Limited)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth-Dateiübertragung.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Thunderbird.lnk -> C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation)
Shortcut: C:\Users\Public\Desktop\Mozilla Thunderbird.lnk -> C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation)
Shortcut: C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.)
Shortcut: C:\Users\Public\Desktop\Windows Repair Toolbox.lnk -> C:\Windows_Repair_Toolbox\Windows_Repair_Toolbox.exe (Alexandre Miguel Canotilho Coelho)


ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /7
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Office 2016 Upload Center.lnk -> C:\Program Files (x86)\Microsoft Office\root\client\AppVLP.exe (Microsoft Corporation) -> "C:\Program Files (x86)\Microsoft Office\Root\Office16\MSOUC.EXE"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\hesse\Desktop\shutdown.lnk -> C:\Windows\System32\shutdown.exe (Microsoft Corporation) -> /r /t 0
ShortcutWithArgument: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\SendTo\Faxempfänger.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}


InternetURL: C:\Users\Default\Favorites\Lenovo\Lenovo Support.url -> URL: hxxp://support.lenovo.com/
InternetURL: C:\Users\Default\Favorites\Lenovo\Lenovo.url -> URL: hxxp://www.lenovo.com/
InternetURL: C:\Users\hesse\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\hesse\Favorites\Lenovo\Lenovo Support.url -> URL: hxxp://support.lenovo.com/
InternetURL: C:\Users\hesse\Favorites\Lenovo\Lenovo.url -> URL: hxxp://www.lenovo.com/

==================== Ende vom Shortcut.txt =============================
         
Addition

Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 21-06-2017 01
durchgeführt von hesse (24-06-2017 13:05:59)
Gestartet von C:\Users\hesse\Desktop
Windows 10 Home Version 1703 (X64) (2017-05-23 20:55:22)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-693335309-1784169824-4197453364-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-693335309-1784169824-4197453364-503 - Limited - Disabled)
Gast (S-1-5-21-693335309-1784169824-4197453364-501 - Limited - Disabled)
hesse (S-1-5-21-693335309-1784169824-4197453364-1001 - Administrator - Enabled) => C:\Users\hesse

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Disabled - Out of date) {A16C3F68-9280-E053-1818-342707FECF4D}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Benutzerhandbücher (x32 Version: 6.0.0.0 - Lenovo) Hidden
f.lux (HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\Flux) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.104 - Google Inc.)
Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.1.10603.192 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4549 - Intel Corporation)
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 2.0.0.1094 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{EA877F2C-A0FB-4379-83D0-734540686C80}) (Version: 17.1.1531.1764 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.11 - Intel(R) Corporation) Hidden
Intel® PROSet/Wireless Software (HKLM-x32\...\{795ee3a0-97fa-489a-9543-7564ccc43be4}) (Version: 18.12.0 - Intel Corporation)
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11103 - Realtek Semiconductor Corp.)
Lenovo Service Bridge (HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 4.0.5.2 - Lenovo)
Lenovo System Update (HKLM-x32\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.07.0037 - Lenovo)
LenovoUtility (HKLM-x32\...\InstallShield_{6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA}) (Version: 3.0.0.4 - Lenovo)
LenovoUtility (x32 Version: 3.0.0.4 - Lenovo) Hidden
Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.8201.2102 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\OneDriveSetup.exe) (Version: 17.3.6917.0607 - Microsoft Corporation)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 52.2.0 - Mozilla)
Mozilla Thunderbird 52.2.0 (x86 en-US) (HKLM-x32\...\Mozilla Thunderbird 52.2.0 (x86 en-US)) (Version: 52.2.0 - Mozilla)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.8201.2102 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.8201.2102 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.8201.2102 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.8201.2075 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7714 - Realtek Semiconductor Corp.)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
User Manuals (HKLM-x32\...\InstallShield_{7042D952-EE42-4C09-A23D-E7AE4D047007}) (Version: 6.0.0.0 - Lenovo)
Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation)
Windows Repair Toolbox version 1.8.0.2 (HKLM-x32\...\{A8D7DA31-9E70-437D-97C4-C4887752E029}_is1) (Version: 1.8.0.2 - Alexandre Miguel Canotilho Coelho)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {09A830E6-00EF-4D6B-890C-8F489E749289} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2016-03-21] (Safer-Networking Ltd.)
Task: {23CC4F4E-EACD-4576-A541-354068DCBE04} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-06-18] ()
Task: {42A4D745-BC38-4EF7-9697-7E1A5C83D09C} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-06-10] (Microsoft Corporation)
Task: {823ACB67-2EBA-49A2-888D-51CD5051E7D0} - System32\Tasks\Microsoft\Windows\SysResetErrRefresh => C:\WINDOWS\system32\sysreseterr.exe [2017-03-18] (Microsoft Corporation)
Task: {A0E447E9-89DF-4413-A9AC-0E47747E6B75} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-03] (Google Inc.)
Task: {A295B807-61C2-40AB-9F89-EA5BAED66BA5} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2016-09-10] ()
Task: {A38F6DA9-02E1-4353-B9C4-DDFF3A2957FC} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
Task: {A64D31DD-734C-4D1E-A2F9-1B72E8CA59D4} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-06-10] (Microsoft Corporation)
Task: {BA85B681-0CAC-43F7-88F9-156B8F660094} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-06-18] ()
Task: {BA9F3C3D-842D-4504-8DC1-8824DA5DAEDD} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-693335309-1784169824-4197453364-1001 => C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [2017-05-31] (Lenovo Group Limited)
Task: {BAF6B143-CD6C-4822-BB94-5987432D2C00} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-03] (Google Inc.)
Task: {CDF579EE-8B72-4018-8B1D-A0E3A80C10B6} - System32\Tasks\Microsoft\Windows\SysResetLogFailure => C:\WINDOWS\System32\ResetEngine.exe [2017-03-18] (Microsoft Corporation)
Task: {E3D4C0A2-8D0F-454B-948C-B7EBC133A126} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-01] (Lenovo)
Task: {F216C382-CD8A-443E-A18B-8AD41BFD4538} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2016-09-10] ()
Task: {FA8E1213-EEB1-45DF-9A2A-25203B8BC697} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2016-03-21] (Safer-Networking Ltd.)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)


