youradexchange - Malwarebytes blockiert es aber entfernt es nicht - Teil 3 Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:12-12-2015 01
durchgeführt von P (2015-12-13 09:27:56)
Gestartet von C:\Users\P\Downloads
Windows 10 Pro (X64) (2015-11-29 00:22:53)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-1417886651-2129952674-4107074907-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1417886651-2129952674-4107074907-503 - Limited - Disabled)
Gast (S-1-5-21-1417886651-2129952674-4107074907-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1417886651-2129952674-4107074907-1004 - Limited - Enabled)
P (S-1-5-21-1417886651-2129952674-4107074907-1001 - Administrator - Enabled) => C:\Users\P
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
1Password 1.0.9.341 (HKLM-x32\...\1Password_is1) (Version: 1.0 - AgileBits)
1Password 4.6.0.592 (HKLM-x32\...\1Password4_is1) (Version: 4.0 - AgileBits)
AAVUpdateManager (HKLM-x32\...\{AFA42FE1-A5C3-485F-9180-BFCF5BF1F1C3}) (Version: 18.00.0000 - Wolters Kluwer Deutschland GmbH)
Acronis*Disk*Director*11*Home (HKLM-x32\...\{8EFB7927-48AD-4E6D-91B7-6B2BD6C3F380}) (Version: 11.0.2343 - Acronis)
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0E0F06755100}) (Version: 15.006.30097 - Adobe Systems Incorporated)
Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.235 - Adobe Systems Incorporated)
Adobe Photoshop Lightroom 5.4 64-bit (HKLM\...\{558B5965-CC1B-4AF1-BA07-5D6832404050}) (Version: 5.4.0 - Adobe Systems Incorporated)
Amazon Kindle (HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\Amazon Kindle) (Version: - Amazon)
Apple Application Support (32-Bit) (HKLM-x32\...\{649A1FD9-5892-46AD-8DF0-C4A43FF61CB7}) (Version: 4.1 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{0DE0A178-AC7B-4650-806C-CF226DE03766}) (Version: 4.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
AusweisApp (HKLM-x32\...\{3BA47CB9-CEEE-48D3-A0BC-776D1FA1F761}) (Version: 1.12.0 - OpenLimit SignCubes AG)
Bandizip (HKLM\...\Bandizip) (Version: 5.10 - Bandisoft.com)
Belarc Advisor 8.4 (HKLM-x32\...\Belarc Advisor) (Version: 8.4.0.0 - Belarc Inc.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Boxcryptor 2.2 (HKLM-x32\...\{5D575F57-D1D3-4493-83FE-A87C0167BA90}) (Version: 2.2.411.228 - Secomba GmbH)
CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform)
Chipcardmaster 7.11 (HKLM-x32\...\Chipcardmaster_is1) (Version: - Dr. Olaf Jacobsen)
concept/design onlineTV 11 (HKLM-x32\...\{8A4C3184-DA2F-4553-BF61-83F5690C3048}_is1) (Version: 11.9.20.0 - concept/design GmbH)
cyberJack Base Components (HKLM-x32\...\{FC338210-F594-11D3-BA24-00001C3AB4DF}) (Version: 6.10.0 - REINER SCT)
DDBAC (HKLM-x32\...\{3CCF9C9E-1D71-41AB-BFF2-A118DA748CDC}) (Version: 5.3.41.0 - DataDesign)
Dropbox (HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\Dropbox) (Version: 3.12.5 - Dropbox, Inc.)
eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
Evernote v. 5.3.1 (HKLM-x32\...\{28AAF752-C41B-11E3-8CB0-00163E98E7D6}) (Version: 5.3.1.3363 - Evernote Corp.)
FileInternet (HKLM-x32\...\FileInternet) (Version: 3.0.0.0 - SOGEI)
Finanzmanager 2016 (x32 Version: 23.37.00.0184 - Haufe-Lexware GmbH & Co.KG) Hidden
Finanzmanager Import Export Server 2016 (x32 Version: 23.30.00.0099 - Haufe-Lexware GmbH & Co.KG) Hidden
Fresco Logic USB3.0 Host Controller (HKLM\...\{CA143808-48CA-4C24-84E9-00F9F5E12D67}) (Version: 3.5.106.0 - Fresco Logic Inc.)
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.80 - Google Inc.)
Google Chrome Canary (HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\Google Chrome SxS) (Version: 49.0.2589.0 - Google Inc.)
Google Drive (HKLM-x32\...\{1C3D2F92-D25E-4D98-B810-3F3B0857BF26}) (Version: 1.26.0707.2863 - Google, Inc.)
Google Earth Pro (HKLM-x32\...\{44FC61F0-2F8A-11E3-8CAE-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden
HP Officejet Pro 8500 A910 - Grundlegende Software für das Gerät (HKLM\...\{0A8BEF69-0DD7-4A8F-9AED-0CB91BEBCB58}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Officejet Pro 8500 A910 Hilfe (HKLM-x32\...\{871B2A9D-0F12-44B3-88C1-E0CB10A232E4}) (Version: 140.0.2.2 - Hewlett Packard)
HP Support Assistant (HKLM-x32\...\{61EB474B-67A6-47F4-B1B7-386851BAB3D0}) (Version: 8.1.40.3 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{8F1A441E-AD6D-4732-BD6A-F38D5F1D1E47}) (Version: 12.0.30.219 - Hewlett-Packard Company)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
iTunes (HKLM\...\{E690A491-702F-4DEC-9977-C015D1DBB57C}) (Version: 12.3.1.23 - Apple Inc.)
JAP (HKLM-x32\...\JAP) (Version: 00.19.001 - JAP-Team)
Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation)
Lexware Finanzmanager Deluxe 2016 (HKLM-x32\...\{83b5739c-9c95-4a4a-9b38-3fcc6dab61ab}) (Version: 23.30.0.105 - Haufe-Lexware GmbH & Co.KG)
Lexware Info Service (x32 Version: 5.00.00.0044 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Installations Dienst (x32 Version: 4.01.00.0009 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware online banking (x32 Version: 22.02.00.0040 - Haufe-Lexware GmbH & Co.KG) Hidden
Logitech Options (HKLM\...\LogiOptions) (Version: - Logitech)
Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.83 - Logitech)
Logitech Solar App 1.10 (HKLM\...\SolarApp) (Version: 1.10.3 - Logitech)
Malwarebytes Anti-Exploit version 1.8.1.1045 (HKLM\...\Malwarebytes Anti-Exploit_is1) (Version: 1.8.1.1045 - Malwarebytes)
Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - de-de (HKLM\...\ProPlusRetail - de-de) (Version: 16.0.6001.1038 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
MOBackup - Datensicherung für Outlook (Vollversion) (HKLM-x32\...\MOBackup-DatensicherungfürOutlook) (Version: 7.95 - Heiko Schröder)
ModuliControlloUnico2014 (HKLM-x32\...\ModuliControlloUnico2014) (Version: 1.1.7.0 - Sogei S.p.A)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
NETGEAR Genie (HKLM-x32\...\NETGEAR Genie) (Version: 2.4.12.00 - NETGEAR Inc.)
