Death457 | 18.08.2016 19:48 | Hallo Matthias,
erst einmal vielen Dank für deine Hilfe!
Hier die Datei vom AdwCleaner: Code:
# AdwCleaner v6.000 - Bericht erstellt am 18/08/2016 um 18:34:35
# Aktualisiert am 12/08/2016 von ToolsLib
# Datenbank : 2016-08-12.4 [Lokal]
# Betriebssystem : Windows 10 Home (X64)
# Benutzername : Manuela - REDQUEEN
# Gestartet von : C:\Users\Manuela\Desktop\adwcleaner_6.000.exe
# Modus: Löschen
# Unterstützung : https://toolslib.net/forum
***** [ Dienste ] *****
***** [ Ordner ] *****
[-] Ordner gelöscht: C:\Users\Manuela\AppData\Roaming\eCyber
[-] Ordner gelöscht: C:\Program Files (x86)\WinZipper
***** [ Dateien ] *****
[-] Datei gelöscht: C:\Users\Manuela\AppData\Roaming\Mozilla\Firefox\Profiles\xkv2gaad.default-1432064882821\searchplugins\Search Provided by Yahoo.xml
[-] Datei gelöscht: C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\nuesearch.xml
[#] Datei gelöscht: C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\nuesearch.xml
[#] Datei gelöscht: C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\nuesearch.xml
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Verknüpfungen ] *****
***** [ Aufgabenplanung ] *****
***** [ Registrierungsdatenbank ] *****
***** [ Browser ] *****
[-] Firefox Einstellungen bereinigt: "browser.search.defaultenginename" - "Search Provided by Yahoo"
[-] Firefox Einstellungen bereinigt: "browser.search.selectedEngine" - "Search Provided by Yahoo"
*************************
:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
:: "Prefetch" Dateien gelöscht
:: Proxy Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht
:: Chrome Einstellungen zurückgesetzt: C:\Users\Manuela\AppData\Local\Google\Chrome\User Data\Default
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [15550 Bytes] - [17/08/2016 17:41:17]
C:\AdwCleaner\AdwCleaner[C2].txt - [1896 Bytes] - [18/08/2016 18:34:35]
C:\AdwCleaner\AdwCleaner[S0].txt - [16349 Bytes] - [17/08/2016 17:34:58]
C:\AdwCleaner\AdwCleaner[S1].txt - [2246 Bytes] - [18/08/2016 18:34:09]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [2116 Bytes] ########## Hier vom MBAM: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 18.08.2016
Suchlaufzeit: 18:44
Protokolldatei: mbam.txt
Administrator: Ja
Version: 2.2.1.1043
Malware-Datenbank: v2016.08.18.06
Rootkit-Datenbank: v2016.08.15.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: Manuela
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 333763
Abgelaufene Zeit: 10 Min., 17 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 2
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe, 9056, Löschen bei Neustart, [d7b70c40405a43f3efc2d3d855af59a7]
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\bin\FirefoxCommand.exe, 10692, Löschen bei Neustart, [d7b70c40405a43f3efc2d3d855af59a7]
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 2
PUP.Optional.Ghokswa, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\FirefoxU, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\CommandHandler, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
Registrierungswerte: 3
PUP.Optional.Ghokswa.Generic, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\FirefoxU|ImagePath, "C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe", In Quarantäne, [bad42923f0aa3ef8f9b92d7ed133e818]
PUP.Optional.Ghokswa, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\COMMANDHANDLER|ImagePath, "C:\Program Files (x86)\Firefox\bin\FirefoxCommand.exe", In Quarantäne, [593563e90e8cf93d032df9d5f31114ec]
PUP.Optional.Ghokswa, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{E3996FE3-EB7F-433E-9F99-884247DE4A0E}, v2.25|Action=Allow|Active=TRUE|Dir=In|App=C:\ProgramData\Yestony\Yestony.exe|Name=Protect service|, In Quarantäne, [404edb71970342f4ee111e8dce3637c9]
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 15
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\bin, Löschen bei Neustart, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox, Löschen bei Neustart, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\components, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\extensions, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\features, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\defaults, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\defaults\pref, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\dictionaries, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\gmp-clearkey, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\gmp-clearkey\0.1, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\Reports, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\Reports\Dump, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\uninstall, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\webapprt, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
Dateien: 74
PUP.Optional.Ghokswa, C:\Users\Manuela\AppData\Local\Temp\ist72EF.tmp\tools\ch.exe, In Quarantäne, [9cf29bb1f8a235012bedd1db39cb6997],
Spyware.PasswordStealer, C:\Users\Manuela\AppData\Local\Temp\ist72EF.tmp\tools\qksee\qkseeSvc.exe, In Quarantäne, [ccc2fe4e801a94a25bcf2ea4a46028d8],
PUP.Optional.Elex, C:\Windows\Temp\ist5059.tmp\tools\qks.exe, In Quarantäne, [9df1f3598119fc3ab08ac723ae539d63],
PUP.Optional.Nice, C:\Users\Manuela\AppData\Roaming\Mozilla\Firefox\Profiles\xkv2gaad.default-1432064882821\searchplugins\nice.xml, In Quarantäne, [632baaa29109c76fbecefecb6d959a66],
PUP.Optional.SearchSOV, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\so-v.xml, In Quarantäne, [ddb1d775bfdb82b45316a22a04fea25e],
PUP.Optional.SearchManager.ChrPRST, C:\Users\Manuela\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bahkljhhdeciiaodlkppoonappfnheoi_0.localstorage, In Quarantäne, [711dcb81e9b1ba7c5507d126fe05d32d],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe, Löschen bei Neustart, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\bin\FirefoxCloud.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\bin\FirefoxCommand.exe, Löschen bei Neustart, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\bin\FirefoxUM.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\bin\Firefox_crashreporter.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\bin\Firefox_crashreporterx64.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\bin\Firefox_helper.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\icudt56.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\nss3.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\AccessibleMarshal.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\application.ini, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\breakpadinjector.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\crashreporter.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\crashreporter.ini, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\d3dcompiler_47.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\dependentlibs.list, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\Firefox.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\freebl3.chk, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\freebl3.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\icuin56.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\icuuc56.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\lgpllibs.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\libEGL.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\libGLESv2.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\maintenanceservice.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\maintenanceservice_installer.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\mozavcodec.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\mozavutil.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\mozglue.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\msvcp120.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\msvcr120.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\nssckbi.