Schritt 2 und 3 noch in Arbeit! Code:
# AdwCleaner v6.044 - Bericht erstellt am 22/03/2017 um 21:55:43
# Aktualisiert am 28/02/2017 von Malwarebytes
# Datenbank : 2017-03-20.1 [Lokal]
# Betriebssystem : Windows 10 Home (X86)
# Benutzername : Klaus - KLAUS-PC
# Gestartet von : C:\Users\Klaus\Desktop\AdwCleaner_6.044.exe
# Modus: Löschen
# Unterstützung : https://www.malwarebytes.com/support
***** [ Dienste ] *****
***** [ Ordner ] *****
***** [ Dateien ] *****
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Verknüpfungen ] *****
***** [ Aufgabenplanung ] *****
***** [ Registrierungsdatenbank ] *****
***** [ Browser ] *****
*************************
:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
:: "Image File Execution Options" Schlüssel gelöscht
:: "Prefetch" Dateien gelöscht
:: Proxy Einstellungen zurückgesetzt
:: Firewall Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [15222 Bytes] - [21/03/2017 11:20:28]
C:\AdwCleaner\AdwCleaner[C2].txt - [1130 Bytes] - [22/03/2017 21:55:43]
C:\AdwCleaner\AdwCleaner[R0].txt - [12140 Bytes] - [12/04/2014 12:25:49]
C:\AdwCleaner\AdwCleaner[S0].txt - [11373 Bytes] - [12/04/2014 12:27:33]
C:\AdwCleaner\AdwCleaner[S1].txt - [14291 Bytes] - [21/03/2017 10:59:48]
C:\AdwCleaner\AdwCleaner[S2].txt - [14362 Bytes] - [21/03/2017 11:15:59]
C:\AdwCleaner\AdwCleaner[S3].txt - [1708 Bytes] - [22/03/2017 21:54:55]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [1572 Bytes] ########## Schritt 2: Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 22.03.17
Scan-Zeit: 22:10
Protokolldatei: mbam.txt
Administrator: Ja
-Softwaredaten-
Version: 3.0.6.1469
Komponentenversion: 1.0.75
Version des Aktualisierungspakets: 1.0.1570
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10
CPU: x86
Dateisystem: NTFS
Benutzer: KLAUS-PC\Klaus
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Ergebnis: Abgeschlossen
Gescannte Objekte: 382191
Abgelaufene Zeit: 13 Min., 44 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)
Modul: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswert: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 0
(keine bösartigen Elemente erkannt)
Datei: 5
Adware.SaMon, C:\WINDOWS\SYSTEM32\WEBSTEROIDS.B324755F3F87.DLL.VIRUS, In Quarantäne, [6821], [47784],1.0.1570
PUP.Optional.IoloSC, C:\USERS\KLAUS\DOWNLOADS\SCUDOWNLOADER(1).EXE, In Quarantäne, [2556], [349236],1.0.1570
PUP.Optional.IoloSC, C:\USERS\KLAUS\DOWNLOADS\SCUDOWNLOADER.EXE, In Quarantäne, [2556], [349236],1.0.1570
PUP.Optional.Conduit, C:\USERS\KLAUS\DOWNLOADS\ADWCLEANER_TSV465LOC.EXE, In Quarantäne, [718], [298009],1.0.1570
PUP.Optional.ASK, C:\WINDOWS\INSTALLER\B38C7F1.MSI, In Quarantäne, [649], [113867],1.0.1570
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
(end) Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x86) Version: 15-03-2017
durchgeführt von Klaus (22-03-2017 22:44:39)
Gestartet von C:\Users\Klaus\Desktop
Microsoft Windows 10 Home Version 1607 (X86) (2016-10-14 10:17:07)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-1016556084-3091970497-507946437-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1016556084-3091970497-507946437-503 - Limited - Disabled)
Gast (S-1-5-21-1016556084-3091970497-507946437-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1016556084-3091970497-507946437-1002 - Limited - Enabled)
Klaus (S-1-5-21-1016556084-3091970497-507946437-1001 - Administrator - Enabled) => C:\Users\Klaus
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
[verify-U] AVS 2.1.9 (HKLM\...\[verify-U] AVS) (Version: 2.1.9 - :cybits: GmbH)
2007 Microsoft Office system (HKLM\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Adobe Acrobat Reader DC - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.023.20070 - Adobe Systems Incorporated)
Adobe Flash Player 24 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (HKLM\...\Adobe Shockwave Player) (Version: 12.0.0.112 - Adobe Systems, Inc.)
Alice Greenfingers (HKLM\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}) (Version: - Oberon Media)
ANT Drivers Installer x86 (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Apple Application Support (HKLM\...\{A922C4B7-50E0-4787-A94C-59DBF3C65DBE}) (Version: 3.0 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{0592EF96-69D8-4E4B-9CC9-88F58EA86F01}) (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (HKLM\...\{C6579A65-9CAE-4B31-8B6B-3306E0630A66}) (Version: 2.1.3.127 - Apple Inc.)
