Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: MFResident-20230328-55

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Thema geschlossen
Alt 08.04.2023, 18:51   #1
Skipper39
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



Hallo zusammen,

seit gestern bekomme ich ca. alle 8 Sekunden ein pop-up Fenster geöffnet. Die Benutzerkontensteuerung fragt mich, ob ich Änderungen einer unbekannten App zulasse.
Ihr Name: MFResident-20230328-55.exe

Klicke immer auf nein

Bin mit einem nicht-admin-Konto unterwegs, und gebe bei Bedarf das Admin Kennwort ein.

Ein scan mit dem Windows Defender (auch offline Modus) brachte keine Bedrohungen.

Haben den scan mit frst mit meinem nicht-admin Benutzerkonto durchgeführt. Wenn es erforderlich ist, den unter einem Admin-Konto durchzuführen, dann bitte Info (möchte es ansonsten vermeiden, mich derzeit mit einem admin-Konto anzumelden...)

Der Windows Defender schlug bereits bei der Installation des tools an, habe da trotzdem installieren angeklickt. Während des scans schlug er wieder an und meldete Bedrohungen.

Hab nur irgendwas mit PUA erkannt, das Fenster aber klein gemacht, weil ich zunächst den scan durchlaufen lassen wollte. Danach stand dort nur noch was von Bedrohungen gefunden. Den Defender zum beseitigen gestartet, das kam heraus:
Erkannt: Backdoor:Win32/Bladabindi.YPS!MTB
Status: Unter Quarantäne
Betroffene Elemente: file: C:\Users\Eltern\Downloads\FreeVideoEditor_CB-DL-Manager.exe


Vielen Dank für Eure Unterstützung


Hier die Ergebnisse von frst:
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 06-04-2023
durchgeführt von Eltern (ACHTUNG: der Benutzer ist kein Administrator) auf SCHILLINGFAMILY (Gigabyte Technology Co., Ltd. GA-890GPA-UD3H) (08-04-2023 19:04:16)
Gestartet von C:\Users\Eltern\Downloads
Geladene Profile: Eltern
Plattform: Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Edge
Start-Modus: Normal

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

() [Datei ist nicht signiert] C:\Users\Eltern\AppData\Local\Temp\is-VDL1T.tmp\MFResident-20230328-55.tmp
(DeviceVM Inc. -> DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe <39>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23022.140.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Shenzhen iMyFone Technology Co., Ltd -> ) C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\MFResident.exe
(Shenzhen iMyFone Technology Co., Ltd -> ) C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\ResidentAutoUpdate.exe
konnte nicht auf den Prozess zugreifen -> app_updater.exe
konnte nicht auf den Prozess zugreifen -> AppleMobileDeviceService.exe
konnte nicht auf den Prozess zugreifen -> armsvc.exe
konnte nicht auf den Prozess zugreifen -> BCUService.exe
konnte nicht auf den Prozess zugreifen -> consent.exe
konnte nicht auf den Prozess zugreifen -> csrss.exe
konnte nicht auf den Prozess zugreifen -> csrss.exe
konnte nicht auf den Prozess zugreifen -> dasHost.exe
konnte nicht auf den Prozess zugreifen -> dwm.exe
konnte nicht auf den Prozess zugreifen -> fontdrvhost.exe
konnte nicht auf den Prozess zugreifen -> fontdrvhost.exe
konnte nicht auf den Prozess zugreifen -> ForwardDaemon.exe
konnte nicht auf den Prozess zugreifen -> Fuel.Service.exe
konnte nicht auf den Prozess zugreifen -> HWDeviceService64.exe
konnte nicht auf den Prozess zugreifen -> LocalService.exe
konnte nicht auf den Prozess zugreifen -> lsass.exe
konnte nicht auf den Prozess zugreifen -> mDNSResponder.exe
konnte nicht auf den Prozess zugreifen -> mqsvc.exe
konnte nicht auf den Prozess zugreifen -> MsMpEng.exe
konnte nicht auf den Prozess zugreifen -> NisSrv.exe
konnte nicht auf den Prozess zugreifen -> NVDisplay.Container.exe
konnte nicht auf den Prozess zugreifen -> NVDisplay.Container.exe
konnte nicht auf den Prozess zugreifen -> ouc.exe
konnte nicht auf den Prozess zugreifen -> SearchIndexer.exe
konnte nicht auf den Prozess zugreifen -> SecurityHealthService.exe
konnte nicht auf den Prozess zugreifen -> services.exe
konnte nicht auf den Prozess zugreifen -> SgrmBroker.exe
konnte nicht auf den Prozess zugreifen -> SilhouetteLinkServer.32.exe
konnte nicht auf den Prozess zugreifen -> smss.exe
konnte nicht auf den Prozess zugreifen -> SMSvcHost.exe
konnte nicht auf den Prozess zugreifen -> SMSvcHost.exe
konnte nicht auf den Prozess zugreifen -> spoolsv.exe
konnte nicht auf den Prozess zugreifen -> sppsvc.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> svchost.exe
konnte nicht auf den Prozess zugreifen -> wininit.exe
konnte nicht auf den Prozess zugreifen -> winlogon.exe
konnte nicht auf den Prozess zugreifen -> WmiPrvSE.exe
konnte nicht auf den Prozess zugreifen -> XSrvSetup.exe

==================== Registry (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [BCU] => C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [375000 2009-10-15] (DeviceVM Inc. -> DeviceVM, Inc.)
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [Google Update] => C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\GoogleUpdateCore.exe [230360 2022-08-29] (Google LLC -> Google LLC)
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [AmazonMP3DownloaderHelper] => C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe [400704 2013-05-22] (Amazon Services LLC -> )
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKLM\...\Windows x64\Print Processors\Canon iP4300 Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD86.DLL [27136 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX520 series: C:\WINDOWS\system32\CNCALBO.DLL [303104 2012-09-21] (CANON INC.) [Datei ist nicht signiert]
HKLM\...\Print\Monitors\Canon BJ Language Monitor iP4300: C:\WINDOWS\system32\CNMLM86.DLL [234496 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MX520 series: C:\WINDOWS\system32\CNMLMBO.DLL [390656 2012-09-20] (CANON INC.) [Datei ist nicht signiert]
HKLM\...\Print\Monitors\Canon BJNP Port: C:\WINDOWS\system32\CNMN6PPM.DLL [359936 2012-07-31] (CANON INC.) [Datei ist nicht signiert]
HKLM\...\Print\Monitors\LIDIL hpzllw71: C:\WINDOWS\system32\hpzllw71.dll [53248 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> 
Startup: C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk [2013-01-04]
ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
GroupPolicy: Beschränkung ? <==== ACHTUNG
GroupPolicy\User: Beschränkung ? <==== ACHTUNG
Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => 
Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job =>  <==== ACHTUNG
Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job =>  <==== ACHTUNG
Task: C:\WINDOWS\Tasks\DigitalSite.job =>  <==== ACHTUNG
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core.job =>  <==== ACHTUNG
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA.job =>  <==== ACHTUNG
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}.job => 
Task: C:\WINDOWS\Tasks\MetaCrawler.job => 

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1533b570-916a-43ef-a95f-2771cf3347c2}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{63e8b743-5869-48f3-b34a-8f4038bdaffe}: [NameServer] 10.74.210.210 10.74.210.211

Edge: 
=======
Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden]
Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden]
Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden]
Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Eltern\AppData\Local\Microsoft\Edge\User Data\Default [2023-04-02]

FireFox:
========
FF ProfilePath: C:\Users\Eltern\AppData\Roaming\Nvu\Profiles\l9ncqul6.default [2012-11-29]
FF ProfilePath: C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default [2019-03-30]
FF user.js: detected! => C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default\user.js [2015-09-30]
FF Extension: (Telemetry coverage) - C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default\features\{8be4ee0a-5a7c-4dfc-b1a8-b23c5451a190}\telemetry-coverage-bug1487578@mozilla.org.xpi [2019-03-30] []
FF HKLM\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => nicht gefunden
FF HKLM-x32\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru => nicht gefunden
FF HKLM-x32\...\Firefox\Extensions: [speedanalysis@SpeedAnalysis.com] - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com => nicht gefunden
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => nicht gefunden
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-03-21] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [Datei ist nicht signiert]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @playstation.com/PsndlCheck,version=1.00 -> C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll [2011-08-03] (Sony Computer Entertainment Inc. -> Sony Computer Entertainment Inc.)
FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 -> C:\Program Files (x86)\Sony\Media Go\npmediago.dll [2013-02-14] (Sony Network Entertainment International LLC) [Datei ist nicht signiert]
FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1003: amazon.com/AmazonMP3DownloaderPlugin -> C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll [2013-05-22] (Amazon Services LLC -> Amazon.com, Inc.)
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2019-10-06] <==== ACHTUNG (Zeigt auf eine *.cfg Datei)
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2019-10-06] <==== ACHTUNG

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default [2023-04-08]
CHR Notifications: Default -> hxxp://kleinanzeigen.ebay.de; hxxps://de10.forgeofempires.com; hxxps://lichess.org; hxxps://www.ebay.de
CHR Extension: (FoE - Helfer) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkagcmloachflbbkfmfiggipaelfamdf [2023-03-26]
CHR Extension: (Complitly plugin for chrome) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda [2014-04-12] [UpdateUrl:hxxp://www.predictad.com/update/chrome/?si=28188&ver=1.1] <==== ACHTUNG
CHR Extension: (Adobe Acrobat: Werkzeuge zum Bearbeiten, Konvertieren und Signieren von PDF-Dateien) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-03-26]
CHR Extension: (Google Docs Offline) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-04-07]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31]
CHR HKLM\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx <nicht gefunden>
CHR HKLM-x32\...\Chrome\Extension: [cfcbmgbfdbijmjgjihagbomfbjfjmgon] - C:\Users\Schilling Family\AppData\Roaming\SpeedanAlysis\speedanalysis.crx <nicht gefunden>
CHR HKLM-x32\...\Chrome\Extension: [dlfienamagdnkekbbbocojppncdambda] - C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx [2012-05-28]
CHR HKLM-x32\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx <nicht gefunden>
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
StartMenuInternet: Google Chrome - C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe
StartMenuInternet: Google Chrome.Eltern - C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Dienste (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000 2015-08-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-08-20] (Apple Inc. -> Apple Inc.)
R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [440808 2017-06-06] (Digital Wave Ltd -> Digital Wave Ltd.)
S3 ElfoService; C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe [1113864 2020-07-04] (Bayerisches Landesamt fuer Steuern -> )
S2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] (Giga-Byte Technology -> )
R2 HWDeviceService64.exe; C:\Program Files (x86)\DatacardService\HWDeviceService64.exe [351888 2016-03-24] (Huawei Technologies Co.,Ltd. -> )
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Datei ist nicht signiert]
S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [682072 2015-07-06] (Huawei Technologies Co.,Ltd. -> )
R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72304 2010-01-19] (JMicron Technology Corp. -> )
R3 lmhosts; C:\WINDOWS\System32\svchost.exe [55320 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 lmhosts; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MFLocalService; C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe [54664 2022-04-28] (Shenzhen iMyFone Technology Co., Ltd -> )
S4 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2013-11-15] (Motorola Mobility Inc. -> Motorola Mobility LLC)
R2 NlaSvc; C:\WINDOWS\System32\svchost.exe [55320 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NlaSvc; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 nsi; C:\WINDOWS\system32\svchost.exe [55320 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 nsi; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [Datei ist nicht signiert]
S4 Roxio UPnP Renderer 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUPnPRenderer11.exe [313840 2008-08-14] (Sonic Solutions -> Sonic Solutions)
S4 Roxio Upnp Server 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUpnpService11.exe [367088 2008-08-14] (Sonic Solutions -> Sonic Solutions)
S4 RoxMediaDB11; C:\Program Files (x86)\Common Files\Roxio Shared\11.0\SharedCOM\RoxMediaDB11.exe [1122304 2009-01-09] (Sonic Solutions) [Datei ist nicht signiert]
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [226976 2023-03-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SilhouetteLink; C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe [897200 2016-12-06] (Silhouette Research & Technology Ltd -> )
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe [3224328 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe [133544 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 AiCharger; C:\Windows\SysWow64\drivers\AiCharger.sys [14848 2012-03-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert]
R3 gdrv; C:\Windows\gdrv.sys [25640 2023-04-07] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2014-02-08] (GIGA-BYTE TECHNOLOGY CO., LTD -> )
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49608 2023-03-28] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [495896 2023-03-28] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99624 2023-03-28] (Microsoft Windows -> Microsoft Corporation)
U3 idsvc; kein ImagePath

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2023-04-08 19:04 - 2023-04-08 19:06 - 000026171 _____ C:\Users\Eltern\Downloads\FRST.txt
2023-04-08 19:03 - 2023-04-08 19:05 - 000000000 ____D C:\FRST
2023-04-08 19:01 - 2023-04-08 19:02 - 002379776 _____ (Farbar) C:\Users\Eltern\Downloads\FRST64.exe
2023-04-08 00:11 - 2023-04-08 00:27 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2023-03-18 17:05 - 2023-03-18 17:05 - 000000000 ___HD C:\$WinREAgent
2023-03-09 23:24 - 2023-03-09 23:24 - 000000000 ____D C:\Users\Eltern\AppData\Local\SolidDocuments

==================== Ein Monat (geänderte) ==================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2023-04-08 18:33 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-04-08 17:47 - 2023-01-24 22:03 - 000000000 ____D C:\Users\Eltern\AppData\Local\CrashDumps
2023-04-07 23:32 - 2017-12-28 22:49 - 000000000 ____D C:\ProgramData\NVIDIA
2023-04-07 23:29 - 2021-06-21 11:40 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-04-07 23:29 - 2012-05-05 21:40 - 000025640 _____ (Windows (R) Server 2003 DDK provider) C:\WINDOWS\gdrv.sys
2023-04-07 22:32 - 2021-06-21 10:56 - 000002396 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-04-07 22:32 - 2021-06-21 10:56 - 000002234 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-04-07 22:32 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-04-07 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-04-07 22:28 - 2012-05-06 09:23 - 000002540 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-04-07 22:28 - 2012-05-06 09:23 - 000002503 _____ C:\Users\Eltern\Desktop\Google Chrome.lnk
2023-04-07 22:26 - 2021-06-21 10:59 - 000002443 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-04-04 23:44 - 2021-06-21 10:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-04-02 11:37 - 2021-06-21 11:15 - 001917326 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-04-02 11:37 - 2019-12-07 16:51 - 000820884 _____ C:\WINDOWS\system32\perfh007.dat
2023-04-02 11:37 - 2019-12-07 16:51 - 000177416 _____ C:\WINDOWS\system32\perfc007.dat
2023-04-02 11:37 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2023-03-28 01:10 - 2018-05-27 22:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2023-03-25 15:06 - 2023-03-07 09:26 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-03-25 15:06 - 2023-03-07 09:26 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-03-19 01:32 - 2021-06-21 10:50 - 000523208 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-03-19 01:28 - 2019-12-07 16:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-03-18 17:41 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-03-18 17:29 - 2021-06-21 10:55 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-03-18 16:56 - 2013-08-03 13:53 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-03-18 16:35 - 2012-05-05 17:39 - 153620824 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-03-09 23:24 - 2012-05-06 09:25 - 000000000 ____D C:\Users\Eltern\AppData\Roaming\Adobe

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========

2012-05-28 11:46 - 2012-05-28 11:46 - 007106104 _____ () C:\Program Files (x86)\FLV PlayerFCSetup.exe
2015-07-14 15:52 - 2013-06-26 13:51 - 000884736 _____ () C:\Program Files (x86)\vkaraoke.exe
2020-05-12 20:16 - 2020-05-12 20:16 - 000000008 _____ () C:\Users\Eltern\AppData\Roaming\com.silhouettesoftware.id
2012-06-09 15:54 - 2012-06-09 15:54 - 000000000 _____ () C:\Users\Eltern\AppData\Local\rx_image32.Cache
2012-06-02 17:13 - 2012-06-02 17:13 - 000017408 _____ () C:\Users\Eltern\AppData\Local\WebpageIcons.db

==================== FLock ==============================

2023-03-25 15:08 C:\Config.Msi
2012-06-16 17:06 C:\MSOCache
2019-12-07 11:14 C:\PerfLogs
2023-04-08 00:27 C:\WINDOWS\system32\config
2019-12-07 11:31 C:\WINDOWS\system32\Configuration
2019-12-07 11:14 C:\WINDOWS\system32\DriverState
2019-12-07 16:52 C:\WINDOWS\system32\FxsTmp
2019-12-07 11:14 C:\WINDOWS\system32\ias
2021-06-21 11:49 C:\WINDOWS\system32\MsDtc
2021-06-21 10:42 C:\WINDOWS\system32\msmq
2019-12-07 11:14 C:\WINDOWS\system32\networklist
2023-04-04 23:44 C:\WINDOWS\system32\SleepStudy
2023-04-08 18:55 C:\WINDOWS\system32\sru
2023-04-07 22:26 C:\WINDOWS\system32\Tasks
2021-06-21 11:49 C:\WINDOWS\system32\Tasks_Migrated
2023-01-12 22:50 C:\WINDOWS\system32\WDI
2015-07-30 23:52 C:\WINDOWS\system32\wfp
2023-04-07 22:32 C:\Program Files\WindowsApps
2012-05-28 11:46 C:\Program Files (x86)\FLV PlayerFCSetup.exe
2021-06-21 11:39 C:\WINDOWS\diagerr.xml
2021-06-21 11:39 C:\WINDOWS\diagwrn.xml
2022-07-22 13:45 C:\WINDOWS\iis.log
2019-08-11 18:23 C:\WINDOWS\InfusedApps
2022-07-22 22:15 C:\WINDOWS\LiveKernelReports
2023-03-04 12:51 C:\WINDOWS\Minidump
2019-12-07 11:14 C:\WINDOWS\ModemLogs
2023-04-08 19:07 C:\WINDOWS\Prefetch
2021-06-21 11:49 C:\WINDOWS\ServiceState
2021-12-16 00:32 C:\WINDOWS\SystemTemp
2023-04-08 17:49 C:\WINDOWS\Temp
2019-12-07 11:31 C:\WINDOWS\SysWOW64\config
2019-12-07 11:31 C:\WINDOWS\SysWOW64\Configuration
2019-12-07 16:52 C:\WINDOWS\SysWOW64\FxsTmp
2019-12-07 11:14 C:\WINDOWS\SysWOW64\Msdtc
2019-12-07 11:14 C:\WINDOWS\SysWOW64\networklist
2019-12-07 11:14 C:\WINDOWS\SysWOW64\sru
2019-12-07 11:31 C:\WINDOWS\SysWOW64\Tasks
2019-12-07 11:14 C:\WINDOWS\system32\Drivers\DriverData
2016-11-13 04:30 C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-09-20 16:28 C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job
2015-09-20 16:28 C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job
2015-09-20 15:11 C:\WINDOWS\Tasks\DigitalSite.job
2017-11-27 00:04 C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core.job
2017-11-27 00:04 C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA.job
2021-06-21 11:16 C:\WINDOWS\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}.job
2015-09-20 15:11 C:\WINDOWS\Tasks\MetaCrawler.job
2021-06-21 11:24 C:\Users\DefaultAppPool
2021-06-21 11:24 C:\Users\Henrike
2022-09-17 13:51 C:\Users\Schilling Family
2022-06-25 09:04 C:\ProgramData\Packages
2019-12-07 16:54 C:\ProgramData\WindowsHolographicDevices

==================== SigCheck ============================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)



ACHTUNG: ==> Auf den BCD konnte nicht zugegriffen werden. der Benutzer ist kein Administrator -> Der Speicher fr die Startkonfigurationsdaten konnte nicht ge”ffnet werden.
Zugriff verweigert

==================== Ende von FRST.txt ========================
         


Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 06-04-2023
durchgeführt von Eltern (08-04-2023 19:09:40)
Gestartet von C:\Users\Eltern\Downloads
Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) (2021-06-21 09:41:50)
Start-Modus: Normal
==========================================================


==================== Konten: =============================


(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

Administrator (S-1-5-21-607273383-903765569-4108737559-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-607273383-903765569-4108737559-503 - Limited - Disabled)
Eltern (S-1-5-21-607273383-903765569-4108737559-1003 - Limited - Enabled) => C:\Users\Eltern
Gast (S-1-5-21-607273383-903765569-4108737559-501 - Limited - Disabled)
Henrike (S-1-5-21-607273383-903765569-4108737559-1004 - Limited - Enabled) => C:\Users\Henrike
HomeGroupUser$ (S-1-5-21-607273383-903765569-4108737559-1002 - Limited - Enabled)
Schilling Family (S-1-5-21-607273383-903765569-4108737559-1001 - Administrator - Enabled) => C:\Users\Schilling Family
WDAGUtilityAccount (S-1-5-21-607273383-903765569-4108737559-504 - Limited - Disabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Kaspersky Total Security (Disabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23}
AV: Kaspersky Total Security (Disabled - Up to date) {0AB30972-4BAC-7BEE-CBCA-B8F9E68797D8}
AS: Kaspersky Total Security (Enabled - Up to date) {B1D2E896-6D96-7460-F17A-838B9D00DD65}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

@BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.08 - GIGABYTE)
4K Video Downloader (HKLM\...\{B3C67C95-860B-4362-98C2-0444F8A9B490}) (Version: 4.20.4.4870 - Open Media LLC)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1031-1033-7760-BC15014EA700}) (Version: 23.001.20093 - Adobe)
Adobe AIR (HKLM-x32\...\{10166660-0C51-4355-BD74-D4700EFDB83B}) (Version: 28.0.0.127 - Adobe Systems Incorporated) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 28.0.0.127 - Adobe Systems Incorporated)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601042}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Advanced IP Scanner 2.5 (HKLM-x32\...\{804CED37-7CED-45A5-AEC8-0F1F0FEE17E1}) (Version: 2.5.3784 - Famatech)
Amazon MP3-Downloader 1.0.17 (HKLM-x32\...\Amazon MP3-Downloader) (Version: 1.0.17 - Amazon Services LLC)
Amazon MP3-Downloader 1.0.18 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Amazon MP3-Downloader) (Version: 1.0.18 - Amazon Services LLC)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Drag and Drop Transcoding (HKLM\...\{203DE003-C392-FF19-BCA2-3F775477BC94}) (Version: 2.00.0000 - ATI Technologies Inc.) Hidden
Apple Mobile Device Support (HKLM\...\{527DD209-8A66-482F-8779-C7B3BACCA8F1}) (Version: 15.0.0.16 - Apple Inc.)
Applian FLV Player (HKLM-x32\...\Applian FLV Player2.0.24) (Version: 2.0.24 - Applian Technologies Inc.)
ATI AVIVO64 Codecs (HKLM\...\{33A49BF2-CB4F-5E54-D7F5-25502CAB6B70}) (Version: 11.6.0.50706 - ATI Technologies Inc.) Hidden
ATI Catalyst Install Manager (HKLM\...\{397878FC-1B1B-EED7-04A8-3184CE494A3B}) (Version: 3.0.782.0 - ATI Technologies, Inc.)
Auto Clicker v6.1 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 6.1 - MurGee.com)
AutoGreen B10.0517.1 (HKLM-x32\...\InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}) (Version: 1.00.0000 - GIGABYTE)
Bonanza Deals (remove only) (HKLM-x32\...\Bonanza Deals) (Version: 5.0.1.0 - Bonanza Deals)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Browser Configuration Utility (HKLM-x32\...\{A2F991E7-DDCD-42B7-AFEC-47789A099FDC}) (Version: 1.1.18.0 - DeviceVM Inc.)
BUDNI Fotowelt (HKLM-x32\...\BUDNI Fotowelt) (Version: 6.1.2 - CEWE Stiftung u Co. KGaA)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.4.0.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version:  - Canon Inc.)
CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM-x32\...\MyCamera Download Plugin) (Version: 3.1.0.1 - Canon Inc.)
CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.8.0.1 - Canon Inc.)
Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\Canon Internet Library for ZoomBrowser EX) (Version: 1.7.0.1 - Canon Inc.)
Canon Kurzwahlprogramm (HKLM-x32\...\Speed Dial Utility) (Version: 1.3.0 - Canon Inc.)
Canon MOV Decoder (HKLM-x32\...\Canon MOV Decoder) (Version: 1.7.0.6 - Canon Inc.)
Canon MOV Encoder (HKLM-x32\...\Canon MOV Encoder) (Version: 1.5.0.3 - Canon Inc.)
Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 3.6.0.5 - Canon Inc.)
Canon Utilities CameraWindow DC 8 (HKLM-x32\...\CameraWindowDC8) (Version: 8.3.0.6 - Canon Inc.)
Canon Utilities CameraWindow Launcher (HKLM-x32\...\CameraWindowLauncher) (Version: 7.5.0.2 - Canon Inc.)
Canon Utilities Digital Photo Professional 3.9 (HKLM-x32\...\DPP) (Version: 3.9.0.3 - Canon Inc.)
Canon Utilities Movie Uploader for YouTube (HKLM-x32\...\MovieUploaderForYouTube) (Version: 1.1.0.4 - Canon Inc.)
Canon Utilities MyCamera (HKLM-x32\...\MyCamera) (Version: 7.4.0.2 - Canon Inc.)
Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.)
Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.6.0.23 - Canon Inc.)
Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.4.0.4 - Canon Inc.)
Catalyst Control Center - Branding (HKLM-x32\...\{11087D24-567D-7D88-69C6-D7A08B5F4C47}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center - Branding (HKLM-x32\...\{87323561-58BA-4D5B-BADA-A791B69D1705}) (Version: 1.00.0000 - ATI) Hidden
ChessBase Reader (HKLM-x32\...\{52A3CA50-6E19-40B2-AD6D-2B7B2D89A8E4}) (Version: 12.44.0.0 - ChessBase)
Complitly (HKLM-x32\...\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1) (Version:  - Complitly)
DirectX 9 Runtime (HKLM-x32\...\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}) (Version: 1.00.0000 - Sonic Solutions) Hidden
Easy Tune 6 B10.0516.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE)
EasySaver B9.1214.1  (HKLM-x32\...\{07300F01-89CA-4CF8-92BD-2A605EB83C95}) (Version: 1.00.0000 - Gigabyte)
ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 21.3 - Thüringer Landesfinanzdirektion)
EMC 11 Content (HKLM-x32\...\{21ABEA96-CCAB-4C40-8699-6BDFEC5FD63C}) (Version: 1.1.019 - Ihr Firmenname) Hidden
FastImageResizer (remove only) (HKLM-x32\...\FastImageResizer) (Version:  - )
FastStone Image Viewer 7.4 (HKLM-x32\...\FastStone Image Viewer) (Version: 7.4 - FastStone Soft)
FileZilla Client 3.10.1.1 (HKLM-x32\...\FileZilla Client) (Version: 3.10.1.1 - Tim Kosse)
FLV Runner Toolbar (HKLM-x32\...\FLV_Runner Toolbar) (Version: 6.9.0.16 - FLV Runner)
Fotobuchexpress24 Bestellsoftware (HKLM-x32\...\Fotobuchexpress24) (Version: 4.0 - )
fotofoto Software (HKLM-x32\...\fotofotoSoftware) (Version: 4.0 - )
Free Video Dub version 2.0.21.827 (HKLM-x32\...\Free Video Dub_is1) (Version: 2.0.21.827 - DVDVideoSoft Ltd.)
Free Video Editor (HKLM-x32\...\Free Video Editor_is1) (Version: 1.4.54.606 - Digital Wave Ltd)
Freecorder 5 (HKLM-x32\...\Freecorder5.11) (Version: 5.11 - Applian Technologies Inc.)
Fritz 12 (HKLM-x32\...\{4F4182DA-3D58-41E3-913D-480F8DA5C863}) (Version: 12.0.0 - ChessBase)
Fritz und Fertig 3 (HKLM-x32\...\Fritz und Fertig 3) (Version:  - )
Gigabyte Raid Configurer (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.00.0001 - GIGABYTE Technologies, Inc.)
Google Chrome (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Google Chrome) (Version: 112.0.5615.49 - Google LLC)
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.23.0 - BonanzaDeals) Hidden
Houdini 4 64-bit (HKLM\...\{BD221DF2-6078-42BE-9C09-EF1213E6DEAD}) (Version: 14.2.0.0 - ChessBase)
HydraVision (HKLM-x32\...\{D5134D14-A38D-A217-4310-5C8B6DFA08D0}) (Version: 4.2.174.0 - ATI Technologies Inc.) Hidden
iCloud (HKLM\...\{709A2D23-C25E-47B5-9268-CB6FEE648504}) (Version: 4.1.1.53 - Apple Inc.)
Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.19.18.55 - Huawei Technologies Co.,Ltd)
Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation)
jZip (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\jZip) (Version: 2.0.0.134914 - Bandoo Media Inc)
Media Go (HKLM-x32\...\{362AB21A-E2C4-40CE-81C2-8C4D62B0635A}) (Version: 2.4.256 - Sony)
Media Go Video Playback Engine 1.116.101.02020 (HKLM-x32\...\{54215B8A-6212-8DB8-39B4-98EE2BB98BD1}) (Version: 1.116.101.02020 - Sony)
Microsoft .NET Framework 4.5.1 (DEU) (HKLM\...\{C513739C-5F16-37B5-9ACF-99925FF1C1F3}) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.2 (HKLM\...\{26784146-6E05-3FF9-9335-786C7C0FB5BE}) (Version: 4.5.51209 - Microsoft Corporation) Hidden
Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291.0_neutral_~_8wekyb3d8bbwe (x64) (HKLM\...\{25E80DAA-FD87-DCE5-202C-CC02F6673002}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 112.0.1722.34 - Microsoft Corporation)
Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 112.0.1722.34 - Microsoft Corporation)
Microsoft Office Access MUI (German) 2010 (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (HKLM\...\{90140000-002A-0000-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2010 (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Proof (English) 2010 (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2010 (HKLM\...\{90140000-002A-0407-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Single Image 2010 (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2010 (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\OneDriveSetup.exe) (Version: 23.061.0319.0003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - KB2467175 (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (HKLM\...\{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (HKLM\...\{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (HKLM-x32\...\{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (HKLM-x32\...\{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 (HKLM\...\{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 (HKLM\...\{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft_VC100_CRT_SP1_x64 (HKLM\...\{680EDA59-9266-44B4-949E-0C24F65DFF82}) (Version: 10.0.40219.1 - Nokia) Hidden
Microsoft_VC100_CRT_SP1_x86 (HKLM-x32\...\{E3B64CC5-C011-40C0-92BC-7316CD5E5688}) (Version: 10.0.40219.1 - Nokia) Hidden
Motorola Device Manager (HKLM-x32\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.4.5 - Motorola Mobility)
Motorola Device Software Update (HKLM-x32\...\{894AB83D-A9AF-4E54-BFF3-A7262A0A6C13}) (Version: 13.09.3001 - Motorola Mobility) Hidden
Motorola Mobile Drivers Installation 6.3.0 (HKLM\...\{759E6A2F-1F01-45EF-A0C4-22F1B56CB975}) (Version: 6.3.0 - Motorola Mobility LLC)
Mozilla Firefox 62.0.2 (x64 de) (HKLM\...\Mozilla Firefox 62.0.2 (x64 de)) (Version: 62.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0 - Mozilla)
MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
NVIDIA Grafiktreiber 456.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 456.71 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation)
Nvu 1.0 (HKLM-x32\...\Nvu_is1) (Version: 1.0 - Thorsten Fritz)
PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia)
PC Speed Maximizer v3.2 (HKLM-x32\...\PC Speed Maximizer_is1) (Version: 3.2 - Smart PC Solutions) <==== ACHTUNG
PlayStation(R)Network Downloader (HKLM-x32\...\{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}) (Version: 2.07.00849 - Sony Computer Entertainment Inc.)
PlayStation(R)Store (HKLM-x32\...\{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}) (Version: 4.14.6.15183 - Sony Computer Entertainment Inc.)
Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.18.322.2010 - Realtek)
Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.6034 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6083 - Realtek Semiconductor Corp.)
Roxio Activation Module (HKLM-x32\...\{1D53B6F9-E66E-42D8-A221-4FF8AC134FD7}) (Version: 1.0 - Roxio) Hidden
Roxio BackOnTrack (HKLM-x32\...\{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}) (Version: 1.3.1 - Roxio) Hidden
Roxio CinePlayer (HKLM-x32\...\{AA749D64-3741-4D5F-B804-B0BC05D179D1}) (Version: 5.0 - Roxio) Hidden
Roxio CinePlayer Decoder Pack (HKLM-x32\...\{C0FE37FA-0886-4B66-B01B-76CF70FB77AB}) (Version: 4.3.0 - Roxio) Hidden
Roxio File Backup (HKLM-x32\...\{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}) (Version: 1.3.0 - Roxio) Hidden
Roxio Update Manager (HKLM-x32\...\{30465B6C-B53F-49A1-9EBA-A3F187AD502E}) (Version: 6.0.0 - Roxio)
Roxio WinOnCD 2009 (HKLM-x32\...\{3383136B-4F86-4F05-8612-DD4BB16A1EAE}) (Version: 4.5.0 - Roxio) Hidden
Roxio WinOnCD 2009 (HKLM-x32\...\{7919D8D9-69FB-4E94-B330-04C4AF251867}) (Version: 11.0 - Roxio)
Roxio WinOnCD 2009 (HKLM-x32\...\{9F8C7AAF-CF7E-4FC9-ADD6-9EAE4304A161}) (Version: 1.1.110 - Roxio) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{8925227F-C7B5-4C95-AB58-4FCF2433DAEE}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{09A9DF49-DA06-4093-A2FD-F339211E39EA}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{ECC1D579-DC17-4B90-929C-B4A0BB35F7B3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}_Office14.SingleImage_{97099817-53F1-4CA1-ACEA-DA6D74371689}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{E4D76E88-C65F-4003-9C71-EC4306679D17}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0407-1000-0000000FF1CE}_Office14.SingleImage_{3B0FF7FF-0E85-4907-A511-3F8C27349FA4}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}_Office14.SingleImage_{996096F8-956B-41C9-A7E3-9BA1E801014F}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}_Office14.SingleImage_{D505EC85-885F-4BE3-8A89-3EFE4F855692}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Silhouette Link (HKLM-x32\...\{C2136C80-F9D4-4096-86D4-C641BB36DFF3}) (Version: 1.0.096 - Silhouette America)
SmartSound Quicktracks Plugin (HKLM-x32\...\InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}) (Version: 3.0.8.0 - SmartSound Software Inc)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation)
vanBasco's Karaoke Player (HKLM-x32\...\VMidi) (Version:  - )
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
VSDC Free Video Editor Version 6.4.2.102 (HKLM\...\VSDC Free Video Editor_is1) (Version: 6.4.2.102 - Flash-Integro LLC)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver  (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
YTD Video Downloader 5.9.13 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 5.9.13 - GreenTree Applications SRL) <==== ACHTUNG

Packages:
=========
Fotos-Add-On -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation)
Media Engine-Add-On für Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation) [MS Ad]
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.16.3140.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Studios) [MS Ad]
Unpacker -> C:\Program Files\WindowsApps\AFF540DC.Unpacker_1.1.14.24_x64__v7353qx4kg3sa [0000-00-00] (Jujuba Software) [MS Ad]
WindowsDVDPlayer -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer_3.6.13291.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation)
Zip RAR 7Z -> C:\Program Files\WindowsApps\E7F9CCC0.ZipRAR7Z_1.5.0.0_neutral__58whwn0mv7c6y [0000-00-00] (D and V Limited)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\ChromeHTML: -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) <==== ACHTUNG
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{041F9391-C79D-44EE-AA4E-AF4E029C4B47}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.112\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1F9E0710-2073-435F-9C1B-F29946205947}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{46406D82-6EC0-47CC-8A75-1F33C6DEDBBE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.442\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{540C17A8-04F2-4B66-95D7-B2FEF9A19B54}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.422\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{62634D95-960B-4834-8E71-A70408AD8FD9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.7\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{69545769-8D02-4B07-A481-AD374CD8D5D1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.132\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{6D264B70-DA18-401D-910C-B202D89670C6}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.32\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{75399D28-E622-4973-8752-BC0F7DC47AF3}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{84EB3779-151B-4C71-AEF0-A0FEE9481401}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.342\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{86508D42-E5D7-4D10-9C6F-D427AEEB85B5}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.11\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{8B480070-D37D-4090-A063-7A429F849652}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.92\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\112.0.5615.49\notification_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.23\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{BE5C2E39-090F-46A2-AFAA-47540743B4FE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.102\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA8FA699-91CD-412F-9D13-9B1222F4370E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.83\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA919489-0396-4164-A6E7-94CDED45A707}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.52\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{DEDF773D-E27B-485E-8E7D-85C5B0EB5A67}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.72\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E9E7529D-7F09-410B-AF2A-CC154473B19C}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EF076C91-DC9E-43E3-84ED-3D219E065A4F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.302\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => Keine Datei
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2015-04-26] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} =>  -> Keine Datei
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)

==================== Codecs (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Drivers32: [msacm.voxacm160] => C:\WINDOWS\system32\vct3216.acm [82944 2003-05-21] (Voxware, Inc.) [Datei ist nicht signiert]
HKLM\...\Drivers32: [msacm.scg726] => C:\WINDOWS\system32\scg726.acm [13239 2000-03-14] (SHARP Corporation) [Datei ist nicht signiert]
HKLM\...\Drivers32: [msacm.alf2cd] => C:\WINDOWS\system32\alf2cd.acm [38912 2003-05-21] (NCT Company) [Datei ist nicht signiert]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\WINDOWS\system32\AC3ACM.acm [81920 2004-02-04] (fccHandler) [Datei ist nicht signiert]
HKLM\...\Drivers32: [msacm.lame] => C:\WINDOWS\system32\lame.ax [245760 2005-08-01] () [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.dvsd] => C:\WINDOWS\system32\mcdvd_32.dll [261632 2003-05-21] (MainConcept) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.mpg4] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.mp42] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.mp43] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.xvid] => C:\WINDOWS\system32\xvidvfw.dll [139264 2004-07-03] () [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.DIVX] => C:\WINDOWS\system32\DivX.dll [638976 2003-05-22] (DivXNetworks, Inc.) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.VP62] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.LAGS] => C:\WINDOWS\system32\lagarith.dll [216064 2011-12-07] () [Datei ist nicht signiert]

==================== Verknüpfungen & WMI ========================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
ShortcutWithArgument: C:\Users\Eltern\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7b8281b05742e423\Google Chrome.lnk -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Geladene Module (Nicht auf der Ausnahmeliste) =============

2009-06-27 10:11 - 2009-06-27 10:11 - 000503202 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\sqlite3.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ==================

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =================

==================== Internet Explorer (Nicht auf der Ausnahmeliste) ==========

HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.spiegel.de/
HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
URLSearchHook: HKLM-x32 - FLV Runner Toolbar - {3bbd3c14-4c16-4989-8366-95bc9179779d} - C:\Users\Eltern\AppData\LocalLow\FLV_Runner\prxtbFLV2.dll Keine Datei
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM Inc. -> DeviceVM, Inc.)
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM Inc. -> DeviceVM, Inc.)
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> DefaultScope {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = 
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {CAFC8535-FC41-4BE5-849D-E5224432519B} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3201318
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.)
Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> Kein Name - {1392B8D2-5C05-419F-A8F6-B9F15A596612} -  Keine Datei
Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> Kein Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} -  Keine Datei
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

==================== Hosts Inhalt: =========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Andere Bereiche ===========================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\;C:\Program Files (x86)\Common Files\Roxio Shared\11.0\DLLShared\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-607273383-903765569-4108737559-1003\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Dell\Win7 LtBlue 1920x1200.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Keine Datei)
 ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: Motorola Device Manager => 2
MSCONFIG\Services: Roxio UPnP Renderer 11 => 3
MSCONFIG\Services: Roxio Upnp Server 11 => 2
MSCONFIG\Services: RoxLiveShare11 => 2
MSCONFIG\Services: RoxMediaDB11 => 3
MSCONFIG\Services: RoxWatch11 => 2
MSCONFIG\Services: ServiceLayer => 3
MSCONFIG\Services: Sony PC Companion => 3
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\StartupApproved\Run: => "AmazonMP3DownloaderHelper"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [UDP Query User{547E83B5-1313-4049-8C6C-7FEFCE3032C8}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{39484926-44D0-4DAF-B0F8-866441E6D21A}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{25FC2CF9-26C7-4801-865C-540B37D8F053}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{AF857C3D-3AD8-4EF9-85EA-8449CCA07F0B}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{2967DE4D-3ECD-4166-834C-BAA04DC11964}] => (Allow) C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe (Silhouette Research & Technology Ltd -> )
FirewallRules: [{DCC44E91-DA96-404D-9C1F-EE280941DD29}] => (Allow) C:\Program Files (x86)\Silhouette America\Silhouette Link\SilhouetteLinkConsole.exe (Silhouette Research & Technology Ltd -> )
FirewallRules: [{73C5997B-A60F-4423-ABB7-310B58259BC2}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{6E0F8CA7-3119-4E34-8D0F-457FE24884BF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{79C30040-27F1-41BA-9061-5E6863DD79EF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{63D3CFC8-E445-4908-92DE-C1EF9B169D01}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{7AA2976B-1696-433C-951B-3638144151F5}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{56DA2F88-0B42-4F5C-9AD1-87CECFB8F21A}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{0427B960-2364-4061-8D5A-B5D5238E0652}] => (Allow) C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc -> Google Inc.)
FirewallRules: [{55CD2498-99BC-4878-9393-A93EEEF53276}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert]
FirewallRules: [{34FBCA88-D993-4E7D-AE9D-F75335CF1BD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert]
FirewallRules: [{75721B46-B736-4981-A30C-9C4A7DFA293F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{25ABFAB1-10A6-4C85-9498-4465BA7A8D25}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{32F2A2BD-95DF-41FB-86E2-E4FA4F05F363}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{22EAF1AB-1A96-40C1-8142-3CEBDF58A647}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{2D4667B5-F3E5-4885-882A-680251907CC5}] => (Allow) F:\o2CD.exe => Keine Datei
FirewallRules: [{A1F82616-54EE-4B24-BAF1-9FC9A59E06C9}] => (Allow) F:\o2CD.exe => Keine Datei
FirewallRules: [{BC62CBD5-D590-40D7-B254-2F6B63EA0A51}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3207EC1A-AC96-41C7-A43B-E0449E4CFD8C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{BB65DA61-3AEF-4723-839F-8614B4B2DCE6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CEF21CCF-81CB-46AF-BF32-D50B57107806}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E7D017EE-5A08-4B83-8ABD-0E231E05E21A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{97EEE3EA-74AC-4C81-A147-4062BE737487}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{27AA07D2-29F9-4C0A-8FA7-D5ACDA31A49C}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => Keine Datei
FirewallRules: [{25F5F1FF-2414-4F37-8B6A-27EAF4331A0D}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => Keine Datei
FirewallRules: [{64711767-0BEA-4E26-93C0-E7067F35F510}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6267537C-2A47-4D0A-855E-11982B6C2CE0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{19C62B83-B546-4D25-84EC-CF4188C945BE}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [{847E80AE-8076-4540-9C12-38B8CED2229E}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [TCP Query User{2C96EF38-3E0E-4B56-BE5F-66C94FBA7BF4}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => Keine Datei
FirewallRules: [UDP Query User{DCAE0FD6-BE9F-423F-9A44-CF663BE220E3}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => Keine Datei
FirewallRules: [{13F44943-2753-4C2C-A854-B02E880FD681}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.)
FirewallRules: [{1DE1C6EB-EC9E-4562-BAD8-1EF4A6F74758}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.)
FirewallRules: [{CED1E8BF-8A0D-46A0-8671-8FBC100F75E8}] => (Allow) C:\Program Files\BlueStacks_nxt\HD-Player.exe => Keine Datei
FirewallRules: [{23C90C72-420C-4C0A-85BA-B2D6AE6C60ED}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{82195564-A0F6-465D-8DB4-102C09B6763D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{BCC5757C-BEA8-4EEF-90D5-F7581CFB61CE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{B602402A-086F-4281-B5D3-5862449D5F53}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{31A42FDB-DD04-4C37-A8F1-4208EE877C44}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{76B60587-7B61-4637-BEA2-7CAB8A4B0CB0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{189FA84B-B945-43A6-893F-CC12EAE178B9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{0E12E48C-5C80-40A2-BA71-1905CEF567CD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{9AAB57D9-E18D-48FA-9EF4-83B52D7B34A8}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\112.0.1722.34\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Wiederherstellungspunkte =========================

ACHTUNG: Systemwiederherstellung ist deaktiviert (Total:107.89 GB) (Free:18.13 GB) (17%)
Überprüfen Sie den "VSS" Dienst


==================== Fehlerhafte Geräte im Gerätemanager ============

Name: Kaspersky Security Data Escort Adapter #2
Description: Kaspersky Security Data Escort Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: SAMSUNG Electronics Co., Ltd. 
Service: kltap
Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19)
Resolution: A registry problem was detected.
 This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options:
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver.


==================== Fehlereinträge in der Ereignisanzeige: ========================

Applikationsfehler:
==================
Error: (04/08/2023 05:47:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.19041.2673, Zeitstempel: 0x4aa1ce82
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.19041.546, Zeitstempel: 0x564f9f39
Ausnahmecode: 0x40000015
Fehleroffset: 0x000000000000ae22
ID des fehlerhaften Prozesses: 0x21e4
Startzeit der fehlerhaften Anwendung: 0x01d96a3116ba964b
Pfad der fehlerhaften Anwendung: C:\Windows\ImmersiveControlPanel\SystemSettings.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\msvcrt.dll
Berichtskennung: 32924120-d70a-4eee-85c7-e9792f980003
Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windows.immersivecontrolpanel

Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 31125

Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 31125

Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15438

Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15438

Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (04/02/2023 11:42:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: svchost.exe_WaaSMedicSvc, Version: 10.0.19041.1806, Zeitstempel: 0x7dcad237
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.19041.2130, Zeitstempel: 0xb5ced1c6
Ausnahmecode: 0xc0000409
Fehleroffset: 0x00000000000281da
ID des fehlerhaften Prozesses: 0x858
Startzeit der fehlerhaften Anwendung: 0x01d965462c926a07
Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\svchost.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll
Berichtskennung: a925920e-ff58-4635-b132-3e66a692e988
Vollständiger Name des fehlerhaften Pakets: 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:


Systemfehler:
=============
Error: (04/08/2023 05:40:47 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Speicherdienst" wurde nicht richtig gestartet.

Error: (04/08/2023 05:37:15 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "MessagingService_16ec59" wurde mit folgendem Fehler beendet: 
Das Gerät ist nicht bereit.

Error: (04/07/2023 11:32:29 PM) (Source: DCOM) (EventID: 10010) (User: SchillingFamily)
Description: Der Server "{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (04/07/2023 11:30:38 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "MessagingService_8b8a4" wurde mit folgendem Fehler beendet: 
Das Gerät ist nicht bereit.

Error: (04/07/2023 11:29:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Internet Manager. RunOuc" wurde aufgrund folgenden Fehlers nicht gestartet: 
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.

Error: (04/07/2023 11:29:17 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst Internet Manager. RunOuc erreicht.

Error: (04/07/2023 11:08:40 PM) (Source: DCOM) (EventID: 10010) (User: SchillingFamily)
Description: Der Server "{9AA46009-3CE0-458A-A354-715610A075E6}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (04/07/2023 10:59:00 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: Der Server "{B91D5831-B1BD-4608-8198-D72E155020F7}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.


