highflyers | 09.09.2015 12:32 | Guten Tag,
hier die mbam-Datei Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 08.09.2015
Suchlaufzeit: 12:18
Protokolldatei: mbam.txt
Administrator: Ja
Version: 2.1.8.1057
Malware-Datenbank: v2015.09.08.02
Rootkit-Datenbank: v2015.08.16.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: Yannic
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 373904
Abgelaufene Zeit: 42 Min., 53 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 12
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\PluginContainer.exe, 2240, Löschen bei Neustart, [81f150dd14774cea4fdac3d740c5c23e]
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\10\Plugin.exe, 1080, Löschen bei Neustart, [e88a2effbfccd16544e5782246bf936d]
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7\Plugin.exe, 6572, Löschen bei Neustart, [630f0b225c2f73c30524aeec9273f808]
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7\Plugin.exe, 9308, Löschen bei Neustart, [630f0b225c2f73c30524aeec9273f808]
PUP.Optional.GreatFind, C:\Program Files (x86)\Common Files\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\updater.exe, 3900, Löschen bei Neustart, [066c60cd0f7caa8c64c54d4d7c89fb05]
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\4\Plugin.exe, 1776, Löschen bei Neustart, [ed85a7864c3f2412d455e2b8af56a957]
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\5\Plugin.exe, 11484, Löschen bei Neustart, [61118aa30d7ef244e9402476010421df]
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\8\Plugin.exe, 8308, Löschen bei Neustart, [acc6ff2e05868aac3beed1c9778e6f91]
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\3\Plugin.exe, 6244, Löschen bei Neustart, [c2b09994216a95a104256832788d3cc4]
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\3\Plugin.exe, 10992, Löschen bei Neustart, [c2b09994216a95a104256832788d3cc4]
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\12\Plugin.exe, 8044, Löschen bei Neustart, [4c26cb62800b5dd95ecbeeac1fe628d8]
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\12\Plugin.exe, 10124, Löschen bei Neustart, [4c26cb62800b5dd95ecbeeac1fe628d8]
Module: 3
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{4BD42922-15AA-47B1-AAF6-0DD550E4D5FC}.xpi, Löschen bei Neustart, [b3bfec41fb908ea80fc60e9bb051df21],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{4BD42922-15AA-47B1-AAF6-0DD550E4D5FC}.xpi, Löschen bei Neustart, [b3bfec41fb908ea80fc60e9bb051df21],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{28303DDE-9F28-4FC5-80DE-F96A0C96552C}.dll, Löschen bei Neustart, [4b27ab82ed9ed36393968f0b4db852ae],
Registrierungsschlüssel: 36
PUP.Optional.GreatFind, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Service Mgr GreatFind, In Quarantäne, [81f150dd14774cea4fdac3d740c5c23e],
PUP.Optional.GreatFind, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Update Mgr GreatFind, In Quarantäne, [066c60cd0f7caa8c64c54d4d7c89fb05],
PUP.Optional.Yontoo, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}, In Quarantäne, [640ee54818737db9f8285649ef133dc3],
PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}, In Quarantäne, [640ee54818737db9f8285649ef133dc3],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{216E07C7-8EF6-4D0A-9B9F-98A99620A6AC}, In Quarantäne, [5121de4ffd8ef244d544840506fe6b95],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{AD53798E-1E6B-40C5-A601-49FA631DD130}, In Quarantäne, [75fda489abe06ec8987fa6e3d2329769],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ED3D0838-CB9E-4ABE-956C-E850909B655E}, In Quarantäne, [b3bf45e89deec175a96f6029798ba060],
PUP.Optional.GreatFind, HKLM\SOFTWARE\WOW6432NODE\GreatFind, In Quarantäne, [73ffe4497b10e650d81851413dc7a759],
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{216E07C7-8EF6-4D0A-9B9F-98A99620A6AC}, In Quarantäne, [8de586a797f4e452899066231aeafb05],
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{AD53798E-1E6B-40C5-A601-49FA631DD130}, In Quarantäne, [531f9499addef93de631701909fb25db],
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ED3D0838-CB9E-4ABE-956C-E850909B655E}, In Quarantäne, [ff7332fb7f0c1e18f1279ced32d247b9],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{113D0D22-F4EF-46E8-9050-7DF5A3D9BEBF}, In Quarantäne, [0a682409ee9d0a2c25d27810a163f60a],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{188FAE86-B717-4F22-8F25-4DE923328C9E}, In Quarantäne, [ed85919cd4b739fd9561295f40c4cc34],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{216E07C7-8EF6-4D0A-9B9F-98A99620A6AC}, In Quarantäne, [76fc66c7b1dafe38cb2cb4d4fb090cf4],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2470B7EB-2879-4229-8930-8C81DDB74478}, In Quarantäne, [9fd3121bfd8e0234b93df19755af9769],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{262CE8EA-CEDD-40B3-A2FB-C743A2809969}, In Quarantäne, [bfb3230a8dfe0a2c18de61270202d52b],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{38BA885F-3A34-4562-B57E-75A85153CB7E}, In Quarantäne, [f37f81acd9b2979f3eb91d6b55af867a],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3ABBBCAD-A872-4ACE-8121-6A99E490F59C}, In Quarantäne, [79f96bc2d4b740f61fd72d5b897beb15],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4F812DD8-FEFC-489D-B352-53EF4A8931BC}, In Quarantäne, [1a5846e7810ad6601cdaeb9da55fbb45],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5FCCFE59-3051-49C5-99A0-348C5B5532AC}, In Quarantäne, [d999ac8103882e0850a7fd8b18ecef11],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D04D46C-99EA-4601-A794-1F38DA11325D}, In Quarantäne, [6d0573ba8cff1c1a9463286055aff907],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{914C31C4-C448-4CB6-92C1-E8FD556A27FC}, In Quarantäne, [116107264b4096a09d5abeca61a350b0],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9AAEADEF-3B8A-4A6C-8E91-EE592DAB9DEF}, In Quarantäne, [bcb6220b69224beb20d73850659f28d8],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9F1DB1F1-4F9F-4440-8E85-4073C7165A4A}, In Quarantäne, [ff73ae7f6e1dee4806f0b1d7699b35cb],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A3169BA1-F25F-4B44-B47D-152EC912902E}, In Quarantäne, [8ee4002de5a6ef479462404838cc14ec],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A9C2E2F8-204A-4D96-96D4-3E3927327DD3}, In Quarantäne, [4929e944f19a84b220d74d3b6c981be5],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{AA4E0046-96AF-4922-821E-AC6FB8343569}, In Quarantäne, [c9a939f4dab1c57186708dfbdf25f10f],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{AD53798E-1E6B-40C5-A601-49FA631DD130}, In Quarantäne, [6a08ee3f37547cbad71efe8a4fb514ec],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B9364DAC-B5CF-437C-841D-40D0F25E4C7F}, In Quarantäne, [f1816ac3ff8c063092655f29976d1de3],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D7E7E5D1-6999-439F-9035-1485E77ECDF5}, In Quarantäne, [6b0755d8bfcc0f27fbfc691faf557e82],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E34A7437-835C-47FD-BDD9-516A2D996E76}, In Quarantäne, [afc32b021774c86e30c7ff894cb8af51],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ED3D0838-CB9E-4ABE-956C-E850909B655E}, In Quarantäne, [3d35d25b08833afc975fa2e606fe55ab],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F351C8F3-F119-4576-8666-8C25312A1D41}, In Quarantäne, [c3afc7668a01191d33c3097f33d17090],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F5C9DA15-A403-4D84-934B-4F17BCDF6916}, In Quarantäne, [e0924ae31e6d47eff8ff8404a95b659b],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FD66EE4A-F897-47E0-85A6-5A9A7424C943}, In Quarantäne, [6f03b17c99f258de6f873652fa0ab848],
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FF2598D0-137B-4F2A-AF49-CC4BA7D6698B}, In Quarantäne, [432fc66794f73bfb95624444a75dc040],
Registrierungswerte: 33
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{216e07c7-8ef6-4d0a-9b9f-98a99620a6ac}|AppName, Radio Canyon-codedownloader.exe, In Quarantäne, [5121de4ffd8ef244d544840506fe6b95]
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ad53798e-1e6b-40c5-a601-49fa631dd130}|AppName, Radio Canyon-bg.exe, In Quarantäne, [75fda489abe06ec8987fa6e3d2329769]
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ed3d0838-cb9e-4abe-956c-e850909b655e}|AppName, Radio Canyon-buttonutil.exe, In Quarantäne, [b3bf45e89deec175a96f6029798ba060]
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{216e07c7-8ef6-4d0a-9b9f-98a99620a6ac}|AppName, Radio Canyon-codedownloader.exe, In Quarantäne, [8de586a797f4e452899066231aeafb05]
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ad53798e-1e6b-40c5-a601-49fa631dd130}|AppName, Radio Canyon-bg.exe, In Quarantäne, [531f9499addef93de631701909fb25db]