NETGEAR Powerline Utility (HKLM-x32\...\InstallShield_{2753B568-6F85-4E31-A114-A7F8D8606DDD}) (Version: 3.1.0.4 - NETGEAR Powerline)
NETGEAR Powerline Utility (x32 Version: 3.1.0.4 - NETGEAR Powerline) Hidden
Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - )
NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 359.06 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.7.4.10 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.7.4.10 - NVIDIA Corporation)
NVIDIA Grafiktreiber 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 359.06 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4771.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4771.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4771.1003 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.6001.1038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.6001.1038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.6001.1038 - Microsoft Corporation) Hidden
Q-Dir (HKLM\...\Q-Dir) (Version: - )
Quicken DELUXE 2014 (HKLM-x32\...\{E60036CF-1E46-4DFE-832F-5476574B30FF}) (Version: 21.37.00.0185 - Haufe-Lexware GmbH & Co.KG)
QuickTime 7 (HKLM-x32\...\{80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC}) (Version: 7.78.80.95 - Apple Inc.)
Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 2.0.2.11 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7673 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
SeaTools for Windows (HKLM-x32\...\SeaTools for Windows) (Version: - Seagate Technology)
Secunia PSI (3.0.0.9016) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.9016 - Secunia)
Secure Banking Version 1.5.1 (HKLM-x32\...\{207E9B74-F4D3-4FD7-8142-16FF41825BC4}_is1) (Version: 1.5.1 - Hopfgartner Niklas)
Secure Banking Version 1.5.2 (HKLM-x32\...\{0BEE0AF9-79F3-4C4F-B374-90C0A16BF294}_is1) (Version: 1.5.2 - Hopfgartner Niklas)
SHIELD Streaming (Version: 4.1.0240 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.7.4.10 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.5.0.9082 - Microsoft Corporation)
Skype™ 7.12 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.12.101 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\Spotify) (Version: 1.0.19.106.gb8a7150f - Spotify AB)
SpywareBlaster 5.0 (HKLM-x32\...\SpywareBlaster_is1) (Version: 5.0.0 - BrightFort LLC)
Stardock Start10 (HKLM-x32\...\Stardock Start10) (Version: 1.06 - Stardock Software, Inc.)
SteuerSparErklärung 2014 (HKLM-x32\...\{A463EB06-22A6-47F5-9593-E52B291EF13E}) (Version: 19.14.99 - Akademische Arbeitsgemeinschaft)
SteuerSparErklärung 2015 (HKLM-x32\...\{312C0E08-8F94-4536-AAF6-3413F784AC5F}) (Version: 20.38.173 - Akademische Arbeitsgemeinschaft)
Studie zur Verbesserung von HP Officejet Pro 8500 A910 Produkten (HKLM\...\{BCCDE374-C4C8-4099-A514-C73768BA55CC}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
SurveillanceHelper (HKLM-x32\...\{E8236305-76A1-4AE2-A35C-2498D6876912}) (Version: 1.0.0.3 - Synology)
SurveillancePlugin (HKLM-x32\...\{B4637DBD-7E8E-46D4-BC9C-EC1C9F1DC561}) (Version: 1.0.0.423 - Synology)
True Image 2013 (HKLM-x32\...\{4AA75223-6CBF-46F4-8EE4-7BF0591089F7}Visible) (Version: 16.0.6514 - Acronis)
True Image 2013 (x32 Version: 16.0.6514 - Acronis) Hidden
UnicOnLine PF 2014 (HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\UnicOnLine PF 2014) (Version: - Agenzia delle Entrate)
UnicoOnLine - File Internet 3.0.0 (HKLM-x32\...\File Internet) (Version: - )
VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN)
WinPatrol (HKLM\...\{6A206A04-6BC1-411B-AA04-4E52EDEEADF2}) (Version: 33.6.2015.18 - Ruiware)
WinPrivacy (HKLM-x32\...\{18605281-BFFE-4968-9B86-05322D5FBB33}) (Version: 2015.11.771 - WinPatrol)
WOT für Internet Explorer (HKLM\...\{373B90E1-A28C-434C-92B6-7281AFA6115A}) (Version: 13.9.2.0 - WOT Services Oy)
XAV5004 Firmware Upgrade Tool (HKLM-x32\...\InstallShield_{CE699AEA-4D74-41C8-831C-E322613EFEDB}) (Version: 2.0.0.4 - NETGEAR Powerline)
XAV5004 Firmware Upgrade Tool (x32 Version: 2.0.0.4 - NETGEAR Powerline) Hidden
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\P\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\P\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\P\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC}\InprocServer32 -> C:\Users\P\AppData\Local\Bandizip\bdzshl64.dll (Bandisoft.com)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\P\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\P\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\P\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\P\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\P\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\P\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\P\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\P\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\P\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\P\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\P\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\P\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\P\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\P\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\P\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\P\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\P\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\P\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\P\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
==================== Wiederherstellungspunkte =========================
03-12-2015 15:46:37 Installiert Realtek High Definition Audio Driver
09-12-2015 08:04:26 Windows Modules Installer
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {058B527D-933E-4957-9E4F-59EFDAF8EBCB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-11-24] (HP Inc.)
Task: {0837D543-65C0-4349-B544-918F280BDE73} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated)
Task: {0FB78F1D-D0D2-4729-A210-B660ACB09D16} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {13DA198E-BD34-4C86-BE05-188B3F0EDCA0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2015-11-01] (Microsoft Corporation)
Task: {1E82180E-CECC-4E90-B3D2-B55379CA262E} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2015-11-04] (Hewlett-Packard)
Task: {360ECDD8-09DB-47B0-959E-2D44F35BA3EB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {3F86C549-D471-4A19-A386-906197633150} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
Task: {469819E1-8199-4F0C-AAB0-77B597822897} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-09-28] (Hewlett-Packard)
Task: {57DB3DFF-DC13-4033-BDF9-308E4252587A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {5B97CA2D-D8AE-4815-9FC7-F2A1A6491BAB} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {5EF77EEC-5B87-4397-A3F7-9EC0150463A4} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1417886651-2129952674-4107074907-1001Core => C:\Users\P\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-23] (Dropbox, Inc.)
