Teil 2 Code:
C:\WINDOWS\SysWOW64\winhttpcom.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-04-25 19:46 - 2016-04-25 19:46 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundTransferHost.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2016-04-25 19:46 - 2016-04-25 19:46 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2016-04-25 19:46 - 2016-04-25 19:46 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-04-25 19:46 - 2016-04-25 19:46 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2016-04-25 19:38 - 2016-04-25 19:38 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-04-25 19:37 - 2016-04-25 19:37 - 00000000 ____D C:\ProgramData\USOShared
2016-04-25 19:35 - 2016-04-28 20:08 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-04-25 19:35 - 2016-04-25 19:35 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-04-25 19:35 - 2016-04-25 19:35 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-04-25 19:35 - 2016-04-25 19:35 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2016-04-25 19:35 - 2016-04-25 19:35 - 00000000 ____D C:\WINDOWS\system32\msmq
2016-04-25 19:35 - 2016-04-25 19:35 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2016-04-25 19:35 - 2016-04-25 19:35 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-04-25 19:35 - 2016-04-25 19:35 - 00000000 ____D C:\Program Files\MSBuild
2016-04-25 19:35 - 2016-04-25 19:35 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-04-25 19:35 - 2016-04-25 19:35 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-04-25 19:35 - 2016-04-25 19:35 - 00000000 ____D C:\inetpub
2016-04-25 19:34 - 2015-10-23 18:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-04-25 19:34 - 2015-10-23 18:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-04-25 19:34 - 2015-10-23 18:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-04-25 19:34 - 2015-10-23 18:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-04-25 19:34 - 2015-10-23 18:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-04-25 19:34 - 2015-10-23 18:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-04-25 19:33 - 2016-04-25 19:33 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-04-25 19:33 - 2016-04-25 19:33 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-04-25 19:21 - 2016-04-25 19:21 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-04-25 19:21 - 2016-04-25 19:21 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2016-04-25 19:21 - 2016-04-25 19:21 - 00000000 ____D C:\Users\Default\AppData\Local\SoftThinks
2016-04-25 19:21 - 2016-04-25 19:21 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-04-25 19:21 - 2016-04-25 19:21 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs
2016-04-25 19:21 - 2016-04-25 19:21 - 00000000 ____D C:\Users\Default User\AppData\Local\SoftThinks
2016-04-25 19:21 - 2016-04-25 19:21 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-04-25 19:11 - 2016-04-25 19:11 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2016-04-25 19:07 - 2016-04-27 07:44 - 00000000 ____D C:\Users\Mathias
2016-04-25 19:07 - 2016-04-27 07:44 - 00000000 ____D C:\Users\Gast
2016-04-25 19:07 - 2016-04-26 21:08 - 00000000 ____D C:\Users\Martina
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\Vorlagen
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\Startmenü
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\Netzwerkumgebung
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\Lokale Einstellungen
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\Eigene Dateien
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\Druckumgebung
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\Documents\Eigene Videos
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\Documents\Eigene Musik
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\Documents\Eigene Bilder
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\AppData\Local\Verlauf
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\AppData\Local\Anwendungsdaten
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Mathias\Anwendungsdaten
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\Vorlagen
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\Startmenü
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\Netzwerkumgebung
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\Lokale Einstellungen
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\Eigene Dateien
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\Druckumgebung
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\Documents\Eigene Videos
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\Documents\Eigene Musik
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\Documents\Eigene Bilder
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\AppData\Local\Verlauf
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\AppData\Local\Anwendungsdaten
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Martina\Anwendungsdaten
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\Vorlagen
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\Startmenü
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\Netzwerkumgebung
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\Lokale Einstellungen
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\Eigene Dateien
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\Druckumgebung
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Videos
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Musik
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Bilder
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\AppData\Local\Verlauf
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\AppData\Local\Anwendungsdaten
2016-04-25 19:07 - 2016-04-25 19:07 - 00000000 _SHDL C:\Users\Gast\Anwendungsdaten
2016-04-25 19:06 - 2016-04-28 20:13 - 02086104 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-25 19:06 - 2016-04-25 19:06 - 01989310 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2016-04-25 19:02 - 2016-04-25 19:11 - 00000000 ____D C:\Program Files (x86)\Intel
2016-04-25 19:02 - 2016-04-25 19:02 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Apfiltr_01005.Wdf
2016-04-25 19:02 - 2016-04-25 19:02 - 00000000 ____D C:\Program Files\DellTPad
2016-04-25 19:01 - 2015-10-30 09:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-04-25 18:58 - 2016-04-25 18:58 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-04-25 18:56 - 2016-04-27 07:41 - 00270296 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-25 17:49 - 2016-04-25 19:36 - 00018069 _____ C:\WINDOWS\diagerr.xml
2016-04-25 17:49 - 2016-04-25 19:36 - 00017148 _____ C:\WINDOWS\diagwrn.xml
2016-04-25 17:45 - 2016-04-25 19:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Citavi 5
2016-04-25 17:45 - 2016-04-25 17:45 - 00001923 _____ C:\Users\Public\Desktop\Citavi 5.lnk
2016-04-25 17:45 - 2016-04-25 17:45 - 00000000 ____D C:\ProgramData\Swiss Academic Software
2016-04-25 17:43 - 2016-04-25 17:45 - 00000000 ____D C:\Program Files (x86)\Citavi 5
2016-04-25 16:55 - 2016-04-25 16:57 - 101057304 _____ (Swiss Academic Software) C:\Users\Martina\Downloads\Citavi5Setup (1).exe