==================== Verknüpfungen & WMI ========================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)


==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2017-03-18 22:58 - 2017-03-18 22:58 - 00138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-05-16 04:07 - 2017-05-16 04:07 - 00401912 _____ () C:\WINDOWS\system32\igfxTray.exe
2017-03-18 22:59 - 2017-03-20 06:36 - 01731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-09-29 04:51 - 2016-09-29 04:50 - 00791848 _____ () C:\Program Files\Lenovo\LenovoUtility\utility.exe
2016-09-29 04:51 - 2016-09-29 04:50 - 00097048 _____ () C:\Program Files\Lenovo\LenovoUtility\kbdhook.dll
2017-06-15 09:26 - 2016-09-10 12:13 - 00028544 _____ () C:\Program Files (x86)\Lenovo\System Update\SUService.exe
2017-06-22 02:38 - 2017-06-22 02:41 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-06-22 02:38 - 2017-06-22 02:41 - 00203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-06-22 02:38 - 2017-06-22 02:41 - 43454464 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-06-22 02:38 - 2017-06-22 02:41 - 02437120 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\skypert.dll
2017-02-26 16:37 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2017-02-26 16:37 - 2014-05-13 13:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2017-02-26 16:37 - 2014-05-13 13:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2017-02-26 16:37 - 2014-05-13 13:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2017-02-26 16:37 - 2012-04-03 18:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2015-10-30 09:24 - 2015-10-30 09:21 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img2.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [{C3E1336E-2550-424A-90EC-ACA111385246}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{C3E32D8C-EE23-401B-A236-9A4CE9EF7FE4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{D7EF3615-F20B-472A-B146-9ECE85DC2332}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe
FirewallRules: [{D0FDD6AD-22F4-4B9D-B3A3-FEB2AE9F36D1}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe
FirewallRules: [{E6798A14-3560-4FE2-A30F-8D6697582A24}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service

==================== Wiederherstellungspunkte =========================

ACHTUNG: Systemwiederherstellung ist deaktiviert

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (06/24/2017 12:52:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab
Name des fehlerhaften Moduls: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000f2bf
ID des fehlerhaften Prozesses: 0x25cc
Startzeit der fehlerhaften Anwendung: 0x01d2ecd75afa21d3
Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\systemreset.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\systemreset.exe
Berichtskennung: 58774a96-2a92-42f9-a52b-314897073aad
Vollständiger Name des fehlerhaften Pakets: 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (06/24/2017 12:47:21 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab
Name des fehlerhaften Moduls: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000f2bf
ID des fehlerhaften Prozesses: 0x928
Startzeit der fehlerhaften Anwendung: 0x01d2ec8139bd3c9f
Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\systemreset.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\systemreset.exe
Berichtskennung: 623a7555-edca-45dd-85c4-d316d68b04aa
Vollständiger Name des fehlerhaften Pakets: 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (06/22/2017 07:13:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen“ ist folgender Fehler aufgetreten: -2144927142. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (06/22/2017 07:13:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: LAPTOP-9CHC4QNU)
Description: Die App „Microsoft.LockApp_10.0.15063.0_neutral__cw5n1h2txyewy+WindowsDefaultLockScreen“ wurde nicht innerhalb der vorgesehenen Zeit gestartet.

