![]() |
| |||||||
Alles rund um Windows: Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffenWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
![]() |
| |
| | #1 |
![]() ![]() | Problem: Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Guten Tag zusammen, Habe seit mehreren Tagen das Problem, dass Windows nicht mehr heruntergefahren bzw. neugestartet werden kann. Lediglich der Wechsel in den Energiesparmodus funktioniert ohne Probleme. Auch vom System selbst vorgenommene Neustarts durch Windows Update schlagen mit der Meldung fehl, dass keine passende Uhrzeit für den Neustart gefunden werde. Die Wiederherstellung beginnt zwar, bricht dann nachdem 100% der Vorbereitungsphase erreicht sind kommentarlos ab. Der FRST Scan ergab zahlreiche Anwendungs- und Systemfehler, siehe Anhang. Was tun? Code:
ATTFilter HWiNFO64 Version 5.52-3161
LAPTOP-9CHC4QNU -----------------------------------------------------------
[Current Computer]
Computer Name: LAPTOP-9CHC4QNU
Computer Brand Name: LENOVO Lenovo ideapad 100S-14IBR
[Operating System]
Operating System: Microsoft Windows 10 Home (x64) Build 15063.296 (RS2)
UEFI Boot: Present
Central Processor(s) ------------------------------------------------------
[CPU Unit Count]
Number Of Processor Packages (Physical): 1
Number Of Processor Cores: 4
Number Of Logical Processors: 4
Intel Pentium N3710 -------------------------------------------------------
[General Information]
Processor Name: Intel Pentium N3710
Original Processor Frequency: 1666.7 MHz
Original Processor Frequency [MHz]: 1667
CPU ID: 000406C4
CPU Brand Name: Intel(R) Pentium(R) CPU N3710 @ 1.60GHz
CPU Vendor: GenuineIntel
CPU Stepping: D1
CPU Code Name: Braswell Refresh
CPU S-Spec: SR2KL
CPU Power Limit 1 - Long Duration: Power = 1.38 W, Time = 28.00 sec [Unlocked]
CPU Type: Production Unit
CPU Platform: FCBGA1170
Microcode Update Revision: 408
Number of CPU Cores: 4
Number of Logical CPUs: 4
[Operating Points]
CPU MFM (LowPower): 166.7 MHz = 2 x 83.3 MHz @ 0.4500 V
CPU LFM (Minimum): 500.0 MHz = 6 x 83.3 MHz @ 0.4500 V
CPU HFM (Maximum): 1666.7 MHz = 20 x 83.3 MHz @ 0.6300 V [Unlocked]
CPU Turbo: 2666.7 MHz = 32 x 83.3 MHz @ 0.9600 V [Locked]
CPU Current: 1200.1 MHz = 15 x 80.0 MHz @ 0.6300 V
[Cache and TLB]
L1 Cache: Instruction: 4 x 32 KBytes, Data: 4 x 24 KBytes
L2 Cache: Integrated: 2 x 1 MBytes
Instruction TLB: 4-KB Pages, Fully associative, 48 entries
Data TLB: 4-KB Pages, Fully associative, 32 entries
[Standard Feature Flags]
FPU on Chip Present
Enhanced Virtual-86 Mode Present
I/O Breakpoints Present
Page Size Extensions Present
Time Stamp Counter Present
Pentium-style Model Specific Registers Present
Physical Address Extension Present
Machine Check Exception Present
CMPXCHG8B Instruction Present
APIC On Chip / PGE (AMD) Present
Fast System Call Present
Memory Type Range Registers Present
Page Global Feature Present
Machine Check Architecture Present
CMOV Instruction Present
Page Attribute Table Present
36-bit Page Size Extensions Present
Processor Number Not Present
CLFLUSH Instruction Present
Debug Trace and EMON Store Present
Internal ACPI Support Present
MMX Technology Present
Fast FP Save/Restore (IA MMX-2) Present
Streaming SIMD Extensions Present
Streaming SIMD Extensions 2 Present
Self-Snoop Present
Multi-Threading Capable Present
Automatic Clock Control Present
IA-64 Processor Not Present
Signal Break on FERR Present
Virtual Machine Extensions (VMX) Present
Safer Mode Extensions (Intel TXT) Not Present
Streaming SIMD Extensions 3 Present
Supplemental Streaming SIMD Extensions 3 Present
Streaming SIMD Extensions 4.1 Present
Streaming SIMD Extensions 4.2 Present
AVX Support Not Present
Fused Multiply Add (FMA) Not Present
Carryless Multiplication (PCLMULQDQ)/GFMUL Present
CMPXCHG16B Support Present
MOVBE Instruction Present
POPCNT Instruction Present
XSAVE/XRSTOR/XSETBV/XGETBV Instructions Not Present
XGETBV/XSETBV OS Enabled Not Present
Float16 Instructions Not Present
AES Cryptography Support Present
Random Number Read Instruction (RDRAND) Present
Extended xAPIC Not Present
MONITOR/MWAIT Support Present
Thermal Monitor 2 Present
Enhanced SpeedStep Technology Present
L1 Context ID Not Present
Send Task Priority Messages Disabling Present
Processor Context ID Not Present
Direct Cache Access Not Present
TSC-deadline Timer Present
Performance/Debug Capability MSR Present
IA32 Debug Interface Support Not Present
64-Bit Debug Store Present
CPL Qualified Debug Store Present
[Extended Feature Flags]
64-bit Extensions Present
RDTSCP and TSC_AUX Support Present
1 GB large page support Not Present
No Execute Present
SYSCALL/SYSRET Support Present
Bit Manipulation Instructions Set 1 Not Present
Bit Manipulation Instructions Set 2 Not Present
Advanced Vector Extensions 2 (AVX2) Not Present
Advanced Vector Extensions 512 (AVX-512) Not Present
AVX-512 Prefetch Instructions Not Present
AVX-512 Exponential and Reciprocal Instructions Not Present
AVX-512 Conflict Detection Instructions Not Present
AVX-512 Doubleword and Quadword Instructions Not Present
AVX-512 Byte and Word Instructions Not Present
AVX-512 Vector Length Extensions Not Present
AVX-512 52-bit Integer FMA Instructions Not Present
Secure Hash Algorithm (SHA) Extensions Not Present
Software Guard Extensions (SGX) Support Not Present
Supervisor Mode Execution Protection (SMEP) Present
Supervisor Mode Access Prevention (SMAP) Not Present
Hardware Lock Elision (HLE) Not Present
Restricted Transactional Memory (RTM) Not Present
Memory Protection Extensions (MPX) Not Present
Read/Write FS/GS Base Instructions Not Present
Enhanced Performance String Instruction Present
INVPCID Instruction Not Present
RDSEED Instruction Not Present
Multi-precision Add Carry Instructions (ADX) Not Present
PCOMMIT Instructions Not Present
CLFLUSHOPT Instructions Not Present
CLWB Instructions Not Present
TSC_THREAD_OFFSET Present
Platform Quality of Service Monitoring (PQM) Not Present
Platform Quality of Service Enforcement (PQE) Not Present
FPU Data Pointer updated only on x87 Exceptions Not Present
Deprecated FPU CS and FPU DS Present
Intel Processor Trace Not Present
PREFETCHWT1 Instruction Not Present
AVX-512 Vector Bit Manipulation Instructions Not Present
User-Mode Instruction Prevention Not Present
Protection Keys for User-mode Pages Not Present
OS Enabled Protection Keys Not Present
AVX-512 VPOPCNTD/VPOPCNTQ Instructions Not Present
Read Processor ID Not Present
SGX Launch Configuration Not Present
AVX-512 Deep Learning Enhanced Word Variable Precision Not Present
AVX-512 Deep Learning Floating-point Single Precision Not Present
[Enhanced Features]
Thermal Monitor 1: Supported, Enabled
Thermal Monitor 2: Supported, Enabled
Enhanced Intel SpeedStep (GV3): Supported, Enabled
Bi-directional PROCHOT#: N/A
Extended Auto-HALT State C1E: N/A
MLC Streamer Prefetcher Not Supported
MLC Spatial Prefetcher Not Supported
DCU Streamer Prefetcher Not Supported
DCU IP Prefetcher Not Supported
Intel Dynamic Acceleration (IDA) Technology: Not Supported
Intel Dynamic FSB Switching: Not Supported
Intel Turbo Boost Technology: Supported, Enabled
Programmable Ratio Limits: Not Supported
Programmable TDC/TDP Limits: Not Supported
[Memory Ranges]
Maximum Physical Address Size: 36-bit (64 GBytes)
Maximum Virtual Address Size: 48-bit (256 TBytes)
[MTRRs]
Range FFA00000-100000000 (4090MB-4096MB) Type: Write Protected (WP)
Range 0-80000000 (0MB-2048MB) Type: Write Back (WB)
Range 7E000000-80000000 (2016MB-2048MB) Type: Uncacheable (UC)
Range 7D000000-7E000000 (2000MB-2016MB) Type: Uncacheable (UC)
Range 7C800000-7D000000 (1992MB-2000MB) Type: Uncacheable (UC)
Range 7C400000-7C800000 (1988MB-1992MB) Type: Uncacheable (UC)
Motherboard ---------------------------------------------------------------
[Computer]
Computer Brand Name: LENOVO Lenovo ideapad 100S-14IBR
[Motherboard]
Motherboard Model: LENOVO Aristotle 14
Motherboard Chipset:
Motherboard Slots: 3xPCI Express x1, 1xPCI Express x4
PCI Express Version Supported: v2.0
USB Version Supported: v3.0
[BIOS]
BIOS Manufacturer: Lenovo
BIOS Date: 08/02/2016
BIOS Version: E4CN34WW
UEFI BIOS: Capable
Super-IO/LPC Chip: Unknown
ACPI Devices --------------------------------------------------------------
Intel SD Host Controller --------------------------------------------------
Device Name: Intel SD Host Controller
[Assigned Resources]
Memory Location: 91319000 - 91319FFF
[Alternative 1]
Memory Location: 91319000 - 91319FFF
IRQ: 45
ELAN pointing device ------------------------------------------------------
Device Name: ELAN pointing device
[Assigned Resources]
IRQ: 12
[Alternative 1]
IRQ: 12
Legacy device -------------------------------------------------------------
Device Name: Legacy device
[Assigned Resources]
Memory Location: FF000000 - FFFFFFFF
[Alternative 1]
Memory Location: FF000000 - FFFFFFFF
Standard PS/2 Keyboard ----------------------------------------------------
Device Name: Standard PS/2 Keyboard
[Assigned Resources]
I/O Port: 0060
I/O Port: 0000
[Alternative 1]
I/O Port: 0060
I/O Port: 0064
IRQ: 1
Trusted Platform Module 2.0 -----------------------------------------------
Device Name: Trusted Platform Module 2.0
[Assigned Resources]
Memory Location: 7FF00000 - 7FF00FFF
[Alternative 1]
Memory Location: 7FF00000 - 7FF00FFF
Programmable interrupt controller -----------------------------------------
Device Name: Programmable interrupt controller
[Assigned Resources]
I/O Port: 0020 - 0021
I/O Port: 0030 - 0031
I/O Port: 00A0 - 00A1
I/O Port: 00B0 - 00B1
IRQ: 1114369
IRQ: 1114369
IRQ: 1114369
IRQ: 1114369
[Alternative 1]
I/O Port: 0020 - 0021
I/O Port: 0024 - 0025
I/O Port: 0028 - 0029
I/O Port: 002C - 002D
I/O Port: 0030 - 0031
I/O Port: 0034 - 0035
I/O Port: 0038 - 0039
I/O Port: 003C - 003D
I/O Port: 00A0 - 00A1
I/O Port: 00A4 - 00A5
I/O Port: 00A8 - 00A9
I/O Port: 00AC - 00AD
I/O Port: 00B0 - 00B1
I/O Port: 00B4 - 00B5
I/O Port: 00B8 - 00B9
I/O Port: 00BC - 00BD
I/O Port: 04D0 - 04D1
System timer --------------------------------------------------------------
Device Name: System timer
[Assigned Resources]
I/O Port: 0040 - 0043
DMA: 0
[Alternative 1]
I/O Port: 0040 - 0043
I/O Port: 0050 - 0053
IRQ: 0
Kommunikationsanschluss ---------------------------------------------------
Device Name: Kommunikationsanschluss
[Assigned Resources]
I/O Port: 03F8 - 03FF
[Alternative 1]
I/O Port: 03F8 - 03FF
IRQ: 4
PCI Express Root Complex --------------------------------------------------
Device Name: PCI Express Root Complex
[Assigned Resources]
I/O Port: 0000 - FFFFFFFF
I/O Port: 0D00 - FFFF
Memory Location: 000C0000 - 000BFFFF
[Alternative 1]
I/O Port: 0000 - 006F
I/O Port: 0078 - 0CF7
I/O Port: 0D00 - FFFF
Memory Location: 000A0000 - 000BFFFF
Memory Location: 000C0000 - 000DFFFF
Memory Location: 000E0000 - 000FFFFF
Memory Location: 80000000 - DFFFFFFF
System CMOS/real time clock -----------------------------------------------
Device Name: System CMOS/real time clock
[Assigned Resources]
I/O Port: 0070 - 0077
[Alternative 1]
I/O Port: 0070 - 0077
Motherboard resources -----------------------------------------------------
Device Name: Motherboard resources
[Assigned Resources]
Memory Location: E0000000 - EFFFFFFF
Memory Location: FED06000 - FED06FFF
[Alternative 1]
Memory Location: E0000000 - EFFFFFFF
Memory Location: FEA00000 - FEAFFFFF
Memory Location: FED01000 - FED01FFF
Memory Location: FED03000 - FED03FFF
Memory Location: FED06000 - FED06FFF
Memory Location: FED08000 - FED09FFF
Memory Location: FED80000 - FEDBFFFF
Memory Location: FED1C000 - FED1CFFF
Memory Location: FEE00000 - FEEFFFFF
Motherboard resources -----------------------------------------------------
Device Name: Motherboard resources
[Assigned Resources]
I/O Port: 004E - 004F
I/O Port: 0000 - 0062
I/O Port: 0067
I/O Port: 0000 - 007F
I/O Port: 00B2 - 00B3
[Alternative 1]
I/O Port: 004E - 004F
I/O Port: 0061
I/O Port: 0063
I/O Port: 0065
I/O Port: 0067
I/O Port: 0070
I/O Port: 0080 - 008F
I/O Port: 0092
I/O Port: 00B2 - 00B3
I/O Port: 0680 - 069F
I/O Port: 0400 - 047F
I/O Port: 0500 - 05FE