2016-04-25 16:55 - 2016-04-25 16:55 - 00000000 ____D C:\Users\Martina\AppData\Local\Downloaded Installations
2016-04-25 16:53 - 2016-04-25 16:55 - 101057304 _____ (Swiss Academic Software) C:\Users\Martina\Downloads\Citavi5Setup.exe
2016-04-25 11:48 - 2016-04-25 11:48 - 03996813 _____ C:\Users\Martina\Downloads\Zeitschrift_fuer_Paedagogik-2007_3 (1).pdf
2016-04-25 11:47 - 2016-04-25 11:48 - 03996813 _____ C:\Users\Martina\Downloads\Zeitschrift_fuer_Paedagogik-2007_3.pdf
2016-04-20 18:40 - 2016-03-31 02:11 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2016-04-20 18:40 - 2016-03-31 01:42 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll
2016-04-20 18:40 - 2016-03-31 01:22 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll
2016-04-18 17:20 - 2016-04-25 19:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-04-11 23:25 - 2016-04-11 23:25 - 05934784 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2016-04-01 21:13 - 2016-04-01 21:13 - 00022270 _____ C:\Users\Martina\Downloads\Ikano-Bank-Kreditkarte-Kuendigung.pdf
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2016-04-29 12:46 - 2011-12-01 21:31 - 00000000 ___RD C:\Users\Martina\Dropbox
2016-04-29 12:45 - 2014-12-18 18:59 - 00000000 ____D C:\Users\Martina\AppData\Local\Spotify
2016-04-29 12:45 - 2014-12-18 18:56 - 00000000 ____D C:\Users\Martina\AppData\Roaming\Spotify
2016-04-29 12:44 - 2015-09-18 21:47 - 00001106 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-29 12:44 - 2015-06-08 23:38 - 00001212 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2016-04-29 10:25 - 2013-06-30 14:24 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-04-29 10:21 - 2015-06-08 23:38 - 00001216 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2016-04-29 10:04 - 2015-09-18 21:47 - 00001110 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-29 09:41 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-04-28 21:02 - 2013-07-02 19:15 - 00137952 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2016-04-28 21:02 - 2013-07-02 19:15 - 00128664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2016-04-28 21:02 - 2013-07-02 19:15 - 00068936 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2016-04-28 21:02 - 2013-07-02 19:15 - 00035488 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2016-04-28 20:38 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-04-28 20:13 - 2015-10-30 20:35 - 00889404 _____ C:\WINDOWS\system32\perfh007.dat
2016-04-28 20:13 - 2015-10-30 20:35 - 00197452 _____ C:\WINDOWS\system32\perfc007.dat
2016-04-28 20:07 - 2015-10-30 08:28 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-04-28 20:05 - 2011-11-17 10:57 - 00000000 ____D C:\Users\Martina\Documents\Martina
2016-04-28 16:48 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-04-28 16:48 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-04-26 21:11 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-04-26 21:11 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-04-26 21:11 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-04-26 21:11 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-04-26 18:01 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-04-26 17:11 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\appcompat
2016-04-25 20:20 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-04-25 20:14 - 2009-12-16 13:46 - 00061136 _____ C:\Users\Martina\AppData\Local\GDIPFONTCACHEV1.DAT
2016-04-25 20:10 - 2015-10-30 20:36 - 00000000 ____D C:\WINDOWS\OCR
2016-04-25 20:02 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-04-25 20:02 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-04-25 20:02 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-04-25 20:02 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-04-25 19:55 - 2015-10-30 09:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-04-25 19:49 - 2015-10-30 20:44 - 00000000 ____D C:\Program Files\Windows Journal
2016-04-25 19:49 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-04-25 19:49 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-04-25 19:49 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-04-25 19:49 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-04-25 19:49 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-04-25 19:49 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-04-25 19:49 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-04-25 19:49 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-04-25 19:49 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-04-25 19:37 - 2015-10-30 09:24 - 00000000 ____D C:\ProgramData\USOPrivate
2016-04-25 19:37 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows NT
2016-04-25 19:36 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-04-25 19:36 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Registration
2016-04-25 19:36 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-04-25 19:35 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-04-25 19:35 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2016-04-25 19:35 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-04-25 19:35 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-04-25 19:35 - 2015-10-30 09:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2016-04-25 19:35 - 2015-10-30 09:19 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll
2016-04-25 19:35 - 2015-10-30 09:19 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2016-04-25 19:35 - 2015-10-30 09:19 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb
2016-04-25 19:35 - 2015-10-30 09:19 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb
2016-04-25 19:35 - 2015-10-30 09:19 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb
2016-04-25 19:35 - 2015-10-30 09:19 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2016-04-25 19:35 - 2015-10-30 09:19 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb
2016-04-25 19:35 - 2015-10-30 09:19 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2016-04-25 19:35 - 2015-10-30 09:19 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2016-04-25 19:35 - 2015-10-30 09:19 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2016-04-25 19:35 - 2015-10-30 09:19 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2016-04-25 19:35 - 2015-10-30 09:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2016-04-25 19:35 - 2015-10-30 09:19 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof
2016-04-25 19:35 - 2015-10-30 09:18 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2016-04-25 19:35 - 2015-10-30 09:18 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2016-04-25 19:35 - 2015-10-30 09:18 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2016-04-25 19:35 - 2015-10-30 09:18 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2016-04-25 19:35 - 2015-10-30 09:18 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2016-04-25 19:35 - 2015-10-30 09:18 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2016-04-25 19:35 - 2015-10-30 09:18 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2016-04-25 19:35 - 2015-10-30 09:18 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2016-04-25 19:35 - 2015-09-18 21:47 - 00004216 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-04-25 19:35 - 2015-09-18 21:47 - 00003964 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-04-25 19:35 - 2015-08-28 15:59 - 00003492 _____ C:\WINDOWS\System32\Tasks\BackgroundContainer Startup Task