Task: {645E0FA9-9E7A-4F52-8C09-ECB484477165} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1417886651-2129952674-4107074907-1001UA => C:\Users\P\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-23] (Dropbox, Inc.)
Task: {64C48A1D-2CD4-4BF4-9CEE-EE7882FBA418} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd)
Task: {6F432412-0C07-4047-88F3-2366FFABA89E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-11-24] (HP Inc.)
Task: {706F840E-852E-487E-B2F9-85BF6ACCCB49} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-09] (Adobe Systems Incorporated)
Task: {7513D311-D353-45FD-92FE-13F2A491B27E} - System32\Tasks\HPCustParticipation HP Officejet Pro 8500 A910 => C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.)
Task: {7AA9A59F-006E-450E-8E68-775A4988CE9A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1417886651-2129952674-4107074907-1001UA => C:\Users\P\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {835E4B3F-D88E-4A92-97B8-E5E746296C9B} - System32\Tasks\HPCeeScheduleForP => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard)
Task: {8705CB2C-6A60-4A4D-B078-C52C69EE02BA} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2015-11-01] (Microsoft Corporation)
Task: {8E4D61EE-856B-4651-BD5A-F49810ED1D0E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company)
Task: {B28650CB-1BC6-4474-9DA6-F431116B9511} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {B397DDAD-C59A-4CD7-92D5-6DBAEF696A27} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG
Task: {B58E6A96-992B-440D-9F47-E346CCC85679} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {C1513F6F-879D-440C-B8EA-D2965B3159C8} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1417886651-2129952674-4107074907-1001Core => C:\Users\P\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {C44F641D-30D4-4359-A649-679260F260D5} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2015-11-01] (Microsoft Corporation)
Task: {C8AA7387-55DF-403E-8030-825198F701BE} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {C905BC85-9053-4A99-B89D-A31FD0DF5C26} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2015-11-01] (Microsoft Corporation)
Task: {D31DE3CF-5582-4EA8-9939-9317F1B93292} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {D3C5A598-7642-434F-A434-AA9A95CE8477} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2015-11-04] (Hewlett-Packard)
Task: {D4E4C0C0-6AC2-49A1-A2AC-B49D64DE682F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG
Task: {D5926BD1-B818-4D5F-8ECE-3FB20BFDC410} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe
Task: {D5FD5760-182E-40BA-B4D5-2320C06D19CD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company)
Task: {E1689B0F-6EC6-41C6-BCDD-5B1E67A21632} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {F5E29CEB-B7BC-482B-9508-CC6B7D6585A0} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-12-10] (Microsoft Corporation)
Task: {F6B9A00D-FCCA-4ADC-9E98-B0BEB42187CB} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2015-08-26] (Apple Inc.)
Task: {FC65DB7B-687B-4888-BC7B-6292C4C00F11} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1417886651-2129952674-4107074907-1001Core.job => C:\Users\P\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1417886651-2129952674-4107074907-1001UA.job => C:\Users\P\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1417886651-2129952674-4107074907-1001Core.job => C:\Users\P\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1417886651-2129952674-4107074907-1001UA.job => C:\Users\P\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForP.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
ShortcutWithArgument: C:\Users\P\Documents\Office *****\Tax\2013\CAMBI MENSILI - SERIE STORICA.lnk -> C:\Users\P\AppData\Local\Google\Chrome SxS\Application\chrome.exe (Google Inc.) -> --app=hxxp://cambi.bancaditalia.it/cambi/cambi.do?lingua=it&to=cambiSSMForm <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Italia\TELECOM Italia\Tutto Fibra e chiamate illimitate _ Telecom Italia.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.telecomitalia.it/internet/fibra/tuttofibra <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Haus Via Conventino 2\Ville in vendita a VARESE - Prima Cappella - villa liberty d'epoca, casa panoramica - YouTube.lnk -> C:\Users\P\AppData\Local\Google\Chrome SxS\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.youtube.com/watch?v=1oMclkF-TvU <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Haus\GRA-Rivadossi.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.grarivadossi.com/indexc83c.html?lang=ita <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Haus\Manutenzione dell'ottone.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.lavorincasa.it/manutenzione-dell-ottone/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Haus\Immobilen Admin\Serra Kaution Zinsen.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.zinsen-berechnen.de/sparbuch-rechner.php?paramid=ihostxox0g <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Garten\baumpflege-woodtli.ch.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.baumpflege-woodtli.ch/default.htm <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Garten\Rhododendron und Azalee.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.rhododendron-azalee.de/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Garten\TASPO BaumZeitung_ taspo.de.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://taspo.de/ueber-taspo/taspo-baumzeitung.html <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Finanzen\Gold\Governance FAQs.lnk -> C:\Users\P\AppData\Local\Google\Chrome SxS\Application\chrome.exe (Google Inc.) -> --app="hxxps://www.bullionvault.com/help/FAQs/FAQs_governance.html#Does BullionVault report my gold trading activity" <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Elektronik_Elektrik\LNB-Abstände beim Multifeed-Empfang - satellitenempfang.info.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://satellitenempfang.info/lnb_abstaende.html <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Elektronik_Elektrik\TRIAX*-*Digitaler Produktkatalog.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.triax-hirschmann.de/Produkte/Produktkatalog.aspx <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Computer Unterlagen\Tecnophone.it Come impostare APN inbox.tim.it su Android [Guida] _ Tecnophone.it.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.tecnophone.it/2013/01/15/come-impostare-apn-inbox-tim-it-su-android-guida/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Documents\Computer Unterlagen\Fibra Modem Telecom Italia\Technicolor AG plus VDNT-S Router VDSL2 30Mbs(TelecomItalia Fibra).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.hwupgrade.it/forum/showpost.php?p=39811568&postcount=2 <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Attrezzi e utensili.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.attrezzieutensili.it/it/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Bautrockner WDH-735EBH.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.aktobis.de/Bautrockner-WDH-735EBH.html <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Das _zöllige_ Rohr.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.gewinde-normen.de/zoll-rohr.html <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\DecoFinder _ Die internationale Online Messe für Dekorati....lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://de.decofinder.com/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Dizionari di Italiano e Inglese - Vocabolario di Italiano e Inglese - Garzanti Linguistica.lnk -> C:\Users\P\AppData\Local\Google\Chrome SxS\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.garzantilinguistica.it/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Drei Monats Euribor Zinssatz - aktuelle Werte und Grafiken.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://de.euribor-rates.eu/euribor-zinssatz-3-monate.asp <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\IBAN-Rechner.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.iban-rechner.de/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Meteo Varese - Previsioni del tempo orarie » IL METEO.IT.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.ilmeteo.it/meteo/Varese/previsioni-orarie <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Online Latein Wörterbuch.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.albertmartin.de/latein/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Previsioni Meteo Induno Olona - Weather Induno Olona » IL METEO.IT.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.ilmeteo.it/meteo/Induno+Olona <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Riscotel - Il portale informativo per i tributi dovuti agli Enti Locali.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.riscotel.it/cms/it/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\RUBART.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.rubart.de/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Speedtest.net by Ookla - DSL Speed Test - Der Globale Breitband Geschwindigkeitstest.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.speedtest.net/de/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Links\Dog Silencer™ _ Hund Schalldämpfer.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.antibellen.de/ds_pro.htm <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Links\Eliminare Umidità In Casa - Dmg Italia _ Muffa Pareti.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.dmgitaliasrl.com/ <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Links\ppedv Team Blog _ Windows Server 2012 R2_ Netzwerk-Profil mit PowerShell von “Öffentlich” auf “Privat” ändern.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://blog.ppedv.de/post/2014/08/05/windows-server-2012-r2-netzwerk-profil-mit-powershell-von-ffentlich-auf-privat-ndern.aspx <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Links\Prime stitching_ Gemband welting_ Plirip-construction - Newsaboutshoes.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.newsaboutshoes.eu/forum/showthread.php?p=3408 <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Links\Schutzfolien für USM Haller Regale Sideboard Tablare.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://shop.folifox.de/de/folien-usm.html <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Links\Warzen entfernen – wikiHow.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://de.wikihow.com/Warzen-entfernen?utm_source=enwikihow&utm_medium=translatedcta&utm_campaign=translated <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\Desktop\Links\_The Social Climber's Bible_ von Jazz Johnson und Dirk Wittenborn in der Kritik - DIE WELT.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.welt.de/icon/article134874128/Die-ultimative-Anleitung-fuer-Emporkoemmlinge.html <==== ACHTUNG