Motherboard resources -----------------------------------------------------
Device Name: Motherboard resources
[Assigned Resources]
Memory Location: 91318000 - 91318FFF
[Alternative 1]
Memory Location: 91318000 - 91318FFF
Memory Location: 91316000 - 91316FFF
Microsoft ACPI-Compliant Embedded Controller ------------------------------
Device Name: Microsoft ACPI-Compliant Embedded Controller
[Assigned Resources]
I/O Port: 0062
[Alternative 1]
I/O Port: 0062
I/O Port: 0066
SMBIOS DMI ----------------------------------------------------------------
BIOS ----------------------------------------------------------------------
BIOS Vendor: Lenovo
BIOS Version: E4CN34WW
BIOS Release Date: 08/02/2016
BIOS Start Segment: E000
BIOS Size: 6144 KBytes
System BIOS Version: 1.34
Embedded Controller Firmware Version: 1.34
ISA Support: Not Present
MCA Support: Not Present
EISA Support: Not Present
PCI Support: Present
PC Card (PCMCIA) Support: Not Present
Plug-and-Play Support: Not Present
APM Support: Not Present
Flash BIOS: Present
BIOS Shadow: Present
VL-VESA Support: Not Present
ESCD Support: Not Present
Boot from CD: Present
Selectable Boot: Present
BIOS ROM Socketed: Not Present
Boot from PC Card: Not Present
EDD Support: Not Present
NEC PC-98 Support: Present
ACPI Support: Present
USB Legacy Support: Present
AGP Support: Not Present
I2O Boot Support: Not Present
LS-120 Boot Support: Not Present
ATAPI ZIP Drive Boot Support: Not Present
IEE1394 Boot Support: Not Present
Smart Battery Support: Not Present
BIOS Boot Specification Support: Present
Function key-initiated Network Service Boot Support: Present
Targeted Content Distribution Support: Present
UEFI Specification Support: Present
System --------------------------------------------------------------------
System Manufacturer: LENOVO
Product Name: 80R9
Product Version: Lenovo ideapad 100S-14IBR
Product Serial Number: YD01GLME
UUID: {AD9B02E4-3FB3-1620-0928-005431000000}
SKU Number: LENOVO_MT_80R9_BU_idea_FM_Lenovo ideapad 100S-14IBR
Family: IDEAPAD
Mainboard -----------------------------------------------------------------
Mainboard Manufacturer: LENOVO
Mainboard Name: Aristotle 14
Mainboard Version: SDK0J40700 WIN
Mainboard Serial Number: YD01GLME
Asset Tag: No Asset Tag
Location in chassis: Part Component
System Enclosure ----------------------------------------------------------
Manufacturer: LENOVO
Case Type: Notebook
Version: Lenovo ideapad 100S-14IBR
Serial Number: YD01GLME
Asset Tag Number: No Asset Tag
Processor -----------------------------------------------------------------
Processor Manufacturer: Intel(R) Corporation
Processor Version: Intel(R) Pentium(R) CPU N3710 @ 1.60GHz
External Clock: 83 MHz
Maximum Clock Supported: 1660 MHz
Current Clock: 480 MHz
CPU Socket: Populated
CPU Status: Enabled
Processor Type: Central Processor
Processor Voltage: 3.9 V
Processor Upgrade: Slot 1
Socket Designation: CHV
L1 Cache ------------------------------------------------------------------
Socket Designation: L1 Cache
Cache State: Enabled
Cache Type: Internal, Data
Cache Scheme: Write-Back
Supported SRAM Type: Synchronous
Current SRAM Type: Synchronous
Cache Speed: Unknown
Error Correction Type: Parity
Maximum Cache Size: 24 KBytes
Installed Cache Size: 24 KBytes
Cache Associativity: Unknown
L1 Cache ------------------------------------------------------------------
Socket Designation: L1 Cache
Cache State: Enabled
Cache Type: Internal, Instruction
Cache Scheme: Write-Back
Supported SRAM Type: Synchronous
Current SRAM Type: Synchronous
Cache Speed: Unknown
Error Correction Type: Parity
Maximum Cache Size: 32 KBytes
Installed Cache Size: 32 KBytes
Cache Associativity: 8-way Set-Associative
L2 Cache ------------------------------------------------------------------
Socket Designation: L2 Cache
Cache State: Enabled
Cache Type: Internal, Unified
Cache Scheme: Write-Back
Supported SRAM Type: Synchronous
Current SRAM Type: Synchronous
Cache Speed: Unknown
Error Correction Type: Single-bit ECC
Maximum Cache Size: 1024 KBytes
Installed Cache Size: 1024 KBytes
Cache Associativity: 16-way Set-Associative
On Board Device -----------------------------------------------------------
Device Description: Intel(R) Extreme Graphics 3 Controller
Device Type: Video Adapter
Device Status: Enabled
On Board Device -----------------------------------------------------------
Device Description: Intel(R) Azalia Audio Device
Device Type: Audio Device
Device Status: Enabled
OEM Strings ---------------------------------------------------------------
System Configuration Options ----------------------------------------------
BIOS Language -------------------------------------------------------------
System Event Log ----------------------------------------------------------
Portable Battery ----------------------------------------------------------
Battery Location: Rear
Battery Manufacturer: Intel Corp.
Manufacture Date: 2010
Serial Number: 1.0
Device Name: Smart Battery
Device Chemistry: Unknown
Design Capacity: Unknown
Design Voltage: Unknown
SBDS Verison Number: V1.0
Max. Error in Battery Data: Unknown
SBDS Serial Number: Unknown
SBDS Manufacture Date: Unknown
SBDS Device Chemistry: Lithium-Ion
Hardware Security ---------------------------------------------------------
Power-on Password: Disabled
Keyboard Password: Disabled
Administrator Password: Disabled
Front Panel Reset: Disabled
System Boot Information ---------------------------------------------------
Boot Status: No error occured
Memory Devices ------------------------------------------------------------
Physical Memory Array -----------------------------------------------------
Array Location: System board
Array Use: System memory
Error Detecting Method: None
Memory Capacity: 8 GBytes
Memory Devices: 2
Memory Device -------------------------------------------------------------
Total Width: 8 bits
Data Width: 8 bits
Device Size: 2048 MBytes
Device Form Factor: SODIMM
Device Locator: ChannelA-DIMM0
Bank Locator: BANK 0
Device Type: DDR3 SDRAM
Device Type Detail: Synchronous
Memory Speed: 1600 MHz
Manufacturer: Hynix/Hyundai
Serial Number: 00000000
Part Number:
Asset Tag: 9876543210
Memory Device -------------------------------------------------------------
Total Width: 8 bits
Data Width: 8 bits
Device Size: 2048 MBytes
Device Form Factor: SODIMM
Device Locator: ChannelB-DIMM0
Bank Locator: BANK 1
Device Type: DDR3 SDRAM
Device Type Detail: Synchronous
Memory Speed: 1600 MHz
Manufacturer: Hynix/Hyundai
Serial Number: 00000000
Part Number:
Asset Tag: 9876543210
Memory Array Mapped Address -----------------------------------------------
Starting Address: 00000000
Ending Address: 003FFFFF
Partition Width: 2
Port Connectors -----------------------------------------------------------
Keyboard Port -------------------------------------------------------------
Port Type: Keyboard Port
Internal Reference: None
Internal Connector Type: None
External Reference: Keyboard
External Connector Type: PS/2
Mouse Port ----------------------------------------------------------------
Port Type: Mouse Port
Internal Reference: None
Internal Connector Type: None
External Reference: Mouse
External Connector Type: PS/2
Serial Port 16550A Compatible ---------------------------------------------
Port Type: Serial Port 16550A Compatible
Internal Reference: None
Internal Connector Type: Unknown
External Reference: COM 1
External Connector Type: DB-9 pin male
Video Port ----------------------------------------------------------------
Port Type: Video Port
Internal Reference: None
Internal Connector Type: Unknown
External Reference: Video
External Connector Type: DB-15 pin female
Video Port ----------------------------------------------------------------
Port Type: Video Port
Internal Reference: None
Internal Connector Type: Unknown
External Reference: HDMI
External Connector Type: None
USB -----------------------------------------------------------------------
Port Type: USB
Internal Reference: None
Internal Connector Type: None
External Reference: USB3.0 - 1#
External Connector Type: Access Bus (USB)
USB -----------------------------------------------------------------------
Port Type: USB
Internal Reference: None
Internal Connector Type: None
External Reference: USB3.0 - 2#
External Connector Type: Access Bus (USB)
USB -----------------------------------------------------------------------
Port Type: USB
Internal Reference: None
Internal Connector Type: None
External Reference: USB2.0 - 3#
External Connector Type: Access Bus (USB)
USB -----------------------------------------------------------------------
Port Type: USB
Internal Reference: None
Internal Connector Type: None
External Reference: USB2.0 - 4#
External Connector Type: Access Bus (USB)
Network Port --------------------------------------------------------------
Port Type: Network Port
Internal Reference: None
Internal Connector Type: None
External Reference: Ethernet
External Connector Type: RJ-45
SATA ----------------------------------------------------------------------
Port Type: SATA
Internal Reference: None
Internal Connector Type: SAS/SATA Plug Receptacle
External Reference: SATA Port 1 Direct Connect
External Connector Type: None
SATA ----------------------------------------------------------------------
Port Type: SATA
Internal Reference: SATA Port 2
Internal Connector Type: SAS/SATA Plug Receptacle
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: None
Internal Connector Type: None
External Reference: AC IN
External Connector Type: Unknown
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: TPM/PORT 80
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: HDA 2X8 Header
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: HDA 8Pin Header
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: HDA HDMI
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: Scan Matrix Keyboard
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: SPI Program
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: LPC Hot Docking
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: LPC SIDE BAND
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: LPC Slot
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: SATA Power
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: FP Header
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: ATX Power
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: BATT B
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: BATT A
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: CPU Fan
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: XDP
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: Memory Slot 1
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: Memory Slot 2
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
Port Connector ------------------------------------------------------------
Port Type: Unknown
Internal Reference: FAN PWR
Internal Connector Type: Unknown
External Reference: None
External Connector Type: None
System Slots --------------------------------------------------------------
PCI-Express 1 X4 ----------------------------------------------------------
Slot Designation: PCI-Express 1 X4
Slot Type: PCI Express
Slot Usage: Empty
Slot Data Bus Width: 4x / x4
Slot Length: Short
PCI-Express 2 X1 ----------------------------------------------------------
Slot Designation: PCI-Express 2 X1
Slot Type: PCI Express
Slot Usage: Empty
Slot Data Bus Width: 1x / x1
Slot Length: Short
PCI-Express 3 X1 ----------------------------------------------------------
Slot Designation: PCI-Express 3 X1
Slot Type: PCI Express
Slot Usage: In use
Slot Data Bus Width: 1x / x1
Slot Length: Short
PCI-Express 4 X1 ----------------------------------------------------------
Slot Designation: PCI-Express 4 X1
Slot Type: PCI Express
Slot Usage: Empty
Slot Data Bus Width: 1x / x1
Slot Length: Short
Intel ME ------------------------------------------------------------------
[Intel Manageability Engine Features]
Intel ME Version: 2.0, Build 2092, Hot Fix 2
Intel ME Recovery Image Version: 2.0, Build 2092, Hot Fix 2