2016-04-25 19:35 - 2015-06-08 23:38 - 00004322 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA
2016-04-25 19:35 - 2015-06-08 23:38 - 00004070 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore
2016-04-25 19:35 - 2015-04-28 09:29 - 00002908 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2016-04-25 19:35 - 2013-06-30 14:24 - 00003932 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-04-25 19:35 - 2013-02-19 17:56 - 00003632 _____ C:\WINDOWS\System32\Tasks\DealPly
2016-04-25 19:35 - 2011-07-12 17:17 - 00002988 _____ C:\WINDOWS\System32\Tasks\{246CA1BA-7A27-4A2C-9DC6-148E966BC2DD}
2016-04-25 19:35 - 2009-12-21 13:01 - 00003474 _____ C:\WINDOWS\System32\Tasks\{D0AB3F51-4715-480E-A10F-DCAD58234D0E}
2016-04-25 19:34 - 2015-10-30 09:24 - 00000000 __RSD C:\WINDOWS\Media
2016-04-25 19:34 - 2015-10-30 09:24 - 00000000 __RHD C:\Users\Public\Libraries
2016-04-25 19:34 - 2015-10-30 09:19 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll
2016-04-25 19:34 - 2015-10-30 09:19 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll
2016-04-25 19:34 - 2015-10-30 09:18 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2016-04-25 19:34 - 2015-10-30 09:18 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2016-04-25 19:34 - 2015-10-30 09:18 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2016-04-25 19:34 - 2015-10-30 09:18 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2016-04-25 19:34 - 2015-10-30 09:18 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2016-04-25 19:34 - 2015-10-30 09:18 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2016-04-25 19:34 - 2015-10-30 09:18 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2016-04-25 19:34 - 2015-10-30 09:18 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2016-04-25 19:34 - 2015-10-30 09:18 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2016-04-25 19:34 - 2015-10-30 09:18 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2016-04-25 19:34 - 2015-10-30 09:18 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2016-04-25 19:34 - 2015-10-30 09:18 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2016-04-25 19:34 - 2015-10-30 09:18 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2016-04-25 19:29 - 2015-09-18 21:49 - 00002266 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-25 19:28 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\spool
2016-04-25 19:23 - 2016-01-03 20:51 - 00000000 ____D C:\Users\Martina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-04-25 19:23 - 2016-01-03 20:51 - 00000000 ____D C:\Users\Martina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps
2016-04-25 19:23 - 2015-10-30 20:44 - 00000000 ____D C:\WINDOWS\ShellNew
2016-04-25 19:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2016-04-25 19:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2016-04-25 19:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\et-EE
2016-04-25 19:23 - 2015-10-01 21:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard 9.5
2016-04-25 19:23 - 2015-09-09 22:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-04-25 19:23 - 2015-09-03 20:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2016-04-25 19:23 - 2015-04-28 09:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-04-25 19:23 - 2015-01-20 10:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-04-25 19:23 - 2014-11-24 13:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 2
2016-04-25 19:23 - 2014-11-24 13:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2016-04-25 19:23 - 2014-08-31 11:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WISO Steuer-Sparbuch 2014
2016-04-25 19:23 - 2013-12-30 17:57 - 00000000 ____D C:\Users\Martina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FOTOParadies
2016-04-25 19:23 - 2013-05-06 20:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-04-25 19:23 - 2012-11-28 02:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-04-25 19:23 - 2012-11-28 00:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in
2016-04-25 19:23 - 2012-03-31 14:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MediaProSoft Free YouTube to WMV Converter
2016-04-25 19:23 - 2012-03-31 14:12 - 00000000 ____D C:\Users\Martina\AppData\Roaming\Microsoft\Windows\Start Menu\FoxTab Video Converter
2016-04-25 19:23 - 2012-03-30 22:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MediaProSoft Free YouTube to FLV Converter
2016-04-25 19:23 - 2010-04-03 21:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX Plus
2016-04-25 19:23 - 2010-01-29 20:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-04-25 19:23 - 2009-12-09 07:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roxio
2016-04-25 19:23 - 2009-12-09 07:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2016-04-25 19:23 - 2009-12-09 07:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2016-04-25 19:23 - 2009-12-09 07:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Phoenix Technologies Ltd
2016-04-25 19:23 - 2009-12-09 07:26 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-04-25 19:23 - 2009-12-09 07:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Support Center
2016-04-25 19:23 - 2009-12-09 07:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works
2016-04-25 19:23 - 2009-12-09 07:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell DataSafe
2016-04-25 19:23 - 2009-12-09 07:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager
2016-04-25 19:23 - 2009-12-09 07:11 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Wireless
2016-04-25 19:23 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-04-25 19:21 - 2009-07-14 05:20 - 00000000 ____D C:\Users\Default.migrated
2016-04-25 19:15 - 2015-10-30 20:35 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2016-04-25 19:15 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2016-04-25 19:15 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2016-04-25 19:15 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-04-25 19:15 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-04-25 19:15 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\IME
2016-04-25 19:15 - 2013-08-21 17:54 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-04-25 19:15 - 2012-11-28 00:41 - 00000000 ____D C:\WINDOWS\system32\SPReview
2016-04-25 19:15 - 2012-11-28 00:40 - 00000000 ____D C:\WINDOWS\system32\EventProviders
2016-04-25 19:15 - 2009-12-09 00:02 - 00000000 ____D C:\WINDOWS\SysWOW64\x64
2016-04-25 19:15 - 2009-12-09 00:02 - 00000000 ____D C:\WINDOWS\SysWOW64\Lang
2016-04-25 19:15 - 2009-12-09 00:02 - 00000000 ____D C:\WINDOWS\system32\SRSLabs
2016-04-25 19:12 - 2015-10-30 20:35 - 00000000 ____D C:\WINDOWS\DigitalLocker
