Hallo und Danke schon jetzt für deine Unterstützung!
Hier die Log Files:
FSRT.txt Teil 1:
FRST Logfile: Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 27-11-2016
durchgeführt von Matthias (Administrator) auf MATTHI (30-11-2016 11:18:35)
Gestartet von C:\Users\Matthias\Desktop
Geladene Profile: Matthias (Verfügbare Profile: Matthias)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe
(Emsisoft Ltd) C:\Program Files (x86)\Emsisoft Internet Security\a2service.exe
() C:\Program Files (x86)\Lexware\AAVUpdateManager\aavus.exe
(Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
(FileZilla Project) C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe
(Apache Software Foundation) C:\Program Files (x86)\EWA net\server\bin\tomcat7.exe
(SafeNet Inc.) C:\Windows\System32\hasplms.exe
(National Instruments Corporation) C:\Windows\SysWOW64\lkads.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\MAX\nimxs.exe
(Trace Software International) C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Electrical\server\EwServer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\nisvcloc\nisvcloc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Palm) C:\Program Files\Palm, Inc\novacom\amd64\novacomd.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
() C:\Program Files\MySQL\MySQL Server 5.1\bin\mysqld.exe
() C:\Windows\SysWOW64\SecUPDUtilSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(Transaction Software, D 81829 Munich) C:\Program Files (x86)\EWA net\database\TransBase WIS\tbmux32.exe
(Autodesk, Inc.) C:\Program Files\Autodesk\Inventor 2015\Moldflow\bin\mitsijm.exe
(Transaction Software, D 81829 Munich) C:\Program Files (x86)\EWA net\database\TransBase EPC\tbmux32.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Mentor Graphics Corporation) C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\remotesolverdispatcherservice.exe
(Transaction Software, D 81829 Munich) C:\Program Files (x86)\EWA net\database\TransBase EWA\tbmux32.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe
(Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(National Instruments Corporation) C:\Windows\SysWOW64\lktsrv.exe
(National Instruments, Inc.) C:\Windows\SysWOW64\lkcitdl.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
() C:\Program Files (x86)\EWA net\apps\jre\private_jre\bin\java.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe
(Mentor Graphics Corporation) C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\dispatcher.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
() C:\Program Files (x86)\ASUS\Printer Utilities\UsbService64.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Spotify Ltd) C:\Users\Matthias\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(CADENAS GmbH) C:\Program Files (x86)\Festo\CAD 2016\software\bin\x86\32\pupdate.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Dropbox, Inc.) C:\Users\Matthias\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
() C:\Program Files (x86)\Syncios_2\SynciosDeviceService.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
() C:\Program Files\AutoHotkey\AutoHotkey.exe
() C:\Program Files (x86)\Bamboo Dock\BambooCore.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
(Haufe-Lexware GmbH & Co. KG) C:\Program Files (x86)\Lexware\Update Manager\LxUpdateManager.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple, Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Intel Corporation) C:\Program Files (x86)\Intel\AMT\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Common Files\Intel\Privacy Icon\UNS\UNS.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Transaction Software, D 81829 Munich) C:\Program Files (x86)\EWA net\database\TransBase EWA\tbkern32.exe
(Transaction Software, D 81829 Munich) C:\Program Files (x86)\EWA net\database\TransBase EWA\tbkern32.exe
(Transaction Software, D 81829 Munich) C:\Program Files (x86)\EWA net\database\TransBase EPC\tbkern32.exe
(Transaction Software, D 81829 Munich) C:\Program Files (x86)\EWA net\database\TransBase EPC\tbkern32.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Softwarenetz) C:\Softwarenetz\Kassenbuch6\buchen4.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Haufe-Lexware GmbH & Co. KG) C:\Program Files (x86)\Common Files\Lexware\LxWebAccess\LxWebAccess.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe
(Mega Limited) C:\Users\Matthias\AppData\Local\MEGAsync\MEGAsync.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(zdengine) C:\Program Files (x86)\OtherSearch\zdengine.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Emsisoft Ltd) C:\Program Files (x86)\Emsisoft Internet Security\a2guard.exe
(Emsisoft Ltd) C:\Program Files (x86)\Emsisoft Internet Security\a2start.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe FSRT.txt Teil 2: Code:
==================== Registry (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [SecureBanking] => C:\Program Files\Machinecode Technologies\Secure Banking\SecureBanking.exe [1755864 2016-09-06] (Machinecode Technologies)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-12-09] (Apple Inc.)
HKLM\...\Run: [emsisoft anti-malware] => c:\program files (x86)\emsisoft internet security\a2guard.exe [7838392 2016-11-02] (Emsisoft Ltd)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2963184 2013-04-24] (Synaptics Incorporated)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [89456 2011-03-07] (Elaborate Bytes AG)
HKLM-x32\...\Run: [Syncios device service] => C:\Program Files (x86)\Syncios_2\SynciosDeviceService.exe [269824 2015-12-21] ()
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2015-06-26] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840592 2015-06-26] (Adobe Systems Inc.)
HKLM-x32\...\Run: [Malwarebytes Anti-Exploit] => C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe
HKLM-x32\...\Run: [BambooCore] => C:\Program Files (x86)\Bamboo Dock\BambooCore.exe [646744 2012-10-16] ()
HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [104128 2015-08-14] (VMware, Inc.)
HKLM-x32\...\Run: [LexwareInfoService] => C:\Program Files (x86)\Lexware\Update Manager\LxUpdateManager.exe [202280 2015-09-29] (Haufe-Lexware GmbH & Co. KG)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596504 2016-04-01] (Oracle Corporation)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1279120 2012-09-27] (CANON INC.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452272 2012-08-31] (CANON INC.)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2016-10-05] (Apple Inc.)
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2016-10-05] (Apple Inc.)
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Run: [NIRegistrationWizard] => C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe [847000 2013-04-19] ()
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Run: [Spotify] => C:\Users\Matthias\AppData\Roaming\Spotify\Spotify.exe [6884976 2016-10-15] (Spotify Ltd)
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Run: [STUISpeedLauncher] => "C:\Program Files\Samsung\Stylish UI Pack\TouchBasedUI.exe" -speedlauncher -minVer:6.6.58.0
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2016-10-05] (Apple Inc.)
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Run: [Spotify Web Helper] => C:\Users\Matthias\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1483888 2016-10-15] (Spotify Ltd)
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Run: [PARTupdate] => C:\Program Files (x86)\Festo\CAD 2016\software\bin\x86\32\pupdate.exe [349648 2015-10-06] (CADENAS GmbH)
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Run: [Dropbox Update] => C:\Users\Matthias\AppData\Local\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2016-10-05] (Apple Inc.)
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Policies\Explorer: []
ShellExecuteHooks: - {C6AC7A68-AA43-11E6-AF5B-64006A5CFC23} - C:\Users\Matthias\AppData\Roaming\Ghekerward\Clanoy.dll [148992 2016-11-30] ()
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Matthias\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Matthias\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Matthias\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Keine Datei
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2014-02-07] (Autodesk, Inc.)
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Matthias\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Matthias\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Matthias\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt.3.0.dll [2016-11-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Matthias\AppData\Roaming\Dropbox\bin\DropboxExt.3.0.dll [2016-11-07] (Dropbox, Inc.)
Startup: C:\Users\Matthias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-11-12]
ShortcutTarget: Dropbox.lnk -> C:\Users\Matthias\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Matthias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2016-11-28]
ShortcutTarget: MEGAsync.lnk -> C:\Users\Matthias\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
Startup: C:\Users\Matthias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Neues Textdokument (2).ahk - Verknüpfung.lnk [2016-11-02]
ShortcutTarget: Neues Textdokument (2).ahk - Verknüpfung.lnk -> C:\Users\Matthias\Desktop\Neues Textdokument (2).ahk ()
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Winsock: Catalog5 09 C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [26512 2013-05-11] (National Instruments Corporation)
Winsock: Catalog5-x64 09 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [28560 2013-05-11] (National Instruments Corporation)
Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\..\Interfaces\{e13cc50e-7169-42c0-9533-d02ce6db0f90}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://de.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset
HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2155083525-1168965681-3283480890-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
SearchScopes: HKU\S-1-5-21-2155083525-1168965681-3283480890-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
SearchScopes: HKU\S-1-5-21-2155083525-1168965681-3283480890-1001 -> {CF56CCD4-54A4-428F-9BBD-DEB5535524AB} URL = hxxps://de.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2016-11-20] (Microsoft Corporation)
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-11-20] (Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2016-11-20] (Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.)
BHO-x32: WebCGMHlprObj Class -> {56B38F40-4E70-11d4-A076-0080AD86BA2F} -> C:\WINDOWS\SysWow64\cgmopenbho.dll [2014-04-24] (CGM Open Consortium, Inc.)
BHO-x32: Citavi Picker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\WINDOWS\system32\mscoree.dll [2015-10-30] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-05-23] (Oracle Corporation)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-06-26] (Adobe Systems Incorporated)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL [2016-11-20] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-05-23] (Oracle Corporation)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-06-26] (Adobe Systems Incorporated)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2015-06-26] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.)