Intel ME FITC Version: 2.0, Build 2092, Hot Fix 2
[ME Firmware Capabilities]
Full Network Manageability: Not Capable
Standard Network Manageability: Not Capable
Manageability (AMT): Not Capable
Remote Wake Technology: Not Capable
Quiet System Technology: Not Capable
Intel Anti-Theft: Not Capable
Capability Licensing Service: Capable
Virtualization Engine: Not Capable
Power Sharing Technology (MPC): Not Capable
ICC Over Clocking: Not Capable
Protected Audio Video Path (PAVP): Capable
Identity Protection Technology (IPT): Not Capable
Remote PC Assist (RPAT): Not Capable
IPV6: Not Capable
KVM Remote Control: Not Capable
Outbreak Containment Heuristic (OCH): Not Capable
Virtual LAN (VLAN): Capable
Cipher Transport Layer (TLS): Not Capable
Wireless LAN (WLAN): Not Capable
Platform Trust Technology (PTT): Capable
Near Field Communication (NFC): Capable
[ME Firmware Feature State]
Full Network Manageability: Disabled
Standard Network Manageability: Disabled
Manageability (AMT): Disabled
Remote Wake Technology: Not Capable
Quiet System Technology: Not Capable
Intel Anti-Theft: Disabled
Capability Licensing Service: Enabled
Virtualization Engine: Disabled
Power Sharing Technology (MPC): Disabled
ICC Over Clocking: Disabled
Protected Audio Video Path (PAVP): Enabled
Identity Protection Technology (IPT): Not Capable
Remote PC Assist (RPAT): Disabled
IPV6: Disabled
KVM Remote Control: Disabled
Outbreak Containment Heuristic (OCH): Disabled
Virtual LAN (VLAN): Capable
Cipher Transport Layer (TLS): Disabled
Wireless LAN (WLAN): Disabled
Platform Trust Technology (PTT): Enabled
Near Field Communication (NFC): Enabled
[ME Firmware Platform Type]
SKU: Regular SKU
Host ME Region Flash Protection Override (HMRFPO) Status: Disabled
Memory --------------------------------------------------------------------
[General information]
Total Memory Size: 3950 MBytes
Total Memory Size [MB]: 3950
[Current Performance Settings]
Current Memory Clock: 800.0 MHz
Current Timing (tCAS-tRCD-tRP-tRAS): 11-11-11-28
Memory Runs At: Dual-Channel
Command Rate: 1T
Read to Read Delay (tRD_RD) Different Rank: 7T
Write to Write Delay (tWR_WR) Different Rank: 6T
Read to Write Delay (tRD_WR) Same Rank: 10T
Read to Write Delay (tRD_WR) Different Rank: 10T
Read to Write Delay (tRD_WR) Different DIMM: 10T
Write to Read Delay (tWR_RD) Same Rank (tWTR): 19T
Write to Read Delay (tWR_RD) Different Rank: 7T
Read to Precharge Delay (tRTP): 7T
Write to Precharge Delay (tWTP): 25T
Write Recovery Time (tWR): 14T
RAS# to RAS# Delay (tRRD): 6T
Four Activate Window (tFAW): 32T
Bus -----------------------------------------------------------------------
PCI Bus #0 ----------------------------------------------------------------
Intel Cherryview/Braswell SoC - Transaction Router ------------------------
[General Information]
Device Name: Intel Cherryview/Braswell SoC - Transaction Router
Original Device Name: Intel Cherryview/Braswell SoC - Transaction Router
Device Class: Host-to-PCI Bridge
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:0:0
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_2280&SUBSYS_390517AA&REV_35
[System Resources]
Interrupt Line: N/A
Interrupt Pin: N/A
[Features]
Bus Mastering: Enabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Not Capable
[Driver Information]
Driver Manufacturer: (Standardsystemgeräte)
Driver Description: PCI Standard-Host-CPU-Brücke
Driver Provider: Microsoft
Driver Version: 10.0.15063.0
Driver Date: 21-Jun-2006
DeviceInstanceId PCI\VEN_8086&DEV_2280&SUBSYS_390517AA&REV_35\3&11583659&1&00
Intel Cherryview/Braswell SoC - Integrated Graphics Controller ------------
[General Information]
Device Name: Intel Cherryview/Braswell SoC - Integrated Graphics Controller
Original Device Name: Intel Cherryview/Braswell SoC - Integrated Graphics Controller
Device Class: VGA Compatible Adapter
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:2:0
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35
[System Resources]
Interrupt Line: N/A
Interrupt Pin: INTA#
Memory Base Address 0 90000000
Memory Base Address 2 80000000
I/O Base Address 4 1000
[Features]
Bus Mastering: Enabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Not Capable
[Driver Information]
Driver Manufacturer: Intel Corporation
Driver Description: Intel(R) HD Graphics
Driver Provider: Intel Corporation
Driver Version: 20.19.15.4568
Driver Date: 16-Dec-2016
DeviceInstanceId PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35\3&11583659&1&10
Intel Cherryview/Braswell SoC - P-Unit ------------------------------------
[General Information]
Device Name: Intel Cherryview/Braswell SoC - P-Unit
Original Device Name: Intel Cherryview/Braswell SoC - P-Unit
Device Class: Unknown Data Acquisition/Signal Processing Controller
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:11:0
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_22DC&SUBSYS_390517AA&REV_35
[System Resources]
Interrupt Line: IRQ21
Interrupt Pin: INTA#
Memory Base Address 0 91314000
[Features]
Bus Mastering: Enabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Not Capable
[Driver Information]
Driver Manufacturer: Intel
Driver Description: Intel(R) Dynamic Platform and Thermal Framework Processor Participant
Driver Provider: Intel
Driver Version: 8.1.10603.192
Driver Date: 07-Aug-2015
DeviceInstanceId PCI\VEN_8086&DEV_22DC&SUBSYS_390517AA&REV_35\3&11583659&1&58
Intel Cherryview/Braswell SoC - Storage Control Cluster - SD Controller ---
[General Information]
Device Name: Intel Cherryview/Braswell SoC - Storage Control Cluster - SD Controller
Original Device Name: Intel Cherryview/Braswell SoC - Storage Control Cluster - SD Controller
Device Class: SD Host Controller
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:18:0
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_2296&SUBSYS_390517AA&REV_35
[System Resources]
Interrupt Line: IRQ18
Interrupt Pin: INTA#
Memory Base Address 0 91315000
[Features]
Bus Mastering: Enabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Not Capable
[Driver Information]
Driver Manufacturer: SDA-Standard konformer SD-Hostcontrollerhersteller
Driver Description: SDA-Standard konformer SD-Hostcontroller
Driver Provider: Microsoft
Driver Version: 10.0.15063.0
Driver Date: 21-Jun-2006
DeviceInstanceId PCI\VEN_8086&DEV_2296&SUBSYS_390517AA&REV_35\3&11583659&1&90
Intel Cherryview/Braswell SoC - SATA AHCI Controller ----------------------
[General Information]
Device Name: Intel Cherryview/Braswell SoC - SATA AHCI Controller
Original Device Name: Intel Cherryview/Braswell SoC - SATA AHCI Controller
Device Class: SATA AHCI Controller
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:19:0
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_22A3&SUBSYS_390517AA&REV_35
[System Resources]
Interrupt Line: N/A
Interrupt Pin: INTA#
I/O Base Address 4 1060
Memory Base Address 5 9131A000
[Features]
Bus Mastering: Enabled
Running At 66 MHz: Capable
Fast Back-to-Back Transactions: Capable
[SATA Host Controller]
Interface Speed Supported: Gen3 6.0 Gbps
Number Of Ports: 2
External SATA Support: Not Capable
Aggressive Link Power Management: Not Capable
Staggered Spin-up: Not Capable
Mechanical Presence Switch: Not Capable
Command Queue Acceleration: Capable
64-bit Addressing: Capable
AHCI Status: Enabled
AHCI Version: 1.31
Ports Implemented: 0, 1
[SATA Port#0]
Port Status: Device Present, Phy communication established
Current Interface Speed: Gen3 6.0 Gbps
External SATA Port: Not Capable
Hot Plug: Not Capable
Device Type: SATA
[SATA Port#1]
Port Status: Phy in offline mode
External SATA Port: Not Capable
Hot Plug: Not Capable
[Driver Information]
Driver Manufacturer: Standardmäßiger SATA AHCI- Controller
Driver Description: Standardmäßiger SATA AHCI- Controller
Driver Provider: Microsoft
Driver Version: 10.0.15063.0
Driver Date: 21-Jun-2006
DeviceInstanceId PCI\VEN_8086&DEV_22A3&SUBSYS_390517AA&REV_35\3&11583659&1&98
Intel Cherryview/Braswell SoC - USB 3.0 xHCI Controller -------------------
[General Information]
Device Name: Intel Cherryview/Braswell SoC - USB 3.0 xHCI Controller
Original Device Name: Intel Cherryview/Braswell SoC - USB 3.0 xHCI Controller
Device Class: USB xHCI Controller
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:20:0
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_22B5&SUBSYS_390517AA&REV_35
[System Resources]
Interrupt Line: N/A
Interrupt Pin: INTA#
Memory Base Address 0 91300000
[Features]
Bus Mastering: Disabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Capable
USB Version Supported: 3.0
[Driver Information]
Driver Manufacturer: Generischer USB-xHCI-Hostcontroller
Driver Description: USB-xHCI-kompatibler Hostcontroller
Driver Provider: Microsoft
Driver Version: 10.0.15063.296
Driver Date: 27-Apr-2017
DeviceInstanceId PCI\VEN_8086&DEV_22B5&SUBSYS_390517AA&REV_35\3&11583659&1&A0
USB Root Hub --------------------------------------------------------------
[Port1] : No Device Connected ---------------------------------------------
[Port2] : No Device Connected ---------------------------------------------
[Port3] : Intel Bluetooth V4.0 Module -------------------------------------
[Device Information]
Device Manufacturer: Intel
Product Name: Intel Bluetooth V4.0 Module
Serial Number: -
USB Version Supported: 2.00
USB Device Speed: USB 1.1 Full-speed
Driver Description: Intel(R) Wireless Bluetooth(R)
Hardware ID: USB\VID_8087&PID_07DC
[Driver Information]
Driver Manufacturer: Intel Corporation
Driver Description: Intel(R) Wireless Bluetooth(R)
Driver Provider: Intel Corporation
Driver Version: 19.10.1635.483
Driver Date: 02-Sep-2016
DeviceInstanceId USB\VID_8087&PID_07DC\5&196FB8FE&0&3
[Port4] : No Device Connected ---------------------------------------------
[Port5] : USB-Verbundgerät ------------------------------------------------
[Device Information]
Device Manufacturer: -
Product Name: -
Serial Number: -
USB Version Supported: 2.00
USB Device Speed: USB 2.0 High-speed
Driver Description: USB-Verbundgerät
Hardware ID: USB\VID_5986&PID_0673
[Driver Information]
Driver Manufacturer: (Standard-USB-Hostcontroller)
Driver Description: USB-Verbundgerät
Driver Provider: Microsoft
Driver Version: 10.0.15063.0
Driver Date: 21-Jun-2006
DeviceInstanceId USB\VID_5986&PID_0673\200901010001
[Port6] : No Device Connected ---------------------------------------------
[Port7] : No Device Connected ---------------------------------------------
[Port8] : No Device Connected ---------------------------------------------
[Port9] : No Device Connected ---------------------------------------------
[Port10] : No Device Connected --------------------------------------------
[Port11] : No Device Connected --------------------------------------------
[Port12] : No Device Connected --------------------------------------------
[Port13] : No Device Connected --------------------------------------------
Intel Cherryview/Braswell SoC - Trusted Execution Engine ------------------
[General Information]
Device Name: Intel Cherryview/Braswell SoC - Trusted Execution Engine
Original Device Name: Intel Cherryview/Braswell SoC - Trusted Execution Engine
Device Class: Unknown En/Decryption
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:26:0
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_2298&SUBSYS_390517AA&REV_35
[System Resources]
Interrupt Line: N/A
Interrupt Pin: INTA#
Memory Base Address 0 91200000
Memory Base Address 1 91100000
[Features]
Bus Mastering: Enabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Not Capable
[Driver Information]
Driver Manufacturer: Intel
Driver Description: Intel(R) Trusted Execution Engine Interface
Driver Provider: Intel
Driver Version: 2.0.0.1094
Driver Date: 11-Oct-2015
DeviceInstanceId PCI\VEN_8086&DEV_2298&SUBSYS_390517AA&REV_35\3&11583659&1&D0
Intel Cherryview/Braswell SoC - HD Audio Controller -----------------------
[General Information]
Device Name: Intel Cherryview/Braswell SoC - HD Audio Controller
Original Device Name: Intel Cherryview/Braswell SoC - HD Audio Controller
Device Class: Mixed mode device