2016-04-25 19:12 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\schemas
2016-04-25 19:12 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Help
2016-04-25 19:12 - 2015-10-01 22:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2016-04-25 19:12 - 2015-04-17 21:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-04-25 19:12 - 2009-07-14 20:18 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-04-25 19:11 - 2015-10-30 09:24 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-04-25 19:11 - 2015-10-30 09:24 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2016-04-25 19:11 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-04-25 19:11 - 2013-11-13 10:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco
2016-04-25 19:11 - 2009-12-17 20:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenVPN
2016-04-25 19:11 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Microsoft Games
2016-04-25 19:11 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker
2016-04-25 19:09 - 2015-10-01 20:57 - 00000000 ____D C:\Users\Martina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Convar
2016-04-25 19:05 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-04-25 18:57 - 2015-10-30 20:55 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-04-25 17:50 - 2009-07-14 06:45 - 00022464 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-04-25 17:50 - 2009-07-14 06:45 - 00022464 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-04-25 17:49 - 2015-10-30 21:27 - 00000000 ___HD C:\$WINDOWS.~BT
2016-04-25 17:33 - 2011-08-10 00:29 - 00000000 ____D C:\Users\Martina\AppData\Local\ElevatedDiagnostics
2016-04-25 10:44 - 2009-12-16 14:12 - 00000000 ____D C:\Users\Martina\AppData\Local\SoftThinks
2016-04-24 22:02 - 2014-08-31 11:21 - 00000000 ____D C:\ProgramData\Package Cache
2016-04-20 23:53 - 2009-12-20 20:12 - 135176864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-04-18 17:21 - 2015-06-08 23:38 - 00000000 ____D C:\Program Files (x86)\Dropbox
2016-04-18 17:10 - 2011-12-01 21:29 - 00000000 ____D C:\Users\Martina\AppData\Roaming\Dropbox
2016-04-11 23:06 - 2015-09-18 21:49 - 00002137 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-04-06 20:32 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-04-06 20:32 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-04-06 10:18 - 2012-12-04 10:45 - 00453280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2014-11-24 18:26 - 2014-11-24 12:06 - 0929935 _____ () C:\Program Files\adblock_plus-2.6.6-tb_an_fx_sm.zip
2014-11-24 18:26 - 2014-11-24 13:24 - 27843432 _____ (pdfforge ) C:\Program Files\PDFCreator-1_7_3_setup(1).exe
2012-10-17 18:49 - 2012-10-17 18:49 - 0167992 _____ () C:\Users\Martina\AppData\Roaming\AcroFF033.dll
2012-08-09 20:15 - 2012-11-28 02:18 - 0000048 _____ () C:\Users\Martina\AppData\Roaming\AcroIEHelpe.txt
2012-08-09 20:15 - 2012-08-09 20:15 - 0006400 _____ () C:\Users\Martina\AppData\Roaming\BAcroIEHelpe.dll
2012-08-10 12:47 - 2012-08-10 12:47 - 0006400 _____ () C:\Users\Martina\AppData\Roaming\BAcroIEHelpe187.dll
2012-08-26 19:11 - 2012-08-26 19:11 - 0006400 _____ () C:\Users\Martina\AppData\Roaming\BAcroIEHelpe200.dll
2012-08-09 20:14 - 2012-11-06 01:10 - 0000016 _____ () C:\Users\Martina\AppData\Roaming\blckdom.res
2009-12-16 13:52 - 2010-05-02 19:43 - 0032768 _____ () C:\Users\Martina\AppData\Roaming\DataSafeDotNet.exe
2012-11-05 19:55 - 2012-11-05 19:56 - 0052688 _____ () C:\Users\Martina\AppData\Roaming\loaupdt.jpg
2012-08-22 23:20 - 2012-08-22 23:20 - 0000000 _____ () C:\Users\Martina\AppData\Roaming\ncc73b8v.default.tmp
2012-08-09 20:14 - 2012-08-09 20:14 - 0000264 _____ () C:\Users\Martina\AppData\Roaming\srvblck5.tmp
2012-08-16 13:34 - 2012-08-16 13:34 - 0000011 _____ () C:\Users\Martina\AppData\Roaming\urhtps.dat
2014-11-24 18:20 - 2014-11-27 13:08 - 0000067 _____ () C:\Users\Martina\AppData\Roaming\WB.CFG
2011-11-17 10:53 - 2011-11-17 10:53 - 0003584 _____ () C:\Users\Martina\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-08-31 13:02 - 2012-10-17 09:55 - 83023306 ____T () C:\ProgramData\0tbpw.pad
Dateien, die verschoben oder gelöscht werden sollten:
====================
C:\ProgramData\0tbpw.pad
Einige Dateien in TEMP:
====================
C:\Users\Martina\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2016-04-25 18:56
==================== Ende von FRST.txt ============================ Addition Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:27-04-2016
durchgeführt von Martina (2016-04-29 12:53:25)
Gestartet von C:\Users\Martina\Downloads
Windows 10 Home Version 1511 (X64) (2016-04-25 18:01:08)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-612993534-2790726448-2535340189-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-612993534-2790726448-2535340189-503 - Limited - Disabled)
Gast (S-1-5-21-612993534-2790726448-2535340189-501 - Limited - Disabled) => C:\Users\Gast
HomeGroupUser$ (S-1-5-21-612993534-2790726448-2535340189-1002 - Limited - Enabled)
Martina (S-1-5-21-612993534-2790726448-2535340189-1001 - Administrator - Enabled) => C:\Users\Martina
Mathias (S-1-5-21-612993534-2790726448-2535340189-1004 - Administrator - Enabled) => C:\Users\Mathias
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.03) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.03 - Adobe Systems Incorporated)
Apple Mobile Device Support (HKLM\...\{5D61F006-168C-4B8B-B7FD-F113C10AE0E4}) (Version: 8.2.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.16.282 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{74d1ef14-dd39-4749-b051-e183a1e27f5e}) (Version: 1.1.58.35540 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.1.58.35540 - Avira Operations GmbH & Co. KG) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.05 - Piriform)
Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 3.1.00495 - Cisco Systems, Inc.)
Cisco AnyConnect Secure Mobility Client (x32 Version: 3.1.00495 - Cisco Systems, Inc.) Hidden
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.)
Citavi 5 (HKLM-x32\...\{7EB278FB-0C3C-445E-8665-4A6CDD9B794E}) (Version: 5.2.0.8 - Swiss Academic Software)
Cliqz (HKLM-x32\...\{5A0C0737-6AFE-4DC6-A8B4-6DFE509ACD75}_is1) (Version: 0.5.31 - Cliqz.com)
Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Dell DataSafe Local Backup - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 2.31 - Dell)
Dell DataSafe Local Backup (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 9.4.45 - Dell)
Dell DataSafe Online (HKLM-x32\...\{13766F76-6C8C-4E57-A9F3-3212D1C6E0D1}) (Version: 1.2.0009 - Dell, Inc.)
Dell Dock (HKLM\...\{E60B7350-EA5F-41E0-9D6F-E508781E36D2}) (Version: 2.0.0 - Dell)
Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc)
Dell Getting Started Guide (HKLM-x32\...\{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}) (Version: 1.00.0000 - Dell Inc.)
Dell Support Center (Support Software) (HKLM-x32\...\{E3BFEE55-39E2-4BE0-B966-89FE583822C1}) (Version: 2.5.09100 - Dell)
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.104.115.102 - Alps Electric)
Dell Wireless WLAN Card Utility (HKLM\...\Dell Wireless WLAN Card Utility) (Version: 5.30.21.0 - Dell Inc.)
