darkrider78 | 22.01.2016 20:24 | FRST Additions Logfile: Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:18-01-2016
durchgeführt von darkrider84 (2016-01-22 20:21:57)
Gestartet von C:\Users\darkrider84\Desktop
Windows 7 Professional Service Pack 1 (X64) (2015-02-26 18:25:25)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-2214554541-3394249910-989620225-500 - Administrator - Disabled)
darkrider84 (S-1-5-21-2214554541-3394249910-989620225-1000 - Administrator - Enabled) => C:\Users\darkrider84
Gast (S-1-5-21-2214554541-3394249910-989620225-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2214554541-3394249910-989620225-1009 - Limited - Enabled)
MIB (S-1-5-21-2214554541-3394249910-989620225-1003 - Administrator - Enabled) => C:\Users\MIB
Sgt Napoleon (S-1-5-21-2214554541-3394249910-989620225-1004 - Administrator - Disabled) => C:\Users\Sgt Napoleon
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Kaspersky Internet Security (Enabled - Out of date) {B41C7598-35F6-4D89-7D0E-7ADE69B4047B}
AS: Kaspersky Internet Security (Enabled - Out of date) {0F7D947C-13CC-4207-47BE-41AC12334EC6}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security (Enabled) {8C27F4BD-7F99-4CD1-5651-D3EB97674300}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
3DMark (HKLM-x32\...\Steam App 223850) (Version: - Futuremark)
4K Video Downloader 3.6 (HKLM-x32\...\4K Video Downloader_is1) (Version: 3.6.3.1785 - Open Media LLC)
4K Video to MP3 2.2 (HKLM-x32\...\4K Video to MP3_is1) (Version: 2.2.0.800 - Open Media LLC)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20056 - Adobe Systems Incorporated)
Adobe Flash Player 20 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 20.0.0.286 - Adobe Systems Incorporated)
Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.286 - Adobe Systems Incorporated)
Advanced Renamer (HKLM-x32\...\Advanced Renamer_is1) (Version: 3.65 - Hulubulu Software)
Akamai NetSession Interface (HKU\S-1-5-21-2214554541-3394249910-989620225-1000\...\Akamai) (Version: - Akamai Technologies, Inc)
Anti-Twin (Installation 03.05.2015) (HKLM-x32\...\Anti-Twin 2015-05-03 02.59.03) (Version: - Joerg Rosenthal, Germany)
Any Video Converter 5.8.2 (HKLM-x32\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com)
ArchiCrypt Shredder Version 6.11.1.5708 (HKLM-x32\...\ACRYSH6_is1) (Version: 6.11.1.5708 - Softwareentwicklung Remus - ArchiCrypt)
Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive)
Ashampoo Burning Studio 2016 v.16.0.0 (HKLM-x32\...\{91B33C97-B4A4-B41A-6B97-C62C82CEB6A9}_is1) (Version: 16.0.0 - Ashampoo GmbH & Co. KG)
Ashampoo Snap 7 v.7.0.11 (HKLM-x32\...\{C92AB6F1-9C93-0F51-ED50-15ABBCBDD142}_is1) (Version: 7.0.11 - Ashampoo GmbH & Co. KG)
Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{DF6C3726-7E53-4772-9763-E9F147769F51}) (Version: 3.1.8.0000 - Asmedia Technology)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.26.1 - Asmedia Technology)
Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
AunPlayer version 1.1.0.990 (HKLM-x32\...\{83AF2B1C-3F1C-4dc6-8237-5B400AAEB58B}_is1) (Version: - )
Batman™: Arkham Knight (HKLM-x32\...\Steam App 208650) (Version: - Rocksteady Studios)
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.5.2.34169 - Electronic Arts)
Battlefield: Bad Company™ 2 (HKLM-x32\...\{3AC8457C-0385-4BEA-A959-E095F05D6D67}) (Version: 1.0.0.0 - Electronic Arts)
BeSecure 1.0.0.0 (HKLM\...\{29007E8C-251B-4F61-A70E-635712477760037070}_is1) (Version: 1.0.0.0 - BeSecure) <==== ACHTUNG
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CameraHelperMsi (x32 Version: 13.51.815.0 - Logitech) Hidden
Camtasia Studio 8 (HKLM-x32\...\{A79B26D7-D6CB-408A-90CF-51508A4B62AB}) (Version: 8.5.2.1999 - TechSmith Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.13 - Piriform)
Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine)
ChrisPC Free VideoTube Downloader 8.10 (HKLM-x32\...\{6006089C-84B5-4F18-8113-1234567890DE}_is1) (Version: - Chris P.C. srl)
Cities: Skylines (HKLM-x32\...\Steam App 255710) (Version: - Colossal Order Ltd.)
Clicker Heroes (HKLM-x32\...\Steam App 363970) (Version: - )
Clover 3.0 (HKLM-x32\...\Clover) (Version: 3.0 - EJIE Technology)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve)
CPUID CPU-Z 1.72.1 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
CrossFire (HKLM-x32\...\CrossFire_is1) (Version: 1195 - Z8Games.com)
Crossfire Europe (HKLM-x32\...\Crossfire Europe) (Version: 1.172 - SG Europe)
Dead Space™ 3 (HKLM-x32\...\{D4329609-4102-4F8C-B83F-7FE024EEA314}) (Version: 1.0.0.0 - Electronic Arts, Inc.)
Defiance (HKLM-x32\...\Glyph Defiance) (Version: - Trion Worlds, Inc.)
Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform)
Die Polizei 2013 (HKLM-x32\...\Die Polizei 2013) (Version: - Quadriga Games)
DisplayFusion (HKLM-x32\...\Steam App 227260) (Version: - Binary Fortress Software)
DisplayFusion 7.3.2 (HKLM-x32\...\B076073A-5527-4f4f-B46B-B10692277DA2_is1) (Version: 7.3.2.0 - Binary Fortress Software)
DNDownloader version 1.2 (HKLM-x32\...\DNDownloader_is1) (Version: 1.2 - )
Dragon Nest Europe (HKLM-x32\...\Dragon Nest Europe) (Version: - )
Driver San Francisco (HKLM-x32\...\Driver San Francisco) (Version: 1.4.0.0 - Ubisoft)
DriverEasy 4.9.1 (HKLM\...\DriverEasy_is1) (Version: 4.9.1.0 - Easeware)
Dropbox (HKLM-x32\...\Dropbox) (Version: 3.12.5 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.27.33 - Dropbox, Inc.) Hidden
EaseUS Todo Backup Free 8.6 (HKLM-x32\...\EaseUS Todo Backup_is1) (Version: 8.6 - CHENGDU YIWO Tech Development Co., Ltd)
Edna & Harvey: Harvey's New Eyes (HKLM-x32\...\Steam App 219910) (Version: - Daedalic Entertainment)
Epson Event Manager (HKLM-x32\...\{0F13C24A-FFE2-4CD0-8E0B-DC804E0A0E0B}) (Version: 3.10.0035 - Seiko Epson Corporation)
Epson E-Web Print (HKLM-x32\...\{682A3328-9621-4BAD-91FA-873A076610C4}) (Version: 1.21.0000 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
EPSON XP-422 423 425 Series Printer Uninstall (HKLM\...\EPSON XP-422 423 425 Series) (Version: - SEIKO EPSON Corporation)
EpsonNet Print (HKLM\...\{98D772A5-CDB0-48E7-9DBA-794EA0F68B5C}) (Version: 3.1.0.0 - SEIKO EPSON Corporation)
erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - )
Euro Truck Simulator (HKLM-x32\...\Steam App 232010) (Version: - SCS Software)
FalNET G19 Display Manager (HKLM-x32\...\FalNET G19 Display Manager_is1) (Version: - FalNET)
FFMPEG Addon (HKLM-x32\...\{111124AF-1ED4-44EF-B674-111111985342}_is1) (Version: 1.00 - FFMPEG)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.2.0.722 - Foxit Software Inc.)
FreeFileSync 7.3 (HKLM-x32\...\FreeFileSync) (Version: 7.3 - www.FreeFileSync.org)
Futuremark SystemInfo (HKLM-x32\...\{AFBB2F94-A43D-46AD-8F77-66ACB3C71EDF}) (Version: 4.39.552.0 - Futuremark)
Gameforge Live 2.0.6 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.6 - Gameforge)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios)
GetFoldersize 3.0.8 (HKLM-x32\...\GetFoldersize_is1) (Version: 3.0.8 - Michael Thummerer Software Design)
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.)
Goat Simulator (HKLM-x32\...\Steam App 265930) (Version: - Coffee Stain Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.111 - Google Inc.)
Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden
Grand Theft Auto III (HKLM-x32\...\Steam App 12100) (Version: - Rockstar Games)
Grand Theft Auto IV (HKLM-x32\...\Steam App 12210) (Version: - Rockstar North)
Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\Steam App 271590) (Version: - Rockstar North)
Grand Theft Auto: Episodes from Liberty City (HKLM-x32\...\Steam App 12220) (Version: - Rockstar North / Toronto)
Grand Theft Auto: San Andreas (HKLM-x32\...\Steam App 12120) (Version: - Rockstar Games)
Grand Theft Auto: Vice City (HKLM-x32\...\Steam App 12110) (Version: - Rockstar Games)
Hacker Evolution (HKLM-x32\...\Steam App 70100) (Version: - exosyphen studios)
Heaven Benchmark version 4.0 (HKLM-x32\...\Unigine Heaven Benchmark (Basic Edition)_is1) (Version: 4.0 - Unigine Corp.)