Error: (06/03/2017 11:22:45 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.Microsoft3DViewer_8wekyb3d8bbwe!Microsoft.Microsoft3DViewer“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (06/02/2017 09:52:39 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (05/27/2017 06:27:58 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.SkypeApp_kzf8qxf38zg5c!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009280. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (05/24/2017 07:19:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147024865. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (05/24/2017 07:19:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147024865. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (05/24/2017 07:19:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.


Systemfehler:
=============
Error: (06/24/2017 12:41:05 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (06/22/2017 11:31:25 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (06/22/2017 12:45:04 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (06/22/2017 07:18:21 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (06/22/2017 02:39:44 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (06/21/2017 12:50:04 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (06/20/2017 12:56:52 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (06/18/2017 10:47:32 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (06/18/2017 07:05:40 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (06/17/2017 10:53:13 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.


CodeIntegrity:
===================================
  Date: 2017-06-24 13:05:05.891
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-06-24 13:05:05.888
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-06-24 13:05:05.854
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-06-24 13:05:05.851
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-06-24 12:59:45.379
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-06-24 12:59:45.375
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-06-24 12:59:45.336
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-06-24 12:59:45.333
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-06-24 12:44:38.918
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-06-24 01:04:24.208
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Pentium(R) CPU N3710 @ 1.60GHz
Prozentuale Nutzung des RAM: 45%
Installierter physikalischer RAM: 3949.04 MB
Verfügbarer physikalischer RAM: 2146.59 MB
Summe virtueller Speicher: 4653.04 MB
Verfügbarer virtueller Speicher: 2394.13 MB

==================== Laufwerke ================================

Drive c: (Windows) (Fixed) (Total:118 GB) (Free:91.21 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 28AA68E8)

Partition: GPT.

==================== Ende von Addition.txt ============================
         
__________________


Alt 25.06.2017, 21:31   #3
felix1
/// Helfer-Team
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Details



Du postest Farbar-Logs. Da Du hier nicht neu bist, solltest Du wissen, dass es dafür an anderes Unterforum gibt.
__________________
__________________

Alt 26.06.2017, 07:14   #4
losprimeros
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Lösung: Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen



Oh tut mir leid. Dachte unter "Log-Analyse und Auswertung" kommen nur malewarebezogene Themen. Wäre ein Admin so nett, den Thread in das richtige Forum zu verschieben?

Alt 26.06.2017, 19:57   #5
felix1
/// Helfer-Team
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Wie Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen



Zitat:
Zitat von losprimeros Beitrag anzeigen
Oh tut mir leid. Dachte unter "Log-Analyse und Auswertung" kommen nur malewarebezogene Themen. Wäre ein Admin so nett, den Thread in das richtige Forum zu verschieben?
Wenn Du glaubst, irgendwelche Schädlinge zu haben, bist Du in der Malwarefraktion richtig. Da sind diese Logs richtig. Wir werten die hier nicht aus.

__________________
LG

Der Felix

Keine Hilfe per PN und E-Mail

Alt 27.06.2017, 00:01   #6
losprimeros
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Wo Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Lösung!



Genau das glaube ich eben nicht, sonst hätte ich das Ganze in das entsprechende Forum gepostet.
Daher offensichtlich hier.

Alt 27.06.2017, 19:56   #7
felix1
/// Helfer-Team
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen



Zitat:
Zitat von losprimeros Beitrag anzeigen
Genau das glaube ich eben nicht, sonst hätte ich das Ganze in das entsprechende Forum gepostet.
Daher offensichtlich hier.
Und warum postest Du dann tonnenweise sinnlose Logfiles
Warum postest Du neben einer klaren Problembeschreibung keine Fakten zur Hardware, Betriebssystem usw.
Wir haben hier keine Lust, uns die erforderlichen Daten aus den Logs herauszusuchen.
__________________
LG

Der Felix

Keine Hilfe per PN und E-Mail

Alt 27.06.2017, 20:34   #8
purzelbär
Gesperrt
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen



Zitat:
Warum postest Du neben einer klaren Problembeschreibung keine Fakten zur Hardware, Betriebssystem usw.
felix1, im ersten Posting ist doch ein Logfile von HWinfo32
@losprimeros
Eine Option für dich wäre meiner Meinung nach: Datensicherung machen, Festplatte formatieren und Windows mit allem Drum und Dran neu zu installieren.