DivX-Setup (HKLM-x32\...\DivX Setup.divx.com) (Version: 1.0.0.450 - DivX, Inc. )
Dropbox (HKLM-x32\...\Dropbox) (Version: 3.18.1 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.27.33 - Dropbox, Inc.) Hidden
DVDVideoSoftTB Toolbar (HKLM-x32\...\DVDVideoSoftTB Toolbar) (Version: 6.8.5.1 - DVDVideoSoftTB)
EaseUS Data Recovery Wizard 9.5 (HKLM\...\EaseUS Data Recovery Wizard 9.5_is1) (Version: - EaseUS)
FOTOParadies (HKLM-x32\...\{FD838798-E2CB-45FA-AF79-6011519031E2}}_is1) (Version: 3.5.7.1 - Foto Online Service GmbH)
FoxTab Video Converter (HKU\S-1-5-21-612993534-2790726448-2535340189-1001\...\FoxTab Video Converter) (Version: - ) <==== ACHTUNG
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1029 - Intel Corporation)
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation)
iTunes (HKLM\...\{BFEAB774-C7DC-4032-B05A-DA5F7CB7B365}) (Version: 12.2.2.25 - Apple Inc.)
Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.710 - Oracle)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Java(TM) 6 Update 14 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416014FF}) (Version: 6.0.140 - Sun Microsystems, Inc.)
Java(TM) 6 Update 33 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216033FF}) (Version: 6.0.330 - Oracle)
Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.163.2 - McAfee, Inc.)
MediaProSoft Free YouTube to FLV Converter 2.9.2 (HKLM-x32\...\MediaProSoft Free YouTube to FLV Converter_is1) (Version: - MediaProSoft Co., Ltd.)
MediaProSoft Free YouTube to WMV Converter 2.9.5 (HKLM-x32\...\MediaProSoft Free YouTube to WMV Converter_is1) (Version: - MediaProSoft Co., Ltd.)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (German) (HKLM-x32\...\{95120000-00AF-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM-x32\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Services Native v1.0 (x86) (HKLM-x32\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{052bac4a-6f79-46d4-a024-1ce1b4f73cd4}) (Version: 8.0.58299 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{39D0E034-1042-4905-BECB-5502909FCB7C}) (Version: 9.7.0621 - Microsoft Corporation)
Move Media Player (HKU\S-1-5-21-612993534-2790726448-2535340189-1001\...\Move Media Player) (Version: - Move Networks)
Mozilla Firefox 31.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 de)) (Version: 31.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
PDF Architect 2 (HKLM-x32\...\PDF Architect 2) (Version: 2.0.24.16092 - pdfforge GmbH)
PDF Architect 2 View Module (HKLM-x32\...\{D691E998-CF53-4F6C-AC20-E4284660E0E7}) (Version: 2.1.6.19758 - pdfforge GmbH)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.3 - pdfforge)
PowerDVD DX (HKLM-x32\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: 8.3.5424 - CyberLink Corp.)
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 9.6.6 - Dell Inc.)
Roxio Burn (HKLM-x32\...\{B2E47DE7-800B-40BB-BD1F-9F221C3AEE87}) (Version: 1.0 - Roxio)
Skype Toolbars (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.5.7896 - Skype Technologies S.A.)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-612993534-2790726448-2535340189-1001\...\Spotify) (Version: 1.0.28.87.g8f9312a4 - Spotify AB)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft)
Update_DealPly (HKU\S-1-5-21-612993534-2790726448-2535340189-1001\...\DealPly) (Version: - ) <==== ACHTUNG
VC80CRTRedist - 8.0.50727.4053 (x32 Version: 1.1.0 - DivX, Inc) Hidden
VLC media player 1.0.3 (HKLM-x32\...\VLC media player) (Version: 1.0.3 - VideoLAN Team)
Windows Live Anmelde-Assistent (HKLM-x32\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{76618402-179D-4699-A66B-D351C59436BC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
WISO Steuer-Sparbuch 2014 (HKLM-x32\...\{5AF51B8F-5D06-4A93-831F-E73D0350B066}) (Version: 21.00.8480 - Buhl Data Service GmbH)
Wondershare Data Recovery(Build 4.8.2.1) (HKLM-x32\...\{FEA3976F-D621-45F3-AFBD-E812A1F2F00D}_is1) (Version: 4.8.2.1 - Wondershare Software Co.,Ltd.)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-612993534-2790726448-2535340189-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Martina\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileCoAuth.exe (Microsoft Corporation)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {00273672-6742-4AC4-914C-88AEF44D6FCB} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-06-08] (Dropbox, Inc.)
Task: {03BFF6A2-49FD-4CEE-83DE-F68EF9AF67B5} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {0923AE42-A8E7-44CF-AD3D-7B7F11128BB6} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {125BA98E-952F-44EA-AD44-CC2E217B22D7} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {18BE403E-7FAF-4C72-89EA-91FCC585B5D9} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {2202F98C-18A7-46D5-972A-8C74D3C9C5E2} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe
Task: {26D98C1B-177B-4528-9DBC-5415C8A5071C} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {2933F3F6-3BD4-47B9-8BE6-556E57F95F54} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe
Task: {29CEC395-1ABC-4D2F-9D6E-5A9E91537D44} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Keine Datei <==== ACHTUNG
Task: {2A87644E-72CD-4F09-B700-29E67F098D33} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
Task: {2FB8F1FE-7673-4087-BE91-503CB563B06B} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG
Task: {353FC0EF-C98F-42C7-A16F-7F13DF375B65} - System32\Tasks\BackgroundContainer Startup Task => Rundll32.exe "C:\Users\Martina\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <==== ACHTUNG
Task: {36B88413-36B8-49A3-A750-1331AE5997E1} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe
Task: {47F97CBD-AD1A-4724-BAAC-5F4021E7F24C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {48EFFC29-A5A9-4D4A-9BCC-C0CE9BCA42E6} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe
Task: {49AAA0AA-D138-44B6-B44B-797ECD028AB8} - \DealPlyUpdate -> Keine Datei <==== ACHTUNG
Task: {4C021CC6-F6FB-4C8E-9388-8D471D7AB7FA} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {4E18203D-A37F-45D7-8D6B-329E6BA48A77} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {5594D2AF-F661-4BCF-88ED-415492DA07CE} - System32\Tasks\{246CA1BA-7A27-4A2C-9DC6-148E966BC2DD} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2014-12-11] (Skype Technologies S.A.)
