Hallo Matthias :party:
Vielen Dank für deine Zeit
Hier die Logs AdwCleaner[C01].txt Code:
# -------------------------------
# Malwarebytes AdwCleaner 8.0.4.0
# -------------------------------
# Build: 04-03-2020
# Database: 2020-04-08.2 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 04-10-2020
# Duration: 00:00:23
# OS: Windows 10 Home
# Cleaned: 204
# Failed: 1
***** [ Services ] *****
Deleted WCAssistantService
***** [ Folders ] *****
Deleted C:\Program Files (x86)\AskPartnerNetwork
Deleted C:\Program Files (x86)\Inbox Toolbar
Deleted C:\Program Files (x86)\Lavasoft\Web Companion
Deleted C:\Program Files (x86)\NCH Software\Components\NCHToolbars\conduit
Deleted C:\Program Files (x86)\SiteRanker
Deleted C:\Program Files (x86)\video download converter
Deleted C:\ProgramData\Application Data\Lavasoft\Web Companion
Deleted C:\ProgramData\Lavasoft\Web Companion
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Inbox Toolbar
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft\WebCompanion
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\video download converter
Deleted C:\ProgramData\apn
Deleted C:\Users\Lummerland\AppData\LocalLow\Inbox Toolbar
Deleted C:\Users\Lummerland\AppData\LocalLow\SiteRanker
Deleted C:\Users\Lummerland\AppData\Local\Downloaded Installations\{DAD82379-C684-4D04-83D5-2B9934A9C362}
Deleted C:\Users\Lummerland\AppData\Local\Lavasoft\WEBCOMPANION.EXE_URL_SIQ0LWF3TZGXP2KHFKLLYBK3IDTBEHNG
Deleted C:\Users\Lummerland\AppData\Local\NativeMessaging
Deleted C:\Users\Lummerland\AppData\Local\Tbccint
Deleted C:\Users\Lummerland\AppData\Local\Temp\DMR
Deleted C:\Users\Lummerland\AppData\Local\Tuguu_SL
Deleted C:\Users\Lummerland\AppData\Roaming\Lavasoft\Web Companion
Deleted C:\Users\Lummerland\AppData\Roaming\awesomehp
Deleted C:\Users\Lummerland\Documents\video download converter
Deleted C:\Users\SiNa\AppData\LocalLow\AskToolbar
Deleted C:\extensions
***** [ Files ] *****
Deleted C:\Program Files (x86)\MOZILLA FIREFOX\DEFAULTS\PREF\DSENGINE.JS
Deleted C:\Program Files (x86)\MOZILLA FIREFOX\DSENGINE.CFG
Deleted C:\Users\Lummerland\AppData\LocalLow\Microsoft\Internet Explorer\Services\Search_ask.com.xml
Deleted C:\Users\Lummerland\AppData\Roaming\Mozilla\Firefox\Profiles\7uudt6d1.default-1443032464039\searchplugins\bing-lavasoft.xml
Deleted C:\Users\Lummerland\Desktop\..\Downloads\SETUPSP9.1 - CHIP-INSTALLER.EXE
Deleted C:\Users\Lummerland\Desktop\..\Downloads\VLC MEDIA PLAYER 64 BIT - CHIP-INSTALLER.EXE
Deleted C:\Windows\SysWOW64\LavasoftTcpServiceOff.ini
Deleted C:\Windows\SysWOW64\lavasofttcpservice.dll
Deleted C:\Windows\System32\LavasoftTcpService64.dll
Deleted C:\Windows\System32\LavasoftTcpServiceOff.ini
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{156A03A4-6981-4B2F-9CFE-8893AED0F39}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3A17864-853B-4A18-B431-D7D5B2DFCBF7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5167A11A-358A-40D9-8BA8-FD6CAABABF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{64D81965-7BB6-479D-8180-B443DBB890E6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6DBA47A-2509-4B60-ABD4-A49517A8EA11}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8DACB2DE-4905-44CE-8DB1-FA3EC4E4C1EB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DDE40EB1-2F3F-402C-899D-40DF5BE391A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC2ACCA2-E173-4E2B-BA99-ED3FC24D782}
Deleted HKCU\Software\AppDataLow\Software\Re_Markit
Deleted HKCU\Software\AppDataLow\Software\Smartbar
Deleted HKCU\Software\AppDataLow\Software\VIDEODOWNLOADCONVERTER_4Z
Deleted HKCU\Software\Lavasoft\Web Companion
Deleted HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\safefinder.com
Deleted HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\search.avira.com
Deleted HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\search.safefinder.com
Deleted HKCU\Software\Microsoft\Internet Explorer\Main|Search Bar
Deleted HKCU\Software\Microsoft\Internet Explorer\Main|Search Page
Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Deleted HKCU\Software\Microsoft\Internet Explorer\SearchUrl|Default
Deleted HKCU\Software\Microsoft\Internet Explorer\Search|Default_Search_URL
Deleted HKCU\Software\Microsoft\Internet Explorer\Search|SearchAssistant
Deleted HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{D4027C7F-154A-4066-A1AD-4243D8127440}
Deleted HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Web Companion
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{042DA63B-0933-403D-9395-B49307691690}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Deleted HKCU\Software\Mozilla\Extends
Deleted HKCU\Software\NCH Software\Components\conduit
Deleted HKCU\Software\SiteRanker
Deleted HKCU\Software\Smartbar
Deleted HKCU\Software\mysearchdial.com
Deleted HKLM\SOFTWARE\Classes\Record\{181480C8-90AC-3430-B39A-CD121E034A1A}
Deleted HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6}
Deleted HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E}
Deleted HKLM\SOFTWARE\Classes\Record\{8F54FA54-1DF8-3B20-890C-CDD95364BC95}
Deleted HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24}
Deleted HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9}
Deleted HKLM\SOFTWARE\Classes\protocols\handler\inbox
Deleted HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\SPVC32LDR
Deleted HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\VideoDownloadConverter Search Scope Monitor
Deleted HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\chip 1-click download service
Deleted HKLM\SYSTEM\Setup\FirstBoot\Services\WCAssistantService
Deleted HKLM\Software\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Deleted HKLM\Software\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Deleted HKLM\Software\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Deleted HKLM\Software\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Deleted HKLM\Software\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Deleted HKLM\Software\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Deleted HKLM\Software\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Deleted HKLM\Software\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Deleted HKLM\Software\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.DataContainer
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.DataContainer.1
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.DataController
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.DataController.1
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.DataTable
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.DataTable.1
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.DataTableFields
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.DataTableFields.1
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.DataTableHolder
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.DataTableHolder.1
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.LSPLogic
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.LSPLogic.1
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.ReadOnlyManager
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.ReadOnlyManager.1
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.WFPController
Deleted HKLM\Software\Classes\LavasoftTcpServiceLib.WFPController.1