Toolbar: HKU\S-1-5-21-2155083525-1168965681-3283480890-1001 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-11-20] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2016-11-20] (Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-11-20] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2016-11-20] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2016-08-16] (Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-11-20] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2016-11-20] (Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-11-20] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2016-11-20] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Matthias\AppData\Roaming\Mozilla\Firefox\naweriweentcofise\Profiles\xvv4pl31.default-1460458296074\Profiles\xvv4pl31.default-1460458296074 [nicht gefunden]
FF ProfilePath: C:\Users\Matthias\AppData\Roaming\TomTom\HOME\Profiles\6qw4gqct.default [2015-12-25]
FF Extension: (Map status indicator) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [2015-12-23] [ist nicht signiert]
FF ProfilePath: C:\Users\Matthias\AppData\Roaming\Mozilla\Firefox\Profiles\xvv4pl31.default-1460458296074 [2016-11-30]
FF NetworkProxy: Mozilla\Firefox\Profiles\xvv4pl31.default-1460458296074 -> http", "fe80::b874:8b05:5825:46df"
FF NetworkProxy: Mozilla\Firefox\Profiles\xvv4pl31.default-1460458296074 -> http_port", 8080
FF NetworkProxy: Mozilla\Firefox\Profiles\xvv4pl31.default-1460458296074 -> type", 4
FF Extension: (MEGA) - C:\Users\Matthias\AppData\Roaming\Mozilla\Firefox\Profiles\xvv4pl31.default-1460458296074\Extensions\firefox@mega.co.nz.xpi [2016-11-23]
FF Extension: (FuckFuckAdBlock) - C:\Users\Matthias\AppData\Roaming\Mozilla\Firefox\Profiles\xvv4pl31.default-1460458296074\Extensions\FuckFuckAdBlock@yandex.com.xpi [2016-06-21]
FF Extension: (S3.Google Translator) - C:\Users\Matthias\AppData\Roaming\Mozilla\Firefox\Profiles\xvv4pl31.default-1460458296074\Extensions\s3google@translator.xpi [2016-11-10]
FF Extension: (SQLite Manager) - C:\Users\Matthias\AppData\Roaming\Mozilla\Firefox\Profiles\xvv4pl31.default-1460458296074\Extensions\SQLiteManager@mrinalkant.blogspot.com.xpi [2016-10-11]
FF Extension: (Adblock Plus) - C:\Users\Matthias\AppData\Roaming\Mozilla\Firefox\Profiles\xvv4pl31.default-1460458296074\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-24]
FF SearchPlugin: C:\Users\Matthias\AppData\Roaming\Mozilla\Firefox\Profiles\xvv4pl31.default-1460458296074\searchplugins\fvd6feog.xml [2016-11-30]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2015-09-27] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox
FF Extension: (Citavi Picker) - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2015-05-17] [ist nicht signiert]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-09] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-11-20] (Microsoft Corporation)
FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2012-09-20] (Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-02] (Adobe Systems)
FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-09] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-08-26] (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-05-23] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-05-23] (Oracle Corporation)
FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 -> C:\Program Files (x86)\Yahoo!\Shared\npYState.dll [2012-05-25] (Yahoo! Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-11-20] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2016-11-20] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @ptc.com/IsoView -> C:\Program Files (x86)\Common Files\PTC\npisoview.dll [2015-03-16] (PTC Inc.)
FF Plugin-x32: @ptc.com/ProductViewLite -> C:\Program Files (x86)\Common Files\PTC\np6_pvapplite9.dll [2015-03-16] (PTC)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-22] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-22] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2015-06-26] (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2012-09-20] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-02] (Adobe Systems)
FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
FF Plugin HKU\S-1-5-21-2155083525-1168965681-3283480890-1001: @spoon.net/Spoon Plugin 3.33 -> C:\Users\Matthias\AppData\Local\Spoon\3.33.8.527\npMozillaSpoonPlugin.dll [Keine Datei]
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2011win32.dll [2012-07-13] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2012win32.dll [2013-05-29] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2013win32.dll [2013-06-20] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2016-07-19] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: ChromeDefaultData
CHR HomePage: ChromeDefaultData -> hxxp://www.youndoo.com/?z=3fc78dc7178e310767cb636g3zeb4e5z9t7b7zbw5q&from=wak&uid=WDCXWD10JPVT-00A1YT0_WD-WX91CC1F1460F1460&type=hp
CHR StartupUrls: ChromeDefaultData -> "hxxp://www.youndoo.com/?z=3fc78dc7178e310767cb636g3zeb4e5z9t7b7zbw5q&from=wak&uid=WDCXWD10JPVT-00A1YT0_WD-WX91CC1F1460F1460&type=hp"
CHR DefaultSearchURL: ChromeDefaultData -> hxxp://www.youndoo.com/search/?q={searchTerms}&z=3fc78dc7178e310767cb636g3zeb4e5z9t7b7zbw5q&from=wak&uid=WDCXWD10JPVT-00A1YT0_WD-WX91CC1F1460F1460&type=sp
CHR DefaultSearchKeyword: ChromeDefaultData -> youndoo
CHR Profile: C:\Users\Matthias\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2016-11-24] <==== ACHTUNG
CHR Extension: (YouTube) - C:\Users\Matthias\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-21]
CHR Extension: (Google-Suche) - C:\Users\Matthias\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-21]
CHR Extension: (EditThisCookie) - C:\Users\Matthias\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2016-11-24]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Matthias\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-13]
CHR Extension: (Google Mail) - C:\Users\Matthias\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-10]
CHR Extension: (Chrome Media Router) - C:\Users\Matthias\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-11-23]
CHR HKLM-x32\...\Chrome\Extension: [ohgndokldibnndfnjnagojmheejlengn] - hxxps://clients2.google.com/service/update2/crx
==================== Dienste (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 a2AntiMalware; C:\Program Files (x86)\Emsisoft Internet Security\a2service.exe [9388576 2016-11-02] (Emsisoft Ltd)
R2 AAV UpdateService; C:\Program Files (x86)\Lexware\AAVUpdateManager\aavus.exe [128296 2008-10-24] ()
R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [576904 2013-12-22] (Autodesk Inc.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
S2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [31192 2014-02-07] (Autodesk, Inc.)
R2 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [2255064 2013-10-28] (Broadcom Corporation.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2946304 2016-10-30] (Microsoft Corporation)
R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [384512 2016-06-27] (Digital Wave Ltd.) [Datei ist nicht signiert]
R2 EWA net DB Core; C:\Program Files (x86)\EWA net\database\TransBase EWA\tbmux32.exe [306304 2014-07-11] (Transaction Software, D 81829 Munich)
R2 EWA net DB EPC; C:\Program Files (x86)\EWA net\database\TransBase EPC\tbmux32.exe [417792 2007-11-27] (Transaction Software, D 81829 Munich) [Datei ist nicht signiert]
R2 EWA net DB WIS; C:\Program Files (x86)\EWA net\database\TransBase WIS\tbmux32.exe [306304 2014-07-11] (Transaction Software, D 81829 Munich)
R2 EWA net Server; C:\Program Files (x86)\EWA net\server\bin\tomcat7.exe [86656 2014-11-03] (Apache Software Foundation)
R2 ewserver; C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Electrical\server\EwServer.exe [177152 2014-09-29] (Trace Software International) [Datei ist nicht signiert]
R2 Fehaphprurotion; C:\Program Files (x86)\Zmation\fubosyHost.dll [274944 2016-11-30] () [Datei ist nicht signiert]
R2 FileZilla Server; C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe [794584 2015-06-01] (FileZilla Project)
R2 hasplms; C:\WINDOWS\system32\hasplms.exe [4609928 2013-08-01] (SafeNet Inc.)
S2 Haufe FabricHostService; C:\Program Files (x86)\Lexware\services\Haufe.FabricHostService.exe [23080 2014-09-18] (Haufe-Lexware GmbH & Co. KG)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Datei ist nicht signiert]
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] ()
S2 Lexware_Datenbank_Plus; C:\Program Files (x86)\SQL Anywhere 12\Bin32\dbsrv12.exe [142640 2014-08-07] (iAnywhere Solutions, Inc.)
S2 Lexware_Update_Service; C:\Program Files (x86)\Lexware\Update Service\Hmg.InstallationService.Service.exe [66088 2016-03-03] (Haufe-Lexware GmbH & Co. KG)
R2 LkCitadelServer; C:\WINDOWS\SysWOW64\lkcitdl.exe [695136 2010-10-27] (National Instruments, Inc.)
R2 lkClassAds; C:\WINDOWS\SysWOW64\lkads.exe [53544 2013-06-12] (National Instruments Corporation)
R2 lkTimeSync; C:\WINDOWS\SysWOW64\lktsrv.exe [63792 2013-06-12] (National Instruments Corporation)
R2 LMS; C:\Program Files (x86)\Intel\AMT\LMS.exe [174616 2010-02-04] (Intel Corporation)
FRST.txt Teil 2: Code:
R2 mitsijm2015; C:\Program Files\Autodesk\Inventor 2015\Moldflow\bin\mitsijm.exe [968480 2013-10-11] (Autodesk, Inc.)
S2 MSSQL$TEW_SQLEXPRESS; C:\ProgramData\SOLIDWORKS Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe [191064 2012-02-11] (Microsoft Corporation)
R2 mxssvr; C:\Program Files (x86)\National Instruments\MAX\nimxs.exe [83768 2013-06-10] (National Instruments Corporation)
R2 MySQL; c:\Programme\MySQL\MySQL Server 5.1\my.ini [9353 2009-08-02] () [Datei ist nicht signiert]
R2 NIApplicationWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [57696 2013-06-08] (National Instruments Corporation)
S4 NIApplicationWebServer64; C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [81248 2013-06-08] (National Instruments Corporation)
R2 NIDomainService; C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe [380720 2013-06-12] (National Instruments Corporation)
S3 NILM License Manager; C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe [1427688 2010-08-02] (Macrovision Corporation)
R2 nimDNSResponder; C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [260976 2013-05-11] (National Instruments Corporation)
R2 NINetworkDiscovery; C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe [176512 2013-06-19] (National Instruments Corporation)
R2 NiSvcLoc; C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe [90440 2013-06-07] (National Instruments Corporation)
R2 NISystemWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [57680 2013-06-08] (National Instruments Corporation)
R2 NITaggerService; C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe [687944 2013-06-15] (National Instruments Corporation)
R2 NovacomD; C:\Program Files\Palm, Inc\novacom\amd64\novacomd.exe [72192 2011-06-24] (Palm) [Datei ist nicht signiert]
R2 RemoteSolverDispatcher; C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\remotesolverdispatcherservice.exe [234632 2014-09-29] (Mentor Graphics Corporation) [Datei ist nicht signiert]
R2 SamsungUPDUtilSvc; C:\WINDOWS\SysWOW64\SecUPDUtilSvc.exe [143664 2015-11-11] ()
S3 SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2014-11-01] (SolidWorks) [Datei ist nicht signiert]
S4 SQLAgent$TEW_SQLEXPRESS; C:\ProgramData\SOLIDWORKS Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [597080 2012-02-11] (Microsoft Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7500048 2016-09-20] (TeamViewer GmbH)
R2 UNS; C:\Program Files (x86)\Common Files\Intel\Privacy Icon\UNS\UNS.exe [2058776 2010-02-04] (Intel Corporation)
R2 UsbService; C:\Program Files (x86)\ASUS\Printer Utilities\UsbService64.exe [334848 2010-08-10] () [Datei ist nicht signiert]
S2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [12465344 2015-08-14] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364456 2016-09-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2016-09-07] (Microsoft Corporation)
R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [656664 2014-08-19] (Wacom Technology, Corp.)