ShortcutWithArgument: C:\Users\P\AppData\Local\Google\Chrome SxS\User Data\Default\Web Applications\www.manula.com\http_80\Welcome to 1Password 4 - 1Password 4 for Windows - v4.lnk -> C:\Users\P\AppData\Local\Google\Chrome SxS\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.manula.com/manuals/agilebits/1password-4-for-windows/4/en/topic/welcome-to-1password <==== ACHTUNG
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2015-10-30 08:17 - 2015-10-30 08:17 - 00028672 _____ () C:\WINDOWS\SYSTEM32\efsext.dll
2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2015-11-28 19:26 - 2015-11-24 20:32 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-01-20 22:35 - 2015-01-20 22:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-10-13 04:45 - 2015-10-13 04:45 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2008-10-24 15:35 - 2008-10-24 15:35 - 00128296 _____ () C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe
2015-11-14 19:59 - 2015-11-01 02:11 - 00161448 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll
2015-09-06 09:10 - 2015-09-26 20:12 - 00405160 _____ () C:\Program Files\Ruiware\WinPrivacy\PFPVCY.DLL
2015-09-06 09:10 - 2015-09-23 16:05 - 00128168 _____ () C:\Program Files\Ruiware\WinPrivacy\pvcytl.DLL
2015-12-03 15:21 - 2015-11-22 11:47 - 02653816 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-03 15:21 - 2015-11-22 11:47 - 02653816 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-11-29 05:48 - 2015-11-29 05:49 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2015-12-03 15:20 - 2015-11-22 10:23 - 08005632 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-12-03 15:20 - 2015-11-22 10:18 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-03 15:21 - 2015-11-22 10:19 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-12-03 15:21 - 2015-11-22 10:21 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-10-30 08:17 - 2015-10-30 08:17 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2015-10-30 08:17 - 2015-10-30 08:17 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-11-16 17:55 - 2015-11-16 17:55 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2015-12-10 06:25 - 2015-12-10 06:25 - 00012800 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1208.10480.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2015-12-10 06:25 - 2015-12-10 06:25 - 11542016 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1208.10480.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2015-11-29 06:07 - 2015-11-29 06:08 - 00258560 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1208.10480.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2015-10-13 04:45 - 2015-10-13 04:45 - 00306960 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxslt.dll
2015-11-29 05:48 - 2015-11-29 05:49 - 00152064 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2015-11-29 05:48 - 2015-11-29 05:49 - 18906624 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2015-11-29 05:48 - 2015-11-29 05:48 - 02907648 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\MessagingNativeCore.dll
2015-11-29 05:48 - 2015-11-29 05:48 - 00583168 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\MessagingEntityExtractionProxy.dll
2015-11-29 05:48 - 2015-11-29 05:48 - 01302528 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\MessagingNativeBase.dll
2015-06-14 08:55 - 2015-11-16 04:54 - 00012080 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2013-03-27 22:09 - 2013-03-27 22:09 - 00420160 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\ulxmlrpcpp.dll
2015-12-11 19:41 - 2015-10-31 01:59 - 00034768 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\faulthandler.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00022848 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\Crypto.Random.OSRNG.winrandom.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00023352 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\Crypto.Util._counter.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00042296 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\Crypto.Cipher._AES.pyd
2015-12-11 19:41 - 2015-10-31 01:59 - 00116688 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\pywintypes27.dll
2015-12-11 19:41 - 2015-10-31 01:59 - 00093640 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\_ctypes.pyd
2015-12-11 19:41 - 2015-10-31 01:59 - 00018376 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\select.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00019760 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00105928 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32api.pyd
2015-12-11 19:41 - 2015-10-31 01:59 - 00392144 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\pythoncom27.dll
2015-12-11 19:41 - 2015-12-08 22:36 - 00381752 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd
2015-12-11 19:41 - 2015-10-31 01:59 - 00692688 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\unicodedata.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00020816 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00109520 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 01737032 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00020808 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00020800 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\_cffi_python_x66cf7a7cx17a72769.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00021840 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00038696 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\fastpath.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00024528 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32event.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00020936 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\mmapfile.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00114640 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32security.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00021320 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_xde9e4433x360333f0.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00124880 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32file.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00030160 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32pipe.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00043472 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32process.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00175560 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32gui.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00028616 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32ts.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32clipboard.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00048592 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32service.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00024392 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00036296 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\librsync.dll
2015-12-11 19:41 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\win32profile.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00117056 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00031568 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\enterprise_data.compiled._enterprise_data.pyd
2015-10-02 04:42 - 2015-11-05 01:04 - 00293392 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\EnterpriseDataAdapter.dll
2015-12-11 19:41 - 2015-12-08 22:36 - 00023376 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd
2015-12-11 19:41 - 2015-10-31 01:59 - 00134608 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\_elementtree.pyd
2015-12-11 19:41 - 2015-10-31 01:59 - 00134088 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\pyexpat.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00240584 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\jpegtran.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00020280 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00052024 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00021304 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\Crypto.Util.strxor.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00350152 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\winxpgui.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00084792 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL
2015-12-11 19:41 - 2015-12-08 22:36 - 01826608 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd
2015-12-11 19:41 - 2015-10-31 02:00 - 00083912 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\sip.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 03891504 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 01950000 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00519984 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00133936 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00225080 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00207672 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00024904 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00486704 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd
2015-12-11 19:41 - 2015-12-08 22:36 - 00357680 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd
2015-03-04 22:45 - 2015-10-31 02:01 - 00019920 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll
2015-03-04 22:45 - 2015-10-31 02:00 - 00786904 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-07-31 16:31 - 2015-10-31 02:00 - 00063448 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-03-04 22:45 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\P\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll
2014-07-13 07:20 - 2015-04-28 09:50 - 00376832 _____ () C:\Program Files (x86)\1Password 4\js3215R.dll
2013-03-28 00:37 - 2013-03-28 00:37 - 13627872 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers.dll
2014-04-14 13:17 - 2014-04-14 13:17 - 00433664 _____ () C:\Program Files (x86)\Evernote\Evernote\libxml2.dll
2014-04-14 13:17 - 2014-04-14 13:17 - 00315392 _____ () C:\Program Files (x86)\Evernote\Evernote\libtidy.dll
2015-12-12 07:58 - 2015-12-12 07:58 - 00098816 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32api.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00110080 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\pywintypes27.dll
2015-12-12 07:58 - 2015-12-12 07:58 - 00364544 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\pythoncom27.dll
2015-12-12 07:58 - 2015-12-12 07:58 - 00046080 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\_socket.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 01208320 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\_ssl.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00320512 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32com.shell.shell.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00776704 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\_hashlib.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 01176576 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\wx._core_.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00806400 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\wx._gdi_.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00816128 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\wx._windows_.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 01067008 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\wx._controls_.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00733184 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\wx._misc_.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00682496 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\pysqlite2._sqlite.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00088064 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\_ctypes.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00119808 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32file.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00108544 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32security.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00007168 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\hashobjs_ext.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00017920 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\thumbnails_ext.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00079360 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\usb_ext.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00167936 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32gui.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00018432 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32event.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00128512 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\_elementtree.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00127488 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\pyexpat.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00013824 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\common.time34.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00036864 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\_psutil_windows.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00038912 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32inet.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00525640 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\windows._lib_cacheinvalidation.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00011264 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32crypt.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00077312 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\wx._html2.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00027136 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\_multiprocessing.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00020480 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\_yappi.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00035840 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32process.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00686080 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\unicodedata.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00123392 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\wx._wizard.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00024064 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32pipe.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00010240 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\select.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00025600 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32pdh.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00017408 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32profile.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00022528 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\win32ts.pyd
2015-12-12 07:58 - 2015-12-12 07:58 - 00078848 _____ () C:\Users\P\AppData\Local\Temp\_MEI135202\wx._animate.pyd
2015-03-17 01:17 - 2015-03-17 01:17 - 00010240 _____ () C:\Program Files (x86)\Adobe\Acrobat 2015\Acrobat\locale\de_de\acrotray.deu
2014-09-11 13:09 - 2014-09-11 13:09 - 00176168 _____ () C:\Program Files (x86)\Lexware\Update Manager\Haufe.Core.Diagnostics.Logging.Targets.Etw.dll
2014-09-11 13:09 - 2014-09-11 13:09 - 00043048 _____ () C:\Program Files (x86)\Lexware\Update Manager\Haufe.Core.Diagnostics.Etw.dll
2015-03-17 01:17 - 2015-03-17 01:17 - 00141312 _____ () C:\Program Files (x86)\Adobe\Acrobat 2015\Acrobat\Locale\de_de\PDFMaker\PDFMOutlookAddin.DEU
2015-07-03 06:47 - 2015-07-03 06:47 - 05919416 _____ () C:\Program Files (x86)\Adobe\Acrobat 2015\PDFMaker\Common\AdobePDFMakerX.dll
2015-07-03 06:47 - 2015-07-03 06:47 - 03385856 _____ () C:\Program Files (x86)\Adobe\Acrobat 2015\Acrobat\Locale\de_DE\PDFMaker\AdobePDFMakerX.DEU
2015-11-14 20:02 - 2015-11-14 20:03 - 01754296 _____ () C:\Program Files (x86)\Microsoft Office\Root\Office16\tmpod.dll
2015-11-15 08:18 - 2015-11-01 11:11 - 01064104 _____ () C:\Program Files (x86)\Microsoft Office\Root\Office16\ADDINS\UmOutlookAddin.dll
2015-09-30 21:34 - 2015-09-30 21:34 - 02097848 _____ () C:\Program Files (x86)\Adobe\Acrobat 2015\PDFMaker\Common\SendAsLinkX.dll
2015-09-30 21:34 - 2015-09-30 21:34 - 00230912 _____ () C:\Program Files (x86)\Adobe\Acrobat 2015\Acrobat\Locale\de_DE\Adobe Send\SendAsLinkX.DEU
2015-11-14 21:02 - 2015-11-15 07:50 - 00149160 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\JitV.dll
2014-04-10 20:09 - 2014-02-10 12:44 - 04592128 _____ () C:\Users\P\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libglesv2.dll
2014-04-10 20:09 - 2014-02-10 12:44 - 00112128 _____ () C:\Users\P\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libegl.dll
2014-02-12 20:58 - 2014-02-12 20:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2015-10-13 04:46 - 2015-10-13 04:46 - 01040144 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
AlternateDataStreams: C:\UnicoOnLine:Win32App_1
AlternateDataStreams: C:\Program Files\Bonjour:Win32App_1
AlternateDataStreams: C:\Program Files\CCleaner:Win32App_1
AlternateDataStreams: C:\Program Files\GIMP 2:Win32App_1
AlternateDataStreams: C:\Program Files\iTunes:Win32App_1
AlternateDataStreams: C:\Program Files\Microsoft Silverlight:Win32App_1
AlternateDataStreams: C:\Program Files\Recuva:Win32App_1
AlternateDataStreams: C:\Program Files\WOT:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\1Password:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\1Password 4:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Apple Software Update:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\AusweisApp:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Bonjour:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Boxcryptor:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Chipcardmaster:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Hewlett-Packard:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\HP:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Malwarebytes Anti-Exploit:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Malwarebytes Anti-Malware:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Microsoft Office:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\MSXML 4.0:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\QuickTime:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Secure Banking:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\SpywareBlaster:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\WOT:Win32App_1
AlternateDataStreams: C:\WINDOWS\SysWOW64:Win32App_1
AlternateDataStreams: C:\ProgramData\HP:Win32App_1
AlternateDataStreams: C:\ProgramData\regid.1991-06.com.microsoft:Win32App_1
AlternateDataStreams: C:\ProgramData\TEMP:5C321E34
AlternateDataStreams: C:\Users\P\AppData\Local\Bandizip:Win32App_1
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\0411dd.com -> 0411dd.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\0511zfhl.com -> 0511zfhl.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\0632qyw.com -> 0632qyw.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\...\1001movie.com -> 1001movie.com
Da befinden sich 6091 mehr Seiten.
