Addition.txt Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-02-2016
durchgeführt von Markus Schinner (2016-02-17 22:09:56)
Gestartet von E:\Installation\Trojanerboard_20160217
Windows 10 Pro (X64) (2016-01-11 03:10:40)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
admin (S-1-5-21-2082267813-4018268301-2143041108-1015 - Administrator - Enabled) => C:\Users\admin
Administrator (S-1-5-21-2082267813-4018268301-2143041108-500 - Administrator - Disabled)
ASPNET (S-1-5-21-2082267813-4018268301-2143041108-1004 - Limited - Enabled)
DefaultAccount (S-1-5-21-2082267813-4018268301-2143041108-503 - Limited - Disabled)
Gast (S-1-5-21-2082267813-4018268301-2143041108-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2082267813-4018268301-2143041108-1002 - Limited - Enabled)
Markus Schinner (S-1-5-21-2082267813-4018268301-2143041108-1001 - Administrator - Enabled) => C:\Users\Markus Schinner
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
5700_Help (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (Version: 8.2.1 - Hewlett-Packard) Hidden
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
ABK7 (HKLM-x32\...\ABK7) (Version: - )
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20059 - Adobe Systems Incorporated)
Adobe Acrobat X Pro - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000005}) (Version: 10.1.16 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.6.0.19120 - Adobe Systems Incorporated)
Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated)
Adobe Flash Player 20 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.8.638 - Adobe Systems, Inc.)
Age of Conquest III 3.0.5256 (HKLM-x32\...\0963-9570-9010-4519) (Version: 3.0.5256 - Noble Master LLC)
Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.)
AnyDVD (HKLM-x32\...\AnyDVD) (Version: 7.6.7.0 - SlySoft)
AudibleManager (HKLM-x32\...\AudibleManager) (Version: 2007842046.48.56.39529002 - Audible, Inc.)
AUER Success.6 R3 (HKLM-x32\...\{550E527F-57A0-415D-988F-54988BCF8F70}) (Version: 06.00.0621 - AUER - Die Bausoftware GmbH)
Autodesk DWG TrueView 2015 - English (HKLM\...\DWG TrueView 2015 - English) (Version: 20.0.51.0 - Autodesk)
Bing Rewards Client Installer (x32 Version: 16.0.345.0 - Microsoft Corporation) Hidden
bpd_scan (x32 Version: 3.00.0000 - Hewlett-Packard) Hidden
BPDSoftware (x32 Version: 130.0.000.000 - Hewlett-Packard) Hidden
BPDSoftware_Ini (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
Brother MFL-Pro Suite MFC-J6510DW (HKLM-x32\...\{17795164-3BC1-4D4F-8ADA-65C895EBFC9A}) (Version: 1.0.25.0 - Brother Industries, Ltd.)
BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden
Carma Tab (HKLM-x32\...\{32D173B5-1F70-427D-AF7F-F402012038D9}) (Version: 6.5.000 - Egon Heimann GmbH)
Citrix Online Launcher (HKLM-x32\...\{678753E6-E526-4AE5-A144-00240772543A}) (Version: 1.0.393 - Citrix)
ClickOnce for Google Chrome (HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\ClickOnceForGoogleChome.exe) (Version: - Menarva Ltd)
CloneDVD2 (HKLM-x32\...\CloneDVD2) (Version: 2.9.3.3 - Elaborate Bytes)
CrashPlan PROe (HKLM\...\{CEE380D9-0281-47C8-A453-BCA3C7E0B43E}) (Version: 3.6.3 - Code 42 Software)
CrystalDiskInfo 5.4.2 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 5.4.2 - Crystal Dew World)
CrystalDiskMark 3.0.1b (HKLM\...\CrystalDiskMark_is1) (Version: 3.0.1b - Crystal Dew World)
DDBAC (HKLM-x32\...\{186C8D11-924D-4205-9CC4-60C77A127BE6}) (Version: 4.3.67 - DataDesign)
Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden
DHTML Editing Component (HKLM-x32\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0002 - Microsoft Corporation)
DocProc (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
Drive Encryption for HP ProtectTools (HKLM-x32\...\Drive Encryption) (Version: 5.0.6.0 - Hewlett-Packard)
Drive Encryption for HP ProtectTools (Version: 5.0.6.0 - Hewlett-Packard) Hidden
Dropbox (HKLM-x32\...\Dropbox) (Version: 3.12.5 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.27.37 - Dropbox, Inc.) Hidden
DWG TrueView 2015 - English (Version: 20.0.51.0 - Autodesk) Hidden
EaseUS Partition Master 10.0 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS)
easy2000 Einnahmen-Ausgaben Buchhaltung 2015 (HKLM-x32\...\easy2000 Einnahmen-Ausgaben Buchhaltung_is1) (Version: - easy2000)
Energy Star Digital Logo (HKLM-x32\...\{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}) (Version: 1.0.1 - Hewlett-Packard)
Evernote v. 5.9.6 (HKLM-x32\...\{A542D366-9877-11E5-B101-005056951CAD}) (Version: 5.9.6.9494 - Evernote Corp.)
Fax (x32 Version: 130.0.418.000 - Hewlett-Packard) Hidden
FileZilla Client 3.9.0.1 (HKLM-x32\...\FileZilla Client) (Version: 3.9.0.1 - Tim Kosse)
FortiClient (HKLM\...\{B5E0B33F-91D4-408B-BE40-46BCA75F3914}) (Version: 5.4.0.0780 - Fortinet Inc)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.2.5.930 - Foxit Software Inc.)
GIMP 2.8.16 (HKLM\...\GIMP-2_is1) (Version: 2.8.16 - The GIMP Team)
Glo [de-de] (HKLM-x32\...\Glo) (Version: - Immersion Digital)
GO Contact Sync Mod (HKLM-x32\...\{23CB2F31-83CD-4BBC-A0ED-3B7895252D82}) (Version: 3.9.13 - WebGear Ltd, New Zealand + Create Software + Stru.be + saller.NET + Big-R)
Google Chrome (HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\Google Chrome) (Version: 48.0.2564.109 - Google Inc.)
Google Drive (HKLM-x32\...\{EF61675D-9BBC-4EC7-B906-F13BE8D3BD20}) (Version: 1.27.1227.2094 - Google, Inc.)
Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
GoToMeeting 7.11.1.4419 (HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\GoToMeeting) (Version: 7.11.1.4419 - CitrixOnline)
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HiSuite (HKLM-x32\...\Hi Suite) (Version: 41.003.55.00.06 - Huawei Technologies Co.,Ltd)
HP 3D DriveGuard (HKLM\...\{8F258628-2E18-4C2E-8127-EF4EFAF5F75C}) (Version: 4.1.10.1 - Hewlett-Packard Company)
HP Business Card Reader (HKLM-x32\...\{FD8234FF-A70D-4632-B146-F41AB37C0B24}) (Version: 0.6.3.0 - Hewlett-Packard)
HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP)
HP Documentation (HKLM-x32\...\{62272D4E-78E9-4BAD-B7AA-63072D06AAA9}) (Version: 1.1.0.0 - Hewlett-Packard)
HP ESU for Microsoft Windows 7 (HKLM-x32\...\{6357258D-2BF9-49E7-A9EF-0C609D52C46D}) (Version: 2.0.6.1 - Hewlett-Packard Company)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Integrated Module with Bluetooth wireless technology (HKLM\...\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}) (Version: 6.2.1.500 - Broadcom Corporation)
HP LaserJet P1000 series (HKLM-x32\...\HP LaserJet P1000 series) (Version: - )
HP Officejet 7610 series - Grundlegende Software für das Gerät (HKLM\...\{A92B7498-7247-4D3B-90CF-93A580D510FF}) (Version: 29.1.971.39251 - Hewlett-Packard Co.)
HP OfficeJet J5700 (HKLM\...\{D3A65B0A-403B-4C20-A488-BFED2BC5D2EF}) (Version: 13.0 - HP)
HP Power Assistant (HKLM\...\{682FBA83-2CCA-4CFA-A08A-6767DAB2FC9C}) (Version: 2.5.0.16 - Hewlett-Packard Company)
HP Power Data (HKLM\...\{5CEE98FB-1963-4662-A780-410DA4533D53}) (Version: 1.0.35.187 - Hewlett-Packard Company)
HP Product Detection (HKLM-x32\...\{A436F67F-687E-4736-BD2B-537121A804CF}) (Version: 11.14.0001 - HP)
HP ProtectTools Security Manager (HKLM\...\HPProtectTools) (Version: 5.12.754 - Hewlett-Packard Company)
HP Quick Launch Buttons (HKLM-x32\...\{34D2AB40-150D-475D-AE32-BD23FB5EE355}) (Version: 6.50.17.1 - Hewlett-Packard Company)
HP QuickLook (HKLM\...\{E6BEE2A9-04CF-42FF-B95B-BB70FAD2DC3E}) (Version: 3.3.1.4 - Hewlett-Packard Company)
HP QuickWeb (HKLM-x32\...\{7861911B-4270-498A-8F7A-FCF0570F484B}) (Version: 1.0.1.48 - DeviceVM, Inc.)
HP QuickWeb (HKLM-x32\...\{7861911B-4270-498A-8F7A-FCF0570F48E3}) (Version: 1.0.1.74 - DeviceVM, Inc.)