Windows Defender:
================
Date: 2023-04-08 19:09:26
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0
Name: PUADlManager:Win32/DownloadSponsor
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Echtzeitschutz
Benutzer: SchillingFamily\Eltern
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.397.0, AS: 1.387.397.0, NIS: 1.387.397.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 19:09:25
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0
Name: PUADlManager:Win32/DownloadSponsor
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Echtzeitschutz
Benutzer: SchillingFamily\Eltern
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.397.0, AS: 1.387.397.0, NIS: 1.387.397.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 19:08:42
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=Backdoor:Win32/Bladabindi.YPS!MTB&threatid=2147793448&enterprise=0
Name: Backdoor:Win32/Bladabindi.YPS!MTB
Schweregrad: Schwerwiegend
Kategorie: Hintertür
Pfad: file:_C:\Users\Eltern\Downloads\FreeVideoEditor_CB-DL-Manager.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Echtzeitschutz
Benutzer: SchillingFamily\Eltern
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.397.0, AS: 1.387.397.0, NIS: 1.387.397.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 19:08:42
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/CandyOpen&threatid=311936&enterprise=0
Name: PUABundler:Win32/CandyOpen
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FreeAudioDub.exe; file:_C:\Users\Eltern\Downloads\FreeStudio.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: FastPath
Erkennungsquelle: Echtzeitschutz
Benutzer: SchillingFamily\Eltern
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.397.0, AS: 1.387.397.0, NIS: 1.387.397.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 19:08:32
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/CandyOpen&threatid=311936&enterprise=0
Name: PUABundler:Win32/CandyOpen
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FreeAudioDub.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: FastPath
Erkennungsquelle: Echtzeitschutz
Benutzer: SchillingFamily\Eltern
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.397.0, AS: 1.387.397.0, NIS: 1.387.397.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4
Event[0]:

Date: 2023-02-14 22:12:26
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3589.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". 

Date: 2023-02-14 22:12:26
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3589.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiSpyware
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". 

Date: 2023-02-14 22:12:26
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3589.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". 

Date: 2023-02-14 22:10:52
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3495.0
Update Source: Microsoft Update-Server
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x80070102
Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. 

Date: 2023-02-14 22:10:52
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3495.0
Update Source: Microsoft Update-Server
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x80070102
Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. 

CodeIntegrity:
===============
Date: 2023-04-02 11:55:38
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-04-02 11:42:03
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

Date: 2023-03-19 23:21:24
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-01-12 23:00:54
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-11-11 00:26:40
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-11-11 00:13:09
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Speicherinformationen =========================== 

BIOS: Award Software International, Inc. FD 07/23/2010
Hauptplatine: Gigabyte Technology Co., Ltd. GA-890GPA-UD3H
Prozessor: AMD Phenom(tm) II X4 955 Processor
Prozentuale Nutzung des RAM: 51%
Installierter physikalischer RAM: 8189.55 MB
Verfügbarer physikalischer RAM: 3991.38 MB
Summe virtueller Speicher: 16381.55 MB
Verfügbarer virtueller Speicher: 10758.98 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:107.89 GB) (Free:18.13 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS
Drive d: () (Fixed) (Total:97.56 GB) (Free:25.19 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS
Drive e: () (Fixed) (Total:0 GB) (Free:0 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) 
Drive f: (ELM327 software) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS
Drive g: (System) (Fixed) (Total:232.88 GB) (Free:44.68 GB) (Model: ST3250823AS ATA Device) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]

\\?\Volume{dbb0575c-96c5-11e1-b743-806e6f6e6963}\ (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS

==================== MBR & Partitionstabelle ====================

==================== Ende von Addition.txt =======================
         

Geändert von cosinus (08.04.2023 um 19:29 Uhr) Grund: CODE-Tags

Alt 08.04.2023, 19:31   #2
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



Zitat:
durchgeführt von Eltern (ACHTUNG: der Benutzer ist kein Administrator)
Das ist schonmal komplett sinnfrei.
Weches Benuterkonto ist denn nun betroffen? Und wenn muss FRST mit Adminrechten ausgeführt werden.
__________________

__________________

Alt 08.04.2023, 20:15   #3
Skipper39
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



Sinnfrei gehört zu meinen Kernkompetenzen :-))

Hab das frst nochmals durchgeführt, jetzt zwar vom gleichen Benutzerkonto (Eltern, das ist kein Adminkonto) aber als Admimistrator ausgeführt.
FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-04-2023
Ran by Schilling Family (administrator) on SCHILLINGFAMILY (Gigabyte Technology Co., Ltd. GA-890GPA-UD3H) (08-04-2023 20:55:54)
Running from C:\Users\Eltern\Downloads
Loaded Profiles: Schilling Family & Eltern
Platform: Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) Language: Deutsch (Deutschland) -> Deutsch (Deutschland)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\DataCardService\HWDeviceService64.exe ->) (Huawei Technologies Co.,Ltd. -> Huawei Technologies Co., Ltd.) C:\Program Files (x86)\DataCardService\DCSHelper.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCopyAccelerator.exe
(DeviceVM Inc. -> DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (DeviceVM Inc. -> DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
(services.exe ->) (Huawei Technologies Co.,Ltd. -> ) C:\Program Files (x86)\DataCardService\HWDeviceService64.exe
(services.exe ->) (JMicron Technology Corp. -> ) C:\Windows\SysWOW64\XSrvSetup.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Shenzhen iMyFone Technology Co., Ltd -> ) C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe
(services.exe ->) (Silhouette Research & Technology Ltd -> ) C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [BCU] => C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [375000 2009-10-15] (DeviceVM Inc. -> DeviceVM, Inc.)
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmprph.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Roxio Central 4\Plugins\Launch.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\Setup_wm.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\VPREVIEW.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\ChessBase\ChessProgram12\ChessProgram12.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnscfg.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSACCESS.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSPUB.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Internet Explorer <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpsideshowgadget.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Sidebar <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\downloads\minecraft (1).exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnetwk.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\POWERPNT.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\program files (x86)\adobe\reader 10.0\reader\eula.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Roxio Central 4\RoxioCentralFx.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmlaunch.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Media Import 11\MediaCapture11.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmprph.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpsideshowgadget.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\program files (x86)\java\jre7\bin\javaw.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\Wordconv.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\Setup_wm.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpconfig.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnscfg.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\downloads\minecraft.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\desktop\minecraft (1).exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\GRAPH.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpshare.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\excelcnv.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\XLICONS.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\PPTICO.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmplayer.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\WORDICON.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Creator Classic 11\Creator11.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Sidebar <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnscfg.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Retrieve 11\Launch_Retrieve.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmlaunch.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnscfg.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Retrieve 11\Retrieve11.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpconfig.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Defender <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpenc.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\OIS.EXE <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\desktop\minecraft.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Internet Explorer <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpshare.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpenc.exe <==== ATTENTION
HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Run: [Google Update] => C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\GoogleUpdateCore.exe [601680 2017-11-25] (Google Inc -> Google Inc.)
HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [Google Update] => C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\GoogleUpdateCore.exe [230360 2022-08-29] (Google LLC -> Google LLC)
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [AmazonMP3DownloaderHelper] => C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe [400704 2013-05-22] (Amazon Services LLC -> )
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [MicrosoftEdgeAutoLaunch_EB8D6C06E991CEDBC9E4E65F13805E5D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4140496 2023-04-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKLM\...\Windows x64\Print Processors\Canon iP4300 Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD86.DLL [27136 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX520 series: C:\WINDOWS\system32\CNCALBO.DLL [303104 2012-09-21] (CANON INC.) [File not signed]
HKLM\...\Print\Monitors\Canon BJ Language Monitor iP4300: C:\WINDOWS\system32\CNMLM86.DLL [234496 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MX520 series: C:\WINDOWS\system32\CNMLMBO.DLL [390656 2012-09-20] (CANON INC.) [File not signed]
HKLM\...\Print\Monitors\Canon BJNP Port: C:\WINDOWS\system32\CNMN6PPM.DLL [359936 2012-07-31] (CANON INC.) [File not signed]
HKLM\...\Print\Monitors\LIDIL hpzllw71: C:\WINDOWS\system32\hpzllw71.dll [53248 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> 
Startup: C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk [2013-01-04]
ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\Henrike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk [2014-04-08]
ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
GroupPolicy: Restriction ? <==== ATTENTION
GroupPolicy\User: Restriction ? <==== ATTENTION
GroupPolicyUsers\S-1-5-21-607273383-903765569-4108737559-1004\User: Restriction <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0BBB9B25-3E0B-41C4-8417-BC0AA3E8469A} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (No File)
Task: {0D20E039-9151-46FD-B974-33451D8D8893} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (No File)
Task: {0D32098A-3809-485B-B4B1-FB99532A9F8A} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {0F32F71B-0E80-453C-84AA-62B937EFC571} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe $(Arg0) (No File)
Task: {16715D28-05B1-4839-82FC-3FBDE0233F64} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe /StartRecording (No File)
Task: {1C55A462-FD73-403B-A09F-984CB07A8C39} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {22BE8BFB-1E32-4605-8FE7-032BE3370959} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (No File)
Task: {2C9910E7-21E4-4BC3-A649-8476A15F8916} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {2C9A41E5-EAA4-47BD-A47C-649959DD4C96} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe /RestartRecording (No File)
Task: {2D4F42E6-6553-4563-A4DA-5C64C00F3A24} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (No File)
Task: {2F254FB2-238A-4DDD-BB1A-5CD7BD36CFB9} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe -crl -hms -pscn 15 (No File)
Task: {308E3245-B76B-4F4C-9420-DC711CD8B6AA} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (No File)
Task: {355E2600-47CE-46FE-9A7E-1F5F735531F9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {45381A70-9F15-40C7-9DAB-84FE23E9CA62} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (No File)
Task: {479F023B-EDFA-4153-B8AB-686E66D34909} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (No File)
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB}
Task: {48A446E7-59BC-49E8-B070-033DCC730F02} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000 2015-08-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {4FEE6216-5B1C-4CCD-B930-8E7E961AED44} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.)
Task: {5235F070-0423-4841-A880-4C5C6E95D792} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {5288861F-AA80-42F5-965F-271A29651414} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {540F9B5D-6DB9-4419-8E0B-36E4220B76D6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.)
Task: {57B8B6B7-8B6E-4186-94DF-1155B3FB3CF1} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (No File)
Task: {57F6E612-D826-46E6-86F9-C9951328AFB3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {5BE104DB-21E9-45AE-90C2-1E8585816213} - \MetaCrawler -> No File <==== ATTENTION
Task: {60E899E7-67BD-4316-94B1-5F9C60C66F8F} - \BonanzaDealsLiveUpdateTaskMachineCore -> No File <==== ATTENTION
Task: {62AB03D9-9674-4F82-9B03-79854C0C4188} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {68A2DC77-4326-45B0-A2EB-FC0A3F784C40} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {6CE9B4C3-7B27-4764-9B0A-152BBAECC232} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {6F37C2F7-DADB-49AE-A204-2C9AD19C6CFE} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {6F47A56B-CADB-4C5E-B30B-85487FC6CC88} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {71C3C4D2-0F58-4A47-A69A-D46E959D7336} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (No File)
Task: {71D74DD1-F182-473C-A98A-587C247548CF} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {73A44D9D-5152-45D9-B5ED-09FE3C3EA042} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (No File)
Task: {801268F4-4131-4543-95C3-8B78C47D63B5} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {83C55439-989B-45A6-A08E-F552847E1327} - \DigitalSite -> No File <==== ATTENTION
Task: {84608AB1-FDFC-4CBE-9B6E-87A86EC99DCE} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (No File)
Task: {88F5F492-6208-4730-A9B2-F754D5D964BB} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {89AA7B43-6F43-4665-B455-35250B2775B6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core1d36619e3cf49df => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.)
Task: {964B9BE3-0E0D-4477-9935-97A3378361C6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9B5544EC-58CA-4789-AAD4-BC7E3AC6823A} - \BonanzaDealsLiveUpdateTaskMachineUA -> No File <==== ATTENTION
Task: {A25CFF11-8701-4725-B4FF-B3E3A26322F7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA1d36619e3f56ec3 => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.)
Task: {A62B6259-A517-463A-87F7-5AC214BA12C1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA1d264fa72e45b7c => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {A644AF47-F72C-415B-87DA-AC26713AA924} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (No File)
Task: {A764CB31-E10A-4748-87C2-78B1A074C2C5} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {AE3B097F-0458-44AD-B075-30716ECFED1E} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {B48C01BC-3898-4438-ACBC-3CBB676128C9} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (No File)
Task: {BC82C7F7-E333-4612-B4DA-B144C7B04EC6} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -SqlLiteRecoveryTask (No File)
Task: {C5CFDFCD-19A8-459D-B137-419863D933E0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C81A5F30-FAB1-46FE-8C78-248273597C96} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {C9CE2E2F-74C8-4420-A9A6-6C5270140972} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe /DoReindexSearchRoot (No File)
Task: {CC1E0B3B-991C-48FD-A12D-87AD1C6A5AB4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {CEC66727-43C2-4046-877F-5E52D2579E6A} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (No File)
Task: {D4B27E49-E70B-42CF-9F59-391892C74007} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {D8373EC5-C2D0-47AA-A6E5-134DB4404626} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (No File)
Task: {D8BBE133-E46B-46C1-91B4-19BE93F6CB55} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (No File)
Task: {E32C8471-92F1-4FDE-B901-8FB47EC87899} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {E9EB6BC0-96CB-4A0D-888D-CE6AD2CFAA11} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1560056 2023-02-01] (Adobe Inc. -> Adobe Inc.)
Task: {EEF562D5-1A49-4011-9839-10FE2C739B33} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core1d264fa72b23a21 => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {FCAE2C9E-7790-484C-B719-C3622CADC1D6} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (No File)
Task: {FD4F3315-361A-4584-98C3-A29243C37660} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\DigitalSite.job => C:\Users\SCHILL~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core.job => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA.job => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}.job => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe
Task: C:\WINDOWS\Tasks\MetaCrawler.job => C:\Users\SCHILL~1\AppData\Roaming\METACR~1\UPDATE~1\UPDATE~1.EXE

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1533b570-916a-43ef-a95f-2771cf3347c2}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{63e8b743-5869-48f3-b34a-8f4038bdaffe}: [NameServer] 10.74.210.210 10.74.210.211

Edge: 
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]

FireFox:
========
FF ProfilePath: C:\Users\Schilling Family\AppData\Roaming\Nvu\Profiles\0l2t5pjb.default [2012-11-29]
FF HKLM\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru => not found
FF HKLM-x32\...\Firefox\Extensions: [speedanalysis@SpeedAnalysis.com] - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com
FF Extension: (SpeedAnalysis.com) - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com [2013-04-02] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => not found
FF HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Firefox\Extensions: [speedanalysis@SpeedAnalysis.com] - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-03-21] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [File not signed]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @playstation.com/PsndlCheck,version=1.00 -> C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll [2011-08-03] (Sony Computer Entertainment Inc. -> Sony Computer Entertainment Inc.)
FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 -> C:\Program Files (x86)\Sony\Media Go\npmediago.dll [2013-02-14] (Sony Network Entertainment International LLC) [File not signed]
FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-25] (Google Inc -> Google Inc.)
FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-25] (Google Inc -> Google Inc.)
FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1001: amazon.com/AmazonMP3DownloaderPlugin -> C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10174.dll [2012-12-07] (Amazon.com, Inc.) [File not signed]
FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1003: amazon.com/AmazonMP3DownloaderPlugin -> C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll [2013-05-22] (Amazon Services LLC -> Amazon.com, Inc.)
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2019-10-06] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2019-10-06] <==== ATTENTION

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default [2018-01-28]
CHR HomePage: Default -> hxxp://www.google.com
CHR Extension: (Präsentationen) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-25]
CHR Extension: (Docs) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-25]
CHR Extension: (Google Drive) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-11-25]
CHR Extension: (YouTube) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-11-25]
CHR Extension: (Complitly plugin for chrome) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda [2017-11-25] [UpdateUrl:hxxp://www.predictad.com/update/chrome/?si=28188&ver=1.1] <==== ATTENTION
CHR Extension: (Metacrawler Neuer Tab) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\doobfiogmfmpjnoofjhhgjehmlofngfp [2017-11-25] [UpdateUrl:hxxp://update.speedial.com/addons/metacrawler-ch.xml] <==== ATTENTION
CHR Extension: (Tabellen) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-25]
CHR Extension: (Kaspersky Protection) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhoibnponjcgjgcnfacekaijdbbplhib [2017-11-25]
CHR Extension: (Google Docs Offline) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-01-28]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-11-25]
CHR Extension: (Google Mail) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-11-25]
CHR Extension: (Chrome Media Router) - C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-01-28]
CHR HKLM\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx [2013-11-16]
CHR HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\SCHILL~1\AppData\Local\metacrawler-speeddial.crx [2013-11-16]
CHR HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [cfcbmgbfdbijmjgjihagbomfbjfjmgon] - C:\Users\Schilling Family\AppData\Roaming\SpeedanAlysis\speedanalysis.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [dlfienamagdnkekbbbocojppncdambda] - C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx [2012-05-28]
CHR HKLM-x32\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx [2013-11-16]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
StartMenuInternet: Google Chrome - C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe
StartMenuInternet: Google Chrome.Eltern - C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000 2015-08-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-08-20] (Apple Inc. -> Apple Inc.)
S3 ElfoService; C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe [1113864 2020-07-04] (Bayerisches Landesamt fuer Steuern -> )
S2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] (Giga-Byte Technology -> )
R2 HWDeviceService64.exe; C:\Program Files (x86)\DatacardService\HWDeviceService64.exe [351888 2016-03-24] (Huawei Technologies Co.,Ltd. -> )
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [682072 2015-07-06] (Huawei Technologies Co.,Ltd. -> )
R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72304 2010-01-19] (JMicron Technology Corp. -> )
R2 MFLocalService; C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe [54664 2022-04-28] (Shenzhen iMyFone Technology Co., Ltd -> )
S4 Roxio UPnP Renderer 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUPnPRenderer11.exe [313840 2008-08-14] (Sonic Solutions -> Sonic Solutions)
S4 Roxio Upnp Server 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUpnpService11.exe [367088 2008-08-14] (Sonic Solutions -> Sonic Solutions)
S4 RoxMediaDB11; C:\Program Files (x86)\Common Files\Roxio Shared\11.0\SharedCOM\RoxMediaDB11.exe [1122304 2009-01-09] (Sonic Solutions) [File not signed]
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [226976 2023-03-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SilhouetteLink; C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe [897200 2016-12-06] (Silhouette Research & Technology Ltd -> )
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe [3224328 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe [133544 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AiCharger; C:\Windows\SysWow64\drivers\AiCharger.sys [14848 2012-03-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 gdrv; C:\Windows\gdrv.sys [25640 2023-04-08] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2014-02-08] (GIGA-BYTE TECHNOLOGY CO., LTD -> )
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49608 2023-03-28] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [495896 2023-03-28] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99624 2023-03-28] (Microsoft Windows -> Microsoft Corporation)
U3 idsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-04-08 19:09 - 2023-04-08 19:14 - 000072558 _____ C:\Users\Eltern\Downloads\Addition.txt
2023-04-08 19:04 - 2023-04-08 20:57 - 000043570 _____ C:\Users\Eltern\Downloads\FRST.txt
2023-04-08 19:03 - 2023-04-08 20:56 - 000000000 ____D C:\FRST
2023-04-08 19:01 - 2023-04-08 19:02 - 002379776 _____ (Farbar) C:\Users\Eltern\Downloads\FRST64.exe
2023-04-08 00:27 - 2023-04-08 20:36 - 113508352 _____ C:\WINDOWS\system32\config\SOFTWARE
2023-04-08 00:11 - 2023-04-08 00:27 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2023-03-18 17:05 - 2023-03-18 17:05 - 000000000 ___HD C:\$WinREAgent
2023-03-09 23:24 - 2023-03-09 23:24 - 000000000 ____D C:\Users\Eltern\AppData\Local\SolidDocuments

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-04-08 20:49 - 2014-03-03 21:44 - 000000000 ____D C:\Program Files (x86)\Motorola Mobility
2023-04-08 20:49 - 2012-05-05 21:20 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2023-04-08 20:46 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2023-04-08 20:39 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-04-08 20:38 - 2012-05-05 21:40 - 000025640 _____ (Windows (R) Server 2003 DDK provider) C:\WINDOWS\gdrv.sys
2023-04-08 20:37 - 2021-06-21 11:40 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-04-08 20:37 - 2017-12-28 22:49 - 000000000 ____D C:\ProgramData\NVIDIA
2023-04-08 20:36 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2023-04-08 20:21 - 2012-06-14 08:40 - 000000000 ____D C:\Users\Schilling Family\AppData\Roaming\DVDVideoSoft
2023-04-08 17:47 - 2023-01-24 22:03 - 000000000 ____D C:\Users\Eltern\AppData\Local\CrashDumps
2023-04-07 22:32 - 2021-06-21 10:56 - 000002396 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-04-07 22:32 - 2021-06-21 10:56 - 000002234 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-04-07 22:32 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-04-07 22:32 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-04-07 22:28 - 2012-05-06 09:23 - 000002540 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-04-07 22:28 - 2012-05-06 09:23 - 000002503 _____ C:\Users\Eltern\Desktop\Google Chrome.lnk
2023-04-07 22:27 - 2021-06-21 11:40 - 000004170 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{7B8873E7-2F6A-4D04-BC4D-C1178DC4E0A8}
2023-04-07 22:26 - 2021-12-11 16:19 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-607273383-903765569-4108737559-1003
2023-04-07 22:26 - 2021-06-21 11:40 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-607273383-903765569-4108737559-1003
2023-04-07 22:26 - 2021-06-21 10:59 - 000002443 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-04-04 23:44 - 2021-06-21 10:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-04-04 21:51 - 2021-06-24 07:57 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-04-04 21:51 - 2021-06-24 07:57 - 000003662 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d7667dcba7b542
2023-04-02 11:37 - 2021-06-21 11:15 - 001917326 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-04-02 11:37 - 2019-12-07 16:51 - 000820884 _____ C:\WINDOWS\system32\perfh007.dat
2023-04-02 11:37 - 2019-12-07 16:51 - 000177416 _____ C:\WINDOWS\system32\perfc007.dat
2023-03-28 01:10 - 2018-05-27 22:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2023-03-25 15:07 - 2021-06-21 11:40 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2023-03-25 15:06 - 2023-03-07 09:26 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-03-25 15:06 - 2023-03-07 09:26 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-03-19 01:32 - 2021-06-21 10:50 - 000523208 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-03-19 01:28 - 2019-12-07 16:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-03-18 17:41 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-03-18 17:29 - 2021-06-21 10:55 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-03-18 16:56 - 2013-08-03 13:53 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-03-18 16:35 - 2012-05-05 17:39 - 153620824 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-03-09 23:24 - 2012-05-06 09:25 - 000000000 ____D C:\Users\Eltern\AppData\Roaming\Adobe

==================== Files in the root of some directories ========

2015-07-14 15:52 - 2013-06-26 13:51 - 000884736 _____ () C:\Program Files (x86)\vkaraoke.exe
2014-02-08 16:11 - 2014-02-08 16:11 - 000000047 _____ () C:\Users\Schilling Family\AppData\Roaming\WB.CFG
2013-11-16 13:11 - 2013-11-16 13:11 - 000356766 _____ () C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx
2012-05-12 00:26 - 2012-05-12 10:48 - 000007597 _____ () C:\Users\Schilling Family\AppData\Local\Resmon.ResmonCfg
2012-05-05 18:17 - 2012-05-05 18:17 - 000017408 _____ () C:\Users\Schilling Family\AppData\Local\WebpageIcons.db

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
         
--- --- ---
__________________

Alt 08.04.2023, 20:15   #4
Skipper39
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



FRST Additions Logfile:
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-04-2023
Ran by Schilling Family (08-04-2023 21:00:43)
Running from C:\Users\Eltern\Downloads
Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) (2021-06-21 09:41:50)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-607273383-903765569-4108737559-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-607273383-903765569-4108737559-503 - Limited - Disabled)
Eltern (S-1-5-21-607273383-903765569-4108737559-1003 - Limited - Enabled) => C:\Users\Eltern
Gast (S-1-5-21-607273383-903765569-4108737559-501 - Limited - Disabled)
Henrike (S-1-5-21-607273383-903765569-4108737559-1004 - Limited - Enabled) => C:\Users\Henrike
HomeGroupUser$ (S-1-5-21-607273383-903765569-4108737559-1002 - Limited - Enabled)
Schilling Family (S-1-5-21-607273383-903765569-4108737559-1001 - Administrator - Enabled) => C:\Users\Schilling Family
WDAGUtilityAccount (S-1-5-21-607273383-903765569-4108737559-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Kaspersky Total Security (Disabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23}
AV: Kaspersky Total Security (Disabled - Up to date) {0AB30972-4BAC-7BEE-CBCA-B8F9E68797D8}
AS: Kaspersky Total Security (Enabled - Up to date) {B1D2E896-6D96-7460-F17A-838B9D00DD65}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

@BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.08 - GIGABYTE)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1031-1033-7760-BC15014EA700}) (Version: 23.001.20093 - Adobe)
Adobe AIR (HKLM-x32\...\{10166660-0C51-4355-BD74-D4700EFDB83B}) (Version: 28.0.0.127 - Adobe Systems Incorporated) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 28.0.0.127 - Adobe Systems Incorporated)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601042}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Advanced IP Scanner 2.5 (HKLM-x32\...\{804CED37-7CED-45A5-AEC8-0F1F0FEE17E1}) (Version: 2.5.3784 - Famatech)
Amazon MP3-Downloader 1.0.17 (HKLM-x32\...\Amazon MP3-Downloader) (Version: 1.0.17 - Amazon Services LLC)
Amazon MP3-Downloader 1.0.18 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Amazon MP3-Downloader) (Version: 1.0.18 - Amazon Services LLC)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Drag and Drop Transcoding (HKLM\...\{203DE003-C392-FF19-BCA2-3F775477BC94}) (Version: 2.00.0000 - ATI Technologies Inc.) Hidden
Apple Mobile Device Support (HKLM\...\{527DD209-8A66-482F-8779-C7B3BACCA8F1}) (Version: 15.0.0.16 - Apple Inc.)
Applian FLV Player (HKLM-x32\...\Applian FLV Player2.0.24) (Version: 2.0.24 - Applian Technologies Inc.)
ATI AVIVO64 Codecs (HKLM\...\{33A49BF2-CB4F-5E54-D7F5-25502CAB6B70}) (Version: 11.6.0.50706 - ATI Technologies Inc.) Hidden
ATI Catalyst Install Manager (HKLM\...\{397878FC-1B1B-EED7-04A8-3184CE494A3B}) (Version: 3.0.782.0 - ATI Technologies, Inc.)
Auto Clicker v6.1 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 6.1 - MurGee.com)
AutoGreen B10.0517.1 (HKLM-x32\...\InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}) (Version: 1.00.0000 - GIGABYTE)
BlueStacks X (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\BlueStacks X) (Version: 0.18.30.9 - BlueStack Systems, Inc.)
Bonanza Deals (remove only) (HKLM-x32\...\Bonanza Deals) (Version: 5.0.1.0 - Bonanza Deals)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Browser Configuration Utility (HKLM-x32\...\{A2F991E7-DDCD-42B7-AFEC-47789A099FDC}) (Version: 1.1.18.0 - DeviceVM Inc.)
BUDNI Fotowelt (HKLM-x32\...\BUDNI Fotowelt) (Version: 6.1.2 - CEWE Stiftung u Co. KGaA)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.4.0.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version:  - Canon Inc.)
CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM-x32\...\MyCamera Download Plugin) (Version: 3.1.0.1 - Canon Inc.)
CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.8.0.1 - Canon Inc.)
Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\Canon Internet Library for ZoomBrowser EX) (Version: 1.7.0.1 - Canon Inc.)
Canon Kurzwahlprogramm (HKLM-x32\...\Speed Dial Utility) (Version: 1.3.0 - Canon Inc.)
Canon MOV Decoder (HKLM-x32\...\Canon MOV Decoder) (Version: 1.7.0.6 - Canon Inc.)
Canon MOV Encoder (HKLM-x32\...\Canon MOV Encoder) (Version: 1.5.0.3 - Canon Inc.)
Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 3.6.0.5 - Canon Inc.)
Canon Utilities CameraWindow DC 8 (HKLM-x32\...\CameraWindowDC8) (Version: 8.3.0.6 - Canon Inc.)
Canon Utilities CameraWindow Launcher (HKLM-x32\...\CameraWindowLauncher) (Version: 7.5.0.2 - Canon Inc.)
Canon Utilities Digital Photo Professional 3.9 (HKLM-x32\...\DPP) (Version: 3.9.0.3 - Canon Inc.)
Canon Utilities Movie Uploader for YouTube (HKLM-x32\...\MovieUploaderForYouTube) (Version: 1.1.0.4 - Canon Inc.)
Canon Utilities MyCamera (HKLM-x32\...\MyCamera) (Version: 7.4.0.2 - Canon Inc.)
Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.)
Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.6.0.23 - Canon Inc.)
Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.4.0.4 - Canon Inc.)
Catalyst Control Center - Branding (HKLM-x32\...\{11087D24-567D-7D88-69C6-D7A08B5F4C47}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center - Branding (HKLM-x32\...\{87323561-58BA-4D5B-BADA-A791B69D1705}) (Version: 1.00.0000 - ATI) Hidden
ChessBase Reader (HKLM-x32\...\{52A3CA50-6E19-40B2-AD6D-2B7B2D89A8E4}) (Version: 12.44.0.0 - ChessBase)
Complitly (HKLM-x32\...\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1) (Version:  - Complitly)
DirectX 9 Runtime (HKLM-x32\...\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}) (Version: 1.00.0000 - Sonic Solutions) Hidden
Easy Tune 6 B10.0516.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE)
EasySaver B9.1214.1  (HKLM-x32\...\{07300F01-89CA-4CF8-92BD-2A605EB83C95}) (Version: 1.00.0000 - Gigabyte)
ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 21.3 - Thüringer Landesfinanzdirektion)
EMC 11 Content (HKLM-x32\...\{21ABEA96-CCAB-4C40-8699-6BDFEC5FD63C}) (Version: 1.1.019 - Ihr Firmenname) Hidden
FastImageResizer (remove only) (HKLM-x32\...\FastImageResizer) (Version:  - )
FastStone Image Viewer 7.4 (HKLM-x32\...\FastStone Image Viewer) (Version: 7.4 - FastStone Soft)
FileZilla Client 3.10.1.1 (HKLM-x32\...\FileZilla Client) (Version: 3.10.1.1 - Tim Kosse)
FLV Runner Toolbar (HKLM-x32\...\FLV_Runner Toolbar) (Version: 6.9.0.16 - FLV Runner)
Fotobuchexpress24 Bestellsoftware (HKLM-x32\...\Fotobuchexpress24) (Version: 4.0 - )
fotofoto Software (HKLM-x32\...\fotofotoSoftware) (Version: 4.0 - )
Free Video Dub version 2.0.21.827 (HKLM-x32\...\Free Video Dub_is1) (Version: 2.0.21.827 - DVDVideoSoft Ltd.)
Freecorder 5 (HKLM-x32\...\Freecorder5.11) (Version: 5.11 - Applian Technologies Inc.)
Fritz 12 (HKLM-x32\...\{4F4182DA-3D58-41E3-913D-480F8DA5C863}) (Version: 12.0.0 - ChessBase)
Fritz und Fertig 3 (HKLM-x32\...\Fritz und Fertig 3) (Version:  - )
Gigabyte Raid Configurer (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.00.0001 - GIGABYTE Technologies, Inc.)
Google Chrome (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.)
Google Chrome (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Google Chrome) (Version: 112.0.5615.49 - Google LLC)
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.23.0 - BonanzaDeals) Hidden
Houdini 4 64-bit (HKLM\...\{BD221DF2-6078-42BE-9C09-EF1213E6DEAD}) (Version: 14.2.0.0 - ChessBase)
HydraVision (HKLM-x32\...\{D5134D14-A38D-A217-4310-5C8B6DFA08D0}) (Version: 4.2.174.0 - ATI Technologies Inc.) Hidden
iCloud (HKLM\...\{709A2D23-C25E-47B5-9268-CB6FEE648504}) (Version: 4.1.1.53 - Apple Inc.)
Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.19.18.55 - Huawei Technologies Co.,Ltd)
Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation)
jZip (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\jZip) (Version: 2.0.0.134914 - Bandoo Media Inc)
Media Go (HKLM-x32\...\{362AB21A-E2C4-40CE-81C2-8C4D62B0635A}) (Version: 2.4.256 - Sony)
Media Go Video Playback Engine 1.116.101.02020 (HKLM-x32\...\{54215B8A-6212-8DB8-39B4-98EE2BB98BD1}) (Version: 1.116.101.02020 - Sony)
Microsoft .NET Framework 4.5.1 (DEU) (HKLM\...\{C513739C-5F16-37B5-9ACF-99925FF1C1F3}) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.2 (HKLM\...\{26784146-6E05-3FF9-9335-786C7C0FB5BE}) (Version: 4.5.51209 - Microsoft Corporation) Hidden
Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291.0_neutral_~_8wekyb3d8bbwe (x64) (HKLM\...\{25E80DAA-FD87-DCE5-202C-CC02F6673002}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 112.0.1722.34 - Microsoft Corporation)
Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 112.0.1722.34 - Microsoft Corporation)
Microsoft Office Access MUI (German) 2010 (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (HKLM\...\{90140000-002A-0000-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2010 (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Proof (English) 2010 (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2010 (HKLM\...\{90140000-002A-0407-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Single Image 2010 (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2010 (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\OneDriveSetup.exe) (Version: 17.3.7131.1115 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\OneDriveSetup.exe) (Version: 23.061.0319.0003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\OneDriveSetup.exe) (Version: 19.232.1124.0008 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - KB2467175 (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (HKLM\...\{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (HKLM\...\{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (HKLM-x32\...\{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (HKLM-x32\...\{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 (HKLM\...\{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 (HKLM\...\{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft_VC100_CRT_SP1_x64 (HKLM\...\{680EDA59-9266-44B4-949E-0C24F65DFF82}) (Version: 10.0.40219.1 - Nokia) Hidden
Microsoft_VC100_CRT_SP1_x86 (HKLM-x32\...\{E3B64CC5-C011-40C0-92BC-7316CD5E5688}) (Version: 10.0.40219.1 - Nokia) Hidden
Mozilla Firefox 62.0.2 (x64 de) (HKLM\...\Mozilla Firefox 62.0.2 (x64 de)) (Version: 62.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0 - Mozilla)
MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
NVIDIA Grafiktreiber 456.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 456.71 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation)
PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia)
PC Speed Maximizer v3.2 (HKLM-x32\...\PC Speed Maximizer_is1) (Version: 3.2 - Smart PC Solutions) <==== ATTENTION
PDF Reader (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\PDF Reader) (Version:  - )
PDF Reader Packages (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\PDF Reader Packages) (Version:  - ) <==== ATTENTION
PlayStation(R)Network Downloader (HKLM-x32\...\{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}) (Version: 2.07.00849 - Sony Computer Entertainment Inc.)
PlayStation(R)Store (HKLM-x32\...\{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}) (Version: 4.14.6.15183 - Sony Computer Entertainment Inc.)
Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.18.322.2010 - Realtek)
Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.6034 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6083 - Realtek Semiconductor Corp.)
Roxio Activation Module (HKLM-x32\...\{1D53B6F9-E66E-42D8-A221-4FF8AC134FD7}) (Version: 1.0 - Roxio) Hidden
Roxio BackOnTrack (HKLM-x32\...\{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}) (Version: 1.3.1 - Roxio) Hidden
Roxio CinePlayer (HKLM-x32\...\{AA749D64-3741-4D5F-B804-B0BC05D179D1}) (Version: 5.0 - Roxio) Hidden
Roxio CinePlayer Decoder Pack (HKLM-x32\...\{C0FE37FA-0886-4B66-B01B-76CF70FB77AB}) (Version: 4.3.0 - Roxio) Hidden
Roxio File Backup (HKLM-x32\...\{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}) (Version: 1.3.0 - Roxio) Hidden
Roxio Update Manager (HKLM-x32\...\{30465B6C-B53F-49A1-9EBA-A3F187AD502E}) (Version: 6.0.0 - Roxio)
Roxio WinOnCD 2009 (HKLM-x32\...\{3383136B-4F86-4F05-8612-DD4BB16A1EAE}) (Version: 4.5.0 - Roxio) Hidden
Roxio WinOnCD 2009 (HKLM-x32\...\{7919D8D9-69FB-4E94-B330-04C4AF251867}) (Version: 11.0 - Roxio)
Roxio WinOnCD 2009 (HKLM-x32\...\{9F8C7AAF-CF7E-4FC9-ADD6-9EAE4304A161}) (Version: 1.1.110 - Roxio) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{8925227F-C7B5-4C95-AB58-4FCF2433DAEE}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{09A9DF49-DA06-4093-A2FD-F339211E39EA}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{ECC1D579-DC17-4B90-929C-B4A0BB35F7B3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}_Office14.SingleImage_{97099817-53F1-4CA1-ACEA-DA6D74371689}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{E4D76E88-C65F-4003-9C71-EC4306679D17}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0407-1000-0000000FF1CE}_Office14.SingleImage_{3B0FF7FF-0E85-4907-A511-3F8C27349FA4}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}_Office14.SingleImage_{996096F8-956B-41C9-A7E3-9BA1E801014F}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}_Office14.SingleImage_{D505EC85-885F-4BE3-8A89-3EFE4F855692}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Silhouette Link (HKLM-x32\...\{C2136C80-F9D4-4096-86D4-C641BB36DFF3}) (Version: 1.0.096 - Silhouette America)
SmartSound Quicktracks Plugin (HKLM-x32\...\InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}) (Version: 3.0.8.0 - SmartSound Software Inc)
Update for PDF Reader (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\DigitalSite) (Version:  - ) <==== ATTENTION
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
VSDC Free Video Editor Version 6.4.2.102 (HKLM\...\VSDC Free Video Editor_is1) (Version: 6.4.2.102 - Flash-Integro LLC)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver  (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
YTD Video Downloader 5.9.13 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 5.9.13 - GreenTree Applications SRL) <==== ATTENTION

Packages:
=========
WindowsDVDPlayer -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer_3.6.13291.0_x64__8wekyb3d8bbwe [2015-11-12] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\ChromeHTML: -> C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll (Google Inc -> Google Inc.)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll (Google Inc -> Google Inc.)
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\ChromeHTML: -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) <==== ATTENTION
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{041F9391-C79D-44EE-AA4E-AF4E029C4B47}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.112\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1F9E0710-2073-435F-9C1B-F29946205947}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{46406D82-6EC0-47CC-8A75-1F33C6DEDBBE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.442\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{540C17A8-04F2-4B66-95D7-B2FEF9A19B54}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.422\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{62634D95-960B-4834-8E71-A70408AD8FD9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{69545769-8D02-4B07-A481-AD374CD8D5D1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.132\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{6D264B70-DA18-401D-910C-B202D89670C6}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.32\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{75399D28-E622-4973-8752-BC0F7DC47AF3}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{84EB3779-151B-4C71-AEF0-A0FEE9481401}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.342\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{86508D42-E5D7-4D10-9C6F-D427AEEB85B5}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{8B480070-D37D-4090-A063-7A429F849652}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.92\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\112.0.5615.49\notification_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.23\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{BE5C2E39-090F-46A2-AFAA-47540743B4FE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.102\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA8FA699-91CD-412F-9D13-9B1222F4370E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.83\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA919489-0396-4164-A6E7-94CDED45A707}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.52\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{DEDF773D-E27B-485E-8E7D-85C5B0EB5A67}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.72\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E9E7529D-7F09-410B-AF2A-CC154473B19C}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EF076C91-DC9E-43E3-84ED-3D219E065A4F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.302\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2015-04-26] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} =>  -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [msacm.voxacm160] => C:\WINDOWS\system32\vct3216.acm [82944 2003-05-21] (Voxware, Inc.) [File not signed]
HKLM\...\Drivers32: [msacm.scg726] => C:\WINDOWS\system32\scg726.acm [13239 2000-03-14] (SHARP Corporation) [File not signed]
HKLM\...\Drivers32: [msacm.alf2cd] => C:\WINDOWS\system32\alf2cd.acm [38912 2003-05-21] (NCT Company) [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\WINDOWS\system32\AC3ACM.acm [81920 2004-02-04] (fccHandler) [File not signed]
HKLM\...\Drivers32: [msacm.lame] => C:\WINDOWS\system32\lame.ax [245760 2005-08-01] () [File not signed]
HKLM\...\Drivers32: [vidc.dvsd] => C:\WINDOWS\system32\mcdvd_32.dll [261632 2003-05-21] (MainConcept) [File not signed]
HKLM\...\Drivers32: [vidc.mpg4] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [File not signed]
HKLM\...\Drivers32: [vidc.mp42] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [File not signed]
HKLM\...\Drivers32: [vidc.mp43] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [File not signed]
HKLM\...\Drivers32: [vidc.xvid] => C:\WINDOWS\system32\xvidvfw.dll [139264 2004-07-03] () [File not signed]
HKLM\...\Drivers32: [vidc.DIVX] => C:\WINDOWS\system32\DivX.dll [638976 2003-05-22] (DivXNetworks, Inc.) [File not signed]
HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [File not signed]
HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [File not signed]
HKLM\...\Drivers32: [vidc.VP62] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [File not signed]
HKLM\...\Drivers32: [vidc.LAGS] => C:\WINDOWS\system32\lagarith.dll [216064 2011-12-07] () [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
ShortcutWithArgument: C:\Users\Schilling Family\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Games.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /c "start hxxp://socialgames.splashtop.com/gbsp/mb/?p=w"

==================== Loaded Modules (Whitelisted) =============

2009-06-27 10:11 - 2009-06-27 10:11 - 000503202 _____ () [File not signed] C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\sqlite3.dll
2014-02-11 07:08 - 2014-02-11 07:08 - 000817152 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll
2015-11-04 17:43 - 2015-11-04 17:43 - 000214528 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
2014-02-11 07:08 - 2014-02-11 07:08 - 003650560 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll
2015-09-20 16:47 - 2012-09-21 06:00 - 000303104 _____ (CANON INC.) [File not signed] C:\WINDOWS\System32\CNCALBO.DLL
2015-09-20 16:47 - 2012-09-20 06:00 - 000390656 _____ (CANON INC.) [File not signed] C:\WINDOWS\System32\CNMLMBO.DLL
2014-02-08 16:03 - 2012-07-31 11:18 - 000359936 _____ (CANON INC.) [File not signed] C:\WINDOWS\System32\CNMN6PPM.DLL
2022-09-17 13:49 - 2022-09-16 17:05 - 000036352 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qdds.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000381952 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qjp2.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000218624 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qmng.dll
2022-09-17 13:51 - 2022-04-12 12:17 - 001269760 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LIBEAY32.dll
2022-09-17 13:51 - 2022-04-12 12:17 - 000276480 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\SSLEAY32.dll
2022-09-17 13:51 - 2017-09-14 08:45 - 000037888 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\bearer\qgenericbearer.dll
2022-09-17 13:51 - 2017-09-14 08:45 - 000039424 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\bearer\qnativewifibearer.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000029696 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\iconengines\qsvgicon.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000024576 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qgif.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000030720 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qicns.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000025088 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qico.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000243200 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qjpeg.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000018944 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qsvg.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000017920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qtga.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000313344 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qtiff.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000017920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qwbmp.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 000324608 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\imageformats\qwebp.dll
2022-09-17 13:49 - 2022-09-16 17:05 - 001012224 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\platforms\qwindows.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-607273383-903765569-4108737559-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=10&cc=&mi=fe28521d0000000000001c6f653e2346
HKU\S-1-5-21-607273383-903765569-4108737559-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.spiegel.de/
HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
HKU\S-1-5-21-607273383-903765569-4108737559-1004\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.dell.com
HKU\S-1-5-21-607273383-903765569-4108737559-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
URLSearchHook: HKLM-x32 - (No Name) - {3bbd3c14-4c16-4989-8366-95bc9179779d} - No File
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM Inc. -> DeviceVM, Inc.)
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM Inc. -> DeviceVM, Inc.)
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - (No Name) - {1392b8d2-5c05-419f-a8f6-b9f15a596612} - No File
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - (No Name) - {3bbd3c14-4c16-4989-8366-95bc9179779d} - No File
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM Inc. -> DeviceVM, Inc.)
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM Inc. -> DeviceVM, Inc.)
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> DefaultScope {122F3846-0AE4-492e-81DE-906A0C4A482E} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {122F3846-0AE4-492e-81DE-906A0C4A482E} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {80C392F7-933D-4333-97C9-6836482FE614} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=fe28521d0000000000001c6f653e2346&r=378
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {A000C9A9-4946-4842-88A3-E552A02BCA8E} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3201318
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> DefaultScope {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = 
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {CAFC8535-FC41-4BE5-849D-E5224432519B} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3201318
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.)
Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> No Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} -  No File
Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> No Name - {1392B8D2-5C05-419F-A8F6-B9F15A596612} -  No File
Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> No Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} -  No File
Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1004 -> No Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} -  No File
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\;C:\Program Files (x86)\Common Files\Roxio Shared\11.0\DLLShared\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-607273383-903765569-4108737559-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Dell\Win7 LtBlue 1920x1200.jpg
HKU\S-1-5-21-607273383-903765569-4108737559-1003\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Dell\Win7 LtBlue 1920x1200.jpg
HKU\S-1-5-21-607273383-903765569-4108737559-1004\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Dell\Win7 LtBlue 1920x1200.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: Motorola Device Manager => 2
MSCONFIG\Services: Roxio UPnP Renderer 11 => 3
MSCONFIG\Services: Roxio Upnp Server 11 => 2
MSCONFIG\Services: RoxLiveShare11 => 2
MSCONFIG\Services: RoxMediaDB11 => 3
MSCONFIG\Services: RoxWatch11 => 2
MSCONFIG\Services: ServiceLayer => 3
MSCONFIG\Services: Sony PC Companion => 3
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\StartupApproved\Run: => "AmazonMP3DownloaderHelper"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{547E83B5-1313-4049-8C6C-7FEFCE3032C8}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{39484926-44D0-4DAF-B0F8-866441E6D21A}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{25FC2CF9-26C7-4801-865C-540B37D8F053}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{AF857C3D-3AD8-4EF9-85EA-8449CCA07F0B}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{2967DE4D-3ECD-4166-834C-BAA04DC11964}] => (Allow) C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe (Silhouette Research & Technology Ltd -> )
FirewallRules: [{DCC44E91-DA96-404D-9C1F-EE280941DD29}] => (Allow) C:\Program Files (x86)\Silhouette America\Silhouette Link\SilhouetteLinkConsole.exe (Silhouette Research & Technology Ltd -> )
FirewallRules: [{73C5997B-A60F-4423-ABB7-310B58259BC2}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{6E0F8CA7-3119-4E34-8D0F-457FE24884BF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{79C30040-27F1-41BA-9061-5E6863DD79EF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{63D3CFC8-E445-4908-92DE-C1EF9B169D01}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{7AA2976B-1696-433C-951B-3638144151F5}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{56DA2F88-0B42-4F5C-9AD1-87CECFB8F21A}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{0427B960-2364-4061-8D5A-B5D5238E0652}] => (Allow) C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc -> Google Inc.)
FirewallRules: [{55CD2498-99BC-4878-9393-A93EEEF53276}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe => No File
FirewallRules: [{34FBCA88-D993-4E7D-AE9D-F75335CF1BD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe => No File
FirewallRules: [{75721B46-B736-4981-A30C-9C4A7DFA293F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{25ABFAB1-10A6-4C85-9498-4465BA7A8D25}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{32F2A2BD-95DF-41FB-86E2-E4FA4F05F363}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File
FirewallRules: [{22EAF1AB-1A96-40C1-8142-3CEBDF58A647}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File
FirewallRules: [{2D4667B5-F3E5-4885-882A-680251907CC5}] => (Allow) F:\o2CD.exe => No File
FirewallRules: [{A1F82616-54EE-4B24-BAF1-9FC9A59E06C9}] => (Allow) F:\o2CD.exe => No File
FirewallRules: [{BC62CBD5-D590-40D7-B254-2F6B63EA0A51}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3207EC1A-AC96-41C7-A43B-E0449E4CFD8C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{BB65DA61-3AEF-4723-839F-8614B4B2DCE6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CEF21CCF-81CB-46AF-BF32-D50B57107806}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E7D017EE-5A08-4B83-8ABD-0E231E05E21A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{97EEE3EA-74AC-4C81-A147-4062BE737487}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{27AA07D2-29F9-4C0A-8FA7-D5ACDA31A49C}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => No File
FirewallRules: [{25F5F1FF-2414-4F37-8B6A-27EAF4331A0D}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => No File
FirewallRules: [{64711767-0BEA-4E26-93C0-E7067F35F510}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6267537C-2A47-4D0A-855E-11982B6C2CE0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{19C62B83-B546-4D25-84EC-CF4188C945BE}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [{847E80AE-8076-4540-9C12-38B8CED2229E}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [TCP Query User{2C96EF38-3E0E-4B56-BE5F-66C94FBA7BF4}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => No File
FirewallRules: [UDP Query User{DCAE0FD6-BE9F-423F-9A44-CF663BE220E3}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => No File
FirewallRules: [{13F44943-2753-4C2C-A854-B02E880FD681}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.)
FirewallRules: [{1DE1C6EB-EC9E-4562-BAD8-1EF4A6F74758}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.)
FirewallRules: [{CED1E8BF-8A0D-46A0-8671-8FBC100F75E8}] => (Allow) C:\Program Files\BlueStacks_nxt\HD-Player.exe => No File
FirewallRules: [{23C90C72-420C-4C0A-85BA-B2D6AE6C60ED}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{82195564-A0F6-465D-8DB4-102C09B6763D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{BCC5757C-BEA8-4EEF-90D5-F7581CFB61CE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{B602402A-086F-4281-B5D3-5862449D5F53}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.95.3413.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{31A42FDB-DD04-4C37-A8F1-4208EE877C44}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{76B60587-7B61-4637-BEA2-7CAB8A4B0CB0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{189FA84B-B945-43A6-893F-CC12EAE178B9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{0E12E48C-5C80-40A2-BA71-1905CEF567CD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{9AAB57D9-E18D-48FA-9EF4-83B52D7B34A8}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\112.0.1722.34\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:107.89 GB) (Free:24.31 GB) (23%)

==================== Faulty Device Manager Devices ============

Name: Kaspersky Security Data Escort Adapter #2
Description: Kaspersky Security Data Escort Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: SAMSUNG Electronics Co., Ltd. 
Service: kltap
Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19)
Resolution: A registry problem was detected.
 This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options:
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver.