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:27:0
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_2284&SUBSYS_390517AA&REV_35
[System Resources]
Interrupt Line: IRQ22
Interrupt Pin: INTA#
Memory Base Address 0 91310000
[Features]
Bus Mastering: Enabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Not Capable
[Driver Information]
Driver Manufacturer: Microsoft
Driver Description: High Definition Audio-Controller
Driver Provider: Microsoft
Driver Version: 10.0.15063.0
Driver Date: 17-Mar-2017
DeviceInstanceId PCI\VEN_8086&DEV_2284&SUBSYS_390517AA&REV_35\3&11583659&1&D8
Intel Cherryview/Braswell SoC - PCI Express Root Port 1 -------------------
[General Information]
Device Name: Intel Cherryview/Braswell SoC - PCI Express Root Port 1
Original Device Name: Intel Cherryview/Braswell SoC - PCI Express Root Port 1
Device Class: PCI-to-PCI Bridge
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:28:0
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_22C8&SUBSYS_00000000&REV_35
[PCI Express]
Version: 2.0
Maximum Link Width: 1x
Current Link Width: Not negotiated
Maximum Link Speed: 5.0 GT/s
Current Link Speed: 2.5 GT/s
Device/Port Type: Root Port of PCI Express Root Complex
Slot Implemented: Yes
Hot-Plug: Capable
Hot-Plug Surprise: Capable
Emergency Power Reduction: Not Supported
Active State Power Management (ASPM) Support: L0s and L1
Active State Power Management (ASPM) Status: Disabled
L0s Exit Latency: 512 ns - 1 us
L1 Exit Latency: 2 - 4 us
[System Resources]
Interrupt Line: N/A
Interrupt Pin: N/A
[Features]
Bus Mastering: Enabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Not Capable
[Driver Information]
Driver Manufacturer: (Standardsystemgeräte)
Driver Description: PCI-zu-PCI-Brücke
Driver Provider: Microsoft
Driver Version: 10.0.15063.0
Driver Date: 21-Jun-2006
DeviceInstanceId PCI\VEN_8086&DEV_22C8&SUBSYS_390517AA&REV_35\3&11583659&1&E0
PCI Express x1 Bus #1 -----------------------------------------------------
Intel Cherryview/Braswell SoC - PCI Express Root Port 3 -------------------
[General Information]
Device Name: Intel Cherryview/Braswell SoC - PCI Express Root Port 3
Original Device Name: Intel Cherryview/Braswell SoC - PCI Express Root Port 3
Device Class: PCI-to-PCI Bridge
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:28:2
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_22CC&SUBSYS_00000000&REV_35
[PCI Express]
Version: 1.1
Maximum Link Width: 1x
Current Link Width: 1x
Maximum Link Speed: 2.5 GT/s
Current Link Speed: 2.5 GT/s
Device/Port Type: Root Port of PCI Express Root Complex
Slot Implemented: Yes
Hot-Plug: Not Capable
Hot-Plug Surprise: Not Capable
Slot Power Limit: 10.000 W
Emergency Power Reduction: Not Supported
Active State Power Management (ASPM) Support: L0s and L1
Active State Power Management (ASPM) Status: Disabled
L0s Exit Latency: 256 - 512 ns
L1 Exit Latency: 8 - 16 us
[System Resources]
Interrupt Line: N/A
Interrupt Pin: INTC#
[Features]
Bus Mastering: Enabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Not Capable
[Driver Information]
Driver Manufacturer: (Standardsystemgeräte)
Driver Description: PCI-zu-PCI-Brücke
Driver Provider: Microsoft
Driver Version: 10.0.15063.0
Driver Date: 21-Jun-2006
DeviceInstanceId PCI\VEN_8086&DEV_22CC&SUBSYS_390517AA&REV_35\3&11583659&1&E2
PCI Express x1 Bus #2 -----------------------------------------------------
Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter -------------------------
[General Information]
Device Name: Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter
Original Device Name: Intel Wireless 3160 WiFi Adapter
Device Class: Unknown Network Adapter
Revision ID: 93
PCI Address (Bus:Device:Function) Number: 2:0:0
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93
[PCI Express]
Version: 1.1
Maximum Link Width: 1x
Current Link Width: 1x
Maximum Link Speed: 2.5 GT/s
Current Link Speed: 2.5 GT/s
Device/Port Type: PCI Express Endpoint
Slot Implemented: No
Emergency Power Reduction: Not Supported
Active State Power Management (ASPM) Support: L0s and L1
Active State Power Management (ASPM) Status: Disabled
L0s Exit Latency: 2 - 4 us
L1 Exit Latency: 16 - 32 us
[System Resources]
Interrupt Line: N/A
Interrupt Pin: INTA#
Memory Base Address 0 91000000
[Features]
Bus Mastering: Enabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Not Capable
[Driver Information]
Driver Manufacturer: Intel Corporation
Driver Description: Intel(R) Dual Band Wireless-AC 3160
Driver Provider: Intel
Driver Version: 18.12.0.3
Driver Date: 16-Jul-2015
DeviceInstanceId PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93\4&2EAAB296&0&00E2
Intel Cherryview/Braswell SoC - Platform Controller Unit - LPC ------------
[General Information]
Device Name: Intel Cherryview/Braswell SoC - Platform Controller Unit - LPC
Original Device Name: Intel Cherryview/Braswell SoC - Platform Controller Unit - LPC
Device Class: PCI-to-ISA Bridge
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:31:0
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_229C&SUBSYS_390517AA&REV_35
[System Resources]
Interrupt Line: N/A
Interrupt Pin: N/A
[Features]
Bus Mastering: Enabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Not Capable
[Driver Information]
Driver Manufacturer: (Standardsystemgeräte)
Driver Description: PCI Standard-ISA-Brücke
Driver Provider: Microsoft
Driver Version: 10.0.15063.0
Driver Date: 21-Jun-2006
DeviceInstanceId PCI\VEN_8086&DEV_229C&SUBSYS_390517AA&REV_35\3&11583659&1&F8
Intel Cherryview/Braswell SoC - SMBus Controller --------------------------
[General Information]
Device Name: Intel Cherryview/Braswell SoC - SMBus Controller
Original Device Name: Intel Cherryview/Braswell SoC - SMBus Controller
Device Class: SMBus (System Management Bus)
Revision ID: 35
PCI Address (Bus:Device:Function) Number: 0:31:3
PCI Latency Timer: 0
Hardware ID: PCI\VEN_8086&DEV_2292&SUBSYS_390517AA&REV_35
[System Resources]
Interrupt Line: N/A
Interrupt Pin: INTB#
Memory Base Address 0 9131A800
I/O Base Address 4 1040
[Features]
Bus Mastering: Disabled
Running At 66 MHz: Not Capable
Fast Back-to-Back Transactions: Capable
[Driver Information]
Driver Manufacturer: INTEL
Driver Description: Intel(R) Celeron(R)/Pentium(R) SM Bus Controller - 2292
Driver Provider: INTEL
Driver Version: 10.1.1.11
Driver Date: 17-Aug-2015
DeviceInstanceId PCI\VEN_8086&DEV_2292&SUBSYS_390517AA&REV_35\3&11583659&1&FB
Video Adapter -------------------------------------------------------------
Intel HD Graphics 400/405 -------------------------------------------------
[Video chipset]
Video Chipset: Intel HD Graphics 400/405
Video Chipset Codename: Braswell
Video Memory: 1024 MBytes
[Video Card]
Video Card: Intel Cherryview/Braswell SoC - Integrated Graphics Controller [Lenovo]
Video Bus: Integrated
Video RAMDAC: Internal
Video BIOS Version: Unknown
[Performance]
Processor Clock: 400.0 MHz
Hardware ID: PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35
PCI Location (Bus:Dev:Fnc): 0:02:0
[Driver Information]
Driver Manufacturer: Intel Corporation
Driver Description: Intel(R) HD Graphics
Driver Provider: Intel Corporation
Driver Version: 20.19.15.4568
Driver Date: 16-Dec-2016
DeviceInstanceId PCI\VEN_8086&DEV_22B1&SUBSYS_390517AA&REV_35\3&11583659&1&10
Monitor -------------------------------------------------------------------
Chi Mei [Unknown Model: CMN1487] ------------------------------------------
[General information]
Monitor Name: Chi Mei [Unknown Model: CMN1487]
Monitor Name (Manuf): N140BGE-EB3 CMN N140BGE-EB3
Serial Number: Unknown
Date Of Manufacture: Week: 40, Year: 2013
Monitor Hardware ID: Monitor\CMN1487
Max. Vertical Size: 17 cm
Max. Horizontal Size: 31 cm
[Advanced parameters]
Input Signal: Digital
Color Bit Depth: 6 Bits per Primary Color
Digital Video Interface Standard Supported: DisplayPort
Display Type: Monochrome/grey scale
Gamma Factor: 2.20
[DPMS Modes]
Standby: Not Supported
Suspend: Not Supported
Active Off: Not Supported
Standard Colour Space: Not Supported
Preferred Timing Mode: Supported
Default GTF Supported: Not Supported
DFP 1.x Compatible: Yes
[Supported Video Modes]
1366 x 768 309 x 173 mm, Pixel Clock 76.42 MHz
Drives --------------------------------------------------------------------
Floppy Drives -------------------------------------------------------------
Unknown -------------------------------------------------------------------
Unknown -------------------------------------------------------------------
(S)ATA/ATAPI Drives -------------------------------------------------------
LITEON CV3-8D128 ----------------------------------------------------------
[General Information]
Drive Controller: Serial ATA 6Gb/s @ 6Gb/s
Drive Model: LITEON CV3-8D128
Drive Revision: T876201
Drive Serial Number: SD0L02318L1TH6810GAA
World Wide Name: 50023031B0DCD8
Drive Capacity: 122,104 MBytes (128 GB)
Drive Capacity [MB]: 122104
Media Rotation Rate: SSD Drive (Non-rotating)
ATA Major Version Supported: ATA/ATAPI-5, ATA/ATAPI-6, ATA/ATAPI-7, ATA8-ACS, ACS-2
ATA Minor Version Supported: ATA/ATAPI-7 T13 1532D version 4a
ATA Transport Version Supported: SATA 3.1
[Drive Geometry]
Number of Cylinders: 16383
Number of Heads: 16
Sectors Per Track: 63
Number of Sectors: 16514064
Total 32-bit LBA Sectors: 250069680
Total 48-bit LBA Sectors: 250069680
Logical Sector Size: 512 Bytes
Cache Buffer Size: N/A
[Transfer Modes]
Sectors Per Interrupt: Total: 1, Active: 0
Max. PIO Transfer Mode: 4
Multiword DMA Mode: Total: 2, Active: -
Singleword DMA Mode: Total: -, Active: -
Ultra-DMA Mode: Total: 6 (ATA-133), Active: 6 (ATA-133)
Max. Multiword DMA Transfer Rate: 16.7 MBytes/s
Max. PIO with IORDY Transfer Rate: 16.7 MBytes/s
Max. PIO w/o IORDY Transfer Rate: 16.7 MBytes/s
Native Command Queuing: Supported, Max. Depth: 32
TRIM Command: Supported (Deterministic Read After TRIM, Words = 0)
[Device flags]
Fixed Drive: Not Present
Removable Drive: Not Present
Magnetic Storage: Present
LBA Mode: Supported
DMA Mode: Supported
IORDY: Supported
IORDY Disableable: Supported
[Features]
Write Cache: Present, Active
S.M.A.R.T. Feature: Present, Active
Security Feature: Present, Inactive
Removable Media Feature: Not Present, Disabled
Power Management: Present, Active
Advanced Power Management: Not Present, Inactive
Packet Interface: Not Present, Disabled
Look-Ahead Buffer: Present, Active
Host Protected Area: Present, Enabled
Power-Up In Standby: Not Suppported, Inactive
Automatic Acoustic Management: Not Suppported, Inactive
48-bit LBA: Supported, Active
Host-Initiated Link Power Management: Not Supported
Device-Initiated Link Power Management: Supported, Disabled
In-Order Data Delivery: Not Supported
Hardware Feature Control: Not Supported
Software Settings Preservation: Supported, Enabled
NCQ Autosense: Not Supported
Link Power State Device Sleep: Supported, Disabled
Hybrid Information Feature: Not Supported
Rebuild Assist: Not Supported
Power Disable: Not Supported
All Write Cache Non-Volatile: Not Supported
Extended Number of User Addressable Sectors: Not Supported
CFast Specification: Not Supported
NCQ Priority Information: Not Supported
Host Automatic Partial to Slumber Transitions: Not Supported
Device Automatic Partial to Slumber Transitions: Not Supported
NCQ Streaming: Not Supported
NCQ Queue Management Command: Not Supported
DevSleep to Reduced Power State: Supported
Extended Power Conditions Feature: Not Supported
Sense Data Reporting Feature: Not Supported
Free-Fall Control Feature: Not Supported
Write-Read-Verify Feature: Not Supported
[Security]
Security Feature: Supported
Security Status: Disabled
Security Locked: Disabled
Security Frozen: Enabled
Enhanced Security Erase: Supported
Sanitize Feature: Not Supported
Sanitize Device - Crypto Scramble: Not Supported
Sanitize Device - Overwrite: Not Supported
Sanitize Device - Block Erase: Not Supported
Sanitize Device - Antifreeze Lock: Not Supported
Device Encrypts All User Data: Not Supported
Trusted Computing: Not Supported
[Self-Monitoring, Analysis and Reporting Technology (S.M.A.R.T.)]