Alt 29.06.2017, 07:30   #9
losprimeros
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen



Dankeschön @purzelbär.

Alt 29.06.2017, 14:33   #10
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst]



spybot ist totaler überflüssiger Schrott. Hau das mal runter (mit revo, siehe unten)

Danach bitte so ein Log machen --> Zustand der Festplatte herausfinden - so gehts - Anleitungen






Lade Dir bitte von hier Revo Uninstaller Download Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
  • Installiere und starte das Programm. (Bebilderte Anleitung zu Revo Uninstaller)
  • Klicke auf Optionen und wähle als Sprache Deutsch.
  • Suche im Uninstallerfeld nach den Programmen:


    Spybot - Search & Destroy


  • Wähle die Programme nacheinander aus und klicke jedes Mal auf Uninstall.
  • Wähle anschließend den Modus "Moderat" aus.
  • Reste löschen:
    Klicke auf dann auf und dann auf .

 

__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 29.06.2017, 14:45   #11
losprimeros
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst]



Spybot ist weg, Log folgt. Den Neustart des Systems, welcher nach dem Deinstallieren erfolgen sollte, ist auch hier nicht möglich.

Code:
ATTFilter
----------------------------------------------------------------------------
CrystalDiskInfo 7.0.5 (C) 2008-2016 hiyohiyo
                                Crystal Dew World : hxxp://crystalmark.info/
----------------------------------------------------------------------------

    OS : Windows 10  [10.0 Build 15063] (x64)
  Date : 2017/06/29 14:44:41

-- Controller Map ----------------------------------------------------------
 + Standardmäßiger SATA AHCI- Controller [ATA]
   - LITEON CV3-8D128
 - Microsoft-Controller für Speicherplätze [SCSI]

-- Disk List ---------------------------------------------------------------
 (1) LITEON CV3-8D128 : 128,0 GB [0/0/0, pd1] - sg

----------------------------------------------------------------------------
 (1) LITEON CV3-8D128
----------------------------------------------------------------------------
           Model : LITEON CV3-8D128
        Firmware : T876201
   Serial Number : SD0L02318L1TH6810GAA
       Disk Size : 128,0 GB (8,4/128,0/128,0/128,0)
     Buffer Size : Unbekannt
     Queue Depth : 32
    # of Sectors : 250069680
   Rotation Rate : ---- (SSD)
       Interface : Serial ATA
   Major Version : ACS-2
   Minor Version : ATA/ATAPI-7 T13 1532D version 4a
   Transfer Mode : SATA/600 | SATA/600
  Power On Hours : 230 Std.
  Power On Count : 349 mal
      Host Reads : 943 GB
     Host Writes : 687 GB
     Temperature : 48 C (118 F)
   Health Status : Gut (100 %)
        Features : S.M.A.R.T., 48bit LBA, NCQ, TRIM, DevSleep
       APM Level : ----
       AAM Level : ----
    Drive Letter : C: D:

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
05 100 100 __0 000000000000 Anz. wiederzugewiesener Sektoren
09 100 100 __0 0000000000E6 Betriebsstunden
0C 100 100 __0 00000000015D Anz. Geräte-Einschaltvorgänge
AA 100 100 __0 000000000000 Unused Reserved Block Count (Chip)
AB 100 100 __0 000000000000 Program Fail Count (Chip)
AC 100 100 __0 000000000000 Erase Fail Count (Chip)
AD 100 100 __0 000000000002 Wear Leveling Count
AE 100 100 __0 000000000003 Unexpected Power Loss Count
B2 100 100 __0 000000000000 Benutzte reservierte Blöcke (Chip)
B4 100 100 _10 000000000278 Unbenutzte reservierte Blöcke (gesamt)
B8 100 100 __0 000000000000 Error Detection
BB 100 100 __0 000000000000 Nicht korrigierbare Fehler
C2 100 100 __0 000000000030 Temperatur
C7 100 100 __0 000000000000 CRC-Fehler
E9 100 100 __1 000000000064 Normalized Media Wear-out
F1 100 100 __0 0000000002AF LBA geschrieben (gesamt)
F2 100 100 __0 0000000003AF LBA gelesen (gesamt)
F9 100 100 __0 000000000170 Herstellerspezifisch