HP Setup (HKLM-x32\...\{1E6219D4-027E-47EE-AB83-DD2F26E31A32}) (Version: 1.2.3557.3169 - Hewlett-Packard)
HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP)
HP SoftPaq Download Manager (HKLM-x32\...\{CDA8E6D8-C735-4B9C-AC0C-A8B80C3D9449}) (Version: 3.0.8.0 - Hewlett-Packard Company)
HP Software Framework (HKLM-x32\...\{18F4179A-385F-40EE-AE2D-FA0E1BE62753}) (Version: 4.5.12.1 - Hewlett-Packard Company)
HP Software Setup (HKLM-x32\...\{04801E42-B1A6-4C52-9F3D-CADB5A050433}) (Version: 7.0.1.5 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.1.40.3 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{B1AD4FFB-DD17-43EC-8C30-B9E71EAD9132}) (Version: 12.0.30.219 - Hewlett-Packard Company)
HP System Default Settings (HKLM-x32\...\{C4E9E8A4-EEC4-4F9E-B140-520A8B75F430}) (Version: 2.4.1.2 - Hewlett-Packard Company)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HP Wallpaper (HKLM-x32\...\{F173C2B3-296F-458C-98FF-1676A42EBA02}) (Version: 1.0.1.3 - Hewlett-Packard Company)
HP Webcam (HKLM-x32\...\{1D61E881-43CD-447B-9E6B-D2C6138B2862}) (Version: 1.0.26.3 - Roxio)
HP Webcam Driver (HKLM-x32\...\{399C37FB-08AF-493B-BFED-20FBD85EDF7F}) (Version: 5.8.50009.6 - Sonix)
HP Wireless Assistant (HKLM\...\{9EA86AD9-FB32-4B9E-BD56-3068F9B8031F}) (Version: 4.0.10.0 - Hewlett-Packard)
HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden
HPSSupply (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6300.0 - IDT)
inSSIDer Home (HKLM-x32\...\{9E54E4AE-B67A-4925-8E92-0E1F9817FD73}) (Version: 3.1.2.1 - MetaGeek, LLC)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Driver Update Utility 2.0 (x32 Version: 2.0.0.29 - Intel) Hidden
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Network Connections 20.0.10.0 (HKLM\...\PROSetDX) (Version: 20.0.10.0 - Intel)
Intel® Driver Update Utility (HKLM-x32\...\{8409c4f7-2340-4933-a304-5d37db4fb48b}) (Version: 2.0.0.29 - Intel)
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{89a03d4c-5e14-4180-984e-6932893138fc}) (Version: 17.14.0 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
J5700 (x32 Version: 130.0.000.000 - Hewlett-Packard) Hidden
Java 8 Update 66 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418066F0}) (Version: 8.0.660.18 - Oracle Corporation)
Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation)
Java SE Development Kit 8 Update 45 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180450}) (Version: 8.0.450.15 - Oracle Corporation)
K-Lite Codec Pack 7.0.0 (Standard) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 7.0.0 - )
MailStore Client 9.5.0.11293 (HKLM-x32\...\{28973E06-7DB5-4620-AC33-C4D50E10F331}) (Version: 9.100.11293 - MailStore Software GmbH)
MailStore Outlook Add-in 9.5.0.11293 (HKLM-x32\...\{27BEA7C6-D4E7-446D-8659-967ABD767402}) (Version: 9.100.11293 - MailStore Software GmbH)
MailStore Server 8.1.0.9075 (HKLM-x32\...\MailStore Server_is1) (Version: 8.1.0.9075 - MailStore Software GmbH)
Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
MediaMonkey 4.1 (HKLM-x32\...\MediaMonkey_is1) (Version: 4.1 - Ventis Media Inc.)
Mehr vom Geld Desktop Version 2.0 (HKLM-x32\...\{5CE35E6F-E1DB-4B0B-B593-FCA5D0303E06}_is1) (Version: 2.0 - Norbert D. Frank)
Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0407-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit (HKLM-x32\...\{95140000-007D-0409-0000-0000000FF1CE}) (Version: 14.0.5120.5000 - Microsoft Corporation)
Microsoft Project Professional 2010 (HKLM-x32\...\Office14.PRJPRO) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)
MindMan Personal (HKLM-x32\...\MindMan Personal) (Version: - )
MiniTool Partition Wizard Free 9.0 (HKLM-x32\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.)
Mobile Connect (HKLM-x32\...\{3EAAC5FD-E209-4856-8C49-D4EA40F85032}) (Version: 1.00.0000 - Huawei technologies)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
MWM-Primo 6.3.0 (HKLM-x32\...\MWM-Primo_is1) (Version: - MWM Software & Beratung GmbH)
NEC Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}) (Version: 1.0.18.0 - NEC Electronics Corporation)
NEC Electronics USB 3.0 Host Controller Driver (x32 Version: 1.0.18.0 - NEC Electronics Corporation) Hidden
Nero12EssTSST (HKLM-x32\...\{1DEC64C1-7F34-44CD-BC35-8E0A096300CF}) (Version: 12.0.01100 - Nero AG)
Nuance PDF Viewer Plus (HKLM-x32\...\{28656860-4728-433C-8AD4-D1A930437BC8}) (Version: 5.30.3290 - Nuance Communications, Inc)
NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.11.9805 - NVIDIA Corporation)
NVIDIA Grafiktreiber 341.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.92 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA nView 141.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 141.36 - NVIDIA Corporation)
NVIDIA WMI 2.18.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI) (Version: 2.18.0 - NVIDIA Corporation)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
OpenOffice 4.0.0 (HKLM-x32\...\{B28DBCBA-60F8-40ED-B35B-F510C327946C}) (Version: 4.00.9702 - Apache Software Foundation)
OpenVPN Connect (HKLM-x32\...\{D7C1D61E-B2A2-4C4C-896E-3F6CB09001B1}) (Version: 2.0.7.100 - OpenVPN Technologies)
Opera Stable 35.0.2066.37 (HKLM-x32\...\Opera 35.0.2066.37) (Version: 35.0.2066.37 - Opera Software)
PaperPort Image Printer 64-bit (HKLM\...\{715CAACC-579B-4831-A5F4-A83A8DE3EFE2}) (Version: 1.00.0001 - Nuance Communications, Inc.)
PhotoPad Foto-Editor (HKLM-x32\...\PhotoPad) (Version: 2.41 - NCH Software)
PhotoStage Diashow-Ersteller (HKLM-x32\...\PhotoStage) (Version: 2.42 - NCH Software)
PhraseExpress v10.5.38 (HKLM-x32\...\PhraseExpress_is1) (Version: 10.5.38 - Bartels Media GmbH)
PIE Free v6.87 (HKLM-x32\...\PIE_is1) (Version: - Picmeta Systems)
Pixillion Bildkonverter (HKLM-x32\...\Pixillion) (Version: 2.83 - NCH Software)
Pre-Boot Security for HP ProtectTools (Version: 5.0.7.1 - Hewlett-Packard) Hidden
Prerequisite installer (x32 Version: 12.0.0002 - Nero AG) Hidden
ProductContext (x32 Version: 130.0.000.000 - Hewlett-Packard) Hidden
PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden
QLBCASL (x32 Version: 6.40.17.2 - Hewlett-Packard) Hidden
QNAP Qfinder Pro (HKLM-x32\...\QNAP_FINDER) (Version: 5.2.1.1224 - QNAP Systems, Inc.)
QNAP Qsync Client (HKLM-x32\...\Qsync) (Version: 2.2.0.1016 - QNAP Systems, Inc.)
Retrospect Client 7.7 (HKLM-x32\...\{BDAC3A76-D600-42F7-A82F-4A1FFFD06C51}) (Version: 7.7.106.2 - EMC)
RICOH Media Driver (HKLM-x32\...\{F5CC2EF8-20A4-4366-A681-3FE849E65809}) (Version: 2.13.00.05 - RICOH)
ROCCAT Lua Mouse Driver (HKLM-x32\...\{10E03440-9A5B-48F5-BB24-359EFE3E6C71}) (Version: 1.13 - ROCCAT GmbH)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.16.0 - SAMSUNG Electronics Co., Ltd.)
Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
Scansoft PDF Professional (x32 Version: - ) Hidden
SDK (x32 Version: 2.30.042 - Portrait Displays, Inc.) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003B-0000-0000-0000000FF1CE}_Office14.PRJPRO_{58FA40EF-ABA9-4FED-AD3D-318A6073934D}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Servicepack Datumsaktualisierung (x32 Version: 1.00.00.0005 - Haufe-Lexware) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP)
Sibelius Scorch (ActiveX Only) (HKLM-x32\...\{868291A4-229E-4795-B0B0-E60E87AF53CD}) (Version: 6.2.0 - Sibelius Software)
Sibelius Scorch (Firefox, Opera, Netscape only) (HKLM-x32\...\{10ABE49D-343A-463E-9753-C4C5A05ECEF9}) (Version: 6.2.0 - Sibelius Software)
Skitch (HKLM-x32\...\Skitch 2.3.2.176) (Version: 2.3.2.176 - Evernote Corp.)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SleepTracker3 (HKLM-x32\...\92F0D145-AF7A-43BD-9C3D-1807A3F5221E) (Version: 3.2.9 - Innovative Sleep Solutions, LLC)
SmartTools Publishing • Outlook Kontaktgruppen-Manager (HKLM-x32\...\SmartToolsKontaktgruppen-Managerv3.00) (Version: v3.00 - SmartTools Publishing)
SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden
SolveigMM Video Splitter (HKLM-x32\...\SolveigMM Video Splitter 3.6.1309.3) (Version: 3.6.1309.3 - Solveig Multimedia)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.0.12 - Safer-Networking Ltd.)
Stardock Fences 2 (HKLM-x32\...\Stardock Fences 2) (Version: 2.13 - Stardock Software, Inc.)
Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.24.0 - Synaptics Incorporated)
Synology Cloud Station (HKLM-x32\...\{17B316FB-7048-49FE-86E7-92A5905F842A}) (Version: 3.2.3479 - Synology)
System Requirements Lab (HKLM-x32\...\SystemRequirementsLab) (Version: - )
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.41459 - TeamViewer)
Theft Recovery (HKLM-x32\...\InstallShield_{33C9F24B-1D92-4632-A915-81E3BB1D5D6B}) (Version: 5.1.0.21 - Hewlett-Packard)
Theft Recovery (x32 Version: 5.1.0.21 - Hewlett-Packard) Hidden
TippKönigin 5.5 (HKLM-x32\...\TippKönigin_is1) (Version: - Giletech e.K.)
Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden
Total Commander 64-bit (Remove or Repair) (HKLM-x32\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden
TreeSize Professional V6.2.3 (64 bit) (HKLM\...\TreeSize Professional_is1) (Version: 6.2.3 - JAM Software)
Validity Fingerprint Driver (HKLM\...\{DD966CEF-5EA9-4BA2-B210-490FEBC27EA7}) (Version: 4.0.15.0 - Validity Sensors, Inc.)
VideoPad Video-Editor (HKLM-x32\...\VideoPad) (Version: 4.02 - NCH Software)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
VMware Player (HKLM-x32\...\VMware_Player) (Version: 6.0.1 - VMware, Inc)
VMware Player (Version: 6.0.1 - VMware, Inc.) Hidden
Vorlagen, Musterschreiben und Checklisten - 2014 (HKLM-x32\...\{D68DD01E-DFAD-46B7-90F8-11B7F3E8E6F7}) (Version: 1.0.7 - Deutsches Institut für Finanzberatung Dr. Grommisch GmbH)
WavePad Audio-Editor (HKLM-x32\...\WavePad) (Version: 6.12 - NCH Software)
WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows Driver Package - Broadcom Bluetooth (06/15/2009 6.2.0.9000) (HKLM\...\6B8550A319DDC8B17F35F4A89988705E4592349B) (Version: 06/15/2009 6.2.0.9000 - Broadcom)
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) (HKLM\...\6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1) (Version: 07/30/2009 6.2.0.9405 - Broadcom)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\3BA80AB4C7E9F8497C115C844953A3D4BEB84D21) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
Windows Mobile-Gerätecenter (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation)
Windows Mobile-Gerätecenter: Treiberupdate (HKLM\...\{92DBCA36-9B41-4DD1-941A-AED149DD37F0}) (Version: 6.1.6965.0 - Microsoft Corporation)
XMind 2013 (v3.4.1) (HKLM-x32\...\XMind_is1) (Version: 3.4.1.201401221918 - XMind Ltd.)