==================== Event log errors: ========================

Application errors:
==================
Error: (04/08/2023 05:47:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.19041.2673, Zeitstempel: 0x4aa1ce82
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.19041.546, Zeitstempel: 0x564f9f39
Ausnahmecode: 0x40000015
Fehleroffset: 0x000000000000ae22
ID des fehlerhaften Prozesses: 0x21e4
Startzeit der fehlerhaften Anwendung: 0x01d96a3116ba964b
Pfad der fehlerhaften Anwendung: C:\Windows\ImmersiveControlPanel\SystemSettings.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\msvcrt.dll
Berichtskennung: 32924120-d70a-4eee-85c7-e9792f980003
Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windows.immersivecontrolpanel

Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 31125

Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 31125

Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15438

Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15438

Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (04/02/2023 11:42:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: svchost.exe_WaaSMedicSvc, Version: 10.0.19041.1806, Zeitstempel: 0x7dcad237
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.19041.2130, Zeitstempel: 0xb5ced1c6
Ausnahmecode: 0xc0000409
Fehleroffset: 0x00000000000281da
ID des fehlerhaften Prozesses: 0x858
Startzeit der fehlerhaften Anwendung: 0x01d965462c926a07
Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\svchost.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll
Berichtskennung: a925920e-ff58-4635-b132-3e66a692e988
Vollständiger Name des fehlerhaften Pakets: 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:


System errors:
=============
Error: (04/08/2023 08:44:55 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Manager für heruntergeladene Karten" wurde nicht richtig gestartet.

Error: (04/08/2023 08:39:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Net.Msmq-Listeneradapter" wurde aufgrund folgenden Fehlers nicht gestartet: 
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.

Error: (04/08/2023 08:39:02 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst Net.Msmq-Listeneradapter erreicht.

Error: (04/08/2023 08:38:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Internet Manager. OUC" wurde aufgrund folgenden Fehlers nicht gestartet: 
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.

Error: (04/08/2023 08:38:43 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst Internet Manager. OUC erreicht.

Error: (04/08/2023 08:38:37 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: 
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.

Error: (04/08/2023 08:38:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NetTcpPortSharing" wurde aufgrund folgenden Fehlers nicht gestartet: 
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.

Error: (04/08/2023 08:38:37 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst NetTcpPortSharing erreicht.


Windows Defender:
================
Date: 2023-04-08 20:59:50
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0
Name: PUADlManager:Win32/DownloadSponsor
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Echtzeitschutz
Benutzer: SchillingFamily\Eltern
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 20:59:49
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0
Name: PUADlManager:Win32/DownloadSponsor
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Echtzeitschutz
Benutzer: SchillingFamily\Eltern
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 20:59:32
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/CandyOpen&threatid=311936&enterprise=0
Name: PUABundler:Win32/CandyOpen
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FreeAudioDub.exe; file:_C:\Users\Eltern\Downloads\FreeStudio.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: FastPath
Erkennungsquelle: Echtzeitschutz
Benutzer: SchillingFamily\Eltern
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 20:59:29
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0
Name: PUADlManager:Win32/DownloadSponsor
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Echtzeitschutz
Benutzer: SchillingFamily\Eltern
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 20:58:30
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=SoftwareBundler:Win32/OutBrowse&threatid=207835&enterprise=0
Name: SoftwareBundler:Win32/OutBrowse
Schweregrad: Hoch
Kategorie: Softwarebundler
Pfad: file:_C:\Program Files (x86)\FLV PlayerFCSetup.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Echtzeitschutz
Benutzer: SchillingFamily\Schilling Family
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4
Event[0]:

Date: 2023-02-14 22:12:26
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3589.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". 

Date: 2023-02-14 22:12:26
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3589.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiSpyware
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". 

Date: 2023-02-14 22:12:26
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3589.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". 

Date: 2023-02-14 22:10:52
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3495.0
Update Source: Microsoft Update-Server
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x80070102
Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. 

Date: 2023-02-14 22:10:52
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3495.0
Update Source: Microsoft Update-Server
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x80070102
Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. 

CodeIntegrity:
===============
Date: 2023-04-02 11:55:38
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-04-02 11:42:03
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

Date: 2023-03-19 23:21:24
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-01-12 23:00:54
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-11-11 00:26:40
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-11-11 00:13:09
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info =========================== 

BIOS: Award Software International, Inc. FD 07/23/2010
Motherboard: Gigabyte Technology Co., Ltd. GA-890GPA-UD3H
Processor: AMD Phenom(tm) II X4 955 Processor
Percentage of memory in use: 40%
Total physical RAM: 8189.55 MB
Available physical RAM: 4864.76 MB
Total Virtual: 16381.55 MB
Available Virtual: 12716.57 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:107.89 GB) (Free:24.31 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS
Drive d: () (Fixed) (Total:97.56 GB) (Free:25.19 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS
Drive e: () (Fixed) (Total:0 GB) (Free:0 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) 
Drive f: (ELM327 software) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS
Drive g: (System) (Fixed) (Total:232.88 GB) (Free:44.68 GB) (Model: ST3250823AS ATA Device) NTFS ==>[system with boot components (obtained from drive)]

\\?\Volume{dbb0575c-96c5-11e1-b743-806e6f6e6963}\ (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 232.9 GB) (Disk ID: E419C3C7)
Partition 1: (Not Active) - (Size=232.9 GB) - (Type=0F Extended)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: 973E7CF0)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=97.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=390.6 GB) - (Type=06)
Partition 4: (Not Active) - (Size=107.9 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================
         
--- --- ---

Alt 08.04.2023, 20:19   #5
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



Ja, aber betroffen ist doch das von den "Eltern" oder?

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 08.04.2023, 20:30   #6
Skipper39
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



ja, das ist betroffen, nutze eigentlich nur das Eltern Benutzerkonto

Alt 08.04.2023, 20:56   #7
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



Dann bitte diesem Konto alle Rechte. Damach ein reboot und neue RST-Logs bitte.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 08.04.2023, 21:54   #8
Skipper39
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



ok, das Konto hat jetzt Adminrechte. Seitdem tauchen die pop up Fenster nicht mehr auf
FRST Logfile:
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 06-04-2023
durchgeführt von Eltern (Administrator) auf SCHILLINGFAMILY (Gigabyte Technology Co., Ltd. GA-890GPA-UD3H) (08-04-2023 22:28:10)
Gestartet von C:\Users\Eltern\Downloads
Geladene Profile: Schilling Family & Eltern
Plattform: Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Edge
Start-Modus: Normal

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\MFResident.exe
(C:\Program Files (x86)\DataCardService\HWDeviceService64.exe ->) (Huawei Technologies Co.,Ltd. -> Huawei Technologies Co., Ltd.) C:\Program Files (x86)\DataCardService\DCSHelper.exe
(C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\112.0.1722.34\identity_helper.exe
(DeviceVM Inc. -> DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe <2>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe <2>
(Huawei Technologies Co.,Ltd. -> ) C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (DeviceVM Inc. -> DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
(services.exe ->) (Huawei Technologies Co.,Ltd. -> ) C:\Program Files (x86)\DataCardService\HWDeviceService64.exe
(services.exe ->) (JMicron Technology Corp. -> ) C:\Windows\SysWOW64\XSrvSetup.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2>
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <3>
(services.exe ->) (Shenzhen iMyFone Technology Co., Ltd -> ) C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe
(services.exe ->) (Silhouette Research & Technology Ltd -> ) C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.823.1271.0_x64__8wekyb3d8bbwe\GameBar.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.823.1271.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe <2>
(winlogon.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LogonUI.exe

==================== Registry (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [BCU] => C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [375000 2009-10-15] (DeviceVM Inc. -> DeviceVM, Inc.)
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmprph.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Roxio Central 4\Plugins\Launch.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\Setup_wm.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\VPREVIEW.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\ChessBase\ChessProgram12\ChessProgram12.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnscfg.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSACCESS.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSPUB.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Internet Explorer <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpsideshowgadget.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Sidebar <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\downloads\minecraft (1).exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnetwk.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\POWERPNT.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\program files (x86)\adobe\reader 10.0\reader\eula.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Roxio Central 4\RoxioCentralFx.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmlaunch.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Media Import 11\MediaCapture11.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmprph.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpsideshowgadget.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\program files (x86)\java\jre7\bin\javaw.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\Wordconv.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\Setup_wm.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpconfig.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnscfg.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\downloads\minecraft.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\desktop\minecraft (1).exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\GRAPH.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpshare.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\excelcnv.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\XLICONS.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\PPTICO.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmplayer.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\WORDICON.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Creator Classic 11\Creator11.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Sidebar <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnscfg.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Retrieve 11\Launch_Retrieve.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmlaunch.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnscfg.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Roxio WinOnCD 2009\Retrieve 11\Retrieve11.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpconfig.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Defender <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpenc.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\OIS.EXE <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: c:\users\henrike\desktop\minecraft.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Internet Explorer <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpshare.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1004 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpenc.exe <==== ACHTUNG
HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Run: [Google Update] => C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.36.201\GoogleUpdateCore.exe [223000 2023-04-08] (Google LLC -> Google LLC)
HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [Google Update] => C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\GoogleUpdateCore.exe [230360 2022-08-29] (Google LLC -> Google LLC)
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [AmazonMP3DownloaderHelper] => C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe [400704 2013-05-22] (Amazon Services LLC -> )
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Run: [MicrosoftEdgeAutoLaunch_EB8D6C06E991CEDBC9E4E65F13805E5D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4140496 2023-04-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKLM\...\Windows x64\Print Processors\Canon iP4300 Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD86.DLL [27136 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX520 series: C:\WINDOWS\system32\CNCALBO.DLL [303104 2012-09-21] (CANON INC.) [Datei ist nicht signiert]
HKLM\...\Print\Monitors\Canon BJ Language Monitor iP4300: C:\WINDOWS\system32\CNMLM86.DLL [234496 2006-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MX520 series: C:\WINDOWS\system32\CNMLMBO.DLL [390656 2012-09-20] (CANON INC.) [Datei ist nicht signiert]
HKLM\...\Print\Monitors\Canon BJNP Port: C:\WINDOWS\system32\CNMN6PPM.DLL [359936 2012-07-31] (CANON INC.) [Datei ist nicht signiert]
HKLM\...\Print\Monitors\LIDIL hpzllw71: C:\WINDOWS\system32\hpzllw71.dll [53248 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> 
Startup: C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk [2013-01-04]
ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\Henrike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk [2014-04-08]
ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
GroupPolicy: Beschränkung ? <==== ACHTUNG
GroupPolicy\User: Beschränkung ? <==== ACHTUNG
GroupPolicyUsers\S-1-5-21-607273383-903765569-4108737559-1004\User: Beschränkung <==== ACHTUNG
Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {0BBB9B25-3E0B-41C4-8417-BC0AA3E8469A} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (Keine Datei)
Task: {0D20E039-9151-46FD-B974-33451D8D8893} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (Keine Datei)
Task: {0D32098A-3809-485B-B4B1-FB99532A9F8A} - \Microsoft\Windows\UNP\RunCampaignManager -> Keine Datei <==== ACHTUNG
Task: {0F32F71B-0E80-453C-84AA-62B937EFC571} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe $(Arg0) (Keine Datei)
Task: {16715D28-05B1-4839-82FC-3FBDE0233F64} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe /StartRecording (Keine Datei)
Task: {1C55A462-FD73-403B-A09F-984CB07A8C39} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {22BE8BFB-1E32-4605-8FE7-032BE3370959} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (Keine Datei)
Task: {2C9910E7-21E4-4BC3-A649-8476A15F8916} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Keine Datei <==== ACHTUNG
Task: {2C9A41E5-EAA4-47BD-A47C-649959DD4C96} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe /RestartRecording (Keine Datei)
Task: {2D4F42E6-6553-4563-A4DA-5C64C00F3A24} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (Keine Datei)
Task: {2F254FB2-238A-4DDD-BB1A-5CD7BD36CFB9} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe -crl -hms -pscn 15 (Keine Datei)
Task: {308E3245-B76B-4F4C-9420-DC711CD8B6AA} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (Keine Datei)
Task: {355E2600-47CE-46FE-9A7E-1F5F735531F9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {45381A70-9F15-40C7-9DAB-84FE23E9CA62} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (Keine Datei)
Task: {479F023B-EDFA-4153-B8AB-686E66D34909} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (Keine Datei)
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB}
Task: {48A446E7-59BC-49E8-B070-033DCC730F02} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000 2015-08-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {4FEE6216-5B1C-4CCD-B930-8E7E961AED44} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.)
Task: {5235F070-0423-4841-A880-4C5C6E95D792} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {5288861F-AA80-42F5-965F-271A29651414} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {540F9B5D-6DB9-4419-8E0B-36E4220B76D6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.)
Task: {57B8B6B7-8B6E-4186-94DF-1155B3FB3CF1} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (Keine Datei)
Task: {57F6E612-D826-46E6-86F9-C9951328AFB3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {5BE104DB-21E9-45AE-90C2-1E8585816213} - \MetaCrawler -> Keine Datei <==== ACHTUNG
Task: {60E899E7-67BD-4316-94B1-5F9C60C66F8F} - \BonanzaDealsLiveUpdateTaskMachineCore -> Keine Datei <==== ACHTUNG
Task: {62AB03D9-9674-4F82-9B03-79854C0C4188} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {68A2DC77-4326-45B0-A2EB-FC0A3F784C40} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {6CE9B4C3-7B27-4764-9B0A-152BBAECC232} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
Task: {6F37C2F7-DADB-49AE-A204-2C9AD19C6CFE} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG
Task: {6F47A56B-CADB-4C5E-B30B-85487FC6CC88} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {71C3C4D2-0F58-4A47-A69A-D46E959D7336} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (Keine Datei)
Task: {71D74DD1-F182-473C-A98A-587C247548CF} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {73A44D9D-5152-45D9-B5ED-09FE3C3EA042} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (Keine Datei)
Task: {801268F4-4131-4543-95C3-8B78C47D63B5} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {83C55439-989B-45A6-A08E-F552847E1327} - \DigitalSite -> Keine Datei <==== ACHTUNG
Task: {84608AB1-FDFC-4CBE-9B6E-87A86EC99DCE} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (Keine Datei)
Task: {88F5F492-6208-4730-A9B2-F754D5D964BB} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {89AA7B43-6F43-4665-B455-35250B2775B6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core1d36619e3cf49df => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.)
Task: {964B9BE3-0E0D-4477-9935-97A3378361C6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9B5544EC-58CA-4789-AAD4-BC7E3AC6823A} - \BonanzaDealsLiveUpdateTaskMachineUA -> Keine Datei <==== ACHTUNG
Task: {A25CFF11-8701-4725-B4FF-B3E3A26322F7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA1d36619e3f56ec3 => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe [152216 2016-07-14] (Google Inc -> Google Inc.)
Task: {A62B6259-A517-463A-87F7-5AC214BA12C1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA1d264fa72e45b7c => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {A644AF47-F72C-415B-87DA-AC26713AA924} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (Keine Datei)
Task: {A764CB31-E10A-4748-87C2-78B1A074C2C5} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {AE3B097F-0458-44AD-B075-30716ECFED1E} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {B48C01BC-3898-4438-ACBC-3CBB676128C9} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (Keine Datei)
Task: {BC82C7F7-E333-4612-B4DA-B144C7B04EC6} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -SqlLiteRecoveryTask (Keine Datei)
Task: {C5CFDFCD-19A8-459D-B137-419863D933E0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C81A5F30-FAB1-46FE-8C78-248273597C96} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {C9CE2E2F-74C8-4420-A9A6-6C5270140972} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe /DoReindexSearchRoot (Keine Datei)
Task: {CC1E0B3B-991C-48FD-A12D-87AD1C6A5AB4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {CEC66727-43C2-4046-877F-5E52D2579E6A} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (Keine Datei)
Task: {D4B27E49-E70B-42CF-9F59-391892C74007} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {D8373EC5-C2D0-47AA-A6E5-134DB4404626} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (Keine Datei)
Task: {D8BBE133-E46B-46C1-91B4-19BE93F6CB55} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (Keine Datei)
Task: {E32C8471-92F1-4FDE-B901-8FB47EC87899} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG
Task: {E9EB6BC0-96CB-4A0D-888D-CE6AD2CFAA11} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1560056 2023-02-01] (Adobe Inc. -> Adobe Inc.)
Task: {EEF562D5-1A49-4011-9839-10FE2C739B33} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core1d264fa72b23a21 => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {FCAE2C9E-7790-484C-B719-C3622CADC1D6} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (Keine Datei)
Task: {FD4F3315-361A-4584-98C3-A29243C37660} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MpCmdRun.exe [1645904 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ACHTUNG
Task: C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ACHTUNG
Task: C:\WINDOWS\Tasks\DigitalSite.job => C:\Users\SCHILL~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ACHTUNG
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core.job => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA.job => C:\Users\Schilling Family\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003Core.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1003UA.job => C:\Users\Eltern\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}.job => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe
Task: C:\WINDOWS\Tasks\MetaCrawler.job => C:\Users\SCHILL~1\AppData\Roaming\METACR~1\UPDATE~1\UPDATE~1.EXE

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1533b570-916a-43ef-a95f-2771cf3347c2}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{63e8b743-5869-48f3-b34a-8f4038bdaffe}: [NameServer] 10.74.210.210 10.74.210.211

Edge: 
=======
Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden]
Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden]
Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden]
Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Eltern\AppData\Local\Microsoft\Edge\User Data\Default [2023-04-08]
Edge Extension: (Edge relevant text changes) - C:\Users\Eltern\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-04-08]

FireFox:
========
FF ProfilePath: C:\Users\Eltern\AppData\Roaming\Nvu\Profiles\l9ncqul6.default [2012-11-29]
FF ProfilePath: C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default [2019-03-30]
FF user.js: detected! => C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default\user.js [2015-09-30]
FF Extension: (Telemetry coverage) - C:\Users\Eltern\AppData\Roaming\Mozilla\Firefox\Profiles\usq5npzx.default\features\{8be4ee0a-5a7c-4dfc-b1a8-b23c5451a190}\telemetry-coverage-bug1487578@mozilla.org.xpi [2019-03-30] []
FF HKLM\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => nicht gefunden
FF HKLM-x32\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru => nicht gefunden
FF HKLM-x32\...\Firefox\Extensions: [speedanalysis@SpeedAnalysis.com] - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com
FF Extension: (SpeedAnalysis.com) - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com [2013-04-02] [] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_A07576A3CEBC4A72A8CF2C925907DB05@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => nicht gefunden
FF HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Firefox\Extensions: [speedanalysis@SpeedAnalysis.com] - C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-03-21] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [Datei ist nicht signiert]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @playstation.com/PsndlCheck,version=1.00 -> C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll [2011-08-03] (Sony Computer Entertainment Inc. -> Sony Computer Entertainment Inc.)
FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 -> C:\Program Files (x86)\Sony\Media Go\npmediago.dll [2013-02-14] (Sony Network Entertainment International LLC) [Datei ist nicht signiert]
FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1001: amazon.com/AmazonMP3DownloaderPlugin -> C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10174.dll [2012-12-07] (Amazon.com, Inc.) [Datei ist nicht signiert]
FF Plugin HKU\S-1-5-21-607273383-903765569-4108737559-1003: amazon.com/AmazonMP3DownloaderPlugin -> C:\Users\Eltern\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll [2013-05-22] (Amazon Services LLC -> Amazon.com, Inc.)
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2019-10-06] <==== ACHTUNG (Zeigt auf eine *.cfg Datei)
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2019-10-06] <==== ACHTUNG

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default [2023-04-08]
CHR Notifications: Default -> hxxp://kleinanzeigen.ebay.de; hxxps://de10.forgeofempires.com; hxxps://lichess.org; hxxps://www.ebay.de
CHR Extension: (FoE - Helfer) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkagcmloachflbbkfmfiggipaelfamdf [2023-03-26]
CHR Extension: (Complitly plugin for chrome) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda [2014-04-12] [UpdateUrl:hxxp://www.predictad.com/update/chrome/?si=28188&ver=1.1] <==== ACHTUNG
CHR Extension: (Adobe Acrobat: Werkzeuge zum Bearbeiten, Konvertieren und Signieren von PDF-Dateien) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-03-26]
CHR Extension: (Google Docs Offline) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-04-07]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31]
CHR HKLM\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx [2013-11-16]
CHR HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\SCHILL~1\AppData\Local\metacrawler-speeddial.crx [2013-11-16]
CHR HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx <nicht gefunden>
CHR HKLM-x32\...\Chrome\Extension: [cfcbmgbfdbijmjgjihagbomfbjfjmgon] - C:\Users\Schilling Family\AppData\Roaming\SpeedanAlysis\speedanalysis.crx <nicht gefunden>
CHR HKLM-x32\...\Chrome\Extension: [dlfienamagdnkekbbbocojppncdambda] - C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx [2012-05-28]
CHR HKLM-x32\...\Chrome\Extension: [doobfiogmfmpjnoofjhhgjehmlofngfp] - C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx [2013-11-16]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
StartMenuInternet: Google Chrome - C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe
StartMenuInternet: Google Chrome.Eltern - C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Dienste (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000 2015-08-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-08-20] (Apple Inc. -> Apple Inc.)
S3 ElfoService; C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe [1113864 2020-07-04] (Bayerisches Landesamt fuer Steuern -> )
S2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] (Giga-Byte Technology -> )
R2 HWDeviceService64.exe; C:\Program Files (x86)\DatacardService\HWDeviceService64.exe [351888 2016-03-24] (Huawei Technologies Co.,Ltd. -> )
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Datei ist nicht signiert]
S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [682072 2015-07-06] (Huawei Technologies Co.,Ltd. -> )
R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72304 2010-01-19] (JMicron Technology Corp. -> )
R2 MFLocalService; C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\LocalService.exe [54664 2022-04-28] (Shenzhen iMyFone Technology Co., Ltd -> )
S4 Roxio UPnP Renderer 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUPnPRenderer11.exe [313840 2008-08-14] (Sonic Solutions -> Sonic Solutions)
S4 Roxio Upnp Server 11; C:\Program Files (x86)\Roxio WinOnCD 2009\Digital Home 11\RoxioUpnpService11.exe [367088 2008-08-14] (Sonic Solutions -> Sonic Solutions)
S4 RoxMediaDB11; C:\Program Files (x86)\Common Files\Roxio Shared\11.0\SharedCOM\RoxMediaDB11.exe [1122304 2009-01-09] (Sonic Solutions) [Datei ist nicht signiert]
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [226976 2023-03-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SilhouetteLink; C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe [897200 2016-12-06] (Silhouette Research & Technology Ltd -> )
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\NisSrv.exe [3224328 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe [133544 2023-03-28] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 AiCharger; C:\Windows\SysWow64\drivers\AiCharger.sys [14848 2012-03-22] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert]
R3 gdrv; C:\Windows\gdrv.sys [25640 2023-04-08] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2014-02-08] (GIGA-BYTE TECHNOLOGY CO., LTD -> )
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49608 2023-03-28] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [495896 2023-03-28] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99624 2023-03-28] (Microsoft Windows -> Microsoft Corporation)
U3 idsvc; kein ImagePath

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2023-04-08 22:37 - 2023-04-08 22:37 - 000000000 ____D C:\Users\Schilling Family\AppData\Roaming\com.adobe.dunamis
2023-04-08 22:37 - 2023-04-08 22:37 - 000000000 ____D C:\Users\Schilling Family\AppData\Local\SolidDocuments
2023-04-08 22:37 - 2023-04-08 22:37 - 000000000 ____D C:\Users\Schilling Family\.ms-ad
2023-04-08 22:14 - 2023-04-08 22:14 - 000000000 ____D C:\Users\Schilling Family\AppData\Local\D3DSCache
2023-04-08 19:09 - 2023-04-08 21:03 - 000079412 _____ C:\Users\Eltern\Downloads\Addition.txt
2023-04-08 19:04 - 2023-04-08 22:35 - 000044115 _____ C:\Users\Eltern\Downloads\FRST.txt
2023-04-08 19:03 - 2023-04-08 22:33 - 000000000 ____D C:\FRST
2023-04-08 19:01 - 2023-04-08 19:02 - 002379776 _____ (Farbar) C:\Users\Eltern\Downloads\FRST64.exe
2023-04-08 00:27 - 2023-04-08 22:19 - 113508352 _____ C:\WINDOWS\system32\config\SOFTWARE
2023-04-08 00:11 - 2023-04-08 00:27 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2023-03-18 17:05 - 2023-03-18 17:05 - 000000000 ___HD C:\$WinREAgent
2023-03-09 23:24 - 2023-03-09 23:24 - 000000000 ____D C:\Users\Eltern\AppData\Local\SolidDocuments

==================== Ein Monat (geänderte) ==================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2023-04-08 22:39 - 2017-12-29 01:39 - 000000000 ____D C:\Users\Schilling Family\AppData\Local\Packages
2023-04-08 22:39 - 2016-07-14 19:02 - 000000000 ____D C:\Users\Schilling Family\AppData\Local\Publishers
2023-04-08 22:39 - 2012-05-05 20:54 - 000002590 _____ C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-04-08 22:39 - 2012-05-05 20:54 - 000002553 _____ C:\Users\Schilling Family\Desktop\Google Chrome.lnk
2023-04-08 22:37 - 2021-06-21 11:40 - 000004190 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{715B1F11-FA8F-4631-820D-9B3102438278}
2023-04-08 22:37 - 2021-06-21 10:59 - 000000000 ____D C:\Users\Schilling Family
2023-04-08 22:37 - 2012-05-05 20:55 - 000000000 ____D C:\Users\Schilling Family\AppData\Roaming\Adobe
2023-04-08 22:36 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-04-08 22:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-04-08 22:31 - 2021-06-21 11:40 - 000004234 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001UA1d36619e3f56ec3
2023-04-08 22:31 - 2021-06-21 11:40 - 000003966 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-607273383-903765569-4108737559-1001Core1d36619e3cf49df
2023-04-08 22:25 - 2017-12-28 22:49 - 000000000 ____D C:\ProgramData\NVIDIA
2023-04-08 22:24 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2023-04-08 22:21 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-04-08 22:20 - 2021-06-21 11:40 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-04-08 22:20 - 2012-05-05 21:40 - 000025640 _____ (Windows (R) Server 2003 DDK provider) C:\WINDOWS\gdrv.sys
2023-04-08 22:19 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2023-04-08 22:18 - 2021-06-21 11:40 - 000003398 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-607273383-903765569-4108737559-1001
2023-04-08 22:18 - 2021-06-21 10:59 - 000002457 _____ C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-04-08 22:18 - 2016-07-14 19:09 - 000000000 ___RD C:\Users\Schilling Family\OneDrive
2023-04-08 22:13 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-04-08 22:12 - 2018-01-01 16:22 - 000000000 ___RD C:\Users\Schilling Family\3D Objects
2023-04-08 22:12 - 2017-11-25 20:14 - 000000000 ____D C:\Users\Schilling Family\AppData\Local\ConnectedDevicesPlatform
2023-04-08 22:12 - 2015-09-10 07:44 - 000000000 __RHD C:\Users\Public\AccountPictures
2023-04-08 21:03 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2023-04-08 20:49 - 2014-03-03 21:44 - 000000000 ____D C:\Program Files (x86)\Motorola Mobility
2023-04-08 20:49 - 2012-05-05 21:20 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2023-04-08 20:21 - 2012-06-14 08:40 - 000000000 ____D C:\Users\Schilling Family\AppData\Roaming\DVDVideoSoft
2023-04-08 17:47 - 2023-01-24 22:03 - 000000000 ____D C:\Users\Eltern\AppData\Local\CrashDumps
2023-04-07 22:32 - 2021-06-21 10:56 - 000002396 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-04-07 22:32 - 2021-06-21 10:56 - 000002234 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-04-07 22:28 - 2012-05-06 09:23 - 000002540 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-04-07 22:28 - 2012-05-06 09:23 - 000002503 _____ C:\Users\Eltern\Desktop\Google Chrome.lnk
2023-04-07 22:27 - 2021-06-21 11:40 - 000004170 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{7B8873E7-2F6A-4D04-BC4D-C1178DC4E0A8}
2023-04-07 22:26 - 2021-12-11 16:19 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-607273383-903765569-4108737559-1003
2023-04-07 22:26 - 2021-06-21 11:40 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-607273383-903765569-4108737559-1003
2023-04-07 22:26 - 2021-06-21 10:59 - 000002443 _____ C:\Users\Eltern\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-04-04 23:44 - 2021-06-21 10:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-04-04 21:51 - 2021-06-24 07:57 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-04-04 21:51 - 2021-06-24 07:57 - 000003662 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d7667dcba7b542
2023-04-02 11:37 - 2021-06-21 11:15 - 001917326 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-04-02 11:37 - 2019-12-07 16:51 - 000820884 _____ C:\WINDOWS\system32\perfh007.dat
2023-04-02 11:37 - 2019-12-07 16:51 - 000177416 _____ C:\WINDOWS\system32\perfc007.dat
2023-03-28 01:10 - 2018-05-27 22:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2023-03-25 15:07 - 2021-06-21 11:40 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2023-03-25 15:06 - 2023-03-07 09:26 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-03-25 15:06 - 2023-03-07 09:26 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-03-19 01:32 - 2021-06-21 10:50 - 000523208 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-03-19 01:28 - 2019-12-07 16:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2023-03-19 01:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-03-18 17:41 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-03-18 17:29 - 2021-06-21 10:55 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-03-18 16:56 - 2013-08-03 13:53 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-03-18 16:35 - 2012-05-05 17:39 - 153620824 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-03-09 23:24 - 2012-05-06 09:25 - 000000000 ____D C:\Users\Eltern\AppData\Roaming\Adobe

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========

2015-07-14 15:52 - 2013-06-26 13:51 - 000884736 _____ () C:\Program Files (x86)\vkaraoke.exe
2020-05-12 20:16 - 2020-05-12 20:16 - 000000008 _____ () C:\Users\Eltern\AppData\Roaming\com.silhouettesoftware.id
2012-06-09 15:54 - 2012-06-09 15:54 - 000000000 _____ () C:\Users\Eltern\AppData\Local\rx_image32.Cache
2012-06-02 17:13 - 2012-06-02 17:13 - 000017408 _____ () C:\Users\Eltern\AppData\Local\WebpageIcons.db

==================== SigCheck ============================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

==================== Ende von FRST.txt ========================
         
--- --- ---

Alt 08.04.2023, 21:55   #9
Skipper39
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



FRST Additions Logfile:
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 06-04-2023
durchgeführt von Eltern (08-04-2023 22:40:15)
Gestartet von C:\Users\Eltern\Downloads
Microsoft Windows 10 Pro Version 21H2 19044.2728 (X64) (2021-06-21 09:41:50)
Start-Modus: Normal
==========================================================


==================== Konten: =============================


(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

Administrator (S-1-5-21-607273383-903765569-4108737559-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-607273383-903765569-4108737559-503 - Limited - Disabled)
Eltern (S-1-5-21-607273383-903765569-4108737559-1003 - Administrator - Enabled) => C:\Users\Eltern
Gast (S-1-5-21-607273383-903765569-4108737559-501 - Limited - Disabled)
Henrike (S-1-5-21-607273383-903765569-4108737559-1004 - Limited - Enabled) => C:\Users\Henrike
HomeGroupUser$ (S-1-5-21-607273383-903765569-4108737559-1002 - Limited - Enabled)
Schilling Family (S-1-5-21-607273383-903765569-4108737559-1001 - Administrator - Enabled) => C:\Users\Schilling Family
WDAGUtilityAccount (S-1-5-21-607273383-903765569-4108737559-504 - Limited - Disabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Kaspersky Total Security (Disabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23}
AV: Kaspersky Total Security (Disabled - Up to date) {0AB30972-4BAC-7BEE-CBCA-B8F9E68797D8}
AS: Kaspersky Total Security (Enabled - Up to date) {B1D2E896-6D96-7460-F17A-838B9D00DD65}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

@BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.08 - GIGABYTE)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1031-1033-7760-BC15014EA700}) (Version: 23.001.20093 - Adobe)
Adobe AIR (HKLM-x32\...\{10166660-0C51-4355-BD74-D4700EFDB83B}) (Version: 28.0.0.127 - Adobe Systems Incorporated) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 28.0.0.127 - Adobe Systems Incorporated)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601042}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Advanced IP Scanner 2.5 (HKLM-x32\...\{804CED37-7CED-45A5-AEC8-0F1F0FEE17E1}) (Version: 2.5.3784 - Famatech)
Amazon MP3-Downloader 1.0.17 (HKLM-x32\...\Amazon MP3-Downloader) (Version: 1.0.17 - Amazon Services LLC)
Amazon MP3-Downloader 1.0.18 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Amazon MP3-Downloader) (Version: 1.0.18 - Amazon Services LLC)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Drag and Drop Transcoding (HKLM\...\{203DE003-C392-FF19-BCA2-3F775477BC94}) (Version: 2.00.0000 - ATI Technologies Inc.) Hidden
Apple Mobile Device Support (HKLM\...\{527DD209-8A66-482F-8779-C7B3BACCA8F1}) (Version: 15.0.0.16 - Apple Inc.)
Applian FLV Player (HKLM-x32\...\Applian FLV Player2.0.24) (Version: 2.0.24 - Applian Technologies Inc.)
ATI AVIVO64 Codecs (HKLM\...\{33A49BF2-CB4F-5E54-D7F5-25502CAB6B70}) (Version: 11.6.0.50706 - ATI Technologies Inc.) Hidden
ATI Catalyst Install Manager (HKLM\...\{397878FC-1B1B-EED7-04A8-3184CE494A3B}) (Version: 3.0.782.0 - ATI Technologies, Inc.)
Auto Clicker v6.1 (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 6.1 - MurGee.com)
AutoGreen B10.0517.1 (HKLM-x32\...\InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}) (Version: 1.00.0000 - GIGABYTE)
BlueStacks X (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\BlueStacks X) (Version: 0.18.30.9 - BlueStack Systems, Inc.)
Bonanza Deals (remove only) (HKLM-x32\...\Bonanza Deals) (Version: 5.0.1.0 - Bonanza Deals)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Browser Configuration Utility (HKLM-x32\...\{A2F991E7-DDCD-42B7-AFEC-47789A099FDC}) (Version: 1.1.18.0 - DeviceVM Inc.)
BUDNI Fotowelt (HKLM-x32\...\BUDNI Fotowelt) (Version: 6.1.2 - CEWE Stiftung u Co. KGaA)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.4.0.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version:  - Canon Inc.)
CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM-x32\...\MyCamera Download Plugin) (Version: 3.1.0.1 - Canon Inc.)
CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.8.0.1 - Canon Inc.)
Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\Canon Internet Library for ZoomBrowser EX) (Version: 1.7.0.1 - Canon Inc.)
Canon Kurzwahlprogramm (HKLM-x32\...\Speed Dial Utility) (Version: 1.3.0 - Canon Inc.)
Canon MOV Decoder (HKLM-x32\...\Canon MOV Decoder) (Version: 1.7.0.6 - Canon Inc.)
Canon MOV Encoder (HKLM-x32\...\Canon MOV Encoder) (Version: 1.5.0.3 - Canon Inc.)
Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 3.6.0.5 - Canon Inc.)
Canon Utilities CameraWindow DC 8 (HKLM-x32\...\CameraWindowDC8) (Version: 8.3.0.6 - Canon Inc.)
Canon Utilities CameraWindow Launcher (HKLM-x32\...\CameraWindowLauncher) (Version: 7.5.0.2 - Canon Inc.)
Canon Utilities Digital Photo Professional 3.9 (HKLM-x32\...\DPP) (Version: 3.9.0.3 - Canon Inc.)
Canon Utilities Movie Uploader for YouTube (HKLM-x32\...\MovieUploaderForYouTube) (Version: 1.1.0.4 - Canon Inc.)
Canon Utilities MyCamera (HKLM-x32\...\MyCamera) (Version: 7.4.0.2 - Canon Inc.)
Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.)
Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.6.0.23 - Canon Inc.)
Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.4.0.4 - Canon Inc.)
Catalyst Control Center - Branding (HKLM-x32\...\{11087D24-567D-7D88-69C6-D7A08B5F4C47}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center - Branding (HKLM-x32\...\{87323561-58BA-4D5B-BADA-A791B69D1705}) (Version: 1.00.0000 - ATI) Hidden
ChessBase Reader (HKLM-x32\...\{52A3CA50-6E19-40B2-AD6D-2B7B2D89A8E4}) (Version: 12.44.0.0 - ChessBase)
Complitly (HKLM-x32\...\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1) (Version:  - Complitly)
DirectX 9 Runtime (HKLM-x32\...\{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}) (Version: 1.00.0000 - Sonic Solutions) Hidden
Easy Tune 6 B10.0516.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE)
EasySaver B9.1214.1  (HKLM-x32\...\{07300F01-89CA-4CF8-92BD-2A605EB83C95}) (Version: 1.00.0000 - Gigabyte)
ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 21.3 - Thüringer Landesfinanzdirektion)
EMC 11 Content (HKLM-x32\...\{21ABEA96-CCAB-4C40-8699-6BDFEC5FD63C}) (Version: 1.1.019 - Ihr Firmenname) Hidden
FastImageResizer (remove only) (HKLM-x32\...\FastImageResizer) (Version:  - )
FastStone Image Viewer 7.4 (HKLM-x32\...\FastStone Image Viewer) (Version: 7.4 - FastStone Soft)
FileZilla Client 3.10.1.1 (HKLM-x32\...\FileZilla Client) (Version: 3.10.1.1 - Tim Kosse)
FLV Runner Toolbar (HKLM-x32\...\FLV_Runner Toolbar) (Version: 6.9.0.16 - FLV Runner)
Fotobuchexpress24 Bestellsoftware (HKLM-x32\...\Fotobuchexpress24) (Version: 4.0 - )
fotofoto Software (HKLM-x32\...\fotofotoSoftware) (Version: 4.0 - )
Free Video Dub version 2.0.21.827 (HKLM-x32\...\Free Video Dub_is1) (Version: 2.0.21.827 - DVDVideoSoft Ltd.)
Freecorder 5 (HKLM-x32\...\Freecorder5.11) (Version: 5.11 - Applian Technologies Inc.)
Fritz 12 (HKLM-x32\...\{4F4182DA-3D58-41E3-913D-480F8DA5C863}) (Version: 12.0.0 - ChessBase)
Fritz und Fertig 3 (HKLM-x32\...\Fritz und Fertig 3) (Version:  - )
Gigabyte Raid Configurer (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.00.0001 - GIGABYTE Technologies, Inc.)
Google Chrome (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\Google Chrome) (Version: 112.0.5615.49 - Google LLC)
Google Chrome (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\Google Chrome) (Version: 112.0.5615.49 - Google LLC)
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.23.0 - BonanzaDeals) Hidden
Houdini 4 64-bit (HKLM\...\{BD221DF2-6078-42BE-9C09-EF1213E6DEAD}) (Version: 14.2.0.0 - ChessBase)
HydraVision (HKLM-x32\...\{D5134D14-A38D-A217-4310-5C8B6DFA08D0}) (Version: 4.2.174.0 - ATI Technologies Inc.) Hidden
iCloud (HKLM\...\{709A2D23-C25E-47B5-9268-CB6FEE648504}) (Version: 4.1.1.53 - Apple Inc.)
Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.19.18.55 - Huawei Technologies Co.,Ltd)
Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation)
jZip (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\jZip) (Version: 2.0.0.134914 - Bandoo Media Inc)
Media Go (HKLM-x32\...\{362AB21A-E2C4-40CE-81C2-8C4D62B0635A}) (Version: 2.4.256 - Sony)
Media Go Video Playback Engine 1.116.101.02020 (HKLM-x32\...\{54215B8A-6212-8DB8-39B4-98EE2BB98BD1}) (Version: 1.116.101.02020 - Sony)
Microsoft .NET Framework 4.5.1 (DEU) (HKLM\...\{C513739C-5F16-37B5-9ACF-99925FF1C1F3}) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.2 (HKLM\...\{26784146-6E05-3FF9-9335-786C7C0FB5BE}) (Version: 4.5.51209 - Microsoft Corporation) Hidden
Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291.0_neutral_~_8wekyb3d8bbwe (x64) (HKLM\...\{25E80DAA-FD87-DCE5-202C-CC02F6673002}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 112.0.1722.34 - Microsoft Corporation)
Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 112.0.1722.34 - Microsoft Corporation)
Microsoft Office Access MUI (German) 2010 (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (HKLM\...\{90140000-002A-0000-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2010 (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Proof (English) 2010 (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2010 (HKLM\...\{90140000-002A-0407-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Single Image 2010 (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2010 (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\OneDriveSetup.exe) (Version: 19.043.0304.0013 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\OneDriveSetup.exe) (Version: 23.061.0319.0003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-607273383-903765569-4108737559-1004\...\OneDriveSetup.exe) (Version: 19.232.1124.0008 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - KB2467175 (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (HKLM\...\{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (HKLM\...\{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (HKLM-x32\...\{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (HKLM-x32\...\{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 (HKLM\...\{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 (HKLM\...\{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft_VC100_CRT_SP1_x64 (HKLM\...\{680EDA59-9266-44B4-949E-0C24F65DFF82}) (Version: 10.0.40219.1 - Nokia) Hidden
Microsoft_VC100_CRT_SP1_x86 (HKLM-x32\...\{E3B64CC5-C011-40C0-92BC-7316CD5E5688}) (Version: 10.0.40219.1 - Nokia) Hidden
Mozilla Firefox 62.0.2 (x64 de) (HKLM\...\Mozilla Firefox 62.0.2 (x64 de)) (Version: 62.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0 - Mozilla)
MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
NVIDIA Grafiktreiber 456.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 456.71 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation)
PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia)
PC Speed Maximizer v3.2 (HKLM-x32\...\PC Speed Maximizer_is1) (Version: 3.2 - Smart PC Solutions) <==== ACHTUNG
PDF Reader (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\PDF Reader) (Version:  - )
PDF Reader Packages (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\PDF Reader Packages) (Version:  - ) <==== ACHTUNG
PlayStation(R)Network Downloader (HKLM-x32\...\{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}) (Version: 2.07.00849 - Sony Computer Entertainment Inc.)
PlayStation(R)Store (HKLM-x32\...\{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}) (Version: 4.14.6.15183 - Sony Computer Entertainment Inc.)
Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.18.322.2010 - Realtek)
Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.6034 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6083 - Realtek Semiconductor Corp.)
Roxio Activation Module (HKLM-x32\...\{1D53B6F9-E66E-42D8-A221-4FF8AC134FD7}) (Version: 1.0 - Roxio) Hidden
Roxio BackOnTrack (HKLM-x32\...\{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}) (Version: 1.3.1 - Roxio) Hidden
Roxio CinePlayer (HKLM-x32\...\{AA749D64-3741-4D5F-B804-B0BC05D179D1}) (Version: 5.0 - Roxio) Hidden
Roxio CinePlayer Decoder Pack (HKLM-x32\...\{C0FE37FA-0886-4B66-B01B-76CF70FB77AB}) (Version: 4.3.0 - Roxio) Hidden
Roxio File Backup (HKLM-x32\...\{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}) (Version: 1.3.0 - Roxio) Hidden
Roxio Update Manager (HKLM-x32\...\{30465B6C-B53F-49A1-9EBA-A3F187AD502E}) (Version: 6.0.0 - Roxio)
Roxio WinOnCD 2009 (HKLM-x32\...\{3383136B-4F86-4F05-8612-DD4BB16A1EAE}) (Version: 4.5.0 - Roxio) Hidden
Roxio WinOnCD 2009 (HKLM-x32\...\{7919D8D9-69FB-4E94-B330-04C4AF251867}) (Version: 11.0 - Roxio)
Roxio WinOnCD 2009 (HKLM-x32\...\{9F8C7AAF-CF7E-4FC9-ADD6-9EAE4304A161}) (Version: 1.1.110 - Roxio) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0015-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0016-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0019-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001B-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{8925227F-C7B5-4C95-AB58-4FCF2433DAEE}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{09A9DF49-DA06-4093-A2FD-F339211E39EA}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{ECC1D579-DC17-4B90-929C-B4A0BB35F7B3}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0410-0000-0000000FF1CE}_Office14.SingleImage_{97099817-53F1-4CA1-ACEA-DA6D74371689}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{E4D76E88-C65F-4003-9C71-EC4306679D17}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0407-1000-0000000FF1CE}_Office14.SingleImage_{3B0FF7FF-0E85-4907-A511-3F8C27349FA4}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002C-0407-0000-0000000FF1CE}_Office14.SingleImage_{996096F8-956B-41C9-A7E3-9BA1E801014F}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0407-0000-0000000FF1CE}_Office14.SingleImage_{D505EC85-885F-4BE3-8A89-3EFE4F855692}) (Version:  - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-00A1-0407-0000-0000000FF1CE}_Office14.SingleImage_{6B42CFAF-AA3D-478E-9B2F-A03225709EE3}) (Version:  - Microsoft) Hidden
Silhouette Link (HKLM-x32\...\{C2136C80-F9D4-4096-86D4-C641BB36DFF3}) (Version: 1.0.096 - Silhouette America)
SmartSound Quicktracks Plugin (HKLM-x32\...\InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}) (Version: 3.0.8.0 - SmartSound Software Inc)
Update for PDF Reader (HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\DigitalSite) (Version:  - ) <==== ACHTUNG
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
VSDC Free Video Editor Version 6.4.2.102 (HKLM\...\VSDC Free Video Editor_is1) (Version: 6.4.2.102 - Flash-Integro LLC)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Windows-Treiberpaket - Nokia pccsmcfd LegacyDriver  (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
YTD Video Downloader 5.9.13 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 5.9.13 - GreenTree Applications SRL) <==== ACHTUNG