-- IDENTIFY_DEVICE ---------------------------------------------------------
        0    1    2    3    4    5    6    7    8    9
000: 0000 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 5344 304C 3032 3331 384C 3154 4836 3831 3047 4141
020: 0000 0000 0000 5438 3736 3230 3120 4C49 5445 4F4E
030: 2043 5633 2D38 4431 3238 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8001 4000 2F00
050: 4000 0000 0000 0006 3FFF 0010 003F FC10 00FB 0100
060: C2B0 0EE7 0000 0007 0003 0078 0078 0078 0078 4C20
070: 0000 0000 0000 0000 0000 001F 050E 0086 014C 0040
080: 03FE 0021 346B 7D01 4123 3469 BC01 4123 407F 0001
090: 0001 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: C2B0 0EE7 0000 0000 0000 0008 4000 0000 5002 3031
110: 00B0 DCD8 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0007
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0001
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 0001 0000 0000
220: 0000 0000 1075 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 C8A5

-- SMART_READ_DATA ---------------------------------------------------------
     +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 01 00 05 32 00 64 64 00 00 00 00 00 00 00 09 32
010: 00 64 64 E6 00 00 00 00 00 00 0C 03 00 64 64 5D
020: 01 00 00 00 00 00 AA 32 00 64 64 00 00 00 00 00
030: 00 00 AB 03 00 64 64 00 00 00 00 00 00 00 AC 03
040: 00 64 64 00 00 00 00 00 00 00 AD 03 00 64 64 02
050: 00 00 00 00 00 00 AE 03 00 64 64 03 00 00 00 00
060: 00 00 B2 32 00 64 64 00 00 00 00 00 00 00 B4 03
070: 00 64 64 78 02 00 00 00 00 00 B8 33 00 64 64 00
080: 00 00 00 00 00 00 BB 32 00 64 64 00 00 00 00 00
090: 00 00 C2 03 00 64 64 30 00 00 00 00 00 00 C7 03
0A0: 00 64 64 00 00 00 00 00 00 00 E9 03 00 64 64 64
0B0: 00 00 00 00 00 00 F1 03 00 64 64 AF 02 00 00 00
0C0: 00 00 F2 03 00 64 64 AF 03 00 00 00 00 00 F9 03
0D0: 00 64 64 70 01 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 0A 00 00 15
170: 03 00 01 00 02 0B 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 A6

-- SMART_READ_THRESHOLD ----------------------------------------------------
     +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 01 00 05 00 00 00 00 00 00 00 00 00 00 00 09 00
010: 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 00 00
020: 00 00 00 00 00 00 AA 00 00 00 00 00 00 00 00 00
030: 00 00 AB 00 00 00 00 00 00 00 00 00 00 00 AC 00
040: 00 00 00 00 00 00 00 00 00 00 AD 00 00 00 00 00
050: 00 00 00 00 00 00 AE 00 00 00 00 00 00 00 00 00
060: 00 00 B2 00 00 00 00 00 00 00 00 00 00 00 B4 0A
070: 00 00 00 00 00 00 00 00 00 00 B8 00 00 00 00 00
080: 00 00 00 00 00 00 BB 00 00 00 00 00 00 00 00 00
090: 00 00 C2 00 00 00 00 00 00 00 00 00 00 00 C7 00
0A0: 00 00 00 00 00 00 00 00 00 00 E9 01 00 00 00 00
0B0: 00 00 00 00 00 00 EC 01 00 00 00 00 00 00 00 00
0C0: 00 00 F1 00 00 00 00 00 00 00 00 00 00 00 F2 00
0D0: 00 00 00 00 00 00 00 00 00 00 F9 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 6A
         

Alt 29.06.2017, 14:53   #12
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst]



Die SSD in okay. Du könntest mal das hier machen --> Windows reparieren - so geht's - Anleitungen
__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 29.06.2017, 16:14   #13
losprimeros
 
Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Standard

Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst]



Schritt 3: "no errors found on the drive!"
Code:
ATTFilter
Microsoft Windows [Version 10.0.15063]
(c) 2017 Microsoft Corporation. Alle Rechte vorbehalten.

C:\Users\hesse\Desktop>CD /D C:\

C:\>set path=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SystemRoot%\System32\WindowsPowerShell\v1.0

C:\>chkdsk C:
Der Typ des Dateisystems ist NTFS.
Das Volume wird von einem anderen Prozess benutzt. Chkdsk 
meldet m”glicherweise Fehler wenn keine Besch„digung vorliegt.
Die Volumebezeichnung lautet Windows.