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ed3d0838-cb9e-4abe-956c-e850909b655e}|AppName, Radio Canyon-buttonutil.exe, In Quarantäne, [ff7332fb7f0c1e18f1279ced32d247b9]
PUP.Optional.PluginContainer, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Service Mgr GreatFind|ImagePath, "C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\PluginContainer.exe", In Quarantäne, [a3cf47e64e3df343d333c7df21e3669a]
PUP.Optional.Updater, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Update Mgr GreatFind|ImagePath, "C:\Program Files (x86)\Common Files\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\updater.exe", In Quarantäne, [4d2544e9a3e8f640773bdedaee16d32d]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{113D0D22-F4EF-46E8-9050-7DF5A3D9BEBF}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [0a682409ee9d0a2c25d27810a163f60a]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{188FAE86-B717-4F22-8F25-4DE923328C9E}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-buttonutil.exe, In Quarantäne, [ed85919cd4b739fd9561295f40c4cc34]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{216e07c7-8ef6-4d0a-9b9f-98a99620a6ac}|AppName, Radio Canyon-codedownloader.exe, In Quarantäne, [76fc66c7b1dafe38cb2cb4d4fb090cf4]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2470B7EB-2879-4229-8930-8C81DDB74478}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-buttonutil.exe, In Quarantäne, [9fd3121bfd8e0234b93df19755af9769]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{262CE8EA-CEDD-40B3-A2FB-C743A2809969}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-buttonutil.exe, In Quarantäne, [bfb3230a8dfe0a2c18de61270202d52b]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{38BA885F-3A34-4562-B57E-75A85153CB7E}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [f37f81acd9b2979f3eb91d6b55af867a]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3ABBBCAD-A872-4ACE-8121-6A99E490F59C}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-buttonutil.exe, In Quarantäne, [79f96bc2d4b740f61fd72d5b897beb15]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4F812DD8-FEFC-489D-B352-53EF4A8931BC}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-buttonutil.exe, In Quarantäne, [1a5846e7810ad6601cdaeb9da55fbb45]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5FCCFE59-3051-49C5-99A0-348C5B5532AC}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [d999ac8103882e0850a7fd8b18ecef11]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7D04D46C-99EA-4601-A794-1F38DA11325D}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [6d0573ba8cff1c1a9463286055aff907]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{914C31C4-C448-4CB6-92C1-E8FD556A27FC}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [116107264b4096a09d5abeca61a350b0]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9AAEADEF-3B8A-4A6C-8E91-EE592DAB9DEF}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [bcb6220b69224beb20d73850659f28d8]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9F1DB1F1-4F9F-4440-8E85-4073C7165A4A}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-buttonutil.exe, In Quarantäne, [ff73ae7f6e1dee4806f0b1d7699b35cb]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A3169BA1-F25F-4B44-B47D-152EC912902E}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-buttonutil.exe, In Quarantäne, [8ee4002de5a6ef479462404838cc14ec]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A9C2E2F8-204A-4D96-96D4-3E3927327DD3}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [4929e944f19a84b220d74d3b6c981be5]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{AA4E0046-96AF-4922-821E-AC6FB8343569}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-buttonutil.exe, In Quarantäne, [c9a939f4dab1c57186708dfbdf25f10f]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ad53798e-1e6b-40c5-a601-49fa631dd130}|AppName, Radio Canyon-bg.exe, In Quarantäne, [6a08ee3f37547cbad71efe8a4fb514ec]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B9364DAC-B5CF-437C-841D-40D0F25E4C7F}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [f1816ac3ff8c063092655f29976d1de3]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D7E7E5D1-6999-439F-9035-1485E77ECDF5}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [6b0755d8bfcc0f27fbfc691faf557e82]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E34A7437-835C-47FD-BDD9-516A2D996E76}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [afc32b021774c86e30c7ff894cb8af51]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{ed3d0838-cb9e-4abe-956c-e850909b655e}|AppName, Radio Canyon-buttonutil.exe, In Quarantäne, [3d35d25b08833afc975fa2e606fe55ab]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F351C8F3-F119-4576-8666-8C25312A1D41}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-buttonutil.exe, In Quarantäne, [c3afc7668a01191d33c3097f33d17090]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F5C9DA15-A403-4D84-934B-4F17BCDF6916}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [e0924ae31e6d47eff8ff8404a95b659b]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FD66EE4A-F897-47E0-85A6-5A9A7424C943}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-buttonutil.exe, In Quarantäne, [6f03b17c99f258de6f873652fa0ab848]
PUP.Optional.CrossRider, HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FF2598D0-137B-4F2A-AF49-CC4BA7D6698B}|AppName, 8b4719f5-890f-46a9-b303-ea53638eab0b-2.exe-codedownloader.exe, In Quarantäne, [432fc66794f73bfb95624444a75dc040]
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 25
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc, Löschen bei Neustart, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugincontainer, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins, Löschen bei Neustart, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\10, Löschen bei Neustart, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\10bak, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\12, Löschen bei Neustart, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\12\resources, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\12bak, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\12bak\resources, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\3, Löschen bei Neustart, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\3bak, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\4, Löschen bei Neustart, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\4bak, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\5, Löschen bei Neustart, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\5bak, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7, Löschen bei Neustart, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7\resources, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7bak, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7bak\resources, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\8, Löschen bei Neustart, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\8bak, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\Program Files (x86)\Common Files\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc, Löschen bei Neustart, [20526bc22f5c90a61c08fc11d62d17e9],
PUP.Optional.GreatFind, C:\Program Files (x86)\Common Files\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\updater, In Quarantäne, [20526bc22f5c90a61c08fc11d62d17e9],
PUP.Optional.GreatFind, C:\Program Files (x86)\Great Find, In Quarantäne, [d2a042ebb7d46ec843e2a96420e35da3],
PUP.Optional.GreatFind, C:\Program Files (x86)\Great Find\Extensions, In Quarantäne, [d2a042ebb7d46ec843e2a96420e35da3],
Dateien: 81
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\PluginContainer.exe, Löschen bei Neustart, [81f150dd14774cea4fdac3d740c5c23e],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\10\Plugin.exe, Löschen bei Neustart, [e88a2effbfccd16544e5782246bf936d],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7\Plugin.exe, Löschen bei Neustart, [630f0b225c2f73c30524aeec9273f808],