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\nssdbm3.chk, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\nssdbm3.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\omni.ja, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\platform.ini, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\plugin-container.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\plugin-hang-ui.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\sandboxbroker.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\softokn3.chk, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\softokn3.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\update-settings.ini, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\updater.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\updater.ini, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\webapp-uninstaller.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\webapprt-stub.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\wow_helper.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\xul.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\blocklist.xml, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\chrome.manifest, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\crashreporter-override.ini, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\omni.ja, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\components\browsercomps.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\components\components.manifest, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\features\e10srollout@mozilla.org.xpi, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\features\firefox@getpocket.com.xpi, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\browser\features\loop@mozilla.org.xpi, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\defaults\pref\channel-prefs.js, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\dictionaries\en-US.aff, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\dictionaries\en-US.dic, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\gmp-clearkey\0.1\clearkey.dll, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\gmp-clearkey\0.1\clearkey.info, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\uninstall\helper.exe, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\webapprt\omni.ja, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.Ghokswa, C:\Program Files (x86)\Firefox\webapprt\webapprt.ini, In Quarantäne, [d7b70c40405a43f3efc2d3d855af59a7],
PUP.Optional.NiceSearches, C:\Users\Manuela\AppData\Roaming\Mozilla\Firefox\Profiles\xkv2gaad.default-1432064882821\prefs.js, Gut: (), Schlecht: (user_pref("browser.newtab.url", "hxxp://www.nicesearches.com?type=hp&ts=1471345326&from=c3a00815&uid=wdcxwd10ezex-22bn5a0_wd-wcc3f5tth961th961&z=a8ad5ab467d0e5c1ef09d16gbz4m6g8c0z2w4cecbq");), Ersetzt,[aee0103cb7e3092d637a128b1de78d73]
PUP.Optional.NiceSearches, C:\Users\Manuela\AppData\Roaming\Mozilla\Firefox\Profiles\xkv2gaad.default-1432064882821\prefs.js, Gut: (), Schlecht: (user_pref("browser.search.searchengine.url", "hxxp://www.nicesearches.com/search.php?type=ds&ts=1471345326&from=c3a00815&uid=wdcxwd10ezex-22bn5a0_wd-wcc3f5tth961th961&z=a8ad5ab467d0e5c1ef09d16gbz4m6g8c0z2w4cecbq&q={searchTerms}");), Ersetzt,[1d7164e84a50d2643ba3debf28dc619f]
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) Hier JRT: Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.7 (07.03.2016)
Operating System: Windows 10 Home x64
Ran by Manuela (Administrator) on 18.08.2016 at 19:02:09,32
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 2
Successfully deleted: C:\Users\Manuela\Appdata\LocalLow\company (Folder)
Successfully deleted: C:\WINDOWS\wininit.ini (File)
Deleted the following from C:\Users\Manuela\AppData\Roaming\Mozilla\Firefox\Profiles\xkv2gaad.default-1432064882821\prefs.js
user_pref(browser.search.searchengine.alias, );
user_pref(browser.search.searchengine.iconURL, hxxp://www.nicesearches.com/favicon.ico?t=1);
user_pref(browser.search.searchengine.name, nice);
user_pref(browser.search.searchengine.ref, );
user_pref(browser.search.searchengine.ts, 1471345326);
user_pref(browser.search.searchengine.type, );
user_pref(browser.search.searchengine.uid, wdcxwd10ezex-22bn5a0_wd-wcc3f5tth961th961);
Registry: 3
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\\win_en_77 (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{91397D20-1446-11D4-8AF4-0040CA1127B6} (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} (Registry Key)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 18.08.2016 at 19:04:09,42
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Hier FRST: Code:
LastRegBack: 2016-08-15 09:42
==================== Ende von FRST.txt ============================
Ich weiß aber nicht, wieso die so kurz ist, aber das kommt raus...
Hier die Addition: Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 17-08-2016
durchgeführt von Manuela (18-08-2016 20:36:54)
Gestartet von C:\Users\Manuela\Desktop
Windows 10 Home Version 1607 (X64) (2016-08-04 12:21:04)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-229970298-3033678992-2849718017-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-229970298-3033678992-2849718017-503 - Limited - Disabled)
Gast (S-1-5-21-229970298-3033678992-2849718017-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-229970298-3033678992-2849718017-1003 - Limited - Enabled)
Manuela (S-1-5-21-229970298-3033678992-2849718017-1001 - Administrator - Enabled) => C:\Users\Manuela
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Kaspersky Internet Security (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Kaspersky Internet Security (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security (Enabled) {BE0DF4B4-018B-AF50-0486-D6FE7C8A8AE3}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
µTorrent (HKU\S-1-5-21-229970298-3033678992-2849718017-1001\...\uTorrent) (Version: 3.4.5.41865 - BitTorrent Inc.)
7-Zip 16.02 (x64) (HKLM\...\7-Zip) (Version: 16.02 - Igor Pavlov)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.017.20053 - Adobe Systems Incorporated)
Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
AdVenture Capitalist (HKLM\...\Steam App 346900) (Version: - Hyper Hippo Games)
Age of Conan: Unchained - EU version (HKLM\...\Steam App 217750) (Version: - Funcom)
Anno 1404 (HKLM\...\Steam App 33250) (Version: - Blue Byte)
Anno Online (HKLM\...\Steam App 336510) (Version: - Blue Byte)
Ansel (Version: 368.81 - NVIDIA Corporation) Hidden
Ashampoo AppLauncher v.1.0.0 (HKLM-x32\...\Ashampoo AppLauncher_is1) (Version: 1.0.0 - Ashampoo GmbH & Co. KG)
Ashampoo Burning Studio 11 v.11.0.4 (HKLM-x32\...\Ashampoo Burning Studio 11_is1) (Version: 11.0.4 - Ashampoo GmbH & Co. KG)
Ashampoo Core Tuner 2 v.2.0.1 (HKLM-x32\...\Ashampoo Core Tuner 2_is1) (Version: 2.01 - Ashampoo GmbH & Co. KG)
Ashampoo GetBack Photo v.1.0.1 (HKLM-x32\...\Ashampoo GetBack Photo_is1) (Version: 1.0.1 - Ashampoo GmbH & Co. KG)
Ashampoo HDD Control 2 v.2.1.0 (HKLM-x32\...\Ashampoo HDD Control 2_is1) (Version: 2.1.0 - Ashampoo GmbH & Co. KG)
Ashampoo Music Studio 4 v.4.0.1 (HKLM-x32\...\Ashampoo Music Studio 4_is1) (Version: 4.0.1 - Ashampoo GmbH & Co. KG)
Ashampoo Photo Commander 10 v.10.1.3 (HKLM-x32\...\Ashampoo Photo Commander 10_is1) (Version: 10.1.3 - Ashampoo GmbH & Co. KG)
Ashampoo Photo Optimizer 5 v.5.1.2 (HKLM-x32\...\Ashampoo Photo Optimizer 5_is1) (Version: 5.1.2 - Ashampoo GmbH & Co. KG)
Ashampoo Slideshow Studio HD 2 v.2.0.5 (HKLM-x32\...\Ashampoo Slideshow Studio HD 2_is1) (Version: 2.0.5 - Ashampoo GmbH & Co. KG)
Ashampoo Snap 5 v.5.1.5 (HKLM-x32\...\Ashampoo Snap 5_is1) (Version: 5.1.5 - Ashampoo GmbH & Co. KG)
Ashampoo Video Styler v.1.0.1 (HKLM-x32\...\Ashampoo Video Styler_is1) (Version: 1.0.1 - Ashampoo GmbH & Co. KG)
Ashampoo WinOptimizer 9 v.9.04.31 (HKLM-x32\...\Ashampoo WinOptimizer 9_is1) (Version: 9.04.31 - Ashampoo GmbH & Co. KG)
CyberLink Home Cinema 10 (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 10.0 - CyberLink Corp.)