WARNUNG! Der Parameter /F wurde nicht angegeben.
CHKDSK wird im schreibgeschtzten Modus ausgefhrt.

Phase 1: Die Basisdatei-Systemstruktur wird untersucht...
Status: 0 von 347136 fertig; Phase:  0%; Insgesamt:  0%; ETA:   0:16:42    
Status: 4296 von 347136 fertig; Phase:  1%; Insgesamt:  0%; ETA:   0:16:39 .  
Status: 17681 von 347136 fertig; Phase:  5%; Insgesamt:  1%; ETA:   0:16:25 .. 
Status: 29697 von 347136 fertig; Phase:  8%; Insgesamt:  3%; ETA:   0:00:36 ...
Status: 44913 von 347136 fertig; Phase: 12%; Insgesamt:  4%; ETA:   0:00:33    
Status: 61953 von 347136 fertig; Phase: 17%; Insgesamt:  6%; ETA:   0:00:32 .  
Status: 77863 von 347136 fertig; Phase: 22%; Insgesamt:  7%; ETA:   0:00:30 .. 
Status: 89032 von 347136 fertig; Phase: 25%; Insgesamt:  9%; ETA:   0:00:30 ...
Status: 96943 von 347136 fertig; Phase: 27%; Insgesamt: 10%; ETA:   0:00:31    
Status: 96944 von 347136 fertig; Phase: 27%; Insgesamt: 10%; ETA:   0:00:31 .  
Status: 108801 von 347136 fertig; Phase: 31%; Insgesamt: 12%; ETA:   0:00:30 .. 
Status: 114517 von 347136 fertig; Phase: 32%; Insgesamt: 13%; ETA:   0:00:30 ...
Status: 118944 von 347136 fertig; Phase: 34%; Insgesamt: 13%; ETA:   0:00:31    
Status: 129754 von 347136 fertig; Phase: 37%; Insgesamt: 15%; ETA:   0:00:31 .  
Status: 141825 von 347136 fertig; Phase: 40%; Insgesamt: 16%; ETA:   0:00:31 .. 
Status: 177705 von 347136 fertig; Phase: 51%; Insgesamt: 20%; ETA:   0:00:27 ...
Status: 211978 von 347136 fertig; Phase: 61%; Insgesamt: 23%; ETA:   0:00:23    
Status: 260097 von 347136 fertig; Phase: 74%; Insgesamt: 28%; ETA:   0:00:20 .  
Status: 271723 von 347136 fertig; Phase: 78%; Insgesamt: 29%; ETA:   0:00:20 .. 
Status: 304163 von 347136 fertig; Phase: 87%; Insgesamt: 32%; ETA:   0:00:19 ...
Status: 319745 von 347136 fertig; Phase: 92%; Insgesamt: 33%; ETA:   0:00:19    
Status: 333825 von 347136 fertig; Phase: 96%; Insgesamt: 35%; ETA:   0:00:17 .  
Status: 347136 von 347136 fertig; Phase: 100%; Insgesamt: 36%; ETA:   0:00:17 .. 
                                                                                       
                                                                                       
  347136 Datens„tze verarbeitet.                                                         

Dateiberprfung beendet.
Status: 14068 von 14068 fertig; Phase: 100%; Insgesamt: 28%; ETA:   0:00:24 ...
                                                                                       
                                                                                       
  14068 groáe Datens„tze verarbeitet.                                   

Status: 0 von 0 fertig; Phase: 99%; Insgesamt: 28%; ETA:   0:00:24    
                                                                                       
                                                                                       
  0 ungltige Datens„tze verarbeitet.                               