PUP.Optional.GreatFind, C:\Program Files (x86)\Common Files\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\updater.exe, Löschen bei Neustart, [066c60cd0f7caa8c64c54d4d7c89fb05],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{4BD42922-15AA-47B1-AAF6-0DD550E4D5FC}.xpi, In Quarantäne, [b3bfec41fb908ea80fc60e9bb051df21],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\4\Plugin.exe, Löschen bei Neustart, [ed85a7864c3f2412d455e2b8af56a957],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\5\Plugin.exe, Löschen bei Neustart, [61118aa30d7ef244e9402476010421df],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\8\Plugin.exe, Löschen bei Neustart, [acc6ff2e05868aac3beed1c9778e6f91],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\3\Plugin.exe, Löschen bei Neustart, [c2b09994216a95a104256832788d3cc4],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\12\Plugin.exe, Löschen bei Neustart, [4c26cb62800b5dd95ecbeeac1fe628d8],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{28303DDE-9F28-4FC5-80DE-F96A0C96552C}.dll, In Quarantäne, [4b27ab82ed9ed36393968f0b4db852ae],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\PluginContainer.bak, In Quarantäne, [a0d21617bccfa78f5dcc099148bd2bd5],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\10bak\Plugin.exe, In Quarantäne, [264c0f1e444740f656d34357f5107e82],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\12\resources\plugin.dll, In Quarantäne, [f87a9499c2c98da91b0e8b0fe02521df],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\12bak\Plugin.exe, In Quarantäne, [175ba7861a716dc9a386abefa95ca35d],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\12bak\resources\plugin.dll, In Quarantäne, [d1a1b07d404bb3837aaf23773bca1ae6],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\3bak\Plugin.exe, In Quarantäne, [ea885dd0c7c4e65035f4f2a8a46132ce],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\4bak\Plugin.exe, In Quarantäne, [8ee462cb0586b18567c27b1f8580b24e],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\5bak\Plugin.exe, In Quarantäne, [383a0b2297f4fd39b2770793a95c4cb4],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7\resources\38.0.5.dll, In Quarantäne, [abc749e4e9a290a634f5faa0f51037c9],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7\resources\39.0.0.dll, In Quarantäne, [1c56909da7e4290d46e3dbbf9b6a13ed],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7\resources\40.0.0.dll, In Quarantäne, [d59dd05d8b007abc67c2e9b17293d927],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7bak\Plugin.exe, In Quarantäne, [660c15180d7e69cd8f9ab3e73dc8f808],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7bak\resources\38.0.5.dll, In Quarantäne, [b6bcd65716759c9ad7523c5eb94ce41c],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7bak\resources\39.0.0.dll, In Quarantäne, [da982508aeddac8a38f14d4d6c993ec2],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\7bak\resources\40.0.0.dll, In Quarantäne, [b8ba3fee25668babb178a7f35ca946ba],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\plugins\8bak\Plugin.exe, In Quarantäne, [442e6dc00d7eb58128014f4b8f76cb35],
PUP.RiskWare.Patcher, C:\$Recycle.Bin\S-1-5-21-2271421671-2185954834-4090823298-1001\$RJHUDO9.rar, In Quarantäne, [88ea9a93206bce68e39d8a2047ba3bc5],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{02A75050-256D-4C69-B114-2FE24E927693}.dll, In Quarantäne, [f37fd35a7f0c3204f336aaf0867fdc24],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{853EA311-E0CB-4413-905D-C959667FA7FE}.dll, In Quarantäne, [c8aab776484355e18a9fb8e26f967b85],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{CC0B0957-339E-4655-81A1-5C238D806184}.dll, In Quarantäne, [cea49f8e0f7c2214b475ff9bcf364cb4],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{EC18F238-E380-4531-854A-E60750EDB547}.xpi, In Quarantäne, [5f135ad3ddaeab8bd203109981808c74],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{1A36EE40-49DF-49CF-93D1-2924A13B254E}.xpi, In Quarantäne, [a1d10c215b300e28d40173362dd4946c],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{2CA01BF6-B261-46D7-8DDC-81A7D185112D}.xpi, In Quarantäne, [cda52805d2b9a0967b5aadfc9a67fb05],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{2DD3124B-D642-4E4C-95DD-89196040FC98}.dll, In Quarantäne, [076b64c9a9e20e2843e61f7b45c0b848],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{354A197D-EC53-493A-85E3-E1B06E57A9EB}.dll, In Quarantäne, [89e932fb8209df5732f79505c73e30d0],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{3CBFCC6E-FFBE-432D-9F2B-AF2D118A8EC5}.dll, In Quarantäne, [7ff3e34ab3d8ed499a8f4951a164a060],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{3FD74493-9F8B-4535-BBB1-F2E092DC7877}.dll, In Quarantäne, [2949210c1873d6600d1c485237ce728e],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{447A6F87-6743-4586-B641-C984FB6485DA}.dll, In Quarantäne, [c8aaec41f497f73f56d33862699cc43c],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{5403B5DE-10EF-4E46-8ABD-F8CAEED2699D}.dll, In Quarantäne, [3b372a03a7e49a9c6bbe7e1cb055f50b],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{55A40207-AB0A-44CE-BB63-AF33CB338757}.dll, In Quarantäne, [2a4867c67b1010262ffa663409fcd828],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{57D77C5B-7620-4330-A606-7A46AB219DCC}.dll, In Quarantäne, [5d1548e57e0dd264cb5e5842bf4630d0],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{C0DFA1C5-6B15-4231-A3D5-D45049FCA596}.xpi, In Quarantäne, [4f233eefec9fde58ddf89e0b55ac3cc4],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{C1BD7C87-0F2D-4746-87AE-1DA2157D2BC6}.dll, In Quarantäne, [10625ad38209340226038911ee17f808],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{C5A0B00D-AE93-4903-BB19-DF73EE4BDB81}.dll, In Quarantäne, [80f259d40784b08644e5079322e3ed13],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{C5C3B893-A13F-4143-A8D2-E7A8340C6963}.xpi, In Quarantäne, [066cfa33a8e336004b8a55546a9705fb],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{C75F9CC0-9B93-4560-8C8D-7AF3B02468B7}.dll, In Quarantäne, [fb77a885c9c2dd5985a453477d88aa56],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{CAB4A9CF-9C9E-41D7-A06E-3896AC587568}.dll, In Quarantäne, [1e549e8f8cff0234a08952488a7bd32d],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{CAF12B25-4A05-43E7-B001-351B38B14882}.xpi, In Quarantäne, [c4ae70bd7c0f072fa134c7e2b64ba957],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{F0577933-E4AC-4B46-AD64-D0AB14EE3359}.dll, In Quarantäne, [de949f8e137870c645e4e5b5c14449b7],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{F8267443-9A0E-49B2-BD2D-E3EA56B259C5}.dll, In Quarantäne, [6012ba731f6c0333d158f5a5de27f50b],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{FFC5A9CE-8106-450D-8C45-777A56AF01B9}.dll, In Quarantäne, [fc761e0f7318b87e1811b9e1c243fb05],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{5997D929-9FB8-42F5-A893-D42AAE2C9FCF}.xpi, In Quarantäne, [a0d2ba7343485fd7c3127138768b4eb2],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{5D95E8A5-E533-442A-BFF4-69F6E078B116}.xpi, In Quarantäne, [b2c07ab3008bc175ece95653b0510cf4],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{61F9FC4A-E215-4004-A369-8979C7BF386F}.xpi, In Quarantäne, [e38f2d00395255e1fbda27820cf5b44c],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{621E2E7F-6ABC-4752-8344-47A86861FF76}.xpi, In Quarantäne, [e78b999432592d094f86a504c0410af6],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{6480FFBD-FF3C-4910-AC9D-CAD45893FFAA}.xpi, In Quarantäne, [8ce68f9e82093303686db0f99968c33d],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{6B7CC289-3B8F-4FC9-A5E7-38211FBED0AC}.xpi, In Quarantäne, [cea4d35a315afe3892439118b051f30d],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{704D1644-352B-497D-84D1-B6EF0FBC7302}.xpi, In Quarantäne, [b3bfd35ab6d546f06c69f2b75fa2768a],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{76C792F9-1ACE-4BC2-8C1F-1199951FC877}.xpi, In Quarantäne, [a8ca80adacdfa3939540357402ffcb35],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{80603F65-AE1E-470E-AF22-45900B5F8AE0}.xpi, In Quarantäne, [abc72b02d6b570c628ad397025dc28d8],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{D4294F8C-F326-42EA-A3CE-0DD6F319697D}.xpi, In Quarantäne, [aac8a38a9eed4cea379e5950837e14ec],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{D688C500-95BC-46A3-AECC-C8406449A74A}.xpi, In Quarantäne, [a1d14be2008b88ae389d3772966b7090],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{D803F936-7A11-4A6B-8638-220A28E14233}.xpi, In Quarantäne, [c2b074b9a3e86dc9c90c31789c654eb2],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{DCEE2478-2113-4BA4-B659-AFC6C49684A1}.xpi, In Quarantäne, [5c1630fdcebd0333785d02a7a95823dd],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{DDE5AEDD-DB6B-4DD4-8F10-5F806EA95A50}.dll, In Quarantäne, [c0b2131ab7d49a9cda4fb1e9f1146d93],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{E0AB79AB-65AC-4EE7-9DA6-47017D272BB4}.dll, In Quarantäne, [f57def3e7516d06682a7405a47beba46],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{EB138094-0CA3-42B2-B971-814BA7863FBD}.xpi, In Quarantäne, [a4ced25ba9e2ed4928ad09a0cf3258a8],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{8B8B8FEF-7F59-4AAA-BC29-EFEAAA09B25C}.xpi, In Quarantäne, [3a38909d216a6acc587dedbcbd44ca36],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{A0834964-F1C8-4CF5-AE97-225FF26B03BC}.dll, In Quarantäne, [de94929b77140b2bfe2b475350b50cf4],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{A22AB74D-38C3-4A57-B448-65B26BA90556}.xpi, In Quarantäne, [e48ea8856d1ee056c70e783112ef847c],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{A4CEF809-8B86-464A-A29C-3368FD32F82D}.dll, In Quarantäne, [1f536fbe8b00d0669990bbdf7e87a25e],