CyberLink PhotoDirector 5 (HKLM-x32\...\InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}) (Version: 5.0.4430.0 - CyberLink Corp.)
CyberLink PhotoDirector 5 (Version: 5.0.4430.0 - CyberLink Corp.) Hidden
CyberLink PowerDirector 12 (HKLM-x32\...\InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.2230.0 - CyberLink Corp.)
CyberLink PowerDirector 12 (Version: 12.0.2230.0 - CyberLink Corp.) Hidden
CyberLink PowerRecover (HKLM-x32\...\InstallShield_{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.7.0.3019 - CyberLink Corp.)
CyberLink PowerRecover (Version: 5.7.0.3019 - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd)
Die Sims Mittelalter Piraten und Edelleute (HKLM-x32\...\{0CC21836-A5D6-4641-B4AE-6FA01D021E41}) (Version: 2.0.109 - Electronic Arts)
Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts)
Die Sims™ 3 70er, 80er & 90er Accessoires (HKLM-x32\...\{E1868CAE-E3B9-4099-8C18-AA8944D336FD}) (Version: 17.0.77 - Electronic Arts)
Die Sims™ 3 Design-Garten-Accessoires (HKLM-x32\...\{117B6BF6-82C3-420C-B284-9247C8568E53}) (Version: 7.0.55 - Electronic Arts)
Die Sims™ 3 Diesel Accessoires (HKLM-x32\...\{1C9B6173-6DC9-4EEE-9EFC-6BA115CFBE43}) (Version: 14.0.48 - Electronic Arts)
Die Sims™ 3 Einfach tierisch (HKLM-x32\...\{C12631C6-804D-4B32-B0DD-8A496462F106}) (Version: 10.0.96 - Electronic Arts)
Die Sims™ 3 Gib Gas-Accessoires (HKLM-x32\...\{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}) (Version: 5.0.44 - Electronic Arts)
Die Sims™ 3 Inselparadies (HKLM-x32\...\{DB21639E-FE55-432C-BCA2-0C5249E3F79E}) (Version: 19.0.101 - Electronic Arts)
Die Sims™ 3 Into the Future (HKLM-x32\...\{A0BBD6C7-B546-4048-B33A-F21F5C9F5B09}) (Version: 21.0.150 - Electronic Arts)
Die Sims™ 3 Jahreszeiten (HKLM-x32\...\{3DE92282-CB49-434F-81BF-94E5B380E889}) (Version: 16.0.136 - Electronic Arts)
Die Sims™ 3 Katy Perry Süße Welt (HKLM-x32\...\{9B2506E3-9A3F-45B5-96BF-509CAD584650}) (Version: 13.0.62 - Electronic Arts)
Die Sims™ 3 Late Night (HKLM-x32\...\{45057FCE-5784-48BE-8176-D9D00AF56C3C}) (Version: 6.0.81 - Electronic Arts)
Die Sims™ 3 Lebensfreude (HKLM-x32\...\{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}) (Version: 8.0.152 - Electronic Arts)
Die Sims™ 3 Luxus-Accessoires (HKLM-x32\...\{71828142-5A24-4BD0-97E7-976DA08CE6CF}) (Version: 3.0.38 - Electronic Arts)
Die Sims™ 3 Movie-Accessoires (HKLM-x32\...\{D0087539-3C57-44E0-BEE7-D779D546CBE1}) (Version: 20.0.53 - Electronic Arts)
Die Sims™ 3 Reiseabenteuer (HKLM-x32\...\{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}) (Version: 2.0.86 - Electronic Arts)
Die Sims™ 3 Showtime (HKLM-x32\...\{3BBFD444-5FAB-49F6-98B1-A1954E831399}) (Version: 12.0.273 - Electronic Arts)
Die Sims™ 3 Stadt-Accessoires (HKLM-x32\...\{7B11296A-F894-449C-8DF6-6AAAA7D4D118}) (Version: 9.0.73 - Electronic Arts)
Die Sims™ 3 Supernatural (HKLM-x32\...\{B37DAFA5-717D-41F8-BDFB-3A4B68C0B3A1}) (Version: 15.0.135 - Electronic Arts)
Die Sims™ 3 Traumkarrieren (HKLM-x32\...\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}) (Version: 4.0.87 - Electronic Arts)
Die Sims™ 3 Traumsuite-Accessoires (HKLM-x32\...\{08A25478-C5DD-4EA7-B168-3D687CA987FF}) (Version: 11.0.84 - Electronic Arts)
Die Sims™ 3 Wildes Studentenleben (HKLM-x32\...\{F26DE8EF-F2CF-40DC-8CDA-CC0D82D11B36}) (Version: 18.0.126 - Electronic Arts)
Die*Sims*Mittelalter (HKLM-x32\...\{83BEEFB4-8C28-4F4F-8A9D-E0D1ADCE335B}) (Version: 2.0.113 - Electronic Arts)
Divinity II: Developer's Cut (HKLM\...\Steam App 219780) (Version: - Larian Studios)
Dragon Age: Origins - Ultimate Edition (HKLM\...\Steam App 47810) (Version: - BioWare)
EVEREST Home Edition v2.20 (HKLM-x32\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotogalerija (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotogalleri (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotogalleriet (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotoğraf Galerisi (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotótár (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Free YouTube To MP3 Converter (HKLM-x32\...\Free YouTube To MP3 Converter_is1) (Version: 4.1.0.1229 - DVDVideoSoft Ltd.)