Packages:
=========
Fotos-Add-On -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2021-06-21] (Microsoft Corporation)
Media Engine-Add-On für Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-12-31] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-06-22] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-06-22] (Microsoft Corporation) [MS Ad]
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.16.3140.0_x64__8wekyb3d8bbwe [2023-03-21] (Microsoft Studios) [MS Ad]
Unpacker -> C:\Program Files\WindowsApps\AFF540DC.Unpacker_1.1.14.24_x64__v7353qx4kg3sa [2017-08-08] (Jujuba Software) [MS Ad]
WindowsDVDPlayer -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer_3.6.13291.0_x64__8wekyb3d8bbwe [2015-11-12] (Microsoft Corporation)
Zip RAR 7Z -> C:\Program Files\WindowsApps\E7F9CCC0.ZipRAR7Z_1.5.0.0_neutral__58whwn0mv7c6y [2017-08-07] (D and V Limited)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

HKU\S-1-5-21-607273383-903765569-4108737559-1001\...\ChromeHTML: -> C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) <==== ACHTUNG
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{2919A592-BF5E-4AF5-A658-84454D70841E}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.36.202\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.36.202\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\112.0.5615.49\notification_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Schilling Family\AppData\Local\Google\Update\1.3.36.202\psuser_64.dll (Google LLC -> Google LLC)
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\ChromeHTML: -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) <==== ACHTUNG
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{041F9391-C79D-44EE-AA4E-AF4E029C4B47}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.112\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{1F9E0710-2073-435F-9C1B-F29946205947}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{46406D82-6EC0-47CC-8A75-1F33C6DEDBBE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.442\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{540C17A8-04F2-4B66-95D7-B2FEF9A19B54}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.422\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{62634D95-960B-4834-8E71-A70408AD8FD9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.7\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{69545769-8D02-4B07-A481-AD374CD8D5D1}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.132\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{6D264B70-DA18-401D-910C-B202D89670C6}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.32\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{75399D28-E622-4973-8752-BC0F7DC47AF3}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{84EB3779-151B-4C71-AEF0-A0FEE9481401}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.342\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{86508D42-E5D7-4D10-9C6F-D427AEEB85B5}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.34.11\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{8B480070-D37D-4090-A063-7A429F849652}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.92\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\112.0.5615.49\notification_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.23\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{BE5C2E39-090F-46A2-AFAA-47540743B4FE}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.102\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA8FA699-91CD-412F-9D13-9B1222F4370E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.83\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CA919489-0396-4164-A6E7-94CDED45A707}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.52\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{DEDF773D-E27B-485E-8E7D-85C5B0EB5A67}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.72\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.36.152\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{E9E7529D-7F09-410B-AF2A-CC154473B19C}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.452\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{EF076C91-DC9E-43E3-84ED-3D219E065A4F}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.35.302\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-607273383-903765569-4108737559-1003_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Eltern\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => Keine Datei
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2015-04-26] (Apple Inc. -> Apple Inc.)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} =>  -> Keine Datei
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)

==================== Codecs (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Drivers32: [msacm.voxacm160] => C:\WINDOWS\system32\vct3216.acm [82944 2003-05-21] (Voxware, Inc.) [Datei ist nicht signiert]
HKLM\...\Drivers32: [msacm.scg726] => C:\WINDOWS\system32\scg726.acm [13239 2000-03-14] (SHARP Corporation) [Datei ist nicht signiert]
HKLM\...\Drivers32: [msacm.alf2cd] => C:\WINDOWS\system32\alf2cd.acm [38912 2003-05-21] (NCT Company) [Datei ist nicht signiert]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\WINDOWS\system32\AC3ACM.acm [81920 2004-02-04] (fccHandler) [Datei ist nicht signiert]
HKLM\...\Drivers32: [msacm.lame] => C:\WINDOWS\system32\lame.ax [245760 2005-08-01] () [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.dvsd] => C:\WINDOWS\system32\mcdvd_32.dll [261632 2003-05-21] (MainConcept) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.mpg4] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.mp42] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.mp43] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.xvid] => C:\WINDOWS\system32\xvidvfw.dll [139264 2004-07-03] () [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.DIVX] => C:\WINDOWS\system32\DivX.dll [638976 2003-05-22] (DivXNetworks, Inc.) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.VP62] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.LAGS] => C:\WINDOWS\system32\lagarith.dll [216064 2011-12-07] () [Datei ist nicht signiert]

==================== Verknüpfungen & WMI ========================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
ShortcutWithArgument: C:\Users\Eltern\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7b8281b05742e423\Google Chrome.lnk -> C:\Users\Eltern\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Geladene Module (Nicht auf der Ausnahmeliste) =============

2009-06-27 10:11 - 2009-06-27 10:11 - 000503202 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\sqlite3.dll
2014-02-11 07:08 - 2014-02-11 07:08 - 000817152 _____ () [Datei ist nicht signiert] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll
2015-11-04 17:43 - 2015-11-04 17:43 - 000214528 _____ () [Datei ist nicht signiert] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
2014-02-11 07:08 - 2014-02-11 07:08 - 003650560 _____ () [Datei ist nicht signiert] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll
2020-01-18 14:56 - 2013-08-16 08:53 - 000043008 _____ () [Datei ist nicht signiert] C:\ProgramData\Internet Manager\OnlineUpdate\libgcc_s_dw2-1.dll
2020-01-18 14:56 - 2013-08-16 08:53 - 000011362 _____ () [Datei ist nicht signiert] C:\ProgramData\Internet Manager\OnlineUpdate\mingwm10.dll
2020-01-18 14:56 - 2014-02-15 09:31 - 002416640 _____ () [Datei ist nicht signiert] C:\ProgramData\Internet Manager\OnlineUpdate\QtCore4.dll
2020-01-18 14:56 - 2014-02-15 09:33 - 001148416 _____ () [Datei ist nicht signiert] C:\ProgramData\Internet Manager\OnlineUpdate\QtNetwork4.dll
2015-09-20 16:47 - 2012-09-21 06:00 - 000303104 _____ (CANON INC.) [Datei ist nicht signiert] C:\WINDOWS\System32\CNCALBO.DLL
2015-09-20 16:47 - 2012-09-20 06:00 - 000390656 _____ (CANON INC.) [Datei ist nicht signiert] C:\WINDOWS\System32\CNMLMBO.DLL
2014-02-08 16:03 - 2012-07-31 11:18 - 000359936 _____ (CANON INC.) [Datei ist nicht signiert] C:\WINDOWS\System32\CNMN6PPM.DLL
2022-09-17 13:49 - 2022-09-16 17:05 - 001012224 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\iMyFone\Components\Resident\platforms\qwindows.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ==================

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =================

==================== Internet Explorer (Nicht auf der Ausnahmeliste) ==========

HKU\S-1-5-21-607273383-903765569-4108737559-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=10&cc=&mi=fe28521d0000000000001c6f653e2346
HKU\S-1-5-21-607273383-903765569-4108737559-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.spiegel.de/
HKU\S-1-5-21-607273383-903765569-4108737559-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
HKU\S-1-5-21-607273383-903765569-4108737559-1004\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.dell.com
HKU\S-1-5-21-607273383-903765569-4108737559-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
URLSearchHook: HKLM-x32 - FLV Runner Toolbar - {3bbd3c14-4c16-4989-8366-95bc9179779d} - C:\Users\Eltern\AppData\LocalLow\FLV_Runner\prxtbFLV2.dll Keine Datei
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM Inc. -> DeviceVM, Inc.)
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM Inc. -> DeviceVM, Inc.)
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - (Kein Name) - {1392b8d2-5c05-419f-a8f6-b9f15a596612} - Keine Datei
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1001 - FLV Runner Toolbar - {3bbd3c14-4c16-4989-8366-95bc9179779d} - C:\Users\Eltern\AppData\LocalLow\FLV_Runner\prxtbFLV2.dll Keine Datei
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM Inc. -> DeviceVM, Inc.)
URLSearchHook: HKU\S-1-5-21-607273383-903765569-4108737559-1003 - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM Inc. -> DeviceVM, Inc.)
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> DefaultScope {122F3846-0AE4-492e-81DE-906A0C4A482E} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {122F3846-0AE4-492e-81DE-906A0C4A482E} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {80C392F7-933D-4333-97C9-6836482FE614} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=fe28521d0000000000001c6f653e2346&r=378
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> {A000C9A9-4946-4842-88A3-E552A02BCA8E} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3201318
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> DefaultScope {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = 
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {CAFC8535-FC41-4BE5-849D-E5224432519B} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3201318
SearchScopes: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> {F81C3B13-EB13-4784-AD06-5308BBD978DA} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBD
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2013-11-28] (Canon Inc. -> CANON INC.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2013-11-28] (Canon Inc. -> CANON INC.)
Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1001 -> Kein Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} -  Keine Datei
Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> Kein Name - {1392B8D2-5C05-419F-A8F6-B9F15A596612} -  Keine Datei
Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1003 -> Kein Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} -  Keine Datei
Toolbar: HKU\S-1-5-21-607273383-903765569-4108737559-1004 -> Kein Name - {3BBD3C14-4C16-4989-8366-95BC9179779D} -  Keine Datei
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

==================== Hosts Inhalt: =========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Andere Bereiche ===========================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\Common Files\Roxio Shared\DLLShared\;C:\Program Files (x86)\Common Files\Roxio Shared\11.0\DLLShared\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-607273383-903765569-4108737559-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Dell\Win7 LtBlue 1920x1200.jpg
HKU\S-1-5-21-607273383-903765569-4108737559-1003\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Dell\Win7 LtBlue 1920x1200.jpg
HKU\S-1-5-21-607273383-903765569-4108737559-1004\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Dell\Win7 LtBlue 1920x1200.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Keine Datei)
 ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: Motorola Device Manager => 2
MSCONFIG\Services: Roxio UPnP Renderer 11 => 3
MSCONFIG\Services: Roxio Upnp Server 11 => 2
MSCONFIG\Services: RoxLiveShare11 => 2
MSCONFIG\Services: RoxMediaDB11 => 3
MSCONFIG\Services: RoxWatch11 => 2
MSCONFIG\Services: ServiceLayer => 3
MSCONFIG\Services: Sony PC Companion => 3
HKU\S-1-5-21-607273383-903765569-4108737559-1003\...\StartupApproved\Run: => "AmazonMP3DownloaderHelper"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [UDP Query User{547E83B5-1313-4049-8C6C-7FEFCE3032C8}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{39484926-44D0-4DAF-B0F8-866441E6D21A}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{25FC2CF9-26C7-4801-865C-540B37D8F053}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{AF857C3D-3AD8-4EF9-85EA-8449CCA07F0B}C:\users\eltern\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\eltern\appdata\local\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{73C5997B-A60F-4423-ABB7-310B58259BC2}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{6E0F8CA7-3119-4E34-8D0F-457FE24884BF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Updater.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{79C30040-27F1-41BA-9061-5E6863DD79EF}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{63D3CFC8-E445-4908-92DE-C1EF9B169D01}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\Activation.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{7AA2976B-1696-433C-951B-3638144151F5}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{56DA2F88-0B42-4F5C-9AD1-87CECFB8F21A}] => (Allow) C:\Program Files\FlashIntegro\VideoEditor\VideoEditor.exe (Vector -> Flash-Integro LLC)
FirewallRules: [{0427B960-2364-4061-8D5A-B5D5238E0652}] => (Allow) C:\Users\Schilling Family\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{55CD2498-99BC-4878-9393-A93EEEF53276}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe => Keine Datei
FirewallRules: [{34FBCA88-D993-4E7D-AE9D-F75335CF1BD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe => Keine Datei
FirewallRules: [{75721B46-B736-4981-A30C-9C4A7DFA293F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Keine Datei
FirewallRules: [{25ABFAB1-10A6-4C85-9498-4465BA7A8D25}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Keine Datei
FirewallRules: [{32F2A2BD-95DF-41FB-86E2-E4FA4F05F363}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => Keine Datei
FirewallRules: [{22EAF1AB-1A96-40C1-8142-3CEBDF58A647}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => Keine Datei
FirewallRules: [{2D4667B5-F3E5-4885-882A-680251907CC5}] => (Allow) F:\o2CD.exe => Keine Datei
FirewallRules: [{A1F82616-54EE-4B24-BAF1-9FC9A59E06C9}] => (Allow) F:\o2CD.exe => Keine Datei
FirewallRules: [{BC62CBD5-D590-40D7-B254-2F6B63EA0A51}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3207EC1A-AC96-41C7-A43B-E0449E4CFD8C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{BB65DA61-3AEF-4723-839F-8614B4B2DCE6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CEF21CCF-81CB-46AF-BF32-D50B57107806}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E7D017EE-5A08-4B83-8ABD-0E231E05E21A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{97EEE3EA-74AC-4C81-A147-4062BE737487}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{27AA07D2-29F9-4C0A-8FA7-D5ACDA31A49C}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => Keine Datei
FirewallRules: [{25F5F1FF-2414-4F37-8B6A-27EAF4331A0D}] => (Allow) C:\Program Files (x86)\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe => Keine Datei
FirewallRules: [{64711767-0BEA-4E26-93C0-E7067F35F510}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6267537C-2A47-4D0A-855E-11982B6C2CE0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{19C62B83-B546-4D25-84EC-CF4188C945BE}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [{847E80AE-8076-4540-9C12-38B8CED2229E}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.)
FirewallRules: [TCP Query User{2C96EF38-3E0E-4B56-BE5F-66C94FBA7BF4}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => Keine Datei
FirewallRules: [UDP Query User{DCAE0FD6-BE9F-423F-9A44-CF663BE220E3}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe => Keine Datei
FirewallRules: [{13F44943-2753-4C2C-A854-B02E880FD681}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.)
FirewallRules: [{1DE1C6EB-EC9E-4562-BAD8-1EF4A6F74758}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.)
FirewallRules: [{CED1E8BF-8A0D-46A0-8671-8FBC100F75E8}] => (Allow) C:\Program Files\BlueStacks_nxt\HD-Player.exe => Keine Datei
FirewallRules: [{31A42FDB-DD04-4C37-A8F1-4208EE877C44}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{76B60587-7B61-4637-BEA2-7CAB8A4B0CB0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{189FA84B-B945-43A6-893F-CC12EAE178B9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{0E12E48C-5C80-40A2-BA71-1905CEF567CD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> )
FirewallRules: [{9AAB57D9-E18D-48FA-9EF4-83B52D7B34A8}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\112.0.1722.34\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Wiederherstellungspunkte =========================

ACHTUNG: Systemwiederherstellung ist deaktiviert (Total:107.89 GB) (Free:24.06 GB) (22%)

==================== Fehlerhafte Geräte im Gerätemanager ============

Name: Kaspersky Security Data Escort Adapter #2
Description: Kaspersky Security Data Escort Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: SAMSUNG Electronics Co., Ltd. 
Service: kltap
Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19)
Resolution: A registry problem was detected.
 This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options:
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver.


==================== Fehlereinträge in der Ereignisanzeige: ========================

Applikationsfehler:
==================
Error: (04/08/2023 05:47:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.19041.2673, Zeitstempel: 0x4aa1ce82
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.19041.546, Zeitstempel: 0x564f9f39
Ausnahmecode: 0x40000015
Fehleroffset: 0x000000000000ae22
ID des fehlerhaften Prozesses: 0x21e4
Startzeit der fehlerhaften Anwendung: 0x01d96a3116ba964b
Pfad der fehlerhaften Anwendung: C:\Windows\ImmersiveControlPanel\SystemSettings.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\msvcrt.dll
Berichtskennung: 32924120-d70a-4eee-85c7-e9792f980003
Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windows.immersivecontrolpanel

Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 31125

Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 31125

Error: (04/03/2023 12:37:43 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15438

Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15438

Error: (04/03/2023 12:37:27 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (04/02/2023 11:42:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: svchost.exe_WaaSMedicSvc, Version: 10.0.19041.1806, Zeitstempel: 0x7dcad237
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.19041.2130, Zeitstempel: 0xb5ced1c6
Ausnahmecode: 0xc0000409
Fehleroffset: 0x00000000000281da
ID des fehlerhaften Prozesses: 0x858
Startzeit der fehlerhaften Anwendung: 0x01d965462c926a07
Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\svchost.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll
Berichtskennung: a925920e-ff58-4635-b132-3e66a692e988
Vollständiger Name des fehlerhaften Pakets: 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:


Systemfehler:
=============
Error: (04/08/2023 10:38:20 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80246010 fehlgeschlagen: 9NSTH9KHZDLQ-Microsoft.UI.Xaml.2.8

Error: (04/08/2023 10:38:09 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80246010 fehlgeschlagen: 9P7VS8XHG9G5-Microsoft.WindowsAppRuntime.1.2

Error: (04/08/2023 10:25:50 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "MessagingService_240ee3" wurde mit folgendem Fehler beendet: 
Das Gerät ist nicht bereit.

Error: (04/08/2023 10:21:19 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "MessagingService_72646" wurde mit folgendem Fehler beendet: 
Das Gerät ist nicht bereit.

Error: (04/08/2023 10:21:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Internet Manager. RunOuc" wurde aufgrund folgenden Fehlers nicht gestartet: 
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.

Error: (04/08/2023 10:21:13 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst Internet Manager. RunOuc erreicht.

Error: (04/08/2023 10:12:10 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "MessagingService_d8f50a" wurde mit folgendem Fehler beendet: 
Das Gerät ist nicht bereit.

Error: (04/08/2023 10:08:34 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "MessagingService_c2f7c9" wurde mit folgendem Fehler beendet: 
Das Gerät ist nicht bereit.


Windows Defender:
================
Date: 2023-04-08 22:40:52
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0
Name: PUADlManager:Win32/DownloadSponsor
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Echtzeitschutz
Benutzer: 
Prozessname: C:\Windows\explorer.exe
Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 22:40:51
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/CandyOpen&threatid=311936&enterprise=0
Name: PUABundler:Win32/CandyOpen
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FreeAudioDub.exe; file:_C:\Users\Eltern\Downloads\FreeStudio.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: FastPath
Erkennungsquelle: Echtzeitschutz
Benutzer: 
Prozessname: C:\Windows\explorer.exe
Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 22:39:28
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/CandyOpen&threatid=311936&enterprise=0
Name: PUABundler:Win32/CandyOpen
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FreeAudioDub.exe; file:_C:\Users\Eltern\Downloads\FreeStudio.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: FastPath
Erkennungsquelle: Echtzeitschutz
Benutzer: 
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 22:39:24
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0
Name: PUADlManager:Win32/DownloadSponsor
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Echtzeitschutz
Benutzer: 
Prozessname: C:\Users\Eltern\Downloads\FRST64.exe
Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4

Date: 2023-04-08 22:27:55
Description: 
Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0
Name: PUADlManager:Win32/DownloadSponsor
Schweregrad: Niedrig
Kategorie: Potenziell unerwünschte Software
Pfad: file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\FastStone Image Viewer - CHIP-Installer.exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer (1).exe; file:_C:\Users\Eltern\Downloads\VSDC Free Video Editor - CHIP-Installer.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Echtzeitschutz
Benutzer: 
Prozessname: C:\Windows\explorer.exe
Sicherheitsversion: AV: 1.387.403.0, AS: 1.387.403.0, NIS: 1.387.403.0
Modulversion: AM: 1.1.20200.4, NIS: 1.1.20200.4
Event[0]:

Date: 2023-02-14 22:12:26
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3589.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". 

Date: 2023-02-14 22:12:26
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3589.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiSpyware
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". 

Date: 2023-02-14 22:12:26
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3589.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support". 

Date: 2023-02-14 22:10:52
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3495.0
Update Source: Microsoft Update-Server
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x80070102
Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. 

Date: 2023-02-14 22:10:52
Description: 
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen: 
%Vorherige Version der Sicherheitsinformationen: 1.381.3495.0
Update Source: Microsoft Update-Server
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion: 
%Vorherige Modulversion: 1.1.19900.2
Fehlercode: 0x80070102
Fehlerbeschreibung: Der Wartevorgang wurde abgebrochen. 

CodeIntegrity:
===============
Date: 2023-04-02 11:55:38
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-04-02 11:42:03
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

Date: 2023-03-19 23:21:24
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-01-12 23:00:54
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-11-11 00:26:40
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-11-11 00:13:09
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.4-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Speicherinformationen =========================== 

BIOS: Award Software International, Inc. FD 07/23/2010
Hauptplatine: Gigabyte Technology Co., Ltd. GA-890GPA-UD3H
Prozessor: AMD Phenom(tm) II X4 955 Processor
Prozentuale Nutzung des RAM: 53%
Installierter physikalischer RAM: 8189.55 MB
Verfügbarer physikalischer RAM: 3798.63 MB
Summe virtueller Speicher: 16381.55 MB
Verfügbarer virtueller Speicher: 11333.5 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:107.89 GB) (Free:24.35 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS
Drive d: () (Fixed) (Total:97.56 GB) (Free:25.19 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) NTFS
Drive e: () (Fixed) (Total:0 GB) (Free:0 GB) (Model: WDC WD6400AAKS-65A7B2 ATA Device) 
Drive f: (ELM327 software) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS
Drive g: (System) (Fixed) (Total:232.88 GB) (Free:44.68 GB) (Model: ST3250823AS ATA Device) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]

\\?\Volume{dbb0575c-96c5-11e1-b743-806e6f6e6963}\ (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS

==================== MBR & Partitionstabelle ====================

==========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 232.9 GB) (Disk ID: E419C3C7)
Partition 1: (Not Active) - (Size=232.9 GB) - (Type=0F Extended)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: 973E7CF0)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=97.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=390.6 GB) - (Type=06)
Partition 4: (Not Active) - (Size=107.9 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt =======================
         
--- --- ---

Alt 09.04.2023, 12:06   #10
M-K-D-B
/// TB-Ausbilder
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



So ein vermülltes System habe ich schon lange nicht mehr gesehen...

Du solltest ganz dringend auf deine Downloadquellen achten. Du lädst dir ja alles Mögliche an Adware und unerwünschter Software auf das System.

Das bedeutet sehr viel Arbeit für dich, wenn wir das System wieder in Ordnung bekommen sollen.






Eine kurze Information vorab:

Downloadquellen
Die folgenden Seiten verteilen Software häufig mit einem sog. "Installer", mit dem Potentiell Unerwünschte Programme (PUP) oder Adware installiert werden können.
Vereinzelt beinhalten diese "Installer" sogar Trojaner.
Vermeide daher unbedingt die folgenden Seiten:
  • Chip.de
  • Softonic.de
  • sourceforge.net
  • openoffice.de
  • VLC.de
  • audacity.de
  • gimp24.de
  • jdownloader.org
  • computerbild.de
  • updatestar.com

Für Windows gibt es seit einiger Zeit einen brauchbaren Paketmanager, der mit einfachen Befehlen es erlaubt, automatisiert Software herunterzuladen und zu installieren. Das erspart eine Menge Arbeit, denn ohne einen Paketmanager muss man jedes Programm selbst prüfen und separat manuell updaten, vorher manuell noch runterladen etc. pp. - siehe auch --> chocolatey Paketmanager für Windows

Wir empfehlen dringend, alle Programme, sofern verfügbar, über chocolatey zu installieren. Falls du schon mit Linux zu tun hattest, wird dir die Syntax sehr vertraut sein.
Die FAQs zu choco findest du da --> Chocolatey: Häufig gestellte Fragen (englisch)
Selbstverständlich darfst du auch Fragen zu chocolatey im o.g. Thread zu chocolatey stellen.


Für den seltenen Fall, dass du das benötigte Programm nicht im repository von chocolatey findest: Lade diese Software immer direkt beim jeweiligen Hersteller / Entwickler.






Schritt 1
Führe Malwarebytes' AntiMalware (MBAM) gemäß der bebilderten Anleitung aus und poste abschließend die Logdatei.





Schritt 2
Führe AdwCleaner gemäß der bebilderten Anleitung aus und poste abschließend die Logdatei.





Schritt 3
Führe Emsisoft Emergency Kit (EEK) gemäß der bebilderten Anleitung aus und poste abschließend die Logdatei.





Bitte poste mit deiner nächsten Antwort:
  • die Logdatei von MBAM
  • die Logdatei von AdwCleaner
  • die Logdatei von EEK

Alt 09.04.2023, 12:38   #11
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



Vorher sollte mindestens Kaspersky deinstalliert werden.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 09.04.2023, 21:46   #12
Skipper39
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



Kaspersky hatt ich schon vor über einem Jahr eigentlich gelöscht, es findet sich auch nichts mehr zum deinstallieren bei den Programmen. aber vielleicht hat sich da noch das eine oder andere von dem versteckt.

Ansonsten die scans durchgeführt. Zunächst 3 Beiträge MBAM, dann die anderen beiden

Code:
ATTFilter
Malwarebytes
www.malwarebytes.com

-Protokolldetails-
Scan-Datum: 09.04.23
Scan-Zeit: 18:42
Protokolldatei: 8dd4d886-d6f5-11ed-a7b1-1c6f653e2346.json

-Softwaredaten-
Version: 4.5.26.259
Komponentenversion: 1.0.1976
Version des Aktualisierungspakets: 1.0.67783
Lizenz: Testversion

-Systemdaten-
Betriebssystem: Windows 10 (Build 19044.2728)
CPU: x64
Dateisystem: NTFS
Benutzer: SchillingFamily\Eltern

-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Scan gestartet von: Manuell
Ergebnis: Abgeschlossen
Gescannte Objekte: 444201
Erkannte Bedrohungen: 1057
In die Quarantäne verschobene Bedrohungen: 1057
Abgelaufene Zeit: 57 Min., 8 Sek.

-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Erkennung
PUM: Erkennung

-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)

Modul: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 92
PUP.Optional.Complitly, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{4FFBB818-B13C-11E0-931D-B2664824019B}_is1, In Quarantäne, 3015, 236681, , , , , , 
PUP.Optional.PCSpeedMaximizer, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PC Speed Maximizer_is1, In Quarantäne, 3672, 241606, , , , , , 
Adware.Revizer.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NLASVC\PARAMETERS\INTERNET\MANUALPROXIES, In Quarantäne, 7549, -1, 0.0.0, , action, , , 
PUP.Optional.BonanzaDeals, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\BONANZADEALS, In Quarantäne, 1380, 235914, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\BonanzaDealsLive, In Quarantäne, 1380, 235917, 1.0.67783, , ame, , , 
PUP.Optional.FLVRunner, HKLM\SOFTWARE\WOW6432NODE\FLV_Runner, In Quarantäne, 2746, 238426, 1.0.67783, , ame, , , 
PUP.Optional.InstallCore, HKLM\SOFTWARE\WOW6432NODE\InstallCore, In Quarantäne, 91, 239564, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\BonanzaDealsLive, In Quarantäne, 1380, 235915, 1.0.67783, , ame, , , 
PUP.Optional.FLVRunner, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\APPDATALOW\SOFTWARE\FLV_Runner, In Quarantäne, 2746, 238424, 1.0.67783, , ame, , , 
PUP.Optional.PriceGong, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\APPDATALOW\SOFTWARE\PriceGong, In Quarantäne, 1508, 241946, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{29494049-211F-4F5C-8545-7DA8BF7A6CF8}, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLive.OneClickCtrl.9, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLive.OneClickProcessLauncherMachine.1.0, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLive.OneClickProcessLauncherMachine, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\CONDUIT\Toolbar, In Quarantäne, 7214, 421478, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLive.Update3WebControl.3, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoCreateAsync.1.0, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoCreateAsync, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoreClass.1, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{A7CF66EF-4F0D-46B1-AF71-A500378D6C34}, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{A7CF66EF-4F0D-46B1-AF71-A500378D6C34}, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoreClass, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoreMachineClass.1, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CoreMachineClass, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CredentialDialogMachine.1.0, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.CredentialDialogMachine, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassMachine.1.0, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassMachine, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassMachineFallback.1.0, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassMachineFallback, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassSvc.1.0, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{D34F391D-4CB7-467F-A543-F583857C63B0}, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{D34F391D-4CB7-467F-A543-F583857C63B0}, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.OnDemandCOMClassSvc, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.ProcessLauncher.1.0, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.ProcessLauncher, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3COMClassService.1.0, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{9EA8702C-EEDB-4731-BE68-E9A167DD3597}, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{9EA8702C-EEDB-4731-BE68-E9A167DD3597}, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3COMClassService, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebMachine.1.0, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebMachine, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Bonanza Deals, In Quarantäne, 1380, 182151, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebMachineFallback.1.0, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebMachineFallback, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebSvc.1.0, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{118E1BF6-6279-432F-A285-373A77B90C7A}, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{118E1BF6-6279-432F-A285-373A77B90C7A}, In Quarantäne, 1380, 235913, , , , , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\CLASSES\BonanzaDealsLiveUpdate.Update3WebSvc, In Quarantäne, 1380, 235913, 1.0.67783, , ame, , , 
PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B437D705-A317-48B0-8541-D3AF3EB72116}, In Quarantäne, 7214, 443513, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{CAFC8535-FC41-4BE5-849D-E5224432519B}, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , 
PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{9E92257F-3F0A-451D-B231-6E2DB60CDC71}, In Quarantäne, 7214, 443525, , , , , , 
PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\CLASSES\Toolbar.CT1060933, In Quarantäne, 7214, 443525, 1.0.67783, , ame, , , 
PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{07CEA379-7178-4758-9C80-969876E32395}, In Quarantäne, 7214, 443525, , , , , , 
PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{07CEA379-7178-4758-9C80-969876E32395}, In Quarantäne, 7214, 443525, , , , , , 
PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{07CEA379-7178-4758-9C80-969876E32395}, In Quarantäne, 7214, 443525, , , , , , 
PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{07CEA379-7178-4758-9C80-969876E32395}, In Quarantäne, 7214, 443525, , , , , , 
PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{07CEA379-7178-4758-9C80-969876E32395}, In Quarantäne, 7214, 443525, , , , , , 
PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\CLASSES\Toolbar.CT3201318, In Quarantäne, 7214, 443525, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\BONANZADEALS, In Quarantäne, 1380, 235916, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\BonanzaDealsLive, In Quarantäne, 1380, 235915, 1.0.67783, , ame, , , 
PUP.Optional.FLVRunner, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\FLV_Runner, In Quarantäne, 2746, 238425, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\Tbccint_HKLM, In Quarantäne, 112, 236872, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\APPDATALOW\SOFTWARE\ConduitSearchScopes, In Quarantäne, 112, 236861, 1.0.67783, , ame, , , 
PUP.Optional.FLVRunner, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\APPDATALOW\SOFTWARE\FLV_Runner, In Quarantäne, 2746, 238424, 1.0.67783, , ame, , , 
PUP.Optional.PriceGong, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\APPDATALOW\SOFTWARE\PriceGong, In Quarantäne, 1508, 241946, 1.0.67783, , ame, , , 
PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{60E899E7-67BD-4316-94B1-5F9C60C66F8F}, In Quarantäne, 4200, 183578, 1.0.67783, , ame, , , 
PUP.Optional.DigitalSites, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{83C55439-989B-45A6-A08E-F552847E1327}, In Quarantäne, 1398, 551749, 1.0.67783, , ame, , , 
PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9B5544EC-58CA-4789-AAD4-BC7E3AC6823A}, In Quarantäne, 4200, 183578, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\BonanzaDealsLive, In Quarantäne, 1380, 235915, 1.0.67783, , ame, , , 
PUP.Optional.DigitalSites, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\DSiteProducts, In Quarantäne, 1398, 237780, 1.0.67783, , ame, , , 
PUP.Optional.InstallCore, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\InstallCore, In Quarantäne, 91, 239563, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\APPDATALOW\SOFTWARE\ConduitSearchScopes, In Quarantäne, 112, 236861, 1.0.67783, , ame, , , 
PUP.Optional.FLVRunner, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\APPDATALOW\SOFTWARE\FLV_Runner, In Quarantäne, 2746, 238424, 1.0.67783, , ame, , , 
PUP.Optional.PriceGong, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\APPDATALOW\SOFTWARE\PriceGong, In Quarantäne, 1508, 241946, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A000C9A9-4946-4842-88A3-E552A02BCA8E}, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , 
PUP.Optional.PCSpeedMaximizer, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\PC SPEED MAXIMIZER, In Quarantäne, 3672, 241610, 1.0.67783, , ame, , , 
PUP.Optional.PCPerformer, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\PERFORMERSOFT\PC Performer, In Quarantäne, 285, 241585, 1.0.67783, , ame, , , 
PUP.Optional.Tarma, HKLM\SOFTWARE\Tarma Installer, In Quarantäne, 883, 821259, 1.0.67783, , ame, , , 
PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{60E899E7-67BD-4316-94B1-5F9C60C66F8F}, In Quarantäne, 4200, 183580, , , , , , 
PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\BonanzaDealsLiveUpdateTaskMachineCore, In Quarantäne, 4200, 183580, 1.0.67783, , ame, , , 
PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{9B5544EC-58CA-4789-AAD4-BC7E3AC6823A}, In Quarantäne, 4200, 183580, , , , , , 
PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\BonanzaDealsLiveUpdateTaskMachineUA, In Quarantäne, 4200, 183580, 1.0.67783, , ame, , , 
PUP.Optional.DigitalSite, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{83C55439-989B-45A6-A08E-F552847E1327}, In Quarantäne, 4846, 237777, , , , , , 
PUP.Optional.DigitalSite, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\DigitalSite, In Quarantäne, 4846, 237777, 1.0.67783, , ame, , , 
PUP.Optional.Complitly, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\dlfienamagdnkekbbbocojppncdambda, In Quarantäne, 3015, 236683, 1.0.67783, , ame, , , 
PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B437D705-A317-48B0-8541-D3AF3EB72116}, In Quarantäne, 7214, 443512, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, 1.0.67783, , ame, , , 
PUP.Optional.YTDVideoDownloader, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}, In Quarantäne, 9888, 883300, , , , , , 

Registrierungswert: 28
Adware.Revizer.PrxySvrRST, HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, 7549, -1, 0.0.0, , action, , , 
Adware.Revizer.PrxySvrRST, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, 7549, -1, 0.0.0, , action, , , 
Adware.Revizer.PrxySvrRST, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, 7549, -1, 0.0.0, , action, , , 
Adware.Revizer.PrxySvrRST, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, 7549, -1, 0.0.0, , action, , , 
Adware.Revizer.PrxySvrRST, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYOVERRIDE, In Quarantäne, 7549, -1, 0.0.0, , action, , , 
Adware.Revizer.PrxySvrRST, HKU\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, In Quarantäne, 7549, -1, 0.0.0, , action, , , 
PUP.Optional.BonanzaDeals, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\BONANZADEALS|CHROMECRXPATH, In Quarantäne, 1380, 235914, 1.0.67783, , ame, , , 
PUP.Optional.Conduit.Generic, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B437D705-A317-48B0-8541-D3AF3EB72116}|APPPATH, In Quarantäne, 7214, 443513, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{CAFC8535-FC41-4BE5-849D-E5224432519B}|FAVICONURL, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{CAFC8535-FC41-4BE5-849D-E5224432519B}|SUGGESTIONSURL_JSON, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{CAFC8535-FC41-4BE5-849D-E5224432519B}|URL, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, HKLM\SOFTWARE\WOW6432NODE\BONANZADEALS|CHROMECRXPATH, In Quarantäne, 1380, 235916, 1.0.67783, , ame, , , 
PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{60E899E7-67BD-4316-94B1-5F9C60C66F8F}|PATH, In Quarantäne, 4200, 183578, 1.0.67783, , ame, , , 
PUP.Optional.DigitalSites, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{83C55439-989B-45A6-A08E-F552847E1327}|PATH, In Quarantäne, 1398, 551749, 1.0.67783, , ame, , , 
PUP.Optional.Bonanza, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9B5544EC-58CA-4789-AAD4-BC7E3AC6823A}|PATH, In Quarantäne, 4200, 183578, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A000C9A9-4946-4842-88A3-E552A02BCA8E}|URL, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A000C9A9-4946-4842-88A3-E552A02BCA8E}|FAVICONURL, In Quarantäne, 112, 236866, 1.0.67783, , ame, , , 
PUP.Optional.PCSpeedMaximizer, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\PC SPEED MAXIMIZER|ADSBUYNOWURL, In Quarantäne, 3672, 241610, 1.0.67783, , ame, , , 
PUP.Optional.PCSpeedMaximizer, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\PC SPEED MAXIMIZER|BUYNOWURL, In Quarantäne, 3672, 260427, 1.0.67783, , ame, , , 
PUP.Optional.SpeedTestAnalysis, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|SPEEDANALYSIS@SPEEDANALYSIS.COM, In Quarantäne, 3831, 243406, 1.0.67783, , ame, , , 
PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B437D705-A317-48B0-8541-D3AF3EB72116}|APPPATH, In Quarantäne, 7214, 443512, 1.0.67783, , ame, , , 
PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\FLV_Runner Toolbar|URLINFOABOUT, In Quarantäne, 7214, 404165, 1.0.67783, , ame, , , 
PUP.Optional.SpeedTestAnalysis, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|SPEEDANALYSIS@SPEEDANALYSIS.COM, In Quarantäne, 3831, 243408, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , 
PUP.Optional.Conduit, HKU\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , 
PUP.Optional.Conduit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{3BBD3C14-4C16-4989-8366-95BC9179779D}, In Quarantäne, 112, 167806, , , , , , 

Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)

Daten-Stream: 0
(keine bösartigen Elemente erkannt)

Ordner: 182
PUP.Optional.OpenCandy, C:\Users\Schilling Family\AppData\Roaming\OpenCandy\E96353E8D0C74285AE3654BEA67A8B19, In Quarantäne, 87, 173202, , , , , , 
PUP.Optional.PCPerformer, C:\USERS\ELTERN\APPDATA\ROAMING\PERFORMERSOFT\PC PERFORMER, In Quarantäne, 285, 174326, 1.0.67783, , ame, , , 
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\defaults\preferences, In Quarantäne, 3015, 236681, , , , , , 
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content, In Quarantäne, 3015, 236681, , , , , , 
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\defaults, In Quarantäne, 3015, 236681, , , , , , 
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome, In Quarantäne, 3015, 236681, , , , , , 
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com, In Quarantäne, 3015, 236681, , , , , , 
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\chrome, In Quarantäne, 3015, 236681, , , , , , 
PUP.Optional.Complitly, C:\PROGRAM FILES (X86)\COMPLITLY, In Quarantäne, 3015, 236681, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, C:\ProgramData\BonanzaDealsLive\Update\Log, In Quarantäne, 1380, 175693, , , , , , 
PUP.Optional.BonanzaDeals, C:\ProgramData\BonanzaDealsLive\Update, In Quarantäne, 1380, 175693, , , , , , 
PUP.Optional.BonanzaDeals, C:\PROGRAMDATA\BONANZADEALSLIVE, In Quarantäne, 1380, 175693, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, C:\Users\Schilling Family\AppData\Local\BonanzaDealsLive\CrashReports, In Quarantäne, 1380, 175694, , , , , , 
PUP.Optional.BonanzaDeals, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\BONANZADEALSLIVE, In Quarantäne, 1380, 175694, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update\Offline\{5C094A47-936E-4F43-9E45-10E6FE114694}, In Quarantäne, 1380, 175696, , , , , , 
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0, In Quarantäne, 1380, 175696, , , , , , 
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update\Download, In Quarantäne, 1380, 175696, , , , , , 
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update\Install, In Quarantäne, 1380, 175696, , , , , , 
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update\Offline, In Quarantäne, 1380, 175696, , , , , , 
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\CrashReports, In Quarantäne, 1380, 175696, , , , , , 
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDealsLive\Update, In Quarantäne, 1380, 175696, , , , , , 
PUP.Optional.BonanzaDeals, C:\PROGRAM FILES (X86)\BONANZADEALSLIVE, In Quarantäne, 1380, 175696, 1.0.67783, , ame, , , 
PUP.Optional.PCSpeedMaximizer, C:\PROGRAM FILES (X86)\PC SPEED MAXIMIZER, In Quarantäne, 3672, 241606, 1.0.67783, , ame, , , 
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Roaming\Complitly\64, In Quarantäne, 3015, 176148, , , , , , 
PUP.Optional.Complitly, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\COMPLITLY, In Quarantäne, 3015, 176148, 1.0.67783, , ame, , , 
PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons, In Quarantäne, 3015, 176151, , , , , , 
PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1, In Quarantäne, 3015, 176151, , , , , , 
PUP.Optional.Complitly, C:\USERS\ELTERN\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\DLFIENAMAGDNKEKBBBOCOJPPNCDAMBDA, In Quarantäne, 3015, 176151, 1.0.67783, , ame, , , 
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons, In Quarantäne, 3015, 176151, , , , , , 
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1, In Quarantäne, 3015, 176151, , , , , , 
PUP.Optional.Complitly, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\DLFIENAMAGDNKEKBBBOCOJPPNCDAMBDA, In Quarantäne, 3015, 176151, 1.0.67783, , ame, , , 
PUP.Optional.FLVRunner, C:\PROGRAM FILES (X86)\FLV_Runner, In Quarantäne, 2746, 177202, 1.0.67783, , ame, , , 
PUP.Optional.UpdateProc, C:\Users\Schilling Family\AppData\Roaming\DigitalSite\UpdateProc, In Quarantäne, 5207, 244360, , , , , , 
PUP.Optional.UpdateProc, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\DigitalSite, In Quarantäne, 5207, 244360, 1.0.67783, , ame, , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UninstallDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DefualtImages, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\UserDefinedItems, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\SearchInNewTab, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\MyStuffApps, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\RadioPlayer, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Logs, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\USERS\ELTERN\APPDATA\LOCALLOW\FLV_Runner, In Quarantäne, 2746, 177204, 1.0.67783, , ame, , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DefualtImages, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\UserDefinedItems, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\SearchInNewTab, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\RadioPlayer, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\MyStuffApps, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Logs, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\USERS\HENRIKE\APPDATA\LOCALLOW\FLV_Runner, In Quarantäne, 2746, 177204, 1.0.67783, , ame, , , 
PUP.Optional.FLVRunner, C:\Users\Schilling Family\AppData\LocalLow\FLV_Runner\Logs, In Quarantäne, 2746, 177204, , , , , , 
PUP.Optional.FLVRunner, C:\USERS\SCHILLING FAMILY\APPDATA\LOCALLOW\FLV_Runner, In Quarantäne, 2746, 177204, 1.0.67783, , ame, , , 
PUP.Optional.PCSpeedMaximizer, C:\Users\Schilling Family\AppData\Roaming\PC Speed Maximizer\Backup, In Quarantäne, 3672, 178839, , , , , , 
PUP.Optional.PCSpeedMaximizer, C:\Users\Schilling Family\AppData\Roaming\PC Speed Maximizer\Undo, In Quarantäne, 3672, 178839, , , , , , 
PUP.Optional.PCSpeedMaximizer, C:\Users\Schilling Family\AppData\Roaming\PC Speed Maximizer\Log, In Quarantäne, 3672, 178839, , , , , , 
PUP.Optional.PCSpeedMaximizer, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\PC SPEED MAXIMIZER, In Quarantäne, 3672, 178839, 1.0.67783, , ame, , , 
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data, In Quarantäne, 1508, 179000, , , , , , 
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\tmp, In Quarantäne, 1508, 179000, , , , , , 
PUP.Optional.PriceGong, C:\USERS\ELTERN\APPDATA\LOCALLOW\PRICEGONG, In Quarantäne, 1508, 179000, 1.0.67783, , ame, , , 
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data, In Quarantäne, 1508, 179000, , , , , , 
PUP.Optional.PriceGong, C:\USERS\HENRIKE\APPDATA\LOCALLOW\PRICEGONG, In Quarantäne, 1508, 179000, 1.0.67783, , ame, , , 
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data, In Quarantäne, 1508, 179000, , , , , , 
PUP.Optional.PriceGong, C:\USERS\SCHILLING FAMILY\APPDATA\LOCALLOW\PRICEGONG, In Quarantäne, 1508, 179000, 1.0.67783, , ame, , , 
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\mz, In Quarantäne, 2924, 179770, , , , , , 
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content, In Quarantäne, 2924, 179770, , , , , , 
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\skin, In Quarantäne, 2924, 179770, , , , , , 
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome, In Quarantäne, 2924, 179770, , , , , , 
PUP.Optional.SpeedAnalysis, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\MOZILLA\EXTENSIONS\speedanalysis@SpeedAnalysis.com, In Quarantäne, 2924, 179770, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\Local\Conduit\BackgroundContainer, In Quarantäne, 112, 182116, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\Local\Conduit\Community Alerts, In Quarantäne, 112, 182116, , , , , , 
PUP.Optional.Conduit, C:\USERS\ELTERN\APPDATA\LOCAL\CONDUIT, In Quarantäne, 112, 182116, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\Local\Conduit\CT3201318, In Quarantäne, 112, 182116, , , , , , 
PUP.Optional.Conduit, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\CONDUIT, In Quarantäne, 112, 182116, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\localStorage\appsFiles\2d2f2f16-9432-4890-9f93-624a84cf6261, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Feeds, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\localStorage\appsFiles, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Log, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\localStorage, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\USERS\ELTERN\APPDATA\LOCALLOW\CONDUIT, In Quarantäne, 112, 182117, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\localStorage\appsFiles\2d2f2f16-9432-4890-9f93-624a84cf6261, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Feeds, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\localStorage\appsFiles, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Log, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\localStorage, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\USERS\HENRIKE\APPDATA\LOCALLOW\CONDUIT, In Quarantäne, 112, 182117, 1.0.67783, , ame, , , 
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Feeds, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Log, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts, In Quarantäne, 112, 182117, , , , , , 
PUP.Optional.Conduit, C:\USERS\SCHILLING FAMILY\APPDATA\LOCALLOW\CONDUIT, In Quarantäne, 112, 182117, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\BONANZADEALS, In Quarantäne, 1380, 182138, 1.0.67783, , ame, , , 
PUP.Optional.BonanzaDeals, C:\PROGRAM FILES (X86)\BONANZADEALS, In Quarantäne, 1380, 182151, 1.0.67783, , ame, , , 
PUP.Optional.PCSpeedMaximizer, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\PC SPEED MAXIMIZER, In Quarantäne, 3672, 343976, 1.0.67783, , ame, , , 
PUP.Optional.Conduit.Generic, C:\PROGRAM FILES (X86)\CONDUIT\COMMUNITY ALERTS, In Quarantäne, 7214, 443543, 1.0.67783, , ame, , , 
PUP.Optional.InstallCore, C:\Users\Schilling Family\AppData\Roaming\0D0S1L2Z1P1B\PDF Reader Packages, In Quarantäne, 91, 468080, , , , , , 
PUP.Optional.InstallCore, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\0D0S1L2Z1P1B, In Quarantäne, 91, 468080, 1.0.67783, , ame, , , 