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-1417886651-2129952674-4107074907-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 185.37.37.37 - 185.37.37.185
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{E99FC9B0-7CDD-4464-A89F-D3F8EB001DAD}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{BD3B50B6-3AF6-48AE-A16C-8D8A46833F71}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{E51DE3BC-D789-49AB-BB69-A05717BF49AB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{D6E5D0FA-14EF-49F7-9107-61F122CFFFA7}] => (Allow) C:\Users\P\AppData\Local\Microsoft\OneDrive\OneDrive.exe
FirewallRules: [{9EE36A35-EB69-4620-9E18-90878BDD059F}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{4B75B06C-EDC7-46B7-B3AE-503DE13D0D38}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{ED94270D-569C-4D66-ACF1-F28F39BB666A}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{B0C533C1-1158-4EF2-A089-1CE1AA2348B0}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{0E6BBFA9-0C7D-4E71-944D-C61CAE95563F}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{FAA7820C-231D-4C6C-977A-33A020DEB176}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{5512C775-6E5A-4256-ADDB-9BB74A7EA08A}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{16894AC3-EE04-4188-8AC1-2D33B8271266}] => (Allow) C:\Program Files (x86)\Lexware\Update Service\Hmg.InstallationService.Service.exe
FirewallRules: [{490CFF0D-9865-47D1-8F8A-12D5FEEA549E}] => (Allow) C:\Program Files (x86)\Lexware\Update Service\Hmg.InstallationService.Service.exe
FirewallRules: [{3D5927EE-DE1F-408B-953E-12FE1C8F3AC3}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS3B1B\HPDiagnosticCoreUI.exe
FirewallRules: [{FB819530-79FA-43A8-984A-DF9DF3A04AC0}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS3B1B\HPDiagnosticCoreUI.exe
FirewallRules: [{FED1EA49-62EF-4C00-9C10-39E2890A38FD}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS3A9F\HPDiagnosticCoreUI.exe
FirewallRules: [{FCAD4AA8-32DD-4B14-BEE7-44FC4733EBE5}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS3A9F\HPDiagnosticCoreUI.exe
FirewallRules: [{408928A6-227D-4E6F-9831-6EBB5B75DFEC}] => (Allow) C:\Program Files (x86)\concept design\onlineTV 11\onlineTV.exe
FirewallRules: [{A4B8E0DD-3BFA-4E39-94DF-CF46154610D7}] => (Allow) C:\Program Files (x86)\concept design\onlineTV 11\onlineTV.exe
FirewallRules: [UDP Query User{06454621-1E57-4196-B519-5B163C5B95E2}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{26702EA0-E2DD-4396-909C-C898E3906355}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{A14313CD-DFBF-4CC5-A7E5-A5227A63CC0C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{033CA801-8938-45F0-82F8-712C98652B55}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{D6F7BFF0-7D47-4A63-9FE9-41C9BC1C5679}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{68D3AFC2-CD65-40A7-879F-E122AC88A91B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [UDP Query User{26763B49-21DF-4512-A326-E13D2470C25F}C:\users\p\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\p\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{431BF81F-9754-47D7-938D-F6675E852A28}C:\users\p\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\p\appdata\roaming\spotify\spotify.exe
FirewallRules: [{0A08F095-4B57-4A3A-A0D1-5287CE4ABCF7}] => (Allow) C:\Program Files\Ruiware\WinPrivacy\WinPrivacySvc.exe
FirewallRules: [{8DAE29D7-D5A4-4864-BA0C-8AD2BEF84BFD}] => (Allow) C:\Program Files\Ruiware\WinPrivacy\WinPrivacySvc.exe
FirewallRules: [{2A69780D-3BD8-43A0-A1A7-587E42A42AE9}] => (Allow) C:\Program Files\Ruiware\WinPrivacy\WinPrivacySvc.exe
FirewallRules: [{6EC29639-4566-42C0-AD25-77BF7418387E}] => (Allow) C:\Program Files\Ruiware\WinPrivacy\WinPrivacySvc.exe
FirewallRules: [{57E708F1-E72F-471D-9D84-3DC30D404475}] => (Allow) C:\Program Files\Ruiware\WinPrivacy\WinPrivacySvc.exe
FirewallRules: [{53CF702F-AEAE-4B09-BF63-41877EBC9102}] => (Allow) C:\Program Files\Ruiware\WinPrivacy\WinPrivacySvc.exe
FirewallRules: [{7FE4D48D-BD70-4463-A02D-3A56E7C65BE7}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS5E5A\HPDiagnosticCoreUI.exe
FirewallRules: [{86378E08-1BAD-411E-B13F-90E6D6B4046B}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS5E5A\HPDiagnosticCoreUI.exe
FirewallRules: [{33FBAF3F-735E-4023-8EA9-47D22BA695D8}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS5E12\HPDiagnosticCoreUI.exe
FirewallRules: [{2473BBB6-3F1E-45A3-B5D8-407FDB236C30}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS5E12\HPDiagnosticCoreUI.exe
FirewallRules: [UDP Query User{681A1462-984E-49CF-8693-ACDA7A1B62A3}C:\users\p\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\p\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{752FAB1F-4A6B-4246-A266-7B86B33DF03D}C:\users\p\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\p\appdata\roaming\spotify\spotify.exe
FirewallRules: [{1BBB6CA7-F27E-49B2-AAF0-B4F9F4C5853F}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS2076\HPDiagnosticCoreUI.exe
FirewallRules: [{8766DA3C-197F-4C55-8C9A-3F717CD2699A}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS2076\HPDiagnosticCoreUI.exe
FirewallRules: [{D899E758-53F9-4237-BFDA-EA90EC69936E}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS1FED\HPDiagnosticCoreUI.exe
FirewallRules: [{D33AD03B-D858-41E2-A668-362A774EC3A0}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS1FED\HPDiagnosticCoreUI.exe
FirewallRules: [{1C28722A-E624-4B10-B6ED-2381D2E2F546}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS1CFE\HPDiagnosticCoreUI.exe
FirewallRules: [{9CE3B0DE-4B00-4C59-AB5F-735A339F16B6}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS1CFE\HPDiagnosticCoreUI.exe
FirewallRules: [{E3451863-1EA2-42C8-85B0-D8FF597AC5E6}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS3134\HPDiagnosticCoreUI.exe
FirewallRules: [{AB4FEF7E-B10F-4A5D-B09F-428E1B60647B}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS3134\HPDiagnosticCoreUI.exe
FirewallRules: [{0955E7B2-7107-4A9B-89A6-FDA768374F94}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS0524\HPDiagnosticCoreUI.exe