Deleted HKLM\Software\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Deleted HKLM\Software\Classes\TypeLib\{ED62BC6E-64F1-46BE-866F-4C8DC0DF7057}
Deleted HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{612AD33D-9824-4E87-8396-92374E91C4BB}
Deleted HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
Deleted HKLM\Software\Microsoft\Internet Explorer\Toolbar|{AE07101B-46D4-4A98-AF68-0333EA26E113}
Deleted HKLM\Software\Microsoft\Internet Explorer\Toolbar|{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
Deleted HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\Browser Infrastructure Helper
Deleted HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\InboxToolbar
Deleted HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\VideoDownloadConverter_4z Browser Plugin Loader
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-21-1627294746-541983138-2545135892-1000\Products\363FB0CBBA367FF4E81FEAD0F717B142
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Deleted HKLM\Software\Wow6432Node\Lavasoft\Web Companion
Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2d9083ce-8758-4704-ba57-3c891d7452bd}
Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3d429207-4689-492d-a0e5-cdc5dfbb5005}
Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9103c314-c4e2-4463-8934-b19bcb46236d}
Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97cef41c-5055-474a-855a-892d4fe3e596}
Deleted HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d375ee64-f893-498a-a0e9-0e9829c88c3d}
Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0b719663-d2ca-4306-9eec-e5b916182b64}|DisplayIcon
Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0b719663-d2ca-4306-9eec-e5b916182b64}|DisplayName
Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0b719663-d2ca-4306-9eec-e5b916182b64}|UninstallString
Deleted HKLM\Software\Wow6432Node\MozillaPlugins\@VideoDownloadConverter_4z.com\Plugin
Deleted HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions|4zffxtbr@VideoDownloadConverter_4z.com
Deleted HKLM\Software\Wow6432Node\NCH Software\Components\conduit
Deleted HKLM\Software\Wow6432Node\Taronja
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{0015CAC9-FC30-4CD0-BFAA-7412CC2C4DD9}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{26C7AFDB-3690-449E-B979-B0AF5CC56DD4}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{33119133-0854-469D-807A-171568457991}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{3A5A5381-DAAF-4C0D-B032-2C66B3EE4A8D}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{3D429207-4689-492D-A0E5-CDC5DFBB5005}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{472EF1D2-4AAE-470D-AE85-6AF8177916FD}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{8F010D54-C023-457F-AF03-497EACB6D519}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{9A754403-27B1-4ED7-96D7-588F07888EBF}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{A86782D8-7B41-452F-A217-1854F72DBA54}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{CB31FF8F-BF80-4D2B-ADBE-12C6F5347890}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{DD385519-22E7-4BE2-8A8D-35C66DF4858E}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{FCAA532B-E807-4027-940C-BA16B9D50105}
Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Deleted HKLM\Software\Wow6432Node\\Classes\TypeLib\{ED62BC6E-64F1-46BE-866F-4C8DC0DF7057}
Deleted HKLM\Software\Wow6432Node\\Classes\protocols\handler\inbox
Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B6}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D429207-4689-492D-A0E5-CDC5DFBB5005}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{612AD33D-9824-4E87-8396-92374E91C4BB}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9103C314-C4E2-4463-8934-B19BCB46236D}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97CEF41C-5055-474A-855A-892D4FE3E596}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Toolbar|{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Toolbar|{AE07101B-46D4-4A98-AF68-0333EA26E113}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Internet Explorer\Toolbar|{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{38122A36-83B2-46B8-B39A-EC72A4614A07}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{A86782D8-7B41-452F-A217-1854F72DBA54}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID|{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{BC0BF363-63AB-4FF7-8EF1-AE0D7F711B24}
Deleted HKLM\Software\Wow6432Node\awesomehpSoftware
Deleted HKLM\System\CurrentControlSet\Services\EventLog\Application\Wpm
Deleted HKU\.DEFAULT\Software\AppDataLow\Software\MediaPlayerEnhance
Deleted HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main|Search Bar
Deleted HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main|Search Page
Deleted HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchUrl|Default
Deleted HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Search|Default_Search_URL
Deleted HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Search|SearchAssistant
Deleted HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
Deleted HKU\S-1-5-18\Software\AppDataLow\Software\MediaPlayerEnhance
Deleted HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main|Search Bar
Deleted HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main|Search Page
Deleted HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchUrl|Default
Deleted HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Search|Default_Search_URL
Deleted HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Search|SearchAssistant
Deleted HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
Not Deleted HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\SPVC32Ldr|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
*************************
[+] Delete IFEO
[+] Delete Prefetch
[+] Delete Tracing Keys
[+] Reset Chromium Policies
[+] Reset IE Policies
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [27305 octets] - [10/04/2020 17:24:49]
AdwCleaner[S01].txt - [27367 octets] - [10/04/2020 17:39:49]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ########## mbam.txt Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 10.04.20
Scan-Zeit: 19:24
Protokolldatei: 12aa928a-7b50-11ea-9770-2c27d7b3ab7d.json
-Softwaredaten-
Version: 4.1.0.56
Komponentenversion: 1.0.867
Version des Aktualisierungspakets: 1.0.22250
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10 (Build 18362.720)
CPU: x64
Dateisystem: NTFS
Benutzer: Lummerland-HP\Lummerland
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Scan gestartet von: Manuell
Ergebnis: Abgeschlossen
Gescannte Objekte: 345257
Erkannte Bedrohungen: 24
In die Quarantäne verschobene Bedrohungen: 24
Abgelaufene Zeit: 9 Min., 42 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Erkennung
PUM: Erkennung
-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)
Modul: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 11
PUP.Optional.ASK, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2FA28606-DE77-4029-AF96-B231E3B8F827}, In Quarantäne, 1, 184156, , , ,
PUP.Optional.ASK, HKU\S-1-5-21-1627294746-541983138-2545135892-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2fa28606-de77-4029-af96-b231e3b8f827}, In Quarantäne, 1, 184156, 1.0.22250, , ame,
PUP.Optional.Conduit.Generic, HKU\S-1-5-21-1627294746-541983138-2545135892-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\CHCT3282495, In Quarantäne, 1353, 443523, 1.0.22250, , ame,