Hitman 2: Silent Assassin (HKLM-x32\...\Steam App 6850) (Version: - IO Interactive)
HWiNFO64 Version 5.12 (HKLM\...\HWiNFO64_is1) (Version: 5.12 - Martin Malík - REALiX)
ICQ 8.3 (build 7317) (HKU\S-1-5-21-2214554541-3394249910-989620225-1000\...\ICQ) (Version: 8.3.7317.0 - ICQ)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4206 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 3.0.5.69 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.9 - Intel(R) Corporation) Hidden
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version: - Intel Corporation)
Java 8 Update 71 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418071F0}) (Version: 8.0.710.15 - Oracle Corporation)
Java 8 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218071F0}) (Version: 8.0.710.15 - Oracle Corporation)
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}) (Version: 16.0.0.614 - Kaspersky Lab)
Kaspersky Internet Security (x32 Version: 16.0.0.614 - Kaspersky Lab) Hidden
KeePass Password Safe 2.31 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.31 - Dominik Reichl)
Kerbal Space Program (HKLM-x32\...\Steam App 220200) (Version: - Squad)
Killer Bandwidth Control Filter Driver (Version: 1.1.54.1095 - Rivet Networks) Hidden
Killer E220x Drivers (Version: 1.1.54.1095 - Rivet Networks) Hidden
Killer Network Manager (Version: 1.1.54.1095 - Rivet Networks) Hidden
Killer Performance Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.1.54.1095 - Qualcomm Atheros)
Killer Wireless-AC Drivers (Version: 1.1.54.1095 - Rivet Networks) Hidden
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - )
LCPD First Response (HKLM-x32\...\LCPD First Response) (Version: 1.0.0.0d - G17 Media)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve)
Logitech Gaming Software 8.76 (HKLM\...\Logitech Gaming Software) (Version: 8.76.155 - Logitech Inc.)
Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.83 - Logitech)
Logitech Unifying-Software 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech)
Logitech Webcam-Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.51 - Logitech Inc.)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.410 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.410 - LogMeIn, Inc.) Hidden
MakeMKV v1.9.5 (HKLM-x32\...\MakeMKV) (Version: v1.9.5 - GuinpinSoft inc)
Malwarebytes Anti-Exploit version 1.8.1.1045 (HKLM\...\Malwarebytes Anti-Exploit_is1) (Version: 1.8.1.1045 - Malwarebytes)
Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
METAL SLUG (HKLM-x32\...\Steam App 366250) (Version: - DotEmu)
Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4.6 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft Application Compatibility Toolkit 5.6 (HKLM-x32\...\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}) (Version: 5.6.7324.0 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Expression Blend 3 SDK (HKLM-x32\...\{B006B9E9-41DD-4479-9177-3743A53B7735}) (Version: 1.0.1343.0 - Microsoft Corporation)
Microsoft Expression Blend 4 (HKLM-x32\...\Blend_4.0.30816.0) (Version: 4.0.30816.0 - Microsoft Corporation)
Microsoft Expression Blend 4 Add-in for Adobe FXG Import (HKLM-x32\...\{B2D1A01F-82CC-4025-B539-FE62D11C8EC8}) (Version: 1.0.20817.0 - Microsoft Corporation)
Microsoft Expression Blend SDK for .NET 4 (HKLM-x32\...\{0536BCDF-7EF6-48F6-8765-A3C065A065A5}) (Version: 2.0.20621.0 - Microsoft Corporation)
Microsoft Expression Blend SDK for Silverlight 4 (HKLM-x32\...\{B0682940-6FFB-4850-80BA-B2FEF0D64BA8}) (Version: 2.0.20621.0 - Microsoft Corporation)
Microsoft Expression Blend SDK for Windows Phone 7 (HKLM-x32\...\{1762BA00-6EBE-4430-9FBB-16F516B4A46D}) (Version: 2.0.20901.0 - Microsoft Corporation)
Microsoft Expression Blend SDK for Windows Phone OS 7.1 (HKLM-x32\...\{0688DA81-103D-4FEA-B953-FC8F0915A8E2}) (Version: 2.0.30816.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Help Viewer 1.1 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.1 Language Pack - DEU) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.6366.2056 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.6122.5000 - Microsoft Corporation)
Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM-x32\...\{00160000-001F-0407-0000-0000000FF1CE}) (Version: 16.0.3629.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.7143.5001 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2214554541-3394249910-989620225-1000\...\OneDriveSetup.exe) (Version: 17.3.5951.0827 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Silverlight 3 SDK (HKLM-x32\...\{2012098D-EEE9-4769-8DD3-B038050854D4}) (Version: 3.0.40818.0 - Microsoft Corporation)
Microsoft Silverlight 4 SDK - Deutsch (HKLM-x32\...\{8EA792A5-38AA-4F0E-8DFE-D1BAF1145431}) (Version: 4.0.60310.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219 (HKLM\...\{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Express Prerequisites x64 - DEU (HKLM\...\{3C983A67-DFB2-3D3D-AD9E-CA1A5A09FD18}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Microsoft XNA Game Studio Platform Tools (HKLM-x32\...\{89690B51-2E21-4E93-914E-F9CAC5B24A84}) (Version: 1.4.0.0 - Microsoft Corporation)
MiniTool Partition Wizard Free 9.1 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.)
Mirror's Edge (HKLM-x32\...\Steam App 17410) (Version: - DICE)
Mp3tag v2.72 (HKLM-x32\...\Mp3tag) (Version: v2.72 - Florian Heidenreich)
MS7926 USB Audio Driver (HKLM-x32\...\{126CA2C8-404B-412F-A794-A1B5186E6EEE}) (Version: 1.00.0014 - C-Media Electronics, Inc.)
MSI Afterburner 4.1.1 (HKLM-x32\...\Afterburner) (Version: 4.1.1 - MSI Co., LTD)
MSI Command Center (HKLM-x32\...\{85A2564E-9ED9-448A-91E4-B9211EE58A08}_is1) (Version: 1.0.1.08 - MSI)
MSI Fast Boot (HKLM-x32\...\{0F212E7A-65EB-4668-A8D7-749026A64F8E}_is1) (Version: 1.0.1.8 - MSI)
MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.1.009 - MSI)
MSI Smart Utilities (HKLM-x32\...\{009E5DF2-3F97-480B-89DA-F2D5E672E14A}_is1) (Version: 2.0.0.11 - MSI)
MSI Super Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.3.0.02 - MSI)
MSI(R) Intel(R) Extreme Tuning Utility (HKLM-x32\...\{482c7431-75e2-4124-a453-6a294cd2c6a4}) (Version: 6.0.2.101 - Intel Corporation)
MSI(R) Intel(R) Extreme Tuning Utility (x32 Version: 6.0.2.101 - Intel Corporation) Hidden
MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.7 - F.J. Wechselberger)
NetSpeedMonitor 2.5.4.0 x64 (HKLM\...\{88F41EE2-949B-4B52-933D-C7F8F67BC1D2}) (Version: 2.5.4.0 - Florian Gilles)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.8 - Notepad++ Team)
NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.9.1.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.9.1.22 - NVIDIA Corporation)
NVIDIA Grafiktreiber 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 359.06 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.6326.1019 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.6326.1019 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.6326.1019 - Microsoft Corporation) Hidden
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - )
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenIV (HKU\S-1-5-21-2214554541-3394249910-989620225-1000\...\OpenIV) (Version: 2.6.4.646 - .black/OpenIV Team)
Opera Stable 34.0.2036.50 (HKLM-x32\...\Opera 34.0.2036.50) (Version: 34.0.2036.50 - Opera Software)
Oracle VM VirtualBox 5.0.14 (HKLM\...\{82022940-639B-48A3-86D9-B139864105F7}) (Version: 5.0.14 - Oracle Corporation)
Orcs Must Die! (HKLM-x32\...\Steam App 102600) (Version: - Robot Entertainment)
Orcs Must Die! 2 (HKLM-x32\...\Steam App 201790) (Version: - Robot Entertainment)
Origin (HKLM-x32\...\Origin) (Version: 9.5.5.2850 - Electronic Arts, Inc.)
Overwolf.Setup.VC100CRTx64.Dist (HKLM\...\{EC9D5554-6852-4A55-81BB-AC02C7A8CFED}) (Version: 1.0.0 - Overwolf)
PAYDAY: The Heist (HKLM-x32\...\Steam App 24240) (Version: - OVERKILL Software)
Plants vs. Zombies: Game of the Year (HKLM-x32\...\Steam App 3590) (Version: - PopCap Games, Inc.)
Prototype (HKLM-x32\...\Steam App 10150) (Version: - Radical Entertainment)
PROTOTYPE 2 (HKLM-x32\...\Steam App 115320) (Version: - Radical Entertainment)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Qualcomm Atheros 61x4 Bluetooth Suite (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 4.0.0.493 - Qualcomm Atheros Communications)
Rainlendar2 (remove only) (HKLM-x32\...\Rainlendar2) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7634 - Realtek Semiconductor Corp.)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
RivaTuner Statistics Server 6.4.0 (HKLM-x32\...\RTSS) (Version: 6.4.0 - Unwinder)
Roadkil's Unstoppable Copier Version 5.2 (HKLM-x32\...\{A306FD29-7D3A-4287-91AC-9A0180931395}_is1) (Version: - Roadkil.Net)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.9 - Rockstar Games)
Saints Row IV (HKLM-x32\...\Steam App 206420) (Version: - Deep Silver Volition)
Saints Row: Gat out of Hell (HKLM-x32\...\Steam App 301910) (Version: - Deep Silver Volition)
Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition)
Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (x32 Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.) Hidden
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.6 - Samsung Electronics)
Screen Split (HKLM-x32\...\{7F0C2357-33B0-4408-A9AD-A7623FAA22B1}) (Version: 6.57 - LG Electronics Inc.)
SeaTools for Windows 1.4.0.2 (HKLM-x32\...\SeaTools for Windows) (Version: 1.4.0.2 - Seagate Technology)
SHIELD Streaming (Version: 4.1.0260 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.9.1.22 - NVIDIA Corporation) Hidden
ShiftWindow 1.02 (HKLM-x32\...\ShiftWindow_is1) (Version: - Grismar)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation)
Skype™ 7.17 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.17.105 - Skype Technologies S.A.)
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.0.15044.7 - Samsung Electronics Co., Ltd.)