Task: {5974D90B-084E-4AA3-BA57-63DB9D4F929F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe
Task: {5C25B571-5DBD-428E-80F7-AFEA12B7A0E7} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {65A3AE06-9827-4E36-8216-04DCE43DA806} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe
Task: {680F0F74-72B3-4DF8-9B31-08FF1FDFB457} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-11] (Adobe Systems Incorporated)
Task: {68DBC1D4-62EB-44BF-8AF2-1FA21BE10129} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe
Task: {6B2F2F20-BB1A-4787-9149-4ED875D0C63E} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {78BA1E1E-D7C3-4CA8-A449-FE0003ED1A31} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe
Task: {80995055-4825-46F9-A152-9435BBB2C88B} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe
Task: {8563F541-A7E2-4FAA-92C5-2712772C265E} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Keine Datei <==== ACHTUNG
Task: {8A9A1B4C-FE8F-430F-B0C0-BD2EF64AC41B} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Keine Datei <==== ACHTUNG
Task: {94441A9D-1628-4A25-8779-252B2F44E9C0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-18] (Google Inc.)
Task: {950B6B46-B3AA-41CE-9B37-2147C79B27BD} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {9767272B-6DA4-49C5-B644-6FD7B77CD96A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-04-23] (Piriform Ltd)
Task: {A1AFECD6-649E-44F8-B087-DCFAC2418A08} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe
Task: {A6F51D7C-55EB-4C78-AA76-4E6ABFC038C6} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-06-08] (Dropbox, Inc.)
Task: {B05BCD7E-2701-4321-BF36-80D686DD95B5} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {CB9B351A-66CD-457C-82B5-005B837A97FD} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe
Task: {D1C30177-A32E-4EA5-B19E-583B69B8F9E4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {D1D5E205-C5DD-46BC-A43C-E248DFF527FA} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe
Task: {D55DBE4F-555E-4415-969A-7AE549F1F9EE} - System32\Tasks\DealPly => C:\Users\Martina\AppData\Roaming\DealPly\UPDATE~1\UPDATE~1.EXE <==== ACHTUNG
Task: {D7A4F2B9-AC3A-4023-BCB4-F254E06549A7} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe
Task: {D86F6A23-5B5B-494D-B941-070E190841DE} - System32\Tasks\D31N12K1\Administrator - Start WLAN Tray Applet => C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.EXE [2009-07-17] (Dell Inc.)
Task: {DBDB9939-2EB9-47EB-BD56-06D45A20589B} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe
Task: {E08F54E3-8B08-4794-8718-5D49E7FA898C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {E431DC23-1E7A-4522-9CAA-D3090D259530} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
Task: {E6C6FD4E-B21E-4D7B-8031-B17576AE8C26} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-18] (Google Inc.)
Task: {EAC0F973-B406-4D50-8957-978968FF59C1} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {F251D9C8-369F-4A02-BD5B-87EDA1D8A308} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {F29E1DBB-1FA7-4404-9630-4FE6461074DA} - System32\Tasks\{D0AB3F51-4715-480E-A10F-DCAD58234D0E} => pcalua.exe -a "C:\Users\Martina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FEMLK04Y\MoveMediaPlayer_071303000004[1].exe" -d C:\Users\Martina\Desktop
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2009-12-09 07:10 - 2009-07-17 03:06 - 00033280 _____ () C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRYSVC.EXE
2009-12-09 07:10 - 2009-07-17 03:06 - 00058368 _____ () C:\Program Files\Dell\Dell Wireless WLAN Card\bcmwlrmt.dll
2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-04-26 17:50 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-25 20:53 - 2016-04-25 20:54 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-04-26 17:50 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-04-26 20:11 - 2016-04-26 20:11 - 00959176 _____ () C:\Users\Martina\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64\ClientTelemetry.dll
2016-04-25 19:47 - 2016-04-25 19:47 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-04-26 17:46 - 2016-04-02 05:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-04-26 17:50 - 2016-04-02 05:03 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-04-26 17:48 - 2016-04-02 04:58 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-04-26 17:50 - 2016-04-02 04:59 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-04-26 17:51 - 2016-04-02 05:02 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2012-08-03 21:53 - 2012-08-03 21:53 - 00062968 _____ () C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\zlib1.dll
2009-12-09 07:21 - 2010-07-21 18:33 - 00058688 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\STCoreXml.dll
2009-12-09 07:21 - 2010-07-21 18:33 - 00128320 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\STLog.dll
2009-12-09 07:21 - 2010-07-21 18:33 - 00116032 _____ () C:\Program Files (x86)\Dell DataSafe Local Backup\PSTVdsDisk.dll
2016-04-25 20:53 - 2016-04-25 20:54 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-04-25 20:53 - 2016-04-25 20:54 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-04-26 20:11 - 2016-04-26 20:11 - 00679624 _____ () C:\Users\Martina\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\ClientTelemetry.dll
2016-04-11 23:06 - 2016-04-06 12:04 - 01675928 _____ () C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\libglesv2.dll
2016-04-11 23:06 - 2016-04-06 12:04 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\libegl.dll
2015-12-10 13:24 - 2016-03-21 23:50 - 00034768 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2016-04-18 17:20 - 2016-03-21 23:51 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2016-04-18 17:20 - 2016-03-21 23:50 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2015-12-10 13:24 - 2016-03-21 23:50 - 00093640 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2015-12-10 13:24 - 2016-03-21 23:50 - 00018376 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2015-12-10 13:24 - 2016-04-08 20:20 - 00019760 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2016-04-18 17:20 - 2016-03-21 23:50 - 00392144 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2015-12-10 13:24 - 2016-04-08 20:20 - 00381752 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2015-12-10 13:24 - 2016-03-21 23:50 - 00692688 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2016-04-18 17:20 - 2016-04-08 20:19 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2015-12-10 13:24 - 2016-03-21 23:51 - 00112592 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2016-04-18 17:20 - 2016-04-08 20:19 - 01682760 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2016-04-18 17:20 - 2016-04-08 20:19 - 00020808 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2015-12-10 13:24 - 2016-04-08 20:20 - 00021840 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd
2016-04-18 17:20 - 2016-04-08 20:19 - 00038696 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2016-04-18 17:20 - 2016-03-21 23:52 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00114640 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2016-02-21 18:11 - 2016-04-08 20:20 - 00021832 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_pywin_kernel32_x64d8f881xc8c369be.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2016-04-18 17:20 - 2016-04-08 20:19 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2016-04-18 17:20 - 2016-04-08 20:19 - 00117056 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
2015-12-10 13:24 - 2016-04-08 20:20 - 00023376 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2015-12-10 13:24 - 2016-03-21 23:50 - 00134608 _____ () C:\Program Files (x86)\Dropbox\Client\_elementtree.pyd
2016-04-18 17:20 - 2016-03-21 23:50 - 00134088 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2016-04-18 17:20 - 2016-03-21 23:51 - 00240584 _____ () C:\Program Files (x86)\Dropbox\Client\jpegtran.pyd