[05] Reallocated Sector Count: 100/Always OK, Worst: 100
[09] Power-On Hours/Cycle Count: 100/Always OK, Worst: 100 (220 hours / 9.2 days)
[0C] Power Cycle Count: 100/Always OK, Worst: 100 (Data = 321,0)
[AA] Grown Failing: 100/Always OK, Worst: 100
[AB] Program Fail Block Count: 100/Always OK, Worst: 100
[AC] Erase Fail Block Count: 100/Always OK, Worst: 100
[AD] Wear Leveling Count/Erase Count: 100/Always OK, Worst: 100 (Data = 2,0)
[AE] Unexpected Power Loss Count: 100/Always OK, Worst: 100 (Data = 3,0)
[B2] Used Reserved Block Count (Chip): 100/Always OK, Worst: 100
[B4] Unused Reserved Block Count (Total): 100/10, Worst: 100 (Data = 632,0)
[B8] End to End Error Detection Count: 100/Always OK, Worst: 100
[BB] Reported Uncorrectable Errors: 100/Always OK, Worst: 100
[C2] Temperature 100/Always OK, Worst: 100 (69.0 °C)
[C7] UltraDMA/SATA CRC Error Rate: 100/Always OK, Worst: 100
[E9] Power-On Hours 100/1, Worst: 100 (Data = 100,0)
[F1] Lifetime Writes from Host (LBAs Written): 100/Always OK, Worst: 100 (Data = 649,0)
[F2] Lifetime Reads from Host (LBAs Read): 100/Always OK, Worst: 100 (Data = 873,0)
[F9] Total NAND Writes: 100/Always OK, Worst: 100 (Data = 341,0)
Audio ---------------------------------------------------------------------
Intel Cherryview/Braswell SoC - HD Audio Controller -----------------------
Audio Adapter: Intel Cherryview/Braswell SoC - HD Audio Controller
Audio Controller Hardware ID: PCI\VEN_8086&DEV_2284&SUBSYS_390517AA&REV_35
Network -------------------------------------------------------------------
Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter -------------------------
[General information]
Network Card: Intel Dual Band Wireless-AC 3160 HMC WiFi Adapter
Vendor Description: Microsoft
MAC Address: E4-02-9B-AD-B3-3F
[Capabilities]
Maximum Link Speed: 40 Mbps
Transmit Buffer Size: 6201344 Bytes
Receive Buffer Size: 6201344 Bytes
Hardware ID: PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93
[Driver Information]
Driver Manufacturer: Intel Corporation
Driver Description: Intel(R) Dual Band Wireless-AC 3160
Driver Provider: Intel
Driver Version: 18.12.0.3
Driver Date: 16-Jul-2015
DeviceInstanceId PCI\VEN_8086&DEV_08B4&SUBSYS_82708086&REV_93\4&2EAAB296&0&00E2
Ports ---------------------------------------------------------------------
Serial Ports --------------------------------------------------------------
Parallel Ports ------------------------------------------------------------
USB -----------------------------------------------------------------------
USB-xHCI-kompatibler Hostcontroller ---------------------------------------
Root Hub ------------------------------------------------------------------
[Port1] : No Device Connected ---------------------------------------------
[Port2] : No Device Connected ---------------------------------------------
[Port3] : Intel Bluetooth V4.0 Module -------------------------------------
[Device Information]
Device Manufacturer: Intel
Product Name: Intel Bluetooth V4.0 Module
Serial Number: -
USB Version Supported: 2.00
USB Device Speed: USB 1.1 Full-speed
Driver Description: Intel(R) Wireless Bluetooth(R)
Hardware ID: USB\VID_8087&PID_07DC
[Driver Information]
Driver Manufacturer: Intel Corporation
Driver Description: Intel(R) Wireless Bluetooth(R)
Driver Provider: Intel Corporation
Driver Version: 19.10.1635.483
Driver Date: 02-Sep-2016
DeviceInstanceId USB\VID_8087&PID_07DC\5&196FB8FE&0&3
[Port4] : No Device Connected ---------------------------------------------
[Port5] : USB-Verbundgerät ------------------------------------------------
[Device Information]
Device Manufacturer: -
Product Name: -
Serial Number: -
USB Version Supported: 2.00
USB Device Speed: USB 2.0 High-speed
Driver Description: USB-Verbundgerät
Hardware ID: USB\VID_5986&PID_0673
[Driver Information]
Driver Manufacturer: (Standard-USB-Hostcontroller)
Driver Description: USB-Verbundgerät
Driver Provider: Microsoft
Driver Version: 10.0.15063.0
Driver Date: 21-Jun-2006
DeviceInstanceId USB\VID_5986&PID_0673\200901010001
[Port6] : No Device Connected ---------------------------------------------
[Port7] : No Device Connected ---------------------------------------------
[Port8] : No Device Connected ---------------------------------------------
[Port9] : No Device Connected ---------------------------------------------
[Port10] : No Device Connected --------------------------------------------
[Port11] : No Device Connected --------------------------------------------
[Port12] : No Device Connected --------------------------------------------
[Port13] : No Device Connected --------------------------------------------
Smart Battery -------------------------------------------------------------
Battery #0 ----------------------------------------------------------------
[General Properties]
Device Name: Harris Beach
Manufacturer Name: Intel SR 1
Serial Number: 123456789
Unique ID: 123456789Intel SR 1Harris Beach
Chemistry: Lithium Ion
Designed Capacity: 33060 mWh
Full Charged Capacity: 24898 mWh
Wear Level: 24.7 %
Cycle Count: 47
[Current Power Status]
Power Status: Charging On AC Power
Current Capacity: 20923 mWh (84.0 %)
Current Voltage: 8.552 V
Charge Rate: 16401 mW
Geändert von losprimeros (24.06.2017 um 13:38 Uhr) |
| | #2 |
![]() ![]() | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Anleitung / Hilfe Nochmal einzeln zur besseren Übersicht
__________________FRST: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 21-06-2017 01
durchgeführt von hesse (Administrator) auf LAPTOP-9CHC4QNU (24-06-2017 13:04:51)
Gestartet von C:\Users\hesse\Desktop
Geladene Profile: hesse (Verfügbare Profile: hesse)
Platform: Windows 10 Home Version 1703 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
() C:\Program Files\Lenovo\LenovoUtility\utility.exe
(Flux Software LLC) C:\Users\hesse\AppData\Local\FluxSoftware\Flux\flux.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files (x86)\Lenovo\System Update\SUService.exe
(Microsoft Corporation) C:\Windows\System32\MusNotificationUx.exe
(Microsoft Corporation) C:\Windows\HelpPane.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Lenovo Group Limited) C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe
==================== Registry (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-01-13] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1410168 2016-01-13] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1410168 2016-01-13] (Realtek Semiconductor)
HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [791848 2016-09-29] ()
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\Run: [f.lux] => C:\Users\hesse\AppData\Local\FluxSoftware\Flux\flux.exe [1024240 2016-12-06] (Flux Software LLC)
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\RunOnce: [Uninstall 17.3.6816.0313\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\hesse\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64"
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\RunOnce: [Uninstall 17.3.6816.0313] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\hesse\AppData\Local\Microsoft\OneDrive\17.3.6816.0313"
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{cac6f97e-a143-4844-b9a2-28bd400435aa}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{fd987693-8ab4-4e75-acec-ec4ac2b4fb57}: [DhcpNameServer] 169.254.73.172
Internet Explorer:
==================
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo15.msn.com/?pc=LCTE
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-06-18] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-06-18] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-06-18] (Microsoft Corporation)
FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-01] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-01] (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-05-27] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.)
Chrome:
=======
CHR HomePage: Default -> hxxps://www.google.de/
CHR StartupUrls: Default -> "hxxps://www.google.de/","hxxp://www.mystartsearch.com/?type=hp&ts=1429435474&from=cor&uid=ST31000524AS_9VPFPKH3"
CHR Session Restore: Default -> ist aktiviert.
CHR Profile: C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default [2017-06-24]
CHR Extension: (ProxFlow) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2017-03-27]
CHR Extension: (Google Präsentationen) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-01-03]
CHR Extension: (Google Docs) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-01-03]
CHR Extension: (Google Drive) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-01-03]
CHR Extension: (Open with Microsoft Office Online Viewer) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcknfcclbcpdeopdopomkdbjmldgdeld [2017-03-27]
CHR Extension: (YouTube) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-01-03]
CHR Extension: (Ecosia Omnibar Redirect (Legacy)) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\clellnciejhoedgepbdilbkdkaoecgpc [2017-05-11]
CHR Extension: (Ecosia) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\eedlgdlajadkbbjoobobefphmfkcchfk [2017-06-06]
CHR Extension: (Google Tabellen) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-01-03]
CHR Extension: (Google Docs Offline) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-01-03]
CHR Extension: (AdBlock) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-06-22]
CHR Extension: (Auto-HD für YouTube™) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\koiaokdomkpjdgniimnkhgbilbjgpeak [2017-03-27]
CHR Extension: (Top Eleven) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljphpjlafmmdmegmfbkacafhbegjfkkn [2017-03-27]
CHR Extension: (Ghostery) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2017-06-02]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09]
CHR Extension: (Google Mail) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-01-03]
CHR Extension: (Chrome Media Router) - C:\Users\hesse\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-06-15]
==================== Dienste (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [4122816 2017-06-10] (Microsoft Corporation)
R2 esifsvc; C:\WINDOWS\SysWOW64\esif_uf.exe [1385640 2015-08-07] (Intel Corporation)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [134880 2016-12-27] (ELAN Microelectronics Corp.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373752 2017-05-16] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [887784 2015-09-03] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Datei ist nicht signiert]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Datei ist nicht signiert]
R2 jhi_service; C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [174368 2015-04-21] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-07-09] ()
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [4088608 2016-09-21] (Safer-Networking Ltd.) [Datei ist nicht signiert]
S2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [235984 2016-11-24] (Safer-Networking Ltd.) [Datei ist nicht signiert]
R3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [28544 2016-09-10] ()
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-03-18] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831712 2015-07-09] (Intel® Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]
===================== Treiber (Nicht auf der Ausnahmeliste) ======================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [55816 2015-08-13] (Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [53752 2015-08-13] (Intel Corporation)
R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [261624 2015-08-13] (Intel Corporation)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [230144 2016-11-11] (Intel Corporation)
R3 igfxLP; C:\WINDOWS\system32\DRIVERS\igdkmd64lp.sys [7407096 2017-05-16] (Intel Corporation)
R1 MpKsl43a2972f; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C6294BDD-C6B5-4EB5-8D28-2F2C5ECC33A0}\MpKsl43a2972f.sys [44928 2017-06-24] (Microsoft Corporation)
R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [4043544 2015-07-16] (Intel Corporation)
R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3057920 2015-10-08] (Realtek Semiconductor Corp.)