Smart Switch (x32 Version: 4.0.15044.7 - Samsung Electronics Co., Ltd.) Hidden
Soccer Manager 2015 (HKLM-x32\...\Steam App 356370) (Version: - Soccer Manager Ltd)
Software Updater (HKLM-x32\...\{E1BAD1BA-C0E8-4018-9281-E7D2C6B07474}) (Version: 4.3.6 - SEIKO EPSON CORPORATION)
Sound Blaster Cinema 2 (HKLM-x32\...\{B4F6F8CC-2C61-42CC-A4CC-76621F25BDC7}) (Version: 1.00.07 - Creative Technology Limited)
Space Engineers (HKLM-x32\...\Steam App 244850) (Version: - Keen Software House)
Spotify (HKU\S-1-5-21-2214554541-3394249910-989620225-1000\...\Spotify) (Version: 1.0.20.101.ge6957e14 - Spotify AB)
Starbound (HKLM-x32\...\Steam App 211820) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Supreme Commander: Forged Alliance (HKLM-x32\...\Steam App 9420) (Version: - Gas Powered Games)
Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.53254 - TeamViewer)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
TeraCopy 2.3 (HKLM\...\TeraCopy_is1) (Version: - Code Sector)
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com)
THW Simulator 2012 (HKLM-x32\...\THW-Simulator) (Version: - )
TmNationsForever (HKLM-x32\...\TmNationsForever_is1) (Version: - Nadeo)
Trove North America (HKLM-x32\...\Glyph Trove North America) (Version: - Trion Worlds, Inc.)
TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation)
Unity Web Player (HKU\S-1-5-21-2214554541-3394249910-989620225-1000\...\UnityWebPlayer) (Version: 5.0.3f2 - Unity Technologies ApS)
Universal Adb Driver (HKLM-x32\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod)
Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
Uplay (HKLM-x32\...\Uplay) (Version: 6.1 - Ubisoft)
USBLogon 1.6.2.3 (HKLM\...\{E7D9D138-7DFA-441A-B1A9-703193C5D6D3}_is1) (Version: 1.6.2.3 - Quadsoft)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Voicemeeter, The Virtual Mixing Console (HKLM-x32\...\VB:Voicemeeter {17359A74-1236-5467}) (Version: - VB-Audio Software)
Watch_Dogs (HKLM-x32\...\Uplay Install 274) (Version: - Ubisoft)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
Windows-Treiberpaket - Google, Inc. (WinUSB) AndroidUsbDeviceClass (06/26/2014 4.0.0000.00000) (HKLM\...\E9DC49BA23113A1CFEE2EA8CDACFC190C2E7C774) (Version: 06/26/2014 4.0.0000.00000 - Google, Inc.)
Windows-Treiberpaket - MediaTek Inc. (usbser) Ports (01/05/2012 2.0000.0.1) (HKLM\...\49D9ABA9270C5BDFD7AE1BEB607D36B26BB90235) (Version: 01/05/2012 2.0000.0.1 - MediaTek Inc.)
Windows-Treiberpaket - MediaTek Inc. (usbser) Ports (06/26/2014 2.0.1136.0) (HKLM\...\5207B50A9A7F622F861EF44EB724202FCD7019B6) (Version: 06/26/2014 2.0.1136.0 - MediaTek Inc.)
Windows-Treiberpaket - MediaTek Inc. (usbser) Ports (12/24/2011 2.0000.0.0) (HKLM\...\D0E6296D177F42BB31C0200E49412003DB6C4633) (Version: 12/24/2011 2.0000.0.0 - MediaTek Inc.)
Windows-Treiberpaket - MediaTek Inc. Net (07/14/2011 1.1129.00) (HKLM\...\863799CFE28DE1D92884471DA44DD0A65106B46F) (Version: 07/14/2011 1.1129.00 - MediaTek Inc.)
Windows-Treiberpaket - Microsoft (WUDFRd) WPD (02/22/2006 5.2.5326.4762) (HKLM\...\FADB1835408DB791D2FE4D4786AD5E1BE6E588A7) (Version: 02/22/2006 5.2.5326.4762 - Microsoft)
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
WPF Toolkit February 2010 (Version 3.5.50211.1) (HKLM-x32\...\{5EE6E987-1B79-4A93-832B-27472C7D1579}) (Version: 3.5.50211.1 - Microsoft Corporation)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)
Zwangs-Update-Killer (HKLM-x32\...\{8E446BC1-620B-47AE-A0B1-ED592A4A758C}_is1) (Version: 1.0.0.0 - pXc-coding.com)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-2214554541-3394249910-989620225-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {004BAF38-7C58-497B-8A4A-A0DC93C1CF88} - System32\Tasks\{5CF1D7FE-896C-4EE6-A991-710450D92A49} => pcalua.exe -a "C:\Program Files (x86)\ClockworkMod\Universal Adb Driver\UniveralAdbDriverInstaller.exe" -d "C:\Program Files (x86)\ClockworkMod\Universal Adb Driver"
Task: {005F29D6-8ECE-4CED-B41D-D16E429FAE9A} - System32\Tasks\{1B215C9D-0547-4BE7-8B23-EB4B1538E4CD} => C:\Spiele\Need For Speed - Porsche\Updater.exe [2000-07-10] ()
Task: {139832C0-6B8D-4179-ACF3-1014E53023DA} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {19869BCE-E970-4240-B3B0-3DD560218A67} - System32\Tasks\{F0A9A4BE-08AB-4E90-B436-E0E121FDE38C} => C:\Spiele\Need For Speed - Porsche\Porsche.exe [2000-07-11] ()
Task: {27E431D7-BA54-45DF-9104-85611198A50D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-20] (Adobe Systems Incorporated)
Task: {2883B98A-9126-48C6-92B0-8ED23F659AAC} - System32\Tasks\Videos löschen Sgt Napoleon => powershell.exe -WindowStyle hidden -file "G:\Sgt Napoleon.ps1" -windowstyle hidden
Task: {2EDDB544-E974-4714-AA5A-20F12B4F49ED} - System32\Tasks\{EBE6D00F-BAF4-4609-BE78-12C9714F7E7C} => C:\Program Files (x86)\ClockworkMod\Universal Adb Driver\UniveralAdbDriverInstaller.exe [2013-04-07] ()
Task: {30D624F3-1E01-427D-8055-AC497774BB2B} - System32\Tasks\Opera scheduled Autoupdate 1446303431 => C:\Program Files (x86)\Opera\launcher.exe [2016-01-18] (Opera Software)
Task: {3E3900EB-E80C-425E-8A56-3A1655DBFBC2} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-01-07] (Microsoft Corporation)
Task: {3E5CBA48-A215-4728-A0D3-3493CBF0A85E} - System32\Tasks\Videos löschen MIB => powershell.exe -WindowStyle hidden -file "G:\MIB.ps1" -windowstyle hidden
Task: {475DC9A4-3B51-4735-A8B6-E25066ECBBB4} - System32\Tasks\Videos löschen darkrider84 => powershell.exe -WindowStyle hidden -file "G:\darkrider84.ps1" -windowstyle hidden
Task: {4A4B163F-4AEA-4834-A8CE-68F6E8C39A01} - System32\Tasks\{6B905976-0EE1-40CC-B2FC-336CF7C8A559} => pcalua.exe -a C:\Users\darkrider84\Downloads\VirtualBox-4.3.26-98988-Win.exe -d C:\Users\darkrider84\Downloads
Task: {4AD744AE-8893-4884-825A-BC0C939EDD89} - System32\Tasks\HWiNFO => C:\Program Files\HWiNFO64\HWiNFO64.EXE [2016-01-07] (REALiX)
Task: {528E23CB-EDD3-42CA-B05F-409E59F1504E} - System32\Tasks\{8EAC2427-D2CE-4D99-B4B5-165FC9966077} => C:\Program Files (x86)\ClockworkMod\Universal Adb Driver\UniveralAdbDriverInstaller.exe [2013-04-07] ()
Task: {58A92D3D-C9D5-4444-9604-CAD9A31B4E69} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime => C:\Windows\system32\GWX\GWXUXWorker.exe [2015-12-05] (Microsoft Corporation)
Task: {58DBF297-50AE-46EE-ADA5-904E73EAA9DA} - System32\Tasks\{6A59D36A-04AC-4324-AC90-9228A9A683CF} => C:\Spiele\Need For Speed - Porsche\Porsche.exe [2000-07-11] ()
Task: {594A8041-EB15-4255-AEAD-4DD776480345} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-01-08] (Microsoft Corporation)
Task: {5A40E926-9E86-4B89-9CFD-B12311724371} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {5AE8A3D9-573D-4D10-BBBD-7E03C103FA67} - System32\Tasks\{BFDBEA7F-4FD6-4705-8EC0-2434B4118F83} => pcalua.exe -a "C:\Program Files (x86)\Xilisoft\Blu-ray to DVD Converter\Blu Ray Ripper\Uninstall.exe"
Task: {5F1BDD4E-4C1F-42B5-AA13-0B2B0840859B} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime => C:\Windows\system32\GWX\GWXUXWorker.exe [2015-12-05] (Microsoft Corporation)
Task: {63FC9B47-E1F8-4998-8F7E-E01D72CD8B19} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-12-08] (Piriform Ltd)
Task: {7A47F3CB-A4EF-4A45-A67E-13BC22B7D3B2} - System32\Tasks\{F33D7871-5331-4C7C-B7F6-114A4E84DB7D} => pcalua.exe -a C:\Windows\IsUn0407.exe -c -fC:\Spiele\NEEDFO~2\uninst.log
Task: {91DFAF7B-B752-42FF-B274-4FA173712A39} - System32\Tasks\{DAB66309-F136-4884-AFE1-1DDD51AF95A9} => C:\Spiele\Need For Speed - Porsche\Porsche.exe [2000-07-11] ()
Task: {943DFA5A-DB14-494D-B246-0563D6479913} - System32\Tasks\{8AAD8ED7-E037-4DFF-8022-E8213D59D1FA} => C:\Spiele\Driver Parallel Lines\DriverParallelLines.exe
Task: {A151004A-219D-4810-B24C-0EBAFCBCAA4A} - System32\Tasks\{559C5BF1-B5C7-47EF-A9B3-A6FFC13D7E22} => C:\Program Files (x86)\ClockworkMod\Universal Adb Driver\UniveralAdbDriverInstaller.exe [2013-04-07] ()
Task: {A88DA563-F71E-4991-8E77-C8A107CCB666} - System32\Tasks\{219CB7FC-848D-43F0-9D24-509077267C6E} => pcalua.exe -a C:\Windows\IsUn0407.exe -c -fC:\Spiele\NEEDFO~2\uninst.log
Task: {C69F83E8-9781-4011-8509-38AA11AEFC8C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-26] (Google Inc.)