Datei: 755
PUP.Optional.Bonanza, C:\WINDOWS\TASKS\BonanzaDealsLiveUpdateTaskMachineCore.job, In Quarantäne, 4200, 183576, 1.0.67783, , ame, , 5018B531BF28ECAD31C24914F8F5856A, F5B500495AE0CC2E5253F00D09CC050BF76ABDE4B0292194F96FCC99BDF30960
PUP.Optional.OpenCandy, C:\Users\Schilling Family\AppData\Roaming\OpenCandy\E96353E8D0C74285AE3654BEA67A8B19\Setupsft_chr_p1v7.exe, In Quarantäne, 87, 173202, , , , , E2D636A72ED4AAFF0AD3186C0F27EA69, 3552EBD3B9BE41B10CF036FFD20C5D22A8A035C782D9B1B54CC3F48C431C9C79
PUP.Optional.Bonanza, C:\WINDOWS\TASKS\BonanzaDealsLiveUpdateTaskMachineUA.job, In Quarantäne, 4200, 183576, 1.0.67783, , ame, , F59E275AD2EF4269519A2F45F78BE009, A30060FFAE2CE6069217C11CC13150ECB61B1F9D454C02F4ADF20D77F5906939
PUP.Optional.PCPerformer, C:\Users\Eltern\AppData\Roaming\PerformerSoft\PC Performer\eng_rcp.dat, In Quarantäne, 285, 174326, , , , , 3ECA835BE6911B8A2E9A5C7041F5338E, 5B7F517DDEA0D6E325071CBB25791B18DA47AD19C47BC2D3443C8F70958CAE0B
PUP.Optional.PCPerformer, C:\Users\Eltern\AppData\Roaming\PerformerSoft\PC Performer\ExcludeList.rcp, In Quarantäne, 285, 174326, , , , , 7319468847D7B1AEE40DBF5DD963C999, B0F66ADC83641586656866813FD9DD0B8EBB63796075661BA45D1AA8089E1D44
PUP.Optional.PCPerformer, C:\Users\Eltern\AppData\Roaming\PerformerSoft\PC Performer\log_04-03-2013.log, In Quarantäne, 285, 174326, , , , , B1E3560059679ABA54FB70B04C6C8107, 3FDF7126EEA84F93DFD3CFD04FFADA4A7645F02466A906E722134BA27F3CBE5B
PUP.Optional.PCPerformer, C:\Users\Eltern\AppData\Roaming\PerformerSoft\PC Performer\results.rcp, In Quarantäne, 285, 174326, , , , , A302A771EE0E3127B8950F0A67D17E49, 5DCC1B5872DD9FF1C234501F1FEFDA01F664164E1583C3E1BB3DBEA47588AB31
PUP.Optional.PCPerformer, C:\Users\Eltern\AppData\Roaming\PerformerSoft\PC Performer\TempHLList.rcp, In Quarantäne, 285, 174326, , , , , 7319468847D7B1AEE40DBF5DD963C999, B0F66ADC83641586656866813FD9DD0B8EBB63796075661BA45D1AA8089E1D44
PUP.Optional.Complitly, C:\PROGRAM FILES (X86)\COMPLITLY\UNINS000.DAT, In Quarantäne, 3015, 236681, 1.0.67783, , ame, , 08204E85BA5A52F89CC8F017835C1E6D, AD2A6BED4E0AA77B3C4EEEC0A297CF9AFA8CD72000468197EB6C27C61FF8517D
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx, In Quarantäne, 3015, 236681, , , , , A3ABC7F4741708A5790C0A04A7477471, 76B48C29BA3768805740536C65DC67DF13E2AA3A2A9383BD89D750A881358813
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content\appIcon.png, In Quarantäne, 3015, 236681, , , , , 1A112A3F2CAE78A073DAE308F4B70266, BEA746615E19D7398D4AB00373A2503BF336E002D8A6B0E16B2598A186D780B0
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content\browserOverlay.xul, In Quarantäne, 3015, 236681, , , , , 06BBD697505CD1652D6C0DA47C80EB35, BC645EA82A91E13DFED15176A72267B693170019B0F7C12BFDED102BB076D60B
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content\options.js, In Quarantäne, 3015, 236681, , , , , C29DF68B8BC24772AC61504FA1677AFE, F7E349C1408AB33707A91ED93829412A4365C83D6A97D8E4EB926E029FAFCDF1
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content\options.xul, In Quarantäne, 3015, 236681, , , , , 4216DAE17FC46779596B35E4F14B36FA, D4D57BDDFC62081656EDC0060725C1B089ED5B64EEA05CE59F447EDB13ECABCA
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome\content\utils.js, In Quarantäne, 3015, 236681, , , , , , 
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\defaults\preferences\predictad.js, In Quarantäne, 3015, 236681, , , , , AAFCE2CF73CB7BC60C7621893001BA6C, EA2A8545A390026CA4EFED437CA07466FBA2ABE3171D30271000A20AED3440E1
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\chrome.manifest, In Quarantäne, 3015, 236681, , , , , CEC02E3F71671E91A21B6D74B8C2BC96, 3BD2459E9F65F3902F33594AAEFF6E0A45F6884F1B0ED3AD17960DA626F96953
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\support@Complitly.com\install.rdf, In Quarantäne, 3015, 236681, , , , , E74FF9E3A66C91A79280EEDB4CB3623D, 1737FDBFE8D5084D756EFE10FDEFA74843A709AFBE82F79FEF8FFAFD09CA8ED5
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\FireFoxExtensionWithFF8Fix.exe, In Quarantäne, 3015, 236681, , , , , 2D52F0EE90EFF39D4A1A0B99DC4C8251, B0D04B57D22509E27EB7168B3856A0B60099B708102461FC01BA127F134FE664
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\FireFoxUninstaller.exe, In Quarantäne, 3015, 236681, , , , , 53961C179D28C075C5202FFEA1A1CA27, 964395FEEDFA4F5D03CE1AE3EFB72CF4ACED6A401F187305D578CB93936A03B9
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\InstTracker.exe, In Quarantäne, 3015, 236681, , , , , E364D4AC3137D0C11254A57F31B62F0C, DEFE9D734E43121005EB7FCC8A9E27CDCC929BC18462317CDBE8FAA2364ECE2A
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\System.Data.SQLite.dll, In Quarantäne, 3015, 236681, , , , , 80725A732ABA27911402F9CA09FEDE23, 49261BE7F20C9D9DFD1FF35D71E9F3B1B7DE17F65581C67BEED43D933F1EB85C
PUP.Optional.Complitly, C:\Program Files (x86)\Complitly\unins000.exe, In Quarantäne, 3015, 236681, , , , , 27646B03BD2AFE21C34F05CF342D915A, 0F228522A3A240C8B5F868BA5B73FAF5106E079DF5A130040D5D71FFB44F49B0
PUP.Optional.BonanzaDeals, C:\ProgramData\BonanzaDealsLive\Update\Log\BonanzaDealsLive.log, In Quarantäne, 1380, 175693, , , , , 3A6234C6585744FDE935B12657855DB3, BC85D664DC0C35ACE3CAA8FEE91465E55156462ACA6ED71F07551DA3A4F56EAA
PUP.Optional.DigitalSite, C:\WINDOWS\TASKS\DIGITALSITE.JOB, In Quarantäne, 4846, 237776, 1.0.67783, , ame, , E6B907BFFFAB49CCC4AA69090A112BC4, BF7D0DCEF2538B2083470E7819C22C1A3890C398FAAE1C13E0C4106767C26CE4
PUP.Optional.PCSpeedMaximizer, C:\PROGRAM FILES (X86)\PC SPEED MAXIMIZER\UNINS000.DAT, In Quarantäne, 3672, 241606, 1.0.67783, , ame, , 358E41A5F74CB6A5C595AC0B1CF52F5C, 78574D8111CA3D3E6331AEAD7D7BEC38E111D7F8CB0D2E13D9A217F2C0A28E3C
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Brazilian.ini, In Quarantäne, 3672, 241606, , , , , 07ED1BEE7BC80849CAB1432ACEB8349D, FE79FE1CC35FC73AE686A71E1E7CB02BCBA98FB178F08C3333A22C89D37FB6F9
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\BuildsList.ini, In Quarantäne, 3672, 241606, , , , , 59BFA4FF6C32A95929804B82B7198328, DC561BB845D7141E6085E05A767E708DA3E94244C95131782A62B5E872F6CABB
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\CookiesException.txt, In Quarantäne, 3672, 241606, , , , , ADF1E0B95E3F048A59B91541C0528D03, F7C75102D9E51BD13057787717D3C6DFD01ACC1BED231C8F08C97BDFED109FB8
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Danish.ini, In Quarantäne, 3672, 241606, , , , , 490A4544FB01F65938CDD6B63A9ADFAE, 711FFBB06185F3B07EA7351649D31F409EC9EF454A5E4472B0FE6BD0E6B7B201
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Dutch.ini, In Quarantäne, 3672, 241606, , , , , 76B55628D86CF3DCC7EF6F7539D074FA, FD496D34B1884E76FD33CCB0AF387FFF1BCCB64AA4936495132EE7F0BDE133DA
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\English.ini, In Quarantäne, 3672, 241606, , , , , A204502E45F15980AB383B2CE058449D, 31A74F094B7DD5BF22F68F314140761CCE6663EAB678CB568757105224775A33
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\file_id.diz, In Quarantäne, 3672, 241606, , , , , 47CD9567CA5294D3BA2920C9131DF5B4, B12D00AE8960E053B3013180B589627D54EA8F9D6843633DA7A8B8A83AEF6206
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Finnish.ini, In Quarantäne, 3672, 241606, , , , , 9424DFF3C6EBDAEACB570F2B3DF71968, D8CCF268C1E34145903B4BA38E02CA5F1C6DC6FB2679FF85D63839ADB2886E8F
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\French.ini, In Quarantäne, 3672, 241606, , , , , 0AE0FD17C9FD5A6D00DB9854F475EDB3, F1416FEE39042BC22CBA014AE9219B4FCB66821F9AA835EC25AB9093F45BE681
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\German.ini, In Quarantäne, 3672, 241606, , , , , E0F535692C8A22965DA4E5B96235ED9A, 4B926C9ED1680CB58B0728C28B1F22FABC987C7CDB4B205991A70A6DD657C029
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\HomePage.url, In Quarantäne, 3672, 241606, , , , , FB6232B5C21FC949574359BC090A2E29, 613CBC5217D2EBC718CE82E241ADF75B11FBA38777F9FD6B5F7F4D3D80E53DE0
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Italian.ini, In Quarantäne, 3672, 241606, , , , , 4544C4012FF92CE32101FE0CB3A70689, 8DF7001950A0D7A45067627FAEA19A67B4AF74F2302CA85D5908297F812AB9DF
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Norwegian.ini, In Quarantäne, 3672, 241606, , , , , 1BDC78F480895D3BADE15D06E3DCAD16, 9B5ECFE1A5F509AB44DC5319DC1DA91EC4ADDA91F13E3EA73B77DF1635675A0F
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\PCSMSetup.bmp, In Quarantäne, 3672, 241606, , , , , 91648672DB3A2643E28B25EE4BA67787, E242898A837836748CD95F5C6E34FB76E4E67A8ECD1BB08D826022F779E2F8A9
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\PCSpeedMaximizer.chm, In Quarantäne, 3672, 241606, , , , , E7263025631FC2AD0CA10BDC4A18B5C3, 7707F986BED83C4C8FF73D5376AC78922829E3D645C29D1E7B0D76951B2BB4F2
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Polish.ini, In Quarantäne, 3672, 241606, , , , , CB8259A308B1B72E8874B5A50B639368, 1281A50454935563E0CAAC76859D51C61629FC8268863838430A3EE61F20B33A
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Portuguese.ini, In Quarantäne, 3672, 241606, , , , , 3126770D35E9CE56C64976ECB91E78F2, 704814C367C37E3B2F5C211714B87FE8FAEC0ACFAD60C6E11D5A37B51853E459
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Russian.ini, In Quarantäne, 3672, 241606, , , , , 5ADC9C72B225826BFC6103059654CFE7, 6AE74DAE94CD9377FBF01515F8323A4D5E5B0175360CC244C2C521436C6322A1
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\scan.gif, In Quarantäne, 3672, 241606, , , , , 6858A1CE31E5F92785FB525CE9725B8A, D576F0C14F855954701B054D625F7A95A5BFCD97ACE82D83A4F00BDA7A4CC908
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Spanish.ini, In Quarantäne, 3672, 241606, , , , , A262C31C3095DF2FD130A5797E71DD77, 4B996C72D51B476CD4EF175A737318E105497A588780A0D594C0A99DF8EAA420
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\SPMGuard.exe, In Quarantäne, 3672, 241606, , , , , 4252F0A5373731EEE9075045455B43C2, EA655AF7CAC9E46CBAFB047021965764D0453A127EA5BFB860089A1167873275
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\SPMReminder.exe, In Quarantäne, 3672, 241606, , , , , DF4DA50D888D71385B99ABEE46D9FFC1, 9E8CB1EDBAA4EEA3FAE10D36212A8832147DD3DC8A2873F8D46621323B0F64E5
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\SPMSchedule.exe, In Quarantäne, 3672, 241606, , , , , 3B90014D4F121900BE297EBC6EF35335, 38243EC1FCF7B7CA82465B3CFDB46B57D895AA2303C0BD3433F0A699944A9573
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\SPMSmartScan.exe, In Quarantäne, 3672, 241606, , , , , 6F4FA78DFE3416A8837EC6AB8388D675, 82C0C957AAE5F0EC256D910E4F5AE8E1046C770E49D5F8E3D87D8B118040EA90
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\SPMUninstaller.exe, In Quarantäne, 3672, 241606, , , , , 10F2CA057BC3A4D72FF20E7293E13DD3, 089AB265F72DA56077A87BB04FA0EDC14C32ECB613AFEA1118658217E5CC90EB
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\sqlite3.dll, In Quarantäne, 3672, 241606, , , , , 0F66E8E2340569FB17E774DAC2010E31, DE818C832308B82C2FABD5D3D4339C489E6F4E9D32BB8152C0DCD8359392695F
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\StartupList.txt, In Quarantäne, 3672, 241606, , , , , 7375C084A9F65CB3C411BC09124FBA94, 3E0C53A22B6570F9FF2AAF19C4C6CAAD2970F86FE53D958396754EA1349DA647
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Startw3i.exe, In Quarantäne, 3672, 241606, , , , , 4AA9C233F2959C244E4E1288E3BD56CE, 9A8BFB54ECE437BD63B8096FB3A9E1A8F5DCBCE10FEA04EE79BD51924CF1691E
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\Swedish.ini, In Quarantäne, 3672, 241606, , , , , 8FAFC73554E02D09AB70169255EEF28E, 9DCDADF8E2FD85C0352D88528873BE33640F624EF91093128C43CA462BF6B191
PUP.Optional.PCSpeedMaximizer, C:\Program Files (x86)\PC Speed Maximizer\unins000.exe, In Quarantäne, 3672, 241606, , , , , B593AADDE88473C5E67EBC0812E5FB30, 17E62913FA8ED07DFC314D5009514AB67D5891657F342504DDBDACB754C76D44
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Roaming\Complitly\64\KeepMeUpdated.exe, In Quarantäne, 3015, 176148, , , , , 6C0DF6A6B687358008A09A203CB3D767, 262175E1053C76D37B884E442E1C0B7F44A22E3FE5E5A63FC608FEF1D187A31A
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Roaming\Complitly\KeepMeUpdated.exe, In Quarantäne, 3015, 176148, , , , , 6C0DF6A6B687358008A09A203CB3D767, 262175E1053C76D37B884E442E1C0B7F44A22E3FE5E5A63FC608FEF1D187A31A
PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\128.png, In Quarantäne, 3015, 176151, , , , , F6BB25608413F7A376E729832742ECCB, AC8E5ED28DAA1E05AAE41A51B49BF2EFA8023A148065A1BEBF93F9495DB5CE53
PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\16.png, In Quarantäne, 3015, 176151, , , , , 0B1908B2FD5AFFC2EB1AC656EF966CB8, 1D6F6171FB7AEC1DCB02F5D2653E90D49B7DF7389D0C07AED1B252BB32F8BBA0
PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\256.png, In Quarantäne, 3015, 176151, , , , , B46C2A964948B821E134BAF30CF39A6B, 2AEA5036627CA318CCE856A4500037E8B5BF4EB1E6F2B5FBE49B37458A555EDE
PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\32.png, In Quarantäne, 3015, 176151, , , , , D64F985251FCC1630564C563E4C2447E, 347D5738896C01FBC7D9206176E82067BFFA41486D02258CF7FF358DE9B6B395
PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\48.png, In Quarantäne, 3015, 176151, , , , , 8FDF35DDDE1CD7B379A90E7F22DAB853, 76C940D85582C411D2C6387E4AFD45B105641A6B6DD68644C862CD4B1FBB06CB
PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\64.png, In Quarantäne, 3015, 176151, , , , , DBB1463E8A0730C79C965DCF59C12911, 51130F1FC548E5DDD3E1572F7BB9836CC115EC53C80F7CBFBD9A9939DA86CA2C
PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\bg.html, In Quarantäne, 3015, 176151, , , , , 080E612CC21B4D5F4516027C724C548E, A6C82BB4B32CAF5BDE2328FF97A4003D1BD695DBA7AEB390649C04743098FA26
PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\contentscript.js, In Quarantäne, 3015, 176151, , , , , 4B8D987AB90FE7E8E3CBF533261CE905, 81686BE39BB064D11FA081B8966D3B1ABBF3699446224301F89C1F41640B84EC
PUP.Optional.Complitly, C:\Users\Eltern\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\manifest.json, In Quarantäne, 3015, 176151, , , , , 13A35ADB85C861EFE57905476F12A0FC, C57321A12E6006A935592A1C459BADAC4BA254ACCDA983028266AAB2DFCE0421
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\128.png, In Quarantäne, 3015, 176151, , , , , 71E94983804AB94BFAFC0F31ED09FC48, 2E8F7377ADAFD4E2E6B4D9F7422EC6A8AB49C4C56A0E7F8DE8BDB438FFD75980
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\16.png, In Quarantäne, 3015, 176151, , , , , DD1BF5203CA2D7985D1DC86C8EBA19DA, 86883AE5B5707A20162B748BB4103D634EC0A92BFDA3F435766B7494EF68ECAC
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\256.png, In Quarantäne, 3015, 176151, , , , , A36B751A35AE3308041E9B71B4058D93, C5EE22E9974B682F7E79AA70E9FDFDBC5A8029CB8C9E621360C36DB3184D5A1A
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\32.png, In Quarantäne, 3015, 176151, , , , , 979BE937DD4790CFBD4252EDBD75B6ED, 45A74E8714719723C4ED273DC35B45E5F70801069FE580996A58C7F9C34547BC
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\48.png, In Quarantäne, 3015, 176151, , , , , 5438576A3FCD2E9A3C5DE8F18409DE1E, C75438CD2169030A02B2BC65204D9BF676F55994939E6B10198C75E5F3331F3B
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\icons\64.png, In Quarantäne, 3015, 176151, , , , , 93504D38836D9468B64E8584D81346E5, 1EB9BDCD75255E38118786A542184E06B0115B587B1558373D3FF06B6E6AC0EB
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\bg.html, In Quarantäne, 3015, 176151, , , , , 080E612CC21B4D5F4516027C724C548E, A6C82BB4B32CAF5BDE2328FF97A4003D1BD695DBA7AEB390649C04743098FA26
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\contentscript.js, In Quarantäne, 3015, 176151, , , , , 4B8D987AB90FE7E8E3CBF533261CE905, 81686BE39BB064D11FA081B8966D3B1ABBF3699446224301F89C1F41640B84EC
PUP.Optional.Complitly, C:\Users\Schilling Family\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda\1.1_1\manifest.json, In Quarantäne, 3015, 176151, , , , , 13A35ADB85C861EFE57905476F12A0FC, C57321A12E6006A935592A1C459BADAC4BA254ACCDA983028266AAB2DFCE0421
PUP.Optional.FLVRunner, C:\Program Files (x86)\FLV_Runner\GottenAppsContextMenu.xml, In Quarantäne, 2746, 177202, , , , , CE0449AC66B68DD896965167D460B135, 2BD5FE03A596D7F710D96519F26EC939DC8FE0050FA7B81FC374F70542663F50
PUP.Optional.FLVRunner, C:\Program Files (x86)\FLV_Runner\OtherAppsContextMenu.xml, In Quarantäne, 2746, 177202, , , , , A9CAA49F5C0DDD88168E857E3670EBDF, 9F8A27EAE626D22DAD3E03924C901377F0EC867053692C9DCCE1BC168E4F5948
PUP.Optional.FLVRunner, C:\Program Files (x86)\FLV_Runner\SharedAppsContextMenu.xml, In Quarantäne, 2746, 177202, , , , , 6816D08A668E0D9A3A79831400177C04, 4FEE6BF88796021D856F865E44BBB2807447E99615430D07BFD29DBF3A009DF8
PUP.Optional.FLVRunner, C:\Program Files (x86)\FLV_Runner\toolbar.cfg, In Quarantäne, 2746, 177202, , , , , 1B7DACCBAD0E677C1CE7AEDA637152C5, 9CFC24ED1D0DA443D5A0333BAF84D1BBDC281FAB59D7280243A20960A04F26A7
PUP.Optional.FLVRunner, C:\Program Files (x86)\FLV_Runner\ToolbarContextMenu.xml, In Quarantäne, 2746, 177202, , , , , 815C07C40CEC4CF53861DA7A7C6EC639, 960F1E3B2703DB7CE51BD76F0F8A3D377B5C63F29773857AF7CF9F8D621EBC18
PUP.Optional.UpdateProc, C:\USERS\SCHILLING FAMILY\APPDATA\ROAMING\DigitalSite\UPDATEPROC\prod.dat, In Quarantäne, 5207, 244360, 1.0.67783, , ame, , A61C1B27F2CA2276B87FA7ACD59007ED, BFB035032C34B929B6A468590E75C5C733D081B72257F44FF58CD7E437E4B4DC
PUP.Optional.UpdateProc, C:\Users\Schilling Family\AppData\Roaming\DigitalSite\UpdateProc\config.dat, In Quarantäne, 5207, 244360, , , , , 9F15763BB30976D39D9F82DC1741FB64, AB5882CC04CF936442023773667FD8AFEBB68FA7AEA9CFB49BDE6E5EA1C3D825
PUP.Optional.UpdateProc, C:\Users\Schilling Family\AppData\Roaming\DigitalSite\UpdateProc\STTL.DAT, In Quarantäne, 5207, 244360, , , , , 8EA5C12C59CD338FCB9490FFE7AA37E0, AE5DE77CC18C19175A519F0B1937BC31159311EC380D35F62CB76A0474CC1679
PUP.Optional.UpdateProc, C:\Users\Schilling Family\AppData\Roaming\DigitalSite\UpdateProc\TTL.DAT, In Quarantäne, 5207, 244360, , , , , EF8446F35513A8D6AA2308357A268A7E, E5E53C784D5D49DE1CABB6E904BF3380026AADCB9769775A268DD304DD9AA2DF
PUP.Optional.SofTonic, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\LOCAL STORAGE\http_search.softonic.com_0.localstorage, In Quarantäne, 210, 256877, 1.0.67783, , ame, , F353360D74D4532256CFF2BC1D810699, 5F589A84B3155C7C528D43A0D881FD695B61BEB5AEA4E7328A1E55A5C104D149
PUP.Optional.SofTonic, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\LOCAL STORAGE\http_search.softonic.com_0.localstorage-journal, In Quarantäne, 210, 256877, 1.0.67783, , ame, , BF619EAC0CDF3F68D496EA9344137E8B, 076A27C79E5ACE2A3D47F9DD2E83E4FF6EA8872B3C2218F66C92B89B55F36560
         

Geändert von Skipper39 (09.04.2023 um 21:52 Uhr)

Alt 09.04.2023, 21:50   #13
Skipper39
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