Atheros Client Installation Program (HKLM\...\{D1434266-0486-4469-B338-A60082CC04E1}) (Version: 1.0.1.0805 - Atheros)
ATI Catalyst Install Manager (HKLM\...\{6848704E-C8D4-4F4F-9181-5926D4A11E98}) (Version: 3.0.741.0 - ATI Technologies, Inc.)
AVS Update Manager 1.0 (HKLM\...\AVS Update Manager_is1) (Version: - Online Media Technologies Ltd.)
AVS Video Editor 6 (HKLM\...\AVS Video Editor_is1) (Version: 6.3.2.234 - Online Media Technologies Ltd.)
AVS YouTube Uploader version 2.1 (HKLM\...\AVS YouTube Uploader 2.1_is1) (Version: - Online Media Technologies Ltd.)
AVS4YOU Software Navigator 1.3 (HKLM\...\AVS4YOU Software Navigator_is1) (Version: - Online Media Technologies Ltd.)
B1315AppGuid (Version: 1.0.0 - DATEV eG) Hidden
BatteryLifeExtender (HKLM\...\{AA16A9E5-40E9-44F5-801E-6B3D3CFE79E5}) (Version: 1.0.0 - Samsung)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Brother MFL-Pro Suite MFC-5490CN (HKLM\...\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}) (Version: 1.0.1.0 - Brother Industries, Ltd.)
ccc-core-static (Version: 2009.0901.2227.38495 - ATI) Hidden
ChargeableUSB (HKLM\...\{92D50865-FC60-4EA8-BA7A-5581B0D13EFB}) (Version: 1.0.0.0 - SAMSUNG)
chip 1-click download service (HKLM\...\{503CA94E-0834-4CEE-AD92-BA17AF4E809A}) (Version: 3.6.9.0 - Chip Digital GmbH)
Corel Snapfire (HKLM\...\{0EE4030A-8FD4-4798-A21D-17E525B1F7CF}) (Version: 1.20.0000 - Corel Corporation)
CyberLink DVD Suite (HKLM\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 6.0.2806 - CyberLink Corp.)
CyberLink LabelPrint (HKLM\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1916 - CyberLink Corp.)
CyberLink Power2Go (HKLM\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.3108a - CyberLink Corp.)
CyberLink PowerDirector (HKLM\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 7.0.3213 - CyberLink Corp.)
CyberLink PowerDVD 8 (HKLM\...\InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}) (Version: 8.0.2815b - CyberLink Corp.)
CyberLink PowerProducer (HKLM\...\InstallShield_{B7A0CE06-068E-11D6-97FD-0050BACBF861}) (Version: 5.0.1.1812 - CyberLink Corp.)
CyberLink YouCam (HKLM\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 2.0.2907 - CyberLink Corp.)
Dairy Dash (HKLM\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100}) (Version: - Oberon Media)
DATEV Installation V.2.73 (HKLM\...\DATEVB00000482.0) (Version: - )
Dropbox (HKU\S-1-5-21-1016556084-3091970497-507946437-1001\...\Dropbox) (Version: 21.4.25 - Dropbox, Inc.)
Easy Display Manager (HKLM\...\{17283B95-21A8-4996-97DA-547A48DB266F}) (Version: 3.0 - Samsung Electronics Co., Ltd.)
Easy Network Manager (HKLM\...\{B660E0D0-A8CB-45A7-96FB-93E8C915A0B2}) (Version: 4.2.4 - Samsung)
Easy SpeedUp Manager (HKLM\...\{EF367AA4-070B-493C-9575-85BE59D789C9}) (Version: 3.0.0.4 - Samsung Electronics Co.,Ltd.)
EasyBatteryManager (HKLM\...\{178EE5F4-0F86-4BF0-A0D1-9790AFF409D1}) (Version: 4.0.0.2 - Samsung)
Elevated Installer (Version: 5.1.1.0 - Garmin Ltd or its subsidiaries) Hidden
Elf Bowling Hawaiian Vacation (HKLM\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115246907}) (Version: - Oberon Media)
Farm Frenzy 2 (HKLM\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}) (Version: - Oberon Media)
Firebird SQL Server - MAGIX Edition (HKLM\...\{34EB6245-C8D0-4D8A-B8D8-EEBFF7A91485}) (Version: 2.1.27.0 - MAGIX AG)
Foxit Reader 5.1 (HKLM\...\Foxit Reader_is1) (Version: 5.1.4.104 - Foxit Corporation)
Free Mp3 Wma Converter V 1.9 (HKLM\...\Free Mp3 Wma Converter_is1) (Version: 1.9.0.0 - Koyote Soft)
Game Pack (HKLM\...\{63eafc52-b963-4297-a7eb-d412944e7065}_is1) (Version: 5.3.0.10 - Oberon Media, Inc.)