Galeria de Fotografias (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galería de fotos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galeria fotografii (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Galerie de photos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Hitman: Codename 47 (HKLM\...\Steam App 6900) (Version: - IO Interactive)
Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{0EC7F9CC-4741-45AE-9F55-6E9343F726F5}) (Version: 1.1.0.36960 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.14.1724 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.9.0.1001 - Intel Corporation)
Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{02FECEE0-16B2-43DB-BC3B-C844477FC142}) (Version: 15.0.2.396 - Kaspersky Lab)
Kaspersky Internet Security (x32 Version: 15.0.2.361 - Kaspersky Lab) Hidden
Logitech Webcam Software (HKLM\...\{987FE247-4E69-4A2E-A961-D14F901FDBF6}) (Version: 12.10.1113 - Logitech Inc.)
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Metro 2033 (HKLM\...\Steam App 43110) (Version: - 4A Games)
Metro: Last Light Redux (HKLM\...\Steam App 287390) (Version: - 4A Games)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.7070.2033 - Microsoft Corporation)
Microsoft Office 365 - es-es (HKLM\...\O365HomePremRetail - es-es) (Version: 16.0.7070.2033 - Microsoft Corporation)
Microsoft Office 365 - ja-jp (HKLM\...\O365HomePremRetail - ja-jp) (Version: 16.0.7070.2033 - Microsoft Corporation)
Microsoft Office 365 - ro-ro (HKLM\...\O365HomePremRetail - ro-ro) (Version: 16.0.7070.2033 - Microsoft Corporation)
Microsoft Office 365 - ru-ru (HKLM\...\O365HomePremRetail - ru-ru) (Version: 16.0.7070.2033 - Microsoft Corporation)
Microsoft Office Proofing Tools 2013 - Español (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing Tools 2013 - Español (HKLM-x32\...\{90150000-001F-0C0A-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 48.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 48.0 (x86 de)) (Version: 48.0 - Mozilla)
Nitro Pro 9 (HKLM\...\{199748CD-E046-4D0F-A9D1-0712EE050EFC}) (Version: 9.5.1.5 - Nitro)
NVIDIA 3D Vision Controller-Treiber 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 368.81 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation)
NVIDIA Grafiktreiber 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 368.81 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation)
NVIDIA Miracast Virtueller Ton 355.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 355.60 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7030.1021 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.7030.1021 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7030.1021 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 9.2.1.4399 - Electronic Arts, Inc.)
Overlord (HKLM\...\Steam App 11450) (Version: - Triumph Studios)
PDF24 Creator 7.8.1 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org)
Podstawowe programy Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)
Raccolta foto (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7564 - Realtek Semiconductor Corp.)
Resident Evil Revelations 2 / Biohazard Revelations 2 (HKLM\...\Steam App 287290) (Version: - CAPCOM Co., Ltd.)
Sacred Gold (HKLM\...\Steam App 12320) (Version: - Ascaron Entertainment ltd.)
SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.3.0.9150 - Microsoft Corporation)
Skype™ 7.25 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.25.106 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-229970298-3033678992-2849718017-1001\...\Spotify) (Version: 1.0.34.146.g28f9eda2 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SteamVR (HKLM\...\Steam App 250820) (Version: - )
The Guild II: Renaissance (HKLM\...\Steam App 39680) (Version: - Rune Forge)
The Secret World (HKLM\...\Steam App 215280) (Version: - Funcom)
The Settlers Online (HKLM\...\Steam App 354640) (Version: - Blue Byte)
The Witcher 2: Assassins of Kings Enhanced Edition (HKLM\...\Steam App 20920) (Version: - CD PROJEKT RED)
The Witcher 2: Bonus Content (HKLM\...\Steam App 20930) (Version: - )
The Witcher: Enhanced Edition (HKLM\...\Steam App 20900) (Version: - CD PROJEKT RED)
Tom Clancy's Splinter Cell (HKLM\...\Steam App 13560) (Version: - Ubisoft)
Tom Clancy's Splinter Cell Blacklist (HKLM\...\Steam App 235600) (Version: - Ubisoft Toronto)
Valokuvavalikoima (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.)
War Thunder (HKLM\...\Steam App 236390) (Version: - Gaijin Entertainment)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
World of Guns: Gun Disassembly (HKLM\...\Steam App 262410) (Version: - Noble Empire Corp.)
Συλλογή φωτογραφιών (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-229970298-3033678992-2849718017-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Manuela\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\FileCoAuth.exe (Microsoft Corporation)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {00FF900D-C446-4CAA-8282-E2CCF911746F} - System32\Tasks\{47E85564-F247-41F9-BF3A-281C83D558BE} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\Sims3Setup.exe" -c -runfromtemp -l0x0007 -removeonly
Task: {03896D04-23AB-4F74-A27D-B1B71EE41E2C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask => C:\Windows\system32\MDMAgent.exe [2016-07-16] (Microsoft Corporation)
Task: {16DEA092-FB0C-40D0-AE20-0536BECC21D9} - System32\Tasks\Microsoft\Windows\EDP\EDP App Launch Task
Task: {184784E2-6ACB-4154-BD0F-A955BE13F177} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange
Task: {1B65DD58-D16B-45E8-BEB4-94D7E4D64DF7} - System32\Tasks\Microsoft\Windows\EDP\EDP Auth Task
Task: {1F4495D0-AC0F-4C43-9481-27280B9BE0A2} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-07-25] (Microsoft Corporation)
Task: {222D5C93-71BF-43AC-83AD-1CDD11644405} - System32\Tasks\PDVDServ12 Task => C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe [2014-11-04] (CyberLink Corp.)