PUP.Optional.HQVideo, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\HQ-Video-Profession-1.3, In Quarantäne, 3092, 239204, 1.0.22250, , ame,
PUP.Optional.Linkury, HKU\S-1-5-21-1627294746-541983138-2545135892-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{756639ff-6bfc-4942-89d5-4e7d369fd69a}, In Quarantäne, 265, 239933, 1.0.22250, , ame,
PUP.Optional.Linkury, HKU\S-1-5-21-1627294746-541983138-2545135892-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{b37e3a08-e450-4e73-a1f2-9776b4ab47c4}, In Quarantäne, 265, 239933, 1.0.22250, , ame,
PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\mahgaopgbalgbfohkikbdjfmaapiehaf, In Quarantäne, 1353, 443285, 1.0.22250, , ame,
PUP.Optional.MindSpark, HKU\S-1-5-21-1627294746-541983138-2545135892-1001\SOFTWARE\APPDATALOW\SOFTWARE\VideoDownloadConverter_4z, In Quarantäne, 708, 240533, 1.0.22250, , ame,
PUP.Optional.Conduit.Generic, HKU\S-1-5-21-1627294746-541983138-2545135892-1000\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\mahgaopgbalgbfohkikbdjfmaapiehaf, In Quarantäne, 1353, 443284, 1.0.22250, , ame,
PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\NATIVEMESSAGINGHOSTS\nmhostct3282495, In Quarantäne, 1353, 443539, 1.0.22250, , ame,
PUP.Optional.MindSpark.Generic, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@VideoDownloadConverter_4z.com/Plugin, In Quarantäne, 1812, 443668, 1.0.22250, , ame,
Registrierungswert: 7
PUP.Optional.ASK, HKU\S-1-5-21-1627294746-541983138-2545135892-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2fa28606-de77-4029-af96-b231e3b8f827}|URL, In Quarantäne, 1, 184156, 1.0.22250, , ame,
PUP.Optional.Linkury, HKU\S-1-5-21-1627294746-541983138-2545135892-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{756639ff-6bfc-4942-89d5-4e7d369fd69a}|PUBLISHER, In Quarantäne, 265, 239933, 1.0.22250, , ame,
PUP.Optional.Linkury, HKU\S-1-5-21-1627294746-541983138-2545135892-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{b37e3a08-e450-4e73-a1f2-9776b4ab47c4}|PUBLISHER, In Quarantäne, 265, 239933, 1.0.22250, , ame,
PUP.Optional.Conduit.Generic, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\mahgaopgbalgbfohkikbdjfmaapiehaf|PATH, In Quarantäne, 1353, 443285, 1.0.22250, , ame,
PUP.Optional.QuickStart, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|QUICK_START@GMAIL.COM, In Quarantäne, 1961, 242157, 1.0.22250, , ame,
PUP.Optional.Conduit.Generic, HKU\S-1-5-21-1627294746-541983138-2545135892-1000\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\mahgaopgbalgbfohkikbdjfmaapiehaf|PATH, In Quarantäne, 1353, 443284, 1.0.22250, , ame,
PUP.Optional.ASK, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2fa28606-de77-4029-af96-b231e3b8f827}|URL, In Quarantäne, 1, 184157, 1.0.22250, , ame,
Registrierungsdaten: 1
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DEFAULTSCOPE, Ersetzt, 5280, 292819, 1.0.22250, , ame,
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 0
(keine bösartigen Elemente erkannt)
Datei: 5
PUP.Optional.Awesomehp.ShrtCln, C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\BROWSER\SEARCHPLUGINS\AWESOMEHP.XML, In Quarantäne, 3833, 192891, 1.0.22250, , ame,
PUP.Optional.Conduit, C:\USERS\LUMMERLAND\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7UUDT6D1.DEFAULT-1443032464039\PREFS.JS, Ersetzt, 196, 301520, 1.0.22250, , ame,
PUP.Optional.ChipDe, C:\$RECYCLE.BIN\S-1-5-21-1627294746-541983138-2545135892-1000\$RS4RT1V.EXE, In Quarantäne, 583, 562568, 1.0.22250, , ame,
PUP.Optional.SweetIM, C:\USERS\LUMMERLAND\DOWNLOADS\SWEETIMSETUP.EXE, In Quarantäne, 444, 297640, 1.0.22250, , ame,
PUP.Optional.VeriStaff, C:\WINDOWS\INSTALLER\10131813.MSI, In Quarantäne, 13878, 5240, 1.0.22250, , ame,
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
WMI: 0
(keine bösartigen Elemente erkannt)
(end)
Zwei Sachen die mir noch aifgefallen sind.
1. in der Anleitung vom AdwCleaner steht nei Punkt 8. das man auf "in Quarantäne verschieben" klicken soll. Ist es richtig das die gefundenen "preinstalled software" nicht angehakt werden soll?
2. beim Scan habe ich folgende Meldung erhalten https://www.bilder-upload.eu/upload/...1586542170.jpg
Gruß FRST.txt
Leider zu groß fürs Board -> https://pastebin.com/9vN5GUaF Addition.txt Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 05-04-2020
durchgeführt von Lummerland (10-04-2020 19:51:16)
Gestartet von C:\Users\Lummerland\Desktop
Windows 10 Home Version 1903 18362.720 (X64) (2019-11-02 16:23:02)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-1627294746-541983138-2545135892-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1627294746-541983138-2545135892-503 - Limited - Disabled)
Gast (S-1-5-21-1627294746-541983138-2545135892-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1627294746-541983138-2545135892-1003 - Limited - Enabled)
Lummerland (S-1-5-21-1627294746-541983138-2545135892-1000 - Administrator - Enabled) => C:\Users\Lummerland
SiNa (S-1-5-21-1627294746-541983138-2545135892-1001 - Limited - Enabled) => C:\Users\SiNa
WDAGUtilityAccount (S-1-5-21-1627294746-541983138-2545135892-504 - Limited - Disabled)
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
ActiveCheck component for HP Active Support Library (HKLM-x32\...\{254C37AA-6B72-4300-84F6-98A82419187E}) (Version: 3.0.0.3 - Hewlett-Packard) Hidden
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.344 - Adobe)
Adobe Reader X (10.1.9) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.9 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.5 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.5.9.620 - Adobe Systems, Inc.)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{F2A7CE36-57BF-5C86-952D-90DBF3746D82}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Audacity 2.3.3 (HKLM-x32\...\Audacity_is1) (Version: 2.3.3 - Audacity Team)
Avira SearchFree Toolbar plus Web Protection Updater (HKU\S-1-5-21-1627294746-541983138-2545135892-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194018596\...\{79A765E1-C399-405B-85AF-466F52E918B0}) (Version: 1.3.0.23930 - Ask.com) <==== ACHTUNG
Avira SearchFree Toolbar plus Web Protection Updater (HKU\S-1-5-21-1627294746-541983138-2545135892-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194029231\...\{79A765E1-C399-405B-85AF-466F52E918B0}) (Version: 1.3.0.23930 - Ask.com) <==== ACHTUNG
Broadcom 802.11 Wireless LAN Adapter (HKLM\...\Broadcom 802.11 Wireless LAN Adapter) (Version: 5.60.48.61 - Broadcom Corporation)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Energy Star Digital Logo (HKLM-x32\...\{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}) (Version: 1.0.1 - Hewlett-Packard)
ESU for Microsoft Windows 7 (HKLM-x32\...\{3877C901-7B90-4727-A639-B6ED2DD59D43}) (Version: 1.0.0 - Hewlett-Packard)
Evernote v. 4.2.2 (HKLM-x32\...\{F761359C-9CED-45AE-9A51-9D6605CD55C4}) (Version: 4.2.2.3979 - Evernote Corp.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HiSuite (HKLM-x32\...\Hi Suite) (Version: 9.1.0.309 - Huawei Technologies Co.,Ltd)
HP 3D DriveGuard (HKLM\...\{76785052-9E6A-4403-B06A-929B6BF9D742}) (Version: 4.1.5.1 - Hewlett-Packard Company)
HP Connection Manager (HKLM-x32\...\{795AADBF-58C2-42D0-B779-E730702A247E}) (Version: 4.0.45.1 - Hewlett-Packard Company)
HP Deskjet 2050 J510 series - Grundlegende Software für das Gerät (HKLM\...\{54B0845F-5540-4492-9939-CD8880ABABF0}) (Version: 22.50.231.0 - Hewlett-Packard Co.)