R2 zdengine; C:\Program Files (x86)\OtherSearch\zdengine.exe [1660135 2016-11-30] (zdengine) [Datei ist nicht signiert] <==== ACHTUNG
===================== Treiber (Nicht auf der Ausnahmeliste) ======================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R1 adgnetworkwfpdrv; C:\WINDOWS\System32\drivers\adgnetworkwfpdrv.sys [55800 2015-06-02] ()
R3 bcbtums; C:\WINDOWS\system32\drivers\bcbtums.sys [170712 2013-10-28] (Broadcom Corporation.)
S1 epp; C:\PROGRAM FILES (X86)\EMSISOFT INTERNET SECURITY\epp.sys [124304 2016-10-05] (Emsisoft Ltd)
R1 epp64; C:\EEK\bin\epp64.sys [136456 2015-10-06] (Emsisoft GmbH)
S3 fwdrv; C:\WINDOWS\system32\DRIVERS\fwdrv.sys [27840 2014-03-22] (Web Solution Mart)
R1 FWNDIS_LWF; C:\WINDOWS\system32\DRIVERS\fwndislwf64.sys [212560 2016-10-22] ()
R1 fwwfp; C:\PROGRAM FILES (X86)\EMSISOFT INTERNET SECURITY\fwwfp764.sys [152776 2016-10-22] ()
R2 hardlock; C:\WINDOWS\system32\drivers\hardlock.sys [331328 2013-08-01] (SafeNet Inc.)
R3 i8042HDR; C:\WINDOWS\system32\DRIVERS\i8042HDR.sys [15920 2009-08-14] (Windows (R) Codename Longhorn DDK provider)
S3 KINONI_Wave; C:\WINDOWS\system32\drivers\kinonivad.sys [32360 2016-04-17] (Windows (R) Win 7 DDK provider)
S1 ndiskhaz; C:\WINDOWS\system32\DRIVERS\ndiskhaz.sys [30536 2012-12-07] (Khalil Azzouzi)
S3 nmserial; C:\WINDOWS\system32\DRIVERS\nmserial.sys [75264 2010-01-07] (Windows (R) Codename Longhorn DDK provider)
R2 npf; C:\WINDOWS\System32\drivers\npf.sys [40464 2009-02-08] (CACE Technologies)
S4 RsFx0200; C:\WINDOWS\System32\DRIVERS\RsFx0200.sys [334936 2012-02-11] (Microsoft Corporation)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [44784 2013-04-24] (Synaptics Incorporated)
S3 USBTINSP; C:\WINDOWS\System32\drivers\tinspusb.sys [142848 2010-03-29] (Texas Instruments)
S1 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [117768 2016-01-19] (Oracle Corporation)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [194976 2016-01-19] (Oracle Corporation)
R0 vsock; C:\WINDOWS\System32\drivers\vsock.sys [75512 2015-08-04] (VMware, Inc.)
R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-mntapi20-shared.sys [34520 2015-07-09] (VMware, Inc.)
R3 vuhub; C:\WINDOWS\System32\drivers\vuhub.sys [47616 2007-12-17] ()
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
R2 zdwfp; C:\WINDOWS\system32\Drivers\zdwfp64.sys [46352 2016-09-01] (zdengine)
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2016-11-30 11:18 - 2016-11-30 11:20 - 00046364 _____ C:\Users\Matthias\Desktop\FRST.txt
2016-11-30 11:17 - 2016-11-30 11:18 - 00000000 ____D C:\FRST
2016-11-30 11:17 - 2016-11-30 11:17 - 02411520 _____ (Farbar) C:\Users\Matthias\Desktop\FRST64.exe
2016-11-30 10:38 - 2016-11-30 10:40 - 00012792 _____ C:\WINDOWS\SysWOW64\zdengineOff.ini
2016-11-30 10:38 - 2016-11-30 10:40 - 00012792 _____ C:\WINDOWS\system32\zdengineOff.ini
2016-11-30 10:38 - 2016-11-30 10:38 - 00364303 _____ (zdengine) C:\WINDOWS\system32\zdengine64.dll
2016-11-30 10:38 - 2016-11-30 10:38 - 00301711 _____ (zdengine) C:\WINDOWS\SysWOW64\zdengine.dll
2016-11-30 10:38 - 2016-11-30 10:38 - 00002052 _____ C:\WINDOWS\System32\Tasks\updengine
2016-11-30 10:38 - 2016-11-30 10:38 - 00000000 ____D C:\ProgramData\Avira
2016-11-30 10:38 - 2016-11-30 10:38 - 00000000 ____D C:\ProgramData\Avg
2016-11-30 10:38 - 2016-11-30 10:38 - 00000000 ____D C:\ProgramData\AVAST Software
2016-11-30 10:38 - 2016-09-01 11:24 - 00046352 _____ (zdengine) C:\WINDOWS\system32\Drivers\zdwfp64.sys
2016-11-30 10:37 - 2016-11-30 10:38 - 00000000 ____D C:\Program Files (x86)\OtherSearch
2016-11-30 10:37 - 2016-11-30 10:37 - 00006098 _____ C:\WINDOWS\System32\Tasks\Jabershmoy Log
2016-11-30 10:37 - 2016-11-30 10:37 - 00003642 _____ C:\WINDOWS\System32\Tasks\8fac390368ee1946f3ee5cb3bf554280
2016-11-30 10:36 - 2016-11-30 10:38 - 00000000 ____D C:\Program Files (x86)\Zmation
2016-11-30 10:36 - 2016-11-30 10:37 - 00000000 ____D C:\Users\Matthias\AppData\Local\Plubishhiwodom
2016-11-30 10:36 - 2016-11-30 10:36 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Ghekerward
2016-11-30 10:22 - 2016-11-30 10:22 - 00001193 _____ C:\Users\Matthias\Desktop\DMG Extractor.lnk
2016-11-30 10:22 - 2016-11-30 10:22 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Reincubate
2016-11-30 10:22 - 2016-11-30 10:22 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Reincubate
2016-11-28 16:53 - 2016-11-28 16:53 - 00000000 ___RD C:\Users\Matthias\Documents\MEGAsync
2016-11-28 16:51 - 2016-11-28 16:51 - 00001142 _____ C:\Users\Matthias\Desktop\MEGAsync.lnk
2016-11-28 16:51 - 2016-11-28 16:51 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2016-11-28 16:51 - 2016-11-28 16:51 - 00000000 ____D C:\Users\Matthias\AppData\Local\Mega Limited
2016-11-28 16:50 - 2016-11-28 16:51 - 00000000 ____D C:\Users\Matthias\AppData\Local\MEGAsync
2016-11-28 16:31 - 2016-11-28 16:33 - 00000000 ____D C:\Meine Webseiten
2016-11-28 16:30 - 2016-11-28 16:30 - 00000881 _____ C:\Users\Matthias\Desktop\HTTrack Website Copier.lnk
2016-11-28 16:30 - 2016-11-28 16:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinHTTrack
2016-11-28 16:30 - 2016-11-28 16:30 - 00000000 ____D C:\Program Files\WinHTTrack
2016-11-25 11:10 - 2016-11-25 11:10 - 00279512 _____ C:\Users\Matthias\Documents\IMG_20161125_0004.pdf
2016-11-25 11:09 - 2016-11-25 11:09 - 00436253 _____ C:\Users\Matthias\Documents\IMG_20161125_0003.pdf
2016-11-25 11:08 - 2016-11-25 11:08 - 00525743 _____ C:\Users\Matthias\Documents\IMG_20161125_0002.pdf
2016-11-25 10:52 - 2016-11-25 15:10 - 00002090 _____ C:\Users\Public\Desktop\Canon IJ Network Tool.lnk
2016-11-25 10:52 - 2016-11-25 10:52 - 00000000 ___HD C:\ProgramData\CanonIJFAX
2016-11-25 10:52 - 2016-11-25 10:52 - 00000000 ____D C:\ProgramData\Canon IJ Network Tool
2016-11-25 10:52 - 2012-09-21 09:33 - 00321024 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNC_BLL.dll
2016-11-25 10:52 - 2012-05-25 09:21 - 00103936 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNC_BLU.dll
2016-11-25 10:52 - 2012-05-15 15:58 - 00098048 _____ C:\WINDOWS\SysWOW64\CNC176BD.TBL
2016-11-25 10:52 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNHMCA.dll
2016-11-25 10:51 - 2016-11-25 10:51 - 00000000 ___HD C:\ProgramData\CanonBJ
2016-11-25 10:50 - 2016-11-25 10:51 - 00000000 ___HD C:\Program Files\CanonBJ
2016-11-24 21:12 - 2016-11-24 21:12 - 00000000 ___HD C:\ProgramData\CanonIJMyPrinter
2016-11-24 21:00 - 2016-11-24 21:00 - 00000000 ___HD C:\ProgramData\CanonIJSDU
2016-11-24 20:19 - 2016-11-24 20:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2016-11-24 20:13 - 2016-11-30 10:37 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-11-24 20:13 - 2016-11-24 20:13 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2016-11-24 17:07 - 2016-11-24 17:07 - 00417175 _____ C:\Users\Matthias\Documents\IMG_20161124_0005.pdf
2016-11-24 17:06 - 2016-11-24 17:06 - 00483718 _____ C:\Users\Matthias\Documents\IMG_20161124_0004.pdf
2016-11-24 17:06 - 2016-11-24 17:06 - 00238469 _____ C:\Users\Matthias\Documents\IMG_20161124_0003.pdf
2016-11-24 17:03 - 2016-11-26 17:09 - 00000000 ____D C:\Users\Matthias\Documents\0.7_Scanns
2016-11-24 17:01 - 2016-11-24 17:01 - 00253081 _____ C:\Users\Matthias\Documents\IMG_20161124_0002.pdf
2016-11-24 16:36 - 2016-11-24 16:37 - 00000000 ___HD C:\ProgramData\CanonIJMIG
2016-11-24 16:35 - 2016-11-25 11:03 - 00000000 ___HD C:\ProgramData\CanonIJScan
2016-11-24 16:35 - 2016-11-24 16:35 - 00057995 _____ C:\Users\Matthias\Documents\IMG_20161124_0001.pdf
2016-11-24 16:28 - 2016-11-24 16:28 - 00001947 _____ C:\Users\Matthias\Desktop\Canon MX920 series Printer - Verknüpfung.lnk
2016-11-24 13:54 - 2016-11-24 13:54 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2016-11-24 13:49 - 2016-11-25 11:03 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Canon
2016-11-24 13:48 - 2016-11-24 13:48 - 00000000 ___HD C:\ProgramData\CanonIJQuickMenu