Code:
ATTFilter
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calculator_gif.gif, In Quarantäne, 2746, 177204, , , , , 1A7E6B0492BC10D028AEC63C056BCB2A, 2B774950106B073BE6CB1177712550DFBC8F6042460E890348CBD3907D5F8E75
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calculator_sci_gif.gif, In Quarantäne, 2746, 177204, , , , , 3F3AEF2AF80BAF7902F242BAC1F6EAFE, 4B3FB6283A490EE94CB587C20052BE70A998129A86294906C30A1A68A501A741
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calendar_png.png, In Quarantäne, 2746, 177204, , , , , 24B8E06632E70AEC654193135091B152, D22B7CF6594D85D942763EBE8E87E36B5C05D09CE11F3A25C599DA4872631B0B
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calories_png.png, In Quarantäne, 2746, 177204, , , , , 69A35DA7D3AE145D859AE5817B43212E, 4F3CEEE36C70E2420280B2C3408DD5B79320672ADCC99FD6E54E0A224D7CB0B5
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_clock_ico.ico, In Quarantäne, 2746, 177204, , , , , A8167C3A39DE38F1B3E37610CEDFF686, 93CFEAD179B08CF4A7941CEC3F60BAED70A546E7846426F7A2D1B62BED82DDC8
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_clothes_ico.ico, In Quarantäne, 2746, 177204, , , , , 8E511F837C57E857E0538752A3174D5B, 91C83BF2C7D56562A63E69FBEB133183ED61B19BEE0FB196350796E9B678A4E3
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_coins_png.png, In Quarantäne, 2746, 177204, , , , , DCD59CAAB29B2276CB60641409059800, D3DDD0DE45E88EC5975F3E42A5A28F049CB57E83AE478CB1592490132FA6C6D4
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_datecalc_ico.ico, In Quarantäne, 2746, 177204, , , , , EE567735CBD5F50784DA4433B1A5EB98, BBA9737A5107607BDB79E32370D14F0594519B9493824C2777E71ACF5C9E262D
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_fileconverter_png.png, In Quarantäne, 2746, 177204, , , , , 16F9DB97AAF05299F531BA56DE05F7D6, 1C7534DB6E40B7172A36953438078ACC0A46D697383B4D263BC6386B50E1C8EA
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_map_gif.gif, In Quarantäne, 2746, 177204, , , , , E6B65891B44CB67BC504745B8DE150D2, D136513B3A701A61C0F3AC92ECFB391E4D21FC37745A9049A8974DD22BB4E4BB
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_spellchecker_png.png, In Quarantäne, 2746, 177204, , , , , 5DFF9E69E0933B99AD33BF641A2F6248, 39DED9E8B9D047BE2F704B189CC7DB1030A7C9577D10E73DECEA258E88A5271D
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_stopwatch_ico.ico, In Quarantäne, 2746, 177204, , , , , 3CFC9BE6DE039F17A1C9EE7DD1D59955, 798A77B791F376168E52FCBF0781F1DD625D57B5C77CE3B322A7D325495EC6FA
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_translator_png.png, In Quarantäne, 2746, 177204, , , , , F18D6D5204CB35F54FBDB293F24F491F, B3BC8FA221E9C386C00CC8EC6AFB1EAD798BAB0C0728B2997BAC55A91954337A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_unitconverter_gif.gif, In Quarantäne, 2746, 177204, , , , , 78F9B0691783729E3BDB7B43E6549400, 07DD95C2DBF6A1F4566EDCA9552209F42BE846D5A152045F69FCB02BBC27AC4A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_widget_png.png, In Quarantäne, 2746, 177204, , , , , 7786863E04E906A21DB8AEC16BDCED1D, 2BAD427009D6E681B96F7DFC7B2864816011574F06E54A59E94C240869CDB9FC
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_worddef_png.png, In Quarantäne, 2746, 177204, , , , , 6624397E92BF545B51D9CF112C0BC823, 7A46F144CE7A72A8A5C5360065874D1BE78BAB6A78550021ADD0A84EAEA358B6
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_todo_img_favicon_ico.ico, In Quarantäne, 2746, 177204, , , , , E2717A85F61FB59C604F05A29CCF10B9, F65CA71120455E0905A76598C385B5682A8E864EBECC135F184ED9BBD3F1C00F
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_16_319_CT3196716_images_635082718918012385_24PX_png.png, In Quarantäne, 2746, 177204, , , , , DB7B471C8CC0F7E2D8DD61D4A94BAAB9, 500FF5DF15458BEC0E542245C73D67CF1070F95056C533AFAE6EBCF0884B375C
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_18_320_CT3201318_Images_634688351076901355_png.png, In Quarantäne, 2746, 177204, , , , , EBEB7FA24C02CFF6CB1FAE4746C5017B, 400210211E44A6E734C4387334EBFF5EB152CDCB1BF7274A2A2DE5A695616DDC
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_18_320_CT3201318_Images_634770106353717500_gif.gif, In Quarantäne, 2746, 177204, , , , , 32CB1985EEF98ABD790A7098FA8F85A6, 09EB1558EB439254F8135F475FD89CA9A3AF8228B2982925E1E26271C34EAC19
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633590750635300000_gif.gif, In Quarantäne, 2746, 177204, , , , , 13485B11123192C02E94DCDB99EE273D, 687C87AD74ADBCB714C676A447BAB89555502BDD652343361C0D028FC10C67AA
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633590751044362500_gif.gif, In Quarantäne, 2746, 177204, , , , , 2E545DAC1D7D0AA651B763530C1024E1, 8875BEA27749154F2461225E4E916F786CB39F2A8625454FD5E6172FCB733D89
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633590751926237500_gif.gif, In Quarantäne, 2746, 177204, , , , , 311E103C22854F5DD8AA1767E248BD39, 2603D322E3690339D9C945D6AB9F8540DB849A7EE3EA542CABE784DEFE45B61D
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633590752453893750_gif.gif, In Quarantäne, 2746, 177204, , , , , C1645838163893576AABC3B474F4807A, 5952745DDEE393C1AA28633D6F130971AA1D78824F95B0A4B4F681CF5F0A04D9
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633590753577643750_gif.gif, In Quarantäne, 2746, 177204, , , , , 58F91A9328FDCE8949CAC0CB71B635E4, 584436DBF8CCEC153C4A87DA8A75FD2F3BC893F801C83B941A81F4D581ECDBD9
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_633629754211018750_gif.gif, In Quarantäne, 2746, 177204, , , , , ADC9632CBA729C91BF14DA372F26E507, 04ACA121C53E5327E992954FD76A82BF280D0A10F95926E143D722E34D98C992
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_Email_xml-10-Classic-633439771938243750_gif.gif, In Quarantäne, 2746, 177204, , , , , 98A6A440A943BAC09445ECBB40E79EB1, 22BD80FF19C7D9E41B59239EBB45586C9B2BB978F4F160EF9A08800810AD1EBA
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_SearchActivationButton-go_but01_gif-General-633629754908675000_gif.gif, In Quarantäne, 2746, 177204, , , , , D98754949232C20B38E52EC493111E9F, E8F4F0F2EF4AF6B4B536C2DE3891BC743F2073064E212D08C90D8B809FDFD11A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_commandcomps_block_gif.gif, In Quarantäne, 2746, 177204, , , , , FF164EABA285C2E614EBFD967FEF9732, E887DF7BFD20AEFD24E99A0BE0D08FD315C2EAEAA4E07476CE6041D4F64C6C5A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_calculator_gif.gif, In Quarantäne, 2746, 177204, , , , , E7ACB20C8E56B1EFAD7DED3DC4DE35F5, 80632FBB53D696A8ABD7CDECAB34C6CBF520859B5B0DDA3D0869CBE90F7F8699
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_excel_gif.gif, In Quarantäne, 2746, 177204, , , , , 68D5FB9046516B872BEB1AADF30EA86B, 2E08DB89C1A09E18492E0DE72265070741384E363F4EF57E2698B9576286D001
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_MsAccess_gif.gif, In Quarantäne, 2746, 177204, , , , , 095BEB6B08F7F24F33F56C56096BFD12, C7889E9AF456C55324D0AF7B5C1227F9346836032DD61E8B7758988296507141
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_msnmessenger_gif.gif, In Quarantäne, 2746, 177204, , , , , A3E464E993C0C45AF0D94BD84AE3C5F8, BED8743F49E9B150137AE8224FB49FDDCCF2114EA4FA7CF89FE88295974EA289
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_notepad_gif.gif, In Quarantäne, 2746, 177204, , , , , 077089FFB4BF6554C885B0F49A4BE6C5, FF71C7D4E6168D0E953A885E0754E78F1E2BBEBC52931B9B6EEFB878785C6C5A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_office_gif.gif, In Quarantäne, 2746, 177204, , , , , 9882F9A7CFAD12AC3CCBA0B17D4EE1DF, 815A4DE7F57A6ED72C752AAEED3047C1D5873493188DDE9A2859CC6A7C764160
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_OutlookExpress_gif.gif, In Quarantäne, 2746, 177204, , , , , 4F7BC53CDB2B21F96C251C1F1AC19BAF, 52E81ADA3C16C5E44F8330E9BAF5CEFD4EB63CE96C5E0D421ACCABF7AC55B558
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_Outlook_gif.gif, In Quarantäne, 2746, 177204, , , , , 6ECB8335D7BDE23A66A49235DEEA9BF5, BA3D7D30604B0D4040CE6FD66D146A4B57F80B31C885BD43EB1D87093676BB07
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_paint_gif.gif, In Quarantäne, 2746, 177204, , , , , 42EBAF2F8410D0967D65522B561FED25, 14A7B69FDE56631B4F22A91C37322958821F659B41A3CE968ED436D6277061F2
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_powerpoint_gif.gif, In Quarantäne, 2746, 177204, , , , , 268465ED967348C69F50412768DE13C6, 11DCE19AE4612A0CD3A4C85AFCE4916BD29AD949A2F655989E15C99C153CAAC8
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_RegistryEditor_gif.gif, In Quarantäne, 2746, 177204, , , , , D8F68ED8F0AF6D52089C29343EB66A6C, 0669C83EFB3AE614061DE21FF8924989AE43FD3B4E06D74AB9560BBC1DE31A94
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_winword_gif.gif, In Quarantäne, 2746, 177204, , , , , CD58F4779A272B7C41D0830BA80B772C, CAF8BB0F76CA2AB8EA8C9B0F541B2F9B64B631E846AECA57344A16B90592D645
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankimages_CommandComps_WMPlayer_gif.gif, In Quarantäne, 2746, 177204, , , , , 0E1907FEDB863CE6BB19A4580DC6B418, F7CFCC37D3FCA531BAEA9163DFAB1CE8B7620317E2ADE804788BDDCEBACE2DEF
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_About_png.png, In Quarantäne, 2746, 177204, , , , , 99D5F75C338F2A877CBF891E0F18746E, 1DB19F8F95EED4B2F2C2845C320FE8F2DB4E2ACEF959D0105ECD7502D3440FA0
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Browse_png.png, In Quarantäne, 2746, 177204, , , , , F2291FAB46ED9291A1A2FFE9F88E9D84, 39E9D22A1AE7377AA7F03E07A3FF8E5ABF51C1CE13A71E16053824BD8805B85B
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Contact_png.png, In Quarantäne, 2746, 177204, , , , , A847C5F6CE2C700048749892DD2E0619, 1F350432752BC9BABDFA133871B5019F79F0BE32ACF56FC7FD1ECF8FA30CD7BC
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Hide_png.png, In Quarantäne, 2746, 177204, , , , , FED9E00C76F647EE6A0B7CC684C89F0C, 1B476BDD92C2B29A15D1C41BF5343500095514FD283B30D8D04ADA337B8DA6B9
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankImages_ConduitEngine_ContextMenu_LikeIcon_png.png, In Quarantäne, 2746, 177204, , , , , 36BD416D16391EFAAAFB2C3C54EAE986, 9A34261683F03AFDCD13683580F43BA45449B8D0336F7DB574EE3833CFEFA9A3
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_MoreFromPublisher_png.png, In Quarantäne, 2746, 177204, , , , , 943ADFD9E0DF1507F7BC419802BF4303, 838D658A4E1BC0D85A54C47211FC8C13A695D2E4DA63B28AB9F9305B785A5D6D
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_More_png.png, In Quarantäne, 2746, 177204, , , , , 36C6FB9C84D4AF5C5D7C5B277A0E4A01, B92357BFD011205FEB03F2D78E5D560993A19970C0B06346C057F7154CBFDC97
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Options_png.png, In Quarantäne, 2746, 177204, , , , , 275C9DA2D536F18F528C80E050C3D705, B8FE2DCC9F4CF3A165E1E6AF9C74DE8E1ABCA7C2F11ADD52E9242E9421FDC2E1
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Privacy_png.png, In Quarantäne, 2746, 177204, , , , , 3AD88BD8E832DA39FAAEDF07AD595F94, FF9FF228132810D4E8B195E977EEC38BF0F1D7764B962793CB2394047289FDE1
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Refresh_png.png, In Quarantäne, 2746, 177204, , , , , 650731EEF807C292E699779B12CBE552, 251C465549555F06EF64103A7577A2C35E27904FE00FD79A50ACB0FE045FD67D
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Upgrade_png.png, In Quarantäne, 2746, 177204, , , , , 9B4D914888BCFFCBAE6757A0E450551C, CAE27562716D6FA19F8886CC610182AF35895D3DD4A9ED6A4B2B44DFD0197657
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_BankImages_Facebook_Facebook_png.png, In Quarantäne, 2746, 177204, , , , , 1805E8470C0EE167396751BA3E9B0AAA, 1222C9EB5400F5FDE4AE810240B96A705831AF8E559C1BBD54E448D66A467188
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_ClientImages_radio_gif.gif, In Quarantäne, 2746, 177204, , , , , 01B83C91554738F6AFFB7895BBBA73FB, B3665EA0A7CBD7F507C6EFE20C397BA830F0043B153827D1DCD101F208AE6D9B
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_Images_ClientResources_mini_browser_gif.gif, In Quarantäne, 2746, 177204, , , , , EE3DCA0EABAE8D7DDEAC14E36B1142CD, CE7BA469C1F33DC1E087F3B9516EE09543CC8C1BC92F60DE8E2B9260F8CA776B
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_eula_png.png, In Quarantäne, 2746, 177204, , , , , F43944209A64CCD0C9B5A92743F0F787, E61C14D116319601BCD0DC095EE2E8A1E064A8DA20E8280A2BE266F9EFB14D89
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_about_gif.gif, In Quarantäne, 2746, 177204, , , , , EC3C2B4E0DEC4D880BAFF88ABBF94188, 1C7438C8F94DB6D015672F254B755F539D86D675B37A2FE0D6FD95293F528BFE
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_clear_history_gif.gif, In Quarantäne, 2746, 177204, , , , , A9E001CBC00B06B121DFBC80707F5298, 2B8C1604B4F038882949280301026F13F7267709B682C8DE54ED86C11FAEA0FF
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_contact_gif.gif, In Quarantäne, 2746, 177204, , , , , 15DEF39E438E807E2F0E22D44FDC7FB7, 9519268B2D9F87F4C9B6ED82669705903A5334C5F96ACE760E8FB07C783F68B5
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_help_gif.gif, In Quarantäne, 2746, 177204, , , , , 995595D4C685D659E8F03CD0A287EDDF, 5621F6CEF155DB4F5A50AA245596591369BAB728B92EC820AE062285BAD3EDEC
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_home_page_gif.gif, In Quarantäne, 2746, 177204, , , , , AA39D8A6B65E208901EBA9F3D4728D3E, DEA3E1E10D9A399FF13DC35A9B7A3F491155D4AD1ED39A8D132C8AD2F0CA0AEF
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_options_gif.gif, In Quarantäne, 2746, 177204, , , , , 464E244E7E2F27FB85E0C3AB69D72104, 9C6D0AA0C1C5CE456C60FFF511D76A28B68AA1E36282ACFCB112560453E068C5
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_privacy_gif.gif, In Quarantäne, 2746, 177204, , , , , 6427565C7105DC497287866100F260BB, 122A82AE9C1F450875CB1734CFADE638DD18468C47216A5121AD15034BBFFD5C
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_refresh_gif.gif, In Quarantäne, 2746, 177204, , , , , AE7C9F67594A84B096D225601ACB0B2A, 55831B9D34119A8C48BEBBE2BF71DE3124FB0FB30AB22429DD3A1137D24E3026
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_shrink_gif.gif, In Quarantäne, 2746, 177204, , , , , C3EBA0237D68F665AF6D663906221092, 59AC274AEC9386E0ED6CA2E816B24080FE8EDE2AED8A6E811FAD1E8C602FD320
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_upgrade_gif.gif, In Quarantäne, 2746, 177204, , , , , 8BE02D510B4B2E05AD2611B1E9A0BD56, 66EED2D662211BB59A4DB21DA15AC83FC1D07C1200DCC0C4E01A449E9A03FE9D
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_Menu_uninstall-icon_png.png, In Quarantäne, 2746, 177204, , , , , 80648ABDB2DEB2D53DBFD77D57A9C886, 64980FB23863921B0740D26818B64F0885C1D5B5549FCF4DD55B5EFEFAC54B81
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_dictionary_search_gif.gif, In Quarantäne, 2746, 177204, , , , , E69C08AFA2BE65DEDC462A2B5AD24DAE, A3CA972B4ACF618DEFB5DB4FF2129A87BEEA374D4E8A23CFA4A2DDE1590E5CC0
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_ebay_search_gif.gif, In Quarantäne, 2746, 177204, , , , , 44A5718F3E1C5785F969C82B2C1D0904, 3C8BDD8CCCC963A95FAB52F0E92D876421B9E9C6FDE5630831130A36E55E9428
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_encyc_search_gif.gif, In Quarantäne, 2746, 177204, , , , , 64134CF20CCCE87340B53E9C73AF105E, 64532497DEB06E1DFB849B8ACBABB474618BDD4DE9CA9D4F180AAFF7EC54415B
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_images_search_gif.gif, In Quarantäne, 2746, 177204, , , , , 66018EAE0906C9831A821CAE5D1089BB, 58503BE96C68DADFE55393CEAC737333AF5F79F9066524CB497EB0DECC9FA96E
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_news_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 84896837EDB1A78C14DB6A2F3A0AEE3A, 46FD799A9A390D79DB83B6C0EBD28AE8610CF51F28F0C8EEE04D5BC1229C3966
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_searchengines_search_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 948781E4B6478290050ECA4423B89B1E, D09EA480C0CE6FFDA2BCC94B2B01458E48CD62161EADFA846FE69178111D61B2
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_shopping_search_gif.gif, In Quarantäne, 2746, 177204, , , , , 9AC6288F268598A1A29B2295CEBC7C3D, 8FE72B4269D47551C8BA6EE86C708E4FD663F98956FCCB5812C86EAD755112B4
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_SearchEngines_weather_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 04E3A42E439747474D80EC47A083B76D, 0A6FD1CE86D228C4FFB56AA14631672937C8BCEEC0C357D9811724CAAA759B52
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_16_319_CT3196716_images_635082718918012385_24PX_png.png, In Quarantäne, 2746, 177204, , , , , DB7B471C8CC0F7E2D8DD61D4A94BAAB9, 500FF5DF15458BEC0E542245C73D67CF1070F95056C533AFAE6EBCF0884B375C
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_18_320_CT3201318_Images_634688351076901355_png.png, In Quarantäne, 2746, 177204, , , , , EBEB7FA24C02CFF6CB1FAE4746C5017B, 400210211E44A6E734C4387334EBFF5EB152CDCB1BF7274A2A2DE5A695616DDC
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_68_300_CT3008668_Images_Email_xml-10-Classic-633439771938243750_gif.gif, In Quarantäne, 2746, 177204, , , , , 98A6A440A943BAC09445ECBB40E79EB1, 22BD80FF19C7D9E41B59239EBB45586C9B2BB978F4F160EF9A08800810AD1EBA
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_68_300_CT3008668_Images_SearchActivationButton-go_but01_gif-General-633629754908675000_gif.gif, In Quarantäne, 2746, 177204, , , , , D98754949232C20B38E52EC493111E9F, E8F4F0F2EF4AF6B4B536C2DE3891BC743F2073064E212D08C90D8B809FDFD11A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_bankImages_ConduitEngine_ContextMenu_LikeIcon_png.png, In Quarantäne, 2746, 177204, , , , , 36BD416D16391EFAAAFB2C3C54EAE986, 9A34261683F03AFDCD13683580F43BA45449B8D0336F7DB574EE3833CFEFA9A3
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_ClientImages_radio_gif.gif, In Quarantäne, 2746, 177204, , , , , 01B83C91554738F6AFFB7895BBBA73FB, B3665EA0A7CBD7F507C6EFE20C397BA830F0043B153827D1DCD101F208AE6D9B
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_eula_png.png, In Quarantäne, 2746, 177204, , , , , F43944209A64CCD0C9B5A92743F0F787, E61C14D116319601BCD0DC095EE2E8A1E064A8DA20E8280A2BE266F9EFB14D89
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_about_gif.gif, In Quarantäne, 2746, 177204, , , , , EC3C2B4E0DEC4D880BAFF88ABBF94188, 1C7438C8F94DB6D015672F254B755F539D86D675B37A2FE0D6FD95293F528BFE
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_clear_history_gif.gif, In Quarantäne, 2746, 177204, , , , , A9E001CBC00B06B121DFBC80707F5298, 2B8C1604B4F038882949280301026F13F7267709B682C8DE54ED86C11FAEA0FF
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_contact_gif.gif, In Quarantäne, 2746, 177204, , , , , 15DEF39E438E807E2F0E22D44FDC7FB7, 9519268B2D9F87F4C9B6ED82669705903A5334C5F96ACE760E8FB07C783F68B5
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_help_gif.gif, In Quarantäne, 2746, 177204, , , , , 995595D4C685D659E8F03CD0A287EDDF, 5621F6CEF155DB4F5A50AA245596591369BAB728B92EC820AE062285BAD3EDEC
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_home_page_gif.gif, In Quarantäne, 2746, 177204, , , , , AA39D8A6B65E208901EBA9F3D4728D3E, DEA3E1E10D9A399FF13DC35A9B7A3F491155D4AD1ED39A8D132C8AD2F0CA0AEF
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_options_gif.gif, In Quarantäne, 2746, 177204, , , , , 464E244E7E2F27FB85E0C3AB69D72104, 9C6D0AA0C1C5CE456C60FFF511D76A28B68AA1E36282ACFCB112560453E068C5
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_privacy_gif.gif, In Quarantäne, 2746, 177204, , , , , 6427565C7105DC497287866100F260BB, 122A82AE9C1F450875CB1734CFADE638DD18468C47216A5121AD15034BBFFD5C
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_refresh_gif.gif, In Quarantäne, 2746, 177204, , , , , AE7C9F67594A84B096D225601ACB0B2A, 55831B9D34119A8C48BEBBE2BF71DE3124FB0FB30AB22429DD3A1137D24E3026
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_shrink_gif.gif, In Quarantäne, 2746, 177204, , , , , C3EBA0237D68F665AF6D663906221092, 59AC274AEC9386E0ED6CA2E816B24080FE8EDE2AED8A6E811FAD1E8C602FD320
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_upgrade_gif.gif, In Quarantäne, 2746, 177204, , , , , 8BE02D510B4B2E05AD2611B1E9A0BD56, 66EED2D662211BB59A4DB21DA15AC83FC1D07C1200DCC0C4E01A449E9A03FE9D
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_Menu_uninstall-icon_png.png, In Quarantäne, 2746, 177204, , , , , 80648ABDB2DEB2D53DBFD77D57A9C886, 64980FB23863921B0740D26818B64F0885C1D5B5549FCF4DD55B5EFEFAC54B81
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_searchengines_search_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 948781E4B6478290050ECA4423B89B1E, D09EA480C0CE6FFDA2BCC94B2B01458E48CD62161EADFA846FE69178111D61B2
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_archive_icon_png.png, In Quarantäne, 2746, 177204, , , , , 57CF5324FD329CD91788A072F1E7407F, 8CEAC5ED570B6862515A2EE0370CFCE0BDA54F6BEC2CF1A95C5958178E03B70D
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_audio_icon_png.png, In Quarantäne, 2746, 177204, , , , , 29D46CA8500FADDBD52203C0EB12A969, 5D5FA2D01B1C7A291E2223410F963EC79C7CF438ACE3E4D32D5FA5F308C1C2CE
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_file_tools_icon_png.png, In Quarantäne, 2746, 177204, , , , , 9F5534F9E634D7C06A8DBF6F5928EE2D, 1F1E6B0074BB33C8444F71E54E6940905F9E46E05D2E6A6FDD16FD0AD14C0617
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_flv_icon_png.png, In Quarantäne, 2746, 177204, , , , , 7A0E48275A3956A2936F8F2428763528, 73053D43EC59ECA802B7E07A09294B7724263CEC6ED4CCD2631690FC9133C6CC
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_image_icon_png.png, In Quarantäne, 2746, 177204, , , , , E7B96E2167CF64AF5624B36E0DD099FA, 83B068079786136F121E9A52C3BB64B9DF480AC00C62C5BBDEEE920A2E36FB95
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_open_documents_png.png, In Quarantäne, 2746, 177204, , , , , BE28F3DCCDD4A8D18981D48F0CDBCC08, 0E98C71208BA1EAFC4B9987956E2EAE80894F28769495914A8B65111FC2FAB20
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_pdf_icon_png.png, In Quarantäne, 2746, 177204, , , , , A74673F322ED7213ABF3D359B913A466, 670311CCA7138D5758024536696170918CDEC328F5198AE10FD646BACC1859AF
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_video_icon_png.png, In Quarantäne, 2746, 177204, , , , , 9F0D3D78A3C2FE4DC6EB3E21D598DC7F, 10C28A7C1202AEDDD1798ED3681E7BBFD9392F42A9F60AA9C0ED43FFED889B30
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_view_pdf_icon_png.png, In Quarantäne, 2746, 177204, , , , , C8742B363732F6BC958A3B3C47EFC86D, E75F1B10FDB86BA46D1587B7F5109286E85B5A5CD1ABEC15E6B1F9E3711E0099
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_cloudy_gif.gif, In Quarantäne, 2746, 177204, , , , , 61A76264B50BF0E425D6BD7DB73F40B4, 5B0BAE219D324D456E18ABA53B2FAD7CDCBD57472A946BC0C61F20FDF1056685
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_drizzle_gif.gif, In Quarantäne, 2746, 177204, , , , , 703A98E0FBFB8C9B617E732C9E62DB04, BBFACA977B097B1227AD43939F37A2820938D89EA0975EA7A15D24EF56B43FC6
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_foggy_gif.gif, In Quarantäne, 2746, 177204, , , , , 959F03FF0A86063171C80A504E62D2E5, 0568489CE8CE16CADFA1ED81AA4BA3E9CFB875154106AF23551FDE9B81E8BAED
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_foggy_night_gif.gif, In Quarantäne, 2746, 177204, , , , , 0E4E164871B63462E3FD3EB9982C7C45, 4ADA80B749561AA1428BF4C99F8ADF413B011A6D6799A23F4F55FF0C53AFC2B6
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_hazy_gif.gif, In Quarantäne, 2746, 177204, , , , , 25C37C070415AAC32DD6C50BD64276CC, CB2A0C0E586AE00A5A9EB985F988BF7A71A1EAA2A8810F5F9DD068CEA85D8349
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_hazy_night_gif.gif, In Quarantäne, 2746, 177204, , , , , 279120757E0459B90E5E0DD853E82359, EF8D049162A72E1F752E8B79683BCF074CF79A69E27BD9FC91FE0D3B188AA140
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_partly_cloudy_gif.gif, In Quarantäne, 2746, 177204, , , , , E509575F473727B14C87367068C42353, BB445D3ADC94EA6F62BF927CDCF6D50C13E18C17E272B0071A04893E4FD8E14C
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_partly_cloudy_night_gif.gif, In Quarantäne, 2746, 177204, , , , , 88CD5B8D6F007347115A8A602E5D158B, EB3175D0A4CCEA6E0E743AB98863887DB00F3A3351E1E52366F10A3013588CB0
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_rain_gif.gif, In Quarantäne, 2746, 177204, , , , , 8006B1A5A88AB3451A5E58AA361815DD, 3CD6EE0CD8B5B1E284904F114DFC8476A3A447820782BF044E7F6DAEF27CE0E6
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_showers_gif.gif, In Quarantäne, 2746, 177204, , , , , 8ACA902931FBDF51B3BB293D6E15D70F, E4E23A6ABC478E91A34B16B6CBA16E94CB71701E5190607BB1EB972F46D23B7A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_sunny_gif.gif, In Quarantäne, 2746, 177204, , , , , 110EC9BCA8470D6488B626EA28914A6C, 8ED3B9AEE57C0262D1BE3779D87BB41AEE671825AF788C58B7179E36407D9730
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_sunny_night_gif.gif, In Quarantäne, 2746, 177204, , , , , 5EBD213E8A460652C883CBF68C152B5B, 6CCFC2DEC55455929A3C519CDCD3AB5A453996F79A5BC65873ED7E96AAB64E1F
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog\app-added.js, In Quarantäne, 2746, 177204, , , , , 3062897A714E8F924C0207078150E308, 6AA90A2F09A6497B304E8E2641A6B07FCC08F25E7A2F767FCDB594BB675D24FA
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , D5B203DF653C692204139992A1407C3D, 64541954B078EFB314CBDC8AF998A5CDBF515EACD41FF5E204060CE22108F1E1
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DefualtImages\icon.png, In Quarantäne, 2746, 177204, , , , , 20F345ACB306D80871F1293EC1A46A5B, 9F64407DB3F1A320A97F0564F8EA1FFDD0143E097D81C470C61F1FCA77D0D376
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog\app-2go.js, In Quarantäne, 2746, 177204, , , , , CC308EC93CE44DCD6748D524E7575439, 37597E7DB6F492D7D1C70F006ADEBBC6BECA3B5CA4C52466B4433D49CA5B3726
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , 2E9EFDCB59B7D11C9FDBCDDB56ABAAF4, FDC21D9B2DF2701F6E3412680F51A63CFDE1AC6607147B346621DE642CFCEB25
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\EngineFirstTimeDialog.js, In Quarantäne, 2746, 177204, , , , , 83482EADEF93E5A22D657E9B2B44EAC2, BE4FF4BFBEB367E092CF13C7B1DE9507040F26BFECF10DFA8A305A7238A2A22C
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\main.html, In Quarantäne, 2746, 177204, , , , , 9E2083328286081888D76227CA528596, F0BD425B9278BB439B493FF69C9967790FBD91B48602EEAE49BAE102997DC956
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\right-click.gif, In Quarantäne, 2746, 177204, , , , , 0E41C44D287E9676050C180CFEF41CD6, B72E40C74BC1B66039400421C763B9A411D6B13671E1A372874CAF3ED962E562
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\ok-button.png, In Quarantäne, 2746, 177204, , , , , 33CC18D8138802FD7D7A259AE439FD96, AD544E99250076D74CFCEC2C91C9CCAA64592E1B678C7F11E79C2681446BF784
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\separation-line.png, In Quarantäne, 2746, 177204, , , , , F43B589A96E6AB7B171F8C66989419F4, 7D903F28EE0BDDF45A9492E2843509AA6582A8D06C9E6DDC16C6F5B8C30998FE
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\warning.png, In Quarantäne, 2746, 177204, , , , , 92A7FC466575CFC32532EAE392711035, 960B2D36AD3F8DAC9AA90810563D75524B02C0C8555F9CB9AC1FC84076A9E6C3
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\main.html, In Quarantäne, 2746, 177204, , , , , D086B40511EB6A167BDE87D61C721225, BBB433B00A5FEE5DF12435CF3912E900B62257EC1AD3205F79E0FE64FBA814E1
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\SearchProtector.css, In Quarantäne, 2746, 177204, , , , , 3207F2DDCDC729F05E4095DC9D79497C, AFFE7EBC4C7D11D9BCC2BC0ED0DCD562009B1C1AABB31D55B9C77E84C7D6CB5B
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\SearchProtector.js, In Quarantäne, 2746, 177204, , , , , C0ECC7B7922AE2D9F8E0160C9152B0DE, 876465E3CF919DE1D91C8B28AA126C21B98C6C65E159ED2E83EAD7BD0C66E257
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\information.png, In Quarantäne, 2746, 177204, , , , , 37A7AF251C518F6B310B5681B786316B, 861C7924205D2FD421C18B150F50C2FBC3ED2F8479956501B84F31C985ED210A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-default-LTR.png, In Quarantäne, 2746, 177204, , , , , 5B1E5F6468CD5D48B2F8B8738C7B80E0, 485E87666146AF299D3A53D065027DDC36C6A1F37288F6873D77A01EEDF35D63
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-default-RTL.png, In Quarantäne, 2746, 177204, , , , , FF4F6B41DFAB60FDE151847AF6AFDB4F, E54B1D02D6B66D42AB9D58AE8C4A27F6BFC888009CE404FE6177D866CA251A5B
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-mouseover-LTR.png, In Quarantäne, 2746, 177204, , , , , 45CA78FCDC4FAED43EA9F8536286D017, 95A02518943BDFE314655CDE87B7C7A7B46D09933646424FF42C7F354DEAF58E
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-mouseover-RTL.png, In Quarantäne, 2746, 177204, , , , , 1EB77884D8E761843AC9C2796804021A, 40A4BD837AE98F6B621AD51EDF185CDA1656F32BC9C3D88492875B0203523304
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\bubble.css, In Quarantäne, 2746, 177204, , , , , A49BDDB2E8D5D29D0250377CBFEBBEAE, 4B0EC524E6C9D3A307E9E13A1E449BD2002D6F402B7CD33E6F320248C0729001
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\bubble.js, In Quarantäne, 2746, 177204, , , , , C81AD347AC89DFEDEE80F6DDAF1E5142, 6437129AE6D8CBC6ABCD20AAD507C7C1ACB3AF0227C105A831AF53F60A7CAED8
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\main.html, In Quarantäne, 2746, 177204, , , , , 2943D8A7794466EEA793E7002E12BA02, CBB9F56FD5294D4849EFFE448306E87D89FF759B40E6658FA7E4DC15A5C3395B
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\info.png, In Quarantäne, 2746, 177204, , , , , EAB14BDC52F4BBAB6987DF49E5B2AC5F, C01CDC5E15A3D96B1B2B5D8D9997BC134975C0BCF358C0D71E830ECE47202B89
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\ok-on.png, In Quarantäne, 2746, 177204, , , , , B31A5514F5201CF88D32023B5712C073, 70E996FB88FB969FA77357F918CC3D384F7EFF8180D611D495B2E0726CD01600
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\ok.png, In Quarantäne, 2746, 177204, , , , , 84F3D235A70703484E9D1ABF722247B5, F47C4ED1F768665B7A8A92564F7501C6090793A0161F023D489788E653AFC7D6
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\main.html, In Quarantäne, 2746, 177204, , , , , E9213FC935165A8A5BAD88626C0CA63E, 2A5DF466F0336284EB7222788C83A4176B08BFB42223E3AA08A189D571C66AEB
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\SearchProtector.css, In Quarantäne, 2746, 177204, , , , , 30B6213E5CC1BF8EF0837746F11E7094, 34C877C353D8990E52117D68E70F1E558060CEC48EEABF395B0F0F5E9E92F012
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\SearchProtector.js, In Quarantäne, 2746, 177204, , , , , 9939730BBCE8C3FDD43719466581DE40, 44096B6C4E28B9D588CFE95FDA13B6A5EC978DDD55A89A30E643C18C2C1FF082
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\Icon.jpg, In Quarantäne, 2746, 177204, , , , , B0A8AD8D9F888409CDB17F590E9B8860, AC04E7156509A035E7B7295EEC7E1D21D9707175DFC13F959372854C80DA9BA7
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\Icon.png, In Quarantäne, 2746, 177204, , , , , 9CC824FE255EE01788FED8AE69D0C2A9, 1DE807C48FE5370E914A0EBC414135965D4CDB7B1BA1C69FE9FA4E9A35FE03BE
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\info.png, In Quarantäne, 2746, 177204, , , , , EAB14BDC52F4BBAB6987DF49E5B2AC5F, C01CDC5E15A3D96B1B2B5D8D9997BC134975C0BCF358C0D71E830ECE47202B89
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\ok-on.png, In Quarantäne, 2746, 177204, , , , , B31A5514F5201CF88D32023B5712C073, 70E996FB88FB969FA77357F918CC3D384F7EFF8180D611D495B2E0726CD01600
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\ok.png, In Quarantäne, 2746, 177204, , , , , 84F3D235A70703484E9D1ABF722247B5, F47C4ED1F768665B7A8A92564F7501C6090793A0161F023D489788E653AFC7D6
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\main.html, In Quarantäne, 2746, 177204, , , , , 83BE98DAFAEE8752988F35EF457F3C3A, AC1007E29A43E1CE0185EC3E658B23B50B0E1F5BD32B0E923F8137EF5402D05F
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\SearchProtectorRetakeover.css, In Quarantäne, 2746, 177204, , , , , 615784EC0F9F3322A1865ABD3DF0E2AA, 645B7A840F2DD19BCF5871C84EF7A73C2D95F39423650A3679C00054EF517FD7
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\SearchProtectorRetakeover.js, In Quarantäne, 2746, 177204, , , , , 8CF24B278DA351A7D641901D11D37884, 4454302192E134B87782418241773B38158530EA2F0F8FE9B070DC7ECB4D5987
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\app-store-icon.png, In Quarantäne, 2746, 177204, , , , , 849F1EAFD2164C46FD73A143AD206B66, 91B45E368605F6A114995169D4D6E296F10EB423EAE68137FD28E944556828A9
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\arrow.png, In Quarantäne, 2746, 177204, , , , , 75441E6BEAF79D1646529403E7EF991E, F2E34A164F4BF54ED5BA8CF7B400354C8B6E233E7C5955D95BA9343F38D59B2A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\divider.png, In Quarantäne, 2746, 177204, , , , , E0CBD8E658F678497C7E9EC0FCAA367D, BEF76F9034DE4D3DE7000D884945444B6244CFD43208B7F21DACC8A6376A7E93
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\emailNotifier.gif, In Quarantäne, 2746, 177204, , , , , F863F573944EBD1EE7115874A572EF3A, 13294646475286319718D9676C00B7B423AAC5016DDBF1DF549497C1D4267E42
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\facebook.png, In Quarantäne, 2746, 177204, , , , , 5AAE3708BF987C7BB7356C2F102D8AFF, 94992D29EE6F2E19B6B4915B54FD4F1ED7E12D62558AABD2488310C151284228
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\radio.GIF, In Quarantäne, 2746, 177204, , , , , FB3B7EE5EAEDF1979D123BB78A880FE9, E90D2BFC978C87B8B28E37BB55F1F2C97F6B67588D32E3C1221F4221A17E470A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\Thumbs.db, In Quarantäne, 2746, 177204, , , , , 678A2975E961CF9C32CFF7F1A8FE317B, 49CDC5C502DE85547FECEC990840CF968358FE88A7D6E4EFDE0A38C0C1AA44E1
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\truste_welcome.GIF, In Quarantäne, 2746, 177204, , , , , 4FBDE15B2B96D0C5F00D1AC16FED78F4, 8D41C8B8BCD83B2C45D0C91C78A0D777A91CAE97741D060CCADD84232E534DEF
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\weather.GIF, In Quarantäne, 2746, 177204, , , , , C014B05B57F644AF608106016C9BDA0B, F96960D45EA0C6513150A4386B2B256312ED2B9B37B8818F50A03F72AF2C37C1
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\main.html, In Quarantäne, 2746, 177204, , , , , 66A1085869258D7D34553C523289EB6C, 86DB3C367D6509733DA94933C679632986F213395010559E4BF0BA58D1A48597
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\ToolbarFirstTimeDialog.css, In Quarantäne, 2746, 177204, , , , , D84B16BCA0FE92CFF16A9A96258ABE22, 7462AA23951EBC0B48A4FA0C3171D4A34B5B549CF685471293F6973F538E3615
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\ToolbarFirstTimeDialog.js, In Quarantäne, 2746, 177204, , , , , 6EFEF7FD0AEFBB94AC56346AA54C8343, 9F74C273EBB63BB7C86C2243C2AD3703516D745FA248EE4F35362C7FDE79D7A5
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog\main.html, In Quarantäne, 2746, 177204, , , , , 3466F9FA13475F3EE0C3C5DABB976E4B, 029E601AFA39277FE3D8D92A172E1EE0C0493D17BFDAB9CB11B4C3737FB0F04C
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog\ToolbarUntrustedAppsApprovalDialog.js, In Quarantäne, 2746, 177204, , , , , B1D381F22E6C07E426CCDF056E005827, F6AF8C9D393608AA88E7AAA9D0F13F4CEA08813E5DBBFFC2C35C5A6A06C603AF
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , 7AC661F3618C8C39A435CEC17EF4142F, F51968D7C06A42481CA93196D37A152061F197C5E816D110C25090755BF41CB5
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog\UT-app-dialog-added.js, In Quarantäne, 2746, 177204, , , , , 96AEE707020CB18410B84DD582335402, 649571210F8B3E90B048C4ED84E13F14293711E801D45527D592F9345E10D264
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog\main.html, In Quarantäne, 2746, 177204, , , , , 627C60F1BF6F532251760AA288FCFB40, DD5DF104EFAD90B4FED4908AE802534750DABC09E7214F863B25D5F1BB982F42
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog\UT-app-dialog-needs-your-approval.js, In Quarantäne, 2746, 177204, , , , , 1B65439686C78B69896E7FDBB274465D, 182DA8CED186CAA8449F1C054E48C0D7E496A15429A258D6396AC9B600984F93
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog\main.html, In Quarantäne, 2746, 177204, , , , , 66FFDDCCFF58E4FD0C1E991DE61E710D, A0CE19A5BABEE76633631C620C13BB24222427AA6962AD3D41EE2F4B26D1A782
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog\UT-app-dialog-is-waiting.js, In Quarantäne, 2746, 177204, , , , , 69F0F1668657051C6628499B1DEA8ABC, 594EF61F9A5CC954CCF0AD4BC52F4A4AD31D47843E4C0E913CBD8DF957C03438
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\DialogsAPI.js, In Quarantäne, 2746, 177204, , , , , 2C2A9007258B6C8948147271631CE811, D575E8078E6D34A96493617B7BD960A07FA61CAC7DE8781B2B34ABCD4BC1A240
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\excanvas.js, In Quarantäne, 2746, 177204, , , , , C0CAD58F958C967912D024BBD714323E, EB83B648BE468F90407BDD8E210AAC8C167B9167A7770287CA771428A6986997
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\generalDialogStyle.css, In Quarantäne, 2746, 177204, , , , , 3B0B0EC566CF13FD7CB5DB7BD5A594AD, 4E711A12A393CC7DF6F47206B62A68CCF97B9EBACCD10FF97C215113134FF555
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\PIE.htc, In Quarantäne, 2746, 177204, , , , , E781697FFED7CF6F50919824269F69FE, 7E7C35FEACF71871EB72423DD701B0BB1A5E99A380FF8FB769ADC6C4FDE2904F
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\RoundedCorners.css, In Quarantäne, 2746, 177204, , , , , 260E3C55F268D13268C717680B5998D8, 0344C7C77F77F1A39A3339800B53BFF39F3148A495901CF1CC5DBA1D3E964276
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\RoundedCornersIE9.css, In Quarantäne, 2746, 177204, , , , , D5B6CBCC0A1EFA9E717CB3029E577960, 879D16F5D074379B3CB9F50E7D02F6E1C4895C9CB7075A01338E0E81660BC0EB
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Dialogs\version.txt, In Quarantäne, 2746, 177204, , , , , A716FE6BFC054C904BB96D2B7710FEFD, F60F1042073236E19D436FE9F789176E2C9F2C8AFC6D3B9219866EE6B86FA035
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\AccountTypes.xml, In Quarantäne, 2746, 177204, , , , , 08034E61F5D45FF987D495DD43F55221, DC2B5D40148AEBC3828FE8271C7BAD587AE5A50E1BCEEFDBE293995051208F8E
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\aol.com.xml, In Quarantäne, 2746, 177204, , , , , A19839E458AAA9AF6CF9F69948E07A2F, 2DEE60459554AE95614805D3CBA8F6A51BA062D10CF9B91037B9A1E035B3A6B3
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\comcast.net.xml, In Quarantäne, 2746, 177204, , , , , A91B92C34FB6837B29C913773D3E3FF9, 927D4919FA31C55376AC94C13C72744ABD5C30CF44549097282B0C2AECA283AE
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\google.com.xml, In Quarantäne, 2746, 177204, , , , , 080D9FF2CA13A3F4492C15C10743778C, 38575B8175296C8BEE671832A4910D623C11D03F49D6ADA5C49092F2D803982F
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\hotmail.com.xml, In Quarantäne, 2746, 177204, , , , , 9BC6A419147F048EE6C22AC7C279746F, F638CAB4F9CCBB788CCCCE8ACF8D3F33DF8E9114F67D7C0F22D5D38107C6632B
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\EmailNotifier\yahoo.com.xml, In Quarantäne, 2746, 177204, , , , , 7E91AFCB6E11C7F36801AA0DE89FEE22, 7229DAF98B746291B9A64A7A6D79FC37D92155CEA5D4442E0201B917CCA8E2D6
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=GottenApps&locale=EB_LOCALE.xml, In Quarantäne, 2746, 177204, , , , , 1BD996EE1793FFCC485F57EB71DBAED0, 6275A9A72E39F27A09F3DEFC752A1CD81C32C8BF254490E1F7620382D1868B8D
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=GottenApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 480F1FFD845FB3A575F709002BF23A08, 5D0F0BBB4303F54CB4B9950E34B3C48809CC0E9961241A372A18736D82182FBA
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=GottenApps&locale=en.xml, In Quarantäne, 2746, 177204, , , , , 1BD996EE1793FFCC485F57EB71DBAED0, 6275A9A72E39F27A09F3DEFC752A1CD81C32C8BF254490E1F7620382D1868B8D
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=OtherApps&locale=EB_LOCALE.xml, In Quarantäne, 2746, 177204, , , , , 99F43BD1FBE50F6CEE0714818FCAD0A8, CF0FFB8040C5A979A732E2D2F182DEAD350845C7A5093606FE4C9D270ACC61A9
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=OtherApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 07A217E51E400C4CFB8D9D5D4D8E25A5, 1EC56DBBD56D55CD6CBDF3CFA0EBA11C0BAD0B161C09495D6AD16978B316E671
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=OtherApps&locale=en.xml, In Quarantäne, 2746, 177204, , , , , D84D7FBFB11F0840DBBF755A0503042E, 86FABDF8CB6B05820A82F20A15C811DB01E2BF4B654061720194168616810396
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=SharedApps&locale=EB_LOCALE.xml, In Quarantäne, 2746, 177204, , , , , 93DBA7DBB3A402F930076666BD7C539C, 9BD5605C5C458C15039F62202A6BA69BAF84A31FA89937A38A4B9A05040A1B8F
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=SharedApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , F0F7FE64D94800B405126E77692F4547, 50CE5F919769FDD47CBE5525B6AFA0B0F60AA770474B3E95EAE9B0D28DD7DAF4
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=SharedApps&locale=en.xml, In Quarantäne, 2746, 177204, , , , , 520CD78D6EC12247DDC7EC77F51BAFDF, 8604092A0275BF0CD3C604C2F5B5C721C4EF90593146E1CD90B0AE730DE6FA23
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=EB_LOCALE.xml, In Quarantäne, 2746, 177204, , , , , E0180CE0C845FEC3A03EC0CD988B3763, 4796CDD715B89E306498457CCB864798A4A1BAD36C54FD5D7205FD06C052046A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=en&ctid=CT3201318&UM=UM_UNINSTALL_ID.xml, In Quarantäne, 2746, 177204, , , , , 12ACA2FAB9C1FFC0CFEC31D746D32B2E, EE0D1FD73868EE53679F3AC45825D23B4FAC025C33899C4D0B657175E6062FB0
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 648E3558B6E6D5F160C78827D1BB3DF5, A9101981CBCB418566BC08A73AC010264C969546E15837197E92B39E0C0EFA34
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=en.xml, In Quarantäne, 2746, 177204, , , , , E0180CE0C845FEC3A03EC0CD988B3763, 4796CDD715B89E306498457CCB864798A4A1BAD36C54FD5D7205FD06C052046A
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___oryte_com_content_translate_xml_tools_xml.xml, In Quarantäne, 2746, 177204, , , , , 7F29014F385D8D05754C46A8ECF231E2, D07616E68BE6C167582FEF842A35B705DC6144A681CCA37AF2312D65454EB475
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ExternalComponent\http___tools_wiseconvert_com_tools_xml.xml, In Quarantäne, 2746, 177204, , , , , D386F3154E3BC61779389EAC4C5F21EA, B7D6EB5860E59F328D55039D06BE8D715DB812FDC77A88A0124667D77CA94139
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGong_16.png, In Quarantäne, 2746, 177204, , , , , B5ECF14044E4FD55F61A7499D5687118, 62516E9E15CB969D3580FC1AB5717D6FBC1B9A1C71D7317DC50A4E0FF03F4DA6
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin\PriceGongIE.dll, In Quarantäne, 2746, 177204, , , , , 99BE18B1B3A6402D4546C5C563804C90, FB7178C2C39B5DF56BACD7B18F29A37F667B02C2043260A76F0141531C1FFBD4
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin\PriceGong_16.png, In Quarantäne, 2746, 177204, , , , , B5ECF14044E4FD55F61A7499D5687118, 62516E9E15CB969D3580FC1AB5717D6FBC1B9A1C71D7317DC50A4E0FF03F4DA6
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\manifest.xml, In Quarantäne, 2746, 177204, , , , , 31D1B93DC1FAC8E1DFC6C0BF8F2B9C24, 7F29F45B1EAAA8BFD600895FE46EACB03F99391E64F67409D65163B8B87E2E31
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\RadioPlayer\IP_Stations_Media_List.xml, In Quarantäne, 2746, 177204, , , , , AAD25DA0576B1E876E9646B085064E79, 184243431EBFC18CE2EEF0E10B0E2D9C4CD1D0E6A78BF2362C46D84916C560DA
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\RadioPlayer\Predefined_Media_List.xml, In Quarantäne, 2746, 177204, , , , , 2DFF6F89AE4D8271A26F23FD86F858B0, E2286CF554F686B6F94AD1C274BF815597AC5F120DDBBCBB28481D1B647FFAE2
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 9A2B018CE04F20B91C1176B34A082456, E0338260E4B5FEE120861C4F646CE45874AB34DADDCB3F762868D95BB90B1681
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData\data.txt, In Quarantäne, 2746, 177204, , , , , 9A2B018CE04F20B91C1176B34A082456, E0338260E4B5FEE120861C4F646CE45874AB34DADDCB3F762868D95BB90B1681
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs\data.bck.txt, In Quarantäne, 2746, 177204, , , , , A1C16988159E726D83809D189D3EFFF8, 00B7000F542F5BE7FA4E2AE74595C353F6E27C2190A8A6ABF946C2BCC5C11AA6
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs\data.txt, In Quarantäne, 2746, 177204, , , , , A1C16988159E726D83809D189D3EFFF8, 00B7000F542F5BE7FA4E2AE74595C353F6E27C2190A8A6ABF946C2BCC5C11AA6
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin\data.bck.txt, In Quarantäne, 2746, 177204, , , , , DF29306861FBB5E1304104DB60995547, 98FDF2CC6AD405FF8542418440012BCC1AC2C6922D7D16720CB9554918CE3CBF
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin\data.txt, In Quarantäne, 2746, 177204, , , , , ECE4CDA1D32F4537E13C5223BFE3FB80, BE791B07AB14D4CD4CCEA87859E14D1C2138302DF99A9C4F6B481AAB9531CEB0
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 2412982EB297EFCB79D1FD0883F843A7, 0FF9FC49A98F6001C104BF387898D3A85D4A36C5D4131EA20142869947F3BDBD
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings\data.txt, In Quarantäne, 2746, 177204, , , , , 2412982EB297EFCB79D1FD0883F843A7, 0FF9FC49A98F6001C104BF387898D3A85D4A36C5D4131EA20142869947F3BDBD
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation\data.bck.txt, In Quarantäne, 2746, 177204, , , , , AE7D6B0428F027BE41529C8E39D05F2A, FF0B5ED9038BFE2A3E28359682EDC5805C634E9D0AE33F7875807A6ACDB8A769
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation\data.txt, In Quarantäne, 2746, 177204, , , , , B209E3C3354F325D0E2A5AB27392FB30, E822E7703DDE94B429DB67DD9013B949AB93C1AD9DBD1D9AD4DB8FFE7AAD2823
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\SearchInNewTab\SearchInNewTabContent.xml, In Quarantäne, 2746, 177204, , , , , DAA4623848A2F4259601B191E448C6BB, 4A505F8B3DA2FD0E69EF600C6CE487BF6CF0D0E2ACB569FEE60A77C830D358C3
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\ThirdPartyComponents.xml, In Quarantäne, 2746, 177204, , , , , AC5061A6EC103B07B6269CF4C0C7E44A, CCCFA14142BBFF2B42FC4C5FCE27D3DA480713C0B3E776307266F72CCE079C54
PUP.Optional.FLVRunner, C:\Users\Eltern\AppData\LocalLow\FLV_Runner\toolbar.cfg, In Quarantäne, 2746, 177204, , , , , 1B7DACCBAD0E677C1CE7AEDA637152C5, 9CFC24ED1D0DA443D5A0333BAF84D1BBDC281FAB59D7280243A20960A04F26A7
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calculator_gif.gif, In Quarantäne, 2746, 177204, , , , , 1A7E6B0492BC10D028AEC63C056BCB2A, 2B774950106B073BE6CB1177712550DFBC8F6042460E890348CBD3907D5F8E75
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calculator_sci_gif.gif, In Quarantäne, 2746, 177204, , , , , 3F3AEF2AF80BAF7902F242BAC1F6EAFE, 4B3FB6283A490EE94CB587C20052BE70A998129A86294906C30A1A68A501A741
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calendar_png.png, In Quarantäne, 2746, 177204, , , , , 24B8E06632E70AEC654193135091B152, D22B7CF6594D85D942763EBE8E87E36B5C05D09CE11F3A25C599DA4872631B0B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_calories_png.png, In Quarantäne, 2746, 177204, , , , , 69A35DA7D3AE145D859AE5817B43212E, 4F3CEEE36C70E2420280B2C3408DD5B79320672ADCC99FD6E54E0A224D7CB0B5
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_clock_ico.ico, In Quarantäne, 2746, 177204, , , , , A8167C3A39DE38F1B3E37610CEDFF686, 93CFEAD179B08CF4A7941CEC3F60BAED70A546E7846426F7A2D1B62BED82DDC8
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_clothes_ico.ico, In Quarantäne, 2746, 177204, , , , , 8E511F837C57E857E0538752A3174D5B, 91C83BF2C7D56562A63E69FBEB133183ED61B19BEE0FB196350796E9B678A4E3
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_coins_png.png, In Quarantäne, 2746, 177204, , , , , DCD59CAAB29B2276CB60641409059800, D3DDD0DE45E88EC5975F3E42A5A28F049CB57E83AE478CB1592490132FA6C6D4
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_datecalc_ico.ico, In Quarantäne, 2746, 177204, , , , , EE567735CBD5F50784DA4433B1A5EB98, BBA9737A5107607BDB79E32370D14F0594519B9493824C2777E71ACF5C9E262D
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_fileconverter_png.png, In Quarantäne, 2746, 177204, , , , , 16F9DB97AAF05299F531BA56DE05F7D6, 1C7534DB6E40B7172A36953438078ACC0A46D697383B4D263BC6386B50E1C8EA
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_map_gif.gif, In Quarantäne, 2746, 177204, , , , , E6B65891B44CB67BC504745B8DE150D2, D136513B3A701A61C0F3AC92ECFB391E4D21FC37745A9049A8974DD22BB4E4BB
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_spellchecker_png.png, In Quarantäne, 2746, 177204, , , , , 5DFF9E69E0933B99AD33BF641A2F6248, 39DED9E8B9D047BE2F704B189CC7DB1030A7C9577D10E73DECEA258E88A5271D
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_stopwatch_ico.ico, In Quarantäne, 2746, 177204, , , , , 3CFC9BE6DE039F17A1C9EE7DD1D59955, 798A77B791F376168E52FCBF0781F1DD625D57B5C77CE3B322A7D325495EC6FA
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_translator_png.png, In Quarantäne, 2746, 177204, , , , , F18D6D5204CB35F54FBDB293F24F491F, B3BC8FA221E9C386C00CC8EC6AFB1EAD798BAB0C0728B2997BAC55A91954337A
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_unitconverter_gif.gif, In Quarantäne, 2746, 177204, , , , , 78F9B0691783729E3BDB7B43E6549400, 07DD95C2DBF6A1F4566EDCA9552209F42BE846D5A152045F69FCB02BBC27AC4A
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_widget_png.png, In Quarantäne, 2746, 177204, , , , , 7786863E04E906A21DB8AEC16BDCED1D, 2BAD427009D6E681B96F7DFC7B2864816011574F06E54A59E94C240869CDB9FC
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_icons_worddef_png.png, In Quarantäne, 2746, 177204, , , , , 6624397E92BF545B51D9CF112C0BC823, 7A46F144CE7A72A8A5C5360065874D1BE78BAB6A78550021ADD0A84EAEA358B6
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___oryte_com_content_todo_img_favicon_ico.ico, In Quarantäne, 2746, 177204, , , , , E2717A85F61FB59C604F05A29CCF10B9, F65CA71120455E0905A76598C385B5682A8E864EBECC135F184ED9BBD3F1C00F
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_16_319_CT3196716_images_635082718918012385_24PX_png.png, In Quarantäne, 2746, 177204, , , , , DB7B471C8CC0F7E2D8DD61D4A94BAAB9, 500FF5DF15458BEC0E542245C73D67CF1070F95056C533AFAE6EBCF0884B375C
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_18_320_CT3201318_Images_634688351076901355_png.png, In Quarantäne, 2746, 177204, , , , , EBEB7FA24C02CFF6CB1FAE4746C5017B, 400210211E44A6E734C4387334EBFF5EB152CDCB1BF7274A2A2DE5A695616DDC
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_18_320_CT3201318_Images_634770106353717500_gif.gif, In Quarantäne, 2746, 177204, , , , , 32CB1985EEF98ABD790A7098FA8F85A6, 09EB1558EB439254F8135F475FD89CA9A3AF8228B2982925E1E26271C34EAC19
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_Email_xml-10-Classic-633439771938243750_gif.gif, In Quarantäne, 2746, 177204, , , , , 98A6A440A943BAC09445ECBB40E79EB1, 22BD80FF19C7D9E41B59239EBB45586C9B2BB978F4F160EF9A08800810AD1EBA
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_68_300_CT3008668_Images_SearchActivationButton-go_but01_gif-General-633629754908675000_gif.gif, In Quarantäne, 2746, 177204, , , , , D98754949232C20B38E52EC493111E9F, E8F4F0F2EF4AF6B4B536C2DE3891BC743F2073064E212D08C90D8B809FDFD11A
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_About_png.png, In Quarantäne, 2746, 177204, , , , , 99D5F75C338F2A877CBF891E0F18746E, 1DB19F8F95EED4B2F2C2845C320FE8F2DB4E2ACEF959D0105ECD7502D3440FA0
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Browse_png.png, In Quarantäne, 2746, 177204, , , , , F2291FAB46ED9291A1A2FFE9F88E9D84, 39E9D22A1AE7377AA7F03E07A3FF8E5ABF51C1CE13A71E16053824BD8805B85B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Contact_png.png, In Quarantäne, 2746, 177204, , , , , A847C5F6CE2C700048749892DD2E0619, 1F350432752BC9BABDFA133871B5019F79F0BE32ACF56FC7FD1ECF8FA30CD7BC
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Hide_png.png, In Quarantäne, 2746, 177204, , , , , FED9E00C76F647EE6A0B7CC684C89F0C, 1B476BDD92C2B29A15D1C41BF5343500095514FD283B30D8D04ADA337B8DA6B9
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_bankImages_ConduitEngine_ContextMenu_LikeIcon_png.png, In Quarantäne, 2746, 177204, , , , , 36BD416D16391EFAAAFB2C3C54EAE986, 9A34261683F03AFDCD13683580F43BA45449B8D0336F7DB574EE3833CFEFA9A3
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_MoreFromPublisher_png.png, In Quarantäne, 2746, 177204, , , , , 943ADFD9E0DF1507F7BC419802BF4303, 838D658A4E1BC0D85A54C47211FC8C13A695D2E4DA63B28AB9F9305B785A5D6D
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_More_png.png, In Quarantäne, 2746, 177204, , , , , 36C6FB9C84D4AF5C5D7C5B277A0E4A01, B92357BFD011205FEB03F2D78E5D560993A19970C0B06346C057F7154CBFDC97
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Options_png.png, In Quarantäne, 2746, 177204, , , , , 275C9DA2D536F18F528C80E050C3D705, B8FE2DCC9F4CF3A165E1E6AF9C74DE8E1ABCA7C2F11ADD52E9242E9421FDC2E1
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Privacy_png.png, In Quarantäne, 2746, 177204, , , , , 3AD88BD8E832DA39FAAEDF07AD595F94, FF9FF228132810D4E8B195E977EEC38BF0F1D7764B962793CB2394047289FDE1
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Refresh_png.png, In Quarantäne, 2746, 177204, , , , , 650731EEF807C292E699779B12CBE552, 251C465549555F06EF64103A7577A2C35E27904FE00FD79A50ACB0FE045FD67D
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Upgrade_png.png, In Quarantäne, 2746, 177204, , , , , 9B4D914888BCFFCBAE6757A0E450551C, CAE27562716D6FA19F8886CC610182AF35895D3DD4A9ED6A4B2B44DFD0197657
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_ClientImages_radio_gif.gif, In Quarantäne, 2746, 177204, , , , , 01B83C91554738F6AFFB7895BBBA73FB, B3665EA0A7CBD7F507C6EFE20C397BA830F0043B153827D1DCD101F208AE6D9B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_eula_png.png, In Quarantäne, 2746, 177204, , , , , F43944209A64CCD0C9B5A92743F0F787, E61C14D116319601BCD0DC095EE2E8A1E064A8DA20E8280A2BE266F9EFB14D89
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_about_gif.gif, In Quarantäne, 2746, 177204, , , , , EC3C2B4E0DEC4D880BAFF88ABBF94188, 1C7438C8F94DB6D015672F254B755F539D86D675B37A2FE0D6FD95293F528BFE
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_clear_history_gif.gif, In Quarantäne, 2746, 177204, , , , , A9E001CBC00B06B121DFBC80707F5298, 2B8C1604B4F038882949280301026F13F7267709B682C8DE54ED86C11FAEA0FF
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_contact_gif.gif, In Quarantäne, 2746, 177204, , , , , 15DEF39E438E807E2F0E22D44FDC7FB7, 9519268B2D9F87F4C9B6ED82669705903A5334C5F96ACE760E8FB07C783F68B5
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_help_gif.gif, In Quarantäne, 2746, 177204, , , , , 995595D4C685D659E8F03CD0A287EDDF, 5621F6CEF155DB4F5A50AA245596591369BAB728B92EC820AE062285BAD3EDEC
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_home_page_gif.gif, In Quarantäne, 2746, 177204, , , , , AA39D8A6B65E208901EBA9F3D4728D3E, DEA3E1E10D9A399FF13DC35A9B7A3F491155D4AD1ED39A8D132C8AD2F0CA0AEF
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_options_gif.gif, In Quarantäne, 2746, 177204, , , , , 464E244E7E2F27FB85E0C3AB69D72104, 9C6D0AA0C1C5CE456C60FFF511D76A28B68AA1E36282ACFCB112560453E068C5
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_privacy_gif.gif, In Quarantäne, 2746, 177204, , , , , 6427565C7105DC497287866100F260BB, 122A82AE9C1F450875CB1734CFADE638DD18468C47216A5121AD15034BBFFD5C
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_refresh_gif.gif, In Quarantäne, 2746, 177204, , , , , AE7C9F67594A84B096D225601ACB0B2A, 55831B9D34119A8C48BEBBE2BF71DE3124FB0FB30AB22429DD3A1137D24E3026
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_shrink_gif.gif, In Quarantäne, 2746, 177204, , , , , C3EBA0237D68F665AF6D663906221092, 59AC274AEC9386E0ED6CA2E816B24080FE8EDE2AED8A6E811FAD1E8C602FD320
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_main_menu_upgrade_gif.gif, In Quarantäne, 2746, 177204, , , , , 8BE02D510B4B2E05AD2611B1E9A0BD56, 66EED2D662211BB59A4DB21DA15AC83FC1D07C1200DCC0C4E01A449E9A03FE9D
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_Menu_uninstall-icon_png.png, In Quarantäne, 2746, 177204, , , , , 80648ABDB2DEB2D53DBFD77D57A9C886, 64980FB23863921B0740D26818B64F0885C1D5B5549FCF4DD55B5EFEFAC54B81
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_conduit_com_images_searchengines_search_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 948781E4B6478290050ECA4423B89B1E, D09EA480C0CE6FFDA2BCC94B2B01458E48CD62161EADFA846FE69178111D61B2
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_16_319_CT3196716_images_635082718918012385_24PX_png.png, In Quarantäne, 2746, 177204, , , , , DB7B471C8CC0F7E2D8DD61D4A94BAAB9, 500FF5DF15458BEC0E542245C73D67CF1070F95056C533AFAE6EBCF0884B375C
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_18_320_CT3201318_Images_634688351076901355_png.png, In Quarantäne, 2746, 177204, , , , , EBEB7FA24C02CFF6CB1FAE4746C5017B, 400210211E44A6E734C4387334EBFF5EB152CDCB1BF7274A2A2DE5A695616DDC
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_18_320_CT3201318_Images_634770106353717500_gif.gif, In Quarantäne, 2746, 177204, , , , , 32CB1985EEF98ABD790A7098FA8F85A6, 09EB1558EB439254F8135F475FD89CA9A3AF8228B2982925E1E26271C34EAC19
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_68_300_CT3008668_Images_Email_xml-10-Classic-633439771938243750_gif.gif, In Quarantäne, 2746, 177204, , , , , 98A6A440A943BAC09445ECBB40E79EB1, 22BD80FF19C7D9E41B59239EBB45586C9B2BB978F4F160EF9A08800810AD1EBA
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_68_300_CT3008668_Images_SearchActivationButton-go_but01_gif-General-633629754908675000_gif.gif, In Quarantäne, 2746, 177204, , , , , D98754949232C20B38E52EC493111E9F, E8F4F0F2EF4AF6B4B536C2DE3891BC743F2073064E212D08C90D8B809FDFD11A
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_bankImages_ConduitEngine_ContextMenu_LikeIcon_png.png, In Quarantäne, 2746, 177204, , , , , 36BD416D16391EFAAAFB2C3C54EAE986, 9A34261683F03AFDCD13683580F43BA45449B8D0336F7DB574EE3833CFEFA9A3
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_ClientImages_radio_gif.gif, In Quarantäne, 2746, 177204, , , , , 01B83C91554738F6AFFB7895BBBA73FB, B3665EA0A7CBD7F507C6EFE20C397BA830F0043B153827D1DCD101F208AE6D9B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_eula_png.png, In Quarantäne, 2746, 177204, , , , , F43944209A64CCD0C9B5A92743F0F787, E61C14D116319601BCD0DC095EE2E8A1E064A8DA20E8280A2BE266F9EFB14D89
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_about_gif.gif, In Quarantäne, 2746, 177204, , , , , EC3C2B4E0DEC4D880BAFF88ABBF94188, 1C7438C8F94DB6D015672F254B755F539D86D675B37A2FE0D6FD95293F528BFE
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_clear_history_gif.gif, In Quarantäne, 2746, 177204, , , , , A9E001CBC00B06B121DFBC80707F5298, 2B8C1604B4F038882949280301026F13F7267709B682C8DE54ED86C11FAEA0FF
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_contact_gif.gif, In Quarantäne, 2746, 177204, , , , , 15DEF39E438E807E2F0E22D44FDC7FB7, 9519268B2D9F87F4C9B6ED82669705903A5334C5F96ACE760E8FB07C783F68B5
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_help_gif.gif, In Quarantäne, 2746, 177204, , , , , 995595D4C685D659E8F03CD0A287EDDF, 5621F6CEF155DB4F5A50AA245596591369BAB728B92EC820AE062285BAD3EDEC
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_home_page_gif.gif, In Quarantäne, 2746, 177204, , , , , AA39D8A6B65E208901EBA9F3D4728D3E, DEA3E1E10D9A399FF13DC35A9B7A3F491155D4AD1ED39A8D132C8AD2F0CA0AEF
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_options_gif.gif, In Quarantäne, 2746, 177204, , , , , 464E244E7E2F27FB85E0C3AB69D72104, 9C6D0AA0C1C5CE456C60FFF511D76A28B68AA1E36282ACFCB112560453E068C5
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_privacy_gif.gif, In Quarantäne, 2746, 177204, , , , , 6427565C7105DC497287866100F260BB, 122A82AE9C1F450875CB1734CFADE638DD18468C47216A5121AD15034BBFFD5C
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_refresh_gif.gif, In Quarantäne, 2746, 177204, , , , , AE7C9F67594A84B096D225601ACB0B2A, 55831B9D34119A8C48BEBBE2BF71DE3124FB0FB30AB22429DD3A1137D24E3026
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_shrink_gif.gif, In Quarantäne, 2746, 177204, , , , , C3EBA0237D68F665AF6D663906221092, 59AC274AEC9386E0ED6CA2E816B24080FE8EDE2AED8A6E811FAD1E8C602FD320
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_main_menu_upgrade_gif.gif, In Quarantäne, 2746, 177204, , , , , 8BE02D510B4B2E05AD2611B1E9A0BD56, 66EED2D662211BB59A4DB21DA15AC83FC1D07C1200DCC0C4E01A449E9A03FE9D
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_Menu_uninstall-icon_png.png, In Quarantäne, 2746, 177204, , , , , 80648ABDB2DEB2D53DBFD77D57A9C886, 64980FB23863921B0740D26818B64F0885C1D5B5549FCF4DD55B5EFEFAC54B81
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___storage_stgbssint_com_images_searchengines_search_icon_gif.gif, In Quarantäne, 2746, 177204, , , , , 948781E4B6478290050ECA4423B89B1E, D09EA480C0CE6FFDA2BCC94B2B01458E48CD62161EADFA846FE69178111D61B2
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_archive_icon_png.png, In Quarantäne, 2746, 177204, , , , , 57CF5324FD329CD91788A072F1E7407F, 8CEAC5ED570B6862515A2EE0370CFCE0BDA54F6BEC2CF1A95C5958178E03B70D
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_audio_icon_png.png, In Quarantäne, 2746, 177204, , , , , 29D46CA8500FADDBD52203C0EB12A969, 5D5FA2D01B1C7A291E2223410F963EC79C7CF438ACE3E4D32D5FA5F308C1C2CE
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_file_tools_icon_png.png, In Quarantäne, 2746, 177204, , , , , 9F5534F9E634D7C06A8DBF6F5928EE2D, 1F1E6B0074BB33C8444F71E54E6940905F9E46E05D2E6A6FDD16FD0AD14C0617
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_flv_icon_png.png, In Quarantäne, 2746, 177204, , , , , 7A0E48275A3956A2936F8F2428763528, 73053D43EC59ECA802B7E07A09294B7724263CEC6ED4CCD2631690FC9133C6CC
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_image_icon_png.png, In Quarantäne, 2746, 177204, , , , , E7B96E2167CF64AF5624B36E0DD099FA, 83B068079786136F121E9A52C3BB64B9DF480AC00C62C5BBDEEE920A2E36FB95
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_open_documents_png.png, In Quarantäne, 2746, 177204, , , , , BE28F3DCCDD4A8D18981D48F0CDBCC08, 0E98C71208BA1EAFC4B9987956E2EAE80894F28769495914A8B65111FC2FAB20
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_pdf_icon_png.png, In Quarantäne, 2746, 177204, , , , , A74673F322ED7213ABF3D359B913A466, 670311CCA7138D5758024536696170918CDEC328F5198AE10FD646BACC1859AF
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_video_icon_png.png, In Quarantäne, 2746, 177204, , , , , 9F0D3D78A3C2FE4DC6EB3E21D598DC7F, 10C28A7C1202AEDDD1798ED3681E7BBFD9392F42A9F60AA9C0ED43FFED889B30
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___tools_wiseconvert_com_images_menu_view_pdf_icon_png.png, In Quarantäne, 2746, 177204, , , , , C8742B363732F6BC958A3B3C47EFC86D, E75F1B10FDB86BA46D1587B7F5109286E85B5A5CD1ABEC15E6B1F9E3711E0099
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_drizzle_gif.gif, In Quarantäne, 2746, 177204, , , , , 703A98E0FBFB8C9B617E732C9E62DB04, BBFACA977B097B1227AD43939F37A2820938D89EA0975EA7A15D24EF56B43FC6
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_partly_cloudy_gif.gif, In Quarantäne, 2746, 177204, , , , , E509575F473727B14C87367068C42353, BB445D3ADC94EA6F62BF927CDCF6D50C13E18C17E272B0071A04893E4FD8E14C
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_partly_cloudy_night_gif.gif, In Quarantäne, 2746, 177204, , , , , 88CD5B8D6F007347115A8A602E5D158B, EB3175D0A4CCEA6E0E743AB98863887DB00F3A3351E1E52366F10A3013588CB0
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_showers_gif.gif, In Quarantäne, 2746, 177204, , , , , 8ACA902931FBDF51B3BB293D6E15D70F, E4E23A6ABC478E91A34B16B6CBA16E94CB71701E5190607BB1EB972F46D23B7A
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\CacheIcons\http___weather_conduit_com_images_weather_Default_sunny_gif.gif, In Quarantäne, 2746, 177204, , , , , 110EC9BCA8470D6488B626EA28914A6C, 8ED3B9AEE57C0262D1BE3779D87BB41AEE671825AF788C58B7179E36407D9730
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog\app-added.js, In Quarantäne, 2746, 177204, , , , , 3062897A714E8F924C0207078150E308, 6AA90A2F09A6497B304E8E2641A6B07FCC08F25E7A2F767FCDB594BB675D24FA
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\AddedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , D5B203DF653C692204139992A1407C3D, 64541954B078EFB314CBDC8AF998A5CDBF515EACD41FF5E204060CE22108F1E1
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DefualtImages\icon.png, In Quarantäne, 2746, 177204, , , , , 20F345ACB306D80871F1293EC1A46A5B, 9F64407DB3F1A320A97F0564F8EA1FFDD0143E097D81C470C61F1FCA77D0D376
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog\app-2go.js, In Quarantäne, 2746, 177204, , , , , CC308EC93CE44DCD6748D524E7575439, 37597E7DB6F492D7D1C70F006ADEBBC6BECA3B5CA4C52466B4433D49CA5B3726
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DetectedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , 2E9EFDCB59B7D11C9FDBCDDB56ABAAF4, FDC21D9B2DF2701F6E3412680F51A63CFDE1AC6607147B346621DE642CFCEB25
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\EngineFirstTimeDialog.js, In Quarantäne, 2746, 177204, , , , , 83482EADEF93E5A22D657E9B2B44EAC2, BE4FF4BFBEB367E092CF13C7B1DE9507040F26BFECF10DFA8A305A7238A2A22C
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\main.html, In Quarantäne, 2746, 177204, , , , , 9E2083328286081888D76227CA528596, F0BD425B9278BB439B493FF69C9967790FBD91B48602EEAE49BAE102997DC956
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\EngineFirstTimeDialog\right-click.gif, In Quarantäne, 2746, 177204, , , , , 0E41C44D287E9676050C180CFEF41CD6, B72E40C74BC1B66039400421C763B9A411D6B13671E1A372874CAF3ED962E562
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\ok-button.png, In Quarantäne, 2746, 177204, , , , , 33CC18D8138802FD7D7A259AE439FD96, AD544E99250076D74CFCEC2C91C9CCAA64592E1B678C7F11E79C2681446BF784
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\separation-line.png, In Quarantäne, 2746, 177204, , , , , F43B589A96E6AB7B171F8C66989419F4, 7D903F28EE0BDDF45A9492E2843509AA6582A8D06C9E6DDC16C6F5B8C30998FE
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\images\warning.png, In Quarantäne, 2746, 177204, , , , , 92A7FC466575CFC32532EAE392711035, 960B2D36AD3F8DAC9AA90810563D75524B02C0C8555F9CB9AC1FC84076A9E6C3
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\main.html, In Quarantäne, 2746, 177204, , , , , D086B40511EB6A167BDE87D61C721225, BBB433B00A5FEE5DF12435CF3912E900B62257EC1AD3205F79E0FE64FBA814E1
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\SearchProtector.css, In Quarantäne, 2746, 177204, , , , , 3207F2DDCDC729F05E4095DC9D79497C, AFFE7EBC4C7D11D9BCC2BC0ED0DCD562009B1C1AABB31D55B9C77E84C7D6CB5B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\NewSearchProtectorDialog\SearchProtector.js, In Quarantäne, 2746, 177204, , , , , C0ECC7B7922AE2D9F8E0160C9152B0DE, 876465E3CF919DE1D91C8B28AA126C21B98C6C65E159ED2E83EAD7BD0C66E257
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\information.png, In Quarantäne, 2746, 177204, , , , , 37A7AF251C518F6B310B5681B786316B, 861C7924205D2FD421C18B150F50C2FBC3ED2F8479956501B84F31C985ED210A
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-default-LTR.png, In Quarantäne, 2746, 177204, , , , , 5B1E5F6468CD5D48B2F8B8738C7B80E0, 485E87666146AF299D3A53D065027DDC36C6A1F37288F6873D77A01EEDF35D63
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-default-RTL.png, In Quarantäne, 2746, 177204, , , , , FF4F6B41DFAB60FDE151847AF6AFDB4F, E54B1D02D6B66D42AB9D58AE8C4A27F6BFC888009CE404FE6177D866CA251A5B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-mouseover-LTR.png, In Quarantäne, 2746, 177204, , , , , 45CA78FCDC4FAED43EA9F8536286D017, 95A02518943BDFE314655CDE87B7C7A7B46D09933646424FF42C7F354DEAF58E
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\images\x-mouseover-RTL.png, In Quarantäne, 2746, 177204, , , , , 1EB77884D8E761843AC9C2796804021A, 40A4BD837AE98F6B621AD51EDF185CDA1656F32BC9C3D88492875B0203523304
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\bubble.css, In Quarantäne, 2746, 177204, , , , , A49BDDB2E8D5D29D0250377CBFEBBEAE, 4B0EC524E6C9D3A307E9E13A1E449BD2002D6F402B7CD33E6F320248C0729001
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\bubble.js, In Quarantäne, 2746, 177204, , , , , C81AD347AC89DFEDEE80F6DDAF1E5142, 6437129AE6D8CBC6ABCD20AAD507C7C1ACB3AF0227C105A831AF53F60A7CAED8
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorBubbleDialog\main.html, In Quarantäne, 2746, 177204, , , , , 2943D8A7794466EEA793E7002E12BA02, CBB9F56FD5294D4849EFFE448306E87D89FF759B40E6658FA7E4DC15A5C3395B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\info.png, In Quarantäne, 2746, 177204, , , , , EAB14BDC52F4BBAB6987DF49E5B2AC5F, C01CDC5E15A3D96B1B2B5D8D9997BC134975C0BCF358C0D71E830ECE47202B89
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\ok-on.png, In Quarantäne, 2746, 177204, , , , , B31A5514F5201CF88D32023B5712C073, 70E996FB88FB969FA77357F918CC3D384F7EFF8180D611D495B2E0726CD01600
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\Images\ok.png, In Quarantäne, 2746, 177204, , , , , 84F3D235A70703484E9D1ABF722247B5, F47C4ED1F768665B7A8A92564F7501C6090793A0161F023D489788E653AFC7D6
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\main.html, In Quarantäne, 2746, 177204, , , , , E9213FC935165A8A5BAD88626C0CA63E, 2A5DF466F0336284EB7222788C83A4176B08BFB42223E3AA08A189D571C66AEB
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\SearchProtector.css, In Quarantäne, 2746, 177204, , , , , 30B6213E5CC1BF8EF0837746F11E7094, 34C877C353D8990E52117D68E70F1E558060CEC48EEABF395B0F0F5E9E92F012
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorDialog\SearchProtector.js, In Quarantäne, 2746, 177204, , , , , 9939730BBCE8C3FDD43719466581DE40, 44096B6C4E28B9D588CFE95FDA13B6A5EC978DDD55A89A30E643C18C2C1FF082
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\Icon.png, In Quarantäne, 2746, 177204, , , , , 9CC824FE255EE01788FED8AE69D0C2A9, 1DE807C48FE5370E914A0EBC414135965D4CDB7B1BA1C69FE9FA4E9A35FE03BE
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\info.png, In Quarantäne, 2746, 177204, , , , , EAB14BDC52F4BBAB6987DF49E5B2AC5F, C01CDC5E15A3D96B1B2B5D8D9997BC134975C0BCF358C0D71E830ECE47202B89
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\ok-on.png, In Quarantäne, 2746, 177204, , , , , B31A5514F5201CF88D32023B5712C073, 70E996FB88FB969FA77357F918CC3D384F7EFF8180D611D495B2E0726CD01600
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\Images\ok.png, In Quarantäne, 2746, 177204, , , , , 84F3D235A70703484E9D1ABF722247B5, F47C4ED1F768665B7A8A92564F7501C6090793A0161F023D489788E653AFC7D6
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\main.html, In Quarantäne, 2746, 177204, , , , , 83BE98DAFAEE8752988F35EF457F3C3A, AC1007E29A43E1CE0185EC3E658B23B50B0E1F5BD32B0E923F8137EF5402D05F
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\SearchProtectorRetakeover.css, In Quarantäne, 2746, 177204, , , , , 615784EC0F9F3322A1865ABD3DF0E2AA, 645B7A840F2DD19BCF5871C84EF7A73C2D95F39423650A3679C00054EF517FD7
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\SearchProtectorRetakeoverDialog\SearchProtectorRetakeover.js, In Quarantäne, 2746, 177204, , , , , 8CF24B278DA351A7D641901D11D37884, 4454302192E134B87782418241773B38158530EA2F0F8FE9B070DC7ECB4D5987
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\app-store-icon.png, In Quarantäne, 2746, 177204, , , , , 849F1EAFD2164C46FD73A143AD206B66, 91B45E368605F6A114995169D4D6E296F10EB423EAE68137FD28E944556828A9
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\arrow.png, In Quarantäne, 2746, 177204, , , , , 75441E6BEAF79D1646529403E7EF991E, F2E34A164F4BF54ED5BA8CF7B400354C8B6E233E7C5955D95BA9343F38D59B2A
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\divider.png, In Quarantäne, 2746, 177204, , , , , E0CBD8E658F678497C7E9EC0FCAA367D, BEF76F9034DE4D3DE7000D884945444B6244CFD43208B7F21DACC8A6376A7E93
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\emailNotifier.gif, In Quarantäne, 2746, 177204, , , , , F863F573944EBD1EE7115874A572EF3A, 13294646475286319718D9676C00B7B423AAC5016DDBF1DF549497C1D4267E42
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\facebook.png, In Quarantäne, 2746, 177204, , , , , 5AAE3708BF987C7BB7356C2F102D8AFF, 94992D29EE6F2E19B6B4915B54FD4F1ED7E12D62558AABD2488310C151284228
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\radio.GIF, In Quarantäne, 2746, 177204, , , , , FB3B7EE5EAEDF1979D123BB78A880FE9, E90D2BFC978C87B8B28E37BB55F1F2C97F6B67588D32E3C1221F4221A17E470A
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\Thumbs.db, In Quarantäne, 2746, 177204, , , , , 678A2975E961CF9C32CFF7F1A8FE317B, 49CDC5C502DE85547FECEC990840CF968358FE88A7D6E4EFDE0A38C0C1AA44E1
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\truste_welcome.GIF, In Quarantäne, 2746, 177204, , , , , 4FBDE15B2B96D0C5F00D1AC16FED78F4, 8D41C8B8BCD83B2C45D0C91C78A0D777A91CAE97741D060CCADD84232E534DEF
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\images\weather.GIF, In Quarantäne, 2746, 177204, , , , , C014B05B57F644AF608106016C9BDA0B, F96960D45EA0C6513150A4386B2B256312ED2B9B37B8818F50A03F72AF2C37C1
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\main.html, In Quarantäne, 2746, 177204, , , , , 66A1085869258D7D34553C523289EB6C, 86DB3C367D6509733DA94933C679632986F213395010559E4BF0BA58D1A48597
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\ToolbarFirstTimeDialog.css, In Quarantäne, 2746, 177204, , , , , D84B16BCA0FE92CFF16A9A96258ABE22, 7462AA23951EBC0B48A4FA0C3171D4A34B5B549CF685471293F6973F538E3615
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarFirstTimeDialog\ToolbarFirstTimeDialog.js, In Quarantäne, 2746, 177204, , , , , 6EFEF7FD0AEFBB94AC56346AA54C8343, 9F74C273EBB63BB7C86C2243C2AD3703516D745FA248EE4F35362C7FDE79D7A5
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog\main.html, In Quarantäne, 2746, 177204, , , , , 3466F9FA13475F3EE0C3C5DABB976E4B, 029E601AFA39277FE3D8D92A172E1EE0C0493D17BFDAB9CB11B4C3737FB0F04C
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\ToolbarUntrustedAppsApprovalDialog\ToolbarUntrustedAppsApprovalDialog.js, In Quarantäne, 2746, 177204, , , , , B1D381F22E6C07E426CCDF056E005827, F6AF8C9D393608AA88E7AAA9D0F13F4CEA08813E5DBBFFC2C35C5A6A06C603AF
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog\main.html, In Quarantäne, 2746, 177204, , , , , 7AC661F3618C8C39A435CEC17EF4142F, F51968D7C06A42481CA93196D37A152061F197C5E816D110C25090755BF41CB5
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAddedAppDialog\UT-app-dialog-added.js, In Quarantäne, 2746, 177204, , , , , 96AEE707020CB18410B84DD582335402, 649571210F8B3E90B048C4ED84E13F14293711E801D45527D592F9345E10D264
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog\main.html, In Quarantäne, 2746, 177204, , , , , 627C60F1BF6F532251760AA288FCFB40, DD5DF104EFAD90B4FED4908AE802534750DABC09E7214F863B25D5F1BB982F42
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppApprovalDialog\UT-app-dialog-needs-your-approval.js, In Quarantäne, 2746, 177204, , , , , 1B65439686C78B69896E7FDBB274465D, 182DA8CED186CAA8449F1C054E48C0D7E496A15429A258D6396AC9B600984F93
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog\main.html, In Quarantäne, 2746, 177204, , , , , 66FFDDCCFF58E4FD0C1E991DE61E710D, A0CE19A5BABEE76633631C620C13BB24222427AA6962AD3D41EE2F4B26D1A782
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\UntrustedAppPendingDialog\UT-app-dialog-is-waiting.js, In Quarantäne, 2746, 177204, , , , , 69F0F1668657051C6628499B1DEA8ABC, 594EF61F9A5CC954CCF0AD4BC52F4A4AD31D47843E4C0E913CBD8DF957C03438
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\DialogsAPI.js, In Quarantäne, 2746, 177204, , , , , 2C2A9007258B6C8948147271631CE811, D575E8078E6D34A96493617B7BD960A07FA61CAC7DE8781B2B34ABCD4BC1A240
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\excanvas.js, In Quarantäne, 2746, 177204, , , , , C0CAD58F958C967912D024BBD714323E, EB83B648BE468F90407BDD8E210AAC8C167B9167A7770287CA771428A6986997
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\generalDialogStyle.css, In Quarantäne, 2746, 177204, , , , , 3B0B0EC566CF13FD7CB5DB7BD5A594AD, 4E711A12A393CC7DF6F47206B62A68CCF97B9EBACCD10FF97C215113134FF555
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\PIE.htc, In Quarantäne, 2746, 177204, , , , , E781697FFED7CF6F50919824269F69FE, 7E7C35FEACF71871EB72423DD701B0BB1A5E99A380FF8FB769ADC6C4FDE2904F
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\RoundedCorners.css, In Quarantäne, 2746, 177204, , , , , 260E3C55F268D13268C717680B5998D8, 0344C7C77F77F1A39A3339800B53BFF39F3148A495901CF1CC5DBA1D3E964276
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\RoundedCornersIE9.css, In Quarantäne, 2746, 177204, , , , , D5B6CBCC0A1EFA9E717CB3029E577960, 879D16F5D074379B3CB9F50E7D02F6E1C4895C9CB7075A01338E0E81660BC0EB
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Dialogs\version.txt, In Quarantäne, 2746, 177204, , , , , A716FE6BFC054C904BB96D2B7710FEFD, F60F1042073236E19D436FE9F789176E2C9F2C8AFC6D3B9219866EE6B86FA035
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\AccountTypes.xml, In Quarantäne, 2746, 177204, , , , , 08034E61F5D45FF987D495DD43F55221, DC2B5D40148AEBC3828FE8271C7BAD587AE5A50E1BCEEFDBE293995051208F8E
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\aol.com.xml, In Quarantäne, 2746, 177204, , , , , A19839E458AAA9AF6CF9F69948E07A2F, 2DEE60459554AE95614805D3CBA8F6A51BA062D10CF9B91037B9A1E035B3A6B3
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\comcast.net.xml, In Quarantäne, 2746, 177204, , , , , A91B92C34FB6837B29C913773D3E3FF9, 927D4919FA31C55376AC94C13C72744ABD5C30CF44549097282B0C2AECA283AE
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\google.com.xml, In Quarantäne, 2746, 177204, , , , , 080D9FF2CA13A3F4492C15C10743778C, 38575B8175296C8BEE671832A4910D623C11D03F49D6ADA5C49092F2D803982F
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\hotmail.com.xml, In Quarantäne, 2746, 177204, , , , , 9BC6A419147F048EE6C22AC7C279746F, F638CAB4F9CCBB788CCCCE8ACF8D3F33DF8E9114F67D7C0F22D5D38107C6632B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\EmailNotifier\yahoo.com.xml, In Quarantäne, 2746, 177204, , , , , 7E91AFCB6E11C7F36801AA0DE89FEE22, 7229DAF98B746291B9A64A7A6D79FC37D92155CEA5D4442E0201B917CCA8E2D6
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=GottenApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 480F1FFD845FB3A575F709002BF23A08, 5D0F0BBB4303F54CB4B9950E34B3C48809CC0E9961241A372A18736D82182FBA
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=OtherApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 07A217E51E400C4CFB8D9D5D4D8E25A5, 1EC56DBBD56D55CD6CBDF3CFA0EBA11C0BAD0B161C09495D6AD16978B316E671
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=SharedApps&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , F0F7FE64D94800B405126E77692F4547, 50CE5F919769FDD47CBE5525B6AFA0B0F60AA770474B3E95EAE9B0D28DD7DAF4
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=en&ctid=CT3201318&UM=UM_UNINSTALL_ID.xml, In Quarantäne, 2746, 177204, , , , , 12ACA2FAB9C1FFC0CFEC31D746D32B2E, EE0D1FD73868EE53679F3AC45825D23B4FAC025C33899C4D0B657175E6062FB0
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=en&ctid=CT3201318.xml, In Quarantäne, 2746, 177204, , , , , 648E3558B6E6D5F160C78827D1BB3DF5, A9101981CBCB418566BC08A73AC010264C969546E15837197E92B39E0C0EFA34
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___oryte_com_content_translate_xml_tools_xml.xml, In Quarantäne, 2746, 177204, , , , , 28D865FD6DAB91E0041141054B95A546, 118AD41F7299E68A7AE3B940DE3DDDB389B797A9CABD8866566F706B2EFA599B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ExternalComponent\http___tools_wiseconvert_com_tools_xml.xml, In Quarantäne, 2746, 177204, , , , , 2DC5B1A5FB1424BDDD700AAB88952732, 63D69B6C86711D8DB21D6581A986A4514789B16993AAAB37BD2EFAF00525CEC4
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin\PriceGongIE.dll, In Quarantäne, 2746, 177204, , , , , 99BE18B1B3A6402D4546C5C563804C90, FB7178C2C39B5DF56BACD7B18F29A37F667B02C2043260A76F0141531C1FFBD4
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.6.12\bin\PriceGong_16.png, In Quarantäne, 2746, 177204, , , , , B5ECF14044E4FD55F61A7499D5687118, 62516E9E15CB969D3580FC1AB5717D6FBC1B9A1C71D7317DC50A4E0FF03F4DA6
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\manifest.xml, In Quarantäne, 2746, 177204, , , , , 31D1B93DC1FAC8E1DFC6C0BF8F2B9C24, 7F29F45B1EAAA8BFD600895FE46EACB03F99391E64F67409D65163B8B87E2E31
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\RadioPlayer\IP_Stations_Media_List.xml, In Quarantäne, 2746, 177204, , , , , AAD25DA0576B1E876E9646B085064E79, 184243431EBFC18CE2EEF0E10B0E2D9C4CD1D0E6A78BF2362C46D84916C560DA
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\RadioPlayer\Predefined_Media_List.xml, In Quarantäne, 2746, 177204, , , , , 2DFF6F89AE4D8271A26F23FD86F858B0, E2286CF554F686B6F94AD1C274BF815597AC5F120DDBBCBB28481D1B647FFAE2
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 7163F82B47793449F8782904A18083A6, A3AA16AB2C58F38AFCD1835F0477B1D6243E409D38F88AC17711FBDF2A674B1B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\AppsMetaData\data.txt, In Quarantäne, 2746, 177204, , , , , 7163F82B47793449F8782904A18083A6, A3AA16AB2C58F38AFCD1835F0477B1D6243E409D38F88AC17711FBDF2A674B1B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs\data.bck.txt, In Quarantäne, 2746, 177204, , , , , A1C16988159E726D83809D189D3EFFF8, 00B7000F542F5BE7FA4E2AE74595C353F6E27C2190A8A6ABF946C2BCC5C11AA6
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\DynamicDialogs\data.txt, In Quarantäne, 2746, 177204, , , , , A1C16988159E726D83809D189D3EFFF8, 00B7000F542F5BE7FA4E2AE74595C353F6E27C2190A8A6ABF946C2BCC5C11AA6
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 0CB91AD4D66DC93318625A2A983E8F87, 5273F918FFF1FA947EFBEE9F6E0068914951DC3C55364B3DDBE47C9C32C1453B
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarLogin\data.txt, In Quarantäne, 2746, 177204, , , , , 15A620C10F700600D7A4979C13416921, CF0DD4EF59129215920270619D4DF4747083379F6624D08FE399705F43F59753
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 6266D3CA5FD23D53DA69E23242FDB3B3, BFB595A2802577C50D8ABFCCC969D2F5D4E8DA98378194C64646C3A577302DF3
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_CT3201318\ToolbarSettings\data.txt, In Quarantäne, 2746, 177204, , , , , 0D267E351B60D438139751390C122783, 438C5004006444C3D8210FDFEB3BC46B91D25D1F9A5EE1674324FE286483B927
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation\data.bck.txt, In Quarantäne, 2746, 177204, , , , , 00540D2ED1A5D1ECB7465000D8E0BB84, B0F4ADF927199304D0DF73F3BF7618196748939AE2A4614574B053406F79CC8A
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\Repository\conduit_CT3201318_en\ToolbarTranslation\data.txt, In Quarantäne, 2746, 177204, , , , , 00540D2ED1A5D1ECB7465000D8E0BB84, B0F4ADF927199304D0DF73F3BF7618196748939AE2A4614574B053406F79CC8A
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\SearchInNewTab\SearchInNewTabContent.xml, In Quarantäne, 2746, 177204, , , , , 62A890357135B34F1ECF3F464259D71E, 88C10F0285A40ADDAD77D81449027F1F165C378B2E66CCC16812AF165DBBB4B1
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\ThirdPartyComponents.xml, In Quarantäne, 2746, 177204, , , , , AC5061A6EC103B07B6269CF4C0C7E44A, CCCFA14142BBFF2B42FC4C5FCE27D3DA480713C0B3E776307266F72CCE079C54
PUP.Optional.FLVRunner, C:\Users\Henrike\AppData\LocalLow\FLV_Runner\toolbar.cfg, In Quarantäne, 2746, 177204, , , , , 1B7DACCBAD0E677C1CE7AEDA637152C5, 9CFC24ED1D0DA443D5A0333BAF84D1BBDC281FAB59D7280243A20960A04F26A7
         