HP Deskjet 2050 J510 series Hilfe (HKLM-x32\...\{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}) (Version: 140.0.61.61 - Hewlett Packard)
HP Documentation (HKLM-x32\...\{3C5AB11A-2DDB-49E6-9FC0-CFD88A7DDFE4}) (Version: 1.1.0.0 - Hewlett-Packard)
HP On Screen Display (HKLM-x32\...\{9B9B8EE4-2EDB-41C2-AF2E-63E75D37CDDF}) (Version: 1.1.2 - Hewlett-Packard Company)
HP Power Manager (HKLM-x32\...\{872B1C80-38EC-4A31-A25C-980820593900}) (Version: 1.2.3 - Hewlett-Packard Company)
HP Quick Launch (HKLM-x32\...\{EB58480C-0721-483C-B354-9D35A147999F}) (Version: 2.3.6 - Hewlett-Packard Company)
HP Setup (HKLM-x32\...\{210A03F5-B2ED-4947-B27E-516F50CBB292}) (Version: 8.6.4530.3651 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.1.13231.3673 - Hewlett-Packard Company)
HP Software Framework (HKLM-x32\...\{CE4551E8-8D09-4126-A39B-B7DF82C5EB83}) (Version: 4.0.110.1 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{E92D47A1-D27D-430A-8368-0BAFD956507D}) (Version: 5.2.9.2 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{FC3C2B77-6800-48C6-A15D-9D1031130C16}) (Version: 11.51.0049 - Hewlett-Packard Company)
HPAsset component for HP Active Support Library (HKLM-x32\...\{669D4A35-146B-4314-89F1-1AC3D7B88367}) (Version: 3.0.2.2 - Hewlett-Packard) Hidden
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6329.0 - IDT)
Intel(R) Display Audio Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 6.14.00.3074 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Java 8 Update 241 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180241F0}) (Version: 8.0.2410.7 - Oracle Corporation)
Junk Mail filter update (HKLM-x32\...\{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kies Air Discovery Service (HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\Kies Air Discovery Service) (Version: - Samsung)
Kies Air Discovery Service (HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\Kies Air Discovery Service) (Version: - Samsung)
Kies Air Discovery Service (HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\Kies Air Discovery Service) (Version: - Samsung)
LG United Mobile Drivers (HKLM-x32\...\{55031CEF-CE75-4A5C-8DEA-60577820529B}) (Version: 3.10.1.0 - LG Electronics)
Magic Desktop (HKLM-x32\...\EasyBits Magic Desktop) (Version: 3.0 - EasyBits Software AS)
Malwarebytes version 4.1.0.56 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.0.56 - Malwarebytes)
Mesh Runtime (HKLM-x32\...\{8C6D6116-B724-4810-8F2D-D047E6B7D68E}) (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2019 - de-de (HKLM\...\ProPlus2019Volume - de-de) (Version: 16.0.10336.20044 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP1 English (HKLM-x32\...\{E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}) (Version: 3.5.5692.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP1 x64 English (HKLM\...\{F83779DF-E1F5-43A2-A7BE-732F856FADB7}) (Version: 3.5.5692.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Mozilla Firefox 75.0 (x64 de) (HKLM\...\Mozilla Firefox 75.0 (x64 de)) (Version: 75.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 75.0.0.7398 - Mozilla)
Mozilla Thunderbird 68.7.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 68.7.0 (x86 de)) (Version: 68.7.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MusicStation (HKLM-x32\...\{E74E7F63-E70F-43f2-873F-35FB66F263B2}) (Version: 2.0.5.71 - Omnifone)
NVIDIA PhysX (HKLM-x32\...\{1C4551A6-4743-4093-91E4-1477CD655043}) (Version: 9.09.0203 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.10336.20044 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.10336.20044 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0407-1000-0000000FF1CE}) (Version: 16.0.10336.20044 - Microsoft Corporation) Hidden
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.1 - pdfforge)
PX Profile Update (HKLM-x32\...\{0296D4D2-DA68-2DFD-5AC1-6FB04354A86E}) (Version: 1.00.1. - AMD) Hidden
PX Profile Update (HKLM-x32\...\{1C34B2AF-0D61-1784-8BC8-219F969BEFD6}) (Version: 1.00.1. - AMD) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.41.216.2011 - Realtek)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7600.74 - Realtek Semiconductor Corp.)
Recovery Manager (HKLM-x32\...\{DBCD5E64-7379-4648-9444-8A6558DCB614}) (Version: 2.0.0 - Hewlett-Packard) Hidden
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
Skype Version 8.58 (HKLM-x32\...\Skype_is1) (Version: 8.58 - Skype Technologies S.A.)
Skype™ 7.17 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.17.106 - Skype Technologies S.A.)
Steuer-Ratgeber 2017-2018 (HKLM-x32\...\{CADF44B6-B8A2-4398-B8FA-EDD157589B81}) (Version: 18.09.1 - Wolters Kluwer Deutschland GmbH)
SteuerSparErklärung 2018 (HKLM-x32\...\{A1D1FDBD-02F9-49B6-9EB2-2DC6B1D37E16}) (Version: 23.39.56 - Akademische Arbeitsgemeinschaft Verlagsgesellschaft mbH)
Synaptics TouchPad Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.98 - Synaptics Incorporated)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.2.2756 - TeamViewer)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
UpdateAssistant (HKLM\...\{F339C545-24DC-4870-AA32-6EB6B0500B95}) (Version: 1.24.0.0 - Microsoft Corporation) Hidden
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.5.2.0 - Elaborate Bytes)
Visitenkarten in 2 Minuten (HKLM-x32\...\Visitenkarten in 2 Minuten) (Version: - )
VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Windows 10-Update-Assistent (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22899 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation)
Zoom (HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\ZoomUMX) (Version: 4.6 - Zoom Video Communications, Inc.)
Zoom (HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\ZoomUMX) (Version: 4.6 - Zoom Video Communications, Inc.)
Zoom (HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\ZoomUMX) (Version: 4.6 - Zoom Video Communications, Inc.)