Garmin Express (HKLM\...\{9fbf4745-0038-4ed3-aee1-87af9b9ef8f1}) (Version: 5.1.1.0 - Garmin Ltd or its subsidiaries)
Garmin Express (Version: 5.1.1.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (Version: 5.1.1.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Training Center (HKLM\...\{078C3718-6621-4FC8-B03A-502FFF83F600}) (Version: 3.5.3 - Garmin Ltd or its subsidiaries)
Garmin USB Drivers (HKLM\...\{65F9E1F3-A2C1-4AA9-9F33-A3AEB0255F0E}) (Version: 2.3.0.0 - Garmin Ltd or its subsidiaries)
Google Chrome (HKLM\...\Google Chrome) (Version: 33.0.1750.154 - Google Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Toolbar for Internet Explorer (HKLM\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: - Google Inc.)
Google Toolbar for Internet Explorer (Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.23.9 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
Google+ Auto Backup (HKLM\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Version: 1.0.21.81 - Google)
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation)
IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.28 - Irfan Skiljan)
iTunes (HKLM\...\{C197BC08-3D82-4651-8886-E68C21578A38}) (Version: 11.1.3.8 - Apple Inc.)
Java 8 Update 73 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation)
Junk Mail filter update (Version: 14.0.8089.726 - Microsoft Corporation) Hidden
LogMeIn (HKLM\...\{34F93E31-E1A0-421C-8E86-BCF7C4193A91}) (Version: 4.0.982 - LogMeIn, Inc.)
LSI HDA Modem (HKLM\...\LSI Soft Modem) (Version: 2.2.97 - LSI Corporation)
MAGIX Filme auf DVD 9 Download-Version 9.0.0.12 (D) (HKLM\...\MAGIX Filme auf DVD 9 Download-Version D) (Version: 9.0.0.12 - MAGIX AG)
MAGIX Screenshare (HKLM\...\MAGIX Screenshare D) (Version: 4.3.6.1987 - MAGIX AG)
Malwarebytes Version 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes)
Marvell Miniport Driver (HKLM\...\Marvell Miniport Driver) (Version: 10.70.3.3 - Marvell)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM\...\{95120000-0122-0407-0000-0000000FF1CE}) (Version: 12.0.6423.1000 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office Small Business Connectivity Components (HKLM\...\{A939D341-5A04-4E0A-BB55-3E65B386432D}) (Version: 2.0.7024.0 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (HKLM\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1016556084-3091970497-507946437-1001\...\OneDriveSetup.exe) (Version: 17.3.6798.0207 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50905.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{F46E21DF-5BE1-48E2-8390-5EEA8B25E36A}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 52.0.1 (x86 de) (HKLM\...\Mozilla Firefox 52.0.1 (x86 de)) (Version: 52.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 52.0.1.6284 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Namuga 1.3M Webcam (HKLM\...\{71A51B59-E7D3-11DB-A386-005056C00008}) (Version: 1.00.0000 - Vimicro Corporation)
PaperPort Image Printer (HKLM\...\{2BC2781A-F7F6-452E-95EB-018A522F1B2C}) (Version: 1.00.0000 - Nuance Communications, Inc.)
PC Speed Repair (HKLM\...\{75EF0384-FE3A-470D-B2C9-F6CAA6387ED6}) (Version: 2.4.7 - ShieldApps)
PDF24 Creator 7.9.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org)
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PMB (HKLM\...\{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}) (Version: 5.2.00.03250 - Sony Corporation)
QuickTime (HKLM\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Software (HKLM\...\{F2BC3383-F000-410C-A038-3846ADBE8D90}) (Version: 1.01.0088 - REALTEK Semiconductor Corp.)
Samsung Recovery Solution 4 (HKLM\...\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}) (Version: 4.0.0.6 - Samsung)
Samsung Support Center (HKLM\...\{4D2121FE-5CCC-4D47-B3A0-BF56045A5099}) (Version: 1.0.1 - Samsung)
Samsung Update Plus (HKLM\...\{D3F2FAA5-FEC4-42AA-9ABA-1F763919A2B5}) (Version: 2.0 - Samsung Electronics Co., Ltd.)
ScanSoft PaperPort 11 (HKLM\...\{02570AE0-BEE0-4A6C-BE3F-D806E9F2EA17}) (Version: 11.2.0000 - Nuance Communications, Inc.)
Skype Click to Call (HKLM\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
Skype™ 7.33 (HKLM\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.33.105 - Skype Technologies S.A.)
Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.)