S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] ()
R3 TXEIx64; C:\WINDOWS\System32\drivers\TXEIx64.sys [146200 2015-10-15] (Intel Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation)
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2017-06-24 13:04 - 2017-06-24 13:05 - 00015374 _____ C:\Users\hesse\Desktop\FRST.txt
2017-06-24 13:01 - 2017-06-24 13:02 - 04110280 _____ C:\Users\hesse\Desktop\AdwCleaner_6.047.exe
2017-06-24 12:59 - 2017-06-24 13:04 - 00000000 ____D C:\FRST
2017-06-24 12:56 - 2017-06-24 12:56 - 02439680 _____ (Farbar) C:\Users\hesse\Desktop\FRST64.exe
2017-06-24 12:48 - 2017-06-24 12:52 - 00000000 ___HD C:\$SysReset
2017-06-24 12:47 - 2017-06-24 12:47 - 00000000 ____D C:\Users\hesse\AppData\Local\DBG
2017-06-15 20:38 - 2017-06-22 02:47 - 00000000 ____D C:\Users\hesse\AppData\LocalLow\Mozilla
2017-06-15 09:40 - 2017-06-15 09:40 - 00001285 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2017-06-15 09:40 - 2017-06-15 09:40 - 00001273 _____ C:\Users\Public\Desktop\Mozilla Thunderbird.lnk
2017-06-15 09:35 - 2017-06-15 09:35 - 00002132 _____ C:\Users\hesse\Desktop\shutdown.lnk
2017-06-15 09:26 - 2017-06-15 09:26 - 00000000 ____D C:\WINDOWS\System32\Tasks\TVT
2017-06-15 09:26 - 2017-06-15 09:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools
2017-06-15 09:25 - 2017-06-15 09:26 - 00000000 ____D C:\ProgramData\Lenovo
2017-06-15 09:25 - 2017-06-15 09:25 - 00000000 ____D C:\Users\hesse\AppData\Local\LenovoServiceBridge
2017-06-15 09:24 - 2017-06-15 09:26 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo
2017-06-15 09:24 - 2017-06-15 09:24 - 02723976 _____ (Lenovo ) C:\Users\hesse\Downloads\LSBSetup.exe
2017-06-15 09:24 - 2017-06-15 09:24 - 00000000 ____D C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2017-06-24 12:52 - 2017-03-18 22:51 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-06-24 01:06 - 2017-03-18 23:03 - 00000000 ___HD C:\Program Files\WindowsApps
2017-06-24 01:06 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-06-20 17:02 - 2016-09-29 04:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2017-06-20 00:27 - 2017-01-03 12:10 - 00002343 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-06-19 23:55 - 2017-05-23 22:50 - 00003290 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-06-19 23:55 - 2017-01-03 12:03 - 00002390 _____ C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-06-19 23:55 - 2017-01-03 12:03 - 00000000 ___RD C:\Users\hesse\OneDrive
2017-06-18 20:21 - 2017-05-23 22:52 - 01958306 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-06-18 20:21 - 2017-03-20 06:35 - 00859952 _____ C:\WINDOWS\system32\perfh007.dat
2017-06-18 20:21 - 2017-03-20 06:35 - 00178552 _____ C:\WINDOWS\system32\perfc007.dat
2017-06-18 20:17 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\NDF
2017-06-18 10:09 - 2017-03-18 23:03 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-06-15 20:07 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\rescache
2017-06-15 09:40 - 2017-01-03 13:35 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2017-06-15 09:40 - 2017-01-03 13:35 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-06-15 09:38 - 2017-02-26 16:36 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2017-06-15 09:26 - 2017-03-18 23:01 - 00000000 ____D C:\WINDOWS\INF
2017-06-15 09:26 - 2016-09-29 04:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2017-06-15 09:26 - 2016-09-29 04:50 - 00000000 ____D C:\Program Files (x86)\Lenovo
2017-06-14 20:58 - 2017-01-03 12:44 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-06-14 20:50 - 2017-05-23 22:40 - 00000000 ____D C:\Users\hesse
2017-06-14 20:49 - 2017-01-03 12:44 - 133627792 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-06-11 18:38 - 2017-05-23 22:38 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-06-11 18:38 - 2017-01-03 12:01 - 00000000 __SHD C:\Users\hesse\IntelGraphicsProfiles
2017-06-04 22:52 - 2017-05-23 22:50 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-06-04 22:52 - 2017-03-18 13:40 - 01310720 _____ C:\WINDOWS\system32\config\BBI
2017-06-03 08:32 - 2017-03-18 23:06 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-06-03 08:32 - 2017-03-18 23:06 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-05-31 00:50 - 2017-01-03 12:30 - 00565416 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2017-05-27 18:55 - 2017-05-23 22:37 - 00382176 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-05-27 18:31 - 2017-01-03 12:01 - 00000000 ____D C:\Users\hesse\AppData\Local\Packages
2017-05-25 19:51 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\appcompat
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2017-05-23 22:39 - 2017-05-23 22:39 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap ======================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2017-06-24 02:28
==================== Ende von FRST.txt ============================
Code:
ATTFilter Untersuchungsergebnis der Verknüpfungen des Benutzers (x64) Version: 21-06-2017 01
durchgeführt von hesse (24-06-2017 13:07:04)
Gestartet von C:\Users\hesse\Desktop
Start-Modus: Normal
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\01 - File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\03 - Documents.lnk -> C:\Users\hesse\Documents ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\04 - Downloads.lnk -> C:\Users\hesse\Downloads ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\05 - Music.lnk -> C:\Users\hesse\Music ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\06 - Pictures.lnk -> C:\Users\hesse\Pictures ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\07 - Videos.lnk -> C:\Users\hesse\Videos ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\08 - Homegroup.lnk -> Microsoft.Windows.Homegroup
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\09 - Network.lnk -> Microsoft.Windows.Network
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\10 - UserProfile.lnk -> C:\Users\hesse ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel(R) HD Graphics Control Panel.lnk -> C:\Windows\System32\GfxUIEx.exe (Intel Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiracastView.lnk -> C:\Windows\MiracastView\MiracastView.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk -> C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PrintDialog.lnk -> C:\Windows\PrintDialog\PrintDialog.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Repair Toolbox\Uninstall Windows Repair Toolbox.lnk -> C:\Windows_Repair_Toolbox\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Repair Toolbox\Windows Repair Toolbox.lnk -> C:\Windows_Repair_Toolbox\Windows_Repair_Toolbox.exe (Alexandre Miguel Canotilho Coelho)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Create System Report.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDLogReport.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\File Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Immunization.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Rootkit Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDRootAlyzer.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\System Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Tray Icon (Live Protection).lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Uninstall Spybot-S&D.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek\Realtek HD Audio-Manager.lnk -> C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Office 2016-Spracheinstellungen.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\SETLANG.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools\System Update.lnk -> C:\Program Files (x86)\Lenovo\System Update\tvsu.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo\Benutzerhandbücher.lnk -> C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe (Lenovo)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo\System Update.lnk -> C:\Program Files (x86)\Lenovo\System Update\tvsu.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Quick Assist.lnk -> C:\Windows\System32\quickassist.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\Links\Desktop.lnk -> C:\Users\hesse\Desktop ()
Shortcut: C:\Users\hesse\Links\Downloads.lnk -> C:\Users\hesse\Downloads ()
Shortcut: C:\Users\hesse\Links\OneDrive.lnk -> C:\Users\hesse\OneDrive ()
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk -> C:\Users\hesse\AppData\Local\FluxSoftware\Flux\flux.exe (Flux Software LLC)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\hesse\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Lenovo Service Bridge entfernen.lnk -> C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\unins000.exe ()
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Lenovo Service Bridge.lnk -> C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe (Lenovo Group Limited)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth-Dateiübertragung.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\hesse\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Thunderbird.lnk -> C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation)
Shortcut: C:\Users\Public\Desktop\Mozilla Thunderbird.lnk -> C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation)
Shortcut: C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.)
Shortcut: C:\Users\Public\Desktop\Windows Repair Toolbox.lnk -> C:\Windows_Repair_Toolbox\Windows_Repair_Toolbox.exe (Alexandre Miguel Canotilho Coelho)
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /7
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools\Office 2016 Upload Center.lnk -> C:\Program Files (x86)\Microsoft Office\root\client\AppVLP.exe (Microsoft Corporation) -> "C:\Program Files (x86)\Microsoft Office\Root\Office16\MSOUC.EXE"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\hesse\Desktop\shutdown.lnk -> C:\Windows\System32\shutdown.exe (Microsoft Corporation) -> /r /t 0
ShortcutWithArgument: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\hesse\AppData\Roaming\Microsoft\Windows\SendTo\Faxempfänger.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\hesse\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
InternetURL: C:\Users\Default\Favorites\Lenovo\Lenovo Support.url -> URL: hxxp://support.lenovo.com/
InternetURL: C:\Users\Default\Favorites\Lenovo\Lenovo.url -> URL: hxxp://www.lenovo.com/
InternetURL: C:\Users\hesse\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\hesse\Favorites\Lenovo\Lenovo Support.url -> URL: hxxp://support.lenovo.com/
InternetURL: C:\Users\hesse\Favorites\Lenovo\Lenovo.url -> URL: hxxp://www.lenovo.com/
==================== Ende vom Shortcut.txt =============================
Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 21-06-2017 01
durchgeführt von hesse (24-06-2017 13:05:59)
Gestartet von C:\Users\hesse\Desktop
Windows 10 Home Version 1703 (X64) (2017-05-23 20:55:22)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-693335309-1784169824-4197453364-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-693335309-1784169824-4197453364-503 - Limited - Disabled)
Gast (S-1-5-21-693335309-1784169824-4197453364-501 - Limited - Disabled)
hesse (S-1-5-21-693335309-1784169824-4197453364-1001 - Administrator - Enabled) => C:\Users\hesse
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Disabled - Out of date) {A16C3F68-9280-E053-1818-342707FECF4D}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Benutzerhandbücher (x32 Version: 6.0.0.0 - Lenovo) Hidden
f.lux (HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\Flux) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.104 - Google Inc.)
Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.1.10603.192 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4549 - Intel Corporation)
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 2.0.0.1094 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{EA877F2C-A0FB-4379-83D0-734540686C80}) (Version: 17.1.1531.1764 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.11 - Intel(R) Corporation) Hidden
Intel® PROSet/Wireless Software (HKLM-x32\...\{795ee3a0-97fa-489a-9543-7564ccc43be4}) (Version: 18.12.0 - Intel Corporation)
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11103 - Realtek Semiconductor Corp.)
Lenovo Service Bridge (HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 4.0.5.2 - Lenovo)
Lenovo System Update (HKLM-x32\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.07.0037 - Lenovo)
LenovoUtility (HKLM-x32\...\InstallShield_{6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA}) (Version: 3.0.0.4 - Lenovo)
LenovoUtility (x32 Version: 3.0.0.4 - Lenovo) Hidden
Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.8201.2102 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-693335309-1784169824-4197453364-1001\...\OneDriveSetup.exe) (Version: 17.3.6917.0607 - Microsoft Corporation)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 52.2.0 - Mozilla)
Mozilla Thunderbird 52.2.0 (x86 en-US) (HKLM-x32\...\Mozilla Thunderbird 52.2.0 (x86 en-US)) (Version: 52.2.0 - Mozilla)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.8201.2102 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.8201.2102 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.8201.2102 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.8201.2075 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7714 - Realtek Semiconductor Corp.)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
User Manuals (HKLM-x32\...\InstallShield_{7042D952-EE42-4C09-A23D-E7AE4D047007}) (Version: 6.0.0.0 - Lenovo)
Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation)
Windows Repair Toolbox version 1.8.0.2 (HKLM-x32\...\{A8D7DA31-9E70-437D-97C4-C4887752E029}_is1) (Version: 1.8.0.2 - Alexandre Miguel Canotilho Coelho)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {09A830E6-00EF-4D6B-890C-8F489E749289} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2016-03-21] (Safer-Networking Ltd.)
Task: {23CC4F4E-EACD-4576-A541-354068DCBE04} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-06-18] ()
Task: {42A4D745-BC38-4EF7-9697-7E1A5C83D09C} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-06-10] (Microsoft Corporation)
Task: {823ACB67-2EBA-49A2-888D-51CD5051E7D0} - System32\Tasks\Microsoft\Windows\SysResetErrRefresh => C:\WINDOWS\system32\sysreseterr.exe [2017-03-18] (Microsoft Corporation)
Task: {A0E447E9-89DF-4413-A9AC-0E47747E6B75} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-03] (Google Inc.)