Packages:
=========
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_42.0.2.0_neutral__8xx8rvfyw5nnt [2020-03-10] (Instagram)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-19] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-19] (Microsoft Corporation) [MS Ad]
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2019-03-20] (Samsung Electronics Co. Ltd.)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-1627294746-541983138-2545135892-1000_Classes\CLSID\{D9AC5E73-BB10-467b-B884-AA1E475C51F5}\Shell\Open\Command -> C:\Program Files\Synaptics\SynTP\SynTPCpl.dll (Synaptics Incorporated -> Synaptics Incorporated)
ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2011-04-09] (EasyBits Software AS -> EasyBits Software Corp.) [Datei ist nicht signiert]
ContextMenuHandlers1: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2020-02-23] (Elaborate Bytes AG -> Elaborate Bytes AG)
ContextMenuHandlers2: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2020-02-23] (Elaborate Bytes AG -> Elaborate Bytes AG)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-04-10] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Keine Datei
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\WINDOWS\system32\igfxpph.dll [2017-03-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-04-10] (Malwarebytes Corporation -> Malwarebytes)
==================== Codecs (Nicht auf der Ausnahmeliste) ====================
==================== Verknüpfungen & WMI ========================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
==================== Geladene Module (Nicht auf der Ausnahmeliste) =============
2020-04-06 21:34 - 2020-03-31 17:11 - 001899520 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Microsoft\Skype for Desktop\ffmpeg.dll
2020-04-06 21:34 - 2020-03-31 17:11 - 000115712 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Microsoft\Skype for Desktop\libegl.dll
2020-04-06 21:34 - 2020-03-31 17:11 - 006668800 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\Microsoft\Skype for Desktop\libglesv2.dll
2020-02-26 20:16 - 2020-02-26 20:16 - 000031232 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\A4.Foundation\04857798788f559615cd9bd00ee6ab62\A4.Foundation.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000022528 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\def3d7394f89b2f846f2b4c57bf41b35\AEM.Actions.CCAA.Shared.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000013312 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\ce4af52667c3a090937b2a72dacf1f3c\AEM.Plugin.EEU.Shared.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000017408 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\5ca3611e39ad15650804502c62794411\AEM.Plugin.Hotkeys.Shared.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000016384 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\4b81b367a99c87a6de76b8a6a5c7e153\AEM.Plugin.DPPE.Shared.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000281600 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\1f13e3e46765479e1481db96f8c1c76a\AEM.Plugin.Source.Kit.Server.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000014848 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\55de16f92d40e40adb46a4f07bb4b2cd\AEM.Plugin.WinMessages.Shared.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000012800 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\d7d415bf0213ee3af7cd00457b76abcf\AEM.Plugin.REG.Shared.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000011776 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\95b5b5ca1cadbec8e8e53ef2db612c4e\AEM.Plugin.GD.Shared.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000013312 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\c44d1c825dfe57865ed46c3b396b3f5e\AEM.Server.Shared.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000267776 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server\217bd0cf2319def990d9b44a06b4337a\AEM.Server.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000055808 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Foundation\51adad9a886b53fbeb5fe32b323a356b\APM.Foundation.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000122880 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ATICCCom\aa0e4cb41e725f9f8915e3083c521d1b\ATICCCom.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000204288 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\03b4b0d2008a527e28145fbf2a61d18d\CCC.Implementation.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000154112 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\01a38c3214b501c99fb34fd4831ac7fa\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000128000 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\4364b6e5c5a7f54ceef39e3b1682b12d\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000026112 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\47dad210ddea0afd2591aba135a05d01\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000045568 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\e96caef92e5f29a3443038ab99edfc1a\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000107008 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\5bcc1a6d7b573fa59a3cb68ee6910310\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000132608 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\c3a799870cc0a02deccc966e87100f9d\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000074752 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\9a625807a53d861a3d2a372f5c979e25\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000037888 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\15d0904bdee36b0815768264a7e2c62a\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000074752 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\583977d0ce6a002149a43122f7708c7c\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000263168 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\8e29973c043dcb79a64624acf674073a\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000365056 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\1dc363b2cc56c93d8e16bfcbf149df10\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000064000 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\94e9813925163fb56c46af8e5a07c973\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000678912 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.846fa813#\6be447610e7c93e1e8af6899cc30bbec\CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000745472 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\2bb50438bb1395bda4df97bc7b8b56bb\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000449536 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\02e427e7b5c2335a1ca1cb491e503c65\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000089088 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\0bf72241b1faf5b6d60b37a577cfc24e\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000057856 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\a54fb747e018047778604982fdf567aa\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000082944 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\1aed3e551f53e4173171456bccd7e573\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000462336 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\9bb9968b730d6f40478e0690442877b4\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000067072 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\a7c4a92d8a6a0a3b70b6f9bcb51e0701\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000340992 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\5f3c6f44c20ce52767faac074173b13c\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000017920 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\d0246cf70e616022ede51d33ac7e75e8\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000096256 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4f2f79c#\b73745ed9b69d70df73cf78446e3cd78\CLI.Aspect.CrossFireX.Graphics.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000276480 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\846116b6a67d0375936707e9a1be5fe0\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 003312640 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\46605bc7e834bb48efcc1a74dc9ec276\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000240640 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\f80b963d1e5ef4887bd3694ef828bebc\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000047616 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\c7f75f561b22f5ca3f810e2979b29b66\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000050688 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\f6449064f653c81bf0f61503a1d34195\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000051200 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\9e080db32601ceaef53acb63063680da\CLI.Caste.A4.Runtime.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000044544 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\65c310c7102c249997b5daf8d2cd9bf6\CLI.Caste.A4.Shared.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000027136 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\900da8236dee4375bd85cc9113e93546\CLI.Caste.A4.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000044544 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\890960d5bfb84f991e49753603dfab0b\CLI.Caste.Fuel.Shared.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000311296 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\506b4850791916b3502d3298b9b4553d\CLI.Caste.Fuel.Runtime.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000027136 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\5ee6212ae9c56ba0a5e415c2e60ba1e0\CLI.Caste.Fuel.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000037376 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\47aefa89123ca5daf16cd1586eafa6cb\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 001555456 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\efca106b5659510335d96b1aebf9c33c\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000587776 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\7bd4e2d2df782126e25d711f32081505\CLI.Caste.Graphics.Dashboard.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000045056 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\7a219a9b0a77336e1026c05379fe8c9b\CLI.Caste.HydraVision.Runtime.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000030720 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\9f4c6b40dbac62b77724eaec901ada7e\CLI.Caste.HydraVision.Shared.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000025600 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\0cebfa2933e2dc36ae0d27ef1bb36ae3\CLI.Caste.HydraVision.Dashboard.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000030720 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\96970cc5443613e93c56326e1771d38a\CLI.Caste.Platform.Shared.