FirewallRules: [{64DF7862-7C60-4016-AD73-A272C5DE92F5}] => (Allow) C:\Users\P\AppData\Local\Temp\7zS0524\HPDiagnosticCoreUI.exe
FirewallRules: [UDP Query User{ED4849DE-BDD6-4715-95BA-832849AF67CA}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe
FirewallRules: [TCP Query User{9A901504-0970-4DDE-B540-C94FD3750E1D}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe
FirewallRules: [{5F6F93E3-5FAA-4AC1-A3A6-F477486BD3E5}] => (Allow) C:\Program Files (x86)\Seagate\Seagate Dashboard\HipServAgent\HipServAgent.exe
FirewallRules: [UDP Query User{0C3C26A6-1FF4-4361-A2F6-41121D895D6D}C:\program files (x86)\netgear genie\bin\netgeargenie.exe] => (Allow) C:\program files (x86)\netgear genie\bin\netgeargenie.exe
FirewallRules: [TCP Query User{75B8A23E-4AFC-40A1-9E2C-E8567A88F64B}C:\program files (x86)\netgear genie\bin\netgeargenie.exe] => (Allow) C:\program files (x86)\netgear genie\bin\netgeargenie.exe
FirewallRules: [UDP Query User{132B5D78-DF13-4C91-8EEE-1A7041BEA8C4}C:\program files (x86)\netgear genie\bin\netgeargenie.exe] => (Allow) C:\program files (x86)\netgear genie\bin\netgeargenie.exe
FirewallRules: [TCP Query User{98A0AC76-C7FC-47C4-8C54-C63A3922902C}C:\program files (x86)\netgear genie\bin\netgeargenie.exe] => (Allow) C:\program files (x86)\netgear genie\bin\netgeargenie.exe
FirewallRules: [{DFA3E1FD-3942-4181-84A8-F241246D0A02}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{95EF990D-236A-4405-A5F0-AEC7288A6EC3}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\HPNetworkCommunicator.exe
FirewallRules: [{14C59D9B-3FFB-402C-B14A-FA7CBB031EBA}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\Bin\DeviceSetup.exe
FirewallRules: [{B22AF196-AB0A-4003-B06A-752854CDF4D9}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\bin\SendAFax.exe
FirewallRules: [{628D214D-D4E8-4086-9A9D-9ED6771834C1}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\bin\DigitalWizards.exe
FirewallRules: [{0168DCFA-2329-4CC5-9C8E-79B39AD5F185}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8500 A910\bin\FaxApplications.exe
FirewallRules: [{4EF7A175-8C2B-4F3A-9406-651C9A555B73}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{007BB6B1-F999-4A04-B5A0-CD1C7400C12E}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{A5A3EFEC-BF27-42EB-9437-BAF051A9C829}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [UDP Query User{3B524508-924F-4BAD-978C-65C724AA064F}C:\users\p\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\p\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [TCP Query User{4C5B0AC5-4D2E-4B97-9686-5D1FC645D7AD}C:\users\p\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\p\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{A3A317FC-50A2-4910-9308-E82543F53935}] => (Allow) C:\Users\P\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{75739342-42ED-4E0F-94DB-2BC7FD7DF5F8}] => (Allow) C:\Users\P\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{BA907FA5-548E-4236-A884-9EC345E79379}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{FD9E4B9D-1DBD-4CE5-8244-33CB7DA6005A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{7AD57BAA-A9A0-488B-BAB2-ADA9B5A306F1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{CD80BD9C-0BE0-44FD-8A3F-EFF198218D46}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{AA6B2122-2CA0-4ED0-BA6B-F91A09897AB5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{259F43D1-5CC5-4BC7-8F66-8F19FDFECA17}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{8052B75F-9FB1-4B10-913A-FE774A534F83}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{FF346E5B-DD69-4896-896B-9AA921B8CADD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{87ED9DA5-34B2-417B-96EE-518B67950DC9}] => (Allow) C:\Users\P\AppData\Local\Google\Chrome SxS\Application\chrome.exe
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (12/12/2015 08:21:26 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0"1". Fehler in Manifest- oder Richtliniendatei "UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0"2" in Zeile UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (12/12/2015 08:17:48 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0"1". Fehler in Manifest- oder Richtliniendatei "UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0"2" in Zeile UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (12/12/2015 08:02:44 AM) (Source: HP Active Health) (EventID: 1400) (User: )
Description: Agent WindowsEvents threw an exception: System.Diagnostics.Eventing.Reader.EventLogException: Die Beschreibungszeichenfolge für die Parameterreferenz (%1) wurde nicht gefunden
bei System.Diagnostics.Eventing.Reader.EventLogException.Throw(Int32 errorCode)
bei System.Diagnostics.Eventing.Reader.NativeWrapper.EvtFormatMessageRenderName(EventLogHandle pmHandle, EventLogHandle eventHandle, EvtFormatMessageFlags flag)
bei System.Diagnostics.Eventing.Reader.ProviderMetadataCachedInformation.GetFormatDescription(String ProviderName, EventLogHandle eventHandle)
bei HP.ActiveHealth.Commons.Objects.AgentDataQuery.WindowsEventsLog.MoveNext()
bei HP.ActiveHealth.Agents.WindowsEvents.WindowsEventsAgent.CollectFromWindowsEventFile(IDataClassCollector collector, String channel, DateTime latestDate, List`1 levels)
bei HP.ActiveHealth.Agents.WindowsEvents.WindowsEventsAgent.CollectChannelDataClasses(IDataClassCollector collector, FileInfo bufferFile, ChannelConfiguration config)
bei HP.ActiveHealth.Agents.WindowsEvents.WindowsEventsAgent.CollectNewDataClasses(FileInfo stateFile, IDataClassCollector collector)
bei HP.ActiveHealth.API.DataGeneration.AgentRunner.QueryAgentDelegate(Object agentObj)
Error: (12/12/2015 08:01:37 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8
Error: (12/12/2015 07:57:14 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: HPE-413)
Description: Das Paket „Microsoft.Windows.ShellExperienceHost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy+App“ wurde beendet, da das Anhalten zu lange dauerte.