Task: {31AD07AF-F222-4D89-A3CA-304F96816B27} - System32\Tasks\Microsoft\Office\IMESharePointDictionary => c:\Program Files (x86)\Common Files\Microsoft Shared\IME16\IMESharePointDictionary.exe [2016-07-23] (Microsoft Corporation)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe
Task: {3B8A80A4-3E7F-4C29-8BF6-98AFB5F6A216} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {45F8145C-CE78-4555-B1CD-BB141EA5B15B} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {520872F1-B676-4C8F-A798-236733B79AF8} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
Task: {5B6CDD22-509E-4341-B22C-E77D35179E5D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {5BE91AA6-4313-4E4B-9C09-33DBE53D8152} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTask => C:\Windows\System32\XblGameSaveTask.exe [2016-07-16] (Microsoft Corporation)
Task: {6232090F-3BD0-4E1F-960B-78CBA797F685} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand
Task: {63ADD2C1-9F6F-4440-86FF-59F38D0F8D95} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {640CADC7-94F1-408F-9FD1-BDAB19C3A0D4} - \CCleanerSkipUAC -> Keine Datei <==== ACHTUNG
Task: {698AC3BB-0F13-4A97-B82B-6F0F72D9DFC0} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation)
Task: {6B1AE720-1359-4B9E-9C0F-60167361EF01} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefreshTask
Task: {6E8AE752-C5D2-4B34-B351-338B4370A342} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleCommand
Task: {78DD366B-8708-4A81-966E-1B0523ACF655} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG
Task: {7AC5E1E2-2FD3-40CD-8842-88CE53A3609C} - System32\Tasks\Microsoft\Windows\DiskFootprint\StorageSense
Task: {7CAE9D85-7AF6-463C-B2D1-5C6780B69FC8} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {8771E7C0-775A-4F45-8764-9324D67395C7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {8A4AD0C0-CCA4-45F3-895A-380098076468} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-08-10] (Microsoft Corporation)
Task: {8EE14A53-CB63-4E8B-9B92-F033A2A87AC9} - System32\Tasks\{516DC850-7CB7-4254-ABB7-EE79262494ED} => pcalua.exe -a "C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe" -c -r -m -nrg2709
Task: {9851188E-AC07-4F36-BA28-6D00BB2C9C46} - System32\Tasks\Microsoft\Windows\Device Information\Device => C:\Windows\system32\devicecensus.exe [2016-07-16] (Microsoft Corporation)
Task: {A119825B-261F-4E57-9EB8-BF9E2CA278FD} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG
Task: {A6B10643-4831-4F4F-9435-D1BBBDDF489E} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-07-25] (Microsoft Corporation)
Task: {AA107AC1-57ED-454D-A37C-3999767BCC00} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-07-25] (Microsoft Corporation)
Task: {B6EE76B2-4F82-4E15-9345-C867A29CBAD0} - System32\Tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask => C:\Windows\system32\speech_onecore\common\SpeechModelDownload.exe [2016-07-16] (Microsoft Corporation)
Task: {BAD1C33E-C867-43DF-A371-BA5EA7EE54CC} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {BF2B2ECD-64DC-450A-8F56-853146F85096} - System32\Tasks\Jhdit => C:\PROGRA~1\Kiait\Wojlah.bat <==== ACHTUNG
Task: {CBD9DAC3-1866-4B9C-9F1A-F956E4201B20} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-13] (Adobe Systems Incorporated)
Task: {CC636E49-0109-402B-A40B-A37C29069A95} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession
Task: {CD19BC8A-E9FE-49ED-92A5-0E1194F69F00} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon => C:\Windows\System32\XblGameSaveTask.exe [2016-07-16] (Microsoft Corporation)
Task: {D394BE25-2E16-45D4-AAB2-3E8861A09351} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask
Task: {D3C4106A-D511-42C6-9716-465644534C87} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierinstall => C:\Windows\system32\AppHostRegistrationVerifier.exe [2016-07-16] (Microsoft Corporation)
Task: {D941F53F-7907-4FBE-B1E7-69EBD5B3A5D8} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange
Task: {E859D756-ED33-40F4-916F-AC7DE101C9CD} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {EA9BAA00-6604-4A27-8A73-AFA65F0EE1B3} - System32\Tasks\Microsoft\Windows\SharedPC\Account Cleanup => Rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
Task: {ECEDC57D-8965-4EB1-BD6F-84791D928E23} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierdaily => C:\Windows\system32\AppHostRegistrationVerifier.exe [2016-07-16] (Microsoft Corporation)
Task: {ED29F182-5E50-44C5-8F02-734EDEEFE6D6} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation)
Task: {F2ACE1DB-14BD-4877-8A0F-587BD5F275CA} - \WPD\SqmUpload_S-1-5-21-229970298-3033678992-2849718017-1001 -> Keine Datei <==== ACHTUNG
Task: {FED2C531-B1D5-405B-84E9-0285641912EC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2014-12-04 11:51 - 2011-08-22 15:44 - 01421216 _____ () C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2Service.exe
2014-12-04 11:51 - 2012-07-30 12:48 - 01518504 _____ () C:\Program Files (x86)\Ashampoo\Ashampoo HDD Control 2\AHDDC2_Service.exe
2014-12-04 11:44 - 2012-08-08 23:36 - 00390672 _____ () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
2016-03-21 22:03 - 2016-06-14 22:03 - 00367552 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2015-12-23 20:10 - 2016-06-14 22:03 - 00288192 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-05-02 17:22 - 2016-06-14 22:03 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
2016-03-21 22:03 - 2016-06-14 22:03 - 03611584 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2014-05-15 20:39 - 2014-05-15 20:39 - 00417800 _____ () C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe
2016-05-02 17:22 - 2016-06-14 22:03 - 02665920 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
2016-05-02 17:22 - 2016-06-14 22:03 - 01988544 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
2016-05-02 17:22 - 2016-06-14 22:03 - 01840576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
2016-03-21 18:21 - 2016-06-14 22:03 - 00207296 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-08-04 15:46 - 2016-08-04 15:46 - 00959168 _____ () C:\Users\Manuela\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64\ClientTelemetry.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 00130048 _____ () C:\WINDOWS\SYSTEM32\CHARTV.dll
2016-08-15 09:31 - 2016-08-15 09:32 - 00071168 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.7.102.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2016-08-15 09:31 - 2016-08-15 09:32 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.7.102.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-08-15 09:31 - 2016-08-15 09:32 - 35290624 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.7.102.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-08-10 09:55 - 2016-08-02 10:15 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-08-10 09:55 - 2016-08-02 10:01 - 09761280 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-08-10 09:55 - 2016-08-02 09:53 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-08-10 09:55 - 2016-08-02 09:53 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-08-10 09:55 - 2016-08-02 09:54 - 01033728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2016-08-10 09:55 - 2016-08-02 09:54 - 02438144 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-08-10 09:55 - 2016-08-02 09:56 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-05-02 17:22 - 2016-06-14 22:03 - 00034240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