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000044032 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\ca1b4a2dbebfe7de20a2893ca1d2a4f0\CLI.Caste.Platform.Runtime.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000024064 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\ad15b7ef1cf6568e0e6370578ec8e3a0\CLI.Caste.Platform.Dashboard.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000012288 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\b57f10c0713beb859f1e7a3d72363619\CLI.Component.Runtime.Shared.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000901632 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\16ed9dc5d3acb87cf73cd35e823e2344\CLI.Component.Systemtray.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000173568 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\7fee8daa3326a58814c7e99840eee983\CLI.Component.Dashboard.ProfileManager2.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000151040 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\f338ea207c7ebc93688b73611b11a7a6\CLI.Component.Runtime.Shared.Private.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000017408 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\8261c7c6dee0d78d37083db8ec955b9c\CLI.Component.Runtime.Extension.EEU.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 001609728 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\99734e1ee6dbb9f83e1eb0be2b20770b\CLI.Component.Dashboard.Shared.Private.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000018432 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\dbd6a713b407b3c7cf5f2339da33f9a2\CLI.Component.Client.Shared.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000085504 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\ad72e8870ac99be615dba851ab2dda88\CLI.Component.Dashboard.Shared.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000495104 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Component.Eeu\0e84422c3a6f90596c17737ddbc13776\CLI.Component.Eeu.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000089600 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\37ee2c27e46e4e73086db3dae2314569\CLI.Foundation.Private.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000061440 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\e595365791f86999237d462d6aeb89cd\CLI.Foundation.XManifest.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000091136 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\6635efe5afa217fb4af9f7c4329c72d9\CLI.Foundation.CoreAudioAPI.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 001079808 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\5c0efc7ee41341debf4e7c37214ff975\CLI.Foundation.Client.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000301568 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\dbb50c736e249700630242603330f4ea\CLI.Foundation.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000025600 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\69a7b1e256398fcecd09f4ab3dd0e1d1\DEM.Foundation.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000115200 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\571b42e88db9ffce76755328ccf9b54f\DEM.Graphics.I0601.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000015360 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\adc2bdce9ae508c1ea037f454f630576\DEM.Graphics.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000037376 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\dfa839a41b8b64f13ccfad2ed654cc2e\Fuel.Foundation.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000296960 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\57ffe95ba281f0ff3b2a6652746d8393\LOG.Foundation.Implementation.ni.dll
2020-02-26 20:16 - 2020-02-26 20:16 - 000150016 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\f658b8fdf11718c69ca6d924a813e4db\LOG.Foundation.Private.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000087552 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\5f19771a1969222ae9305168b04006ea\LOG.Foundation.Implementation.Private.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000132608 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\b2655421ce141af774f210046ac71e68\LOG.Foundation.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000012288 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\31051445b929b832c52dc7bffd55f197\MOM.Foundation.ni.dll
2020-02-26 20:20 - 2020-02-26 20:20 - 000402944 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\c3ae2f5eaaaf76a2af7d31898c9e26a8\MOM.Implementation.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000055296 _____ (Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\299aaec5286c93b895550c2035f97af6\NEWAEM.Foundation.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000897024 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\cbc5be88a06e262f7a928dfeb72c2fdd\ADL.Foundation.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000256000 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Server\e4c53190ef1387ca7c94afce4e976c80\APM.Server.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000783872 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.79734f7a#\f8c6644bea0a86877568386646c9ef88\CLI.Aspect.PowerXpress.Graphics.Runtime.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000357888 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b3da5a8f#\e11eaa913bb0dea35a9d9e634c154289\CLI.Aspect.PowerXpress.Graphics.Shared.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000595456 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4846ba2#\b12d0c86b07df0659e809aa5847b55cb\CLI.Aspect.PowerXpress.Graphics.Dashboard.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 008027648 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\d62c31658c65f9f456e202c318df5cb5\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000136704 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\8123a787ee6bd2e7031f5720b90c2c3e\CLI.Component.Client.Shared.Private.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000234496 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\b75274dd03b47bf96954cfa5de909f5d\CLI.Component.Runtime.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000929280 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\da811b556032ff78a24a96f18b493ec6\CLI.Component.Dashboard.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000011264 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0702\0d44f5a4920cfbfe4f362a2e55049595\DEM.Graphics.I0702.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000084480 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\863f85f65b0d531ef6f9f0da129ab0f3\DEM.Graphics.I0709.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000009728 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0710\74aebe9e067988905115d5c6835769d7\DEM.Graphics.I0710.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000012288 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\b2c01ff958fb1b60defaac55bf102b84\DEM.Graphics.I0712.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000018432 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\f20f72bf76227cf0a30e0803f5c8daf3\DEM.Graphics.I0804.ni.dll
2020-02-26 20:18 - 2020-02-26 20:18 - 000009728 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0901\6536b8460a1dddad3ed8bf7169e3cd8e\DEM.Graphics.I0901.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000013312 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\33f13ab6c5152d7730241d98051587f5\DEM.Graphics.I0906.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 000035840 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\cc39c165dad3ce13788db374a17f25b1\DEM.Graphics.I1010.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 001139200 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\3425ce9d9a67582be38adb9f1f4ac673\Localization.Foundation.Private.ni.dll
2020-02-26 20:20 - 2020-02-26 20:20 - 000244736 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\d88b73f715413258c24dba856382c7be\ResourceManagement.Foundation.Implementation.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000023552 _____ (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\b60040796c15249c260ccdf3fdba8dc1\ResourceManagement.Foundation.Private.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000091648 _____ (Advanced Mirco Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\a2319d0e93b2f140fffe8ad87b01e73a\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 002845696 _____ (Advanced Mirco Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\82ebc162df071caa15b93de812a5280b\CLI.Caste.Graphics.Shared.ni.dll
2020-02-26 20:19 - 2020-02-26 20:19 - 003268096 _____ (Advanced Mirco Devices, Inc.) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\d7be80650142fc5a1cd7ae1a3b9687e0\CLI.Caste.Graphics.Runtime.ni.dll
2011-07-07 10:13 - 2010-12-22 21:50 - 001892352 _____ (Apache Software Foundation) [Datei ist nicht signiert] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\xerces-c_2_7.dll
2011-07-07 10:13 - 2010-12-22 21:45 - 000069632 _____ (Intel Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\StatusStrings.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 000335360 _____ (Microsoft) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\983c1b51aa798515f8922993d6fd25fd\Microsoft.WindowsAPICodePack.ni.dll
2020-02-26 20:17 - 2020-02-26 20:17 - 002546688 _____ (Microsoft) [Datei ist nicht signiert] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\ecc49f4a505fe677bcbc2f40d3ba6c51\Microsoft.WindowsAPICodePack.Shell.ni.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
AlternateDataStreams: C:\ProgramData\Temp:0E08FC17 [100]
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =================
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ==========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\localhost -> localhost
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000\...\123simsen.com -> www.123simsen.com
Da befinden sich 7735 mehr Seiten.
IE trusted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\localhost -> localhost
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\...\123simsen.com -> www.123simsen.com
Da befinden sich 7735 mehr Seiten.
IE trusted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\localhost -> localhost
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\...\123simsen.com -> www.123simsen.com
Da befinden sich 7735 mehr Seiten.
==================== Hosts Inhalt: =========================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2009-07-14 04:34 - 2012-03-17 20:33 - 000441475 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 www.10sek.com
127.0.0.1 10sek.com
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 www.123fporn.info
127.0.0.1 123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 www.123haustiereundmehr.com
127.0.0.1 123moviedownload.com
127.0.0.1 www.123moviedownload.com
Da befinden sich 15166 zusätzliche Einträge.