PUP.Optional.Yontoo.Gen, C:\Users\Yannic\AppData\Local\Temp\{AB175C35-1104-4517-84F3-807CD570EA04}.xpi, In Quarantäne, [2949c26b02893cfac60fb2f7837efc04],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{B2929D6B-0757-47B1-BA44-4D50029D5FFD}.dll, In Quarantäne, [83ef5fcef59679bd3eebd6c456afbf41],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{B6938B1F-3FDD-41FF-9A7F-DC708F44E007}.dll, In Quarantäne, [39399d908209fd39d158dac051b412ee],
PUP.Optional.GreatFind, C:\Users\Yannic\AppData\Local\Temp\{BC764EC8-A805-4B34-B3EE-766FBA9BC8E4}.dll, In Quarantäne, [9bd7e34adcaf2b0b44e51f7bd0356b95],
PUP.RiskWare.Patcher, C:\Users\Yannic\Downloads\Patch KHG.rar, In Quarantäne, [4230d05d3c4f81b500807d2da45d12ee],
PUP.Optional.Giga, C:\Users\Yannic\Downloads\Anno-1701-lnstall.exe, In Quarantäne, [cba734f93c4f54e2c6ef78b3ee17e61a],
PUP.Optional.GreatFind, C:\ProgramData\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\temp, In Quarantäne, [ff733cf1b6d52610c85b86877093ce32],
PUP.Optional.GreatFind, C:\Program Files (x86)\Common Files\d64c6aa4-9b30-4b06-8859-0cfa31bd50dc\updater.bak, In Quarantäne, [20526bc22f5c90a61c08fc11d62d17e9],
PUP.Optional.GreatFind, C:\Program Files (x86)\Great Find\Extensions\{726412ac-2531-4d86-8f5c-32e7574763e8}.xpi, In Quarantäne, [d2a042ebb7d46ec843e2a96420e35da3],
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) der adw-log Code:
# AdwCleaner v5.006 - Bericht erstellt am 09/09/2015 um 13:14:33
# Aktualisiert am 06/09/2015 von Xplode
# Datenbank : 2015-09-08.2 [Server]
# Betriebssystem : Windows 10 Home (x64)
# Benutzername : Yannic - R2D2
# Gestartet von : C:\Users\Yannic\Desktop\AdwCleaner_5.006.exe
# Option : Löschen
# Unterstützung : hxxp://toolslib.net/forum
***** [ Dienste ] *****
***** [ Ordner ] *****
***** [ Dateien ] *****
***** [ Verknüpfungen ] *****
***** [ Geplante Tasks ] *****
***** [ Registrierungsdatenbank ] *****
[-] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [Radio Canyon-bg.exe]
[-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{C73E229D-5127-4E12-80EB-A51818F55311}
[-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70ea79bf-5be9-40bc-aa50-31f1d20e02ca}
[-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70ea79bf-5be9-40bc-aa50-31f1d20e02ca}
***** [ Internetbrowser ] *****
*************************
:: Proxy Einstellungen zurückgesetzt
:: Winsock Einstellungen zurückgesetzt
:: Chrome Richtlinien gelöscht
*************************
C:\AdwCleanerDebug.txt - [110 Bytes] - [07/09/2015 23:49:19]
########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [1317 Bytes] ########## die JRT.txt Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.6.0 (08.31.2015:1)
OS: Windows 10 Home x64
Ran by Yannic on 09.09.2015 at 13:19:40,07
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Tasks
~~~ Registry Values
~~~ Registry Keys
~~~ Files
Successfully deleted: [File] C:\Users\Yannic\AppData\Roaming\my_intel.sys
Successfully deleted: [File] C:\Users\Yannic\AppData\Roaming\sp_data.sys
~~~ Folders
~~~ FireFox
Emptied folder: C:\Users\Yannic\AppData\Roaming\mozilla\firefox\profiles\dihxil7q.default\minidumps [1 files]
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 09.09.2015 at 13:23:28,53
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ und der Frst.log Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:07-09-2015
durchgeführt von Yannic (Administrator) auf R2D2 (09-09-2015 13:27:57)
Gestartet von C:\Users\Yannic\Downloads
Geladene Profile: Yannic (Verfügbare Profile: Yannic)
Platform: Windows 10 Home (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Edge)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Corporation) C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [111488 2014-09-15] (Intel Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [920280 2015-04-17] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.)
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [396688 2015-07-18] ()
HKLM\...\Run: [HotKeysCmds] => "C:\Windows\system32\hkcmd.exe"
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3216032 2013-12-13] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [449168 2012-03-26] (CANON INC.)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1282632 2013-07-23] (CANON INC.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [39175960 2015-08-14] (Dropbox, Inc.)
HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\...\Run: [Spotify Web Helper] => C:\Users\Yannic\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2023480 2015-06-27] (Spotify Ltd)
HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2899136 2015-08-19] (Valve Corporation)
HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\...\Run: [OneDrive] => C:\Users\Yannic\AppData\Local\Microsoft\OneDrive\OneDrive.exe [404064 2015-08-20] (Microsoft Corporation)
HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\...\Run: [Spotify] => C:\Users\Yannic\AppData\Roaming\Spotify\Spotify.exe [7415864 2015-06-27] (Spotify Ltd)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Keine Datei
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
Startup: C:\Users\Yannic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk [2014-10-19]
ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{0ae7f64e-b784-40be-a603-035bc4ef9067}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{f25ae110-37ba-4fd3-876a-1d57d5e4a06b}: [DhcpNameServer] 192.168.178.1
Internet Explorer:
==================
HKU\S-1-5-21-2271421671-2185954834-4090823298-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
SearchScopes: HKU\S-1-5-21-2271421671-2185954834-4090823298-1001 -> DefaultScope {F61CC357-9D05-4042-A131-1DECCE2EAC4E} URL =
BHO: Radio Canyon -> {11111111-1111-1111-1111-110611081104} -> C:\Program Files (x86)\Radio Canyon\Radio Canyon-bho64.dll Keine Datei
BHO-x32: PDF Architect Helper -> {691B33B0-B86E-47F3-81C7-56E4FE3B929C} -> C:\Program Files (x86)\PDF Architect 2\creator-ie-helper.dll [2014-10-10] (pdfforge GmbH)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
Toolbar: HKLM-x32 - PDF Architect Toolbar - {DEEB13D7-CEA9-45FB-B77C-E039BEC85221} - C:\Program Files (x86)\PDF Architect 2\creator-ie-plugin.dll [2014-10-10] (pdfforge GmbH)
FireFox:
========
FF ProfilePath: C:\Users\Yannic\AppData\Roaming\Mozilla\Firefox\Profiles\dihxil7q.default
FF SearchEngineOrder.1: SuchMaschine
FF Homepage: www.ecosia.de
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-12] ()
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-30] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-10-23] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-10-23] (Intel Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Yannic\AppData\Roaming\Mozilla\Firefox\Profiles\dihxil7q.default\searchplugins\englische-ergebnisse.xml [2014-10-11]
FF SearchPlugin: C:\Users\Yannic\AppData\Roaming\Mozilla\Firefox\Profiles\dihxil7q.default\searchplugins\gmx-suche.xml [2014-10-11]
FF SearchPlugin: C:\Users\Yannic\AppData\Roaming\Mozilla\Firefox\Profiles\dihxil7q.default\searchplugins\lastminute.xml [2014-10-11]
FF SearchPlugin: C:\Users\Yannic\AppData\Roaming\Mozilla\Firefox\Profiles\dihxil7q.default\searchplugins\search_engine.xml [2014-08-30]
FF SearchPlugin: C:\Users\Yannic\AppData\Roaming\Mozilla\Firefox\Profiles\dihxil7q.default\searchplugins\webde-suche.xml [2014-10-11]
FF Extension: Great Find - C:\Users\Yannic\AppData\Roaming\Mozilla\Firefox\Profiles\dihxil7q.default\Extensions\{726412ac-2531-4d86-8f5c-32e7574763e8}.xpi [2015-09-08]
FF Extension: Adblock Plus - C:\Users\Yannic\AppData\Roaming\Mozilla\Firefox\Profiles\dihxil7q.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-08-28]
FF HKLM-x32\...\Firefox\Extensions: [pdf_architect_2_conv@pdfarchitect.org] - C:\Program Files (x86)\PDF Architect 2\resources\pdfarchitect2firefoxextension
FF Extension: PDF Architect 2 Creator - C:\Program Files (x86)\PDF Architect 2\resources\pdfarchitect2firefoxextension [2015-01-20]
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S2 ASUS InstantOn; C:\Program Files\ASUS\P4G\InsOnSrv.exe [277120 2013-08-29] (ASUS)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-02] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-02] (Dropbox, Inc.)