2016-11-24 13:39 - 2012-09-20 05:00 - 00393728 _____ (CANON INC.) C:\WINDOWS\system32\CNMXLMBL.DLL
2016-11-24 13:38 - 2016-11-25 10:34 - 00000000 ____D C:\ProgramData\CanonIJPLM
2016-11-24 13:35 - 2016-11-24 13:35 - 00000000 ____D C:\Users\Matthias\AppData\LocalLow\Canon Easy-WebPrint EX2
2016-11-24 13:35 - 2016-11-24 13:35 - 00000000 ____D C:\Users\Matthias\AppData\LocalLow\Canon Easy-WebPrint EX
2016-11-24 13:35 - 2016-11-24 13:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX920 series Benutzerregistrierung
2016-11-24 13:34 - 2016-11-24 13:34 - 00002102 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk
2016-11-24 13:34 - 2016-11-24 13:34 - 00000000 ____D C:\ProgramData\CanonIJWSpt
2016-11-24 13:26 - 2016-11-24 13:35 - 00000000 ____D C:\Program Files\Canon
2016-11-24 13:25 - 2016-11-24 13:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX920 series Manual
2016-11-24 13:25 - 2016-11-24 13:25 - 00002437 _____ C:\Users\Public\Desktop\Canon MX920 series On-Screen-Handbuch.lnk
2016-11-24 13:21 - 2012-09-21 05:00 - 00303104 _____ (CANON INC.) C:\WINDOWS\system32\CNCALBL.DLL
2016-11-24 13:21 - 2012-09-20 05:00 - 00390656 _____ (CANON INC.) C:\WINDOWS\system32\CNMLMBL.DLL
2016-11-24 13:10 - 2012-07-31 09:48 - 00359936 _____ (CANON INC.) C:\WINDOWS\system32\CNMN6PPM.DLL
2016-11-24 13:10 - 2012-07-31 09:48 - 00039424 _____ (CANON INC.) C:\WINDOWS\system32\CNMN6UI.DLL
2016-11-24 13:10 - 2012-07-31 09:47 - 00366592 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNMNPPM.DLL
2016-11-23 17:20 - 2016-11-23 17:20 - 00165904 _____ C:\Users\Matthias\Documents\Gigaset-2016-11-23.cfg
2016-11-23 14:55 - 2016-11-24 16:24 - 00000000 ____D C:\ProgramData\Samsung
2016-11-20 23:08 - 2016-11-30 10:41 - 00000000 ____D C:\Users\Matthias\AppData\LocalLow\Mozilla
2016-11-20 22:54 - 2016-11-30 10:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-11-15 11:20 - 2016-11-15 11:20 - 00021520 _____ C:\Users\Matthias\Documents\Paketschein_46320040548_Fa_Harry_Hamme_151116.pdf
2016-11-15 11:19 - 2016-11-15 11:19 - 00021534 _____ C:\Users\Matthias\Documents\Paketschein_46320040956_Stassen_151116.pdf
2016-11-15 10:44 - 2016-11-15 10:44 - 00000000 ____D C:\Users\Matthias\Documents\Printer
2016-11-15 10:42 - 2016-11-30 10:37 - 00000000 ____D C:\Program Files (x86)\ASUS
2016-11-15 10:42 - 2016-11-15 10:42 - 02093558 ____R C:\Users\Matthias\Documents\Printer.zip
2016-11-15 10:42 - 2016-11-15 10:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility
2016-11-15 10:42 - 2007-12-17 10:25 - 00047616 _____ C:\WINDOWS\system32\Drivers\vuhub.sys
2016-11-12 10:37 - 2016-11-12 10:37 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-11-10 12:26 - 2016-11-10 12:37 - 00000132 _____ C:\Users\Matthias\AppData\Roaming\Adobe CS6-BMP-Format - Voreinstellungen
2016-11-10 12:16 - 2016-11-10 12:37 - 00000000 ____D C:\Users\Matthias\Documents\UpdateFirmware
2016-11-10 12:16 - 2016-11-10 12:16 - 03480636 _____ C:\Users\Matthias\Documents\UpdateFirmware.zip
2016-11-09 16:42 - 2016-11-30 10:37 - 00000000 ____D C:\Program Files (x86)\Read-a-Card
2016-11-09 16:42 - 2016-11-09 16:45 - 00000000 ____D C:\ProgramData\Read-a-Card
2016-11-09 16:42 - 2016-11-09 16:42 - 00001090 _____ C:\Users\Public\Desktop\Read-a-Card.lnk
2016-11-09 16:42 - 2016-11-09 16:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Read-a-Card
2016-11-06 14:58 - 2016-11-06 14:58 - 00001650 _____ C:\Users\Matthias\Desktop\Zeiterfassung2.lnk
2016-11-06 14:37 - 2016-11-06 14:37 - 00001712 _____ C:\Users\Matthias\Desktop\Rechnung7.lnk
FRST.txt Teil 4 Code:
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2016-11-30 11:18 - 2015-10-28 21:21 - 00000000 ____D C:\Program Files (x86)\Emsisoft Internet Security
2016-11-30 11:16 - 2015-10-05 18:05 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-11-30 10:56 - 2014-09-30 17:21 - 00000000 ____D C:\Users\Matthias\Documents\Outlook-Dateien
2016-11-30 10:53 - 2015-06-15 19:20 - 00001250 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2155083525-1168965681-3283480890-1001UA.job
2016-11-30 10:38 - 2016-01-05 11:39 - 00000000 ____D C:\Program Files (x86)\Lexware
2016-11-30 10:38 - 2015-10-05 17:58 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-11-30 10:38 - 2015-09-22 21:02 - 00000000 ____D C:\Program Files (x86)\QuickTime
2016-11-30 10:38 - 2015-01-20 13:10 - 00000000 ____D C:\Program Files (x86)\Vermieten easy
2016-11-30 10:38 - 2014-11-01 11:50 - 00000000 ____D C:\Program Files (x86)\MSECache
2016-11-30 10:37 - 2016-10-16 13:55 - 00000000 ____D C:\Program Files (x86)\Notepad++
2016-11-30 10:37 - 2016-10-05 18:29 - 00000000 ____D C:\Program Files (x86)\Heirue-Soft
2016-11-30 10:37 - 2016-10-05 18:03 - 00000000 ____D C:\Program Files (x86)\ELS-Professional
2016-11-30 10:37 - 2016-10-05 17:03 - 00000000 ____D C:\Program Files (x86)\BosMon
2016-11-30 10:37 - 2016-09-07 14:43 - 00000000 ____D C:\Program Files (x86)\Swissphone
2016-11-30 10:37 - 2016-09-06 12:44 - 00000000 ____D C:\Program Files (x86)\FMS-Simulator
2016-11-30 10:37 - 2016-08-30 12:04 - 00000000 ____D C:\Program Files (x86)\CMAK
2016-11-30 10:37 - 2016-08-25 20:09 - 00000000 ____D C:\Program Files (x86)\Apowersoft
2016-11-30 10:37 - 2016-08-25 20:07 - 00000000 ____D C:\Program Files (x86)\MuseTips
2016-11-30 10:37 - 2016-08-16 12:07 - 00000000 ____D C:\Program Files (x86)\GUM1BBD.tmp
2016-11-30 10:37 - 2016-07-01 15:29 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-11-30 10:37 - 2016-07-01 15:29 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-11-30 10:37 - 2016-07-01 11:34 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2016-11-30 10:37 - 2016-07-01 11:23 - 00000000 ____D C:\Program Files (x86)\MP4Tools
2016-11-30 10:37 - 2016-06-16 14:58 - 00000000 ____D C:\Program Files (x86)\BrizAVIJoin
2016-11-30 10:37 - 2016-05-23 20:42 - 00000000 ____D C:\Program Files (x86)\Java
2016-11-30 10:37 - 2016-05-20 14:50 - 00000000 ____D C:\Program Files (x86)\eAssistant
2016-11-30 10:37 - 2016-04-14 12:34 - 00000000 ____D C:\Program Files (x86)\Festo
2016-11-30 10:37 - 2016-04-11 15:53 - 00000000 ____D C:\Program Files (x86)\cssSlider
2016-11-30 10:37 - 2016-02-23 18:37 - 00000000 ____D C:\Program Files (x86)\MarkAny
2016-11-30 10:37 - 2016-02-23 18:04 - 00000000 ____D C:\Program Files (x86)\MyFree Codec
2016-11-30 10:37 - 2016-01-22 20:34 - 00000000 ____D C:\Program Files (x86)\Kodi
2016-11-30 10:37 - 2016-01-21 15:07 - 00000000 ____D C:\Program Files (x86)\Free Easy CD DVD Burner
2016-11-30 10:37 - 2016-01-17 14:39 - 00000000 ____D C:\Program Files (x86)\Syncios_2
2016-11-30 10:37 - 2016-01-10 15:46 - 00000000 ____D C:\Program Files (x86)\Overlook Fing 2.2
2016-11-30 10:37 - 2016-01-10 14:08 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-11-30 10:37 - 2016-01-05 15:19 - 00000000 ____D C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2
2016-11-30 10:37 - 2016-01-05 11:44 - 00000000 ____D C:\Program Files (x86)\SQL Anywhere 12
2016-11-30 10:37 - 2015-12-23 21:50 - 00000000 ____D C:\Program Files (x86)\TomTom HOME 2
2016-11-30 10:37 - 2015-12-20 13:52 - 00000000 ____D C:\Program Files (x86)\iTunes
2016-11-30 10:37 - 2015-11-20 23:10 - 00000000 ____D C:\Program Files (x86)\VMware
2016-11-30 10:37 - 2015-11-11 16:02 - 00000000 ____D C:\Program Files (x86)\Samsung
2016-11-30 10:37 - 2015-11-04 09:00 - 00000000 ____D C:\Program Files (x86)\Zuken
2016-11-30 10:37 - 2015-10-30 08:24 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2016-11-30 10:37 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-11-30 10:37 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-11-30 10:37 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows NT
2016-11-30 10:37 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-11-30 10:37 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-11-30 10:37 - 2015-10-17 13:48 - 00000000 ____D C:\Program Files (x86)\Bamboo Dock