Alt 09.04.2023, 22:26   #14
Skipper39
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



Code:
ATTFilter
Emsisoft Emergency Kit – Version 2023.3
Letztes Update: 09.04.2023 21:45:32
Eigene SchillingFamily\Eltern
 SCHILLINGFAMILY
 Windows 10x64 

Scan-Einstellungen:

Scan-Methode: Malware-Scan
Objekte: Speicher, Spuren, Dateien

PUPs-Erkennung: An
Archive scannen: Aus
E-Mail-Archive scannen: Aus
ADS-Scan: An

Scan-Beginn:	09.04.2023 21:48:54
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} 	erkannt: Application.Toolbar (A) [221031]
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\APPDATALOW\SOFTWARE\CONDUIT 	erkannt: Application.Toolbar (A) [221047]
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\APPDATALOW\SOFTWARE\CONDUIT 	erkannt: Application.Toolbar (A) [221047]
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\CONDUIT 	erkannt: Application.InstallAd (A) [270274]
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1003_CLASSES\WOW6432NODE\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} 	erkannt: Application.AdReg (A) [271398]
Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\SUGGESTMEYES.SUGGESTMEYESBHO 	erkannt: Application.AdReg (A) [272631]
Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\SUGGESTMEYES.SUGGESTMEYESBHO.1 	erkannt: Application.AdReg (A) [272632]
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\COMPLITLY 	erkannt: Application.InstallAd (A) [275207]
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\COMPLITLY 	erkannt: Application.InstallAd (A) [275207]
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\METACRAWLER 	erkannt: Application.InstallAd (A) [275611]
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOWREGISTRY\DOMSTORAGE\SUPERFISH.COM 	erkannt: Application.AdFish (A) [280167]
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOWREGISTRY\DOMSTORAGE\WWW.SUPERFISH.COM 	erkannt: Application.AdFish (A) [280168]

Gescannt:	95419
Gefunden	12

Scan-Ende:	09.04.2023 22:06:18
Scan-Zeit:	0:17:24

Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOWREGISTRY\DOMSTORAGE\WWW.SUPERFISH.COM	 Application.AdFish (A)
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOWREGISTRY\DOMSTORAGE\SUPERFISH.COM	 Application.AdFish (A)
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\METACRAWLER	 Application.InstallAd (A)
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\COMPLITLY	 Application.InstallAd (A)
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\COMPLITLY	 Application.InstallAd (A)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\SUGGESTMEYES.SUGGESTMEYESBHO.1	 Application.AdReg (A)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\SUGGESTMEYES.SUGGESTMEYESBHO	 Application.AdReg (A)
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1003_CLASSES\WOW6432NODE\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}	 Application.AdReg (A)
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\CONDUIT	 Application.InstallAd (A)
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1004\SOFTWARE\APPDATALOW\SOFTWARE\CONDUIT	 Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1001\SOFTWARE\APPDATALOW\SOFTWARE\CONDUIT	 Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-607273383-903765569-4108737559-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}	 Application.Toolbar (A)