SQLXML4 (HKLM\...\{B4FC780C-94E2-41CB-970D-4B61C1905E5E}) (Version: 9.00.4035.00 - Microsoft Corporation)
StarBurn Version 12r10 (Build 0x20091021) (HKLM\...\StarBurn_is1) (Version: - Rocket Division Software) <==== ACHTUNG
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 13.2.4.12 - Synaptics Incorporated)
t@x 2014 (HKU\S-1-5-21-1016556084-3091970497-507946437-1001\...\{2547CF96-DBB7-4EDD-9327-0EFDD0D1FA8A}) (Version: 21.00.8480 - Buhl Data Service GmbH)
tax 2015 (HKLM\...\{4CF96070-DEE5-43B5-B6A7-23AC07BC0C77}) (Version: 22.00.8811 - Buhl Data Service GmbH)
tax 2016 (HKLM\...\{30E85B0C-57D8-4ECE-814B-264550A92FAB}) (Version: 23.00.1146 - Buhl Data Service GmbH)
tax 2017 (HKLM\...\{B0AB97B4-F1E7-4CD6-A93B-1ADC1A4E19E8}) (Version: 24.00.1375 - Buhl Data Service GmbH)
TeamViewer 10 (HKLM\...\TeamViewer) (Version: 10.0.47484 - TeamViewer)
Try Corel Snapfire muvee autoProducer add on (Version: 1.00.0000 - Ihr Firmenname) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_PROHYBRIDR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft)
Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft)
Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_PROHYBRIDR_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_PROHYBRIDR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_PROHYBRIDR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft)
User Guide (HKLM\...\{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}) (Version: 1.0 - )
VLC media player 1.0.3 (HKLM\...\VLC media player) (Version: 1.0.3 - VideoLAN Team)
WEB.DE MailCheck für Windows (HKLM\...\1&1 Mail & Media GmbH Toolbar IE8) (Version: 2.6.9.0 - 1&1 Mail & Media GmbH)
WEB.DE Softwareaktualisierung (HKLM\...\1&1 Mail & Media GmbH 1und1Softwareaktualisierung) (Version: 4.0.3.0 - 1&1 Mail & Media GmbH)
Windows Driver Package - Dynastream Innovations (libusb0) LibUsbDevices (07/07/2009 1.12.2) (HKLM\...\24DA573F901348FFDFF7717497830D45BE0C362E) (Version: 07/07/2009 1.12.2 - Dynastream Innovations)
Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0) (HKLM\...\49CF605F02C7954F4E139D18828DE298CD59217C) (Version: 06/03/2009 2.3.0.0 - Garmin)
Windows Live Anmelde-Assistent (HKLM\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Sync (HKLM\...\{76618402-179D-4699-A66B-D351C59436BC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Windows-Treiberpaket - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Windows-Treiberpaket - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
WinRAR (HKLM\...\WinRAR archiver) (Version: - )
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{04EBE69E-2DED-44F6-9854-9A3988F751ED}\InprocServer32 -> C:\Users\Klaus\AppData\Local\Dropbox\Update\1.3.51.1\psuser.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}\InprocServer32 -> C:\Users\Klaus\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{2027D000-8CEB-4191-9620-15DD2561855F}\InprocServer32 -> C:\Users\Klaus\AppData\Local\Dropbox\Update\1.3.57.1\psuser.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{3059C9E6-9EDC-4C89-933E-C65623F8FD60}\localserver32 -> C:\Users\Klaus\AppData\Local\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{449CFB1B-1C07-48EA-9A9A-7A7881C2B49B}\InprocServer32 -> C:\Users\Klaus\AppData\Local\Dropbox\Update\1.3.59.1\psuser.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{6d05bf60-3eaf-4a97-87c5-10cce505435b}\localserver32 -> C:\Users\Klaus\AppData\Local\Temp\{9c0ba3c1-2b67-45eb-bf69-bed9658d28d2}\IDriver.NonElevated.exe => (Der Dateneintrag hat 11 mehr Zeichen).
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{87DC457B-B35D-48AC-BD42-BDF35EF623CE}\localserver32 -> C:\Users\Klaus\AppData\Local\Dropbox\Update\1.3.59.1\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{9FAA38ED-5635-44F7-9BE0-8CAFE29B3783}\localserver32 -> C:\Users\Klaus\AppData\Local\Dropbox\Update\1.3.59.1\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{BB6410D8-F879-4184-9C5C-6A02D16AE0B3}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{C0DD324D-A74F-4533-84AD-030F76771C77}\localserver32 -> C:\Users\Klaus\AppData\Local\Dropbox\Update\1.3.59.1\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{C32E3EEC-3C10-426E-95F3-38C7F139FADD}\localserver32 -> C:\Users\Klaus\AppData\Local\Dropbox\Update\1.3.59.1\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{CA1073A2-5F3F-4445-8E5E-7109BDCEDDBE}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 -> C:\Users\Klaus\AppData\Local\Dropbox\Update\1.3.27.29\psuser.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{D5A55D2D-C59D-42C3-A5BF-4C08EEE74339}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{E7A37920-253C-4FF1-B169-298A7CE6CAA9}\localserver32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Klaus\AppData\Roaming\Dropbox\bin\DropboxExt.14.0.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1016556084-3091970497-507946437-1001_Classes\CLSID\{FE819BE5-BADF-4370-9913-6FB84ABA6FB1}\InprocServer32 -> C:\Users\Klaus\AppData\Local\Dropbox\Update\1.3.59.1\psuser.dll (Dropbox, Inc.)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {0795DF25-C56A-4D8B-BA63-A2C599FCE5A8} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => %SystemRoot%\ehome\ehPrivJob.exe
Task: {097873EF-C53A-4071-9A79-F3D901D0E1D2} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Klaus\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
Task: {1230973C-2DCB-4EC8-AFB4-D282BBF7A90C} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1016556084-3091970497-507946437-1001Core1d23a61c29ba9b => C:\Users\Klaus\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-09] (Dropbox, Inc.)