2016-11-30 10:37 - 2015-10-17 13:06 - 00000000 ____D C:\Program Files (x86)\TabletPlugins
2016-11-30 10:37 - 2015-10-13 11:01 - 00000000 ____D C:\Program Files (x86)\JKI
2016-11-30 10:37 - 2015-10-12 21:46 - 00000000 ____D C:\Program Files (x86)\National Instruments
2016-11-30 10:37 - 2015-10-12 15:48 - 00000000 ____D C:\Program Files (x86)\CinemaPlus_1.3dV12.10
2016-11-30 10:37 - 2015-10-12 15:47 - 00000000 ____D C:\Program Files (x86)\CinePlus-1.44V12.10
2016-11-30 10:37 - 2015-10-08 17:30 - 00000000 ____D C:\Program Files (x86)\Canon
2016-11-30 10:37 - 2015-10-06 14:09 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-11-30 10:37 - 2015-09-25 10:16 - 00000000 ____D C:\Program Files (x86)\Advanced Port Scanner
2016-11-30 10:37 - 2015-09-25 07:43 - 00000000 ____D C:\Program Files (x86)\Emsisoft Anti-Malware
2016-11-30 10:37 - 2015-09-05 17:32 - 00000000 ____D C:\Program Files (x86)\ESET
2016-11-30 10:37 - 2015-08-06 09:03 - 00000000 ____D C:\Program Files (x86)\Grewe
2016-11-30 10:37 - 2015-07-21 13:08 - 00000000 ____D C:\Program Files (x86)\7-Zip
2016-11-30 10:37 - 2015-07-20 17:08 - 00000000 ____D C:\Program Files (x86)\EWA net
2016-11-30 10:37 - 2015-07-20 00:13 - 00000000 ____D C:\Program Files (x86)\PTC
2016-11-30 10:37 - 2015-07-18 18:36 - 00000000 ____D C:\Program Files (x86)\Tinypic
2016-11-30 10:37 - 2015-07-10 11:08 - 00000000 ____D C:\Program Files (x86)\Microsoft WSE
2016-11-30 10:37 - 2015-07-10 10:48 - 00000000 ____D C:\Program Files (x86)\Autodesk
2016-11-30 10:37 - 2015-07-09 11:02 - 00000000 ____D C:\Program Files (x86)\Dassault Systemes
2016-11-30 10:37 - 2015-06-16 13:38 - 00000000 ____D C:\Program Files (x86)\Yahoo!
2016-11-30 10:37 - 2015-06-09 09:49 - 00000000 ____D C:\Program Files (x86)\FileZilla Server
2016-11-30 10:37 - 2015-05-21 16:53 - 00000000 ____D C:\Program Files (x86)\klickTel
2016-11-30 10:37 - 2015-05-21 14:16 - 00000000 ____D C:\Program Files (x86)\iSpy
2016-11-30 10:37 - 2015-05-17 13:11 - 00000000 ____D C:\Program Files (x86)\Citavi 4
2016-11-30 10:37 - 2015-05-02 10:07 - 00000000 ____D C:\Program Files (x86)\MyPublicWiFi
2016-11-30 10:37 - 2015-05-01 20:06 - 00000000 ____D C:\Program Files (x86)\Virtual Router
2016-11-30 10:37 - 2015-04-09 14:50 - 00000000 ____D C:\Program Files (x86)\i-Funbox DevTeam
2016-11-30 10:37 - 2015-04-08 09:53 - 00000000 ____D C:\Program Files (x86)\Rescroller
2016-11-30 10:37 - 2015-04-08 09:47 - 00000000 ____D C:\Program Files (x86)\KMSPico 10.0.6
2016-11-30 10:37 - 2015-03-17 15:00 - 00000000 ____D C:\Program Files (x86)\WinPcap
2016-11-30 10:37 - 2015-03-17 14:57 - 00000000 ____D C:\Program Files (x86)\Wireshark
2016-11-30 10:37 - 2015-02-08 13:31 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-11-30 10:37 - 2015-02-08 13:30 - 00000000 ____D C:\Program Files (x86)\Windows Live
2016-11-30 10:37 - 2015-02-04 09:53 - 00000000 ____D C:\Program Files (x86)\TI Education
2016-11-30 10:37 - 2015-01-27 22:36 - 00000000 ____D C:\Program Files (x86)\Opera
2016-11-30 10:37 - 2015-01-27 22:35 - 00000000 ____D C:\Program Files (x86)\ImgBurn
2016-11-30 10:37 - 2015-01-27 22:30 - 00000000 ____D C:\Program Files (x86)\EasyIsoSoft
2016-11-30 10:37 - 2015-01-25 16:04 - 00000000 ____D C:\Program Files (x86)\Bigflyshark
2016-11-30 10:37 - 2015-01-20 12:22 - 00000000 ____D C:\Program Files (x86)\Hausverwaltung easy
2016-11-30 10:37 - 2015-01-20 11:54 - 00000000 ____D C:\Program Files (x86)\Heizkosten easy
2016-11-30 10:37 - 2015-01-20 11:24 - 00000000 ____D C:\Program Files (x86)\Nebenkosten easy professional
2016-11-30 10:37 - 2015-01-14 12:45 - 00000000 ____D C:\Program Files (x86)\Camfrog
2016-11-30 10:37 - 2015-01-02 12:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-11-30 10:37 - 2014-12-10 10:09 - 00000000 ____D C:\Program Files (x86)\PDF24
2016-11-30 10:37 - 2014-12-08 21:19 - 00000000 ____D C:\Program Files (x86)\CineForm
2016-11-30 10:37 - 2014-11-11 23:28 - 00000000 ____D C:\Program Files (x86)\Syncios
2016-11-30 10:37 - 2014-11-03 11:58 - 00000000 ____D C:\Program Files (x86)\GContactSync
2016-11-30 10:37 - 2014-11-01 16:22 - 00000000 ____D C:\Program Files (x86)\LSoft Technologies
2016-11-30 10:37 - 2014-11-01 13:01 - 00000000 ____D C:\Program Files (x86)\PDFCreator
2016-11-30 10:37 - 2014-11-01 12:42 - 00000000 ____D C:\Program Files (x86)\SOLIDWORKS Corp
2016-11-30 10:37 - 2014-11-01 12:02 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2016-11-30 10:37 - 2014-11-01 11:38 - 00000000 ____D C:\Program Files (x86)\Elaborate Bytes
2016-11-30 10:37 - 2014-10-30 14:26 - 00000000 ____D C:\Program Files (x86)\HDClone 5.1 Free Edition
2016-11-30 10:37 - 2014-10-22 11:07 - 00000000 ____D C:\Program Files (x86)\Fake Webcam 7.4
2016-11-30 10:37 - 2014-10-21 10:34 - 00000000 ____D C:\Program Files (x86)\CarProKey
2016-11-30 10:37 - 2014-10-21 08:41 - 00000000 ____D C:\Program Files (x86)\Intel
2016-11-30 10:37 - 2014-10-08 13:59 - 00000000 ____D C:\Program Files (x86)\Panda Security
2016-11-30 10:37 - 2014-10-01 18:57 - 00000000 ____D C:\Program Files (x86)\Paragon Software
2016-11-30 10:37 - 2014-10-01 13:32 - 00000000 ____D C:\Program Files (x86)\Google
2016-11-30 10:37 - 2014-10-01 12:01 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2016-11-30 10:37 - 2014-10-01 11:36 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-11-30 10:37 - 2014-09-30 19:23 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-11-30 10:37 - 2014-09-30 18:33 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-11-30 10:37 - 2014-09-30 16:44 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2016-11-30 10:37 - 2014-09-30 16:36 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-11-30 10:37 - 2014-09-30 16:36 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2016-11-30 09:46 - 2015-11-07 20:20 - 00004160 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A547225E-06CA-47EA-894B-CD5FD0DCFF49}
2016-11-30 08:53 - 2015-06-15 19:20 - 00001198 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2155083525-1168965681-3283480890-1001Core.job
2016-11-30 02:00 - 2014-09-30 17:15 - 00000000 ____D C:\Users\Matthias\AppData\Local\Adobe
2016-11-29 22:22 - 2015-05-17 13:14 - 00000000 ____D C:\Users\Matthias\Documents\Citavi 4
2016-11-29 08:48 - 2015-06-15 19:20 - 00004376 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2155083525-1168965681-3283480890-1001UA
2016-11-29 08:48 - 2015-06-15 19:20 - 00004000 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2155083525-1168965681-3283480890-1001Core
2016-11-27 01:08 - 2015-10-05 18:05 - 00000946 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-11-25 15:10 - 2015-10-30 08:24 - 00000000 __RSD C:\WINDOWS\Media
2016-11-25 15:10 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-11-25 15:10 - 2015-10-08 17:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2016-11-25 15:09 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF
2016-11-25 10:45 - 2015-10-17 13:26 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Spotify
2016-11-25 10:44 - 2014-10-23 12:15 - 00000000 ___RD C:\Users\Matthias\Dropbox
2016-11-25 10:40 - 2014-10-07 16:34 - 00000000 ___RD C:\Users\Matthias\iCloudDrive
2016-11-25 10:39 - 2015-10-17 13:27 - 00000000 ____D C:\Users\Matthias\AppData\Local\Spotify
2016-11-25 10:38 - 2016-01-17 14:40 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\SynciOS Data Transfer
2016-11-25 10:37 - 2015-05-01 20:52 - 00000637 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2016-11-25 10:37 - 2014-10-15 06:45 - 00000000 ____D C:\ProgramData\VMware
2016-11-25 10:36 - 2016-04-27 06:48 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-11-25 10:35 - 2015-10-30 07:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-11-24 20:13 - 2014-09-30 17:18 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-11-24 16:25 - 2015-11-11 16:02 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