Task: {A295B807-61C2-40AB-9F89-EA5BAED66BA5} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2016-09-10] ()
Task: {A38F6DA9-02E1-4353-B9C4-DDFF3A2957FC} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
Task: {A64D31DD-734C-4D1E-A2F9-1B72E8CA59D4} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-06-10] (Microsoft Corporation)
Task: {BA85B681-0CAC-43F7-88F9-156B8F660094} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-06-18] ()
Task: {BA9F3C3D-842D-4504-8DC1-8824DA5DAEDD} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-693335309-1784169824-4197453364-1001 => C:\Users\hesse\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [2017-05-31] (Lenovo Group Limited)
Task: {BAF6B143-CD6C-4822-BB94-5987432D2C00} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-01-03] (Google Inc.)
Task: {CDF579EE-8B72-4018-8B1D-A0E3A80C10B6} - System32\Tasks\Microsoft\Windows\SysResetLogFailure => C:\WINDOWS\System32\ResetEngine.exe [2017-03-18] (Microsoft Corporation)
Task: {E3D4C0A2-8D0F-454B-948C-B7EBC133A126} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-01] (Lenovo)
Task: {F216C382-CD8A-443E-A18B-8AD41BFD4538} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2016-09-10] ()
Task: {FA8E1213-EEB1-45DF-9A2A-25203B8BC697} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2016-03-21] (Safer-Networking Ltd.)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
==================== Verknüpfungen & WMI ========================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2017-03-18 22:58 - 2017-03-18 22:58 - 00138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-05-16 04:07 - 2017-05-16 04:07 - 00401912 _____ () C:\WINDOWS\system32\igfxTray.exe
2017-03-18 22:59 - 2017-03-20 06:36 - 01731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-09-29 04:51 - 2016-09-29 04:50 - 00791848 _____ () C:\Program Files\Lenovo\LenovoUtility\utility.exe
2016-09-29 04:51 - 2016-09-29 04:50 - 00097048 _____ () C:\Program Files\Lenovo\LenovoUtility\kbdhook.dll
2017-06-15 09:26 - 2016-09-10 12:13 - 00028544 _____ () C:\Program Files (x86)\Lenovo\System Update\SUService.exe
2017-06-22 02:38 - 2017-06-22 02:41 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-06-22 02:38 - 2017-06-22 02:41 - 00203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-06-22 02:38 - 2017-06-22 02:41 - 43454464 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-06-22 02:38 - 2017-06-22 02:41 - 02437120 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\skypert.dll
2017-02-26 16:37 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2017-02-26 16:37 - 2014-05-13 13:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2017-02-26 16:37 - 2014-05-13 13:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2017-02-26 16:37 - 2014-05-13 13:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2017-02-26 16:37 - 2012-04-03 18:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2015-10-30 09:24 - 2015-10-30 09:21 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-693335309-1784169824-4197453364-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img2.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [{C3E1336E-2550-424A-90EC-ACA111385246}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{C3E32D8C-EE23-401B-A236-9A4CE9EF7FE4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{D7EF3615-F20B-472A-B146-9ECE85DC2332}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe
FirewallRules: [{D0FDD6AD-22F4-4B9D-B3A3-FEB2AE9F36D1}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe
FirewallRules: [{E6798A14-3560-4FE2-A30F-8D6697582A24}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
==================== Wiederherstellungspunkte =========================
ACHTUNG: Systemwiederherstellung ist deaktiviert
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (06/24/2017 12:52:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab
Name des fehlerhaften Moduls: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000f2bf
ID des fehlerhaften Prozesses: 0x25cc
Startzeit der fehlerhaften Anwendung: 0x01d2ecd75afa21d3
Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\systemreset.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\systemreset.exe
Berichtskennung: 58774a96-2a92-42f9-a52b-314897073aad
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (06/24/2017 12:47:21 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab
Name des fehlerhaften Moduls: systemreset.exe, Version: 10.0.15063.0, Zeitstempel: 0x7348fdab
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000f2bf
ID des fehlerhaften Prozesses: 0x928
Startzeit der fehlerhaften Anwendung: 0x01d2ec8139bd3c9f
Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\systemreset.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\systemreset.exe
Berichtskennung: 623a7555-edca-45dd-85c4-d316d68b04aa
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (06/22/2017 07:13:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen“ ist folgender Fehler aufgetreten: -2144927142. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (06/22/2017 07:13:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: LAPTOP-9CHC4QNU)
Description: Die App „Microsoft.LockApp_10.0.15063.0_neutral__cw5n1h2txyewy+WindowsDefaultLockScreen“ wurde nicht innerhalb der vorgesehenen Zeit gestartet.
Error: (06/03/2017 11:22:45 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.Microsoft3DViewer_8wekyb3d8bbwe!Microsoft.Microsoft3DViewer“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (06/02/2017 09:52:39 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (05/27/2017 06:27:58 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.SkypeApp_kzf8qxf38zg5c!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147009280. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (05/24/2017 07:19:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147024865. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (05/24/2017 07:19:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147024865. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (05/24/2017 07:19:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-9CHC4QNU)
Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Systemfehler:
=============
Error: (06/24/2017 12:41:05 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (06/22/2017 11:31:25 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (06/22/2017 12:45:04 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (06/22/2017 07:18:21 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (06/22/2017 02:39:44 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (06/21/2017 12:50:04 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (06/20/2017 12:56:52 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (06/18/2017 10:47:32 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (06/18/2017 07:05:40 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (06/17/2017 10:53:13 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
CodeIntegrity:
===================================
Date: 2017-06-24 13:05:05.891
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-06-24 13:05:05.888
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-06-24 13:05:05.854
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-06-24 13:05:05.851
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-06-24 12:59:45.379
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-06-24 12:59:45.375
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-06-24 12:59:45.336
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-06-24 12:59:45.333
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-06-24 12:44:38.918
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2017-06-24 01:04:24.208
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Pentium(R) CPU N3710 @ 1.60GHz
Prozentuale Nutzung des RAM: 45%
Installierter physikalischer RAM: 3949.04 MB
Verfügbarer physikalischer RAM: 2146.59 MB
Summe virtueller Speicher: 4653.04 MB
Verfügbarer virtueller Speicher: 2394.13 MB
==================== Laufwerke ================================
Drive c: (Windows) (Fixed) (Total:118 GB) (Free:91.21 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 28AA68E8)
Partition: GPT.
==================== Ende von Addition.txt ============================
|
| | #3 |
| /// Helfer-Team ![]() ![]() ![]() ![]() ![]() ![]() | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Details Du postest Farbar-Logs. Da Du hier nicht neu bist, solltest Du wissen, dass es dafür an anderes Unterforum gibt.
__________________
__________________ |
| | #4 |
![]() ![]() | Lösung: Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Oh tut mir leid. Dachte unter "Log-Analyse und Auswertung" kommen nur malewarebezogene Themen. Wäre ein Admin so nett, den Thread in das richtige Forum zu verschieben? |
| | #5 |
| /// Helfer-Team ![]() ![]() ![]() ![]() ![]() ![]() | Wie Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Wenn Du glaubst, irgendwelche Schädlinge zu haben, bist Du in der Malwarefraktion richtig. Da sind diese Logs richtig. Wir werten die hier nicht aus.
__________________ LG Der Felix Keine Hilfe per PN und E-Mail |
| | #6 |
![]() ![]() | Wo Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Lösung! Genau das glaube ich eben nicht, sonst hätte ich das Ganze in das entsprechende Forum gepostet. Daher offensichtlich hier. |
| | #7 | |
| /// Helfer-Team ![]() ![]() ![]() ![]() ![]() ![]() | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffenZitat:
![]() Warum postest Du neben einer klaren Problembeschreibung keine Fakten zur Hardware, Betriebssystem usw. Wir haben hier keine Lust, uns die erforderlichen Daten aus den Logs herauszusuchen.
__________________ LG Der Felix Keine Hilfe per PN und E-Mail |
| | #8 | |
| Gesperrt ![]() ![]() ![]() ![]() | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffenZitat:
![]() @losprimeros Eine Option für dich wäre meiner Meinung nach: Datensicherung machen, Festplatte formatieren und Windows mit allem Drum und Dran neu zu installieren. |
| | #9 |
![]() ![]() | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen Dankeschön @purzelbär. |
| | #10 |
| /// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst] spybot ist totaler überflüssiger Schrott. Hau das mal runter (mit revo, siehe unten) Danach bitte so ein Log machen --> Zustand der Festplatte herausfinden - so gehts - Anleitungen Lade Dir bitte von hier
__________________ Logfiles bitte immer in CODE-Tags posten |
| | #11 |
![]() ![]() | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst] Spybot ist weg, Log folgt. Den Neustart des Systems, welcher nach dem Deinstallieren erfolgen sollte, ist auch hier nicht möglich. Code:
ATTFilter ----------------------------------------------------------------------------
CrystalDiskInfo 7.0.5 (C) 2008-2016 hiyohiyo
Crystal Dew World : hxxp://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 10 [10.0 Build 15063] (x64)
Date : 2017/06/29 14:44:41
-- Controller Map ----------------------------------------------------------
+ Standardmäßiger SATA AHCI- Controller [ATA]
- LITEON CV3-8D128
- Microsoft-Controller für Speicherplätze [SCSI]
-- Disk List ---------------------------------------------------------------
(1) LITEON CV3-8D128 : 128,0 GB [0/0/0, pd1] - sg
----------------------------------------------------------------------------
(1) LITEON CV3-8D128
----------------------------------------------------------------------------
Model : LITEON CV3-8D128
Firmware : T876201
Serial Number : SD0L02318L1TH6810GAA
Disk Size : 128,0 GB (8,4/128,0/128,0/128,0)
Buffer Size : Unbekannt
Queue Depth : 32
# of Sectors : 250069680
Rotation Rate : ---- (SSD)
Interface : Serial ATA
Major Version : ACS-2
Minor Version : ATA/ATAPI-7 T13 1532D version 4a
Transfer Mode : SATA/600 | SATA/600
Power On Hours : 230 Std.
Power On Count : 349 mal
Host Reads : 943 GB
Host Writes : 687 GB
Temperature : 48 C (118 F)
Health Status : Gut (100 %)
Features : S.M.A.R.T., 48bit LBA, NCQ, TRIM, DevSleep
APM Level : ----
AAM Level : ----
Drive Letter : C: D:
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
05 100 100 __0 000000000000 Anz. wiederzugewiesener Sektoren
09 100 100 __0 0000000000E6 Betriebsstunden
0C 100 100 __0 00000000015D Anz. Geräte-Einschaltvorgänge
AA 100 100 __0 000000000000 Unused Reserved Block Count (Chip)
AB 100 100 __0 000000000000 Program Fail Count (Chip)
AC 100 100 __0 000000000000 Erase Fail Count (Chip)
AD 100 100 __0 000000000002 Wear Leveling Count
AE 100 100 __0 000000000003 Unexpected Power Loss Count
B2 100 100 __0 000000000000 Benutzte reservierte Blöcke (Chip)
B4 100 100 _10 000000000278 Unbenutzte reservierte Blöcke (gesamt)
B8 100 100 __0 000000000000 Error Detection
BB 100 100 __0 000000000000 Nicht korrigierbare Fehler
C2 100 100 __0 000000000030 Temperatur
C7 100 100 __0 000000000000 CRC-Fehler
E9 100 100 __1 000000000064 Normalized Media Wear-out
F1 100 100 __0 0000000002AF LBA geschrieben (gesamt)
F2 100 100 __0 0000000003AF LBA gelesen (gesamt)
F9 100 100 __0 000000000170 Herstellerspezifisch
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0000 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 5344 304C 3032 3331 384C 3154 4836 3831 3047 4141
020: 0000 0000 0000 5438 3736 3230 3120 4C49 5445 4F4E
030: 2043 5633 2D38 4431 3238 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8001 4000 2F00
050: 4000 0000 0000 0006 3FFF 0010 003F FC10 00FB 0100
060: C2B0 0EE7 0000 0007 0003 0078 0078 0078 0078 4C20
070: 0000 0000 0000 0000 0000 001F 050E 0086 014C 0040
080: 03FE 0021 346B 7D01 4123 3469 BC01 4123 407F 0001
090: 0001 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: C2B0 0EE7 0000 0000 0000 0008 4000 0000 5002 3031
110: 00B0 DCD8 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0007
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0001
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 0001 0000 0000
220: 0000 0000 1075 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 C8A5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 01 00 05 32 00 64 64 00 00 00 00 00 00 00 09 32
010: 00 64 64 E6 00 00 00 00 00 00 0C 03 00 64 64 5D
020: 01 00 00 00 00 00 AA 32 00 64 64 00 00 00 00 00
030: 00 00 AB 03 00 64 64 00 00 00 00 00 00 00 AC 03
040: 00 64 64 00 00 00 00 00 00 00 AD 03 00 64 64 02
050: 00 00 00 00 00 00 AE 03 00 64 64 03 00 00 00 00
060: 00 00 B2 32 00 64 64 00 00 00 00 00 00 00 B4 03
070: 00 64 64 78 02 00 00 00 00 00 B8 33 00 64 64 00
080: 00 00 00 00 00 00 BB 32 00 64 64 00 00 00 00 00
090: 00 00 C2 03 00 64 64 30 00 00 00 00 00 00 C7 03
0A0: 00 64 64 00 00 00 00 00 00 00 E9 03 00 64 64 64
0B0: 00 00 00 00 00 00 F1 03 00 64 64 AF 02 00 00 00
0C0: 00 00 F2 03 00 64 64 AF 03 00 00 00 00 00 F9 03
0D0: 00 64 64 70 01 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 0A 00 00 15
170: 03 00 01 00 02 0B 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 A6
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 01 00 05 00 00 00 00 00 00 00 00 00 00 00 09 00
010: 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 00 00
020: 00 00 00 00 00 00 AA 00 00 00 00 00 00 00 00 00
030: 00 00 AB 00 00 00 00 00 00 00 00 00 00 00 AC 00
040: 00 00 00 00 00 00 00 00 00 00 AD 00 00 00 00 00
050: 00 00 00 00 00 00 AE 00 00 00 00 00 00 00 00 00
060: 00 00 B2 00 00 00 00 00 00 00 00 00 00 00 B4 0A
070: 00 00 00 00 00 00 00 00 00 00 B8 00 00 00 00 00
080: 00 00 00 00 00 00 BB 00 00 00 00 00 00 00 00 00
090: 00 00 C2 00 00 00 00 00 00 00 00 00 00 00 C7 00
0A0: 00 00 00 00 00 00 00 00 00 00 E9 01 00 00 00 00
0B0: 00 00 00 00 00 00 EC 01 00 00 00 00 00 00 00 00
0C0: 00 00 F1 00 00 00 00 00 00 00 00 00 00 00 F2 00
0D0: 00 00 00 00 00 00 00 00 00 00 F9 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 6A
|
| | #12 |
| /// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst] Die SSD in okay. Du könntest mal das hier machen --> Windows reparieren - so geht's - Anleitungen
__________________ Logfiles bitte immer in CODE-Tags posten |
| | #13 |
![]() ![]() | Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen [gelöst] Schritt 3: "no errors found on the drive!" Code:
ATTFilter Microsoft Windows [Version 10.0.15063]
(c) 2017 Microsoft Corporation. Alle Rechte vorbehalten.