Task: {198A6903-7142-4352-9B9D-BBA22660644C} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe
Task: {1A90A8B3-2B42-4620-B9E9-8F360369FD1A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => %SystemRoot%\ehome\mcupdate.exe
Task: {22FC3F00-07C5-4DE1-9F84-EEB9702DF954} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => %SystemRoot%\ehome\ehrec.exe
Task: {2305DEF5-962C-43C2-B137-6BA272EB80A9} - System32\Tasks\EasySpeedUpManager => C:\Program Files\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe [2009-08-23] (Samsung Electronics Co., Ltd.)
Task: {2E8BC9B0-BDB9-4E9F-A4F9-D6B8AC6C9FFE} - System32\Tasks\GarminUpdaterTask => C:\Program Files\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [2017-01-16] ()
Task: {30829DA0-1BAA-4F47-BF9E-E7F6ED0FC545} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => %SystemRoot%\ehome\ehPrivJob.exe
Task: {3BEA1269-71AA-491F-B309-219AE332725E} - System32\Tasks\EasyBatteryManager => C:\Program Files\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe [2009-08-01] (SAMSUNG Electronics co., LTD.)
Task: {40AE5E88-810B-4C52-9DC7-2FA010522BA5} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => %SystemRoot%\ehome\mcupdate.exe
Task: {43DD993F-00A1-46EB-945C-774807C5125A} - System32\Tasks\{4EE692CD-843A-4815-A4E9-FA5E6A45F531} => C:\Program Files\Skype\Phone\Skype.exe [2017-03-14] (Skype Technologies S.A.)
Task: {450A414F-692C-46C1-9AC4-92497D16F2FC} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => %SystemRoot%\ehome\ehPrivJob.exe
Task: {47C2D29E-9E4D-4D91-AE12-47DCA976EA9F} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => %SystemRoot%\ehome\ehPrivJob.exe
Task: {491C4756-8771-49A3-AE79-91EDEB50793D} - System32\Tasks\advSRS4 => C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe [2010-01-19] (SEC)
Task: {501312D6-1923-4F5D-9E5A-665FE315667C} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => %windir%\ehome\MCUpdate.exe
Task: {5C55623F-9CD1-4858-AC15-23084841B334} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => %SystemRoot%\ehome\mcupdate.exe
Task: {60600B73-0A3B-47E0-9092-BD03D38B94B2} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => %SystemRoot%\ehome\mcupdate.exe
Task: {6458BDCF-4753-422B-A773-FB14B0380B3B} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => %SystemRoot%\ehome\ehPrivJob.exe
Task: {65CAA3FC-6411-4E38-A61B-05EDDDD07C53} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe [2010-04-20] ()
Task: {66D59E4D-2020-4226-B0E6-4633BD8163D6} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => %SystemRoot%\ehome\ehPrivJob.exe
Task: {6A099255-DAE2-45F6-9F77-9E30B3FC6B7C} - System32\Tasks\Registration 1und1 Task => C:\Program Files\1und1Softwareaktualisierung\cdsupdclient.exe [2016-03-25] (1&1 Mail & Media GmbH)
Task: {6A7B9FBB-E293-4E66-A097-2884CC62B8E0} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => %SystemRoot%\ehome\mcupdate.exe
Task: {7366B38C-B7CB-49A5-AE9B-DC9EF847FB55} - System32\Tasks\BatteryLifeExtender => C:\Program Files\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [2009-08-12] (Samsung Electronics. Co. Ltd.)
Task: {7525F94C-573A-4AAD-B8B1-BC4E47D3CE00} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated)
Task: {763EA265-CBF6-435E-9BD8-D61F67755760} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => %SystemRoot%\ehome\ehPrivJob.exe
Task: {7B51D5A0-DBA7-4DBC-9C0F-3152FF668A9C} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => %SystemRoot%\ehome\ehrec.exe
Task: {7C39AFEA-9F57-48AF-A6F0-6F5EF48BC660} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1016556084-3091970497-507946437-1001UA1d23a61c5472f3 => C:\Users\Klaus\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-09] (Dropbox, Inc.)
Task: {7C46FD08-1243-4F3A-9313-3FF61C883D3A} - System32\Tasks\{36AF7C9B-3B45-4446-9387-B0336493ABB4} => Iexplore.exe hxxp://ui.skype.com/ui/0/7.0.0.102/de/abandoninstall?page=tsProgressBar
Task: {7DBEDEFD-518F-4EFE-99AE-F84A96112229} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-26] (Google Inc.)
Task: {7DDD83AF-A2A1-40C0-A524-FED7B8931888} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-26] (Google Inc.)