Task: {C7223F99-02E3-49FD-8ECC-9432D1D56CDB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-26] (Google Inc.)
Task: {C8723F19-BA13-4819-8F75-4BEA36E3B253} - System32\Tasks\{9883AC77-A852-4D01-9C93-63CC2CF6E527} => Chrome.exe hxxp://ui.skype.com/ui/0/7.6.0.105/de/abandoninstall?source=lightinstaller&page=tsInstall
Task: {CAF6C078-201D-4AF8-B14F-393E7DDF525F} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [2015-04-10] (Samsung Electronics.)
Task: {D468F596-CDEF-4241-BD99-AFEE45072F5C} - System32\Tasks\{23D5D106-A36C-4E83-9850-5348330586F7} => C:\Spiele\Airline Tycoon Deluxe\At.exe
Task: {D6C4C532-68E9-4FF9-B69D-E917E9C44A86} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-01-07] (Microsoft Corporation)
Task: {D8A9EA7E-F805-4062-A62C-471DAF091710} - System32\Tasks\{1FB1351C-C794-46DF-80A5-653B52C0C829} => C:\Spiele\Airline Tycoon Deluxe\At.exe
Task: {DAB2A9F0-3BD0-4834-AFDB-80144E776A3F} - System32\Tasks\{E87EB1CA-898F-4F05-BF17-51D87F046540} => Chrome.exe hxxp://ui.skype.com/ui/0/7.6.0.105/de/abandoninstall?source=lightinstaller&page=tsInstall
Task: {DD9F510C-95F4-499A-90C8-BAC5BC372FF4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask => start sppsvc
Task: {E22F627D-AA60-483B-9D2D-9BE2D88418E9} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-06-13] (Dropbox, Inc.)
Task: {EC11C25E-0D0E-4FE9-A1F6-E6B8129CC748} - System32\Tasks\{3C8A9394-0A08-45AC-BC35-B9DA7467D736} => C:\Spiele\Need For Speed - Porsche\Porsche.exe [2000-07-11] ()
Task: {EC7C9DC5-8C94-4673-9C1C-062EBDE0F47C} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-06-13] (Dropbox, Inc.)
Task: {ECB54B29-6F63-4E33-BEE7-CB9B4D02C2DE} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [2015-05-05] (Intel Corporation)
Task: {F93F02ED-4927-4B67-8A70-889450C423AB} - System32\Tasks\EPSON XP-422 423 425 Series Update {C11D8B02-EE30-495C-8983-4E88B27B0910} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSNDE.EXE [2013-11-21] (SEIKO EPSON CORPORATION)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\EPSON XP-422 423 425 Series Update {C11D8B02-EE30-495C-8983-4E88B27B0910}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSNDE.EXE:/EXE:{C11D8B02-EE30-495C-8983-4E88B27B0910} /F:UpdateSYSTEMĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2015-07-08 12:05 - 2015-11-24 19:40 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-09-06 02:00 - 2015-04-09 22:00 - 00016384 _____ () C:\Program Files\BeSecure\BeSecure.exe
2015-09-06 02:00 - 2015-09-06 02:00 - 00040960 _____ () C:\Program Files\BeSecure\Utils.dll
2015-09-06 02:00 - 2015-04-10 00:58 - 00147456 _____ () C:\Program Files\BeSecure\NetworkUtil.dll
2015-09-06 02:00 - 2014-11-03 22:40 - 00015872 _____ () C:\Program Files\BeSecure\WinDivert.dll
2015-09-06 02:00 - 2015-04-10 00:58 - 00012288 _____ () C:\Program Files\BeSecure\BeSecure_updater_service.exe
2015-10-31 16:41 - 2016-01-07 06:13 - 00162472 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll
2015-12-24 10:56 - 2016-01-12 05:43 - 00291264 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2015-09-02 01:26 - 2015-09-02 01:26 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe
2015-03-29 19:29 - 2013-10-01 16:11 - 00012288 _____ () C:\Program Files\USBLogon\usblonsvc.exe
2010-07-15 05:44 - 2010-07-15 05:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll
2015-02-26 21:26 - 2012-01-20 14:55 - 00678400 _____ () C:\Program Files\TeraCopy\TeraCopyExt64.dll
2014-05-12 10:49 - 2014-05-12 10:49 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2015-02-26 19:53 - 2015-05-29 16:57 - 00089600 _____ () C:\Windows\SYSTEM32\CmdRtr64.DLL
2015-02-26 19:53 - 2015-05-29 16:56 - 00366080 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL
2015-03-07 01:07 - 2015-03-07 01:07 - 00908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll
2015-11-20 22:41 - 2015-11-20 22:41 - 01095448 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll
2015-03-07 01:07 - 2015-03-07 01:07 - 00060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll
2015-11-20 22:41 - 2015-11-20 22:41 - 00240408 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll
2014-03-16 18:42 - 2014-03-16 18:42 - 02611808 _____ () C:\Program Files (x86)\Rainlendar2\Rainlendar2.exe
2015-08-14 06:22 - 2016-01-12 05:43 - 00715712 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll
2015-08-14 06:22 - 2016-01-12 05:43 - 00861120 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll
2015-12-08 20:25 - 2015-12-08 20:25 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2015-11-15 12:04 - 2015-06-23 01:08 - 00245800 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
2016-01-14 13:00 - 2016-01-12 16:43 - 01978184 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.111\libglesv2.dll
2016-01-14 13:00 - 2016-01-12 16:43 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.111\libegl.dll
2015-07-08 22:18 - 2015-07-08 22:18 - 00794920 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\kpcengine.2.3.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00098856 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CodeLog.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 01296424 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\libxml2.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00060968 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\zlib1.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00017448 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CompressFile.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00088616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBGetRemoteNetInfo.dll
2015-11-15 12:04 - 2015-08-01 15:10 - 00022568 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CmcTbProxy.dll
2015-11-15 12:04 - 2015-08-01 15:10 - 00186920 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCPipeCenter.dll
2015-11-15 12:04 - 2015-08-01 15:10 - 00165416 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCAdapt.dll
2015-11-15 12:04 - 2015-08-01 15:10 - 00058408 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBInfo.dll
2015-11-15 12:04 - 2015-08-01 15:10 - 00015912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCNetTokenProxy.dll
2015-11-15 12:04 - 2015-06-23 00:58 - 00108072 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActivationOnline.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\logsys.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00030248 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DiskSearchImg.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00068136 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\MountImg.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00158248 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ImgFile.dll
2015-11-15 12:04 - 2015-03-14 11:54 - 00281128 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DsImgFile.dll
2015-11-15 12:04 - 2015-03-14 11:54 - 00072232 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CheckImg.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00139816 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\vhdvmdk.dll
2015-11-15 12:04 - 2015-06-23 00:58 - 00037416 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\BootDriver.dll
2015-11-15 12:04 - 2015-03-14 11:54 - 00759848 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ExImage.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00193064 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBackupSize.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00407080 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidImage.dll
2015-11-15 12:04 - 2015-06-23 00:58 - 00148008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumDisk.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00076840 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FatLib.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00207912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSLib.dll
2015-11-15 12:04 - 2015-06-23 00:58 - 00024616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\GetDriverInfo.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00020520 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CorrectMbr.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00032296 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumTapeDevice.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00034856 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbTapeBrowse.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00064040 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\RegLib.dll
2015-11-15 12:04 - 2015-08-01 15:10 - 00025128 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AccountManager.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00115752 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NasOperator.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00194088 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBrowser.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudOperator.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00037928 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActiveOnline.dll
2015-11-15 12:04 - 2015-06-23 00:58 - 00136232 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\VMConfig.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00020008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidDeviceManager.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00043048 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbDataSwap.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00353832 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceManager.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00027176 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceAdapter.dll
2015-11-15 12:04 - 2015-06-23 00:58 - 00137256 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Device.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00146984 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Partition.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00050216 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FileSystemAnalyser.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00061992 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FATFileSystemAnalyser.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00089640 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Common.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00056360 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSFileSystemAnalyser.dll
2015-10-31 16:16 - 2005-07-18 13:43 - 00160256 _____ () C:\Program Files (x86)\MSI\Live Update\unrar.dll
2015-08-14 06:22 - 2016-01-12 05:43 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2012-05-16 20:01 - 2012-05-16 20:01 - 00140800 _____ () C:\Program Files (x86)\Rainlendar2\lua52.dll