Error: (12/12/2015 07:52:19 AM) (Source: Windows Search Service) (EventID: 1019) (User: )
Description: Die Liste der eingeschlossenen und ausgeschlossenen Adressen konnte vvon Windows Search nicht verarbeitet werden. Fehler: <30, 0x80040d07, "mapi15://{S-1-5-21-1417886651-2129952674-4107074907-1001}/">.
Error: (12/12/2015 07:52:01 AM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Der Index kann nicht initialisiert werden.
Details:
Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06)
Error: (12/12/2015 07:52:01 AM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Die Anwendung kann nicht initialisiert werden.
Kontext: Windows Anwendung
Details:
Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06)
Error: (12/12/2015 07:52:01 AM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Das Gatherer-Objekt kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06)
Error: (12/12/2015 07:52:01 AM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden.
Kontext: Windows Anwendung, SystemIndex Katalog
Details:
Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06)
Systemfehler:
=============
Error: (12/12/2015 08:00:40 AM) (Source: DCOM) (EventID: 10016) (User: HPE-413)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}HPE-413PS-1-5-21-1417886651-2129952674-4107074907-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (12/12/2015 08:00:40 AM) (Source: DCOM) (EventID: 10016) (User: HPE-413)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}HPE-413PS-1-5-21-1417886651-2129952674-4107074907-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (12/12/2015 08:00:40 AM) (Source: DCOM) (EventID: 10016) (User: HPE-413)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}HPE-413PS-1-5-21-1417886651-2129952674-4107074907-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (12/12/2015 08:00:40 AM) (Source: DCOM) (EventID: 10016) (User: HPE-413)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}HPE-413PS-1-5-21-1417886651-2129952674-4107074907-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (12/12/2015 08:00:40 AM) (Source: DCOM) (EventID: 10016) (User: HPE-413)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}HPE-413PS-1-5-21-1417886651-2129952674-4107074907-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (12/12/2015 08:00:40 AM) (Source: DCOM) (EventID: 10016) (User: HPE-413)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}HPE-413PS-1-5-21-1417886651-2129952674-4107074907-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (12/12/2015 08:00:40 AM) (Source: DCOM) (EventID: 10016) (User: HPE-413)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}HPE-413PS-1-5-21-1417886651-2129952674-4107074907-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (12/12/2015 08:00:40 AM) (Source: DCOM) (EventID: 10016) (User: HPE-413)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}HPE-413PS-1-5-21-1417886651-2129952674-4107074907-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (12/12/2015 08:00:40 AM) (Source: DCOM) (EventID: 10016) (User: HPE-413)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}HPE-413PS-1-5-21-1417886651-2129952674-4107074907-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
Error: (12/12/2015 08:00:40 AM) (Source: DCOM) (EventID: 10016) (User: HPE-413)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}HPE-413PS-1-5-21-1417886651-2129952674-4107074907-1001LocalHost (unter Verwendung von LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742
CodeIntegrity:
===================================
Date: 2015-12-10 14:52:23.352
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2015-12-10 03:04:40.242
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2015-12-10 00:56:02.344
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-10 00:56:02.329
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-10 00:56:01.215
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-10 00:56:01.196
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-10 00:48:22.194
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2015-12-04 06:44:55.671
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-04 06:44:55.656
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-12-04 06:44:51.366
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i7 CPU 870 @ 2.93GHz
Prozentuale Nutzung des RAM: 35%
Installierter physikalischer RAM: 16343.07 MB
Verfügbarer physikalischer RAM: 10462.04 MB
Summe virtueller Speicher: 18775.07 MB
Verfügbarer virtueller Speicher: 12016.09 MB
==================== Laufwerke ================================
Drive c: (OS) (Fixed) (Total:1396.72 GB) (Free:1190.11 GB) NTFS
Drive x: (Boxcryptor) (Network) (Total:1396.72 GB) (Free:1190.11 GB) FAT32
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (Size: 1397.3 GB) (Disk ID: BF6A324D)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1396.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
==================== Ende von Addition.txt ============================ Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 13.12.2015
Suchlaufzeit: 02:05
Protokolldatei: Additions.txt
Administrator: Ja
Version: 2.2.0.1024
Malware-Datenbank: v2015.12.12.05
Rootkit-Datenbank: v2015.12.07.01
Lizenz: Premium-Version
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Aktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: P
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 394592
Abgelaufene Zeit: 25 Min., 46 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswerte: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 0
(keine bösartigen Elemente erkannt)
Dateien: 0
(keine bösartigen Elemente erkannt)
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) Code:
# AdwCleaner v5.024 - Bericht erstellt am 13/12/2015 um 09:50:15
# Aktualisiert am 07/12/2015 von Xplode
# Datenbank : 2015-12-12.1 [Server]
# Betriebssystem : Windows 10 Pro (x64)
# Benutzername : P - HPE-413
# Gestartet von : C:\Users\P\Desktop\adwcleaner_5.024.exe
# Option : Löschen
# Unterstützung : hxxp://toolslib.net/forum
***** [ Dienste ] *****
***** [ Ordner ] *****
[-] Ordner Gelöscht : C:\Users\P\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\npdicihegicnhaangkdmcgbjceoemeoo
***** [ Dateien ] *****
[-] Datei Gelöscht : C:\Users\P\AppData\Local\Google\Chrome SxS\User Data\Default\Local Storage\chrome-extension_npdicihegicnhaangkdmcgbjceoemeoo_0.localstorage
***** [ DLLs ] *****
***** [ Verknüpfungen ] *****
***** [ Aufgabenplanung ] *****
***** [ Registrierungsdatenbank ] *****
***** [ Internetbrowser ] *****
[-] [C:\Users\P\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Gelöscht : npdicihegicnhaangkdmcgbjceoemeoo
[-] [C:\Users\P\AppData\Local\Google\Chrome SxS\User Data\Default\Secure Preferences] [Extension] Gelöscht : npdicihegicnhaangkdmcgbjceoemeoo
*************************
:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
########## EOF - C:\AdwCleaner\AdwCleaner[C6].txt - [1292 Bytes] ########## |