2016-11-24 16:24 - 2015-11-11 16:05 - 00000000 ____D C:\Program Files\Samsung
2016-11-24 16:24 - 2015-11-11 16:02 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Samsung
2016-11-24 13:58 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-11-24 13:54 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-11-24 13:38 - 2014-09-30 16:36 - 00000000 ____D C:\Program Files\Microsoft Office
2016-11-24 13:12 - 2015-10-08 17:22 - 00000000 ____D C:\WINDOWS\system32\STRING
2016-11-24 09:55 - 2014-09-30 20:23 - 00000000 ____D C:\Users\Matthias\AppData\Local\JDownloader v2.0
2016-11-24 09:25 - 2016-08-28 09:49 - 00000000 ____D C:\Users\Matthias\Documents\0.6_Feuerwehr
2016-11-23 22:09 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-11-23 10:09 - 2015-11-11 20:59 - 00000000 ____D C:\Users\Matthias\AppData\Local\Samsung
2016-11-23 09:56 - 2016-07-01 14:56 - 00000000 ____D C:\Users\Matthias
2016-11-22 21:36 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-11-22 09:46 - 2015-11-19 15:02 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Skype
2016-11-22 00:57 - 2014-09-30 14:22 - 00000000 ____D C:\Users\Matthias\AppData\Local\Packages
2016-11-21 10:40 - 2016-08-28 09:53 - 00000000 ____D C:\Users\Matthias\Einsatz_Monitor
2016-11-21 10:22 - 2016-08-28 09:50 - 00000000 ____D C:\Users\Matthias\AppData\Local\Deployment
2016-11-20 23:34 - 2015-07-20 19:05 - 00000122 _____ C:\Users\Matthias\.ewanapi_cookie
2016-11-16 21:52 - 2016-10-16 13:55 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Notepad++
2016-11-16 10:03 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-11-15 10:53 - 2016-01-20 20:57 - 00002268 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-11-15 10:53 - 2016-01-20 20:57 - 00002256 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-11-15 10:35 - 2015-08-22 15:26 - 00000000 ____D C:\Users\Matthias\AppData\Local\ElevatedDiagnostics
2016-11-12 10:38 - 2014-10-23 12:12 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Dropbox
2016-11-12 10:32 - 2015-10-05 17:28 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2016-11-10 12:24 - 2015-09-09 11:49 - 00000132 _____ C:\Users\Matthias\AppData\Roaming\Adobe CS6-PNG-Format - Voreinstellungen
2016-11-09 16:46 - 2016-10-18 09:51 - 00000000 ____D C:\Users\Matthias\Documents\0.00_Firma
2016-11-09 11:16 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-11-09 11:16 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-11-09 11:16 - 2015-10-05 18:05 - 00004024 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-11-09 10:16 - 2015-10-05 18:05 - 00003870 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-11-06 18:11 - 2015-10-07 11:14 - 00000000 ____D C:\EEK
2016-11-06 17:42 - 2015-11-19 15:01 - 00000000 ____D C:\ProgramData\Skype
2016-11-06 14:58 - 2016-10-18 09:55 - 00000000 ____D C:\Users\Matthias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SoftwareNetz
2016-11-06 14:58 - 2016-10-18 09:55 - 00000000 ____D C:\Softwarenetz
2016-11-06 14:54 - 2016-10-14 14:51 - 00002431 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2016-11-06 14:47 - 2016-10-18 11:38 - 00001658 _____ C:\Users\Matthias\Desktop\MyMoney3.lnk
2016-11-05 13:01 - 2015-10-05 17:28 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-11-02 12:53 - 2014-09-30 16:44 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-11-02 12:51 - 2013-08-22 14:25 - 00000192 _____ C:\WINDOWS\win.ini
2016-11-02 10:51 - 2016-04-27 06:13 - 00868924 _____ C:\WINDOWS\system32\perfh007.dat
2016-11-02 10:51 - 2016-04-27 06:13 - 00191950 _____ C:\WINDOWS\system32\perfc007.dat
2016-11-02 10:51 - 2015-09-23 07:09 - 02061082 _____ C:\WINDOWS\system32\PerfStringBackup.INI
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2016-08-16 12:07 - 2016-08-16 12:07 - 7065600 _____ () C:\Program Files (x86)\GUT1C1C.tmp
2016-11-10 12:26 - 2016-11-10 12:37 - 0000132 _____ () C:\Users\Matthias\AppData\Roaming\Adobe CS6-BMP-Format - Voreinstellungen
2016-10-07 19:02 - 2016-10-07 19:02 - 0000132 _____ () C:\Users\Matthias\AppData\Roaming\Adobe CS6-GIF-Format - Voreinstellungen
2015-09-09 11:49 - 2016-11-10 12:24 - 0000132 _____ () C:\Users\Matthias\AppData\Roaming\Adobe CS6-PNG-Format - Voreinstellungen
2015-12-15 12:07 - 2016-08-27 08:32 - 0000096 _____ () C:\Users\Matthias\AppData\Roaming\Camdata.ini
2015-12-15 12:07 - 2016-08-27 08:32 - 0000408 _____ () C:\Users\Matthias\AppData\Roaming\CamLayout.ini
2015-12-15 12:07 - 2016-08-27 08:32 - 0000408 _____ () C:\Users\Matthias\AppData\Roaming\CamShapes.ini
2015-12-15 12:07 - 2016-08-27 08:32 - 0004547 _____ () C:\Users\Matthias\AppData\Roaming\CamStudio.cfg
2015-12-15 10:34 - 2016-08-27 08:32 - 0000096 _____ () C:\Users\Matthias\AppData\Roaming\version2.xml
2014-12-02 15:36 - 2014-12-02 15:36 - 0003584 _____ () C:\Users\Matthias\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-02 11:00 - 2015-02-02 11:03 - 0000600 _____ () C:\Users\Matthias\AppData\Local\PUTTY.RND
2014-11-25 10:31 - 2015-05-26 11:40 - 0000000 _____ () C:\Users\Matthias\AppData\Local\Temptable.xml
2016-01-20 11:31 - 2016-01-20 11:31 - 0000262 _____ () C:\ProgramData\fontcacheev1.dat
2015-07-10 11:49 - 2015-07-10 11:49 - 0000153 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
2014-11-13 13:54 - 2014-11-13 13:54 - 0010500 _____ () C:\ProgramData\regid.2001-10.com.zuken,E3_3C2CDD77-CF19-43B6-8C36-F75F19597FEF.swidtag
Dateien, die verschoben oder gelöscht werden sollten:
====================
C:\ProgramData\fontcacheev1.dat
Einige Dateien in TEMP:
====================
C:\Users\Matthias\AppData\Local\Temp\dp-chooser.exe
C:\Users\Matthias\AppData\Local\Temp\dpinst-amd64.exe
C:\Users\Matthias\AppData\Local\Temp\dpinst-x86.exe
C:\Users\Matthias\AppData\Local\Temp\Font__19312_il510.exe
C:\Users\Matthias\AppData\Local\Temp\keydown01.exe
C:\Users\Matthias\AppData\Local\Temp\Maint000.exe
C:\Users\Matthias\AppData\Local\Temp\Maint001.exe
C:\Users\Matthias\AppData\Local\Temp\MSETUP4.EXE
C:\Users\Matthias\AppData\Local\Temp\npp.7.1.Installer.exe
C:\Users\Matthias\AppData\Local\Temp\proxy_vole3345435625122821435.dll
C:\Users\Matthias\AppData\Local\Temp\proxy_vole3628022585499058664.dll
C:\Users\Matthias\AppData\Local\Temp\proxy_vole7730636547432280272.dll
C:\Users\Matthias\AppData\Local\Temp\s11665.exe
C:\Users\Matthias\AppData\Local\Temp\s21597.exe
C:\Users\Matthias\AppData\Local\Temp\setup_manwis.EXE
C:\Users\Matthias\AppData\Local\Temp\tmp615F.tmp.exe
C:\Users\Matthias\AppData\Local\Temp\totaluninstaller2.exe
==================== Bamital & volsnap ======================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2016-11-26 09:08
==================== Ende von FRST.txt ============================
--- --- ---
nun hier die ADDITION.txt Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 27-11-2016
durchgeführt von Matthias (30-11-2016 11:23:22)
Gestartet von C:\Users\Matthias\Desktop
Windows 10 Pro Version 1511 (X64) (2016-07-01 14:57:53)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-2155083525-1168965681-3283480890-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2155083525-1168965681-3283480890-503 - Limited - Disabled)
Gast (S-1-5-21-2155083525-1168965681-3283480890-501 - Limited - Disabled)
Matthias (S-1-5-21-2155083525-1168965681-3283480890-1001 - Administrator - Enabled) => C:\Users\Matthias
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Emsisoft Internet Security (Enabled - Up to date) {701CB209-EBBC-AADC-11E6-DE73E7AF4C9D}
AS: Emsisoft Internet Security (Enabled - Up to date) {CB7D53ED-CD86-A552-2B56-E5019C280620}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Emsisoft Internet Security (Enabled) {4827332C-A1D3-AB84-3AB9-7746197C0BE6}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
µTorrent (HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\uTorrent) (Version: 3.4.7.42330 - BitTorrent Inc.)