yEd Graph Editor 3.12 (HKLM-x32\...\3309-7404-0599-8908) (Version: 3.12 - yWorks GmbH)
Zak McKracken - Between Time and Space (HKLM-x32\...\Zak McKracken - Between Time and Space) (Version: - )
Zip Motion Block Video codec (Remove Only) (HKLM-x32\...\ZMBV) (Version: - DOSBox Team)
ZTE Handset USB Driver (HKLM\...\{01D42BF0-ED08-463f-8A28-99EB6FEE962B}) (Version: - ZTE Corporation)
ZTE Handset USB Driver (HKLM\...\{D2D77DC2-8299-11D1-8949-444553540000}_is1) (Version: 5.2066.1.9B05 - ZTE Corporation)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{149DD748-EA85-45A6-93C5-AC50D0260C98}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2015 - English\dwgviewr.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{2C4A5D61-009C-4561-9A33-6AFD542FD237}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\icon-overlay\13\x64\ContextMenu.dll ()
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2015 - English\en-US\dwgviewrficn.dll (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{472CE1AD-5D53-4BCF-A1FB-3982A5F55138}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\icon-overlay\13\x64\iconOverlay.dll (TODO: <Company name>)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{48AB5ADA-36B1-4137-99C9-2BD97F8788AB}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\icon-overlay\13\x64\iconOverlay.dll (TODO: <Company name>)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Markus Schinner\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Citrix\GoToMeeting\3911\G2MOutlookAddin64.dll (Citrix Online, a division of Citrix Systems, Inc.)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{A433C3E0-8B24-40EB-93C3-4B10D9959F58}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\icon-overlay\13\x64\iconOverlay.dll (TODO: <Company name>)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{AEB16659-2125-4ADA-A4AB-45EE21E86469}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\icon-overlay\13\x64\iconOverlay.dll (TODO: <Company name>)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{C701AD67-3DF0-47C9-89CB-DFA6207BE229}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\icon-overlay\13\x64\iconOverlay.dll (TODO: <Company name>)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Markus Schinner\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => Keine Datei
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {07BD03E1-1E53-4A19-9004-B33D4DAA731F} - System32\Tasks\{EE541437-2A15-4A51-8487-12D497C0C285} => pcalua.exe -a C:\Installation\HP-Drucker\20110411_ljP1000_P1500-HB-pnp-win64-en.exe -d C:\Installation\HP-Drucker
Task: {07BF07A6-A81D-40CB-86F3-6FA05572E455} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {0A38EF29-3B76-4507-B2CF-89C82639502C} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe
Task: {0C3C17F9-4B5D-43D1-AC08-483D529C2C3A} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG
Task: {10950867-E590-4ACE-BB4B-DA0CD039D79D} - System32\Tasks\Opera scheduled Autoupdate 1397477711 => C:\Program Files (x86)\Opera\launcher.exe [2016-02-01] (Opera Software)
Task: {10DDB211-FF69-45E2-88AC-1E263E3BA76D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {1285A40A-6060-4337-B01F-4A68DA998F16} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {13D18267-1044-4EBD-B65E-C99BA640DF5A} - System32\Tasks\{E79FB56F-CBE1-4344-B06B-355E5A1D8C9F} => pcalua.exe -a "C:\Users\Markus Schinner\Desktop\setup.exe" -d "C:\Users\Markus Schinner\Desktop"
Task: {14978B42-6AA8-4116-B42D-0E04AA2B6B92} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-01-06] (Hewlett-Packard)
Task: {149D09AF-3FFC-4623-9F80-C428FB3DD042} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {15F13EA0-B08A-424A-BE68-AF3F265C0ED5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company)
Task: {19CA625F-7480-450C-B3F4-A3ACC1FB2A24} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe
Task: {2D1962E0-40BD-4BA7-B377-C7B4206DAFAA} - \CreateChoiceProcessTask -> Keine Datei <==== ACHTUNG
Task: {30A062BF-5428-4FB3-8348-A5CDF5B9EB6F} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {3213BAEA-29AB-43D2-8609-FD75A5A575D8} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe
Task: {347C62AF-2E05-4C99-8937-9C28A9B6ED2A} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {365B63A2-41E9-40D3-8223-8F8757256CB5} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {3A6FEBD6-7ECD-41EC-9863-AB47C06FB760} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft)
Task: {3E700A36-7C1F-4DE0-ADC5-6AA6E03326A8} - System32\Tasks\HPCeeScheduleForMarkus Schinner => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard)
Task: {3EEDB116-FCF6-4E75-A5C9-F1B96C8C42F7} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe
Task: {42D669E6-B752-4280-9944-A198620FDA7C} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
Task: {442E6AF0-1A24-426D-A6A2-380C517B8C27} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-02-10] (Microsoft Corporation)
Task: {44C0F86D-7FC2-4730-9EB8-A68BBBAE53AE} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: {45480ADB-702A-4111-9B01-EB8085046E26} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {46E14CC1-3586-4526-BD6A-B1BDF29DF0A7} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {4E2050E8-B68B-4401-A229-EA7E4C6CABBC} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG
Task: {52770D96-D8AA-44BE-A7FD-872E8EE3084B} - System32\Tasks\G2MUpdateTask-S-1-5-21-2082267813-4018268301-2143041108-1001 => C:\Users\Markus Schinner\AppData\Local\Citrix\GoToMeeting\4419\g2mupdate.exe [2016-02-10] (Citrix Online, a division of Citrix Systems, Inc.)
Task: {52A8AC3E-6ECE-48AB-B94E-BC701A5A88CC} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {54E57946-C4D4-4224-8559-AB0C03EAF937} - \Safer-Networking\Spybot - Search and Destroy\Check for updates -> Keine Datei <==== ACHTUNG
Task: {57F4917C-4AC4-4EB5-AAE1-9A5CAD4F2A3E} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe
Task: {5CC08A32-831F-4E84-8FED-245FEC81C155} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-10-20] (Dropbox, Inc.)
Task: {60C1D4AF-71A9-45AA-84CB-6623253545D6} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {62DBD24C-253C-461B-8A83-5CC005B74306} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company)
Task: {6892AEE3-0D1D-4AF0-B7DC-5BF10BA10A93} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe
Task: {68CDB38F-BB0D-4C14-A0AC-D13D2A948017} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {6DB9D997-1DC5-4936-926B-DA9F43B4E453} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10] (Adobe Systems Incorporated)
Task: {7152CAE7-4E93-4159-B34D-ECFE8DB1797A} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe
Task: {72186D1D-0D70-4CC2-86B5-3D316F044A3F} - System32\Tasks\{90513819-9C56-4AB6-AFE0-5BC512A947FD} => pcalua.exe -a "C:\Program Files (x86)\Nuance\PaperPort\ScannerWizardU.exe" -c /A [PaperPort 12.1] /L [ger]
Task: {774F6BE7-3113-4AEE-81D9-DDFE6414B016} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe
Task: {7BAC6747-2FE6-4519-8C34-0D5D0A36403C} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {7D434B33-E714-4C6B-AC69-4A5A3551611E} - System32\Tasks\{B242E32C-D29D-4FCF-9946-CBC731B0C34F} => pcalua.exe -a E:\Installation\A_DWG-TrueView\20140626_AutodeskDesignRevSetup.exe -d E:\Installation\A_DWG-TrueView
Task: {82B238EA-2BFA-4543-89B6-B69AEF7AC496} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-10-20] (Dropbox, Inc.)
Task: {8BB56649-4430-4BDD-9E34-FA7FD5148954} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {90C0937A-A1D3-4DBA-B192-B26D3525A565} - System32\Tasks\{806209A1-E45C-4154-992E-70D90AE0253B} => C:\Program Files (x86)\SleepTracker3\SleepTracker.exe [2013-10-19] ()
Task: {915D5291-A359-42AA-A509-E8BF944DC044} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {94810FFC-D936-40F7-AC0F-86E0DB093BF7} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {960F678B-54EC-4657-A985-39658CDF98FD} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe
Task: {9C434BC3-A417-438D-947F-A78066A9F8B9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {A13C57A1-0236-4928-8E32-AAF1A68BD0B2} - System32\Tasks\iSCSIAgentAutoStartup => C:\Program Files (x86)\QNAP\Qfinder\iSCSIAgent.exe [2015-12-24] ()
Task: {A1E4E19D-EED7-4E7C-B508-B5684F4689E9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-01-06] (Hewlett-Packard)
Task: {A3D597FA-8F39-4AC2-92EC-799119D10302} - System32\Tasks\{34458C3C-0CC8-48A4-B2E9-E4E66F658C75} => C:\Program Files (x86)\XMind\xmind.exe [2014-01-23] ()
Task: {A5DF8BBB-898D-4436-ACF2-7C285410D0F9} - System32\Tasks\CreateExplorerShellUnelevatedTask => /NOUACCHECK
Task: {A9EB480F-542C-4E9A-86CB-BBAB34593570} - System32\Tasks\G2MUploadTask-S-1-5-21-2082267813-4018268301-2143041108-1001 => C:\Users\Markus Schinner\AppData\Local\Citrix\GoToMeeting\4419\g2mupload.exe [2016-02-10] (Citrix Online, a division of Citrix Systems, Inc.)