C:\Users\hesse\Desktop>CD /D C:\
C:\>set path=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SystemRoot%\System32\WindowsPowerShell\v1.0
C:\>chkdsk C:
Der Typ des Dateisystems ist NTFS.
Das Volume wird von einem anderen Prozess benutzt. Chkdsk
meldet m”glicherweise Fehler wenn keine Besch„digung vorliegt.
Die Volumebezeichnung lautet Windows.
WARNUNG! Der Parameter /F wurde nicht angegeben.
CHKDSK wird im schreibgeschtzten Modus ausgefhrt.
Phase 1: Die Basisdatei-Systemstruktur wird untersucht...
Status: 0 von 347136 fertig; Phase: 0%; Insgesamt: 0%; ETA: 0:16:42
Status: 4296 von 347136 fertig; Phase: 1%; Insgesamt: 0%; ETA: 0:16:39 .
Status: 17681 von 347136 fertig; Phase: 5%; Insgesamt: 1%; ETA: 0:16:25 ..
Status: 29697 von 347136 fertig; Phase: 8%; Insgesamt: 3%; ETA: 0:00:36 ...
Status: 44913 von 347136 fertig; Phase: 12%; Insgesamt: 4%; ETA: 0:00:33
Status: 61953 von 347136 fertig; Phase: 17%; Insgesamt: 6%; ETA: 0:00:32 .
Status: 77863 von 347136 fertig; Phase: 22%; Insgesamt: 7%; ETA: 0:00:30 ..
Status: 89032 von 347136 fertig; Phase: 25%; Insgesamt: 9%; ETA: 0:00:30 ...
Status: 96943 von 347136 fertig; Phase: 27%; Insgesamt: 10%; ETA: 0:00:31
Status: 96944 von 347136 fertig; Phase: 27%; Insgesamt: 10%; ETA: 0:00:31 .
Status: 108801 von 347136 fertig; Phase: 31%; Insgesamt: 12%; ETA: 0:00:30 ..
Status: 114517 von 347136 fertig; Phase: 32%; Insgesamt: 13%; ETA: 0:00:30 ...
Status: 118944 von 347136 fertig; Phase: 34%; Insgesamt: 13%; ETA: 0:00:31
Status: 129754 von 347136 fertig; Phase: 37%; Insgesamt: 15%; ETA: 0:00:31 .
Status: 141825 von 347136 fertig; Phase: 40%; Insgesamt: 16%; ETA: 0:00:31 ..
Status: 177705 von 347136 fertig; Phase: 51%; Insgesamt: 20%; ETA: 0:00:27 ...
Status: 211978 von 347136 fertig; Phase: 61%; Insgesamt: 23%; ETA: 0:00:23
Status: 260097 von 347136 fertig; Phase: 74%; Insgesamt: 28%; ETA: 0:00:20 .
Status: 271723 von 347136 fertig; Phase: 78%; Insgesamt: 29%; ETA: 0:00:20 ..
Status: 304163 von 347136 fertig; Phase: 87%; Insgesamt: 32%; ETA: 0:00:19 ...
Status: 319745 von 347136 fertig; Phase: 92%; Insgesamt: 33%; ETA: 0:00:19
Status: 333825 von 347136 fertig; Phase: 96%; Insgesamt: 35%; ETA: 0:00:17 .
Status: 347136 von 347136 fertig; Phase: 100%; Insgesamt: 36%; ETA: 0:00:17 ..
347136 Datens„tze verarbeitet.
Dateiberprfung beendet.
Status: 14068 von 14068 fertig; Phase: 100%; Insgesamt: 28%; ETA: 0:00:24 ...
14068 groáe Datens„tze verarbeitet.
Status: 0 von 0 fertig; Phase: 99%; Insgesamt: 28%; ETA: 0:00:24
0 ungltige Datens„tze verarbeitet.
Phase 2: Die Dateinamenverknpfung wird untersucht...
Status: 7262 von 422102 fertig; Phase: 1%; Insgesamt: 29%; ETA: 0:00:24 .
Status: 25814 von 422102 fertig; Phase: 6%; Insgesamt: 30%; ETA: 0:00:24 ..
Status: 43717 von 422102 fertig; Phase: 10%; Insgesamt: 32%; ETA: 0:00:23 ...
Status: 63368 von 422102 fertig; Phase: 15%; Insgesamt: 33%; ETA: 0:00:23
Status: 87631 von 422102 fertig; Phase: 20%; Insgesamt: 35%; ETA: 0:00:22 .
Status: 108847 von 422102 fertig; Phase: 25%; Insgesamt: 37%; ETA: 0:00:22 ..
Status: 126644 von 422102 fertig; Phase: 30%; Insgesamt: 38%; ETA: 0:00:20 ...
Status: 146293 von 422102 fertig; Phase: 34%; Insgesamt: 40%; ETA: 0:00:20
Status: 189897 von 422102 fertig; Phase: 44%; Insgesamt: 43%; ETA: 0:00:19 .
Status: 260232 von 422102 fertig; Phase: 61%; Insgesamt: 48%; ETA: 0:00:15 ..
Status: 295643 von 422102 fertig; Phase: 70%; Insgesamt: 51%; ETA: 0:00:14 ...
Status: 315993 von 422102 fertig; Phase: 74%; Insgesamt: 53%; ETA: 0:00:14
Status: 340965 von 422102 fertig; Phase: 80%; Insgesamt: 55%; ETA: 0:00:14 .
Status: 347149 von 422102 fertig; Phase: 82%; Insgesamt: 59%; ETA: 0:00:14 ..
Status: 347902 von 422102 fertig; Phase: 82%; Insgesamt: 59%; ETA: 0:00:12 ...
Status: 348596 von 422102 fertig; Phase: 82%; Insgesamt: 60%; ETA: 0:00:12
Status: 349548 von 422102 fertig; Phase: 82%; Insgesamt: 60%; ETA: 0:00:12 .
Status: 350883 von 422102 fertig; Phase: 83%; Insgesamt: 61%; ETA: 0:00:12 ..
Status: 352055 von 422102 fertig; Phase: 83%; Insgesamt: 61%; ETA: 0:00:12 ...
Status: 353057 von 422102 fertig; Phase: 83%; Insgesamt: 62%; ETA: 0:00:12
Status: 353784 von 422102 fertig; Phase: 83%; Insgesamt: 62%; ETA: 0:00:12 .
Status: 354751 von 422102 fertig; Phase: 84%; Insgesamt: 63%; ETA: 0:00:12 ..
Status: 355437 von 422102 fertig; Phase: 84%; Insgesamt: 63%; ETA: 0:00:12 ...
Status: 356665 von 422102 fertig; Phase: 84%; Insgesamt: 65%; ETA: 0:00:12
Status: 357625 von 422102 fertig; Phase: 84%; Insgesamt: 66%; ETA: 0:00:12 .
Status: 358426 von 422102 fertig; Phase: 84%; Insgesamt: 67%; ETA: 0:00:11 ..
Status: 358762 von 422102 fertig; Phase: 84%; Insgesamt: 70%; ETA: 0:00:11 ...
Status: 360207 von 422102 fertig; Phase: 85%; Insgesamt: 70%; ETA: 0:00:11
Status: 362478 von 422102 fertig; Phase: 85%; Insgesamt: 71%; ETA: 0:00:09 .
Status: 364738 von 422102 fertig; Phase: 86%; Insgesamt: 72%; ETA: 0:00:09 ..
Status: 367532 von 422102 fertig; Phase: 87%; Insgesamt: 73%; ETA: 0:00:09 ...
Status: 368296 von 422102 fertig; Phase: 87%; Insgesamt: 78%; ETA: 0:00:09
Status: 369024 von 422102 fertig; Phase: 87%; Insgesamt: 78%; ETA: 0:00:07 .
Status: 372175 von 422102 fertig; Phase: 88%; Insgesamt: 78%; ETA: 0:00:07 ..
Status: 374376 von 422102 fertig; Phase: 88%; Insgesamt: 79%; ETA: 0:00:07 ...
Der Indexeintrag "CHKDSK.EXE-2E757381.pf" im Index "$I30" der Datei "1A42C" ist falsch.
Der Indexeintrag "CHKDSK~1.PF" im Index "$I30" der Datei "1A42C" ist falsch.
Der Indexeintrag "CMD.EXE-6D6290C5.pf" im Index "$I30" der Datei "1A42C" ist falsch.
Der Indexeintrag "CMDEXE~1.PF" im Index "$I30" der Datei "1A42C" ist falsch.
Status: 375599 von 422102 fertig; Phase: 88%; Insgesamt: 79%; ETA: 0:00:07
Status: 377066 von 422102 fertig; Phase: 89%; Insgesamt: 80%; ETA: 0:00:07 .
Status: 378868 von 422102 fertig; Phase: 89%; Insgesamt: 79%; ETA: 0:00:07 ..
Status: 381525 von 422102 fertig; Phase: 90%; Insgesamt: 80%; ETA: 0:00:07 ...
Status: 384510 von 422102 fertig; Phase: 91%; Insgesamt: 81%; ETA: 0:00:07
Status: 422102 von 422102 fertig; Phase: 100%; Insgesamt: 81%; ETA: 0:00:07 .
422102 Indexeintr„ge verarbeitet.
Indexberprfung beendet.
Fehler gefunden. CHKDSK kann im schreibgeschtzten Modus nicht
fortgesetzt werden.
C:\>
Repair ist offensichtlich fertig, habe allerdings keine entsprechende Benachrichtigung oder ähnliches bekommen. Soll ich einen Neustart versuchen oder gibt es irgendwo Logs, welche das Programm hinterlassen hat, welche ich posten sollte? Der Ordner "Log" im Installationspfad von Windows Repair ist auf jeden Fall leer. Danke bis hier hin auf jeden Fall für die Hilfe! Geändert von losprimeros (29.06.2017 um 15:59 Uhr) |
![]() |
| Themen zu Herunterfahren/Neustart/Wiederherstellung etc. nicht möglich | systemreset.exe betroffen |
| 100%, beginnt, bricht, erreicht, funktionier, funktioniert, gefunde, guten, mehreren, meldung, neustarts, nicht mehr, problem, scan, schlagen, system, systemfehler, tagen, uhrzeit, update, wechsel, wiederherstellung, windows, windows update, zusammen |