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )
AAVUpdateManager (HKLM-x32\...\{AFA42FE1-A5C3-485F-9180-BFCF5BF1F1C3}) (Version: 18.00.0000 - Wolters Kluwer Deutschland GmbH)
Active@ ISO File Manager (HKLM-x32\...\{5C2D48D7-8CDF-4866-B415-69EBB67E2845}) (Version: 4.0.4 - LSoft Technologies)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated)
Adobe Acrobat X Pro - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000005}) (Version: 10.1.15 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.178 - Adobe Systems Incorporated)
Adobe Creative Suite 6 Master Collection (HKLM-x32\...\{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}) (Version: 6 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated)
Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.)
Adobe® Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 3.4.3 - Adobe Systems, Incorporated)
Advanced Port Scanner v1.3 (HKLM-x32\...\Advanced Port Scanner v1.3) (Version: - )
Amazon Kindle (HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Amazon Kindle) (Version: 1.13.1.42052 - Amazon)
Apple Application Support (32-Bit) (HKLM-x32\...\{F2871C89-C8A5-42EE-8D45-0F02506385A6}) (Version: 5.1 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{9BC93467-75D1-4AA4-BD58-D9C51D88DFAB}) (Version: 5.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
AutoCAD Mechanical 2015 - Deutsch (German) (Version: 19.0.48.0 - Autodesk) Hidden
AutoCAD Mechanical 2015 - English (Version: 19.0.48.0 - Autodesk) Hidden
AutoCAD Mechanical 2015 Language Pack - Deutsch (German) (Version: 19.0.48.0 - Autodesk) Hidden
AutoCAD Mechanical 2015 Language Pack - English (Version: 19.0.48.0 - Autodesk) Hidden
Autodesk 360 (HKLM\...\{556966D9-F7F6-421B-9707-D07901604DDF}) (Version: 5.0.29.1101 - Autodesk)
Autodesk App Manager (HKLM-x32\...\{C8125548-F2D5-4059-823F-1F3C5BBD9F19}) (Version: 1.2.0 - Autodesk)
Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 1.0.59.0 - Autodesk)
Autodesk AutoCAD Mechanical 2015 - English (HKLM\...\AutoCAD Mechanical 2015 - English) (Version: 19.0.48.0 - Autodesk)
Autodesk AutoCAD Mechanical 2015 Language Pack - Deutsch (German) (HKLM\...\AutoCAD Mechanical 2015 Language Pack - Deutsch (German)) (Version: 19.0.48.0 - Autodesk)
Autodesk AutoCAD Performance Feedback Tool Version 1.2.2 (HKLM-x32\...\{85735431-6CD3-4B16-BEC8-95332034E53B}) (Version: 1.2.2.0 - Autodesk)
Autodesk BIM 360 Glue AutoCAD 2015 Add-in 64 bit (HKLM\...\{9D589081-AFC2-4932-9071-AC585AC1EA83}) (Version: 3.32.3004 - Autodesk)
Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.2.0.0 - Autodesk)
Autodesk Content Service (x32 Version: 3.2.0.0 - Autodesk) Hidden
Autodesk Content Service Language Pack (x32 Version: 3.2.0.0 - Autodesk) Hidden
Autodesk Design Review 2013 (HKLM-x32\...\Autodesk Design Review 2013) (Version: 13.0.0.82 - Autodesk, Inc.)
Autodesk Design Review 2013 (x32 Version: 13.0.0.82 - Autodesk, Inc.) Hidden
Autodesk DWG TrueView 2015 - English (HKLM\...\DWG TrueView 2015 - English) (Version: 20.0.51.0 - Autodesk)
Autodesk Inventor Content Center Libraries 2015 (Desktop Content) (HKLM\...\{B46DECD1-1964-4EF1-0000-22D71E81877C}) (Version: 19.0.15900.0000 - Autodesk)
Autodesk Inventor Professional 2015 - English (HKLM\...\Autodesk Inventor Professional 2015) (Version: 19.0.15900.0000 - Autodesk)
Autodesk Inventor Professional 2015 (Version: 19.0.15900.0000 - Autodesk) Hidden
Autodesk Inventor Professional 2015 English Language Pack (Version: 19.0.15900.0000 - Autodesk) Hidden
Autodesk Inventor Professional 2015 Language Pack - Deutsch (German) (HKLM\...\Autodesk Inventor 2015 Language Pack - Deutsch (German)) (Version: 19.0.15900.0000 - Autodesk)
Autodesk Inventor Professional 2015 Language Pack - Deutsch (German) (Version: 19.0.15900.0000 - Autodesk) Hidden
Autodesk Material Library 2015 (HKLM-x32\...\{427F733F-4D6C-45BC-9324-EB743104C321}) (Version: 5.2.9.100 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2015 (HKLM-x32\...\{ABE2F70B-8D94-44E9-AA04-F0DB35063D62}) (Version: 5.2.9.100 - Autodesk)
Autodesk Material Library Low Resolution Image Library 2015 (HKLM-x32\...\{4FBC9635-AC56-4378-8FDE-C4D3ED072681}) (Version: 5.2.9.100 - Autodesk)
Autodesk ReCap (HKLM\...\Autodesk ReCap) (Version: 1.3.1.39 - Autodesk)
Autodesk ReCap (Version: 1.3.1.39 - Autodesk) Hidden
Autodesk Revit Interoperability for Inventor 2015 (HKLM\...\Autodesk Revit Interoperability for Inventor 2015) (Version: 15.0.107.0 - Autodesk)
Autodesk Revit Interoperability for Inventor 2015 (Version: 15.0.107.0 - Autodesk) Hidden
Autodesk Vault Basic 2015 (Client) (HKLM\...\Autodesk Vault Basic 2015 (Client)) (Version: 19.0.49.0 - Autodesk)
Autodesk Vault Basic 2015 (Client) (Version: 19.0.49.0 - Autodesk) Hidden
Autodesk Vault Basic 2015 (Client) English Language Pack (Version: 19.0.49.0 - Autodesk) Hidden
AutoHotkey 1.1.24.01 (HKLM\...\AutoHotkey) (Version: 1.1.24.01 - Lexikos)
AVI Joiner (HKLM-x32\...\AVI Joiner_is1) (Version: - )
Avidemux 2.6 - 64 bits (HKLM-x32\...\Avidemux 2.6 - 64 bits (64-bit)) (Version: 2.6.12.160304 - )
Bamboo Dock (HKLM-x32\...\Bamboo Dock) (Version: 4.1 - Wacom Co., Ltd.)
Bamboo Dock (x32 Version: 4.1.0 - Wacom Europe GmbH) Hidden
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BosMon 1.3.6 (HKLM-x32\...\{B837579C-B73E-47ED-B722-B0076CDDFB2C}_is1) (Version: - )
CAD-PlugIn SolidWorks 7.4 (HKLM\...\{42F48C90-2D4D-4B02-8295-55B34A26373C}_is1) (Version: 7.4 - GWJ Technology GmbH)
CamStudio 2.7.4 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.4 - CamStudio Open Source)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.)
Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - Canon Inc.)
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.2.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 4.0.0 - Canon Inc.)
Canon Kurzwahlprogramm (HKLM-x32\...\Speed Dial Utility) (Version: 1.3.0 - Canon Inc.)
Canon MX920 series Benutzerregistrierung (HKLM-x32\...\Canon MX920 series Benutzerregistrierung) (Version: - *Canon Inc.)
Canon MX920 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX920_series) (Version: 1.01 - Canon Inc.)
Canon MX920 series On-screen Manual (HKLM-x32\...\Canon MX920 series On-screen Manual) (Version: 7.6.0 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 1.1.2 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 1.0.1 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.1.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.1.0 - Canon Inc.)
CarProKey Version 1.04 (HKLM-x32\...\CarProKey_is1) (Version: 1.04 - CarProKey)
Citavi 4 (HKLM-x32\...\{CC0A85B2-734A-45B3-B678-05F6A6499AC7}) (Version: 4.5.0.11 - Swiss Academic Software)
Conexant 20561 SmartAudio HD (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.92.10.0 - Conexant)
Configurator 360 addin (HKLM-x32\...\{8FE324B0-B934-4D68-BAB5-DE2136036237}) (Version: 19.0.11300.9000 - Autodesk, Inc.)
cssSlider (HKLM-x32\...\cssSlider_is1) (Version: - )
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Digital Frame Manager (x32 Version: 1.50.000 - BVRP Software) Hidden
DMG Extractor (HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\DMG Extractor) (Version: 1.3.15.0 - Reincubate Ltd)
Document_Installer (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden
DReport Viewer 4 (HKLM-x32\...\{6CF895F9-7D93-4B10-8BFC-2188F1EB339A}) (Version: 4.00.0043 - DÖRR EDV-Beratung)
DReport Viewer 4 (HKLM-x32\...\{811E4E77-05C8-422E-8077-B9A80BF15C68}) (Version: 4.00.0043 - DÖRR EDV-Beratung)
Dropbox (HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Dropbox) (Version: 14.4.19 - Dropbox, Inc.)