2016-04-18 17:20 - 2016-04-08 20:19 - 00024392 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2016-04-18 17:20 - 2016-03-21 23:52 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2016-04-18 17:20 - 2016-04-08 20:19 - 00031568 _____ () C:\Program Files (x86)\Dropbox\Client\enterprise_data.compiled._enterprise_data.pyd
2016-04-18 17:20 - 2016-03-12 02:46 - 00293392 _____ () C:\Program Files (x86)\Dropbox\Client\EnterpriseDataAdapter.dll
2016-04-18 17:20 - 2016-04-08 20:19 - 00052024 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2016-02-21 18:11 - 2016-04-08 20:20 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi._winffi_iphlpapi.pyd
2016-02-21 18:11 - 2016-04-08 20:20 - 00021824 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32._winffi_kernel32.pyd
2016-02-21 18:11 - 2016-04-08 20:20 - 00019776 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror._winffi_winerror.pyd
2016-02-21 18:11 - 2016-04-08 20:20 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet._winffi_wininet.pyd
2016-04-18 17:20 - 2016-04-08 20:19 - 00020280 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2015-12-10 13:24 - 2016-03-21 23:52 - 00350152 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2016-02-21 18:11 - 2016-04-08 20:20 - 00022352 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
2016-04-18 17:20 - 2016-04-08 20:19 - 00084280 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2016-04-18 17:20 - 2016-04-08 20:20 - 01826096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2015-12-10 13:24 - 2016-03-21 23:51 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2016-04-18 17:20 - 2016-04-08 20:20 - 03928880 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2016-04-18 17:20 - 2016-04-08 20:20 - 01971504 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2016-04-18 17:20 - 2016-04-08 20:20 - 00531248 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2016-04-18 17:20 - 2016-04-08 20:20 - 00132912 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2016-04-18 17:20 - 2016-04-08 20:20 - 00223544 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2016-04-18 17:20 - 2016-04-08 20:20 - 00207672 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2016-04-18 17:20 - 2016-04-08 20:20 - 00158008 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
2016-04-18 17:20 - 2016-04-08 20:20 - 00042808 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
2016-04-18 17:20 - 2016-03-21 23:54 - 00017864 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll
2016-04-18 17:20 - 2016-03-21 23:54 - 01631184 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2016-04-18 17:17 - 2016-04-08 20:20 - 00025928 _____ () C:\Program Files (x86)\Dropbox\Client\windisplaytoast.compiled._DisplayToast.pyd
2016-04-18 17:20 - 2016-04-08 20:20 - 00546096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2016-04-18 17:20 - 2016-04-08 20:20 - 00357680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2015-06-08 23:42 - 2016-03-21 23:56 - 00697304 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Controls\qtquickcontrolsplugin.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-612993534-2790726448-2535340189-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Martina\AppData\Local\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WISO Mein Steuer-Sparbuch heute.lnk => C:\Windows\pss\WISO Mein Steuer-Sparbuch heute.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Martina^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dell Dock.lnk => C:\Windows\pss\Dell Dock.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: avgnt => "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
MSCONFIG\startupreg: Avira SystrayStartTrigger => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
MSCONFIG\startupreg: BackgroundContainer => "C:\Windows\SysWOW64\Rundll32.exe" "C:\Users\Martina\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: Cisco AnyConnect Secure Mobility Agent for Windows => "C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe" -minimized
MSCONFIG\startupreg: Dell DataSafe Online => "C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe" /m
MSCONFIG\startupreg: DellSupportCenter => "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
MSCONFIG\startupreg: Desktop Disc Tool => "C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"
MSCONFIG\startupreg: DivXUpdate => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
MSCONFIG\startupreg: Dropbox => "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
MSCONFIG\startupreg: IAAnotif => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: PDVDDXSrv => "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
MSCONFIG\startupreg: QuickSet => C:\Program Files\Dell\QuickSet\QuickSet.exe
MSCONFIG\startupreg: Spotify => "C:\Users\Martina\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Martina\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [{3B00489B-F44F-499A-B5A9-6C9ADBA0094B}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [{0CED3A6A-4E3C-498D-BD06-01D842E46A52}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{C8F8E20E-76DB-45A0-AB75-D9C84FE8C155}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [UDP Query User{A942599E-4AFB-474E-9171-83B8F0DCE6D1}C:\users\martina\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\martina\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{A2DC0711-C264-476A-BC6D-B61BE0A3C03C}C:\users\martina\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\martina\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{3C87AF3E-32DC-412C-A9B6-C4189CF9B4E6}C:\users\martina\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\martina\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{9B6F8298-5B1F-4817-91E6-906A4F2451F2}C:\users\martina\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\martina\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{20F5A774-D0B1-4AD1-8683-3CBEC6F6E541}C:\users\martina\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\martina\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [TCP Query User{DEFBA234-ACE8-4240-A8D2-83687C4F2425}C:\users\martina\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\martina\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{27392CED-6422-4CFD-B841-2FB0188EABA6}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{10922F15-5466-4795-834F-49637DF02BBE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{430621FD-AA7A-470E-B7AF-510F5FB6356C}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{19B9FC61-701E-4EBB-AB0F-9599DD27E4AD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{B3894B52-DEA3-4713-BDC0-A13E7725D04B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{E5AE3DE6-7AF2-4F7A-8042-AB3D4996638A}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MNA\McNaSvc.exe
FirewallRules: [{2684085F-FC53-4251-82C0-84E45FD1B446}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe
FirewallRules: [{95CD485E-4ABB-430F-B472-9F64200AADCF}] => (Allow) svchost.exe
FirewallRules: [{7673A13B-CE6E-4D43-BCDF-29B3CB2C68AC}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{BC3364D8-6D00-4B5F-AE8E-97BEDEE8775C}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\wlcsdk.exe
FirewallRules: [{576647C6-2668-46F8-9141-E12FE2408440}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe
FirewallRules: [{67783558-65BC-41FF-88F4-0B6E26C894D3}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD DX\PowerDVD.exe
==================== Wiederherstellungspunkte =========================
26-04-2016 17:54:47 Windows Update
==================== Fehlerhafte Geräte im Gerätemanager =============
Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Cisco Systems
Service: vpnva
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (04/29/2016 12:46:04 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"1". Fehler in Manifest- oder Richtliniendatei "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"2" in Zeile WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1".