2014-03-14 11:11 - 2014-03-14 11:11 - 00250368 _____ () C:\Program Files (x86)\Rainlendar2\libical.dll
2014-03-16 18:42 - 2014-03-16 18:42 - 00060512 _____ () C:\Program Files (x86)\Rainlendar2\plugins\iCalendarPlugin.dll
2014-03-14 11:11 - 2014-03-14 11:11 - 00065024 _____ () C:\Program Files (x86)\Rainlendar2\libicalss.dll
2012-06-17 14:22 - 2012-06-17 14:22 - 00012800 _____ () C:\Program Files (x86)\Rainlendar2\lfs.dll
2015-02-26 21:29 - 2015-11-10 20:55 - 00778752 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-02-26 21:29 - 2015-07-03 17:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2015-02-26 21:29 - 2015-07-03 17:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-02-26 21:29 - 2015-07-03 17:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2015-02-26 21:29 - 2015-12-14 21:01 - 02547280 _____ () C:\Program Files (x86)\Steam\video.dll
2015-02-26 21:29 - 2015-09-24 01:33 - 02549248 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2015-02-26 21:29 - 2015-09-24 01:33 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2015-02-26 21:29 - 2015-09-24 01:33 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2015-02-26 21:29 - 2015-09-24 01:33 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2015-02-26 21:29 - 2015-09-24 01:33 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2015-02-26 21:29 - 2015-12-14 21:01 - 00804432 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2015-07-26 04:54 - 2015-11-03 23:00 - 00201728 _____ () C:\Program Files (x86)\Steam\bin\openvr_api.dll
2015-12-05 10:21 - 2015-12-05 10:21 - 00933056 ____R () C:\Program Files (x86)\Skype\Phone\ssScreenVVS2.dll
2015-02-26 19:53 - 2015-05-29 16:56 - 00074240 _____ () C:\Windows\SysWOW64\CmdRtr.DLL
2015-02-26 19:53 - 2015-05-29 16:54 - 00274944 _____ () C:\Windows\SysWOW64\APOMngr.DLL
2015-12-12 16:46 - 2015-10-31 01:59 - 00034768 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00022848 _____ () C:\Program Files (x86)\Dropbox\Client\Crypto.Random.OSRNG.winrandom.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00023352 _____ () C:\Program Files (x86)\Dropbox\Client\Crypto.Util._counter.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00042296 _____ () C:\Program Files (x86)\Dropbox\Client\Crypto.Cipher._AES.pyd
2015-12-12 16:46 - 2015-10-31 01:59 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2015-12-12 16:46 - 2015-10-31 01:59 - 00093640 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2015-12-12 16:46 - 2015-10-31 01:59 - 00018376 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00019760 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2015-12-12 16:46 - 2015-10-31 01:59 - 00392144 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2015-12-12 16:46 - 2015-12-08 22:36 - 00381752 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2015-12-12 16:46 - 2015-10-31 01:59 - 00692688 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00109520 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 01737032 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00020808 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_python_x66cf7a7cx17a72769.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00021840 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00038696 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00114640 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00021320 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_pywin_kernel32_xde9e4433x360333f0.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00024392 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2015-12-12 16:46 - 2015-10-31 02:00 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00117056 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00023376 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2015-12-12 16:46 - 2015-10-31 01:59 - 00134608 _____ () C:\Program Files (x86)\Dropbox\Client\_elementtree.pyd
2015-12-12 16:46 - 2015-10-31 01:59 - 00134088 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00240584 _____ () C:\Program Files (x86)\Dropbox\Client\jpegtran.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00020280 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00052024 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00021304 _____ () C:\Program Files (x86)\Dropbox\Client\Crypto.Util.strxor.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00350152 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00084792 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2015-12-12 16:46 - 2015-12-08 22:36 - 01826608 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2015-12-12 16:46 - 2015-10-31 02:00 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 03891504 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 01950000 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00519984 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00133936 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00225080 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00207672 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00024904 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00486704 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2015-12-12 16:46 - 2015-12-08 22:36 - 00357680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2015-06-13 02:32 - 2015-10-31 02:01 - 00019920 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick.2\qtquick2plugin.dll
2015-06-13 02:32 - 2015-10-31 02:00 - 00786904 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-07-31 13:44 - 2015-10-31 02:00 - 00063448 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-06-13 02:32 - 2015-10-31 02:00 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Window.2\windowplugin.dll
2015-02-26 21:29 - 2015-11-17 01:31 - 47846176 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2015-05-06 20:32 - 2015-04-10 13:33 - 00019872 _____ () C:\Program Files (x86)\Samsung\Samsung Magician\SAMSUNG_SSD.dll
2015-11-15 12:04 - 2014-12-15 00:53 - 00223784 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\SmartBackup.dll
2015-02-26 21:29 - 2015-09-25 00:56 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2009-07-14 03:34 - 2015-09-08 20:26 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-2214554541-3394249910-989620225-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\darkrider84\AppData\Local\DisplayFusion\Wallpaper_2
DNS Servers: 192.168.44.1 - 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Killer Network Manager.lnk => C:\Windows\pss\Killer Network Manager.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Secunia PSI Tray.lnk => C:\Windows\pss\Secunia PSI Tray.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^UltraMon.lnk => C:\Windows\pss\UltraMon.lnk.CommonStartup
MSCONFIG\startupreg: Acronis Scheduler2 Service => "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe"
MSCONFIG\startupreg: AcronisTibMounterMonitor => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\darkrider84\AppData\Local\Akamai\netsession_win.exe"
MSCONFIG\startupreg: AshSnap => C:\Program Files (x86)\Ashampoo\Ashampoo Snap 6\ashsnap.exe
MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: Clownfish => "C:\Program Files (x86)\Clownfish\Clownfish.exe"
MSCONFIG\startupreg: Command Center => C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe
MSCONFIG\startupreg: DisplayFusion => "C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe"
MSCONFIG\startupreg: EEventManager => "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
MSCONFIG\startupreg: EPLTarget =>
MSCONFIG\startupreg: FalNET G19 Display Manager => "C:\Program Files (x86)\FalNET G19 Display Manager\FalNET G19 Display Manager.exe"
MSCONFIG\startupreg: Fast Boot => C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe
MSCONFIG\startupreg: FireStormStartUpAutoRun => C:\Program Files (x86)\ZotacFireStorm\FireStorm.exe
MSCONFIG\startupreg: GoogleChromeAutoLaunch_D3D3FDB76797D0380D6F53572845784B => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
MSCONFIG\startupreg: icq => C:\Users\darkrider84\AppData\Roaming\ICQM\icq.exe -CU
MSCONFIG\startupreg: Information => "G:\Info.vbs"
MSCONFIG\startupreg: KeePass 2 PreLoad => "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload
MSCONFIG\startupreg: Live Update => C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER
MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
MSCONFIG\startupreg: LWS => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
MSCONFIG\startupreg: Malwarebytes Anti-Exploit => C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe
MSCONFIG\startupreg: Overwolf => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent
MSCONFIG\startupreg: Prime95 => C:\Users\darkrider84\Desktop\prime95.exe
MSCONFIG\startupreg: SandboxieControl => "C:\Program Files\Sandboxie\SbieCtrl.exe"
MSCONFIG\startupreg: SDTray => "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
MSCONFIG\startupreg: Spotify => "C:\Users\darkrider84\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\darkrider84\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
MSCONFIG\startupreg: Super Charger => C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe
MSCONFIG\startupreg: TrueImageMonitor.exe => "C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{7F5E398C-26DC-46BC-BEF1-DB5C177B3248}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{97C50EC1-1657-438E-91E1-05D8576B1D39}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{04A0DC4F-342D-45B2-98B4-9BA2862FEFAB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{8F9974A7-5AC4-44B5-B457-27E1A68042A0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{91D243EA-BB48-45E6-BF98-6A6EF4803B73}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{A4CFA084-D4B6-4CCE-957B-841B9CD37567}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{CE531EA1-077B-46BA-9C69-CAB1D6B0041D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{611F1852-2564-43C9-9981-D845C1DC517B}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{10329FF8-7EEE-41E7-B0C5-CDDC88FEAAF4}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{D0D2E99C-580E-4A5E-A29C-D0A512162948}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{7CD3F96B-7E33-4133-981F-DC9B265A3A33}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{F83F2ECB-DCAC-40CA-BF56-69D3F1E8C541}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{AC352BAC-C6FE-46A9-B3C4-25B45C6A155B}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{9CF84803-57D0-4481-9D56-7DE0C7CB3206}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{AC8F14A7-CD4A-4C4A-A9FB-FCA5A0AADB44}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{53F7F024-A4FE-4E7A-9F52-E85F9D674958}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{8C00F606-1E03-41AA-A30A-29943B8DF297}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{B186A536-5D9E-4EFD-B347-F2C26DB334F5}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe
FirewallRules: [{1627A7AE-7D96-41E4-97EE-A8492AA4CA35}] => (Allow) D:\Network\EpsonNetSetup\ENEasyApp.exe
FirewallRules: [{DCCB9B5A-0229-4270-A719-96FAB632228A}] => (Allow) D:\Network\EpsonNetSetup\ENEasyApp.exe
FirewallRules: [{F5D0BF8A-3AA2-4979-B68D-6FD9228DDC08}] => (Allow) D:\Network\EpsonNetSetup\ENEasyApp.exe
FirewallRules: [{E4C81737-8869-4AE0-A50B-656AFD46D398}] => (Allow) D:\Network\EpsonNetSetup\ENEasyApp.exe
FirewallRules: [TCP Query User{6449E735-CCAD-4CE7-8799-5AC212EB9A48}C:\users\darkrider84\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\darkrider84\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{8B1BF0B6-6150-49E8-A435-88BFC860705F}C:\users\darkrider84\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\darkrider84\appdata\roaming\spotify\spotify.exe
FirewallRules: [{28E79238-9FDC-4554-918E-DA1AF2146CDB}] => (Block) C:\users\darkrider84\appdata\roaming\spotify\spotify.exe
FirewallRules: [{471A9878-966C-497D-82FD-045C0EB3D540}] => (Block) C:\users\darkrider84\appdata\roaming\spotify\spotify.exe
FirewallRules: [{8D582414-556B-43A9-9425-2A1B3D7C8886}] => (Allow) C:\Users\darkrider84\AppData\Local\Microsoft\OneDrive\OneDrive.exe
FirewallRules: [{2805DCC8-C311-4FC3-B8BC-2EA8FBC8D38E}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{3D846A7D-4BF5-4147-BAA9-23005BBB8BEF}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{12E68F26-2A3F-4E65-97D0-4BC976CA7A4D}] => (Allow) G:\SteamLibrary\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{B401A963-86F5-4694-ABED-08AF9AE6E74B}] => (Allow) G:\SteamLibrary\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{CBBF64C4-9F35-4A97-BDE9-9F86907C2EFE}] => (Allow) G:\Spiele\Battlefield Bad Company 2\BFBC2Updater.exe
FirewallRules: [{7837D8C0-6165-4D8F-B0B0-12523D349C83}] => (Allow) G:\Spiele\Battlefield Bad Company 2\BFBC2Updater.exe
FirewallRules: [{2E6D3335-4271-4350-A834-0454DAE2C48C}] => (Allow) G:\SteamLibrary\steamapps\common\Orcs Must Die!\Build\release\OrcsMustDie.exe
FirewallRules: [{C8A36DEE-7A20-48FF-B84B-9D97B9AD3801}] => (Allow) G:\SteamLibrary\steamapps\common\Orcs Must Die!\Build\release\OrcsMustDie.exe
FirewallRules: [{E9674ADF-9409-478B-B028-8939525932F6}] => (Allow) G:\SteamLibrary\steamapps\common\Clicker Heroes\Clicker Heroes.exe
FirewallRules: [{21DBBA9F-34A0-45FB-95A0-ADC762DBE0B7}] => (Allow) G:\SteamLibrary\steamapps\common\Clicker Heroes\Clicker Heroes.exe
FirewallRules: [{0CBE1214-8489-48BE-B714-52415C2FB1FF}] => (Allow) G:\SteamLibrary\steamapps\common\METAL SLUG\mslug1.exe
FirewallRules: [{2383AA62-0BB2-4BC9-9B5B-EA34C2D26850}] => (Allow) G:\SteamLibrary\steamapps\common\METAL SLUG\mslug1.exe
FirewallRules: [{A4955AB1-DF3A-4CB9-A696-8E8451782CF0}] => (Allow) G:\Spiele\Ubisoft\Driver San Francisco\Driver.exe
FirewallRules: [{47B71177-949F-4297-B842-51DF6915C7BD}] => (Allow) G:\Spiele\Ubisoft\Driver San Francisco\Driver.exe
FirewallRules: [{7CA41E69-27F1-470C-ACD1-3B70827A8D89}] => (Allow) LPort=8317
FirewallRules: [{2E935E09-4DDA-4AAE-8E4E-D209832879A2}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{8D34C6B5-A64E-4FC3-B4A2-F671A5F5FDF6}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{8295E58D-D946-43CA-B31E-415D597E811B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{EAA10EE5-8B1A-4A7C-ADF3-73FE37B27DCE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{181C3830-425B-483B-8947-F62F8B4B9C6D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{B4608E2B-D2E1-4E92-B91E-ACA52A643642}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{75BAABB0-A085-47C0-98C0-0C0A6C6C0D2B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{0A6190E6-107C-4015-80EE-8A7B977402E0}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{978F369D-B9A0-4CE6-9BBB-F5A765DBB3B1}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{4A5D52B2-24BC-41F9-A82C-5C61CF1572C5}] => (Allow) C:\Program Files\Ubisoft\WATCH_DOGS\bin\watch_dogs.exe
FirewallRules: [{08042CB6-265E-4038-8C4C-32139A919E9C}] => (Allow) C:\Program Files\Ubisoft\WATCH_DOGS\bin\watch_dogs.exe
FirewallRules: [{798FCDDD-B0B2-4466-9310-50374330A2FC}] => (Allow) G:\SteamLibrary\steamapps\common\Edna and Harvey Harvey's New Eyes\harvey.exe
FirewallRules: [{7AB355F8-6A79-4EDA-923B-73F8D4D51D05}] => (Allow) G:\SteamLibrary\steamapps\common\Edna and Harvey Harvey's New Eyes\harvey.exe
FirewallRules: [{FBD73423-6D19-42FE-A7F7-54155A27EB75}] => (Allow) G:\SteamLibrary\steamapps\common\Edna and Harvey Harvey's New Eyes\VisionaireConfigurationTool.exe
FirewallRules: [{B07918D1-BE8A-47D2-8B24-8040B77E4930}] => (Allow) G:\SteamLibrary\steamapps\common\Edna and Harvey Harvey's New Eyes\VisionaireConfigurationTool.exe
FirewallRules: [{22693E76-4E4A-4ABF-BFB3-7F1F136D0E9E}] => (Allow) C:\Program Files (x86)\Origin Games\Dead Space 3\deadspace3.exe
FirewallRules: [{63940119-12B8-4EBF-B87E-808153F1CFFB}] => (Allow) C:\Program Files (x86)\Origin Games\Dead Space 3\deadspace3.exe
FirewallRules: [{5BC92F99-C44D-4937-BC63-2BE7864034F5}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{8340599A-3941-4E67-A6D7-1CAC77C83BA1}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{052F7A76-B2E8-4F8A-ACDA-370870207EF9}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{D1F56AFF-0213-43E7-977B-C846C1A3A322}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{034D21B2-6134-43ED-A085-96546F14BC48}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{2D95F963-38B1-4CA7-9ED7-7C676C57B312}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{AB28691F-74B0-4592-85E1-CA9A70BDCAFB}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{B344CD87-8215-4166-87EA-A3389A37DDE8}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{EC5F70CB-7AC7-4BFA-9667-167D86372115}] => (Allow) G:\SteamLibrary\steamapps\common\Supreme Commander Forged Alliance\bin\SupremeCommander.exe
FirewallRules: [{D749B238-6D12-4EA6-AD5D-6CC8ED174069}] => (Allow) G:\SteamLibrary\steamapps\common\Supreme Commander Forged Alliance\bin\SupremeCommander.exe
FirewallRules: [{6AE00B4C-84CE-40C7-B6ED-8036498D4CBD}] => (Allow) G:\SteamLibrary\steamapps\common\Batman Arkham Knight\Binaries\Win64\BatmanAK.exe
FirewallRules: [{7EB8AE38-3C4F-4D95-B06F-DF5206087A88}] => (Allow) G:\SteamLibrary\steamapps\common\Batman Arkham Knight\Binaries\Win64\BatmanAK.exe
FirewallRules: [{6C3AC1F2-A022-4A83-9AA2-89F7C33076F7}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{C13EA81F-9DD8-4543-8F67-D32D9AAD5D84}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{4182F692-12F6-4869-9B91-CE4866956A6D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{C4FBD586-4EBA-44F3-8216-E0E9F8952988}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{95D60B54-D3F3-4729-BB18-B1B0839C4385}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{9C7E1610-C635-4174-B920-4026C4A180A8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{5F4E42A2-F4CA-475D-82EF-4D1CC07062A6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{0BFD66BF-E1F7-4501-83B7-F8FC2B10CFCA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{8FF4599E-535A-4B18-9390-D9758AB2CBF1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{B31ADD3B-1C3A-47A2-9879-56C10DF3C859}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{C210F9AC-AFA2-4127-AEF0-E93C61433D2E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe
FirewallRules: [{84655A06-23BB-417B-BB53-4F8C6AD6A4EA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe
FirewallRules: [{8BBA6DE7-1831-4ADA-ABA8-3A886E2021F0}] => (Allow) G:\Program Files (x86)\Dragon Nest Europe\DragonNest.exe
FirewallRules: [{839B7FEF-AE65-4A73-8F34-6089E2343708}] => (Allow) G:\Program Files (x86)\Dragon Nest Europe\DragonNest.exe
FirewallRules: [{2400479D-3D02-4F88-87F7-1FF73ECA92CB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [{AB2CD577-01F0-4064-893A-20C3E24E0C3C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [{A551B1C9-D529-4007-A598-030F4F8E7E88}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{77BF69AE-F309-4CBC-95A6-6D65B659FE74}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{92490B16-56DD-444C-9953-6F7190FF4D1D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Soccer Manager 2015\Soccer Manager 2015.exe
FirewallRules: [{66CAA00E-01EB-45AB-8ACF-ACC16E92F23C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Soccer Manager 2015\Soccer Manager 2015.exe
FirewallRules: [{B4054C73-F0C0-4E2B-B1ED-5076A56427B5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{6AC9C864-ED4D-4093-9E08-E347AB03C322}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{85879DFF-651B-426F-A18C-76B57BD824B1}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{7CC55882-82FE-4A3C-A786-08D2A3275462}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe
FirewallRules: [{1F25490A-B62E-488B-BFD7-06AFD65A5966}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe
FirewallRules: [{986E6973-48DA-4E79-87A3-173B794C8B1A}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{A38FBE9D-14EC-4F96-8863-29331373676C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{19D9E2EE-DD25-44EF-9532-ABB888D6E837}] => (Allow) G:\SteamLibrary\steamapps\common\PAYDAY The Heist\payday_win32_release.exe
FirewallRules: [{0BAC0163-6A19-484D-952B-9E5BB631238D}] => (Allow) G:\SteamLibrary\steamapps\common\PAYDAY The Heist\payday_win32_release.exe
FirewallRules: [{990F1844-091C-468F-968A-8B7ABE33728A}] => (Allow) G:\SteamLibrary\steamapps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{00B1C5B1-7EEB-4CA0-B32E-7F80F5CA353C}] => (Allow) G:\SteamLibrary\steamapps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{F9A75F51-069D-4685-A637-F05A26FF56B8}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
FirewallRules: [{6747825F-C9C8-42C8-9CE1-89C95B91C006}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
FirewallRules: [{3E48E660-C4AA-4D39-8161-90B47654724C}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
FirewallRules: [{3850A9F7-14E3-4383-9DC8-BCD2DC195BAA}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
FirewallRules: [{4B823CBD-1AF8-4B1F-9BE8-C80FD69FC40D}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{0BF857FC-BBF7-414D-AF5C-A2B4D01C2A83}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{230E609C-B4A1-4B4D-AA17-C2885298C860}] => (Allow) G:\SteamLibrary\steamapps\common\Hitman 2 Silent Assassin\hitman2.exe
FirewallRules: [{5AEF727E-1C4E-443B-B601-6AD38715E954}] => (Allow) G:\SteamLibrary\steamapps\common\Hitman 2 Silent Assassin\hitman2.exe