In Quarantäne:	12
         
Code:
ATTFilter
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\1.txt, In Quarantäne, 1508, 179000, , , , , 9B2439E76E2A846BFF84587971B16A7D, 3C2983F568E1783E1E4AF0DA575BDF4D539BCAC9CAAD124732E73A422382BA95
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\15777.txt, In Quarantäne, 1508, 179000, , , , , D43216B8BDDE7A93041F84DD920CED62, 86E39EF683CB479429FC4DCC59225E22B0BAE2A4FA8858ED92DFF47C199E8246
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\16076.txt, In Quarantäne, 1508, 179000, , , , , 5E98033FD33293A6AE320305C5D5C1A1, A9458209974008E99182AAE4BA6E8A7D57B103CDD138AD7F80E4D910399B3D73
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\16080.txt, In Quarantäne, 1508, 179000, , , , , 48B76D3A6F28BCC17A83826D7CE3C59B, 1BEABEF505328C993D8C77F787EAD4ECFBE185E370F7729ADA0D2B11669B9D92
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\16700.txt, In Quarantäne, 1508, 179000, , , , , 24922CF2B1994DBB45E7E757F34F3B32, 586E7736BFC728B9699E1B0130E52B05DD3D22031A88AA97140C9D3094090C98
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\1728.txt, In Quarantäne, 1508, 179000, , , , , EE3F462FB4CB5622E675678751A75F56, CF084358C9A018F00707471C6B18B0AF937814BDF5B442598887A0949A0E5957
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\17807.txt, In Quarantäne, 1508, 179000, , , , , 251ADCF0B786C3850C3BD7797743D922, 3C3821171381F082BBA4FDC6E3C1D9FD0A257AAF8DD4D8EDE88E999932DD3EA2
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\18496.txt, In Quarantäne, 1508, 179000, , , , , EFAB2BA1C4CE39C287EC1B285F0F6D85, 4941482FB40EAABAF96F793927291B579C3732D216F89CE332E4F74878AD0A85
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\2229.txt, In Quarantäne, 1508, 179000, , , , , D58AA468C01FFDCA00A59E6F2C695AE3, C18090EAFC4DB8D0AE913AF8555C8625C1A784E8286FBCD122B5ADF4FA444F18
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\2260.txt, In Quarantäne, 1508, 179000, , , , , 045AE9519C3169132E6B3F3F1F07A328, EDF1A9EF29FED56FAB5B35F5A4DD2AD755C14703BC3CFC2958E77038129C05FC
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\41.txt, In Quarantäne, 1508, 179000, , , , , E27F84309712DFB221E9DD9BDEC10D24, CF1F4838D434FF207D5935E2D5E7BFDDFF404251F2F9A36572390E5269D5A778
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\4258.txt, In Quarantäne, 1508, 179000, , , , , DDD8DD703002C735E13D25B3720C9900, A9DCED3471FB87D8113486E27E7DC49E927846CBF01B9B3D83F4A0C8969BF1D7
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\4436.txt, In Quarantäne, 1508, 179000, , , , , AF8504893C5A4CA94D090EC3D72EFB02, EB7C9D0FE983450EC569D26C5394330BC88554A9B7B8962A039D988BF5501139
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\4489.txt, In Quarantäne, 1508, 179000, , , , , DD3453A3FAD2F34AC702D22B12E650E4, AC4531CD6EDF0AC39FB652C8B15473996C0E97B503914EC7DD75BA1252C93009
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\450.txt, In Quarantäne, 1508, 179000, , , , , BAF298C40BE89D0A02772A8FF356F145, A6FC98996DB02709689BB164CD666B31341F0E945B31BB9F8443F6F92992AE48
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\6627.txt, In Quarantäne, 1508, 179000, , , , , 259B62E141D368897C7079AC55C87187, 5018ED3E7F3A35949977DAC1C6AFE48E904FA4C5E818250E22FC4E4E9F25E401
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\a.txt, In Quarantäne, 1508, 179000, , , , , 8BAAA4F9F009E2AFB6B140AD6B35817A, B2B39692D60124910ABCE0FF599EE43D7810D4F6FE514D654CA7071B032CE801
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\b.txt, In Quarantäne, 1508, 179000, , , , , 614FA3AA3FE574B99B111529BF4EEA9F, 80D8B08420812784BEDE83384CE6D24ED7D9B8467D51FA34A06EB7D6A9822338
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\c.txt, In Quarantäne, 1508, 179000, , , , , 083E3544FB355A593917C1F1272BC84C, 5164F923E516A2EF898DD41C615C8AFC9D3BD36B67A460E0D7BE6DD6362D92C6
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\d.txt, In Quarantäne, 1508, 179000, , , , , E50CAF801F363A26AB160E8A3A642B4E, A68A99E5A2A6680A03A6DBA15D25D9BE664D8091386210635AE570B738A4307C
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\e.txt, In Quarantäne, 1508, 179000, , , , , 99E5256576966DD62EDBC373FD3FE358, CFF9B89132301F3829432D1DD5E49F94D3381AC49A91859469D40AB088CFA63E
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\f.txt, In Quarantäne, 1508, 179000, , , , , 66FB5860719D227E9A0A3CADE1F841A2, 28F789CCFF7DCCCA475823AE44CC6A9D6721D543ED61C4DFFE1B879FDEDC8C9F
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\g.txt, In Quarantäne, 1508, 179000, , , , , F345C7687F817E4CFF2A97576124B104, C5C0B7181E1EA1A6157857FE1234E7EC7A30C8A547DC61AD006A774404CA8180
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\h.txt, In Quarantäne, 1508, 179000, , , , , 570181B96379105FECD83074F72AFEAB, 8A866EAE4235CCB6EB05D59BF1B67A5112DB4487D08B3D50EE082EF4CC1C997E
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\i.txt, In Quarantäne, 1508, 179000, , , , , AB85B6112D6FC0247627D5F486CB222C, 8BF92469FE41800DA339A7D8D609C41F9EBA92BA318DB75C6A3401F074A5C3FE
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\j.txt, In Quarantäne, 1508, 179000, , , , , C8FDB33B4B1FB2CB67A61BD3EC16E0E5, 10A20419B654D8F3838AEEA220D32E607652AF7AAE8B660F0E070B07331BDB7E
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\k.txt, In Quarantäne, 1508, 179000, , , , , 120B3478CEF97057EC733799C37C30CB, 2E03480FA25C3540512640628B84D691C8B5F1B7A5F74E587B8048D31D80B1C8
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\l.txt, In Quarantäne, 1508, 179000, , , , , 1D693E2B686A66FCD89C980C07F7938C, D36F6D63AF5B8AC977C99D3B16BFDCF79FE51F7813C458ECF63094C5722D7F08
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\m.txt, In Quarantäne, 1508, 179000, , , , , 676639A72123CE7BBC7C23A403E6DE37, F38CCC5322050196E5CDB53633331A9CC5C48BC24DBEFFB63ECDA85B24366654
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\mru.xml, In Quarantäne, 1508, 179000, , , , , BD8CDB77BFF902B459D33D200F0B20ED, D86AC0D73A5C7D277E7C1EA8218074CC4B0DC21E61CFBF981D97534CEF03A344
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\n.txt, In Quarantäne, 1508, 179000, , , , , B1BEDEC3074698C006B2D8812A3DFCF5, 7BF162FA3C14BC3ABD770A066E918878216436CE17A685040974A02B11528A49
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\o.txt, In Quarantäne, 1508, 179000, , , , , 7DA980EA9DAB3FF4BEC1E7FB5C3B2B36, 46F3624352B48CD122CCB118E5702575CDE8EC052887B3993DCE9E3130873735
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\p.txt, In Quarantäne, 1508, 179000, , , , , FF6ECDB6DE3446153DDF1A7DAD8D37C7, 3F6F356B1B14207AC289F448787BAAD2527B89751C0B17A6807D15795A5DB278
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\q.txt, In Quarantäne, 1508, 179000, , , , , 41849AC516BB7674D6E9118E19E6A27D, CF2A9A3DEB83B79A627D690F55E3AD23DB7254F70CFC5DDB73BB5CC0E5CCE115
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\r.txt, In Quarantäne, 1508, 179000, , , , , 95A27EA0E710BE76E8BC2A95F6189763, 608C024E7147144D4172E12192E419D210C57142219E1788A949D91A0257000C
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\s.txt, In Quarantäne, 1508, 179000, , , , , F8E21DF610E527D75EC537DBA4068230, 94C358EDE8AC42D52DDFE0E466B62A67B2DB41EB5E444B82791D59281B606062
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\t.txt, In Quarantäne, 1508, 179000, , , , , F3BB8FC9A79EC7D35A239ECDFF8076AB, 333DA5046A86C48CAE856D454067837060831AA463AC75C89CD55845E50DBBB1
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\u.txt, In Quarantäne, 1508, 179000, , , , , B86E024AB20305E92F01428284503A66, CFBE9EDA506D3248ACB63E359B5A92C3BA955FB0367A19713607F33B0DC5AC84
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\v.txt, In Quarantäne, 1508, 179000, , , , , 19721E3D05037E6736E2FC2788388BAF, 33EDF6255F44334ADD90A6237E50A13DC35B50FA7F3132008D87AE5C9F90E491
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\w.txt, In Quarantäne, 1508, 179000, , , , , 93789A29C613BC05145C94861884E82C, BAF8E3D3CFB6E0053A4C87E54F14182DC7427375C80CE95C074046D4F75DFE2D
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\wlu.txt, In Quarantäne, 1508, 179000, , , , , A40CE42A10E720595A2A9791D94D7A3D, 0AAA932561C8933784CD96DA3139E8173D965E7A30065B334922AB345CD8AC81
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\x.txt, In Quarantäne, 1508, 179000, , , , , 23C61C51BEB02CB7773E3A626BA82A39, 1FCF9999166CE424D1F38A2ECDDC77C233F98FF8B15E7A3BEE761C9B558E570E
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\y.txt, In Quarantäne, 1508, 179000, , , , , 22FA0830D63DF6E91273E03E94874BAD, 26462A5C0149C19ED4CD418D1F859F2561A546FF016FBEB1036F9ACBCA9594B2
PUP.Optional.PriceGong, C:\Users\Eltern\AppData\LocalLow\PriceGong\Data\z.txt, In Quarantäne, 1508, 179000, , , , , 1EE4BB13E33FE0F3DEEBF217676C5D80, 31A03C5B4286112B2EA434A27AE1700BB9A39B76FA0A88ED27770B9C5B89AD2F
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\1.txt, In Quarantäne, 1508, 179000, , , , , F420D9D82E22FB6767ED88BCF9E4B8A4, CC2DEAB594C7FEAFE3181B1CF4DE7D52B5960F1CAA0C37851ADA1E2179AB5E5F
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\1391.txt, In Quarantäne, 1508, 179000, , , , , FE6232B63EB0DF7F15EB9CF5A2D9086F, B3E846BD85C30119BDF94E90F39DF03B90866429B42CD6A0216C0F7FC36E7094
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\21356.txt, In Quarantäne, 1508, 179000, , , , , 81BBC0256DEFF3C8D0383176ECB83367, F450F8D45CAA4F7E1D0B6EC94B595979E495CCC0300D4D832511C1CC27951D12
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\2229.txt, In Quarantäne, 1508, 179000, , , , , 8E131E0C9D5CE10EA46BA577FDAFE3F3, C313A40BBCBCA7A2EE8AD4458F553174768F26334EA947EC5685EA4EFB138065
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\2260.txt, In Quarantäne, 1508, 179000, , , , , 5423A5BF1562F09A400958ADB7113DE8, A82AA8B916D9E910C9BAAD4B7B9E34C3BC3F85E3EA16F67F9303C1C977EE774C
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\23438.txt, In Quarantäne, 1508, 179000, , , , , D521C7B615C25968A99ECA46E51BE9BA, 270B2D6F2E636F8794D98999F8002D994A739D14063D6A6B774105741A66E219
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\29697.txt, In Quarantäne, 1508, 179000, , , , , 449EEFBD8E7F2EEBA6797FCE234B9086, 0ED2A3355993EC0D24EBE0580D4DB8833AC4D984D8F8F78B29AEAC522BD15ABD
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\3721.txt, In Quarantäne, 1508, 179000, , , , , D75B547514C95143B468F9A99BAA7774, 3D813A0B3806363FF38D9DC16545E2BE035CA0E7CCCAD3ED2C258E3E457EB5C1
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\4489.txt, In Quarantäne, 1508, 179000, , , , , DD3453A3FAD2F34AC702D22B12E650E4, AC4531CD6EDF0AC39FB652C8B15473996C0E97B503914EC7DD75BA1252C93009
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\450.txt, In Quarantäne, 1508, 179000, , , , , 4635FD1BA0EF66C5EC61F5729B41EC39, 5C204584376E08754D5B4FB78496897D777CF511140A35875A5B75797AF6D712
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\6627.txt, In Quarantäne, 1508, 179000, , , , , 5406DEC6B33827785C2A6429F21674CB, AE586B3E153C75F4A93FAEA0451BCB48590D7A2CD515ED98F5A17F5614354944
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\8051.txt, In Quarantäne, 1508, 179000, , , , , 739142E6657464F75BDBAA9BF2C8ED23, A5A7ECD3C46164CC1AE18090F424DBA96EE3EDECD8EB608C43457949D5234E10
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\83.txt, In Quarantäne, 1508, 179000, , , , , 2E8475963FD8520488B62BA2AA4BB7FF, 65AB3A27E51EEDCE44FC1321F79A3D50DE039CE1A37C6F00C4B253D34B69E68D
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\a.txt, In Quarantäne, 1508, 179000, , , , , F562532B1D7E44B6E19701443FBC2BA5, AF8D2EEF606102F0308CBB26F4B74AAE053E6FAC52AFD330CF2F7655D34F5D0E
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\b.txt, In Quarantäne, 1508, 179000, , , , , 08324CC493070E30055BB87C9E632E4C, D3881FBBFDA5F6FC8B87EB01FC99E1AA76DC4846ED0A06BF14329104B23EE50D
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\c.txt, In Quarantäne, 1508, 179000, , , , , 1A92EB1400B638FB6909E9383459D420, 00A9D7B90763AAB28066952F4E91233687C600A88AF5C76721E89B6495863C91
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\d.txt, In Quarantäne, 1508, 179000, , , , , B00AA9914EA2E5A3A1F83670303D8FDF, 8021F086B0D1E7F5D00ACDFE5F34F8116C9C7B0304E0FF2FD4B8417216C68FC2
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\e.txt, In Quarantäne, 1508, 179000, , , , , 9B5EACE0622BB285A7B24439B02F5E41, 84C05051E4A4EF66DE27B334687FF3D0454410AAC10653186698EF5FC735DC36
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\f.txt, In Quarantäne, 1508, 179000, , , , , A55C00ADAA3BFED2FD72BAED3A4C1E14, 426C16E7FC1F4912503DD04BD2057C08F8F0A785BF29BB7772295C15000071AA
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\g.txt, In Quarantäne, 1508, 179000, , , , , 07351B273F408FE4ABBA83585F0F196D, 81D5BF7A97EAD22332B6B9F6C895BC4B8B5AF98B38D5BE43D09942A8D36BFAB4
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\h.txt, In Quarantäne, 1508, 179000, , , , , 37903DBA90377590C28EB5DBEBB59B02, C038947EAC5912BE8BAA30882791DF6230031C6276E86C4AC32ABFA705BC01A0
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\i.txt, In Quarantäne, 1508, 179000, , , , , 072E17004508C2030BE8391FA10DEE74, D25BFA8B69194A28848C3F9CEBA988E52A2F9A2F4605B268A33C2504477E4871
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\j.txt, In Quarantäne, 1508, 179000, , , , , B72AA6BD74C8466B2435E9BB6430E4C5, 5C9CD886CCF4668303F108A187CB56EF6965B71451C08B4D4378C1A3D9A7ABF9
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\k.txt, In Quarantäne, 1508, 179000, , , , , F265FE117AC703804ADAA0190ECE5693, AEFBCDF2E555689454F3AFE883599A119FEED98B7B662CF1A8D4736C934ED5DB
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\l.txt, In Quarantäne, 1508, 179000, , , , , 6A92BE8B17EF032E5D53DF803BB0306E, 4828E27EA95110DDE31357F99F76F57004F5CC2501A7FD8673BD432D9ED133DB
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\m.txt, In Quarantäne, 1508, 179000, , , , , 6B6513C90F27F8D08DFEBB8AB45F2C82, FB289FF29D8846EB53098F05AAB07427939DF759A345C44F5A34E806E0E90EB6
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\n.txt, In Quarantäne, 1508, 179000, , , , , CE8743BC574F007B20709EB0FAF00B28, 4C350D8EF981D3E73240C422CB6CAA7E1A08B5C83C1C9E87E63CF652C40EC3E8
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\o.txt, In Quarantäne, 1508, 179000, , , , , 49E519D510AE74D7B58871995044D283, C0709362FB16079448C2BBEFDA2C1E3C684731EA2C96BE95ADF901AC0E3DF118
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\p.txt, In Quarantäne, 1508, 179000, , , , , 0DCE2EDC9BAC33085CD11F4ACF442339, 3C602357340BC38F69CB40A8B93233540502360854EDD111E2715389651245CA
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\q.txt, In Quarantäne, 1508, 179000, , , , , 3395C80CFD077D2092AFF444C78E5BFC, D02E49D1E3A6C0590012C6A09345C76C7CA900A81C4BC5D5EE0A6E19C8729FD1
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\r.txt, In Quarantäne, 1508, 179000, , , , , A3AE1C19DE854037D0D8285F4CB93D21, E4F6D927538CCD0967012AB87D5501197DD6459AA897871D33C1753707630930
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\s.txt, In Quarantäne, 1508, 179000, , , , , C760AD5849B323538F7E7E46B6308FEE, 638D2A81351F9A370BA70D3C8AFDFA52DAD47E56794BB1E808547ECC6B8BE588
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\t.txt, In Quarantäne, 1508, 179000, , , , , DB15D944264B920C8DBADB86408E009A, DB19DC3E5CB57F2D752882B5288AA1F02096733433E9C26E7865515FEAA3A443
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\u.txt, In Quarantäne, 1508, 179000, , , , , DFD89EE1AB3F66FDB9C300F0000BDD99, 3FF1887A12F58F2CFF936BD3DB597D9CFAD143CA604B02F65AAEF110015D7421
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\v.txt, In Quarantäne, 1508, 179000, , , , , 14EE4B963F42C7ACC513BEB65B8F73C7, B11D40215D5307FB05C12A7303AA26F67FBB0C55867B7A01232EA6FFD94EAE8D
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\w.txt, In Quarantäne, 1508, 179000, , , , , 3B12D3FE5FA1E26181882A94D04C58B1, 1A781A8E28A172EBDCD11D81AE7642458FFE1EEC3298944D0DD392CD86F7E549
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\wlu.txt, In Quarantäne, 1508, 179000, , , , , A5F525B72CD5F9A4DC2EAFFBA3C94622, BC6773B84CD1AFC4899C4F817746387E63F3F619571EFB05392725C8A2FFF22D
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\x.txt, In Quarantäne, 1508, 179000, , , , , BD7E8FF2A068F5C93EF55FABBAAA093A, 70EAD8186B31B2737E2D546D9609D30051201C4055CEFEA4F333A0116496E5A9
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\y.txt, In Quarantäne, 1508, 179000, , , , , 93E45E8C3847EDDD15D16916C59B464F, 0175235002CFF582FDF5E09256CB39E827E83C73BAFB1A66E9C0DE1845B35312
PUP.Optional.PriceGong, C:\Users\Henrike\AppData\LocalLow\PriceGong\Data\z.txt, In Quarantäne, 1508, 179000, , , , , 3311548F3A334144A9E42161A5875064, 5B5DE4DCDD54E24618EC3DADAAAB58FCFA9484D866D4C3D78899AE88619F6041
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\1.txt, In Quarantäne, 1508, 179000, , , , , 187194011BAE11E4F017CC64ACBA4F20, 6554DF6CFD1EFB63D8B617E472C725101616C998D5EDF22A44CCF30F8B0409EF
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\13895.txt, In Quarantäne, 1508, 179000, , , , , 3016862E1ACF6548BA36F23F48FDD213, 075AABEC1C4908F3E4E3C05A925BE80A07FCB7635B47247B69DF1AAAFBC0ABDE
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\6627.txt, In Quarantäne, 1508, 179000, , , , , 964A987864CAF1CC56E1A4F6EB166E43, BBA97311D960D7B3AA041EE7867B9114C55EAC7ED3A578C1F71EB86828377F0A
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\a.txt, In Quarantäne, 1508, 179000, , , , , 6D82484C9B5B796B8F2DC33142D7E795, C90FCF77021E9B550693C0EC2BE4784950E81C1E4848684FEF8F2ABF8E0D374A
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\b.txt, In Quarantäne, 1508, 179000, , , , , 33F43FF02529A66FAF0FB5CE449292FB, 08E3D04A92D0AA5892B1BFADB6E69CC245575FEA17607F5F45015A1FF1DB4F8E
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\c.txt, In Quarantäne, 1508, 179000, , , , , 7106E6D0C312454BDD8BDEF0F27819CE, 9DB30B03E570317FA67A0570FB2D550B4BE421DF8DE2D198F590108C36A5EC71
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\d.txt, In Quarantäne, 1508, 179000, , , , , 7EEA1C82F68D8125DF1BB0A116B8A310, D9DB1371158EF29F48CEDE8FCD3AA6701F9298279E6F05DC7A3FA36EA67D88A6
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\e.txt, In Quarantäne, 1508, 179000, , , , , 1859F97678A0AC67DAEDB23F2A7586D9, 62E4FE2C83ED5E6AF2A5347FAFA77DA580C879F7A3FBFACB76D8DDBA124BBBBF
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\f.txt, In Quarantäne, 1508, 179000, , , , , DD64C0C1C9E78A2F00674A1839F6B726, C1F33DD14FAADC91A1332BA55048E18EF764A3368453542FFFC29AD36E2B421D
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\g.txt, In Quarantäne, 1508, 179000, , , , , 98EC2293A4AF7CC65B54C95065798901, B51C818D12D34A11C05428674F0FCECB0A0BE7990B61CA6DEE2627372C5E00A9
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\h.txt, In Quarantäne, 1508, 179000, , , , , FCDA5DD7906EA6FF580DCAFAAFC83C4D, 5A812FF67B7F87BB25F6640B405957C0E981972FA26240106F30DF090B98B503
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\i.txt, In Quarantäne, 1508, 179000, , , , , DF1B08852EE8DFE71CA4781AF68679DA, 6F903CD7B5796905CA130460B006E7702ABBAC6A47465800E2D9BB20510A697E
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\j.txt, In Quarantäne, 1508, 179000, , , , , EA2D25C40B3DC03831C0355D3A0FD3A5, 3E0334A8220DB092BE59541D62EC3D8D68F980FF62B9733BF7A0031F8D4BBA1E
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\k.txt, In Quarantäne, 1508, 179000, , , , , B087C1DBEE82C08C610AAF85C4981AFE, 3361DD87500B87D0F5F390666245AF762B4D52D5AE059FFBB3BB5DC78164DC01
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\l.txt, In Quarantäne, 1508, 179000, , , , , 213EA3D4F47CC1DF0DD1B3BFB64DE2A2, C1C88F7DEB623B441CFE1EE436A8EB1DFA9F7FAE6AF3736354A665851023AFE5
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\m.txt, In Quarantäne, 1508, 179000, , , , , 12DDADB25A7E2A0829EE1025D3CE20A1, B7F7A55680302058CC6E434ED6D3EFB6CD65B2DA877B747E3D874B6A19E3A402
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\mru.xml, In Quarantäne, 1508, 179000, , , , , BDD7A505366A55C9AABB23213382E3A9, FE3AF8CA67B2322DB0DAFCEA4C88371B4C327A4BBA4A1B733B47A6CE4597E362
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\n.txt, In Quarantäne, 1508, 179000, , , , , 9FF77F0BF671168602378705F481CD57, 0C630141200A206DF1339D772D8A9EA6AC33453A3410BD0EA7A5A574E67E0265
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\o.txt, In Quarantäne, 1508, 179000, , , , , A0113544BE95882BA412A658710930CA, C3F150536A0C9835D863816DB3ECB3AA86509BD7C2FB5D6183D7D3B6A9B93D70
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\p.txt, In Quarantäne, 1508, 179000, , , , , C00021EC8DE6DCB5A8B4F8EB0EC108AC, 6F5E4DCC1A638B885C458B496CDFDEFE6032AE833F7011D5158989752509FE57
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\q.txt, In Quarantäne, 1508, 179000, , , , , 06F9DF67F84F3D656907689C0024A374, F312C2366DC1CB95103CF98E17EDA5A7F8AB059FB4A7668E21C2DD2F19C07C14
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\r.txt, In Quarantäne, 1508, 179000, , , , , 4FC5C2657CD6D55BD40482B56CC4F6AF, E3119F36096C3E78CE1A4A2266BE0EB2EAD08A79BB52FAFD8EEF62FA3AA33622
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\s.txt, In Quarantäne, 1508, 179000, , , , , 3198C5F73F8C2C2EAAFBBC10B4CFA128, 28AF0B1C40161A9B132EF48F15357ABF6C57B2C41EBB5739BCCF8B5389E19985
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\t.txt, In Quarantäne, 1508, 179000, , , , , A2CA45D60FDE01495AE1DBEC9869C372, 33B672A5D8C94A9868869F60A4441BC8CAC6D9225A527BF544CE32B6E9BED63E
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\u.txt, In Quarantäne, 1508, 179000, , , , , 2B7DAEA2FB10EF4CBAA3D5AD45501E82, 534ECA866C947B84A4A8A17A6B27297F236DF2BB0720D06E54DB634C2E3405B2
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\v.txt, In Quarantäne, 1508, 179000, , , , , 540661AFF8CEFA68845D008C18EFC4C1, 02969C84606ABE4E4848CBD98C585FE859F21A84A5044A43D7AEB13E04BBBDB6
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\w.txt, In Quarantäne, 1508, 179000, , , , , EE6BBC3FF46603768D91FF119784F0B5, 322778B5ABB1480A157987B58D2250063E20EA30B1A9494D5B35B054D1B1C2E3
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\wlu.txt, In Quarantäne, 1508, 179000, , , , , , 
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\x.txt, In Quarantäne, 1508, 179000, , , , , DE82CCD17CA27E1ECAD7F3D3B5C2059A, D0D961B13DFA7C2A117ED53FC55D907F59D988D7659B0E20FF86585069DDEB7E
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\y.txt, In Quarantäne, 1508, 179000, , , , , AB025D52FD0628EBB1A5C83C723078B7, D378949FB22C995A9ED5BCBE582DCB4347158BFBB7C69FD933EA467718762DB9
PUP.Optional.PriceGong, C:\Users\Schilling Family\AppData\LocalLow\PriceGong\Data\z.txt, In Quarantäne, 1508, 179000, , , , , CD5A88F36283941092AD570C1CCDC3B6, 754FD3EDC898ECC3C873C5E72FBAF91334371C27467C59CF5F6D168DB5B77B95
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\mz\background.js, In Quarantäne, 2924, 179770, , , , , 8DFF324912879182CA379039CE01FB17, F326025851218B6B58D5A4DB613462CECF222C0B3D90BE53A11EFC9C0BA68897
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\mz\content.js, In Quarantäne, 2924, 179770, , , , , 6741CF088C4B65C5F1329499EFF92244, 0D9ED35F7805F00C77D9FEF282D8BD7DD42838A3E9F0CAE82B8878898BEE8A77
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\background.html, In Quarantäne, 2924, 179770, , , , , E356DAA3A70411FDE6091CCBDAEC3206, 40DC013D62FAF40ADEC0B898B9636C3B03D1B6265F6309D5678CD9C170116386
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\bg.js, In Quarantäne, 2924, 179770, , , , , CF541436DD731DB1088CC1C9481F7824, 4EFBC5F50451734C6AB2781978AF3341B299DA7C2114BE3A83825E66A87168EB
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\button.xml, In Quarantäne, 2924, 179770, , , , , 598CFAF5BC644B07D585A268185CE11C, 1E02F8C27B087FD7879CBE13C4C39F864B8BBEDA113FC240B585657B6E6CCB4C
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\config.js, In Quarantäne, 2924, 179770, , , , , 9C32051D3EEDA68B1ADDA5B59156E596, 68E0E1652D055D76D7E8B5F88EEC70F38FD89D289E850B0D03E3C83769488B9C
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\content.js, In Quarantäne, 2924, 179770, , , , , 024B82ECE28F3870F3C7F6DEBF8F0CD5, 723EDADF07E76DEEF6BE6E2D4EDADD5DA5D716F73EEE4A0A12CD1CAA4D95A512
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\framework.js, In Quarantäne, 2924, 179770, , , , , 5A37508A9F16B96FFF02EBC51E24081C, F9860026070027DDAA1527BB826180DD1734CE870D420E50179D9C9223C22C9C
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\framework.xul, In Quarantäne, 2924, 179770, , , , , A6335FBB44926EF0E20AC2392723D08C, 3D148CE0C49A77CB88BFFE6F7516EE87ED070FD0076C01F8C30B14BBF53B9025
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon128.png, In Quarantäne, 2924, 179770, , , , , FFBA47C4F0F5F6AC41744A00D201A7B1, 810020F40820385CDE357094D2132EE9B565CB655A6C6ABE72CA1E481DFB4C4E
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon16.png, In Quarantäne, 2924, 179770, , , , , 2501F434C4B7AB3B6318567AC59B0CCC, FD95F5FE0DD8ACC25475BB0719F59C609885E27BCFDA22534C96126173B218FA
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon24.ico, In Quarantäne, 2924, 179770, , , , , 7EC4BA88C2B857869BE04C2658F8DBDF, EC1ACAD6C628EF5BC6591E10B40772563040A3BEA9AB3C024DB550DECEE44A56
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon24.png, In Quarantäne, 2924, 179770, , , , , 87780BF8221F70987F8E5D98134552BF, 551B647D743F13B10ABF16C00C901B13F602E231ADFE268BA05CB04589E52945
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon32.ico, In Quarantäne, 2924, 179770, , , , , 2DBB6446A94DE036790171CDA14AFA1F, 4ABE768350AEF66DCE55DEC5E9E84AC7F61FA48E43E2EDFCD156BC1955EACC54
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon32.png, In Quarantäne, 2924, 179770, , , , , EFC0D60678FB1085D2ADF4491A273487, 8619C1BEC81B21445AA5EC267939FB2E9090F023ED4BB784E6A72DFCE2395F40
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\icon48.png, In Quarantäne, 2924, 179770, , , , , 1E4F9BD4517AE5CDE8DF390C200CDF7A, C0107B8B9D0412A23152FB93063F3443317DCEA65ED6329A0690377C974DD5D6
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\jquery-1.6.2.min.js, In Quarantäne, 2924, 179770, , , , , 87CD3F6097FA63A278E72FDAAE27498B, A87AF1E095953FCD1DACC5CF3610EAAF4186DE06B375D07B2CDF7E717BD1760B
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\options.xul, In Quarantäne, 2924, 179770, , , , , 08F363447AAFF3B4BAC38AE112230A71, C66D32F42523174C5A9051C46FA72E1BDC77E3C4546388E74615BF635E5AF160
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\content\settings.json, In Quarantäne, 2924, 179770, , , , , A6394740F78CE30158208D8B46F0DF7B, 7D8603162B9A6F5BE051E7A6D2C4FCDD7ECCE73B41985097CE6F4DB6D359550C
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome\skin\framework.css, In Quarantäne, 2924, 179770, , , , , 5C4E916F9FF660ED266AFDB56D96C179, 0955DB947D75A2E69919350D4F03DC1E7E1EE238CA54B9881AED094501434456
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\chrome.manifest, In Quarantäne, 2924, 179770, , , , , C8E16E5FB9EF238DF033F154CD1CC16D, 8611D6CEA5B2DEF26029F45C382AAD48FD16CAD650A4E17AFCB2D9131F6A0DE4
PUP.Optional.SpeedAnalysis, C:\Users\Schilling Family\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com\install.rdf, In Quarantäne, 2924, 179770, , , , , 0EA2A5913A2D2B310F747AC1B0301912, 4198B9AF3AE8FAA8303408F1582CC553D893406F8E5E72769A125CCCD0063D55
Adware.Revizer.PrxySvrRST, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\LOCAL STORAGE\http_static.re-markable00.re-markable.net_0.localstorage, In Quarantäne, 7549, 879428, 1.0.67783, , ame, , C3D1FEA935A77B64AA02FE4228AF9148, 75FAE20FA18271CFC9F59E5AFC15D5A55FAF149FD2114C541A04B8BAEDB85D2E
Adware.Revizer.PrxySvrRST, C:\USERS\SCHILLING FAMILY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\LOCAL STORAGE\http_static.re-markable00.re-markable.net_0.localstorage-journal, In Quarantäne, 7549, 879428, 1.0.67783, , ame, , 6BBB46056C534F03139CDDF60EB4AF2C, 60AF4FD572E69638EC5C3A2512333677E6A3921B1B32350F1648E004777545D0
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\close.png, In Quarantäne, 112, 182117, , , , , F2F46CE0DDF7FA2D662F81D5B5980E16, 9E21A00F4080650CE150B3E6260D7A8AE1158AEFB51A8F61D4071A9B00C63219
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\closeBtn.png, In Quarantäne, 112, 182117, , , , , 9154A121829BB39EC17A1A3854B4BAD5, 75917B74349C1B8909C2F9B33E548020F04EEDA6E1C3B70E1164DC7644C95CF8
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next.png, In Quarantäne, 112, 182117, , , , , 4EECF5EFD00671CFC019065080FB043C, 1CACC4D8D7895FD651E7C768AAAC1F3A03CF653E10925C2CFE86E32897F6BF94
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next_hover.png, In Quarantäne, 112, 182117, , , , , 28DA4BC294EBEA328DF5FBEE85BF3C2F, F8EF3BAFBBA779B4E60FF349C91BA9922D8A16AE7E520018C286D35A434D65BA
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\powered-by.png, In Quarantäne, 112, 182117, , , , , E97EF28E65A2828E22200A16EF564D8E, 88C5E7F261F3DC35EC95087A03C77D18220435B74E891F0F91D01FC53BF9D5C7
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev.png, In Quarantäne, 112, 182117, , , , , B961B74A05AB150BE16A33FB5E738411, 2FBBAFEE5C10FF420F4E174DDF9FFD9CCA95165A40CE3270ED1F25D47AE1BF6A
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev_hover.png, In Quarantäne, 112, 182117, , , , , EC6F265B66B4656E3CA38E7F4EE75D6B, D7F79A496DDA21F6D1928A0483AC8664FC89480F36948A705D8CA9E7ED32F306
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\settings.png, In Quarantäne, 112, 182117, , , , , 0D932BC8C44C82FFF1B1E967EC938ABB, FF89F07E6002B485C9CF985B422F4714DFCFCFFB9DE88787F800FD8A003DD355
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\settingsBtn.png, In Quarantäne, 112, 182117, , , , , CB67C0272892FFCD1A719A504744A523, 4C40B37D25BB9BD1BEF4BAC615FA8B55DFF6FCD42551711EB5E8D2F837F1920C
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\close.png, In Quarantäne, 112, 182117, , , , , 6B66C28004038C7C30918AD4BCD3C79D, FC2DC90A1AD88C6FC9CB41560585C0F0E8BE90F4A9737D74E0F6177F41A9BC13
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\closeBtn.png, In Quarantäne, 112, 182117, , , , , 197914BAD88DB8ED06CD19E554E470A8, BE4E1BE45685FCBA6AB01914A0A869623157A03E5F1D44A56ABBAAEA5D801D4E
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\powered-by.png, In Quarantäne, 112, 182117, , , , , C43A66925FABD8C756C9E38399A603B1, 446CA6C93427268FD72B95B7FCD515BBA8F58FB391AB33FDDA3084B554BE827D
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\settingsBtn.png, In Quarantäne, 112, 182117, , , , , C424FEAEAD550187B3576DED8AAA3A73, A9C7A06C5414A579269C8F936058D0B05DAD8B4FD43589FD2851A8DFF377F9EE
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Thumbs.db, In Quarantäne, 112, 182117, , , , , EA8C0735979EF78346E233F3877D31DC, B9B6ABDC66605D116C724908B62C6C1FF1FB516F4D12C4AC2885B52BB4E6E11E
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\close.png, In Quarantäne, 112, 182117, , , , , 6B66C28004038C7C30918AD4BCD3C79D, FC2DC90A1AD88C6FC9CB41560585C0F0E8BE90F4A9737D74E0F6177F41A9BC13
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\like.png, In Quarantäne, 112, 182117, , , , , 65CAADF446B45637DDD0C242A8B0B2F7, 91250D8DE3E12ACF9D5AA81FACE1FAEA8DE914F06E03E238EA61714E5975DB41
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\powered-by.png, In Quarantäne, 112, 182117, , , , , C43A66925FABD8C756C9E38399A603B1, 446CA6C93427268FD72B95B7FCD515BBA8F58FB391AB33FDDA3084B554BE827D
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Thumbs.db, In Quarantäne, 112, 182117, , , , , CAD798EE5640AA35D5AD2E75F7E5405B, F6BD407761E42B973256E9ECCC807419F0A901432FFFCFC144138E48CAAD203B
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\AppNotification.js, In Quarantäne, 112, 182117, , , , , 3BD0D7DF7D2B1842C791B908572E2EBF, 8DD9345E8E9F91C09E072598CF27706E2B9BCF338435E8A4455F4D6D91B53C65
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\initialNotification.html, In Quarantäne, 112, 182117, , , , , 05726470862F1FFE30FD19A7EE864607, 793FEADB063407FFA87EF118AAA1366C8130C6A1537F04000236A04F6782BC3E
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\main.html, In Quarantäne, 112, 182117, , , , , 9931E2C2CDDFCA97E5187ED1CB802698, D751B81FB7D9DC7F9ABAC74ACEB87C111217AF72F6FD0EEE2DC0BCFD0248E536
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\NotificationDialogStyle.css, In Quarantäne, 112, 182117, , , , , 420289C7C0345C94AC4FF975A0E88DA2, 7416E7801FABE69080DD1D76CA5A95C695AFEDD001C14F639C2DC38B9AFA09B3
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\NotificationDialogStyleIE9.css, In Quarantäne, 112, 182117, , , , , 2A97C3A8492F58716E37A42D7526242D, 08022066C550DED68D17E87FF5D9B122F1521565596B7B2ADF02F3BC0FF6E857
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\sampleNotification.html, In Quarantäne, 112, 182117, , , , , 702722A7B4F482DCCAD47A02401B9C46, 633DFE61A48BADBAC89937E8B4FDC5041249293D206A88217C7C6956F3D1EF89
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\DialogsAPI.js, In Quarantäne, 112, 182117, , , , , CB0D3F2524FFE7F8EEE5B362451DCB5C, E381313EB8FB3E1473124DA561CBEC8DDD9178416DED9DCA4EF7736D5D7F97FF
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\PIE.htc, In Quarantäne, 112, 182117, , , , , A219E20E2678B66B24B9067A2E228A8D, 172EAF95AE8EE7073D7D2D20A11B13EAAF0A355D426F0C839A06296C534DB344
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\settings.js, In Quarantäne, 112, 182117, , , , , 7DFDB61D311C26389E8C8F014E5904DA, 1BFE18FEFAB1498EDD7A15CF092E2CFB2CEEFB28EF1B3697881B310FEEBD086E
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Dialogs\version.txt, In Quarantäne, 112, 182117, , , , , 7355BA829B6283328181F06F6B9F260C, 556D85E1D05C48E392652FCB5BCE57B381DCA4274348BD580BA588C237AA8247
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Feeds\http___alerts_conduit-services_com_root_15651_15317_DE.xml, In Quarantäne, 112, 182117, , , , , 1CF28927FC21C5EE55D09A648AFFCBF9, F9690E43CFCF4B7144B73897C041843A1B20D00A6A73DD296FC67BC54C1CCF7E
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\Feeds\http___alerts_conduit-services_com_root_1620587_1613894_DE.xml, In Quarantäne, 112, 182117, , , , , FFB7BAA697EB10DB85791C8CEF198BA5, E32DADC50C8EC076D729FA23794C23422E063305CAB528FE628E1189C507AFAA
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks\en.xml, In Quarantäne, 112, 182117, , , , , 26A4C2B2FE8584012C20CEDFA652C6DB, 3B0428F976A2884785F1C975E7F7DD86AFFBCC68BEA105CEB82DE9512CA65E5B
PUP.Optional.Conduit, C:\Users\Eltern\AppData\LocalLow\Conduit\localStorage\appsFiles\2d2f2f16-9432-4890-9f93-624a84cf6261\mam_gk_userId.txt, In Quarantäne, 112, 182117, , , , , A5F90E00489C7E2247E9CE9D0909FA3C, 5E56FC34E3C6E95B86B44E840B025CDC3C67D9DD4C5C372AA0CABD66D8559979
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\close.png, In Quarantäne, 112, 182117, , , , , F2F46CE0DDF7FA2D662F81D5B5980E16, 9E21A00F4080650CE150B3E6260D7A8AE1158AEFB51A8F61D4071A9B00C63219
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\closeBtn.png, In Quarantäne, 112, 182117, , , , , 9154A121829BB39EC17A1A3854B4BAD5, 75917B74349C1B8909C2F9B33E548020F04EEDA6E1C3B70E1164DC7644C95CF8
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next.png, In Quarantäne, 112, 182117, , , , , 4EECF5EFD00671CFC019065080FB043C, 1CACC4D8D7895FD651E7C768AAAC1F3A03CF653E10925C2CFE86E32897F6BF94
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next_hover.png, In Quarantäne, 112, 182117, , , , , 28DA4BC294EBEA328DF5FBEE85BF3C2F, F8EF3BAFBBA779B4E60FF349C91BA9922D8A16AE7E520018C286D35A434D65BA
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\powered-by.png, In Quarantäne, 112, 182117, , , , , C5640EB96B765545FADD17718F0AC09C, E9AA83F5606AA85E0C589EE099E660EE751EF25146A37502FB6C5D71E0D5544C
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev.png, In Quarantäne, 112, 182117, , , , , B961B74A05AB150BE16A33FB5E738411, 2FBBAFEE5C10FF420F4E174DDF9FFD9CCA95165A40CE3270ED1F25D47AE1BF6A
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev_hover.png, In Quarantäne, 112, 182117, , , , , EC6F265B66B4656E3CA38E7F4EE75D6B, D7F79A496DDA21F6D1928A0483AC8664FC89480F36948A705D8CA9E7ED32F306
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\settings.png, In Quarantäne, 112, 182117, , , , , 0D932BC8C44C82FFF1B1E967EC938ABB, FF89F07E6002B485C9CF985B422F4714DFCFCFFB9DE88787F800FD8A003DD355
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\settingsBtn.png, In Quarantäne, 112, 182117, , , , , CB67C0272892FFCD1A719A504744A523, 4C40B37D25BB9BD1BEF4BAC615FA8B55DFF6FCD42551711EB5E8D2F837F1920C
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\close.png, In Quarantäne, 112, 182117, , , , , 6B66C28004038C7C30918AD4BCD3C79D, FC2DC90A1AD88C6FC9CB41560585C0F0E8BE90F4A9737D74E0F6177F41A9BC13
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\closeBtn.png, In Quarantäne, 112, 182117, , , , , 197914BAD88DB8ED06CD19E554E470A8, BE4E1BE45685FCBA6AB01914A0A869623157A03E5F1D44A56ABBAAEA5D801D4E
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\powered-by.png, In Quarantäne, 112, 182117, , , , , 5B71105A6F89CFAE8CD56757B10674E7, 63F883ADC4D6878B41371CEEECC9CEBD1AF29E387CCACC55F8EAEE9911B6ED8A
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\settingsBtn.png, In Quarantäne, 112, 182117, , , , , C424FEAEAD550187B3576DED8AAA3A73, A9C7A06C5414A579269C8F936058D0B05DAD8B4FD43589FD2851A8DFF377F9EE
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Thumbs.db, In Quarantäne, 112, 182117, , , , , EA8C0735979EF78346E233F3877D31DC, B9B6ABDC66605D116C724908B62C6C1FF1FB516F4D12C4AC2885B52BB4E6E11E
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\close.png, In Quarantäne, 112, 182117, , , , , 6B66C28004038C7C30918AD4BCD3C79D, FC2DC90A1AD88C6FC9CB41560585C0F0E8BE90F4A9737D74E0F6177F41A9BC13
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\like.png, In Quarantäne, 112, 182117, , , , , 65CAADF446B45637DDD0C242A8B0B2F7, 91250D8DE3E12ACF9D5AA81FACE1FAEA8DE914F06E03E238EA61714E5975DB41
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\powered-by.png, In Quarantäne, 112, 182117, , , , , 5B71105A6F89CFAE8CD56757B10674E7, 63F883ADC4D6878B41371CEEECC9CEBD1AF29E387CCACC55F8EAEE9911B6ED8A
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Thumbs.db, In Quarantäne, 112, 182117, , , , , CAD798EE5640AA35D5AD2E75F7E5405B, F6BD407761E42B973256E9ECCC807419F0A901432FFFCFC144138E48CAAD203B
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\AppNotification.js, In Quarantäne, 112, 182117, , , , , 220A8D3E011318ECFF0327DAD39B35F6, 5C904F785886BBB615E216F59DC1F164B42C3FC38759A574454F50E1C03A327E
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\initialNotification.html, In Quarantäne, 112, 182117, , , , , 54DA6E44C84EF832A0577565DAFE282C, 777C67AA47B1D395F8AC5F066EC64A372F46A23A3A06823499EB332873EE3E71
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\main.html, In Quarantäne, 112, 182117, , , , , 9931E2C2CDDFCA97E5187ED1CB802698, D751B81FB7D9DC7F9ABAC74ACEB87C111217AF72F6FD0EEE2DC0BCFD0248E536
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\NotificationDialogStyle.css, In Quarantäne, 112, 182117, , , , , 420289C7C0345C94AC4FF975A0E88DA2, 7416E7801FABE69080DD1D76CA5A95C695AFEDD001C14F639C2DC38B9AFA09B3
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\NotificationDialogStyleIE9.css, In Quarantäne, 112, 182117, , , , , 2A97C3A8492F58716E37A42D7526242D, 08022066C550DED68D17E87FF5D9B122F1521565596B7B2ADF02F3BC0FF6E857
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\sampleNotification.html, In Quarantäne, 112, 182117, , , , , 702722A7B4F482DCCAD47A02401B9C46, 633DFE61A48BADBAC89937E8B4FDC5041249293D206A88217C7C6956F3D1EF89
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\DialogsAPI.js, In Quarantäne, 112, 182117, , , , , 1E4032D6AB5B15A9BC0AFCAFD0B4B2F8, 4249251A3C88248F5480F4CF3830E5C7481FA45608980A5D4197284965DD39E2
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\PIE.htc, In Quarantäne, 112, 182117, , , , , A219E20E2678B66B24B9067A2E228A8D, 172EAF95AE8EE7073D7D2D20A11B13EAAF0A355D426F0C839A06296C534DB344
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Dialogs\version.txt, In Quarantäne, 112, 182117, , , , , F2CE41F3F990AE6FADEB2845C5D9BE72, 52D47A1018F0C483EF441360E05D77DB6985D8D7822EF10CD603E72F812610B7
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\Feeds\http___alerts_conduit-services_com_root_1620587_1613894_DE.xml, In Quarantäne, 112, 182117, , , , , FFB7BAA697EB10DB85791C8CEF198BA5, E32DADC50C8EC076D729FA23794C23422E063305CAB528FE628E1189C507AFAA
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks\en.xml, In Quarantäne, 112, 182117, , , , , 26A4C2B2FE8584012C20CEDFA652C6DB, 3B0428F976A2884785F1C975E7F7DD86AFFBCC68BEA105CEB82DE9512CA65E5B
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\Community Alerts\DynamicDialogs.zip, In Quarantäne, 112, 182117, , , , , 634635C9045664398A7F3548AC54D470, AC97468A6E2B65CE42DFCD2D6B115FD0C2EB0180BC4620BB464ECC26405E8CAC
PUP.Optional.Conduit, C:\Users\Henrike\AppData\LocalLow\Conduit\localStorage\appsFiles\2d2f2f16-9432-4890-9f93-624a84cf6261\mam_gk_userId.txt, In Quarantäne, 112, 182117, , , , , F18888D83CA812D7B348A69022FC1B96, 414203C614DAA63629B3E75DA4839FF08E1B0DE780F382C0369F18E24B9C2E65
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\close.png, In Quarantäne, 112, 182117, , , , , F2F46CE0DDF7FA2D662F81D5B5980E16, 9E21A00F4080650CE150B3E6260D7A8AE1158AEFB51A8F61D4071A9B00C63219
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next.png, In Quarantäne, 112, 182117, , , , , 4EECF5EFD00671CFC019065080FB043C, 1CACC4D8D7895FD651E7C768AAAC1F3A03CF653E10925C2CFE86E32897F6BF94
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next_hover.png, In Quarantäne, 112, 182117, , , , , 28DA4BC294EBEA328DF5FBEE85BF3C2F, F8EF3BAFBBA779B4E60FF349C91BA9922D8A16AE7E520018C286D35A434D65BA
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\powered-by.png, In Quarantäne, 112, 182117, , , , , C5640EB96B765545FADD17718F0AC09C, E9AA83F5606AA85E0C589EE099E660EE751EF25146A37502FB6C5D71E0D5544C
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev.png, In Quarantäne, 112, 182117, , , , , B961B74A05AB150BE16A33FB5E738411, 2FBBAFEE5C10FF420F4E174DDF9FFD9CCA95165A40CE3270ED1F25D47AE1BF6A
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev_hover.png, In Quarantäne, 112, 182117, , , , , EC6F265B66B4656E3CA38E7F4EE75D6B, D7F79A496DDA21F6D1928A0483AC8664FC89480F36948A705D8CA9E7ED32F306
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\settings.png, In Quarantäne, 112, 182117, , , , , 0D932BC8C44C82FFF1B1E967EC938ABB, FF89F07E6002B485C9CF985B422F4714DFCFCFFB9DE88787F800FD8A003DD355
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\close.png, In Quarantäne, 112, 182117, , , , , 7DD805B772208B23BF3BB35B0563A0F7, AD3A0C7B3A2A402676077A8CD9F6B19B820E4AA51CE134B2BA590086239C1D62
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\powered-by.png, In Quarantäne, 112, 182117, , , , , 5B71105A6F89CFAE8CD56757B10674E7, 63F883ADC4D6878B41371CEEECC9CEBD1AF29E387CCACC55F8EAEE9911B6ED8A
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Thumbs.db, In Quarantäne, 112, 182117, , , , , EA8C0735979EF78346E233F3877D31DC, B9B6ABDC66605D116C724908B62C6C1FF1FB516F4D12C4AC2885B52BB4E6E11E
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\close.png, In Quarantäne, 112, 182117, , , , , 6B66C28004038C7C30918AD4BCD3C79D, FC2DC90A1AD88C6FC9CB41560585C0F0E8BE90F4A9737D74E0F6177F41A9BC13
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\like.png, In Quarantäne, 112, 182117, , , , , 65CAADF446B45637DDD0C242A8B0B2F7, 91250D8DE3E12ACF9D5AA81FACE1FAEA8DE914F06E03E238EA61714E5975DB41
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next.png, In Quarantäne, 112, 182117, , , , , BE31B1CC62EF63B42108FD1EB25AD6C4, 90E56B1632C02D10915D7D412C1239761B0010A2AFD4874B361013A523C687AE
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next_hover.png, In Quarantäne, 112, 182117, , , , , 1ED4AD5639808B98FA1095A75698A7BD, CE8703E13E18A7D41942A61CCF62E1C2CDC94D129D0437BFD41FDC8A961F8D3D
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\powered-by.png, In Quarantäne, 112, 182117, , , , , 5B71105A6F89CFAE8CD56757B10674E7, 63F883ADC4D6878B41371CEEECC9CEBD1AF29E387CCACC55F8EAEE9911B6ED8A
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev.png, In Quarantäne, 112, 182117, , , , , 1C29361D0772000CB114ED5C149D0798, DC5F5F6EFF165E0E0CE8350CF15A7A499AEFF8DDD4BF00D32B848E7B9D51FF64
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev_hover.png, In Quarantäne, 112, 182117, , , , , 47BF0A489ED2951B21744AD7D29C4056, CADD144A94AF0678CC4FFFDB49ABEF5F37039A370AFD10B2004952607A72FBF6
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\settings.png, In Quarantäne, 112, 182117, , , , , 4E88CEBE3F5D0C6744F9487052E208A3, B573EB461D2C657C54616E0C25972A70F29C2EE1A15E4439535E84A7A757F1C3
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Thumbs.db, In Quarantäne, 112, 182117, , , , , C83724F23A83E54255E06FB0D1B81F12, 0CCEE1925BBE4BB137F61EAEFAFB7050E026FD79E7C7C8AB430155CA09906B6F
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\AppNotification.js, In Quarantäne, 112, 182117, , , , , 7E5F58C7789DE0D4900F5DB35497FB9C, B4D6EF8A6DBC55BD6B6369A60D35DF4E6709C38628A593575B308DE88FF11306
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\initialNotification.html, In Quarantäne, 112, 182117, , , , , 54DA6E44C84EF832A0577565DAFE282C, 777C67AA47B1D395F8AC5F066EC64A372F46A23A3A06823499EB332873EE3E71
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\main.html, In Quarantäne, 112, 182117, , , , , 9931E2C2CDDFCA97E5187ED1CB802698, D751B81FB7D9DC7F9ABAC74ACEB87C111217AF72F6FD0EEE2DC0BCFD0248E536
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\NotificationDialogStyle.css, In Quarantäne, 112, 182117, , , , , AD9807FA69D8441B7A51BB8FD188A6C3, C42652932C1E3F9C113F5B427CB6E4337D0ED4C721E0A6A46D066F815A61AD6B
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\AppNotificationDialog\sampleNotification.html, In Quarantäne, 112, 182117, , , , , 702722A7B4F482DCCAD47A02401B9C46, 633DFE61A48BADBAC89937E8B4FDC5041249293D206A88217C7C6956F3D1EF89
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\DialogsAPI.js, In Quarantäne, 112, 182117, , , , , 939828BCEC7BBDFAB505E901D735FA5A, 4D9B445CCA901FB4E5AA4D9585E721BB819D3A6B8A5567E1B89873F2929FC1B2
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\PIE.htc, In Quarantäne, 112, 182117, , , , , A219E20E2678B66B24B9067A2E228A8D, 172EAF95AE8EE7073D7D2D20A11B13EAAF0A355D426F0C839A06296C534DB344
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\Dialogs\version.txt, In Quarantäne, 112, 182117, , , , , 20DFA789C2D17F69D7B957A95712B9F0, D6F917C484E6A48FCF8B90EF09CDE0286C3D86E5DEAD48B42FAF0DAE94FB2DF5
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\LanguagePacks\en.xml, In Quarantäne, 112, 182117, , , , , CBAEB8C3DF2171B615285809CEADA5DF, E2DE98E52AD1BCF5CE84CD64480A207F63043C9B608A0BBAB82F671AFAC28B46
PUP.Optional.Conduit, C:\Users\Schilling Family\AppData\LocalLow\Conduit\Community Alerts\DynamicDialogs.zip, In Quarantäne, 112, 182117, , , , , E7E89922EB1D84F117BF6E8D0BDBD3D2, 83555742A21F3DAC58BC4D318558C0378E4CA4AB2DD8969202F46F837868E918
PUP.Optional.BonanzaDeals, C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BonanzaDeals\Bonanza Deals Help.url, In Quarantäne, 1380, 182138, , , , , 3FEF4F3C125E59C1D7990700F3FB6DF6, B77BC0715A64E7DCD42F67C0F0D290E5DC1DF16257A37200E42E4E2A987156DA
PUP.Optional.BonanzaDeals, C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BonanzaDeals\Bonanza Deals.url, In Quarantäne, 1380, 182138, , , , , D4F1A7B66BA89CF57E32781BA0DD71D4, B1EF849E33DD99BB8B8832CB6B67AB5CBE9E238242484B6683C9BD7A4DACC865
PUP.Optional.BonanzaDeals, C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BonanzaDeals\Uninstall Bonanza Deals.lnk, In Quarantäne, 1380, 182138, , , , , 1C81C987AFE63D0F97AF76DB76066895, 32F69DE0C5FC8CF1068429A8C2B866B5D1DC2EE238425EF577CE27C55DEC0CE6
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDeals\BonanzaDealsIE64.dll, In Quarantäne, 1380, 182151, , , , , , 
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDeals\BonanzaDealsUpdate.log, In Quarantäne, 1380, 182151, , , , , 847607F1BAA0D0FD858DFA3F6D75C674, 6E8431B431A472214A2E987771C07FE425B43EA606F65EF206516A0D26C2E173
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDeals\BonanzaDealsUpdateRun.exe, In Quarantäne, 1380, 182151, , , , , B94E0E83BEB5543EF0D68BC0E8958B11, 72D45DDA781853B68ED26B3A241E042816AE5CA2A7B0A90C447C794D49F802D4
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDeals\icon.ico, In Quarantäne, 1380, 182151, , , , , C56EDCF93E2424C1930F13E60E3346F3, 06EFF961FB4284F470A971A18D7B3C8A6BB97A34C606C68BA66FAA769AF88DB8
PUP.Optional.BonanzaDeals, C:\Program Files (x86)\BonanzaDeals\uninst.exe, In Quarantäne, 1380, 182151, , , , , C1B47E8D875B63F5DABD81331833B15F, C1BE2B8524DE884B365688FA1A1CF22FDF009FECDA6BA8E5F0E21651145851DB
PUP.Optional.PCSpeedMaximizer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer\Hilfe.lnk, In Quarantäne, 3672, 343976, , , , , B16DB2F0B399187D13F9ECD2A3954623, 5B394FAAD3E97AD18A0382A3A6EBE47D2AB71822D39C034087DE0F8FFE4EF86F
PUP.Optional.PCSpeedMaximizer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer\PC Speed Maximizer entfernen.lnk, In Quarantäne, 3672, 343976, , , , , 76702A7760A9D03BE8F2B940A3AB5D3C, 3CBAFD4F27E03625059E2C2414D1AB4C12D58BDA7473B58903C13BC17B564E22
PUP.Optional.PCSpeedMaximizer, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Speed Maximizer\PC Speed Maximizer im Internet.lnk, In Quarantäne, 3672, 343976, , , , , 19D4AFC103A6A5C22A6789B7DCE05A7B, A74B7E59FDEA723AA396C80557193D6BD22D501E1F65E3F89D1DC9F8ABAC9D96
PUP.Optional.Yontoo, C:\PROGRAMDATA\TARMA INSTALLER\{361E80BE-388B-4270-BF54-A10C2B756504}\_SETUPX.DLL, In Quarantäne, 427, 92490, 1.0.67783, , ame, , AE5F4292BD15228853F65A1004517ADC, 1493DDD89D403820DA52440647A41F9F9579E8CB806E679A294A2638295962BA
PUP.Optional.YTDVideoDownloader, C:\PROGRAMDATA\YTD VIDEO DOWNLOADER\YTD_INSTALLER.EXE, In Quarantäne, 9888, 883300, 1.0.67783, , ame, , 5927D7CBC00C648D5F26C3F09C25039E, CB441D57324A33CAB00E1FDD1F4EAD37C521FAFEA03C85E78863A11336E32F3A
PUP.Optional.ChipDe, C:\USERS\ELTERN\DOWNLOADS\VSDC FREE VIDEO EDITOR - CHIP-INSTALLER (1).EXE, In Quarantäne, 7711, 562568, 1.0.67783, 26B5086165EC74F27E31E5BF, dds, 02245864, 0CCE97E641EBB3AAADBC3616015832D1, 866E6DE4ED802BF4ECD044DA77B78F86725CB71704E6DC63BA3047C8042B9FA2
Generic.Malware/Suspicious, C:\USERS\ELTERN\DOWNLOADS\FREEAUDIODUB.EXE, In Quarantäne, 0, 392686, 1.0.67783, , shuriken, , 6C08D01687C7F97987561C601E206153, 6F32EAB0F93EDACC13DE1D68CF7B374C5B0BCDBBC360BED5AC6F20C599BBD0D4
PUP.Optional.ChipDe, C:\USERS\ELTERN\DOWNLOADS\VSDC FREE VIDEO EDITOR - CHIP-INSTALLER.EXE, In Quarantäne, 7711, 557991, 1.0.67783, 6BCF091B982D3D1A96B50F64, dds, 02245864, A9589589F0EFF2203DFA3CD43D9B36E6, 72CECE72092ADE0D141B441278C1D652059DB8359E4BC4AADC104FDB4ACBE7E3
PUP.Optional.ChipDe, C:\USERS\ELTERN\DOWNLOADS\FASTSTONE IMAGE VIEWER - CHIP-INSTALLER.EXE, In Quarantäne, 7711, 562568, 1.0.67783, , ame, , F776C6CE9DBDA4415A0AF67C692BC366, 9EC1D9EBE21438CEBC5EFE6A4817D5325FA50165BE0F8465FEE4C6B383054ED5
PUP.Optional.ChipDe, C:\USERS\ELTERN\DOWNLOADS\FASTSTONE IMAGE VIEWER - CHIP-INSTALLER (1).EXE, In Quarantäne, 7711, 562568, 1.0.67783, , ame, , 43D7984CD91205D0286592347B2B3EF4, 801A0BB0B7A0DAC50D62AC9B6F4C3A69E0DE2E9BC31F97A6B7C2D54E29D985DC
PUP.Optional.YTDVideoDownloader, C:\PROGRAM FILES (X86)\GREENTREE APPLICATIONS\YTD VIDEO DOWNLOADER\UNINSTALL.EXE, In Quarantäne, 9888, 883300, 1.0.67783, , ame, , 2343674E9EB19119106161667733FBD9, D50D0E0B501964A41C92BD9E05B351602A988111888988B1AC810EAE2C9B88F6

Physischer Sektor: 0
(keine bösartigen Elemente erkannt)

WMI: 0
(keine bösartigen Elemente erkannt)


(end)
         
Code:
ATTFilter
# -------------------------------
# Malwarebytes AdwCleaner 8.4.0.0
# -------------------------------
# Build:    08-30-2022
# Database: 2022-10-10.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start:    04-09-2023
# Duration: 00:00:11
# OS:       Windows 10 (Build 19044.2728)
# Cleaned:  76
# Failed:   3


***** [ Services ] *****

Deleted       BCUService

***** [ Folders ] *****

Deleted       C:\Program Files (x86)\Conduit
Deleted       C:\Program Files (x86)\DeviceVM
Deleted       C:\Program Files (x86)\FLV Player
Deleted       C:\Program Files (x86)\GreenTree Applications
Deleted       C:\Program Files (x86)\MetaCrawler
Deleted       C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
Deleted       C:\ProgramData\Tarma Installer
Deleted       C:\ProgramData\ytd video downloader
Deleted       C:\Users\Eltern\AppData\Local\jZip
Deleted       C:\Users\Eltern\AppData\Roaming\Performersoft
Deleted       C:\Users\Schilling Family\AppData\LocalLow\Softonic
Deleted       C:\Users\Schilling Family\AppData\Roaming\MetaCrawler
Deleted       C:\Users\Schilling Family\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player
Deleted       C:\Users\Schilling Family\AppData\Roaming\OpenCandy
Deleted       C:\Users\Schilling Family\Documents\PC Speed Maximizer

***** [ Files ] *****

Deleted       C:\Users\Schilling Family\AppData\Local\metacrawler-speeddial.crx
Deleted       C:\Users\Schilling Family\Desktop\SpeedAnalysis.lnk

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

Deleted       C:\Windows\Tasks\METACRAWLER.JOB

***** [ Registry ] *****

Deleted       HKCU\Software\AppDataLow\Software\BackgroundContainerV2
Deleted       HKCU\Software\AppDataLow\Software\Conduit
Deleted       HKCU\Software\AppDataLow\Software\Smartbar
Deleted       HKCU\Software\AppDataLow\Toolbar
Deleted       HKCU\Software\Conduit
Deleted       HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A}
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\jZip
Deleted       HKCU\Software\PERFORMERSOFT
Deleted       HKCU\Software\jZip
Deleted       HKCU\Software\{DAF8B7E5-449D-4180-8281-10E536E597F2}
Deleted       HKLM\SOFTWARE\Classes\AppID\Complitly.DLL
Deleted       HKLM\SOFTWARE\Classes\AppID\PropertySync.EXE
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\BonanzaDealsLive.exe
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5BE104DB-21E9-45AE-90C2-1E8585816213}
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5BE104DB-21E9-45AE-90C2-1E8585816213}
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MetaCrawler
Deleted       HKLM\Software\Classes\AppID\{0FA5C13C-4EDA-488A-A8EB-B84CD7395A79}
Deleted       HKLM\Software\Classes\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983}
Deleted       HKLM\Software\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
Deleted       HKLM\Software\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Deleted       HKLM\Software\Classes\CLSID\{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A}
Deleted       HKLM\Software\Classes\Interface\{43969E3F-3E7C-4911-A8F1-79C6CA6AC731}
Deleted       HKLM\Software\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317}
Deleted       HKLM\Software\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA}
Deleted       HKLM\Software\Classes\TypeLib\{05E242CB-338E-4A4F-A726-80BAB386D079}
Deleted       HKLM\Software\Classes\TypeLib\{77AA6435-2488-4A94-9FE5-49519DD2ED9B}
Deleted       HKLM\Software\Wow6432Node\Conduit
Deleted       HKLM\Software\Wow6432Node\PIP
Deleted       HKLM\Software\Wow6432Node\SimplyGen
Deleted       HKLM\Software\Wow6432Node\\Classes\AppID\Complitly.DLL
Deleted       HKLM\Software\Wow6432Node\\Classes\AppID\PropertySync.EXE
Deleted       HKLM\Software\Wow6432Node\\Classes\AppID\{0FA5C13C-4EDA-488A-A8EB-B84CD7395A79}
Deleted       HKLM\Software\Wow6432Node\\Classes\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983}
Deleted       HKLM\Software\Wow6432Node\\Classes\AppID\{442F13BC-2031-42D5-9520-437F65271153}
Deleted       HKLM\Software\Wow6432Node\\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Deleted       HKLM\Software\Wow6432Node\\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Deleted       HKLM\Software\Wow6432Node\\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Deleted       HKLM\Software\Wow6432Node\\Classes\CLSID\{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A}
Deleted       HKLM\Software\Wow6432Node\\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Deleted       HKLM\Software\Wow6432Node\\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Deleted       HKLM\Software\Wow6432Node\\Classes\Interface\{43969E3F-3E7C-4911-A8F1-79C6CA6AC731}
Deleted       HKLM\Software\Wow6432Node\\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317}
Deleted       HKLM\Software\Wow6432Node\\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA}
Deleted       HKLM\Software\Wow6432Node\\Classes\TypeLib\{05E242CB-338E-4A4F-A726-80BAB386D079}
Deleted       HKLM\Software\Wow6432Node\\Classes\TypeLib\{77AA6435-2488-4A94-9FE5-49519DD2ED9B}
Deleted       HKLM\Software\Wow6432Node\\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\BonanzaDealsLive.exe
Deleted       HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Stats\{29494049-211F-4F5C-8545-7DA8BF7A6CF8}
Deleted       HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Stats\{C4BEF720-313C-420A-ACF6-77DD95D8F553}
Deleted       HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Applian FLV Player2.0.24
Deleted       HKLM\Software\Wow6432Node\{DAF8B7E5-449D-4180-8281-10E536E597F2}
Deleted       HKLM\System\Setup\FirstBoot\Services\BCUService
Deleted       HKU\.DEFAULT\Software\IBUpdaterService
Deleted       HKU\S-1-5-18\Software\IBUpdaterService

***** [ Chromium (and derivatives) ] *****

Not Deleted   Complitly plugin for chrome - dlfienamagdnkekbbbocojppncdambda
Not Deleted   Complitly plugin for chrome - dlfienamagdnkekbbbocojppncdambda
Not Deleted   Metacrawler Neuer Tab - doobfiogmfmpjnoofjhhgjehmlofngfp

***** [ Chromium URLs ] *****

Deleted       metaCrawler
Deleted       metaCrawler
Deleted       metaCrawler
Deleted       metaCrawler

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [8516 octets] - [09/04/2023 21:20:00]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
         

Alt 10.04.2023, 08:02   #15
M-K-D-B
/// TB-Ausbilder
 
MFResident-20230328-55 - Standard

MFResident-20230328-55



Vielen Dank für die Logdateien, gut gemacht.


Als Nächstes benötige ich neue Logdateien von FRST.



Schritt 1
  • Starte FRST erneut und klicke auf Untersuchen.
  • FRST erstellt nun zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.

Thema geschlossen

Themen zu MFResident-20230328-55
adobe, antivirus, backdoor, computer, defender, desktop, excel, flash player, google, home, installation, internet, internet explorer, kaspersky, mfresident-20230328-55, mozilla, port, prozesse, realtek, registry, scan, sekunden, software, temp, udp, windows



Zum Thema MFResident-20230328-55 - Hallo zusammen, seit gestern bekomme ich ca. alle 8 Sekunden ein pop-up Fenster geöffnet. Die Benutzerkontensteuerung fragt mich, ob ich Änderungen einer unbekannten App zulasse. Ihr Name: MFResident-20230328-55.exe Klicke immer - MFResident-20230328-55...
Archiv
Du betrachtest: MFResident-20230328-55 auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.