Task: {AB88882D-A503-4A4C-B90E-CBB296CE6212} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe
Task: {B1E59B8F-7173-46E3-8A82-6C844C264B1C} - System32\Tasks\{0A26C874-498F-47B9-A12A-EF93A0019B3C} => C:\Program Files (x86)\XMind\xmind.exe [2014-01-23] ()
Task: {B4A3450B-E725-447E-9566-9B2DEA2353D6} - System32\Tasks\{18816021-8FCA-4B15-A6C2-65868D19BA9C} => C:\Program Files (x86)\ALNO\KPL\KPL.exe
Task: {B5B4050B-41F9-405F-9978-08D771FFED6B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {B6AD4B41-310B-4051-9B74-65E92A47D2F3} - \Safer-Networking\Spybot - Search and Destroy\Refresh immunization -> Keine Datei <==== ACHTUNG
Task: {C0DD9489-13B9-4BF1-B98A-58463CAAF136} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {C302AA43-18FE-4D2E-84D8-A013E83FF59D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-01-20] (Hewlett-Packard)
Task: {C60FB93F-21B4-487A-B2A5-40638AD51788} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe
Task: {C7060060-F814-4247-9A96-659F095D97B9} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {C70D55B8-CA40-4A86-B3C8-A8B90E3CB06E} - \Safer-Networking\Spybot - Search and Destroy\Scan the system -> Keine Datei <==== ACHTUNG
Task: {CC0047F2-903D-40C1-8D0F-330DFB4A00A0} - System32\Tasks\{C5B33B9F-CE5F-4757-BF62-FD231E94D72A} => Firefox.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=5.5.0.124.259&LastError=12029
Task: {E5B22B33-4566-4210-9426-2E8D536F94DF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-01-12] (Hewlett-Packard Company)
Task: {E7BD90C5-F7EB-4D69-9EF0-E29B4791DD46} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {F0E871A0-653A-41B4-A38D-DA4E16ACBD13} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe
Task: {F2D40CFF-6A03-48CA-A618-F9A48FD04F23} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {F9290394-B00E-424C-BA63-75E6438BEC1F} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {FB429473-C3E1-48D4-90F4-1F56A21674D6} - System32\Tasks\{23CE389E-5A10-4ADD-938B-3DA8915170E9} => pcalua.exe -a E:\Installation\A_IrfanView\20120229_iview432_setup.exe -d E:\Installation\A_IrfanView
Task: {FB6B96B6-6BDA-43F6-81E5-8CD0D849B15D} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-2082267813-4018268301-2143041108-1001.job => C:\Users\Markus Schinner\AppData\Local\Citrix\GoToMeeting\4419\g2mupdate.exe
Task: C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-2082267813-4018268301-2143041108-1001.job => C:\Users\Markus Schinner\AppData\Local\Citrix\GoToMeeting\4419\g2mupload.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForMarkus Schinner.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2014-10-21 10:37 - 2015-03-25 14:07 - 02692296 _____ () C:\windows\system32\nvwmi64.exe
2016-01-11 03:55 - 2015-10-13 18:26 - 00125616 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-05-27 14:43 - 2012-09-18 14:27 - 00192512 _____ () C:\WINDOWS\System32\ZLhp1020.DLL
2007-11-06 13:22 - 2012-05-03 15:27 - 00014848 _____ () C:\WINDOWS\System32\KOBZQABL.dll
2013-05-27 14:43 - 2012-09-18 14:27 - 00065024 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\pphp1020.dll
2011-09-27 08:10 - 2011-08-02 10:47 - 00159232 _____ () C:\Program Files (x86)\Samsung\USB Drivers\26_VIA_driver2\amd64\VIAService.exe
2014-02-20 00:25 - 2014-02-20 00:25 - 00014848 _____ () C:\Program Files\CrashPlan\md564.dll
2014-02-20 00:25 - 2014-02-20 00:25 - 00230400 _____ () C:\Program Files\CrashPlan\cpnative64.dll
2015-07-05 15:51 - 2015-05-20 11:40 - 00138544 _____ () C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
2010-04-20 08:10 - 2010-04-20 08:10 - 00100352 _____ () C:\Program Files\Hewlett-Packard\Pre-Boot Security for HP ProtectTools\BIOSDomainPlugin.dll
2015-07-05 15:51 - 2015-05-20 11:40 - 00192304 _____ () C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
2012-02-28 17:34 - 2010-03-16 00:04 - 00143360 ____R () C:\WINDOWS\system32\BrSNMP64.dll
2014-04-09 09:45 - 2014-04-09 09:45 - 00024064 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\capiws.exe
2014-04-09 09:45 - 2014-04-09 09:45 - 00429056 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\etc\..\core\openvpn.exe
2016-01-11 03:49 - 2016-01-11 03:49 - 02653816 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-01-11 03:49 - 2016-01-11 03:49 - 02653816 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2014-05-01 20:29 - 2014-05-01 20:29 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
2015-10-16 03:54 - 2015-10-16 03:54 - 00339152 _____ () C:\Program Files (x86)\QNAP\Qsync\QsyncExt.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 01047552 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\icon-overlay\13\x64\ContextMenu.dll
2014-02-18 20:54 - 2015-12-24 05:29 - 01739952 _____ () C:\Program Files (x86)\QNAP\Qfinder\iSCSIAgent.exe
2016-01-11 03:49 - 2016-01-11 03:49 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-01-11 03:49 - 2016-01-11 03:49 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2014-04-09 09:45 - 2014-04-09 09:45 - 00055296 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\ovpntray.exe
2014-09-30 01:51 - 2014-09-30 01:51 - 00074664 _____ () C:\Program Files (x86)\SlySoft\AnyDVD\ADvdDiscHlp64.exe
2012-02-10 13:26 - 2012-02-10 13:26 - 01083392 _____ () C:\Program Files\Hewlett-Packard\HP Power Assistant\System.Data.SQLite.dll
2010-07-21 14:33 - 2010-07-21 14:33 - 00267832 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPCommon.XmlSerializers.dll
2010-07-21 14:33 - 2010-07-21 14:33 - 00030264 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_LogicLayer.dll
2010-07-21 14:33 - 2010-07-21 14:33 - 00052280 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HardwareAccess.dll
2016-01-22 05:17 - 2016-01-22 05:17 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-01-13 05:09 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-01-13 05:09 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-01-28 09:47 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-01-28 09:47 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2011-02-26 10:33 - 2011-02-26 10:33 - 00027648 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\servicemanager.pyd
2011-02-27 09:12 - 2011-02-27 09:12 - 00110080 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\pywintypes26.dll
2011-02-26 10:32 - 2011-02-26 10:32 - 00040960 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32service.pyd
2011-02-26 10:33 - 2011-02-26 10:33 - 00096768 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32api.pyd
2011-02-26 10:32 - 2011-02-26 10:32 - 00017408 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32profile.pyd
2010-08-24 17:48 - 2010-08-24 17:48 - 00153088 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\pyexpat.pyd
2010-08-24 17:47 - 2010-08-24 17:47 - 00040448 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\_socket.pyd
2010-08-24 17:48 - 2010-08-24 17:48 - 00720896 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\_ssl.pyd
2011-02-26 10:32 - 2011-02-26 10:32 - 00110080 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32security.pyd
2011-02-26 10:34 - 2011-02-26 10:34 - 00354304 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\pythoncom26.dll
2011-02-26 10:38 - 2011-02-26 10:38 - 00265728 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32com.shell.shell.pyd
2014-04-09 09:45 - 2014-04-09 09:45 - 00019968 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\zope.interface._zope_interface_coptimizations.pyd
2010-08-24 17:48 - 2010-08-24 17:48 - 00286208 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\_hashlib.pyd
2010-08-24 17:48 - 2010-08-24 17:48 - 00073728 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\_ctypes.pyd
2010-08-24 17:48 - 2010-08-24 17:48 - 00011776 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\select.pyd
2014-04-09 09:45 - 2014-04-09 09:45 - 00010240 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\OpenSSL.rand.pyd
2014-04-09 09:45 - 2014-04-09 09:45 - 00061440 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\OpenSSL.crypto.pyd
2014-04-09 09:45 - 2014-04-09 09:45 - 00039424 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\OpenSSL.SSL.pyd
2011-02-26 10:32 - 2011-02-26 10:32 - 00035840 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32process.pyd
2014-04-09 09:45 - 2014-04-09 09:45 - 00007680 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\twisted.protocols._c_urlarg.pyd
2014-04-09 09:45 - 2014-04-09 09:45 - 00007168 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\pyovpnc.pyd
2011-02-26 10:31 - 2011-02-26 10:31 - 00112128 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32file.pyd
2011-02-26 10:31 - 2011-02-26 10:31 - 00017408 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32event.pyd
2011-02-26 10:32 - 2011-02-26 10:32 - 00023552 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32pipe.pyd
2010-08-24 17:48 - 2010-08-24 17:48 - 00585728 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\unicodedata.pyd
2011-02-26 10:33 - 2011-02-26 10:33 - 00022528 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32ts.pyd
2013-10-18 12:46 - 2013-10-18 12:46 - 01260624 _____ () C:\Program Files (x86)\VMware\VMware Player\libxml2.dll
2015-10-06 10:08 - 2015-10-06 10:08 - 00552978 _____ () C:\Program Files (x86)\Fortinet\FortiClient\sqlite3.dll
2014-04-09 09:13 - 2014-04-09 09:13 - 00089600 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\lzo2.dll
2015-05-05 06:39 - 2015-04-30 21:21 - 00011362 _____ () C:\Program Files (x86)\Evernote\Skitch\mingwm10.dll
2015-05-05 06:39 - 2015-04-30 21:21 - 00043008 _____ () C:\Program Files (x86)\Evernote\Skitch\libgcc_s_dw2-1.dll
2016-02-17 21:37 - 2016-02-17 21:37 - 00098816 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32api.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00110080 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\pywintypes27.dll
2016-02-17 21:37 - 2016-02-17 21:37 - 00364544 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\pythoncom27.dll
2016-02-17 21:37 - 2016-02-17 21:37 - 00320512 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32com.shell.shell.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00776704 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\_hashlib.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 01176576 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\wx._core_.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00806400 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\wx._gdi_.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00816128 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\wx._windows_.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 01067008 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\wx._controls_.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00733184 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\wx._misc_.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00682496 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\pysqlite2._sqlite.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00088064 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\_ctypes.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00119808 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32file.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00108544 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32security.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00007168 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\hashobjs_ext.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00017920 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\thumbnails_ext.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00088064 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\usb_ext.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00167936 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32gui.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00018432 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32event.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00046080 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\_socket.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 01208320 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\_ssl.