FirewallRules: [{7B97F275-86ED-4042-BD86-29D6CDE729D6}] => (Allow) G:\SteamLibrary\steamapps\common\Hitman 2 Silent Assassin\config.exe
FirewallRules: [{1B2BA364-4789-4D9C-B965-0AE98B7736FD}] => (Allow) G:\SteamLibrary\steamapps\common\Hitman 2 Silent Assassin\config.exe
FirewallRules: [{9903044B-F459-428F-89E5-2037BE9CC597}] => (Allow) G:\SteamLibrary\steamapps\common\Saints Row Gat out of Hell\SaintsRowGatOutOfHell.exe
FirewallRules: [{01B2AA96-EA6F-4B06-BEE2-0732C1587C5A}] => (Allow) G:\SteamLibrary\steamapps\common\Saints Row Gat out of Hell\SaintsRowGatOutOfHell.exe
FirewallRules: [{B34C2BF5-920C-4821-8F2F-124401137A08}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{EE9AA76E-6F3C-4535-A32C-435122C11EE4}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{92100731-C117-4C5F-B551-24302181D476}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [{924A5144-1144-43D7-B9AF-66CFFF1BF67C}] => (Allow) G:\SteamLibrary\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe
FirewallRules: [{3844DAC5-8C85-4712-8CA6-6C4540C7568A}] => (Allow) G:\SteamLibrary\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe
FirewallRules: [{25B60BE8-5F7E-4591-B362-583335B82D04}] => (Allow) G:\SteamLibrary\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{6901FD53-E67F-4F62-A31B-A3AF1443C839}] => (Allow) G:\SteamLibrary\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{239763D8-E27A-43E8-A495-4E67EAB8E1F5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{3BE9A00A-3167-459E-9223-9277CB812603}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{67843A29-65FE-405C-8769-D248DF1D9916}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{990061F8-24C6-4D64-8AAB-FB33D30F47F2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{52E300FA-EEB7-4BAE-9CB5-746908983B05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\3DMarkLauncher.exe
FirewallRules: [{4DFC5F9E-22E6-44BE-9258-35DB118548AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\3DMarkLauncher.exe
FirewallRules: [{3F0D95B0-3B09-40E7-A2EA-7AEB82828D04}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{483288CE-57D5-4EC5-A32D-B326E7FD852F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{88E4BE21-4B89-4A1C-9A94-23E58E948DA3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{9B08A062-2DA4-4EF5-97E2-9F217746ACCB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{251E1BF0-B172-4607-8798-E8EE7FFE341F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DisplayFusion\DisplayFusionLauncher.exe
FirewallRules: [{4A743D24-1B4A-482E-BAA0-CCD0CE4A013F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DisplayFusion\DisplayFusionLauncher.exe
FirewallRules: [{D329CE8C-6DCD-49CF-B7C9-59417B1F60C3}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
StandardProfile\AuthorizedApplications: [C:\Spiele\Combat Arms EU\CombatArms.exe] => :*Enabled:CombatArms.exe
StandardProfile\AuthorizedApplications: [C:\Spiele\Combat Arms EU\Engine.exe] => :*Enabled:Engine.exe
==================== Wiederherstellungspunkte =========================
13-01-2016 20:53:55 Windows Update
21-01-2016 00:24:25 Geplanter Prüfpunkt
21-01-2016 14:40:22 Installed Oracle VM VirtualBox 5.0.14
21-01-2016 19:08:24 Tunngle 5.8.4 Setup
21-01-2016 19:08:36 Gerätetreiber-Paketinstallation: TAP-Win32 Provider V9 (Tunngle) Netzwerkadapter
21-01-2016 19:21:44 Installed LogMeIn Hamachi
==================== Fehlerhafte Geräte im Gerätemanager =============
Name: Bluetooth-Peripheriegerät
Description: Bluetooth-Peripheriegerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Bluetooth-Peripheriegerät
Description: Bluetooth-Peripheriegerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Killer Wireless-n/a/ac 1525 Wireless Network Adapter
Description: Killer Wireless-n/a/ac 1525 Wireless Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: Qcamain
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Bluetooth-Peripheriegerät
Description: Bluetooth-Peripheriegerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Bluetooth-Peripheriegerät
Description: Bluetooth-Peripheriegerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Standardtastatur (PS/2)
Description: Standardtastatur (PS/2)
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardtastaturen)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (01/22/2016 08:05:36 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418220
Error: (01/21/2016 10:56:41 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT-AUTORITÄT)
Description: Der Ereignisfilter mit der Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" aufgrund des Fehlers "0x80041003" nicht reaktiviert werden. Solange dieses Problem besteht, können mit diesem Filter keine Ereignisse übermittelt werden.
Error: (01/21/2016 09:48:40 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT-AUTORITÄT)
Description: Der Ereignisfilter mit der Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" aufgrund des Fehlers "0x80041003" nicht reaktiviert werden. Solange dieses Problem besteht, können mit diesem Filter keine Ereignisse übermittelt werden.
Error: (01/21/2016 07:21:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: TnglCtrl.exe, Version: 5.8.4.0, Zeitstempel: 0x2a425e19
Name des fehlerhaften Moduls: TnglCtrl.exe, Version: 5.8.4.0, Zeitstempel: 0x2a425e19
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00095179
ID des fehlerhaften Prozesses: 0x2e28
Startzeit der fehlerhaften Anwendung: 0xTnglCtrl.exe0
Pfad der fehlerhaften Anwendung: TnglCtrl.exe1
Pfad des fehlerhaften Moduls: TnglCtrl.exe2
Berichtskennung: TnglCtrl.exe3
Error: (01/21/2016 07:21:44 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2214554541-3394249910-989620225-500.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig.
.
Vorgang:
OnIdentify-Ereignis
Generatordaten werden gesammelt
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {88809791-2cd8-4d8f-b521-dcfbf821a384}
Error: (01/21/2016 07:10:02 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT-AUTORITÄT)
Description: Der Ereignisfilter mit der Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" aufgrund des Fehlers "0x80041003" nicht reaktiviert werden. Solange dieses Problem besteht, können mit diesem Filter keine Ereignisse übermittelt werden.
Error: (01/21/2016 07:08:36 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2214554541-3394249910-989620225-500.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig.
.
Vorgang:
OnIdentify-Ereignis
Generatordaten werden gesammelt
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {0779f82d-0119-4936-bdfe-50912a49721c}
Error: (01/21/2016 07:08:24 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2214554541-3394249910-989620225-500.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig.
.
Vorgang:
OnIdentify-Ereignis
Generatordaten werden gesammelt
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {0779f82d-0119-4936-bdfe-50912a49721c}
Error: (01/21/2016 07:04:22 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest.
Error: (01/21/2016 02:40:22 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2214554541-3394249910-989620225-500.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig.
.
Vorgang:
OnIdentify-Ereignis
Generatordaten werden gesammelt
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {09edee9a-3bb8-4b25-8369-55f4bd53216a}
Systemfehler:
=============
Error: (01/22/2016 08:19:17 PM) (Source: DCOM) (EventID: 10016) (User: darkrider84-PC)
Description: ComputerstandardLokalAktivierung{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}darkrider84-PCdarkrider84S-1-5-21-2214554541-3394249910-989620225-1000LocalHost (unter Verwendung von LRPC)
Error: (01/22/2016 08:19:17 PM) (Source: DCOM) (EventID: 10016) (User: darkrider84-PC)
Description: ComputerstandardLokalAktivierung{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}darkrider84-PCdarkrider84S-1-5-21-2214554541-3394249910-989620225-1000LocalHost (unter Verwendung von LRPC)
Error: (01/22/2016 08:19:17 PM) (Source: DCOM) (EventID: 10016) (User: darkrider84-PC)
Description: ComputerstandardLokalAktivierung{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}darkrider84-PCdarkrider84S-1-5-21-2214554541-3394249910-989620225-1000LocalHost (unter Verwendung von LRPC)
Error: (01/22/2016 08:15:37 PM) (Source: DCOM) (EventID: 10016) (User: darkrider84-PC)
Description: ComputerstandardLokalAktivierung{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}darkrider84-PCdarkrider84S-1-5-21-2214554541-3394249910-989620225-1000LocalHost (unter Verwendung von LRPC)
Error: (01/22/2016 08:15:37 PM) (Source: DCOM) (EventID: 10016) (User: darkrider84-PC)
Description: ComputerstandardLokalAktivierung{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}darkrider84-PCdarkrider84S-1-5-21-2214554541-3394249910-989620225-1000LocalHost (unter Verwendung von LRPC)
Error: (01/22/2016 08:15:37 PM) (Source: DCOM) (EventID: 10016) (User: darkrider84-PC)
Description: ComputerstandardLokalAktivierung{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}darkrider84-PCdarkrider84S-1-5-21-2214554541-3394249910-989620225-1000LocalHost (unter Verwendung von LRPC)
Error: (01/22/2016 08:15:37 PM) (Source: DCOM) (EventID: 10016) (User: darkrider84-PC)
Description: ComputerstandardLokalAktivierung{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}darkrider84-PCdarkrider84S-1-5-21-2214554541-3394249910-989620225-1000LocalHost (unter Verwendung von LRPC)
Error: (01/22/2016 08:15:37 PM) (Source: DCOM) (EventID: 10016) (User: darkrider84-PC)
Description: ComputerstandardLokalAktivierung{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}darkrider84-PCdarkrider84S-1-5-21-2214554541-3394249910-989620225-1000LocalHost (unter Verwendung von LRPC)
Error: (01/22/2016 08:15:37 PM) (Source: DCOM) (EventID: 10016) (User: darkrider84-PC)
Description: ComputerstandardLokalAktivierung{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}darkrider84-PCdarkrider84S-1-5-21-2214554541-3394249910-989620225-1000LocalHost (unter Verwendung von LRPC)
Error: (01/22/2016 08:15:37 PM) (Source: DCOM) (EventID: 10016) (User: darkrider84-PC)
Description: ComputerstandardLokalAktivierung{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}{CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2}darkrider84-PCdarkrider84S-1-5-21-2214554541-3394249910-989620225-1000LocalHost (unter Verwendung von LRPC)
CodeIntegrity:
===================================
Date: 2016-01-21 15:27:59.442
Description: Die Integrität der Datei "\Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe" kann nicht geprüft werden, da das Signaturzertifikat gesperrt wurde. Erkundigen Sie sich beim Herausgeber, ob eine neue signierte Version des Kernelmoduls verfügbar ist.