Task: {814EDA48-377A-4E0E-9C06-8F493364864C} - System32\Tasks\PCSpeedRepair_Start => C:\Program Files\PC Speed Repair\PCSpeedRepair.exe
Task: {844E1910-FAC2-4466-ADBA-2A709EF2874C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => %SystemRoot%\ehome\ehPrivJob.exe
Task: {86AABC58-8DA0-4A1A-90C8-7AE51DC464DB} - System32\Tasks\SamsungSupportCenter => C:\Program Files\Samsung\Samsung Support Center\SSCKbdHk.exe [2009-09-07] (SAMSUNG Electronics)
Task: {8A29FF2D-80A1-4DAC-8007-66FDEA4D5BE9} - System32\Tasks\EasyDisplayMgr => C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe [2009-09-12] (Samsung Electronics Co., Ltd.)
Task: {90D61C1E-A65D-4B5F-A847-025258DEC1B0} - System32\Tasks\Adobe Flash Player Updater => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2017-01-30] (Adobe Systems Incorporated)
Task: {91210341-8AD4-4871-8656-8ABD0492C0DA} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => %SystemRoot%\ehome\ehPrivJob.exe
Task: {922FE938-1748-4735-8331-BBF17E2B72AF} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2017-03-15] (Microsoft Corporation)
Task: {92E0867F-8B03-457D-B108-AD3DE6C5368C} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => %SystemRoot%\ehome\mcupdate.exe
Task: {9DE427DD-3C43-4699-9B13-66A3A7DB4373} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => %SystemRoot%\ehome\mcupdate.exe
Task: {BADCD1CD-8C3C-46B8-A002-911FC9DBEE8B} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => %SystemRoot%\ehome\ehPrivJob.exe
Task: {C05B0A34-48CB-4469-9B2F-B83F17047117} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => %SystemRoot%\ehome\ehPrivJob.exe
Task: {C9845C55-D8D4-4F9F-965E-1DD8FE2678ED} - System32\Tasks\PCSpeedRepair_Popup => C:\Program Files\PC Speed Repair\Splash.exe
Task: {CD8517F5-7615-4448-A396-68751820F791} - System32\Tasks\{DD144569-13B3-4780-9D0A-61ABDDF82E46} => Iexplore.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=7.1.0.105&LastError=12002
Task: {D5364B3A-382D-4027-BF2E-AD5D4720B672} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => %SystemRoot%\ehome\ehPrivJob.exe
Task: {F49FDCCC-02E8-4464-96C4-144C4E2515D7} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => %SystemRoot%\ehome\ehPrivJob.exe
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1016556084-3091970497-507946437-1001Core1d23a61c29ba9b.job => C:\Users\Klaus\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1016556084-3091970497-507946437-1001UA1d23a61c5472f3.job => C:\Users\Klaus\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
Shortcut: C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Network Shortcuts\Meine Websites auf MSN\target.lnk -> hxxp://www.msnusers.co
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2016-07-16 09:25 - 2016-07-16 09:25 - 00190976 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2017-03-15 08:21 - 2017-03-04 08:04 - 02048496 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2014-03-06 13:27 - 2007-08-21 12:59 - 00014616 _____ () C:\WINDOWS\System32\skypdfmonpro.dll
2016-11-08 18:14 - 2016-11-08 18:14 - 00326144 _____ () C:\Program Files\Garmin\Device Interaction Service\GpsImgWrapper.dll
2017-01-16 14:43 - 2017-01-16 14:43 - 00073216 _____ () C:\Program Files\Garmin\Device Interaction Service\FixBootSector.dll
2006-11-02 19:40 - 2006-11-02 19:40 - 00174656 _____ () C:\windows\system32\PSIService.exe
2009-09-16 22:57 - 2009-03-05 10:54 - 00311296 _____ () C:\windows\SYSTEM32\Rezip.exe
2017-03-22 22:08 - 2017-02-24 06:23 - 01732896 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll
2017-03-22 22:08 - 2017-02-24 06:23 - 01725392 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2010-01-24 16:49 - 2009-07-07 03:23 - 00247152 ____N () C:\Program Files\CyberLink\Shared files\RichVideo.exe
2017-03-15 08:21 - 2017-03-04 08:04 - 02048496 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2010-12-28 12:11 - 2010-03-15 11:28 - 00141824 _____ () C:\Program Files\WinRAR\rarext.dll
2016-07-16 09:25 - 2016-07-16 09:25 - 00108032 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-03-15 08:22 - 2017-03-04 07:24 - 00321536 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2017-03-15 08:20 - 2017-03-04 07:04 - 06726656 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-03-15 08:20 - 2017-03-04 06:58 - 01150464 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-10-14 11:29 - 2016-10-14 11:29 - 00526848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-03-15 08:20 - 2017-03-04 06:58 - 00779776 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2017-03-15 08:20 - 2017-03-04 06:58 - 01724928 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-03-15 08:20 - 2017-03-04 07:00 - 03158528 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2009-09-16 23:06 - 2006-08-12 04:48 - 00049152 _____ () C:\Program Files\Samsung\Easy Display Manager\HookDllPS2.dll
2012-06-17 15:56 - 2009-02-27 15:38 - 00139264 ____R () C:\Program Files\Brother\BrUtilities\BrLogAPI.dll
2017-01-30 12:52 - 2017-01-30 12:52 - 01926632 ____R () C:\Program Files\Skype\Phone\roottools.dll
2017-03-10 11:33 - 2017-03-06 21:59 - 00807232 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\dropbox_watchdog.dll
2017-03-10 11:33 - 2017-02-09 03:19 - 00035792 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd
2017-03-10 11:33 - 2017-02-09 03:19 - 00100296 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\_ctypes.pyd
2017-03-10 11:33 - 2017-02-09 03:19 - 00018888 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\select.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00019776 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd
2017-03-10 11:33 - 2017-02-09 03:19 - 00694224 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\unicodedata.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00020824 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd
2017-03-10 11:33 - 2017-02-09 03:20 - 00123856 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 01682768 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00020816 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd
2017-03-10 11:33 - 2017-02-09 03:19 - 00145864 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\pyexpat.pyd
2017-03-10 11:33 - 2017-02-09 03:20 - 00019408 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\faulthandler.pyd
2017-03-10 11:33 - 2017-02-09 03:19 - 00116688 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\pywintypes27.dll
2017-03-10 11:33 - 2017-02-09 03:22 - 00105928 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32api.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00022864 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\winffi.crt.compiled._winffi_crt.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00038712 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\fastpath.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00060736 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00024528 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32event.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00175560 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32gui.pyd
2017-03-10 11:33 - 2017-02-09 03:19 - 00392144 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\pythoncom27.dll
