Peter069 | 26.07.2016 16:02 | FRST.txt
FRST Logfile: Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 25-07-2016
durchgeführt von Brate (Administrator) auf SALMAN (26-07-2016 16:54:29)
Gestartet von C:\Users\Brate\Downloads
Geladene Profile: Brate (Verfügbare Profile: Brate)
Platform: Windows 8.1 Pro (Update) (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Perfect Privacy) C:\Program Files (x86)\Perfect Privacy VPN Manager\VPNManagerService.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Perfect Privacy) C:\Program Files (x86)\Perfect Privacy VPN Manager\VPNManager.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(TrueCrypt Foundation) C:\Program Files\TrueCrypt\TrueCrypt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(The OpenVPN Project) C:\Program Files (x86)\Perfect Privacy VPN Manager\OpenVPN\openvpn.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
(TODO: <Company name>) C:\OEM\Preload\utility\OOBERegData.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-08] (NVIDIA Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1387376 2014-05-13] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2313408 2016-04-07] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597016 2016-03-31] (Oracle Corporation)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [67840 2016-07-11] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [814608 2016-04-04] (Avira Operations GmbH & Co. KG)
HKU\DefaultProfile\...\RunOnce: [RegDXVA1] => C:\Windows\system32\cmd.exe /c reg import "C:\Program Files (x86)\Acer\abMedia\SwitchUserVideoKey.reg"
HKU\DefaultProfile\...\RunOnce: [SetAsDefault] => C:\Program Files (x86)\Acer\Acer Video Player\SwitchUserVideoKey.bat
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\Run: [Miranda Fusion] => D:\Program Files (x86)\MirandaFusion\fusiontools\mfstart.exe
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\Run: [TrueCrypt] => C:\Program Files\TrueCrypt\TrueCrypt.exe [1516496 2015-03-11] (TrueCrypt Foundation)
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [3077712 2016-04-30] (Valve Corporation)
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [55349888 2015-09-04] (Skype Technologies S.A.)
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\Run: [HP Officejet 7500 E910 (NET)] => C:\Program Files\HP\HP Officejet 7500 E910\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\Run: [VoipConnect] => "C:\Program Files (x86)\VoipConnect.com\VoipConnect\VoipConnect.exe" -nosplash -minimized
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\MountPoints2: {6d1a2b01-7de1-11e5-8283-206a8aa20116} - "D:\HTC_Sync_Manager_PC.exe"
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\MountPoints2: {c13e63e6-d634-11e4-8280-206a8aa20116} - "E:\HTC_Sync_Manager_PC.exe"
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-04-01] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-04-01] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-04-01] ()
Startup: C:\Users\Brate\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tintenwarnungen überwachen - HP Officejet 7500 E910.lnk [2016-04-07]
Startup: C:\Users\Brate\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Topic.lnk [2016-05-19]
ShortcutTarget: Topic.lnk -> C:\Program Files\Accessory Store\Topic.bat ()
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 37.48.65.178 94.242.243.94
Tcpip\..\Interfaces\{51D9FB77-0FD8-4924-80B1-7C8F8EF72912}: [NameServer] 217.114.218.30,82.199.134.174
Tcpip\..\Interfaces\{51D9FB77-0FD8-4924-80B1-7C8F8EF72912}: [DhcpNameServer] 37.48.65.178 94.242.243.94
Tcpip\..\Interfaces\{BDC7A36E-0B1D-40D8-BC3B-984FFC4AC0FA}: [DhcpNameServer] 192.168.0.1 192.168.0.2
Tcpip\..\Interfaces\{CA504381-76AD-4C58-9A4D-95E8A0ED2DAC}: [DhcpNameServer] 139.7.30.126 139.7.30.125
Tcpip\..\Interfaces\{E08D4AD7-C7ED-4686-8A75-A1CE715D1D34}: [DhcpNameServer] 192.168.0.1 192.168.0.2
Tcpip\..\Interfaces\{EE8251A5-DF39-4750-A1B6-DD91D36C3A8F}: [DhcpNameServer] 192.168.42.129
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1074364927-1859095889-3112359641-500\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer13.msn.com/?pc=ACJB
HKU\S-1-5-21-1074364927-1859095889-3112359641-500\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://homepage-web.com/?s=acer&m=start
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3595532581-57849558-2667381476-1001 -> DefaultScope {D5F8626A-6441-4F90-A452-01725316FBF8} URL =
SearchScopes: HKU\S-1-5-21-3595532581-57849558-2667381476-1001 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3595532581-57849558-2667381476-1001 -> {D5F8626A-6441-4F90-A452-01725316FBF8} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> D:\Programme (x86)\Java\bin\ssv.dll [2016-07-05] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> D:\Programme (x86)\Java\bin\jp2ssv.dll [2016-07-05] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-3595532581-57849558-2667381476-1001 -> Kein Name - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - Keine Datei
FireFox:
========
FF ProfilePath: C:\Users\Brate\AppData\Roaming\Mozilla\Firefox\Profiles\0wcmc75t.default
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-14] ()