Phase 2: Die Dateinamenverknpfung wird untersucht...
Status: 7262 von 422102 fertig; Phase:  1%; Insgesamt: 29%; ETA:   0:00:24 .  
Status: 25814 von 422102 fertig; Phase:  6%; Insgesamt: 30%; ETA:   0:00:24 .. 
Status: 43717 von 422102 fertig; Phase: 10%; Insgesamt: 32%; ETA:   0:00:23 ...
Status: 63368 von 422102 fertig; Phase: 15%; Insgesamt: 33%; ETA:   0:00:23    
Status: 87631 von 422102 fertig; Phase: 20%; Insgesamt: 35%; ETA:   0:00:22 .  
Status: 108847 von 422102 fertig; Phase: 25%; Insgesamt: 37%; ETA:   0:00:22 .. 
Status: 126644 von 422102 fertig; Phase: 30%; Insgesamt: 38%; ETA:   0:00:20 ...
Status: 146293 von 422102 fertig; Phase: 34%; Insgesamt: 40%; ETA:   0:00:20    
Status: 189897 von 422102 fertig; Phase: 44%; Insgesamt: 43%; ETA:   0:00:19 .  
Status: 260232 von 422102 fertig; Phase: 61%; Insgesamt: 48%; ETA:   0:00:15 .. 
Status: 295643 von 422102 fertig; Phase: 70%; Insgesamt: 51%; ETA:   0:00:14 ...
Status: 315993 von 422102 fertig; Phase: 74%; Insgesamt: 53%; ETA:   0:00:14    
Status: 340965 von 422102 fertig; Phase: 80%; Insgesamt: 55%; ETA:   0:00:14 .  
Status: 347149 von 422102 fertig; Phase: 82%; Insgesamt: 59%; ETA:   0:00:14 .. 
Status: 347902 von 422102 fertig; Phase: 82%; Insgesamt: 59%; ETA:   0:00:12 ...
Status: 348596 von 422102 fertig; Phase: 82%; Insgesamt: 60%; ETA:   0:00:12    
Status: 349548 von 422102 fertig; Phase: 82%; Insgesamt: 60%; ETA:   0:00:12 .  
Status: 350883 von 422102 fertig; Phase: 83%; Insgesamt: 61%; ETA:   0:00:12 .. 
Status: 352055 von 422102 fertig; Phase: 83%; Insgesamt: 61%; ETA:   0:00:12 ...
Status: 353057 von 422102 fertig; Phase: 83%; Insgesamt: 62%; ETA:   0:00:12    
Status: 353784 von 422102 fertig; Phase: 83%; Insgesamt: 62%; ETA:   0:00:12 .  
Status: 354751 von 422102 fertig; Phase: 84%; Insgesamt: 63%; ETA:   0:00:12 .. 
Status: 355437 von 422102 fertig; Phase: 84%; Insgesamt: 63%; ETA:   0:00:12 ...
Status: 356665 von 422102 fertig; Phase: 84%; Insgesamt: 65%; ETA:   0:00:12    
Status: 357625 von 422102 fertig; Phase: 84%; Insgesamt: 66%; ETA:   0:00:12 .  
Status: 358426 von 422102 fertig; Phase: 84%; Insgesamt: 67%; ETA:   0:00:11 .. 
Status: 358762 von 422102 fertig; Phase: 84%; Insgesamt: 70%; ETA:   0:00:11 ...
Status: 360207 von 422102 fertig; Phase: 85%; Insgesamt: 70%; ETA:   0:00:11    
Status: 362478 von 422102 fertig; Phase: 85%; Insgesamt: 71%; ETA:   0:00:09 .  
Status: 364738 von 422102 fertig; Phase: 86%; Insgesamt: 72%; ETA:   0:00:09 .. 
Status: 367532 von 422102 fertig; Phase: 87%; Insgesamt: 73%; ETA:   0:00:09 ...
Status: 368296 von 422102 fertig; Phase: 87%; Insgesamt: 78%; ETA:   0:00:09    
Status: 369024 von 422102 fertig; Phase: 87%; Insgesamt: 78%; ETA:   0:00:07 .  
Status: 372175 von 422102 fertig; Phase: 88%; Insgesamt: 78%; ETA:   0:00:07 .. 
Status: 374376 von 422102 fertig; Phase: 88%; Insgesamt: 79%; ETA:   0:00:07 ...

Der Indexeintrag "CHKDSK.EXE-2E757381.pf" im Index "$I30" der Datei "1A42C" ist falsch.
Der Indexeintrag "CHKDSK~1.PF" im Index "$I30" der Datei "1A42C" ist falsch.
Der Indexeintrag "CMD.EXE-6D6290C5.pf" im Index "$I30" der Datei "1A42C" ist falsch.
Der Indexeintrag "CMDEXE~1.PF" im Index "$I30" der Datei "1A42C" ist falsch.
Status: 375599 von 422102 fertig; Phase: 88%; Insgesamt: 79%; ETA:   0:00:07    
Status: 377066 von 422102 fertig; Phase: 89%; Insgesamt: 80%; ETA:   0:00:07 .  
Status: 378868 von 422102 fertig; Phase: 89%; Insgesamt: 79%; ETA:   0:00:07 .. 
Status: 381525 von 422102 fertig; Phase: 90%; Insgesamt: 80%; ETA:   0:00:07 ...
Status: 384510 von 422102 fertig; Phase: 91%; Insgesamt: 81%; ETA:   0:00:07    
Status: 422102 von 422102 fertig; Phase: 100%; Insgesamt: 81%; ETA:   0:00:07 .  
                                                                                       
                                                                                       
  422102 Indexeintr„ge verarbeitet.                                                      

Indexberprfung beendet.