2017-03-10 11:33 - 2017-02-09 03:22 - 00020936 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\mmapfile.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00116176 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32security.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00381760 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00124880 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32file.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00026456 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\winffi.kernel32.compiled._winffi_kernel32.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00024016 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32clipboard.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00030160 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32pipe.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00043472 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32process.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00048592 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32service.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00057808 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32evtlog.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00024016 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32profile.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00246608 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00027488 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd
2017-03-10 11:33 - 2017-02-09 03:21 - 00241104 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\_jpegtran.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00022336 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00025432 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00028616 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32ts.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 01826104 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd
2017-03-10 11:33 - 2017-02-09 03:20 - 00083912 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\sip.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 01972536 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 03928896 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00531264 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00053072 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\winrpcserver.compiled._RPCServer.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00133432 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00224064 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00207680 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00022864 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\winffi.user32.compiled._winffi_user32.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00069968 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\windisplaytoast.compiled._DisplayToast.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00022872 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\winffi.iphlpapi.compiled._winffi_iphlpapi.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00021848 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\winffi.winerror.compiled._winffi_winerror.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00022872 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\winffi.wininet.compiled._winffi_wininet.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00350152 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\winxpgui.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00103232 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtWinExtras.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00023896 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00025936 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd
2017-03-10 11:33 - 2017-02-09 03:17 - 00036296 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\librsync.dll
2017-03-10 11:33 - 2017-03-06 22:01 - 00033112 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\enterprise_data.compiled._enterprise_data.pyd
2017-03-10 11:33 - 2016-12-02 22:44 - 00293392 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\EnterpriseDataAdapter.dll
2017-03-10 11:33 - 2017-03-06 22:01 - 00084288 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL
2017-03-10 11:33 - 2017-02-09 03:27 - 00017864 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\libEGL.dll
2017-03-10 11:33 - 2017-02-09 03:27 - 01631184 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2017-03-10 11:33 - 2017-03-06 22:01 - 00042816 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00171336 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00357688 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd
2017-03-10 11:33 - 2017-02-09 03:22 - 00060880 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\win32print.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00026456 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\winffi.winhttp.compiled._winffi_winhttp.pyd
2017-03-10 11:33 - 2017-03-06 22:01 - 00546104 _____ () C:\Users\Klaus\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd
2017-03-13 11:14 - 2017-03-13 11:16 - 00067072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x86__kzf8qxf38zg5c\SkypeHost.exe
2017-03-13 11:14 - 2017-03-13 11:16 - 00156672 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x86__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
IE trusted site: HKU\S-1-5-21-1016556084-3091970497-507946437-1001\...\internet -> internet
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-1016556084-3091970497-507946437-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Klaus\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\urlaub frankreich 082011 037.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
MSCONFIG\startupreg: ANT Agent => C:\Program Files\Garmin\ANT Agent\ANT Agent.exe
MSCONFIG\startupreg: CLMLServer => "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
MSCONFIG\startupreg: Corel Photo Downloader => C:\Program Files\Corel\Corel Snapfire\Corel PhotoDownloader.exe
MSCONFIG\startupreg: GrooveMonitor => "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
MSCONFIG\startupreg: gStart => C:\Garmin\gStart.exe
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: PDVD8LanguageShortcut => "C:\Program Files\CyberLink\PowerDVD8\Language\Language.exe"
MSCONFIG\startupreg: RemoteControl8 => "C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe"
MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\\Phone\Skype.exe" /nosplash /minimized
MSCONFIG\startupreg: UpdateLBPShortCut => "C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
MSCONFIG\startupreg: UpdatePDRShortCut => "C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"
MSCONFIG\startupreg: UpdatePPShortCut => "C:\Program Files\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerProducer" UpdateWithCreateOnce "Software\CyberLink\PowerProducer\5.0"
MSCONFIG\startupreg: UpdatePSTShortCut => "C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
==================== FirewallRules (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [WCF-NetTcpActivator-In-TCP-32bit] => (Allow) LPort=808
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [{92A49C63-D740-4A01-B74B-82293E1CA5C2}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot-S&D 2 Tray Icon
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
==================== Wiederherstellungspunkte =========================
04-03-2017 16:55:26 Geplanter Prüfpunkt
13-03-2017 13:36:21 Geplanter Prüfpunkt
16-03-2017 17:32:15 Installiert tax 2017
18-03-2017 13:49:23 Removed McAfee Virtual Technician
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (03/22/2017 10:45:04 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STMON BrtSTMON: [2017/03/22 22:45:04.826]: [00007172]: Don't Create FileMapping!!!!