FF Plugin: @java.com/DTPlugin,version=11.92.2 -> D:\Programme (x86)\Java\bin\dtplugin\npDeployJava1.dll [2016-07-05] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.92.2 -> D:\Programme (x86)\Java\bin\plugin2\npjp2.dll [2016-07-05] (Oracle Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-04-07] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-14] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll [2013-05-13] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-07-10] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-07-10] (Google Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-04-07] (Adobe Systems)
FF Extension: Canvas Fingerprint Blocker - C:\Users\Brate\AppData\Roaming\Mozilla\Firefox\Profiles\0wcmc75t.default\Extensions\@canvas_fingerprint_blocker.xpi [2016-07-26]
FF Extension: Ghostery - C:\Users\Brate\AppData\Roaming\Mozilla\Firefox\Profiles\0wcmc75t.default\Extensions\firefox@ghostery.com.xpi [2016-07-26]
FF Extension: Privacy Badger - C:\Users\Brate\AppData\Roaming\Mozilla\Firefox\Profiles\0wcmc75t.default\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2016-07-26]
FF Extension: NoScript - C:\Users\Brate\AppData\Roaming\Mozilla\Firefox\Profiles\0wcmc75t.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-07-26]
FF Extension: BetterPrivacy - C:\Users\Brate\AppData\Roaming\Mozilla\Firefox\Profiles\0wcmc75t.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2016-07-26]
FF HKLM-x32\...\Firefox\Extensions: [searchpredict@speedbit.com] - C:\Program Files (x86)\SearchPredict\PRFireFox => nicht gefunden
FF HKLM-x32\...\Firefox\Extensions: [{0329E7D6-6F54-462D-93F6-F5C3118BADF2}] - C:\Program Files (x86)\SPEEDbit Video Downloader\SPFireFox => nicht gefunden
Chrome:
=======
CHR Profile: C:\Users\Brate\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Präsentationen) - C:\Users\Brate\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-07-10]
CHR Extension: (Google Docs) - C:\Users\Brate\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-07-10]
CHR Extension: (Google Drive) - C:\Users\Brate\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-10]
CHR Extension: (YouTube) - C:\Users\Brate\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-10]
CHR Extension: (Form Filler) - C:\Users\Brate\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnjjngeaknajbdcgpfkgnonkmififhfo [2016-07-10]
CHR Extension: (Google Tabellen) - C:\Users\Brate\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-07-10]
CHR Extension: (Avira Browserschutz) - C:\Users\Brate\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2016-07-19]
CHR Extension: (Google Docs Offline) - C:\Users\Brate\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-07-10]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Brate\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-07-10]
CHR Extension: (Google Mail) - C:\Users\Brate\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-07-10]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592 2016-04-05] (Adobe Systems, Incorporated)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [970656 2016-04-04] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [467016 2016-04-04] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [467016 2016-04-04] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1435704 2016-04-04] (Avira Operations GmbH & Co. KG)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [309384 2016-07-11] (Avira Operations GmbH & Co. KG)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-06-12] (Acer Incorporated)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-08] (NVIDIA Corporation)
R2 ibtsiva.exe; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [121288 2014-08-13] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315352 2014-06-16] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-02-19] (Intel Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-02-19] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [466664 2014-06-10] (Acer Incorporate)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [265936 2014-08-18] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-08] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-08] (NVIDIA Corporation)
S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [38240 2016-02-01] (The OpenVPN Project)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-06-26] (Acer Incorporate)
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-06-26] (Acer Incorporate)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [233216 2014-06-23] (acer)
R2 VPNManager; C:\Program Files (x86)\Perfect Privacy VPN Manager\VPNManagerService.exe [19968 2016-04-18] (Perfect Privacy) [Datei ist nicht signiert]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3817168 2014-08-18] (Intel® Corporation)
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [X]
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128664 2016-04-04] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [146712 2016-04-04] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2016-04-04] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [78208 2016-04-04] (Avira Operations GmbH & Co. KG)
S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [129152 2016-04-25] (Samsung Electronics Co., Ltd.)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [219592 2014-08-13] (Intel Corporation)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [116736 2014-02-19] (Intel Corporation)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [83608 2016-03-11] (McAfee, Inc.)