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00128512 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\_elementtree.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00127488 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\pyexpat.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00013824 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\common.time34.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00036864 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\_psutil_windows.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00038912 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32inet.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00525240 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\windows._lib_cacheinvalidation.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00011264 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32crypt.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00077312 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\wx._html2.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00027136 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\_multiprocessing.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00020480 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\_yappi.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00035840 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32process.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00686080 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\unicodedata.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00078848 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\wx._animate.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00123392 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\wx._wizard.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00024064 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32pipe.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00010240 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\select.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00025600 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32pdh.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00017408 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32profile.pyd
2016-02-17 21:37 - 2016-02-17 21:37 - 00022528 _____ () C:\Users\Markus Schinner\AppData\Local\Temp\_MEI121322\win32ts.pyd
2015-10-15 07:14 - 2015-10-15 07:14 - 00163840 _____ () C:\Program Files (x86)\QNAP\Qsync\IOTCAPIs.dll
2015-10-15 07:14 - 2015-10-15 07:14 - 00086016 _____ () C:\Program Files (x86)\QNAP\Qsync\P2PTunnelAPIs.dll
2015-10-15 03:36 - 2015-10-15 03:36 - 00116224 _____ () C:\Program Files (x86)\QNAP\Qsync\RdiffDll.dll
2015-10-15 07:14 - 2015-10-15 07:14 - 00094208 _____ () C:\Program Files (x86)\QNAP\Qsync\RDTAPIs.dll
2015-09-24 16:41 - 2015-09-24 16:41 - 00019968 _____ () C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Locale\de_DE\acrotray.deu
2011-02-26 10:33 - 2011-02-26 10:33 - 00167424 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32gui.pyd
2014-04-09 00:04 - 2014-04-09 00:04 - 00005632 _____ () C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\ovpntray.dll
2012-02-28 17:34 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2013-12-11 10:21 - 2014-11-10 16:09 - 00469288 _____ () C:\Program Files (x86)\PhraseExpress\pexlang.dll
2015-08-22 19:52 - 2014-10-31 15:37 - 01498112 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2015-08-22 19:52 - 2014-05-19 16:19 - 00137728 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2015-12-14 10:54 - 2015-10-31 01:59 - 00034768 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2015-12-14 10:53 - 2015-10-31 02:00 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00022848 _____ () C:\Program Files (x86)\Dropbox\Client\Crypto.Random.OSRNG.winrandom.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00023352 _____ () C:\Program Files (x86)\Dropbox\Client\Crypto.Util._counter.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00042296 _____ () C:\Program Files (x86)\Dropbox\Client\Crypto.Cipher._AES.pyd
2015-12-14 10:53 - 2015-10-31 01:59 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2015-12-14 10:54 - 2015-10-31 01:59 - 00093640 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2015-12-14 10:54 - 2015-10-31 01:59 - 00018376 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2015-12-14 10:54 - 2015-12-08 22:36 - 00019760 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2015-12-14 10:53 - 2015-10-31 01:59 - 00392144 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2015-12-14 10:54 - 2015-12-08 22:36 - 00381752 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2015-12-14 10:54 - 2015-10-31 01:59 - 00692688 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00109520 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 01737032 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00020808 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2015-12-14 10:54 - 2015-12-08 22:36 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_python_x66cf7a7cx17a72769.pyd
2015-12-14 10:54 - 2015-12-08 22:36 - 00021840 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00038696 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2015-12-14 10:53 - 2015-10-31 02:00 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00114640 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2015-12-14 10:54 - 2015-12-08 22:36 - 00021320 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_pywin_kernel32_xde9e4433x360333f0.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00024392 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2015-12-14 10:53 - 2015-10-31 02:00 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2015-12-14 10:54 - 2015-10-31 02:00 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00117056 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00031568 _____ () C:\Program Files (x86)\Dropbox\Client\enterprise_data.compiled._enterprise_data.pyd
2015-10-20 09:58 - 2015-11-05 01:04 - 00293392 _____ () C:\Program Files (x86)\Dropbox\Client\EnterpriseDataAdapter.dll
2015-12-14 10:54 - 2015-12-08 22:36 - 00023376 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2015-12-14 10:54 - 2015-10-31 01:59 - 00134608 _____ () C:\Program Files (x86)\Dropbox\Client\_elementtree.pyd
2015-12-14 10:53 - 2015-10-31 01:59 - 00134088 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2015-12-14 10:53 - 2015-10-31 02:00 - 00240584 _____ () C:\Program Files (x86)\Dropbox\Client\jpegtran.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00020280 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00052024 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00021304 _____ () C:\Program Files (x86)\Dropbox\Client\Crypto.Util.strxor.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00350152 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00084792 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2015-12-14 10:53 - 2015-12-08 22:36 - 01826608 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2015-12-14 10:54 - 2015-10-31 02:00 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 03891504 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 01950000 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00519984 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00133936 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00225080 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00207672 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2015-12-14 10:54 - 2015-12-08 22:36 - 00024904 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00486704 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2015-12-14 10:53 - 2015-12-08 22:36 - 00357680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2015-10-20 09:58 - 2015-10-31 02:01 - 00019920 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick.2\qtquick2plugin.dll
2015-10-20 09:58 - 2015-10-31 02:00 - 00786904 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-10-20 09:58 - 2015-10-31 02:00 - 00063448 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-10-20 09:58 - 2015-10-31 02:00 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Window.2\windowplugin.dll
2015-12-01 15:37 - 2015-12-01 15:37 - 00439504 _____ () C:\Program Files (x86)\Evernote\Evernote\libxml2.dll
2015-12-01 15:37 - 2015-12-01 15:37 - 00321232 _____ () C:\Program Files (x86)\Evernote\Evernote\libtidy.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 00524460 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\libcurl-4.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 02874155 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\libsqlite3-0.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 00123918 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\libgcc_s_dw2-1.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 01026062 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\libstdc++-6.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 01798570 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\icuuc53.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 00115214 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\zlib1.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 03095505 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\icuin53.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 21565192 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\icudt53.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 00712704 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\platforms\qwindows.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 00031744 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\imageformats\qgif.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 00046080 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\imageformats\qicns.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 00032768 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\imageformats\qico.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 00516608 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\imageformats\qjp2.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 00243200 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\imageformats\qjpeg.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 00431616 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\imageformats\qtiff.dll
2015-11-17 07:30 - 2015-11-17 07:30 - 00115214 _____ () C:\Users\Markus Schinner\AppData\Local\CloudStation\CloudStation.app\bin\ZLIB1.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\office14\Cultures\office.odf
2015-09-24 16:40 - 2015-09-24 16:40 - 02897304 _____ () C:\Program Files (x86)\Adobe\Acrobat 10.0\PDFMaker\Common\AdobePDFMakerX.dll
2015-09-24 16:41 - 2015-09-24 16:41 - 01446400 _____ () C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Locale\de_DE\PDFMaker\AdobePDFMakerX.DEU
2014-11-23 07:32 - 2014-11-10 16:09 - 04061992 _____ () C:\Program Files (x86)\PhraseExpress\pexmsol.dll
2012-11-26 13:33 - 2012-11-26 13:33 - 00499712 _____ () C:\Program Files (x86)\SmartTools\Outlook Kontaktgruppen-Manager\adxloader.dll
2015-11-11 02:42 - 2015-11-11 02:42 - 01045672 _____ () C:\Program Files (x86)\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll
2012-08-05 09:22 - 2011-05-07 01:53 - 00190836 _____ () C:\Program Files (x86)\SmartTools\Outlook Kontaktgruppen-Manager\STP_FuncLib.dll
2015-12-01 15:37 - 2015-12-01 15:37 - 00074448 _____ () C:\Program Files (x86)\Evernote\Evernote\Microsoft.DwayneNeed.Win32.dll
2016-01-22 05:17 - 2016-01-22 05:17 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-01-22 05:17 - 2016-01-22 05:17 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-02-04 07:25 - 2016-02-04 07:25 - 62319736 _____ () C:\Program Files (x86)\Opera\35.0.2066.37\opera.dll
2014-07-22 10:01 - 2014-07-22 10:01 - 00035328 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll
2014-05-24 17:41 - 2014-05-24 17:41 - 00892416 _____ () C:\Program Files (x86)\FileZilla FTP Client\libstdc++-6.dll
2014-05-24 17:41 - 2014-05-24 17:41 - 00091648 _____ () C:\Program Files (x86)\FileZilla FTP Client\libgcc_s_sjlj-1.dll