==================== Andere Bereiche ===========================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files\Broadcom\Broadcom 802.11\Driver;C:\Program Files (x86)\Common Files\Ulead Systems\MPEG;C:\Program Files (x86)\Common Files\Ulead Systems\DVD;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static;C:\Program Files (x86)\Skype\Phone\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194012586\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194023573\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194033903\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194013961\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194024395\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-1627294746-541983138-2545135892-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Lummerland\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\IMG_20180613_121001.jpg
HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194014773\Control Panel\Desktop\\Wallpaper -> C:\Users\Lummerland\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\IMG_20180613_121001.jpg
HKU\S-1-5-21-1627294746-541983138-2545135892-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194025403\Control Panel\Desktop\\Wallpaper -> C:\Users\Lummerland\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\IMG_20180613_121001.jpg
HKU\S-1-5-21-1627294746-541983138-2545135892-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194018596\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Hewlett-Packard Backgrounds\backgroundDefault.jpg
HKU\S-1-5-21-1627294746-541983138-2545135892-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04102020194029231\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Hewlett-Packard Backgrounds\backgroundDefault.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Keine Datei)
ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup
MSCONFIG\startupreg: BDRegion => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
MSCONFIG\startupreg: Easybits Recovery => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
MSCONFIG\startupreg: HP Quick Launch => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
MSCONFIG\startupreg: HPConnectionManager => C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
MSCONFIG\startupreg: HPOSD => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
MSCONFIG\startupreg: RemoteControl10 => "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [{6A7157F2-AB75-46D3-889D-4BB830B89349}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe Keine Datei
FirewallRules: [{191C272A-8715-4588-B9B8-DF6C163FFD5A}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe Keine Datei
FirewallRules: [{3F0BBE3A-36FF-4DA9-B303-BB56A842F2D9}] => (Block) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe Keine Datei
FirewallRules: [{E777F035-C239-4D93-B91D-7E48EF9CCCFA}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe Keine Datei
FirewallRules: [{0FCCBD23-CD2D-41F7-B323-A6FF55F2D6F7}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe Keine Datei
FirewallRules: [{91829E6C-CF14-4108-BD1F-2AA2FC9B6E0C}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe Keine Datei
FirewallRules: [{D3AC3339-07BF-4D18-A777-38A5F7088A18}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe Keine Datei
FirewallRules: [{F7D53C64-F78A-4278-A63B-C979E6892933}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe Keine Datei
FirewallRules: [{7181DEAA-226F-432C-8959-D6CDCDC308F4}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe Keine Datei
FirewallRules: [{8A8C249E-28F4-4692-81AB-94CF0E3127BE}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe Keine Datei
FirewallRules: [{BB542406-9ACA-4941-9195-CD275F836767}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe Keine Datei
FirewallRules: [{9259F8DE-541F-4851-AF50-8A85C25898B6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{39D8FA20-77FF-4BB2-9E1B-C7F443D34797}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3E60C5F7-668B-41F8-BACE-99DABDF2E8E5}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe Keine Datei
FirewallRules: [{04ED34B5-7D14-4574-B3D3-8B4283DC7136}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe Keine Datei
FirewallRules: [{722E0CF7-48E7-45BC-B760-A73175EA7EB4}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe Keine Datei
FirewallRules: [{5887497E-764E-4396-8B36-9CEE67BB67E1}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe Keine Datei
FirewallRules: [UDP Query User{D18C3B2C-5FEC-4F24-9E21-71B8AEB41C0E}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{8F394813-B91D-45D8-9850-FFF210B8E9DA}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{CAA1A1D0-5808-4B18-87D1-0745884492D5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{669B33D8-E7D4-4C7F-A23D-AD16147D4DEA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FF9CB241-F4F3-46E2-8485-D24442BFEF75}] => (Allow) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{2905EAAC-6E89-4951-A6B8-9944A2A44362}] => (Allow) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{2D507193-FD65-4E64-9B42-E991A8997A75}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CF17A521-7481-4B48-B868-4FEAE9482209}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE Keine Datei
FirewallRules: [{313F3F04-6F29-40DB-83E7-7C5A74BE6FAE}] => (Allow) C:\Program Files (x86)\EasyBits For Kids\ezDesktop.exe (EasyBits Software AS -> EasyBits Software AS)
FirewallRules: [{7AFEAE63-E671-4FF8-B61B-3629ED72A774}] => (Allow) C:\Windows\system32\ezSharedSvcHost.exe (EasyBits Software AS -> EasyBits Software AS) [Datei ist nicht signiert]
FirewallRules: [{B684D451-7D9B-4EE1-B4A5-01F9B6E2A715}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8982F64F-90F2-458F-92B6-DCA7C0637AC6}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{ED4A05C1-FBEC-45EC-AF8C-DE92AC93D3FE}] => (Allow) LPort=1900
FirewallRules: [{A809C7A2-DCD5-405C-B400-4ABD95B7875B}] => (Allow) LPort=2869
FirewallRules: [{BACA2A57-9FFA-4A38-9C7C-275B4CD92C0F}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4E10565D-92B2-4292-8453-DA558CE600E2}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe Keine Datei
FirewallRules: [{08B81A10-E9DA-4887-8B18-0FD97C106FEF}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe Keine Datei
FirewallRules: [{64E6DFF0-7124-42BA-AD3B-BFC2BDF6A704}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{BAF9628C-24F4-44F0-9D18-501024EB664B}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B416C21C-522C-4676-8789-FF67D6EEB650}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{CE33E4F8-E260-4598-81C8-162D1BA33906}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{A2FF86ED-DD95-4C5B-A0DE-01E56D8B83C9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{14330CB2-E700-499B-BF58-E1E522DA9C6D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{41F0CB64-FB9C-4675-BEAE-1B9761309B29}] => (Allow) C:\Users\Lummerland\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{FE6EB5CF-D384-4947-9B2E-0AB9532F7A9B}] => (Allow) C:\Users\Lummerland\AppData\Roaming\Zoom\bin\airhost.exe Keine Datei
FirewallRules: [{916D89B6-7E51-4A98-B23E-D51A0C45A87C}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe Keine Datei
FirewallRules: [{9301D4AD-1B17-4162-B780-12E8D3448467}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe Keine Datei
FirewallRules: [{282C5E31-E570-4B70-9145-6ABF37453FA3}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6AB783DC-A740-4964-B186-8DFF59FF777D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CA3EEBD8-1BAA-4C0D-9CB9-97FCFC38CDCC}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{201C4F64-9194-48C5-BC08-E61799731880}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8B17A018-16EC-46C7-B126-8BB70637557F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Wiederherstellungspunkte =========================
27-03-2020 20:25:29 Geplanter Prüfpunkt
29-03-2020 12:30:16 SteuerSparErklärung 2018 wurde installiert.