R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3479528 2014-08-21] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-08] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
S3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [221824 2016-04-25] (Samsung Electronics Co., Ltd.)
R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42736 2014-07-10] (Synaptics Incorporated)
S1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [127456 2016-03-04] (Oracle Corporation)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [116232 2015-03-16] (Oracle Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44024 2015-02-04] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [264000 2015-02-04] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 VBoxNetFlt; \SystemRoot\system32\DRIVERS\VBoxNetFlt.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2016-07-26 16:54 - 2016-07-26 16:54 - 00024719 _____ C:\Users\Brate\Downloads\FRST.txt
2016-07-26 16:53 - 2016-07-26 16:54 - 00000000 ____D C:\FRST
2016-07-26 16:53 - 2016-07-26 16:53 - 02394112 _____ (Farbar) C:\Users\Brate\Downloads\FRST64.exe
2016-07-26 07:44 - 2016-07-26 07:44 - 00001131 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-07-26 07:44 - 2016-07-26 07:44 - 00001119 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-07-26 07:44 - 2016-07-26 07:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-07-26 07:41 - 2016-07-26 07:41 - 00242352 _____ C:\Users\Brate\Downloads\Firefox Setup Stub 47.0.1.exe
2016-07-26 07:39 - 2016-07-26 07:39 - 00000000 ____D C:\Users\Brate\AppData\Roaming\Mozilla
2016-07-26 07:36 - 2016-07-26 07:37 - 47065264 _____ C:\Users\Brate\Downloads\Firefox_Setup_47.0.1x64de(1).exe
2016-07-26 07:19 - 2016-07-26 07:19 - 00000000 ____D C:\Users\Brate\Desktop\Alte Firefox-Daten
2016-07-26 06:39 - 2016-07-26 06:39 - 00000000 ____D C:\Users\Brate\AppData\Local\clear.fi
2016-07-26 06:36 - 2016-07-26 06:36 - 05408688 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-07-26 05:35 - 2016-07-26 05:47 - 00000000 ____D C:\Users\Brate\AppData\Local\VSIXInstaller
2016-07-26 04:59 - 2016-07-26 04:59 - 00000000 ____D C:\Users\Brate\AppData\Roaming\WildTangent
2016-07-24 19:50 - 2016-07-24 19:50 - 00001642 _____ C:\Users\Brate\Desktop\Proxifier.exe.lnk
2016-07-24 19:28 - 2016-07-24 19:28 - 00139346 _____ C:\Users\Brate\Downloads\Antrag.pdf
2016-07-24 19:17 - 2016-07-24 19:17 - 03312512 _____ (VIP Technologies ) C:\Users\Brate\Downloads\vip72socks-set(1).exe
2016-07-24 18:48 - 2016-07-24 18:49 - 00000000 ____D C:\Users\Brate\Desktop\ordner
2016-07-24 17:59 - 2016-07-24 17:59 - 47065264 _____ C:\Users\Brate\Downloads\Firefox_Setup_47.0.1x64de.exe
2016-07-23 12:36 - 2016-07-23 12:36 - 00003586 _____ C:\WINDOWS\System32\Tasks\VPN Manager
2016-07-23 02:58 - 2016-07-23 03:02 - 00000936 _____ C:\Users\Brate\Desktop\PersoNr.lnk
2016-07-23 02:37 - 2016-07-23 02:37 - 00000000 ____D C:\Users\Brate\AppData\Local\Perfect_Privacy
2016-07-23 02:36 - 2016-07-23 02:38 - 00000000 ____D C:\Program Files (x86)\Perfect Privacy VPN Manager
2016-07-23 02:36 - 2016-07-23 02:36 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2016-07-23 02:36 - 2016-07-23 02:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect Privacy VPN
2016-07-23 02:19 - 2016-07-23 02:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TAP-Windows
2016-07-23 02:19 - 2016-07-23 02:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenVPN
2016-07-19 15:02 - 2016-07-19 15:02 - 00000000 ____D C:\Users\Brate\AppData\Roaming\Avira