Error: (03/22/2017 10:45:04 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STMON BrtSTMON: [2017/03/22 22:45:04.826]: [00007172]: FrendlyName : Brother MFC-5490CN Printer
Error: (03/22/2017 10:45:04 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STMON BrtSTMON: [2017/03/22 22:45:04.826]: [00007172]: Error : ExecMonitor()
Error: (03/22/2017 10:43:04 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STMON BrtSTMON: [2017/03/22 22:43:04.825]: [00007172]: Don't Create FileMapping!!!!
Error: (03/22/2017 10:43:04 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STMON BrtSTMON: [2017/03/22 22:43:04.825]: [00007172]: FrendlyName : Brother MFC-5490CN Printer
Error: (03/22/2017 10:43:04 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STMON BrtSTMON: [2017/03/22 22:43:04.824]: [00007172]: Error : ExecMonitor()
Error: (03/22/2017 10:41:04 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STMON BrtSTMON: [2017/03/22 22:41:04.830]: [00007172]: Don't Create FileMapping!!!!
Error: (03/22/2017 10:41:04 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STMON BrtSTMON: [2017/03/22 22:41:04.830]: [00007172]: FrendlyName : Brother MFC-5490CN Printer
Error: (03/22/2017 10:41:04 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STMON BrtSTMON: [2017/03/22 22:41:04.830]: [00007172]: Error : ExecMonitor()
Error: (03/22/2017 10:39:04 PM) (Source: Brother BrLog) (EventID: 1001) (User: )
Description: STMON BrtSTMON: [2017/03/22 22:39:04.830]: [00007172]: Don't Create FileMapping!!!!
Systemfehler:
=============
Error: (03/22/2017 10:34:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Google Update Service (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.
Error: (03/22/2017 10:34:46 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Google Update Service (gupdate) erreicht.
Error: (03/22/2017 10:32:00 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
und der APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (03/22/2017 10:31:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Apple Mobile Device" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.
Error: (03/22/2017 10:31:30 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Apple Mobile Device erreicht.
Error: (03/22/2017 10:31:28 PM) (Source: Service Control Manager) (EventID: 7016) (User: )
Description: Der Dienst "chip1click" hat einen ungültigen aktuellen Status gemeldet: 0
Error: (03/22/2017 10:31:28 PM) (Source: Service Control Manager) (EventID: 7016) (User: )
Description: Der Dienst "chip1click" hat einen ungültigen aktuellen Status gemeldet: 0
Error: (03/22/2017 10:31:27 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Error: (03/22/2017 10:31:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "LMIGuardianSvc" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.
Error: (03/22/2017 10:31:26 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst LMIGuardianSvc erreicht.
CodeIntegrity:
===================================
Date: 2017-03-21 12:09:47.220
Description: N/A
Date: 2017-03-19 18:08:49.561
Description: N/A
Date: 2017-03-16 18:01:57.346
Description: N/A
Date: 2017-03-05 11:23:12.033
Description: N/A
Date: 2017-02-03 11:37:22.753
Description: N/A
Date: 2017-02-03 11:37:22.751
Description: N/A
Date: 2017-02-03 11:37:22.747
Description: N/A
Date: 2017-02-03 11:37:22.745
Description: N/A
Date: 2017-02-03 11:37:22.717
Description: N/A
Date: 2017-02-03 11:37:22.671
Description: N/A
==================== Memory info ===========================
Processor: Intel(R) Core(TM)2 Duo CPU T6500 @ 2.10GHz
Prozentuale Nutzung des RAM: 62%
Installierter physikalischer RAM: 3036.61 MB
Verfügbarer physikalischer RAM: 1144.83 MB
Summe virtueller Speicher: 6108.61 MB
Verfügbarer virtueller Speicher: 3601.95 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:252.37 GB) (Free:120.47 GB) NTFS
Drive d: () (Fixed) (Total:198.29 GB) (Free:169.56 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: B4B6F23B)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=252.4 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=198.3 GB) - (Type=07 NTFS)
==================== Ende vom Addition.txt ============================ |