2016-05-02 17:22 - 2016-06-14 22:03 - 00920000 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
2016-08-16 09:58 - 2016-08-16 09:58 - 00017408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2016-08-16 09:58 - 2016-08-16 09:58 - 13475840 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2016-06-03 10:47 - 2016-06-03 10:47 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll
2016-03-04 13:26 - 2016-03-04 13:27 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2015-10-05 19:53 - 2015-12-29 13:17 - 00110952 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll
2015-10-05 19:53 - 2015-12-29 13:17 - 00253800 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\collector.dll
2015-10-05 19:53 - 2015-12-29 13:17 - 00295272 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\stat.dll
2015-10-05 19:53 - 2015-12-29 13:17 - 00104296 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
2015-10-05 19:53 - 2015-12-29 13:17 - 00020328 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
2015-10-05 19:53 - 2015-12-29 13:17 - 00044392 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll
2014-12-04 09:57 - 2013-09-04 01:53 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-08-15 11:58 - 2016-06-14 22:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2013-08-22 15:25 - 2016-07-26 15:52 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-229970298-3033678992-2849718017-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Manuela\Pictures\13599902_925860194203749_5637586615578190430_n.jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKLM\...\StartupApproved\Run32: => "LogitechQuickCamRibbon"
HKLM\...\StartupApproved\Run32: => "PDFPrint"
HKU\S-1-5-21-229970298-3033678992-2849718017-1001\...\StartupApproved\StartupFolder: => "YouScreen.lnk"
HKU\S-1-5-21-229970298-3033678992-2849718017-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-229970298-3033678992-2849718017-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-229970298-3033678992-2849718017-1001\...\StartupApproved\Run: => "Zona"
HKU\S-1-5-21-229970298-3033678992-2849718017-1001\...\StartupApproved\Run: => "Gyazo"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [WirelessDisplay-Infra-In-TCP] => (Allow) %systemroot%\system32\CastSrv.exe
FirewallRules: [{1C516A79-DA47-4436-B088-4A411827CA4B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Splinter Cell\system\splintercell.exe
FirewallRules: [{307F04A3-1517-4F89-A36C-97D8624471FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Splinter Cell\system\splintercell.exe
FirewallRules: [{FC146166-4F1D-4056-8AE7-6B5DCC0C33D2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Splinter Cell Blacklist\Blacklist_Launcher.exe
FirewallRules: [{ECA6E5AC-6F96-49B4-9224-661C4EB9868E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Splinter Cell Blacklist\Blacklist_Launcher.exe
FirewallRules: [{7D645E32-3792-467E-BA6C-B51208CDEF6B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe
FirewallRules: [{0F5A46CD-AB9C-4ED0-B387-E89E9560B7AE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe
FirewallRules: [{2A1FF6F6-AED7-474C-9144-FA55BD65D0DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe
FirewallRules: [{4779C6F8-D2FE-46A4-A27B-13967E5613B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe
FirewallRules: [{74174263-ADD5-4B7D-A6FE-44AB68E73235}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Settlers Online\nw.exe
FirewallRules: [{86CD2BCD-360F-4B9B-8949-A2ADFA1B99EC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Settlers Online\nw.exe
FirewallRules: [{91C15654-D38C-4DC1-BA74-E04DA5B617F5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metro Last Light Redux\metro.exe
FirewallRules: [{CB18395D-3051-402A-BEF3-EEB71CF30CA8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metro Last Light Redux\metro.exe
FirewallRules: [{1A8D5943-592E-422F-80FF-8440937D64DD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\bin\win32\vrmonitor.exe
FirewallRules: [{A9CE950C-0529-4564-9EF5-BEE842E50065}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\bin\win32\vrmonitor.exe
FirewallRules: [{6B04171A-3B31-48E9-AF55-8D1C943836FB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{0910C31D-36A5-4CD7-B1D6-6D9C6B52A96A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sacred Gold\Sacred.exe
FirewallRules: [{36986B63-F7B4-4217-824B-8192714330F2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sacred Gold\Sacred.exe
FirewallRules: [{BFB6AC7F-D2B2-4FA5-BC46-FC8D9D38DFF4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Secret World\ClientPatcher.exe
FirewallRules: [{8F4FBF37-6C77-4A1B-B4E5-6DC589435358}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Secret World\ClientPatcher.exe
FirewallRules: [{DF5D0E1D-C93F-4D69-A204-DED88FE15FEC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe
FirewallRules: [{DEEB64F8-5237-4A63-AF03-1F7C28140874}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe
FirewallRules: [{6485BDAB-FEE5-4EE4-9C18-68C854579AA1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WOG\disasm.exe
FirewallRules: [{5C84D1A7-3863-4E01-B1F1-CB382A2955F5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WOG\disasm.exe
FirewallRules: [{9210FE29-2E65-4A7C-BDDB-DA48742D4612}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe
FirewallRules: [{90944D90-3D59-49A8-A6E9-6B710831122B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe
FirewallRules: [{B4034BE6-67AD-4EB1-8AB0-23DDBBF85A8D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{B9C5BAEC-1DE4-4A4A-BF44-7E8F1173D504}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{4167494D-CAF8-436D-B7E6-103508B64EF7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{5AC2E6F2-4BBE-4093-A58E-CBC80B22D0C1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{F85DDB1D-D61D-4886-9C98-61DCDAC06FD9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Codename 47\Setup.exe
FirewallRules: [{1B30B7C3-9B5A-46D6-A6BF-694D87253CF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Codename 47\Setup.exe
FirewallRules: [{FD527DD3-CA9E-4CD5-9485-892BD7D33869}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Codename 47\Hitman.Exe
FirewallRules: [{28CB7A6C-96F4-4EA1-B425-0973799C12B2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman Codename 47\Hitman.Exe
FirewallRules: [{A67354D7-F6A3-4973-A56F-396ACAFFD828}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe
FirewallRules: [{FF40E991-3019-4165-B506-A524BFADB6A0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe
FirewallRules: [{BF5950C4-C86D-46E5-BE72-3BBDFED73A04}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age of Conan\ConanPatcher.exe