Definition: WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (04/29/2016 12:46:04 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"1". Fehler in Manifest- oder Richtliniendatei "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"2" in Zeile WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1".
Definition: WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (04/29/2016 12:44:40 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: sttray64.exe, Version: 1.0.6217.0, Zeitstempel: 0x4a490274
Name des fehlerhaften Moduls: sttray64.exe, Version: 1.0.6217.0, Zeitstempel: 0x4a490274
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000cae5
ID des fehlerhaften Prozesses: 0x1a80
Startzeit der fehlerhaften Anwendung: 0xsttray64.exe0
Pfad der fehlerhaften Anwendung: sttray64.exe1
Pfad des fehlerhaften Moduls: sttray64.exe2
Berichtskennung: sttray64.exe3
Vollständiger Name des fehlerhaften Pakets: sttray64.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: sttray64.exe5
Error: (04/29/2016 07:59:49 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"1". Fehler in Manifest- oder Richtliniendatei "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"2" in Zeile WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1".
Definition: WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (04/29/2016 07:59:48 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"1". Fehler in Manifest- oder Richtliniendatei "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"2" in Zeile WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1".
Definition: WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (04/29/2016 07:51:22 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: sttray64.exe, Version: 1.0.6217.0, Zeitstempel: 0x4a490274
Name des fehlerhaften Moduls: sttray64.exe, Version: 1.0.6217.0, Zeitstempel: 0x4a490274
Ausnahmecode: 0xc000041d
Fehleroffset: 0x000000000000cae5
ID des fehlerhaften Prozesses: 0x11cc
Startzeit der fehlerhaften Anwendung: 0xsttray64.exe0
Pfad der fehlerhaften Anwendung: sttray64.exe1
Pfad des fehlerhaften Moduls: sttray64.exe2
Berichtskennung: sttray64.exe3
Vollständiger Name des fehlerhaften Pakets: sttray64.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: sttray64.exe5
Error: (04/29/2016 07:51:19 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: sttray64.exe, Version: 1.0.6217.0, Zeitstempel: 0x4a490274
Name des fehlerhaften Moduls: sttray64.exe, Version: 1.0.6217.0, Zeitstempel: 0x4a490274
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000cae5
ID des fehlerhaften Prozesses: 0x11cc
Startzeit der fehlerhaften Anwendung: 0xsttray64.exe0
Pfad der fehlerhaften Anwendung: sttray64.exe1
Pfad des fehlerhaften Moduls: sttray64.exe2
Berichtskennung: sttray64.exe3
Vollständiger Name des fehlerhaften Pakets: sttray64.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: sttray64.exe5
Error: (04/28/2016 08:53:47 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"1". Fehler in Manifest- oder Richtliniendatei "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"2" in Zeile WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1".
Definition: WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (04/28/2016 08:53:47 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"1". Fehler in Manifest- oder Richtliniendatei "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"2" in Zeile WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1".
Definition: WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (04/28/2016 08:43:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: sttray64.exe, Version: 1.0.6217.0, Zeitstempel: 0x4a490274
Name des fehlerhaften Moduls: sttray64.exe, Version: 1.0.6217.0, Zeitstempel: 0x4a490274
Ausnahmecode: 0xc000041d
Fehleroffset: 0x000000000000cae5
ID des fehlerhaften Prozesses: 0xfcc
Startzeit der fehlerhaften Anwendung: 0xsttray64.exe0
Pfad der fehlerhaften Anwendung: sttray64.exe1
Pfad des fehlerhaften Moduls: sttray64.exe2
Berichtskennung: sttray64.exe3
Vollständiger Name des fehlerhaften Pakets: sttray64.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: sttray64.exe5
Systemfehler:
=============
Error: (04/29/2016 10:58:03 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_2db8d0" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (04/28/2016 09:16:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_1b213d" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (04/28/2016 08:09:29 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Avira.ServiceHost erreicht.
Error: (04/28/2016 08:08:56 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Apple Mobile Device Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (04/28/2016 08:08:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1058
Error: (04/28/2016 08:08:56 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Apple Mobile Device Service erreicht.
Error: (04/28/2016 08:07:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_6b02c" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (04/27/2016 07:42:43 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Avira.ServiceHost erreicht.
Error: (04/27/2016 07:42:12 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Apple Mobile Device Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (04/27/2016 07:42:12 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1058
CodeIntegrity:
===================================
Date: 2016-04-27 07:44:18.642
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-04-26 18:42:51.121
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-04-26 17:05:32.364
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-04-25 19:37:42.632
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-04-25 19:29:54.986
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-04-25 18:58:32.460
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
==================== Speicherinformationen ===========================
Prozessor: Celeron(R) Dual-Core CPU T3000 @ 1.80GHz
Prozentuale Nutzung des RAM: 49%
Installierter physikalischer RAM: 4056.36 MB
Verfügbarer physikalischer RAM: 2049.82 MB
Summe virtueller Speicher: 8152.36 MB
Verfügbarer virtueller Speicher: 6062.34 MB
==================== Laufwerke ================================
Drive c: (OS) (Fixed) (Total:134.36 GB) (Free:12.08 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (Size: 149.1 GB) (Disk ID: A0694662)
Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)
Partition 2: (Active) - (Size=14.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=134.4 GB) - (Type=07 NTFS)
==================== Ende von Addition.txt ============================ |