06-04-2020 08:54:54 OpenOffice 4.1.7 wird installiert
09-04-2020 19:03:14 OpenOffice 4.1.7 wird entfernt
==================== Fehlerhafte Geräte im Gerätemanager ============
==================== Fehlereinträge in der Ereignisanzeige: ========================
Applikationsfehler:
==================
Error: (04/10/2020 07:49:04 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5072,R,98) TILEREPOSITORYS-1-5-18: Fehler -1023 (0xfffffc01) beim Öffnen von Protokolldatei C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (04/10/2020 07:42:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: sttray64.exe, Version: 1.0.6329.0, Zeitstempel: 0x4d79e045
Name des fehlerhaften Moduls: sttray64.exe, Version: 1.0.6329.0, Zeitstempel: 0x4d79e045
Ausnahmecode: 0xc000041d
Fehleroffset: 0x000000000000d7ca
ID des fehlerhaften Prozesses: 0x223c
Startzeit der fehlerhaften Anwendung: 0x01d60f5f5baa0c4f
Pfad der fehlerhaften Anwendung: C:\Program Files\IDT\WDM\sttray64.exe
Pfad des fehlerhaften Moduls: C:\Program Files\IDT\WDM\sttray64.exe
Berichtskennung: 32b9066f-6b00-4abe-a061-4b1158079e1f
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (04/10/2020 07:42:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: sttray64.exe, Version: 1.0.6329.0, Zeitstempel: 0x4d79e045
Name des fehlerhaften Moduls: sttray64.exe, Version: 1.0.6329.0, Zeitstempel: 0x4d79e045
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000d7ca
ID des fehlerhaften Prozesses: 0x223c
Startzeit der fehlerhaften Anwendung: 0x01d60f5f5baa0c4f
Pfad der fehlerhaften Anwendung: C:\Program Files\IDT\WDM\sttray64.exe
Pfad des fehlerhaften Moduls: C:\Program Files\IDT\WDM\sttray64.exe
Berichtskennung: d42c772f-c6d3-4833-8168-79ab4dccc132
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (04/10/2020 07:39:19 PM) (Source: STacSV) (EventID: 32767) (User: NT-AUTORITÄT)
Description: Connection to the Storage interface failed
Error: (04/10/2020 07:36:50 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren.
.
Error: (04/10/2020 07:36:50 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren.
.
Error: (04/10/2020 07:36:50 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren.
]
Error: (04/10/2020 07:36:50 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren.
]
Systemfehler:
=============
Error: (04/10/2020 07:43:53 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Übermittlungsoptimierung" wurde nicht richtig gestartet.
Error: (04/10/2020 07:39:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "UxTuneUp" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.
Error: (04/10/2020 07:39:18 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst UxTuneUp erreicht.
Error: (04/10/2020 05:53:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "UxTuneUp" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.
Error: (04/10/2020 05:53:46 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (45000 ms) wurde beim Verbindungsversuch mit dem Dienst UxTuneUp erreicht.
Error: (04/10/2020 05:51:06 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.
Modulpfad: C:\WINDOWS\System32\bcmihvsrv64.dll
Error: (04/10/2020 05:50:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "HP Health Check Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (04/10/2020 05:50:38 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Microsoft Office-Klick-und-Los-Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts.
Windows Defender:
===================================
Date: 2020-04-04 16:59:40.625
Description:
Windows Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=BrowserModifier:Win32/AlterbookSP&threatid=211888&enterprise=0
Name: BrowserModifier:Win32/AlterbookSP
ID: 211888
Schweregrad: Hoch
Kategorie: Browserveränderer
Pfad: file:_C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe; file:_C:\Program Files (x86)\AskPartnerNetwork\Toolbar\UpdateManager.exe; file:_C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe; folder:_C:\Program Files (x86)\AskPartnerNetwork\Toolbar\; folder:_C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\
Erkennungsursprung: Lokaler Computer
Erkennungstype: FastPath
Erkennungsquelle: System
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Prozessname: Unknown
Sicherheitsversion: AV: 1.313.635.0, AS: 1.313.635.0, NIS: 1.313.635.0
Modulversion: AM: 1.1.16900.4, NIS: 1.1.16900.4
Date: 2020-02-03 18:41:34.473
Description:
Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {F2780EC9-5376-4711-A7DA-9288B902FBE0}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Date: 2020-02-03 18:32:23.504
Description:
Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {C1EA0845-E24F-403F-B64E-DAB011BA1699}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM
Date: 2020-01-19 17:01:58.479
Description:
Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {55FF5359-DBE2-4B56-A9C9-AC4CA49F4FE7}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM
Date: 2020-01-19 16:43:58.750
Description:
Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {1191A846-9A16-4C4A-AD4C-3A53DE6A936E}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM
Date: 2020-02-16 16:53:58.231
Description:
Bei Windows Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen:
%Vorherige Version der Sicherheitsinformationen: 1.309.634.0
Update Source: Microsoft Update-Server
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion:
%Vorherige Modulversion: 1.1.16700.3
Fehlercode: 0x80240016
Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support".
Date: 2020-02-03 18:42:20.855
Description:
Bei Windows Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen:
%Vorherige Version der Sicherheitsinformationen: 1.309.263.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion:
%Vorherige Modulversion: 1.1.16700.3
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support".
Date: 2020-02-03 18:42:20.855
Description:
Bei Windows Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen:
%Vorherige Version der Sicherheitsinformationen: 1.309.263.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiSpyware
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion:
%Vorherige Modulversion: 1.1.16700.3
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support".
Date: 2020-02-03 18:42:20.855
Description:
Bei Windows Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen:
%Vorherige Version der Sicherheitsinformationen: 1.309.263.0
Update Source: Microsoft Center zum Schutz vor Schadsoftware
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\Netzwerkdienst
Aktuelle Modulversion:
%Vorherige Modulversion: 1.1.16700.3
Fehlercode: 0x8050a003
Fehlerbeschreibung: Dieses Paket enthält keine aktuellen Definitionsdateien für das Programm. Weitere Informationen finden Sie in "Hilfe und Support".
CodeIntegrity:
===================================
Date: 2020-04-10 19:31:10.203
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-04-10 19:31:09.981
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-04-10 19:31:09.703
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-04-10 19:31:08.687
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-04-10 19:31:07.129
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-04-10 19:31:04.334
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-04-10 19:31:04.324
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-04-10 19:30:56.613
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Speicherinformationen ===========================
BIOS: Hewlett-Packard F.1A 07/20/2011
Hauptplatine: Hewlett-Packard 3581
Prozessor: Intel(R) Core(TM) i5-2410M CPU @ 2.30GHz
Prozentuale Nutzung des RAM: 39%
Installierter physikalischer RAM: 8139.86 MB
Verfügbarer physikalischer RAM: 4955.09 MB
Summe virtueller Speicher: 16331.86 MB
Verfügbarer virtueller Speicher: 13219.11 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:683.23 GB) (Free:552.26 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive d: (RECOVERY) (Fixed) (Total:15.11 GB) (Free:1.64 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
\\?\Volume{4c6bf797-d57c-11e0-9ea4-806e6f6e6963}\ (SYSTEM) (Fixed) (Total:0.19 GB) (Free:0.15 GB) NTFS
\\?\Volume{4c6bf79a-d57c-11e0-9ea4-806e6f6e6963}\ (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.08 GB) FAT32
==================== MBR & Partitionstabelle ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 698.6 GB) (Disk ID: EAA2A155)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=683.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=15.1 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)
==================== Ende von Addition.txt ======================= |