Fehler gefunden. CHKDSK kann im schreibgeschtzten Modus nicht
fortgesetzt werden.

C:\>
         
Schritt 4: keine Integritätsverletzungen gefunden



Repair ist offensichtlich fertig, habe allerdings keine entsprechende Benachrichtigung oder ähnliches bekommen. Soll ich einen Neustart versuchen oder gibt es irgendwo Logs, welche das Programm hinterlassen hat, welche ich posten sollte? Der Ordner "Log" im Installationspfad von Windows Repair ist auf jeden Fall leer.

Danke bis hier hin auf jeden Fall für die Hilfe!

Geändert von losprimeros (29.06.2017 um 16:59 Uhr)

Antwort

Themen zu Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen
100%, beginnt, bricht, erreicht, funktionier, funktioniert, gefunde, guten, mehreren, meldung, neustarts, nicht mehr, problem, scan, schlagen, system, systemfehler, tagen, uhrzeit, update, wechsel, wiederherstellung, windows, windows update, zusammen



Ähnliche Themen: Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen


  1. Tr/dropper.gen - Herunterfahren nicht mehr möglich
    Plagegeister aller Art und deren Bekämpfung - 07.12.2016 (43)
  2. Windows 7 Startet nicht: Neustart/ Herunterfahren killt mein OS
    Alles rund um Windows - 26.10.2015 (5)
  3. Herunterfahren nicht möglich, Versuch über "ausführen" legt alles lahm, nun keine Aktionen mehr möglich
    Plagegeister aller Art und deren Bekämpfung - 10.02.2015 (13)
  4. Neustart/Herunterfahren geht nicht
    Alles rund um Windows - 05.01.2015 (31)
  5. Win8.1 PC lässt sich nicht herunterfahren; Virenscan nicht möglich
    Log-Analyse und Auswertung - 29.09.2014 (3)
  6. herunterfahren nicht möglich
    Plagegeister aller Art und deren Bekämpfung - 26.08.2014 (1)
  7. Windows 8 64 bit ein wichtiges Update nicht möglich und blockiert beim herunterfahren, Broserfenster Popups machen auf ..
    Alles rund um Windows - 12.11.2013 (0)
  8. System-Wiederherstellung nicht mehr möglich, programm browserprotect bit 89 neu und lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 31.05.2013 (31)
  9. UKASH-Trojaner | W7Pro |Systemwiederherstellung nicht möglich | Abgesicherter Modus -> Herunterfahren
    Log-Analyse und Auswertung - 10.04.2013 (9)
  10. .exe files lassen sich nicht ausführen, malware lässt sich nicht ausführen, system wiederherstellung nicht möglich
    Log-Analyse und Auswertung - 25.03.2013 (0)
  11. Windows lässt sich nicht herunterfahren/Keine Installation möglich/Favoriten, etc. gelöscht
    Plagegeister aller Art und deren Bekämpfung - 07.03.2013 (18)
  12. gvu trojaner 2.10, kasperski erfolglos, wiederherstellung nicht möglich
    Plagegeister aller Art und deren Bekämpfung - 07.12.2012 (9)
  13. Rechner stürzt ständig ab. Https-Seite können nicht besucht werden. Keine Wiederherstellung möglich
    Log-Analyse und Auswertung - 09.01.2012 (3)
  14. Sicherheitscenter deaktiviert sich von selbst (Win7), Wiederherstellung nicht möglich
    Plagegeister aller Art und deren Bekämpfung - 13.04.2011 (4)
  15. Windows-Updates nicht möglich (Fehlercode 80072EFE) & Probleme beim Herunterfahren
    Plagegeister aller Art und deren Bekämpfung - 03.11.2010 (3)
  16. Windowsupdate kann nicht ausgeführt werden sowie Neustart ist nicht möglich
    Plagegeister aller Art und deren Bekämpfung - 27.09.2008 (2)
  17. Automatisches Herunterfahren/Neustart...
    Plagegeister aller Art und deren Bekämpfung - 02.04.2006 (5)

Zum Thema Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen - Guten Tag zusammen, Habe seit mehreren Tagen das Problem, dass Windows nicht mehr heruntergefahren bzw. neugestartet werden kann. Lediglich der Wechsel in den Energiesparmodus funktioniert ohne Probleme. Auch vom System - Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen...
Archiv
Du betrachtest: Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.