S2 DptfParticipantDisplayService; C:\Windows\System32\DptfParticipantDisplayService.exe [141944 2014-09-15] (Intel Corporation)
S2 DptfParticipantProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [115656 2014-09-15] (Intel Corporation)
S2 DptfPolicyConfigTDPService; C:\Windows\system32\DptfPolicyConfigTDPService.exe [116680 2014-09-15] (Intel Corporation)
S2 DptfPolicyCriticalService; C:\Windows\system32\DptfPolicyCriticalService.exe [148160 2014-09-15] (Intel Corporation)
S2 DptfPolicyLpmService; C:\Windows\system32\DptfPolicyLpmService.exe [124904 2014-09-15] (Intel Corporation)
S2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-18] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [827392 2013-09-02] (Intel(R) Corporation) [Datei ist nicht signiert]
S2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-10-23] (Intel Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-02-28] ()
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-10-23] (Intel Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S3 PDF Architect 2; C:\Program Files (x86)\PDF Architect 2\ws.exe [1771560 2014-10-10] (pdfforge GmbH)
S2 PDF Architect 2 Creator; C:\Program Files (x86)\PDF Architect 2\creator-ws.exe [738856 2014-10-10] (pdfforge GmbH)
S3 pdfforge CrashHandler; C:\Program Files (x86)\PDF Architect 2\crash-handler-ws.exe [861736 2014-10-10] (pdfforge GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [100776 2015-07-13] (ASUS Corporation)
R3 AX88772; C:\Windows\System32\drivers\ax88772.sys [111616 2015-07-10] (ASIX Electronics Corp.)
S3 DptfDevDisplay; C:\Windows\System32\drivers\DptfDevDisplay.sys [70752 2014-09-15] (Intel Corporation)
R3 DptfDevDram; C:\Windows\System32\drivers\DptfDevDram.sys [145640 2014-09-15] (Intel Corporation)
S3 DptfDevFan; C:\Windows\System32\drivers\DptfDevFan.sys [50640 2014-09-15] (Intel Corporation)
S3 DptfDevGen; C:\Windows\System32\drivers\DptfDevGen.sys [78504 2014-09-15] (Intel Corporation)
R3 DptfDevPch; C:\Windows\System32\drivers\DptfDevPch.sys [116752 2014-09-15] (Intel Corporation)
S3 DptfDevPower; C:\Windows\System32\drivers\DptfDevPower.sys [71808 2014-09-15] (Intel Corporation)
R3 DptfDevProc; C:\Windows\System32\drivers\DptfDevProc.sys [290256 2014-09-15] (Intel Corporation)
R3 DptfManager; C:\Windows\System32\drivers\DptfManager.sys [495320 2014-09-15] (Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [253680 2015-03-20] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-10-23] (Intel Corporation)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3496216 2015-07-10] (Intel Corporation)
R2 plctrl; C:\Program Files\ASUS\P4G\plctrl.sys [14136 2013-08-29] (Windows (R) Win 7 DDK provider)
R3 SensorsAlsDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [214016 2015-07-10] (Microsoft Corporation)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-09-09 13:23 - 2015-09-09 13:27 - 00000882 _____ C:\Users\Yannic\Desktop\JRT.txt
2015-09-09 13:18 - 2015-09-09 13:18 - 00001400 _____ C:\Users\Yannic\Desktop\AdwCleaner[C3].txt
2015-09-09 13:16 - 2015-09-09 13:16 - 00016148 _____ C:\WINDOWS\system32\R2D2_Yannic_HistoryPrediction.bin
2015-09-09 13:14 - 2015-09-09 13:18 - 01799392 _____ (Malwarebytes Corporation) C:\Users\Yannic\Downloads\JRT_7600.exe
2015-09-09 13:12 - 2015-09-08 13:38 - 01654784 _____ C:\Users\Yannic\Desktop\AdwCleaner_5.006.exe
2015-09-08 13:38 - 2015-09-08 13:38 - 01654784 _____ C:\Users\Yannic\Downloads\AdwCleaner_5.006.exe
2015-09-08 13:37 - 2015-09-08 13:37 - 00036604 _____ C:\Users\Yannic\Desktop\mbam.txt
2015-09-08 12:13 - 2015-09-08 12:16 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Yannic\Downloads\mbam-setup-2.1.8.1057.exe
2015-09-08 09:41 - 2015-09-08 09:41 - 00065336 _____ C:\Users\Yannic\Desktop\FRST.txt
2015-09-08 09:41 - 2015-09-08 09:41 - 00046822 _____ C:\Users\Yannic\Desktop\Addition.txt
2015-09-08 00:31 - 2015-09-08 00:31 - 00001234 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-09-08 00:31 - 2015-09-08 00:31 - 00001222 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-09-08 00:31 - 2015-09-08 00:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-09-08 00:30 - 2015-09-08 00:30 - 00242984 _____ C:\Users\Yannic\Downloads\Firefox Setup Stub 40.0.3.exe
2015-09-07 23:49 - 2015-09-08 13:37 - 00000110 _____ C:\AdwCleanerDebug.txt
2015-09-07 20:10 - 2015-09-07 20:10 - 00000000 ____D C:\Users\Yannic\AppData\Local\CEF
2015-09-07 12:44 - 2015-09-07 12:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-09-01 12:28 - 2015-09-01 12:30 - 38037150 _____ C:\Users\Yannic\Desktop\Film.mp4
2015-09-01 11:47 - 2015-09-03 13:55 - 00192648 _____ C:\Users\Yannic\Desktop\Film.veg
2015-09-01 11:47 - 2015-09-01 16:35 - 00157024 _____ C:\Users\Yannic\Desktop\Film.veg.bak
2015-08-30 14:13 - 2015-08-30 21:41 - 129655181 _____ C:\Users\Yannic\Desktop\Teaser #1.mp4
2015-08-30 14:02 - 2015-08-09 13:53 - 92789897 ____N C:\Users\Yannic\Desktop\IMG_2166.MOV
2015-08-29 11:56 - 2015-08-29 11:56 - 00000000 ____D C:\Users\Yannic\Documents\Any Video Converter
2015-08-29 11:55 - 2015-08-29 11:55 - 00001278 _____ C:\Users\Yannic\Desktop\Any Video Converter.lnk
2015-08-29 11:55 - 2015-08-29 11:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvsoft
2015-08-29 11:54 - 2015-09-01 12:01 - 00000000 ____D C:\Users\Yannic\AppData\Roaming\Anvsoft
2015-08-29 11:54 - 2015-08-29 11:54 - 00000000 ____D C:\Program Files (x86)\Anvsoft
2015-08-29 11:48 - 2015-08-29 11:54 - 37939336 _____ (Any-Video-Converter.com ) C:\Users\Yannic\Downloads\avc-free5.8.3.exe
2015-08-29 11:37 - 2015-08-29 11:42 - 41904448 _____ (Apple Inc.) C:\Users\Yannic\Downloads\QuickTimeInstaller.exe
2015-08-28 13:41 - 2015-08-30 21:41 - 00160048 _____ C:\Users\Yannic\Desktop\Ohne Titel.veg
2015-08-28 13:41 - 2015-08-30 14:23 - 00160128 _____ C:\Users\Yannic\Desktop\Ohne Titel.veg.bak
2015-08-28 13:29 - 2015-08-28 13:31 - 23688104 _____ C:\Users\Yannic\Documents\Ohne Titel.wav
2015-08-28 12:15 - 2015-09-01 10:33 - 00000000 ____D C:\Users\Yannic\Desktop\Video Fußballfahrt
2015-08-28 12:09 - 2015-08-20 08:07 - 08019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-08-28 12:09 - 2015-08-20 08:06 - 00609592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-08-28 12:09 - 2015-08-20 08:02 - 22324656 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-08-28 12:09 - 2015-08-20 07:57 - 00077400 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-08-28 12:09 - 2015-08-20 07:21 - 21875200 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-08-28 12:09 - 2015-08-20 07:16 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-08-28 12:09 - 2015-08-20 07:13 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-08-28 12:09 - 2015-08-20 07:09 - 00929280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2015-08-28 12:09 - 2015-08-20 06:31 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-08-28 12:09 - 2015-08-18 09:56 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-28 12:09 - 2015-08-18 09:55 - 00373072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-08-28 12:09 - 2015-08-18 09:54 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-08-28 12:09 - 2015-08-18 09:27 - 01771592 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-08-28 12:09 - 2015-08-18 09:24 - 00963920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-08-28 12:09 - 2015-08-18 09:13 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2015-08-28 12:09 - 2015-08-18 09:12 - 02225664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-28 12:09 - 2015-08-18 09:04 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-08-28 12:09 - 2015-08-18 08:58 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2015-08-28 12:09 - 2015-08-18 08:54 - 00247296 _____ C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-28 12:09 - 2015-08-18 08:52 - 01888768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-08-28 12:09 - 2015-08-18 08:49 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2015-08-28 12:09 - 2015-08-18 08:29 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-08-28 12:09 - 2015-08-18 06:44 - 00008847 _____ C:\WINDOWS\system32\ResPriHMImageList
2015-08-28 12:08 - 2015-08-20 07:26 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-08-28 12:08 - 2015-08-20 07:21 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-28 12:08 - 2015-08-18 09:13 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2015-08-28 12:08 - 2015-08-18 09:07 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2015-08-28 12:08 - 2015-08-18 09:04 - 01234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2015-08-28 12:08 - 2015-08-18 08:59 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2015-08-28 12:08 - 2015-08-18 08:59 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2015-08-28 12:08 - 2015-08-18 08:58 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2015-08-28 12:08 - 2015-08-18 08:58 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2015-08-28 12:08 - 2015-08-18 08:58 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll
2015-08-28 12:08 - 2015-08-18 08:57 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2015-08-28 12:08 - 2015-08-18 08:56 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2015-08-28 12:08 - 2015-08-18 08:55 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-28 12:08 - 2015-08-18 08:54 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2015-08-28 12:08 - 2015-08-18 08:50 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-28 12:08 - 2015-08-18 08:49 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-08-28 12:08 - 2015-08-18 08:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2015-08-28 12:08 - 2015-08-18 08:36 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll
2015-08-28 12:08 - 2015-08-18 08:35 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
2015-08-28 12:08 - 2015-08-18 08:35 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll
2015-08-28 12:08 - 2015-08-18 08:34 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2015-08-28 12:08 - 2015-08-18 08:26 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2015-08-28 11:32 - 2015-08-28 11:32 - 00000000 ____D C:\Users\Yannic\AppData\Roaming\Publish Providers
2015-08-28 11:30 - 2015-08-28 11:30 - 00000000 ____D C:\Users\Yannic\AppData\Roaming\WinRAR
2015-08-28 11:29 - 2015-08-28 11:30 - 00006078 _____ C:\WINDOWS\system32\--traceoff
2015-08-28 11:29 - 2015-08-28 11:29 - 00001113 _____ C:\Users\Public\Desktop\Vegas Pro 13.0 (64-bit).lnk
2015-08-28 11:29 - 2015-08-28 11:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-08-28 11:29 - 2015-08-28 11:29 - 00000000 _____ C:\WINDOWS\system32\--debugoff
2015-08-28 11:28 - 2015-08-28 11:30 - 00000000 ____D C:\Users\Yannic\AppData\Local\Sony
2015-08-28 11:28 - 2015-08-28 11:28 - 00000000 ____D C:\ProgramData\Sony
2015-08-28 11:28 - 2015-08-28 11:28 - 00000000 ____D C:\Program Files\Sony
2015-08-28 11:28 - 2015-08-28 11:28 - 00000000 ____D C:\Program Files (x86)\Sony
2015-08-28 11:27 - 2015-08-28 11:27 - 00000000 ____D C:\Users\Yannic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-08-28 11:27 - 2015-08-28 11:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-08-28 11:27 - 2015-08-28 11:27 - 00000000 ____D C:\Program Files\WinRAR
2015-08-28 11:26 - 2015-08-28 11:27 - 02060664 _____ C:\Users\Yannic\Downloads\winrar-x64-521d.exe
2015-08-28 11:19 - 2015-09-01 10:59 - 00000000 ____D C:\Users\Yannic\AppData\Roaming\Sony
2015-08-28 10:46 - 2015-08-28 11:19 - 395026776 _____ (Sony Creative Software Inc.) C:\Users\Yannic\Downloads\vegaspro13.0.290.exe
2015-08-26 12:16 - 2015-08-26 12:16 - 00000000 ____D C:\Users\Yannic\AppData\Local\speech
2015-08-22 17:15 - 2015-09-01 12:07 - 00000000 ____D C:\Users\Yannic\Desktop\Fußballfahrt
2015-08-19 18:47 - 2015-08-19 18:50 - 00000000 ____D C:\Users\Yannic\Desktop\Neuer Ordner
2015-08-19 11:44 - 2015-08-13 06:33 - 24593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-08-19 11:44 - 2015-08-13 06:22 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-08-19 11:44 - 2015-08-13 06:20 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-08-19 11:44 - 2015-08-13 06:07 - 19323392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-08-19 11:44 - 2015-08-13 05:53 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2015-08-19 11:44 - 2015-08-11 12:04 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-08-19 11:44 - 2015-08-11 12:04 - 02462648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-08-19 11:44 - 2015-08-11 12:04 - 01087296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-08-19 11:44 - 2015-08-11 12:03 - 00442208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2015-08-19 11:44 - 2015-08-11 12:02 - 00554744 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2015-08-19 11:44 - 2015-08-11 12:02 - 00292856 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2015-08-19 11:44 - 2015-08-11 12:02 - 00080720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2015-08-19 11:44 - 2015-08-11 11:57 - 03622256 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-08-19 11:44 - 2015-08-11 11:52 - 00993104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-08-19 11:44 - 2015-08-11 11:50 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-08-19 11:44 - 2015-08-11 11:40 - 04048808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-08-19 11:44 - 2015-08-11 11:40 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-08-19 11:44 - 2015-08-11 11:40 - 00918320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-08-19 11:44 - 2015-08-11 11:38 - 00454000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2015-08-19 11:44 - 2015-08-11 11:37 - 00243800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2015-08-19 11:44 - 2015-08-11 11:31 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-08-19 11:44 - 2015-08-11 11:26 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2015-08-19 11:44 - 2015-08-11 11:23 - 16706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-19 11:44 - 2015-08-11 11:21 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-08-19 11:44 - 2015-08-11 11:21 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2015-08-19 11:44 - 2015-08-11 11:20 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-08-19 11:44 - 2015-08-11 11:19 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-19 11:44 - 2015-08-11 11:18 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2015-08-19 11:44 - 2015-08-11 11:16 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-19 11:44 - 2015-08-11 11:14 - 00404480 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-19 11:44 - 2015-08-11 11:13 - 00413184 _____ C:\WINDOWS\system32\diagtrack_win.dll
2015-08-19 11:44 - 2015-08-11 11:11 - 02446336 _____ C:\WINDOWS\system32\InputService.dll
2015-08-19 11:44 - 2015-08-11 11:11 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2015-08-19 11:44 - 2015-08-11 11:10 - 00778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-19 11:44 - 2015-08-11 11:10 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-19 11:44 - 2015-08-11 11:10 - 00293376 _____ C:\WINDOWS\system32\TextInputFramework.dll
2015-08-19 11:44 - 2015-08-11 11:09 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2015-08-19 11:44 - 2015-08-11 11:08 - 00893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2015-08-19 11:44 - 2015-08-11 11:08 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-08-19 11:44 - 2015-08-11 11:07 - 01178112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-08-19 11:44 - 2015-08-11 11:07 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-08-19 11:44 - 2015-08-11 11:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe
2015-08-19 11:44 - 2015-08-11 11:06 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-08-19 11:44 - 2015-08-11 11:06 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-19 11:44 - 2015-08-11 11:05 - 03527168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-08-19 11:44 - 2015-08-11 11:05 - 00996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-08-19 11:44 - 2015-08-11 11:05 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll
2015-08-19 11:44 - 2015-08-11 11:05 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2015-08-19 11:44 - 2015-08-11 11:05 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPermissions.dll
2015-08-19 11:44 - 2015-08-11 11:05 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2015-08-19 11:44 - 2015-08-11 11:03 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-08-19 11:44 - 2015-08-11 11:02 - 03588096 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-08-19 11:44 - 2015-08-11 11:02 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2015-08-19 11:44 - 2015-08-11 11:02 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2015-08-19 11:44 - 2015-08-11 11:01 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-19 11:44 - 2015-08-11 11:00 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-19 11:44 - 2015-08-11 11:00 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2015-08-19 11:44 - 2015-08-11 10:59 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-08-19 11:44 - 2015-08-11 10:59 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2015-08-19 11:44 - 2015-08-11 10:59 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2015-08-19 11:44 - 2015-08-11 10:59 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tetheringclient.dll
2015-08-19 11:44 - 2015-08-11 10:58 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2015-08-19 11:44 - 2015-08-11 10:57 - 13024768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-08-19 11:44 - 2015-08-11 10:57 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2015-08-19 11:44 - 2015-08-11 10:51 - 01916928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-08-19 11:44 - 2015-08-11 10:51 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll
2015-08-19 11:44 - 2015-08-11 10:50 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2015-08-19 11:44 - 2015-08-11 10:50 - 00200704 _____ C:\WINDOWS\SysWOW64\TextInputFramework.dll
2015-08-19 11:44 - 2015-08-11 10:50 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2015-08-19 11:44 - 2015-08-11 10:49 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2015-08-19 11:44 - 2015-08-11 10:49 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-19 11:44 - 2015-08-11 10:48 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2015-08-19 11:44 - 2015-08-11 10:47 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2015-08-19 11:44 - 2015-08-11 10:45 - 01820672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2015-08-19 11:44 - 2015-08-11 10:43 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2015-08-19 11:44 - 2015-08-11 10:42 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2015-08-19 11:44 - 2015-08-11 10:40 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-08-19 11:44 - 2015-08-11 10:40 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-08-19 11:44 - 2015-08-11 10:39 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2015-08-19 11:44 - 2015-08-11 10:38 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2015-08-18 22:05 - 2015-08-18 22:05 - 00008475 _____ C:\Users\Yannic\Desktop\Langarmshirts.xlsx
2015-08-13 10:32 - 2015-09-09 13:17 - 00000000 ____D C:\ProgramData\ASUS Smart Gesture
2015-08-12 12:30 - 2015-08-12 12:30 - 00003628 _____ C:\WINDOWS\System32\Tasks\ASUS Smart Gesture Launcher