Date: 2016-01-21 15:27:59.438
Description: Die Integrität der Datei "\Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe" kann nicht geprüft werden, da das Signaturzertifikat gesperrt wurde. Erkundigen Sie sich beim Herausgeber, ob eine neue signierte Version des Kernelmoduls verfügbar ist.
Date: 2016-01-21 15:27:59.433
Description: Die Integrität der Datei "\Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe" kann nicht geprüft werden, da das Signaturzertifikat gesperrt wurde. Erkundigen Sie sich beim Herausgeber, ob eine neue signierte Version des Kernelmoduls verfügbar ist.
Date: 2016-01-21 15:27:59.425
Description: Die Integrität der Datei "\Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe" kann nicht geprüft werden, da das Signaturzertifikat gesperrt wurde. Erkundigen Sie sich beim Herausgeber, ob eine neue signierte Version des Kernelmoduls verfügbar ist.
Date: 2016-01-21 15:27:59.420
Description: Die Integrität der Datei "\Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe" kann nicht geprüft werden, da das Signaturzertifikat gesperrt wurde. Erkundigen Sie sich beim Herausgeber, ob eine neue signierte Version des Kernelmoduls verfügbar ist.
Date: 2016-01-21 15:27:59.415
Description: Die Integrität der Datei "\Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe" kann nicht geprüft werden, da das Signaturzertifikat gesperrt wurde. Erkundigen Sie sich beim Herausgeber, ob eine neue signierte Version des Kernelmoduls verfügbar ist.
Date: 2016-01-21 15:27:59.299
Description: Die Integrität der Datei "\Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe" kann nicht geprüft werden, da das Signaturzertifikat gesperrt wurde. Erkundigen Sie sich beim Herausgeber, ob eine neue signierte Version des Kernelmoduls verfügbar ist.
Date: 2016-01-21 15:27:59.295
Description: Die Integrität der Datei "\Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe" kann nicht geprüft werden, da das Signaturzertifikat gesperrt wurde. Erkundigen Sie sich beim Herausgeber, ob eine neue signierte Version des Kernelmoduls verfügbar ist.
Date: 2016-01-21 15:27:59.292
Description: Die Integrität der Datei "\Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe" kann nicht geprüft werden, da das Signaturzertifikat gesperrt wurde. Erkundigen Sie sich beim Herausgeber, ob eine neue signierte Version des Kernelmoduls verfügbar ist.
Date: 2016-01-21 15:27:59.283
Description: Die Integrität der Datei "\Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe" kann nicht geprüft werden, da das Signaturzertifikat gesperrt wurde. Erkundigen Sie sich beim Herausgeber, ob eine neue signierte Version des Kernelmoduls verfügbar ist.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i7-4790K CPU @ 4.00GHz
Prozentuale Nutzung des RAM: 74%
Installierter physikalischer RAM: 16074.96 MB
Verfügbarer physikalischer RAM: 4133.84 MB
Summe virtueller Speicher: 32148.13 MB
Verfügbarer virtueller Speicher: 18367.12 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:476.84 GB) (Free:92.92 GB) NTFS
Drive f: (Lokaler Datenträger) (Fixed) (Total:930.41 GB) (Free:147.9 GB) NTFS
Drive g: (Seagate) (Fixed) (Total:2794.39 GB) (Free:1378.74 GB) NTFS
Drive k: () (Fixed) (Total:50 GB) (Free:28.16 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 476.9 GB) (Disk ID: 17A18ECB)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=476.8 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 2794.5 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 2BD2C32A)
Partition 1: (Not Active) - (Size=930.4 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1 GB) - (Type=12)
==================== Ende von Addition.txt ============================ --- --- ---
MBAM: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 21.01.2016
Suchlaufzeit: 14:48
Protokolldatei: MBAM 21.01.16.txt
Administrator: Ja
Version: 2.2.0.1024
Malware-Datenbank: v2016.01.21.02
Rootkit-Datenbank: v2016.01.20.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: darkrider84
Suchlauftyp: Benutzerdefinierter Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 1188286
Abgelaufene Zeit: 3 Std., 9 Min., 18 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Warnen
PUM: Warnen
Prozesse: 2
PUP.Optional.BeSecure, C:\Program Files\BeSecure\BeSecure.exe, 2232, , [2f17fb417f1a61d5e1379a9a52b2738d]
PUP.Optional.BeSecure, C:\Program Files\BeSecure\BeSecure_updater_service.exe, 2296, , [2f17fb417f1a61d5e1379a9a52b2738d]
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 10
PUP.Optional.BeSecure, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BeSecure, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\BeSecure_updater_service, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{29007E8C-251B-4F61-A70E-635712477760037070}_is1, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.MintCast, HKLM\SOFTWARE\ADWAREROI\MintcastNetworks, , [31155ce080192b0b37993fb62dd6fa06],
PUP.Optional.BeSecure, HKLM\SOFTWARE\MICROSOFT\TRACING\BeSecure_RASAPI32, , [1b2b310b4b4ece68d544c56f8c78b947],
PUP.Optional.BeSecure, HKLM\SOFTWARE\MICROSOFT\TRACING\BeSecure_RASMANCS, , [0f37b587356470c677a2b1837c888b75],
PUP.Optional.BeSecure, HKLM\SOFTWARE\MICROSOFT\TRACING\BeSecure_updater_service_RASAPI32, , [4cfa7bc15346f73f1207e84c30d43ac6],
PUP.Optional.BeSecure, HKLM\SOFTWARE\MICROSOFT\TRACING\BeSecure_updater_service_RASMANCS, , [bc8a310b1188a19547d23ef6659f25db],
PUP.Optional.MintCast, HKLM\SOFTWARE\MICROSOFT\TRACING\InstallationStatsUploder_RASAPI32, , [df676ece108982b4312b73bf8381b947],
PUP.Optional.MintCast, HKLM\SOFTWARE\MICROSOFT\TRACING\InstallationStatsUploder_RASMANCS, , [cf77cc70881161d5e676be74fc083dc3],
Registrierungswerte: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 1
PUP.Optional.BeSecure, C:\Program Files\BeSecure, , [2f17fb417f1a61d5e1379a9a52b2738d],
Dateien: 26
PUP.Optional.Iminent, C:\AdwCleaner\Quarantine\C\Users\darkrider84\AppData\Local\DownloadGuide\Offers\iminent_de.exe.vir, , [e1650e2e6039072f5f67ba79b74a56aa],
PUP.Optional.PriceGong, C:\AdwCleaner\Quarantine\C\Users\darkrider84\AppData\Local\DownloadGuide\Offers\pricegong_de.exe.vir, , [1d2924188217f34355cdc4721de4718f],
PUP.Optional.Iminent, C:\FRST\Quarantine\G\Sicherungen\AppData_2\Local\DownloadGuide\Offers\iminent_de.exe.xBAD, , [1e283dff2c6d65d1cbfbe2514db412ee],
PUP.Optional.PriceGong, C:\FRST\Quarantine\G\Sicherungen\AppData_2\Local\DownloadGuide\Offers\pricegong_de.exe.xBAD, , [90b665d73a5f6acc9092f343ea179967],
PUP.Optional.Iminent, C:\FRST\Quarantine\G\Sicherungen\C\Users\darkrider84\AppData\Local\DownloadGuide\Offers\iminent_de.exe.xBAD, , [db6bfd3f71283501f5d176bd46bb38c8],
PUP.Optional.PriceGong, C:\FRST\Quarantine\G\Sicherungen\C\Users\darkrider84\AppData\Local\DownloadGuide\Offers\pricegong_de.exe.xBAD, , [f05627159afffa3cf03271c5f50c8d73],
Adware.FakeAV, C:\FRST\Quarantine\G\Users\darkrider84\Downloads\setup-tubebox.exe.xBAD, , [f84eb9833366171f4c741a2d2bd63fc1],
PUP.Optional.OpenCandy, G:\Users\darkrider84\Downloads\1. LCPD First Response 1.0d_2 Automatic Install.zip, , [c87e7ac2019885b1d7771eb44abae917],
PUP.Optional.OpenCandy, G:\Users\darkrider84\Downloads\FreeFileSync_7.3_Windows_Setup.exe, , [4600e7553f5a0531b29ca62c0301a65a],
PUP.Optional.OpenCandy, G:\Users\darkrider84\Downloads\FreemakeVideoDownloaderSetup.exe, , [f84ed3690c8d3df9f2434011f70a01ff],
PUP.Optional.OpenCandy, G:\Users\darkrider84\Downloads\Mods\GTA IV Mods\1. LCPD First Response 1.0d_2 Automatic Install\LCPD First Response 1.0d_2 Installer.exe, , [4bfbf547eeabf93d0945d3ff13f1d42c],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\BeSecure.InstallState, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\BeSecure.exe, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\BeSecure.InstallLog, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\BeSecure_updater_service.exe, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\BeSecure_updater_service.InstallLog, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\BeSecure_updater_service.InstallState, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\InstallationStatsUploder.exe, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\InstallUtil.exe, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\InstallUtil.InstallLog, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\NetworkUtil.dll, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\Newtonsoft.Json.dll, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\unins000.dat, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\unins000.exe, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\Utils.dll, , [2f17fb417f1a61d5e1379a9a52b2738d],
PUP.Optional.BeSecure, C:\Program Files\BeSecure\WinDivert.dll, , [2f17fb417f1a61d5e1379a9a52b2738d],
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) |