2016-02-04 07:25 - 2016-02-04 07:25 - 02074232 _____ () C:\Program Files (x86)\Opera\35.0.2066.37\libglesv2.dll
2016-02-04 07:25 - 2016-02-04 07:25 - 00081528 _____ () C:\Program Files (x86)\Opera\35.0.2066.37\libegl.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
AlternateDataStreams: C:\ProgramData\TEMP:6DAA43DB
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\...\123simsen.com -> www.123simsen.com
Da befinden sich 7865 mehr Seiten.
==================== Hosts Inhalt: ==========================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2009-07-14 03:34 - 2015-02-11 20:38 - 00450761 ___RA C:\WINDOWS\system32\Drivers\etc\hosts
192.168.4.10 eccserver
192.168.7.10 diskstation127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 www.10sek.com
127.0.0.1 10sek.com
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 www.123fporn.info
127.0.0.1 123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 www.123haustiereundmehr.com
127.0.0.1 123moviedownload.com
Da befinden sich 15461 zusätzliche Einträge.
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-2082267813-4018268301-2143041108-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Markus Schinner\AppData\Roaming\Microsoft\Windows Photo Viewer\Hintergrundbild der Windows-Fotoanzeige.jpg
DNS Servers: 195.58.160.194 - 208.91.112.52
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKLM\...\StartupApproved\Run32: => "WinampAgent"
HKLM\...\StartupApproved\Run32: => " QQPCTray"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [{6B10933B-7C79-4AF6-A9A2-24D2C4E24955}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [{5085D5E5-A9F9-4C1F-A119-535C0E2F945B}] => (Block) C:\program files (x86)\qnap\qfinder\qfinderpro.exe
FirewallRules: [{1BBD16F1-9A9E-4F27-AA41-8A41D8FBAC5C}] => (Block) C:\program files (x86)\qnap\qfinder\qfinderpro.exe
FirewallRules: [UDP Query User{24E3BB82-CFDA-4EE3-9C58-3FFB19AC3E69}C:\program files (x86)\qnap\qfinder\qfinderpro.exe] => (Allow) C:\program files (x86)\qnap\qfinder\qfinderpro.exe
FirewallRules: [TCP Query User{F9CFD1E2-34F1-433D-B8CF-7254E7068EDD}C:\program files (x86)\qnap\qfinder\qfinderpro.exe] => (Allow) C:\program files (x86)\qnap\qfinder\qfinderpro.exe
FirewallRules: [{CE19E530-AD5D-4931-ADF6-F791313CFF03}] => (Allow) C:\Program Files (x86)\Fortinet\FortiClient\fortiesnac.exe
FirewallRules: [{3DBBC226-D05A-4A25-99C8-E0FE794B14C7}] => (Allow) C:\Program Files (x86)\Fortinet\FortiClient\FortiWad.exe
FirewallRules: [{66552EA8-AD5B-4838-8292-15CA44E8D6FF}] => (Allow) C:\Program Files (x86)\Fortinet\FortiClient\ipsec.exe
FirewallRules: [{D4ED19D5-65B0-428B-BD54-505B3E95803F}] => (Allow) C:\Program Files (x86)\Fortinet\FortiClient\FortiProxy.exe
FirewallRules: [{3CC33CDB-9C25-4DF5-9432-F6ED2C54C1C4}] => (Allow) C:\Windows\System32\spool\drivers\x64\3\HP1006MC.EXE
FirewallRules: [{4B1DCB5E-B9AB-4E47-A550-B4A3B13CD8DC}] => (Allow) C:\Windows\System32\spool\drivers\x64\3\HP1006MC.EXE
FirewallRules: [{AA436E30-30C4-48C1-A762-923968F48A60}] => (Allow) C:\Program Files (x86)\Retrospect\Retrospect Client\retroclient.exe
FirewallRules: [{123842B3-FB8C-4871-9AD0-350E33A72E1E}] => (Allow) C:\Program Files (x86)\Retrospect\Retrospect Client\retroclient.exe
FirewallRules: [{B1C14CB3-DCED-44CA-AE01-57CEE98EC9EB}] => (Allow) C:\Program Files (x86)\SplashData\SplashID for iPhone\SplashID Desktop.exe
FirewallRules: [{6E64E08F-CABA-4A1E-BBFC-29211743915A}] => (Allow) C:\Program Files (x86)\SplashData\SplashID for iPhone\SplashID Desktop.exe
FirewallRules: [{78B327DB-64E1-4D30-975D-62C00D270423}] => (Allow) C:\Windows\System32\spool\drivers\x64\3\HP1006MC.EXE
FirewallRules: [{B87A8632-649B-4D0A-B4A0-A27FCB137D64}] => (Allow) C:\Windows\System32\spool\drivers\x64\3\HP1006MC.EXE
FirewallRules: [{D1498ED2-6A32-4DAF-97E4-8BB7A9587C04}] => (Allow) C:\Users\Markus Schinner\Downloads\NeoRouterPortable-1.3.0.2526-free\NRViewer.exe
FirewallRules: [{93FAB796-4061-47A3-9EFD-26B5788EEAA6}] => (Allow) C:\Users\Markus Schinner\Downloads\NeoRouterPortable-1.3.0.2526-free\NRViewer.exe
FirewallRules: [{7C495B95-516D-4BA5-BEB1-8D58268F512E}] => (Allow) C:\Users\Markus Schinner\Downloads\NeoRouterPortable-1.3.0.2526-free\NRAutoRun\NRViewer.exe
FirewallRules: [{113677BC-B4BF-4A49-9D1C-C55D492347ED}] => (Allow) C:\Users\Markus Schinner\Downloads\NeoRouterPortable-1.3.0.2526-free\NRAutoRun\NRViewer.exe
FirewallRules: [{D3A21D11-5674-4CB0-B543-B83A708C6F1D}] => (Allow) C:\Users\Markus Schinner\Desktop\NRAutoRun\NRViewer.exe
FirewallRules: [{197B039F-2459-421F-9D12-9E56A3ACB253}] => (Allow) C:\Users\Markus Schinner\Desktop\NRAutoRun\NRViewer.exe
FirewallRules: [{E78A7BA2-7A9A-416F-9C51-A42288301478}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{3FB3DAE4-C658-4D3C-9019-E776298D3008}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{3CDEA8D3-59AF-4713-9E42-52D9D34CD5D5}] => (Allow) LPort=15001
FirewallRules: [{62AAFF1A-1317-4C1F-8F18-8C5926B825E5}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{7E28556A-AA81-467F-A7CA-4A485DDB6F94}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10g\FAXRX.exe
FirewallRules: [{0968AED2-88A5-4222-9EB5-AA7D94A6F039}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10g\FAXRX.exe
FirewallRules: [{865B91E3-6151-437B-B2CC-C52A393A2AB2}] => (Allow) LPort=54925
FirewallRules: [TCP Query User{9EA4640B-6987-4D9D-8E9E-F9F676D72782}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [UDP Query User{38A0DF70-D286-47C1-8659-4087921F7C31}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [TCP Query User{E8DF9528-3BD3-4EDF-AC97-C8BC5F7D9017}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [UDP Query User{594C450D-71D1-41DE-B7FA-BB2FED17408A}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [{B73C71F6-F714-4D1A-8D0A-43F8B415EFA1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{5E01F33E-749A-4FDD-A108-3E06F3D5FD7C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{192D9081-AD0E-4F71-BDAB-D6924887FEE4}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe
FirewallRules: [{32CA8192-07D4-490B-88A7-9DAC1B278B0F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe
FirewallRules: [{878BA7A5-8C37-4AF3-9EEF-89EC02AE344F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{46D90D3D-B0C5-4990-8CC4-2F904B847F0A}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{38511A32-6758-4421-9A93-4948595153A4}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{6E64520F-BB70-46F1-9800-7A9EA9D5B632}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe
FirewallRules: [{9137735C-26BE-4AC4-A708-2BFB6485E9AD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{0B992E8C-404A-4C63-81F4-4A7EC43F5A26}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{FDFBB32A-47B8-4B9D-8F5F-89DBC8ACA7A6}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe
FirewallRules: [{B168CCDA-9DCF-4FEF-8E8E-155F4D3DE6EA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe
FirewallRules: [{95F5CD38-ECA3-4C22-A024-429F5AF55484}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{95B606E3-FEF1-4331-9F59-D8A35FA5CCF5}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{CBA60BED-465C-45E7-912D-46849F4F4A63}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe
FirewallRules: [{8716DC25-BB10-4088-8EDB-C708DF88E1E1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe
FirewallRules: [{1271CF7D-A1E4-43FD-A734-7843EE94782F}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe
FirewallRules: [{A01FAEC0-59A6-4F1A-BEC1-F7A1165B22D9}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe
FirewallRules: [TCP Query User{3320DDDA-E77E-4942-8949-9B49A2696320}C:\program files (x86)\qnap\finder\finder.exe] => (Allow) C:\program files (x86)\qnap\finder\finder.exe
FirewallRules: [UDP Query User{771B9517-C8CE-49FC-956A-AF1BEFF95BF3}C:\program files (x86)\qnap\finder\finder.exe] => (Allow) C:\program files (x86)\qnap\finder\finder.exe
FirewallRules: [TCP Query User{6D5644A3-1C46-46C2-94A8-5201F596C517}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe
FirewallRules: [UDP Query User{41E48D80-4A96-458B-92EB-E9B928E4F9A8}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe
FirewallRules: [{18E1F23F-8134-4A43-A1E1-7509A50BDA02}] => (Allow) C:\Program Files (x86)\GoforFiles\goforfilesdl.exe
FirewallRules: [{C6E79C8A-66C9-403C-8B52-A88E4019311F}] => (Allow) C:\Program Files (x86)\GoforFiles\goforfilesdl.exe
FirewallRules: [{689333BB-3A2E-461E-A118-B0AB9310FD2E}] => (Allow) C:\Program Files (x86)\GoforFiles\GoforFiles.exe
FirewallRules: [{16AED361-0DDC-4C83-A468-FD07CB5D9374}] => (Allow) C:\Program Files (x86)\GoforFiles\GoforFiles.exe
FirewallRules: [{D03B5F1D-3471-4E7D-80DC-B311150B7E88}] => (Allow) C:\Program Files (x86)\deepinvent\MailStore Server\MailStoreServer_x64.exe
FirewallRules: [{5D5D369E-FE02-4FEB-9C8E-CC2F62E1014A}] => (Allow) LPort=8461
FirewallRules: [{D5D3094E-02A5-4311-919B-5A93A3E132A4}] => (Allow) LPort=8462
FirewallRules: [{79752FC1-4372-420A-B958-5D1CB6CCDBC0}] => (Allow) C:\Program Files\CrashPlan\CrashPlanService.exe
FirewallRules: [{C62535C6-2EA3-45E6-A079-0F96EA574C92}] => (Allow) C:\Program Files\CrashPlan\CrashPlanService.exe
FirewallRules: [{2C8E38B4-C159-4E4E-A9C3-B860703D387C}] => (Allow) C:\Program Files (x86)\PhraseExpress\PhraseExpress.exe
FirewallRules: [TCP Query User{897E7728-3D81-4162-886E-6C3BC5B559E6}C:\program files (x86)\qnap\qfinder\qfinder.exe] => (Allow) C:\program files (x86)\qnap\qfinder\qfinder.exe
FirewallRules: [UDP Query User{83B2737F-3F53-4E6F-BBB7-5704716FB468}C:\program files (x86)\qnap\qfinder\qfinder.exe] => (Allow) C:\program files (x86)\qnap\qfinder\qfinder.exe
FirewallRules: [{883A3682-F8A1-4CCC-8BBD-D40D1718E312}] => (Block) C:\program files (x86)\qnap\qfinder\qfinder.exe
FirewallRules: [{CCB444C8-BEC2-45CF-B709-C697B5A9C32C}] => (Block) C:\program files (x86)\qnap\qfinder\qfinder.exe
FirewallRules: [TCP Query User{DDAF89DC-AFC1-4C47-B737-019C939090CE}C:\program files (x86)\qnap\qsync\qsync.exe] => (Allow) C:\program files (x86)\qnap\qsync\qsync.exe
FirewallRules: [UDP Query User{3EA4470D-1386-4A81-B4DC-F5C75CB9F6B2}C:\program files (x86)\qnap\qsync\qsync.exe] => (Allow) C:\program files (x86)\qnap\qsync\qsync.exe
FirewallRules: [{ABAE4A61-6CF1-4513-B70F-2C64E8741E0E}] => (Block) C:\program files (x86)\qnap\qsync\qsync.exe
FirewallRules: [{8FAA073C-3D4B-4C8A-A808-8A38C9532A62}] => (Block) C:\program files (x86)\qnap\qsync\qsync.exe
FirewallRules: [{57C97C52-6D8B-4050-8C4B-D010FE3BB209}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
FirewallRules: [{A4083710-37DC-4BB0-8C44-455953E2786C}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
FirewallRules: [TCP Query User{7BFF6B3A-D1ED-4D17-B01F-734C04266715}C:\users\markus schinner\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\markus schinner\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [UDP Query User{FC5036B6-D54A-4A45-B42F-189BC4876A58}C:\users\markus schinner\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\markus schinner\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [{58B78849-2BC1-4EF3-8172-AC013A5329AA}] => (Block) C:\users\markus schinner\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [{5E9AC686-809E-42AF-BCD6-F44FCB718D1B}] => (Block) C:\users\markus schinner\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [TCP Query User{5EA688EE-8FD6-4C6A-9247-08C9EAB0E916}C:\program files (x86)\mediamonkey\mediamonkey (non-skinned).exe] => (Allow) C:\program files (x86)\mediamonkey\mediamonkey (non-skinned).exe
FirewallRules: [UDP Query User{11D7F54C-99FC-4751-AD80-7E5581C28F53}C:\program files (x86)\mediamonkey\mediamonkey (non-skinned).exe] => (Allow) C:\program files (x86)\mediamonkey\mediamonkey (non-skinned).exe
FirewallRules: [{F64E35D6-D770-4A87-BB5D-421E82592D71}] => (Block) C:\program files (x86)\mediamonkey\mediamonkey (non-skinned).exe
FirewallRules: [{21D04D31-9D44-45BA-A654-5CCF48A1399B}] => (Block) C:\program files (x86)\mediamonkey\mediamonkey (non-skinned).exe
FirewallRules: [TCP Query User{F597A857-7B8E-42A9-9EDC-795639DA6259}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [UDP Query User{26F180BD-D301-4283-971C-26A543F360A4}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [{5E6A8636-4C6A-407F-A7BB-FE7BFD38EA14}] => (Block) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [{9DAC2CF0-ED6F-4B3B-A4DD-0A276B46C51C}] => (Block) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [{AD84333B-922C-4C56-B1CC-E4619A2D17F6}] => (Allow) C:\Program Files\CrashPlan\CrashPlanService.exe