FirewallRules: [{2DBCF020-E593-4A4D-9196-19E1599A85C8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age of Conan\ConanPatcher.exe
FirewallRules: [{B826A588-53D7-40EB-AC71-959AB5417060}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe
FirewallRules: [{EBE99E39-8FAF-495F-8E45-D5400374BEBF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe
FirewallRules: [{032EBBF5-F624-431C-A414-8315F4151588}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Anno 1404\Anno4.exe
FirewallRules: [{673C075A-F7CB-41BA-8AAE-ECB6B008DD2F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Anno 1404\Anno4.exe
FirewallRules: [{9560D171-B23C-4D91-A58D-38BCC31DBE38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RESIDENT EVIL REVELATIONS 2\rerev2.exe
FirewallRules: [{61E927E0-3B2D-4430-8880-791DCE7F4BFF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RESIDENT EVIL REVELATIONS 2\rerev2.exe
FirewallRules: [{3EDB1671-9D32-47CA-90BF-4F0E5666E32A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Overlord\Config.exe
FirewallRules: [{1303E923-F53D-4C21-8C24-ECDE5F87DC18}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Overlord\Config.exe
FirewallRules: [{22E3D121-0B5D-44DF-8F47-B8790A9D7C5D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Overlord\Overlord.exe
FirewallRules: [{11E9A159-3C70-4C58-AA8A-244167956598}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Overlord\Overlord.exe
FirewallRules: [{0FB35A19-6783-4DAE-A7B8-DF8852080884}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metro 2033\metro2033.exe
FirewallRules: [{E42B93B1-570C-4478-81F8-30763FC8FF73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metro 2033\metro2033.exe
FirewallRules: [{01A04C36-1385-4B20-AEB2-DA5C275BD537}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Anno Online\nw.exe
FirewallRules: [{2D9B6864-59C2-44DB-8CD8-A680163AB1D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Anno Online\nw.exe
FirewallRules: [{EEFDF5D7-32DA-4C85-B810-9AA2905D3FF2}] => (Allow) C:\Program Files (x86)\SprgFiles\downloader.exe
FirewallRules: [{6FC9DC0B-4546-49C8-8B40-CAA8A6F8987C}] => (Allow) C:\Program Files (x86)\SprgFiles\downloader.exe
FirewallRules: [{CF2D6D7B-2899-4ADA-9B74-D2956EAC3945}] => (Allow) C:\Program Files (x86)\SprgFiles\SprgFiles.exe
FirewallRules: [{01C53284-254C-47BA-9B8C-DCB28406A6F9}] => (Allow) C:\Program Files (x86)\SprgFiles\SprgFiles.exe
FirewallRules: [{558157DA-B8FC-4E46-AD30-5FFB30A4B88A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\divinity2_dev_cut\Autorun.exe
FirewallRules: [{1F7FA835-AAB9-4827-81B5-9CDABA77A641}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\divinity2_dev_cut\Autorun.exe
FirewallRules: [{DB7FC5BF-A54F-4195-9B25-11B852A063C2}] => (Allow) C:\Users\Manuela\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{2DB5D130-F081-4B03-B683-CDE0A924694B}] => (Allow) C:\Users\Manuela\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{F8F6C6F3-82E3-4C04-A7E4-823B52FAD2ED}] => (Allow) C:\Users\Manuela\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{C9DEF067-367A-42E4-AA9D-FE46D37BA182}] => (Allow) C:\Users\Manuela\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8B5B7459-8E7D-4441-8D6E-223191D79367}] => (Allow) C:\Users\Manuela\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B4076755-BA4D-4584-8B9E-C5C0575ECAA3}] => (Allow) C:\Users\Manuela\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{DBAA318C-A506-4A8C-8132-2CE487A7587F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{CA71E15D-C94D-429A-8829-DF1383BF9259}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{B283B17D-E6E4-491C-8866-0109AD54C88E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{9634F80D-FE3B-403A-8D37-7C60EB534296}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{7ACEB092-BC7B-43E1-ABCB-6F12EA001B99}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{7D19612B-102A-49B8-8CFA-CFB5841033D9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{6E73F09F-2E3E-4618-961F-ACAF44F09ED2}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [UDP Query User{B975D877-7FA2-4DC1-ACC7-49EAEEB8071C}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{290027A1-BA45-4B50-84F2-619362D75B28}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{58098F12-3881-4D59-BFC5-E5D54B2A74E3}C:\users\manuela\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\manuela\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{CC5360E2-0072-4C33-9DCB-E15EA578ED6D}C:\users\manuela\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\manuela\appdata\roaming\spotify\spotify.exe
FirewallRules: [{D5BF71DC-D011-4ECF-A108-3494335F9D12}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{93E1AC48-E267-4254-94D0-653E8AE88976}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{6423A664-6CBC-48D0-B164-90AA16EF5CCF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{5341F4CC-73E0-4AB0-B1C9-4E3C30491194}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{458429EB-BC11-4C9C-AE65-75F1BC4A7737}] => (Allow) C:\Users\Manuela\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [{F5816426-CBA6-41CF-9DBB-A016BDC17C63}] => (Allow) C:\Program Files\CyberLink\PowerDirector12\PDR10.EXE
FirewallRules: [{7444B070-8E08-48C8-A0B1-22DE9F908422}] => (Allow) LPort=1900
FirewallRules: [{FFC0F777-525B-4416-8BC1-E5B95DBB29E8}] => (Allow) LPort=2869
FirewallRules: [{E7FB244F-0022-40A0-B0B6-83F6DE5AC5C1}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{3153B440-1248-49D1-92C5-B47D986ECBAA}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [TCP Query User{C05E5CC3-AB32-4059-9B4F-581B461409BB}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{9F84AF9E-FACE-4AFF-8B5C-BB0975BDBB92}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{3A67E4DD-E129-42A6-A455-62D85D7A046F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Guild 2 Renaissance\GuildII.exe
FirewallRules: [{71D20A5C-850D-4706-8599-E47C01898BBB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Guild 2 Renaissance\GuildII.exe
FirewallRules: [{9831D068-4087-49D9-997B-82499C211C2F}] => (Allow) C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe
FirewallRules: [{E3D1F125-819D-4352-9877-566408113DEC}] => (Allow) C:\Program Files (x86)\Firefox\bin\FirefoxCommand.exe
FirewallRules: [{B61E559B-B061-4C1A-A7F8-DF5D9AC2956E}] => (Allow) C:\Program Files (x86)\Firefox\Firefox.exe
FirewallRules: [{7173B55C-CD2E-490F-ADB1-2F440202283F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{31BC744D-543C-4291-91EC-45080700CA54}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Wiederherstellungspunkte =========================
10-08-2016 11:45:59 Windows Update
11-08-2016 14:20:30 Windows Modules Installer
15-08-2016 21:47:32 Windows Modules Installer
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (08/18/2016 08:09:16 PM) (Source: ESENT) (EventID: 413) (User: )
Description: SettingSyncHost (6788) Es konnte keine neue Protokolldatei erstellt werden, weil die Datenbank nicht auf das Protokolllaufwerk schreiben kann. Das Laufwerk ist möglicherweise schreibgeschützt, falsch konfiguriert, beschädigt oder hat zu wenig freien Speicherplatz. Fehler -1032.