2015-08-12 10:09 - 2015-08-03 04:18 - 08613200 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-12 10:09 - 2015-08-03 03:56 - 06878256 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2015-08-12 10:09 - 2015-08-03 03:18 - 12503552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-08-12 10:09 - 2015-08-03 03:18 - 03780096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-12 10:09 - 2015-08-03 03:01 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-08-12 10:09 - 2015-07-30 05:49 - 11557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-08-12 10:09 - 2015-07-30 05:46 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-08-12 10:09 - 2015-07-30 05:15 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-08-12 10:09 - 2015-07-30 05:04 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-08-12 10:08 - 2015-08-08 09:29 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-08-12 10:08 - 2015-08-08 09:19 - 00608936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-08-12 10:08 - 2015-08-08 09:01 - 01533496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-08-12 10:08 - 2015-08-08 08:48 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-08-12 10:08 - 2015-08-08 08:40 - 00365056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-08-12 10:08 - 2015-08-08 08:24 - 02415104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-08-12 10:08 - 2015-08-08 08:24 - 01679360 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-08-12 10:08 - 2015-08-08 08:15 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-08-12 10:08 - 2015-08-08 08:00 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-08-12 10:08 - 2015-08-06 05:17 - 00237392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
2015-08-12 10:08 - 2015-08-06 05:17 - 00200528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2015-08-12 10:08 - 2015-08-06 04:22 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2015-08-12 10:08 - 2015-08-05 06:49 - 00783112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-08-12 10:08 - 2015-08-05 06:29 - 00644128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2015-08-12 10:08 - 2015-08-05 06:00 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2015-08-12 10:08 - 2015-08-05 05:54 - 01274880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-12 10:08 - 2015-08-05 05:47 - 01383424 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-08-12 10:08 - 2015-08-05 05:39 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll
2015-08-12 10:08 - 2015-08-04 06:07 - 00102752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-08-12 10:08 - 2015-08-04 06:06 - 00583128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-08-12 10:08 - 2015-08-04 06:06 - 00243248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-08-12 10:08 - 2015-08-04 05:23 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-12 10:08 - 2015-08-04 04:59 - 01212416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-12 10:08 - 2015-08-04 04:47 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2015-08-12 10:08 - 2015-08-03 04:32 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-12 10:08 - 2015-08-03 04:28 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll
2015-08-12 10:08 - 2015-08-03 04:19 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2015-08-12 10:08 - 2015-08-03 04:19 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-08-12 10:08 - 2015-08-03 04:18 - 01983840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-08-12 10:08 - 2015-08-03 04:18 - 00594472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-12 10:08 - 2015-08-03 04:18 - 00046432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys
2015-08-12 10:08 - 2015-08-03 04:17 - 00516960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-08-12 10:08 - 2015-08-03 04:17 - 00052264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2015-08-12 10:08 - 2015-08-03 04:12 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-08-12 10:08 - 2015-08-03 03:49 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2015-08-12 10:08 - 2015-08-03 03:31 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2015-08-12 10:08 - 2015-08-03 03:30 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-12 10:08 - 2015-08-03 03:24 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2015-08-12 10:08 - 2015-08-03 03:24 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-12 10:08 - 2015-08-03 03:24 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-12 10:08 - 2015-08-03 03:23 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-12 10:08 - 2015-08-03 03:22 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-12 10:08 - 2015-08-03 03:22 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-08-12 10:08 - 2015-08-03 03:22 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2015-08-12 10:08 - 2015-08-03 03:21 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2015-08-12 10:08 - 2015-08-03 03:19 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2015-08-12 10:08 - 2015-08-03 03:19 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2015-08-12 10:08 - 2015-08-03 03:18 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-12 10:08 - 2015-08-03 03:18 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll
2015-08-12 10:08 - 2015-08-03 03:15 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-12 10:08 - 2015-08-03 03:15 - 00595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-08-12 10:08 - 2015-08-03 03:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-12 10:08 - 2015-08-03 03:15 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2015-08-12 10:08 - 2015-08-03 03:15 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-12 10:08 - 2015-08-03 03:14 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-12 10:08 - 2015-08-03 03:12 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2015-08-12 10:08 - 2015-08-03 03:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2015-08-12 10:08 - 2015-08-03 03:11 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2015-08-12 10:08 - 2015-08-03 03:10 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2015-08-12 10:08 - 2015-08-03 03:06 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2015-08-12 10:08 - 2015-08-03 03:03 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2015-08-12 10:08 - 2015-08-03 03:02 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2015-08-12 10:08 - 2015-08-03 03:02 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2015-08-12 10:08 - 2015-08-03 02:59 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2015-08-12 10:08 - 2015-07-30 08:24 - 01561872 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-08-12 10:08 - 2015-07-30 08:23 - 00527952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-08-12 10:08 - 2015-07-30 08:21 - 00816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-12 10:08 - 2015-07-30 08:17 - 01200400 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-08-12 10:08 - 2015-07-30 08:17 - 01025840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-12 10:08 - 2015-07-30 08:16 - 02147080 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-08-12 10:08 - 2015-07-30 08:15 - 00632168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-08-12 10:08 - 2015-07-30 08:14 - 00333168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-08-12 10:08 - 2015-07-30 08:09 - 01562968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-08-12 10:08 - 2015-07-30 08:06 - 01043872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-12 10:08 - 2015-07-30 08:05 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-08-12 10:08 - 2015-07-30 08:03 - 02116448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-08-12 10:08 - 2015-07-30 07:24 - 00252768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-12 10:08 - 2015-07-30 06:29 - 00705520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2015-08-12 10:08 - 2015-07-30 06:26 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2015-08-12 10:08 - 2015-07-30 06:26 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2015-08-12 10:08 - 2015-07-30 06:25 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2015-08-12 10:08 - 2015-07-30 06:25 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-08-12 10:08 - 2015-07-30 06:24 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2015-08-12 10:08 - 2015-07-30 06:24 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2015-08-12 10:08 - 2015-07-30 06:24 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2015-08-12 10:08 - 2015-07-30 06:22 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2015-08-12 10:08 - 2015-07-30 06:22 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2015-08-12 10:08 - 2015-07-30 06:12 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-08-12 10:08 - 2015-07-30 06:12 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-08-12 10:08 - 2015-07-30 06:09 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-12 10:08 - 2015-07-30 06:08 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-08-12 10:08 - 2015-07-30 06:08 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-12 10:08 - 2015-07-30 05:59 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-08-12 10:08 - 2015-07-30 05:52 - 00521216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-12 10:08 - 2015-07-30 05:52 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-12 10:08 - 2015-07-30 05:46 - 00487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-12 10:08 - 2015-07-30 05:46 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-08-12 10:08 - 2015-07-30 05:45 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-12 10:08 - 2015-07-30 05:45 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2015-08-12 10:08 - 2015-07-30 05:44 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-12 10:08 - 2015-07-30 05:44 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-08-12 10:08 - 2015-07-30 05:44 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-12 10:08 - 2015-07-30 05:44 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-08-12 10:08 - 2015-07-30 05:44 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-12 10:08 - 2015-07-30 05:42 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2015-08-12 10:08 - 2015-07-30 05:41 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-12 10:08 - 2015-07-30 05:41 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-12 10:08 - 2015-07-30 05:40 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-08-12 10:08 - 2015-07-30 05:38 - 01420288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-08-12 10:08 - 2015-07-30 05:38 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2015-08-12 10:08 - 2015-07-30 05:34 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-08-12 10:08 - 2015-07-30 05:29 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-08-12 10:08 - 2015-07-30 05:07 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2015-08-12 10:08 - 2015-07-30 05:06 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2015-08-12 10:08 - 2015-07-30 05:06 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll
2015-08-12 10:08 - 2015-07-30 05:06 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoiceActivationManager.dll
2015-08-12 10:08 - 2015-07-30 05:04 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2015-08-12 10:08 - 2015-07-30 04:59 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2015-08-12 10:08 - 2015-07-30 04:58 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-09-09 13:28 - 2015-07-10 12:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-09-09 13:28 - 2014-10-20 15:19 - 00000000 ____D C:\FRST
2015-09-09 13:27 - 2014-10-20 15:20 - 00016229 _____ C:\Users\Yannic\Downloads\FRST.txt
2015-09-09 13:17 - 2014-06-11 18:15 - 13425834 _____ C:\Users\Public\CAFADEBUG.log
2015-09-09 13:16 - 2015-07-30 17:21 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-09-09 13:16 - 2015-07-10 14:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-09-09 13:16 - 2015-06-02 18:31 - 00001220 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2015-09-09 13:15 - 2015-07-30 17:12 - 00044920 _____ C:\WINDOWS\PFRO.log
2015-09-09 13:15 - 2015-07-10 14:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-09-09 13:15 - 2015-07-10 11:05 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2015-09-09 13:14 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-09-09 13:14 - 2014-10-24 20:04 - 00000000 ____D C:\AdwCleaner
2015-09-09 13:12 - 2014-08-19 23:39 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-09-09 12:41 - 2015-06-02 18:31 - 00001224 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2015-09-09 12:00 - 2015-05-12 08:20 - 00003544 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update1
2015-09-09 12:00 - 2015-05-12 08:20 - 00003534 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update2
2015-09-09 11:45 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-09-09 11:22 - 2014-08-20 05:43 - 00004152 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{6757FBCF-9917-461A-B7D5-44844D50589E}
2015-09-08 13:36 - 2014-10-24 19:07 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-09-08 13:32 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\System
2015-09-08 13:32 - 2014-08-20 05:47 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-09-08 12:17 - 2014-10-24 19:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-09-08 12:17 - 2014-10-24 19:06 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-09-08 09:41 - 2014-10-20 15:21 - 00046822 _____ C:\Users\Yannic\Downloads\Addition.txt
2015-09-08 00:35 - 2015-07-30 17:26 - 00000000 ____D C:\Users\Yannic
2015-09-07 23:55 - 2014-10-24 19:08 - 01706144 _____ (Thisisu) C:\Users\Yannic\Downloads\JRT.exe
2015-09-07 23:53 - 2014-10-24 20:16 - 00000000 ____D C:\Users\Yannic\Downloads\FRST-OlderVersion
2015-09-07 23:53 - 2014-10-20 15:18 - 02190336 _____ (Farbar) C:\Users\Yannic\Downloads\FRST64.exe
2015-09-07 23:49 - 2014-12-07 12:15 - 02153472 _____ C:\Users\Yannic\Downloads\AdwCleaner_4.104.exe
2015-09-07 20:27 - 2015-01-29 19:25 - 00000000 ____D C:\Program Files (x86)\Steam
2015-09-07 20:06 - 2014-08-31 00:17 - 00000000 ____D C:\Users\Yannic\AppData\Roaming\vlc
2015-09-07 18:14 - 2015-07-10 14:20 - 00025100 _____ C:\WINDOWS\setupact.log
2015-09-07 12:44 - 2015-06-02 18:30 - 00000000 ____D C:\Program Files (x86)\Dropbox
2015-09-04 02:02 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-09-03 15:17 - 2014-11-11 11:44 - 00000000 ____D C:\Users\Yannic\AppData\Local\Spotify
2015-09-03 15:15 - 2014-11-11 11:41 - 00000000 ____D C:\Users\Yannic\AppData\Roaming\Spotify
2015-09-03 15:08 - 2015-05-14 20:01 - 00000000 ____D C:\Users\Yannic\Desktop\Musik
2015-09-03 15:02 - 2014-09-11 21:37 - 00000000 ____D C:\Users\Yannic\Documents\Studium
2015-09-03 14:16 - 2015-07-30 18:07 - 00000000 ____D C:\Windows.old
2015-09-03 12:50 - 2015-07-30 17:45 - 01790124 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-09-03 12:50 - 2015-07-10 18:34 - 00779768 _____ C:\WINDOWS\system32\perfh007.dat
2015-09-03 12:50 - 2015-07-10 18:34 - 00157114 _____ C:\WINDOWS\system32\perfc007.dat
2015-09-01 10:23 - 2014-08-20 05:04 - 00000000 ____D C:\Users\Yannic\AppData\Local\Packages
2015-08-31 18:16 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-08-31 18:16 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-08-21 19:44 - 2015-07-18 21:52 - 00000000 ____D C:\Users\Yannic\AppData\Roaming\TS3Client
2015-08-20 10:14 - 2015-07-30 23:09 - 00002399 _____ C:\Users\Yannic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-08-20 10:14 - 2014-08-28 17:29 - 00000000 __RDO C:\Users\Yannic\OneDrive
2015-08-20 03:20 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-08-18 10:52 - 2015-07-18 21:51 - 00000000 ____D C:\Program Files (x86)\TeamSpeak 3 Client
2015-08-18 04:01 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\rescache
2015-08-18 04:00 - 2015-07-30 17:40 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2015-08-18 04:00 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2015-08-18 04:00 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2015-08-18 04:00 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2015-08-18 04:00 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2015-08-18 04:00 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\system32\winrm
2015-08-18 04:00 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\system32\WCN
2015-08-18 04:00 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\system32\slmgr
2015-08-18 04:00 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2015-08-18 04:00 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2015-08-18 04:00 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2015-08-18 04:00 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2015-08-18 04:00 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2015-08-18 04:00 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2015-08-18 04:00 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-08-18 04:00 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2015-08-18 04:00 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-08-18 03:59 - 2015-07-10 18:46 - 00000000 ____D C:\Program Files\Windows Journal
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\system32\F12
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\system32\dsc
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\MiracastView
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\MUI
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\migwiz
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\Com
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\IME
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Help
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows Defender
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Common Files\System
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2015-08-18 03:59 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-08-18 03:59 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Dism
2015-08-18 03:59 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\servicing
2015-08-15 17:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2015-08-13 12:53 - 2014-08-24 21:41 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-08-13 12:50 - 2014-08-24 21:41 - 132483416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-08-13 10:29 - 2015-07-10 14:20 - 00351312 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-08-13 10:25 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-13 10:25 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-13 10:25 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Provisioning
2015-08-12 12:30 - 2014-06-11 18:18 - 00000000 ____D C:\Program Files\DIFX
2015-08-12 12:30 - 2014-06-11 18:16 - 00026416 _____ C:\WINDOWS\DPINST.LOG
2015-08-12 12:27 - 2015-07-30 17:14 - 00000000 ____D C:\ProgramData\SetupTPDriver
2015-08-12 12:27 - 2015-07-13 08:03 - 00065456 _____ C:\WINDOWS\system32\ASGCoInstaller_x64.dll
2015-08-12 12:27 - 2015-07-10 18:35 - 00000000 ____D C:\WINDOWS\OCR
2015-08-12 10:12 - 2014-08-19 23:39 - 00003870 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2015-04-30 11:51 - 2015-04-30 11:51 - 0005058 _____ () C:\Users\Yannic\AppData\Local\recently-used.xbel
2015-06-02 23:55 - 2015-06-02 23:55 - 0007605 _____ () C:\Users\Yannic\AppData\Local\Resmon.ResmonCfg
2013-12-13 06:09 - 2012-09-07 13:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2013-12-13 06:09 - 2009-07-22 12:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2013-12-13 06:09 - 2012-09-07 13:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS
Dateien, die verschoben oder gelöscht werden sollten:
====================
C:\ProgramData\SetStretch.VBS
Einige Dateien in TEMP:
====================
C:\Users\Yannic\AppData\Local\Temp\sqlite3.dll
C:\Users\Yannic\AppData\Local\Temp\{EF613CDA-6D03-4864-84EC-935529870802}.dll
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2015-09-03 14:08
==================== Ende von FRST.txt ============================ vg highflyers |