FirewallRules: [{B40C9440-A23B-446E-89AC-5D5BA9789E0A}] => (Allow) C:\Program Files\CrashPlan\CrashPlanService.exe
FirewallRules: [{55BEB83B-2EC4-4D1F-AD11-8496298AB301}] => (Allow) C:\Program Files\HP\HP Officejet 7610 series\bin\FaxApplications.exe
FirewallRules: [{AA9FDF0B-2FE8-4F57-B5DC-1AB0AD761E77}] => (Allow) C:\Program Files\HP\HP Officejet 7610 series\bin\DigitalWizards.exe
FirewallRules: [{CAFD2E0B-5C70-49D2-8F87-1191B4FB9A9A}] => (Allow) C:\Program Files\HP\HP Officejet 7610 series\bin\SendAFax.exe
FirewallRules: [{690D1261-68E3-4D15-8233-268C56D5A66D}] => (Allow) C:\Program Files\HP\HP Officejet 7610 series\Bin\DeviceSetup.exe
FirewallRules: [{83E77BD1-2602-4302-A5DD-34111EC12989}] => (Allow) C:\Program Files\HP\HP Officejet 7610 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [TCP Query User{34CE4951-855F-4448-82EF-C8F340D82AE7}C:\users\markus schinner\appdata\roaming\baidu\baiduyunguanjia\baiduyunguanjia.exe] => (Allow) C:\users\markus schinner\appdata\roaming\baidu\baiduyunguanjia\baiduyunguanjia.exe
FirewallRules: [UDP Query User{EC371FD0-DA43-4DF1-8691-50A07AAAA9C5}C:\users\markus schinner\appdata\roaming\baidu\baiduyunguanjia\baiduyunguanjia.exe] => (Allow) C:\users\markus schinner\appdata\roaming\baidu\baiduyunguanjia\baiduyunguanjia.exe
FirewallRules: [{2848C781-067A-4FA1-9ACC-F58190A6F4E2}] => (Block) C:\users\markus schinner\appdata\roaming\baidu\baiduyunguanjia\baiduyunguanjia.exe
FirewallRules: [{6ADA3471-137E-49D1-90F6-72FE1EEBE4E5}] => (Block) C:\users\markus schinner\appdata\roaming\baidu\baiduyunguanjia\baiduyunguanjia.exe
FirewallRules: [{4753F009-ACF6-49AE-93DA-FE6F44EEC6F4}] => (Allow) C:\Program Files (x86)\PhraseExpress\PhraseExpress.exe
FirewallRules: [{2286AD24-4784-4C23-B36F-41F7A83D9B46}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{F783DFE5-C9D9-4FE0-8E66-A789AA988C24}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{A2D463F5-A027-401A-8F2A-243138F4B0F6}] => (Allow) C:\Program Files (x86)\Nero\KM\KwikMedia.exe
FirewallRules: [{13AB8C39-9B0C-4584-B119-546738222651}] => (Allow) C:\Program Files (x86)\Nero\KM\KwikMedia.exe
FirewallRules: [{79CCD1E4-B430-4647-9531-BEF744E32AAF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{CB48781D-50A6-4DF9-B0B5-EC21AE5FD1C7}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{01207D11-D78C-4C37-9EB8-64B2A48E06A1}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{709869B6-BFAA-4286-B212-D1BDB7771E68}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{61CB1A0F-1DF7-4B42-959C-2620BE294438}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{5602AA62-6E8E-46D0-A2AB-32006E178B05}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{741B1199-C2A5-47D1-B0D3-BBEC34224EBC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{10867824-2680-4EA1-9B4A-EE38662DC62D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [TCP Query User{F7D36DF1-F357-45C5-9106-350399B6894D}C:\program files (x86)\wondershare\mobilego for android\mobilegoservice.exe] => (Allow) C:\program files (x86)\wondershare\mobilego for android\mobilegoservice.exe
FirewallRules: [UDP Query User{CBC318A8-A33B-4469-AF57-A2D688F1B015}C:\program files (x86)\wondershare\mobilego for android\mobilegoservice.exe] => (Allow) C:\program files (x86)\wondershare\mobilego for android\mobilegoservice.exe
FirewallRules: [{495FC5F1-E6AE-4473-8CD0-A5BCA0B98F0C}] => (Block) C:\program files (x86)\wondershare\mobilego for android\mobilegoservice.exe
FirewallRules: [{0FA7E0EE-A2CA-4AE3-9964-8C96BA2277FD}] => (Block) C:\program files (x86)\wondershare\mobilego for android\mobilegoservice.exe
FirewallRules: [{35DBB4A4-3F8E-4AF2-9B4B-13779CE5CDDC}] => (Allow) C:\Users\Markus Schinner\AppData\Local\Google\Chrome\Application\chrome.exe
FirewallRules: [{FA921D5D-7A78-42DA-94FF-7CE5B43A946F}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BDASoftMgr.exe
FirewallRules: [{03C04162-F04E-4B01-941B-9A150D73D1C3}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BDASoftMgr.exe
FirewallRules: [{81D4341D-7BC3-4B3E-A2BB-672D0DA5E4C2}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BDASoftMgr.exe
FirewallRules: [{65C5404C-03ED-40AC-8052-D37B8B05FD0F}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BDASoftMgr.exe
FirewallRules: [{50B52FBA-FA09-4AC7-B5BE-799CEBE6C3BD}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BDASoftMgr.exe
FirewallRules: [{A7B8E88C-70BE-4679-83DE-E08CBE4E7E43}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BDASoftMgr.exe
FirewallRules: [{07145017-7AF0-4393-8782-83DF02E4D541}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAn.exe
FirewallRules: [{BCF379D8-9CAE-4D3D-BD8B-BBE75BB8E88D}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAn.exe
FirewallRules: [{51BBCB8F-E048-4262-AEBD-85ECE8426A03}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAn.exe
FirewallRules: [{F0813355-F28F-4BF3-803D-FBB7C0C19031}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAn.exe
FirewallRules: [{9FA367F3-165F-4D0F-911D-B8C8D3A730D1}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAn.exe
FirewallRules: [{DB9E6336-370B-490D-9712-9CAB414B37EA}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAn.exe
FirewallRules: [{7E2F5069-AF46-4CC3-9EFA-320FC5A897F0}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnBugRpt.exe
FirewallRules: [{DEC4A6CC-FC32-4960-85BA-913E84D3113C}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnBugRpt.exe
FirewallRules: [{5CC46D80-27C2-4484-9466-D46659A7A249}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnBugRpt.exe
FirewallRules: [{31C85E2B-25F8-4EA9-8475-0115BFFD2F3F}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnBugRpt.exe
FirewallRules: [{0B103DBF-BDE1-4680-A8B7-E7A6AF5F7CF4}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnBugRpt.exe
FirewallRules: [{E99FD291-4F22-41C4-B168-D4798F953919}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnBugRpt.exe
FirewallRules: [{E82991E5-B547-49DE-A0CA-EAE4F6D485C2}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnSvc.exe
FirewallRules: [{DA84E708-040A-4D16-8E24-5EDE7AB242ED}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnSvc.exe
FirewallRules: [{9101A9B9-00EF-4686-85A2-650D2E8682E9}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnSvc.exe
FirewallRules: [{6BDBF539-B124-4099-9DD7-667C42FA159E}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnSvc.exe
FirewallRules: [{1E07A5C4-E4A8-4345-9800-6BCF1DB7506A}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnSvc.exe
FirewallRules: [{A7317B9A-9BD1-4B86-BD03-D05B8B259DF6}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnSvc.exe
FirewallRules: [{3C4C2CB5-E0E2-479E-A25D-93F08EAF6EE4}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnTray.exe
FirewallRules: [{33D14725-4EE3-45AB-A063-415B5CF88834}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnTray.exe
FirewallRules: [{56DC8E9B-016B-492D-8947-DE59C3F8C198}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnTray.exe
FirewallRules: [{7A64111A-2240-4E2C-91F0-8C9EFD309DB8}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnTray.exe
FirewallRules: [{EFCA042B-C815-41A3-9649-FADC94E6777C}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnTray.exe
FirewallRules: [{32F35239-E565-4652-AA2F-DB559C90128B}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnTray.exe
FirewallRules: [{EB4E2DAF-EF50-43FF-8448-20F4DC4BEAB9}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnUpdate.exe
FirewallRules: [{E2E3AFF6-E999-4A63-A8E0-35FEEA9AD5F1}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnUpdate.exe
FirewallRules: [{6999C7EB-7060-4D83-BF6D-C09619159C53}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnUpdate.exe
FirewallRules: [{5256DAC0-4952-4BE5-9842-20837263C937}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnUpdate.exe
FirewallRules: [{9201D2AE-8216-4C03-94A1-DA348E72C2EC}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnUpdate.exe
FirewallRules: [{5AA25D80-7D5D-4671-B2FB-27BE00EDDD78}] => (Allow) C:\Program Files (x86)\Baidu\BaiduAn\4.0.0.8029\BaiduAnUpdate.exe
FirewallRules: [{F2403198-66CF-4124-9BFA-58E9C8DCCBFF}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCmgrInstallGuide.exe
FirewallRules: [{B550F77D-8725-4FC3-898A-3C2EEEEA3783}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCTray.exe
FirewallRules: [{5302D5B8-43C3-49BD-8847-FB0E85A302EA}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCMgr.exe
FirewallRules: [{7CD2525C-F30E-4B0D-9DFA-A2721B0D77CA}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCRTP.exe
FirewallRules: [{C376DE0D-08EA-4D16-989C-96FC66BC6922}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe
FirewallRules: [{92888E1B-649E-427B-9B75-2FF189A17357}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe
FirewallRules: [{A4141EC5-43C7-4480-AE67-BA72BDD2A73A}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QMDL.exe
FirewallRules: [{4AEE9DB5-DEF3-4A77-9972-DEE1DBB544A4}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\bugreport.exe
FirewallRules: [{94200CD6-0784-4FA4-BBBA-9CF4EEF2ADAD}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCFileOpen.exe
FirewallRules: [{01E1592F-72BA-40A7-BCED-F736E35CA6C2}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCLeakScan.exe
FirewallRules: [{2BAA5690-87B3-4E84-B6FB-69AE08A874FC}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPConfig.exe
FirewallRules: [{AEF1B79A-DCC0-4E69-8931-13E604208B27}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCSoftMgr.exe
FirewallRules: [{EE7D16A6-1FDF-41F1-8519-7EAEE8D1F936}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\plugins\QMNetMon\QQPCNetFlow.exe
FirewallRules: [{3FCB64C3-5CE2-4FE7-974A-59F7C84E1FC1}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCBTU.exe
FirewallRules: [{C1718592-0E47-447E-81CC-443E3878C339}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCClinic.exe
FirewallRules: [{77BAA9E6-833D-4B3F-A9C3-0CBECB0E80FE}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCLaunch.exe
FirewallRules: [{C1D6AAF8-9380-452B-AF04-17B04B4CE2A3}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QMUpdate\QQPCMgrUpdate.exe
FirewallRules: [{E1004918-11BB-4690-86D2-55E403EDA0F2}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCSoftGame.exe
FirewallRules: [{496994B5-D342-45D6-BE16-A50DCC144B5D}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCSysOptimize.exe
FirewallRules: [{6CF75778-02BA-4487-B117-E99D227687F3}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCUpdateAVLib.exe
FirewallRules: [{50851E6D-9334-41CE-BB68-B7D55C98E1FF}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQRepair.exe
FirewallRules: [{3AC31695-1F2D-4C94-88BD-31EA50806C3B}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\Uninst.exe
FirewallRules: [{4729CD27-D66C-4B02-8E0E-950519185DCD}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QQPCPatch.exe
FirewallRules: [{0769E957-85C0-4C70-B3A7-DBB80BC609EC}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\TpkUpdate.exe
FirewallRules: [{6D13B749-6A7D-45F2-812A-B064BE517636}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QMRouterMgr.exe
FirewallRules: [{80C02870-D8D3-4999-A3E4-8DAC85F3A8ED}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QMAccountProtection.exe
FirewallRules: [{A2F95A7D-68D7-4EF9-B7AC-43A6D62C98D7}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.2.17063.223\QMAdBlock.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot-S&D 2 Tray Icon
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
==================== Wiederherstellungspunkte =========================
02-02-2016 04:55:36 BricsCAD V15.3.05 (x64) de_DE wurde entfernt
08-02-2016 14:57:56 Chrome Cleanup Tool
08-02-2016 15:08:55 Wiederherstellungsvorgang
14-02-2016 16:28:44 Windows-Sicherung
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (02/17/2016 06:14:42 PM) (Source: MsiInstaller) (EventID: 1023) (User: HP-MOS)
Description: Produkt: Adobe Acrobat Reader DC - Deutsch - Update "{AC76BA86-7AD7-0000-2550-AC0F0A4E5B00}" konnte nicht installiert werden. Fehlercode 1625. Weitere Informationen sind in der Protokolldatei C:\Users\MARKUS~1\AppData\Local\Temp\MSI53920.LOG enthalten.