Error: (08/18/2016 08:09:16 PM) (Source: ESENT) (EventID: 488) (User: )
Description: SettingSyncHost (6788) Der Versuch, die Datei "C:\WINDOWS\system32\edbtmp.log" zu erstellen, ist mit Systemfehler 5 (0x00000005): "Zugriff verweigert " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Erstellen von Dateien.
Error: (08/18/2016 08:09:06 PM) (Source: ESENT) (EventID: 454) (User: )
Description: SettingSyncHost (6788) {9A6FF685-6BC2-45FD-BF9A-C83D599F12B2}: Unerwarteter Fehler "-1216" bei der Datenbankwiederherstellung.
Error: (08/18/2016 08:09:06 PM) (Source: ESENT) (EventID: 494) (User: )
Description: SettingSyncHost (6788) {9A6FF685-6BC2-45FD-BF9A-C83D599F12B2}: Fehler -1216 bei der Datenbankwiederherstellung, da Verweise auf die Datenbank "C:\Users\Manuela\AppData\Local\Microsoft\Windows\SettingSync\metastore\meta.edb" festgestellt wurden, die nicht mehr vorhanden ist. Die Datenbank wurde nicht sauber heruntergefahren, bevor sie entfernt (oder möglicherweise verschoben oder umbenannt) wurde. Das Datenbankmodul lässt den Abschluss der Wiederherstellung für diese Instanz erst dann zu, wenn die fehlende Datenbank wieder verfügbar gemacht wird. Wenn die Datenbank tatsächlich nicht mehr verfügbar oder nicht mehr erforderlich ist, finden Sie Informationen zum Beheben dieses Fehlers in der Microsoft Knowledge Base oder unter dem Link "Weitere Informationen" am Ende dieser Meldung.
Error: (08/18/2016 08:09:06 PM) (Source: ESENT) (EventID: 413) (User: )
Description: SettingSyncHost (6788) Es konnte keine neue Protokolldatei erstellt werden, weil die Datenbank nicht auf das Protokolllaufwerk schreiben kann. Das Laufwerk ist möglicherweise schreibgeschützt, falsch konfiguriert, beschädigt oder hat zu wenig freien Speicherplatz. Fehler -1032.
Error: (08/18/2016 08:09:06 PM) (Source: ESENT) (EventID: 488) (User: )
Description: SettingSyncHost (6788) Der Versuch, die Datei "C:\WINDOWS\system32\edbtmp.log" zu erstellen, ist mit Systemfehler 5 (0x00000005): "Zugriff verweigert " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Erstellen von Dateien.
Error: (08/18/2016 08:08:56 PM) (Source: ESENT) (EventID: 454) (User: )
Description: SettingSyncHost (6788) {A95F31B8-65C9-4EC7-86CF-E6D653EF4AEB}: Unerwarteter Fehler "-1216" bei der Datenbankwiederherstellung.
Error: (08/18/2016 08:08:56 PM) (Source: ESENT) (EventID: 494) (User: )
Description: SettingSyncHost (6788) {A95F31B8-65C9-4EC7-86CF-E6D653EF4AEB}: Fehler -1216 bei der Datenbankwiederherstellung, da Verweise auf die Datenbank "C:\Users\Manuela\AppData\Local\Microsoft\Windows\SettingSync\metastore\meta.edb" festgestellt wurden, die nicht mehr vorhanden ist. Die Datenbank wurde nicht sauber heruntergefahren, bevor sie entfernt (oder möglicherweise verschoben oder umbenannt) wurde. Das Datenbankmodul lässt den Abschluss der Wiederherstellung für diese Instanz erst dann zu, wenn die fehlende Datenbank wieder verfügbar gemacht wird. Wenn die Datenbank tatsächlich nicht mehr verfügbar oder nicht mehr erforderlich ist, finden Sie Informationen zum Beheben dieses Fehlers in der Microsoft Knowledge Base oder unter dem Link "Weitere Informationen" am Ende dieser Meldung.
Error: (08/18/2016 08:08:56 PM) (Source: ESENT) (EventID: 413) (User: )
Description: SettingSyncHost (6788) Es konnte keine neue Protokolldatei erstellt werden, weil die Datenbank nicht auf das Protokolllaufwerk schreiben kann. Das Laufwerk ist möglicherweise schreibgeschützt, falsch konfiguriert, beschädigt oder hat zu wenig freien Speicherplatz. Fehler -1032.
Error: (08/18/2016 08:08:56 PM) (Source: ESENT) (EventID: 488) (User: )
Description: SettingSyncHost (6788) Der Versuch, die Datei "C:\WINDOWS\system32\edbtmp.log" zu erstellen, ist mit Systemfehler 5 (0x00000005): "Zugriff verweigert " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Erstellen von Dateien.
Systemfehler:
=============
Error: (08/18/2016 07:09:53 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}{F72671A9-012C-4725-9D2F-2A4D32D65169}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar
Error: (08/18/2016 06:40:09 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}{F72671A9-012C-4725-9D2F-2A4D32D65169}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar
Error: (08/18/2016 06:39:52 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Übermittlungsoptimierung" wurde nicht richtig gestartet.
Error: (08/18/2016 06:34:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069 = Der Dienst konnte wegen einer fehlerhaften Anmeldung nicht gestartet werden.
Error: (08/18/2016 06:34:48 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "WSearch" konnte sich nicht als "NT AUTHORITY\SYSTEM" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%50 = Die Anforderung wird nicht unterstützt.
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (08/18/2016 06:34:19 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Microsoft Office-Klick-und-Los-Dienst" wurde unerwartet beendet. Dies ist bereits 4 Mal passiert.
Error: (08/18/2016 06:34:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (08/18/2016 10:18:47 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Intel(R) Capability Licensing Service Interface" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts.
Error: (08/18/2016 10:17:55 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Intel(R) Capability Licensing Service Interface" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts.
Error: (08/18/2016 10:17:40 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Skype Click to Call Updater" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz
Prozentuale Nutzung des RAM: 27%
Installierter physikalischer RAM: 8144.44 MB
Verfügbarer physikalischer RAM: 5900.62 MB
Summe virtueller Speicher: 9424.44 MB
Verfügbarer virtueller Speicher: 7170.2 MB
==================== Laufwerke ================================
Drive c: (Boot) (Fixed) (Total:869.36 GB) (Free:395.65 GB) NTFS
Drive d: (Recover) (Fixed) (Total:60 GB) (Free:36.75 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== Ende von Addition.txt ============================ Ich hoffe, jetzt stimmt alles! |