DWG TrueView 2015 - English (Version: 20.0.51.0 - Autodesk) Hidden
eAssistant (HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\{B8FFC4BF-DF1F-42CE-92D3-716F4D0BECE6}) (Version: 1.1 - GWJ Technology GmbH)
Easy ISO Burner 2.10 (HKLM-x32\...\{42F12F02-9AA8-4448-85DE-6F0AB23D705D}_is1) (Version: 2.10 - EasyIsoSoft Company, Inc.)
Eco Materials Adviser for Autodesk Inventor 2015 (64-bit) (HKLM\...\{2F7441CB-A646-41F1-B1CB-518AB311138B}) (Version: 5.1.2.0 - Granta Design Limited)
Einsatz Monitor 5.1 (HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\562cfdc45996b578) (Version: 5.1.1.79 - Feuer Software)
ELS-Professional 5.0.3.0 (HKLM-x32\...\ELS-Professional_is1) (Version: 5.0.3.0 - )
Emsisoft Internet Security (HKLM-x32\...\{5502032C-88C1-4303-99FE-B5CBD7684CEA}_is1) (Version: 10.0 - Emsisoft Ltd.)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - )
EWA (HKLM-x32\...\EWA net) (Version: - )
EWA_net_Admin (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden
EWA_net_Client_Applications (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden
EWA_net_Core (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden
EWA_net_EPC (HKLM-x32\...\InstallShield_{7A997C02-81D4-4FEC-9C1C-F916611F8360}) (Version: - )
EWA_net_EPC (x32 Version: 1.00.0000 - Daimler) Hidden
EWA_net_Server (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden
EWA_net_WIS (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden
EWA_net_WIS_CaseOnline_Importer (x32 Version: 1.00.0000 - DaimlerChrysler AG) Hidden
FARO LS 1.1.502.0 (64bit) (HKLM-x32\...\{66D83FE0-D798-4B38-86FE-FB48151E5AEF}) (Version: 5.2.0.35213 - FARO Scanner Production)
Festo PARTdataManager 2016 (HKLM-x32\...\Festo PARTdataManager 2016_is1) (Version: 2016.0 - Festo AG & Co. KG)
FileZilla Client 3.16.1 (HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\FileZilla Client) (Version: 3.16.1 - Tim Kosse)
FileZilla Server (HKLM-x32\...\FileZilla Server) (Version: beta 0.9.52 - FileZilla Project)
FMS32-PRO - Demo Version 3.2.7 (HKLM-x32\...\{2998E73A-1DAF-41BD-9CF1-3F90F41D989E}_is1) (Version: 3.2.7 - HeiRue-Soft)
FMS-Simulator 3.1.0.0 (HKLM-x32\...\FMS-Simulator_is1) (Version: 3.1.0.0 - )
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Free Easy Burner V 5.1 (HKLM-x32\...\Free Easy Burner_is1) (Version: 5.1.0.0 - Koyote soft)
Free MP3 Cutter and Editor 2.8 (HKLM-x32\...\Free MP3 Cutter and Editor_is1) (Version: - musetips.com)
Free MP4 Video Converter (HKLM-x32\...\Free MP4 Video Converter_is1) (Version: 5.0.96.627 - Digital Wave Ltd)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Grewe Scanner-Interface 7 (HKLM-x32\...\{B1C3F49A-DE7D-1AC1-0913-039C1A8B9B82}) (Version: 7 - Grewe Computertechnik GmbH)
Hardlock Gerätetreiber (HKLM-x32\...\Hardlock Gerätetreiber) (Version: - )
Hausverwaltung easy (HKLM-x32\...\{781A6302-3E7A-4ABE-886D-78A65CC84BF7}) (Version: 14.2 - WAREHaus GmbH)
HDClone 5.1.4 Free Edition (HKLM\...\Miray.HDClone.Free.5.1.4.1031-{F9C5CFC0-F9D0-4A14-8DAB-CF877115235D}) (Version: 5.1 - Miray Software AG)
Heizkosten easy (HKLM-x32\...\{0B0D8382-42D5-4666-92F5-0051FF260C35}) (Version: 10.2 - WAREHaus GmbH)
iCloud (HKLM\...\{29AAC3D3-23FC-496D-8266-0E3833686758}) (Version: 6.0.2.10 - Apple Inc.)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Intel® Active-Management-Technologie (HKLM\...\MESOL) (Version: - Intel Corporation)
iTunes (HKLM\...\{0D44E3A4-6C3D-45D7-B443-079509E5BE5D}) (Version: 12.3.2.35 - Apple Inc.)
Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.14 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
KeyShot 5 64 bit (HKLM-x32\...\KeyShot 5_64) (Version: 5.0 64 bit - Luxion ApS)
klickTel Telefon- und Branchenbuch + Rückwärtssuche Herbst 2014 (HKLM-x32\...\{6105FFED-C382-4FC9-B1A9-6523FA104B00}) (Version: 1.00.0000 - telegate MEDIA AG)
KMSpico v9.3.2 (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: 9.3.2 - )
Kodi (HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\Kodi) (Version: - XBMC-Foundation)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.10.15 - Lenovo)
Lexware buchhalter 2016 (x32 Version: 21.50.00.0341 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Datenbank plus 2015 (x32 Version: 15.25.00.0079 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Einnahmen-Überschuss-Rechner 2016 (HKLM-x32\...\{a489bcbe-1bc4-45d2-9fef-c6fab2258e3c}) (Version: 21.50.0.242 - Haufe-Lexware GmbH & Co.KG)
Lexware Elster (x32 Version: 16.04.00.0240 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Elster 2016 (HKLM-x32\...\{2b549e10-2e93-4458-a1b8-2f16ab267f61}) (Version: 16.4.0.201 - Haufe-Lexware GmbH & Co.KG)
Lexware Info Service (x32 Version: 16.00.00.0040 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware Installations Dienst (HKLM-x32\...\{6FF55A3A-4E59-4CF8-9248-2EE747168B3E}) (Version: 5.01.00.0040 - Haufe-Lexware GmbH & Co.KG)
Lexware online banking (x32 Version: 22.04.00.0043 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware PDF-Export 5 (x32 Version: 5.00.01.0009 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware reisekosten plus 2015 (x32 Version: 15.03.00.0158 - Haufe-Lexware GmbH & Co.KG) Hidden
Lexware reisekosten plus Gratisversion 2015 (HKLM-x32\...\{29872c1a-2923-40cc-b5c9-5fcac3ec3d76}) (Version: 15.3.0.109 - Haufe-Lexware GmbH & Co.KG)
Lexware Services (x32 Version: 3.00.00.0003 - Haufe-Lexware GmbH & Co.KG) Hidden
MANWIS (HKLM-x32\...\MANWIS) (Version: - )
Math-Kernel-Bibliotheken (64 Bit) (Version: 1.0.31.0 - National Instruments) Hidden
Math-Kernel-Bibliotheken (64 Bit) (Version: 13.0.13 - National Instruments) Hidden
Math-Kernel-Bibliotheken (x32 Version: 1.0.31.0 - National Instruments) Hidden
Math-Kernel-Bibliotheken (x32 Version: 13.0.13 - National Instruments) Hidden
MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited)
Microsoft Office 2003 Web Components (HKLM-x32\...\{90120000-00A4-0409-0000-0000000FF1CE}) (Version: 12.0.6213.1000 - Microsoft Corporation)
Microsoft Office 365 ProPlus - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 16.0.6965.2105 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{2C303EE0-A595-3543-A71A-931C7AC40EDE}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50709.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2008 Native Client (HKLM\...\{C79A7EAB-9D6F-4072-8A6D-F8F54957CD93}) (Version: 10.0.1600.22 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files (HKLM\...\{B40EE88B-400A-4266-A17B-E3DE64E94431}) (Version: 10.1.2731.0 - Microsoft Corporation)
Microsoft SQL Server 2012 (64-bit) (HKLM\...\Microsoft SQL Server SQLServer2012) (Version: - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Setup (English) (HKLM\...\{5DDC2234-4B37-45BC-AD33-41F1469B4D83}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{0E8670B8-3965-4930-ADA6-570348B67153}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU (HKLM\...\Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU) (Version: - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft VSS Writer for SQL Server 2012 (HKLM\...\{3E0DD83F-BE4C-4478-86A0-AD0D79D1353E}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.5.166.0 - Microsoft Corporation)
Mockup 360 Addin 2015 (HKLM-x32\...\{E4D4242C-FC14-4B4F-B1D9-6760D8C241D5}) (Version: 1.1.0 - Autodesk)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 50.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 50.0.1 (x86 de)) (Version: 50.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.0.1.6171 - Mozilla)
MP4Tools v3.3 (HKLM-x32\...\MP4Tools_is1) (Version: - )
MyFreeCodec (HKU\S-1-5-21-2155083525-1168965681-3283480890-1001\...\MyFreeCodec) (Version: - )
MyPublicWiFi 5.1 (HKLM-x32\...\{C08D782B-9281-406B-ABCE-326DA70B8A1F}_is1) (Version: - TRUE Software)
MySQL Server 5.1 (HKLM-x32\...\{8D12E93E-5847-4985-90F0-36C5DE8F8B8C}) (Version: 5.1.22 - MySQL AB)
National Instruments - Software (HKLM-x32\...\NI Uninstaller) (Version: - National Instruments)
Nebenkosten easy professional (HKLM-x32\...\{BD88D49B-15CE-48DF-B24F-4C0BC683EBF2}) (Version: 8.1 - )
NI .NET Framework 4.0 (x32 Version: 4.01.49154 - National Instruments) Hidden |