Error: (02/17/2016 02:47:04 PM) (Source: HP Active Health) (EventID: 2701) (User: )
Description: Could not parse Service: System.OverflowException: Der Wert für einen Int32 war zu groß oder zu klein.
bei System.Number.ParseInt32(String s, NumberStyles style, NumberFormatInfo info)
bei System.Convert.ToInt32(String value)
bei HP.ActiveHealth.Agents.WindowsServices.WindowsServicesAgent.GetNewDataClasses(FileInfo agentStateFile)
Error: (02/16/2016 10:04:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: DllHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f4
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.10586.0, Zeitstempel: 0x5632d79e
Ausnahmecode: 0xc000041d
Fehleroffset: 0x0000000000073c9a
ID des fehlerhaften Prozesses: 0x2d78
Startzeit der fehlerhaften Anwendung: 0xDllHost.exe0
Pfad der fehlerhaften Anwendung: DllHost.exe1
Pfad des fehlerhaften Moduls: DllHost.exe2
Berichtskennung: DllHost.exe3
Vollständiger Name des fehlerhaften Pakets: DllHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DllHost.exe5
Error: (02/16/2016 10:04:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: DllHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f4
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.10586.0, Zeitstempel: 0x5632d79e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000073c9a
ID des fehlerhaften Prozesses: 0x2d78
Startzeit der fehlerhaften Anwendung: 0xDllHost.exe0
Pfad der fehlerhaften Anwendung: DllHost.exe1
Pfad des fehlerhaften Moduls: DllHost.exe2
Berichtskennung: DllHost.exe3
Vollständiger Name des fehlerhaften Pakets: DllHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DllHost.exe5
Error: (02/16/2016 10:02:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: DllHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f4
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.10586.0, Zeitstempel: 0x5632d79e
Ausnahmecode: 0xc000041d
Fehleroffset: 0x0000000000073c9a
ID des fehlerhaften Prozesses: 0x1b34
Startzeit der fehlerhaften Anwendung: 0xDllHost.exe0
Pfad der fehlerhaften Anwendung: DllHost.exe1
Pfad des fehlerhaften Moduls: DllHost.exe2
Berichtskennung: DllHost.exe3
Vollständiger Name des fehlerhaften Pakets: DllHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DllHost.exe5
Error: (02/16/2016 10:02:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: DllHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f4
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.10586.0, Zeitstempel: 0x5632d79e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000073c9a
ID des fehlerhaften Prozesses: 0x1b34
Startzeit der fehlerhaften Anwendung: 0xDllHost.exe0
Pfad der fehlerhaften Anwendung: DllHost.exe1
Pfad des fehlerhaften Moduls: DllHost.exe2
Berichtskennung: DllHost.exe3
Vollständiger Name des fehlerhaften Pakets: DllHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DllHost.exe5
Error: (02/16/2016 10:02:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: DllHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f4
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.10586.0, Zeitstempel: 0x5632d79e
Ausnahmecode: 0xc000041d
Fehleroffset: 0x0000000000073c9a
ID des fehlerhaften Prozesses: 0x1f14
Startzeit der fehlerhaften Anwendung: 0xDllHost.exe0
Pfad der fehlerhaften Anwendung: DllHost.exe1
Pfad des fehlerhaften Moduls: DllHost.exe2
Berichtskennung: DllHost.exe3
Vollständiger Name des fehlerhaften Pakets: DllHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DllHost.exe5
Error: (02/16/2016 10:02:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: DllHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f4
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.10586.0, Zeitstempel: 0x5632d79e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000073c9a
ID des fehlerhaften Prozesses: 0x1f14
Startzeit der fehlerhaften Anwendung: 0xDllHost.exe0
Pfad der fehlerhaften Anwendung: DllHost.exe1
Pfad des fehlerhaften Moduls: DllHost.exe2
Berichtskennung: DllHost.exe3
Vollständiger Name des fehlerhaften Pakets: DllHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DllHost.exe5
Error: (02/16/2016 10:00:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: DllHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f4
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.10586.0, Zeitstempel: 0x5632d79e
Ausnahmecode: 0xc000041d
Fehleroffset: 0x0000000000073c9a
ID des fehlerhaften Prozesses: 0x1d70
Startzeit der fehlerhaften Anwendung: 0xDllHost.exe0
Pfad der fehlerhaften Anwendung: DllHost.exe1
Pfad des fehlerhaften Moduls: DllHost.exe2
Berichtskennung: DllHost.exe3
Vollständiger Name des fehlerhaften Pakets: DllHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DllHost.exe5
Error: (02/16/2016 10:00:40 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: DllHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f4
Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.10586.0, Zeitstempel: 0x5632d79e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000073c9a
ID des fehlerhaften Prozesses: 0x1d70
Startzeit der fehlerhaften Anwendung: 0xDllHost.exe0
Pfad der fehlerhaften Anwendung: DllHost.exe1
Pfad des fehlerhaften Moduls: DllHost.exe2
Berichtskennung: DllHost.exe3
Vollständiger Name des fehlerhaften Pakets: DllHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DllHost.exe5
Systemfehler:
=============
Error: (02/17/2016 09:36:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1058
Error: (02/17/2016 09:36:45 PM) (Source: volmgr) (EventID: 45) (User: )
Description: Das System konnte den Treiber für das Speicherabbild nicht laden.
Error: (02/17/2016 09:36:41 PM) (Source: volmgr) (EventID: 46) (User: )
Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen.
Error: (02/17/2016 09:36:41 PM) (Source: volmgr) (EventID: 45) (User: )
Description: Das System konnte den Treiber für das Speicherabbild nicht laden.
Error: (02/17/2016 08:19:49 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_a37d1" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (02/17/2016 02:57:00 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1058
Error: (02/17/2016 02:56:56 PM) (Source: volmgr) (EventID: 45) (User: )
Description: Das System konnte den Treiber für das Speicherabbild nicht laden.
Error: (02/17/2016 02:56:52 PM) (Source: volmgr) (EventID: 46) (User: )
Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen.
Error: (02/17/2016 02:56:52 PM) (Source: volmgr) (EventID: 45) (User: )
Description: Das System konnte den Treiber für das Speicherabbild nicht laden.
Error: (02/17/2016 02:56:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_1f8538" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
CodeIntegrity:
===================================
Date: 2016-02-17 16:24:13.672
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-02-17 16:23:44.017
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-02-17 16:23:43.954
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-02-17 16:23:43.886
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-02-17 16:23:43.824
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-02-17 10:37:10.983
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-02-17 10:37:10.973
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-02-17 10:37:10.962
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-02-17 10:37:02.081
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-02-17 10:37:02.022
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i7 CPU Q 840 @ 1.87GHz
Prozentuale Nutzung des RAM: 26%
Installierter physikalischer RAM: 16311.38 MB
Verfügbarer physikalischer RAM: 12047.28 MB
Summe virtueller Speicher: 32695.38 MB
Verfügbarer virtueller Speicher: 27749.25 MB
==================== Laufwerke ================================
Drive c: (BOOT-PROG) (Fixed) (Total:221.18 GB) (Free:66.15 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive d: (DATEN-ARBEIT) (Fixed) (Total:175.78 GB) (Free:126.27 GB) NTFS
Drive e: (EIGENE) (Fixed) (Total:289.98 GB) (Free:178.89 GB) NTFS
Drive f: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:1.39 GB) FAT32
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: BAF111DB)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=221.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=2 GB) - (Type=0C)
Partition 4: (Not Active) - (Size=15 GB) - (Type=OF Extended)
========================================================
Disk: 1 (Size: 465.8 GB) (Disk ID: 0E472C8D)
Partition 1: (Not Active) - (Size=175.8 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=290 GB) - (Type=07 NTFS)
==================== Ende von Addition.txt ============================ Dann habe ich noch etwas von MaleWarebytes
Malewarebytes_20160217-protect Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Error, 17.02.2016 09:47, SYSTEM, HP-MOS, Protection, IsLicensed, 13,
Protection, 17.02.2016 09:47, SYSTEM, HP-MOS, Protection, Malware Protection, Stopping,
Protection, 17.02.2016 09:47, SYSTEM, HP-MOS, Protection, Malware Protection, Stopped,
Error, 17.02.2016 14:40, SYSTEM, HP-MOS, Protection, IsLicensed, 13,
Protection, 17.02.2016 14:40, SYSTEM, HP-MOS, Protection, Malware Protection, Stopping,
Protection, 17.02.2016 14:40, SYSTEM, HP-MOS, Protection, Malware Protection, Stopped,
Error, 17.02.2016 14:57, SYSTEM, HP-MOS, Protection, IsLicensed, 13,
Protection, 17.02.2016 14:57, SYSTEM, HP-MOS, Protection, Malware Protection, Stopping,
Protection, 17.02.2016 14:57, SYSTEM, HP-MOS, Protection, Malware Protection, Stopped,
Error, 17.02.2016 21:36, SYSTEM, HP-MOS, Protection, IsLicensed, 13,
Protection, 17.02.2016 21:36, SYSTEM, HP-MOS, Protection, Malware Protection, Stopping,
Protection, 17.02.2016 21:36, SYSTEM, HP-MOS, Protection, Malware Protection, Stopped,
(end) Malewarebytes_20160208-scan Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 08.02.2016
Suchlaufzeit: 16:18
Protokolldatei: Malewarebites_20160208-Scan.txt
Administrator: Ja
Version: 2.2.0.1024
Malware-Datenbank: v2016.02.08.03
Rootkit-Datenbank: v2016.01.20.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: Markus Schinner
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 522231
Abgelaufene Zeit: 17 Min., 0 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswerte: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 0
(keine bösartigen Elemente erkannt)
Dateien: 0
(keine bösartigen Elemente erkannt)
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) |