2016-07-19 14:54 - 2016-04-04 17:07 - 00146712 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2016-07-19 14:54 - 2016-04-04 17:07 - 00128664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2016-07-19 14:54 - 2016-04-04 17:07 - 00078208 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2016-07-19 14:54 - 2016-04-04 17:07 - 00035488 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2016-07-18 03:08 - 2016-07-19 14:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-07-18 03:08 - 2016-07-19 14:54 - 00000000 ____D C:\ProgramData\Avira
2016-07-18 03:08 - 2016-07-19 14:54 - 00000000 ____D C:\Program Files (x86)\Avira
2016-07-18 03:00 - 2016-07-18 03:00 - 04702544 _____ (Avira Operations GmbH & Co. KG) C:\Users\Brate\Downloads\avira_de_av_578c2a098fe6f__ws.exe
2016-07-16 00:37 - 2016-07-16 00:37 - 00000295 _____ C:\Users\Brate\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Papierkorb.lnk
2016-07-12 05:31 - 2016-07-12 05:18 - 00019917 ____R C:\Users\Brate\Downloads\Pr%FCfziffernberechnung.pdf
2016-07-11 22:26 - 2016-07-11 22:26 - 00055501 _____ C:\Users\Brate\Downloads\bestelluebersicht.pdf
2016-07-11 21:56 - 2016-07-12 21:55 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2016-07-10 09:18 - 2016-07-10 09:18 - 00169713 _____ C:\Users\Brate\Downloads\BornGen.rar
2016-07-10 09:18 - 2016-07-10 09:18 - 00169713 _____ C:\Users\Brate\Downloads\BornGen (1).rar
2016-07-10 08:28 - 2016-07-10 08:28 - 00130140 _____ C:\Users\Brate\Downloads\BORNGEN_1.0.RAR
2016-07-10 03:17 - 2016-07-10 03:17 - 00002279 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-07-10 03:16 - 2016-07-26 16:39 - 00001128 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-10 03:16 - 2016-07-26 08:27 - 00001132 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-10 03:16 - 2016-07-10 07:12 - 00000000 ____D C:\Users\Brate\AppData\Local\Google
2016-07-10 03:16 - 2016-07-10 03:22 - 00004104 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-07-10 03:16 - 2016-07-10 03:22 - 00003868 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-07-10 03:16 - 2016-07-10 03:17 - 00000000 ____D C:\Program Files (x86)\Google
2016-07-10 03:16 - 2016-07-10 03:16 - 00987728 _____ (Google Inc.) C:\Users\Brate\Downloads\ChromeSetup.exe
2016-07-09 05:46 - 2016-07-09 05:46 - 00006351 _____ C:\Users\Brate\Downloads\smime.p7s
2016-07-08 22:03 - 2016-07-08 22:03 - 00000795 _____ C:\Users\Brate\Desktop\neue konto anträge.lnk
2016-07-05 06:17 - 2016-07-23 02:56 - 00000000 ____D C:\Users\Brate\AppData\Local\Eclipse
2016-07-05 06:16 - 2016-07-05 06:16 - 00110144 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2016-07-05 06:16 - 2016-07-05 06:16 - 00000000 ____D C:\Users\Brate\AppData\Roaming\Sun
2016-07-05 06:16 - 2016-07-05 06:16 - 00000000 ____D C:\Users\Brate\AppData\LocalLow\Sun
2016-07-05 06:16 - 2016-07-05 06:16 - 00000000 ____D C:\Users\Brate\.oracle_jre_usage
2016-07-05 06:16 - 2016-07-05 06:16 - 00000000 ____D C:\ProgramData\Oracle
2016-07-05 06:16 - 2016-07-05 06:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-07-05 06:15 - 2016-07-05 06:15 - 00000000 ____D C:\Users\Brate\AppData\LocalLow\Oracle
2016-07-05 05:13 - 2016-07-05 05:13 - 00000000 ____D C:\Users\Brate\AppData\Roaming\NuGet
2016-07-05 05:13 - 2016-07-05 05:13 - 00000000 ____D C:\Users\Brate\AppData\LocalLow\Temp
2016-07-05 05:12 - 2016-07-05 05:12 - 00000000 ____D C:\Users\Brate\.dnx
2016-07-05 05:02 - 2016-07-05 05:12 - 00000000 ____D C:\Users\Brate\Documents\Visual Studio 2015
2016-07-05 04:54 - 2016-07-05 04:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-07-05 04:54 - 2016-07-05 04:54 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-07-05 04:53 - 2016-07-05 04:53 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2016-07-05 04:53 - 2016-07-05 04:53 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2016-07-05 04:52 - 2016-07-05 04:52 - 00000000 ____D C:\ProgramData\Microsoft DNX
2016-07-05 04:47 - 2016-07-05 04:47 - 00000000 ____D C:\Program Files\IIS
2016-07-05 04:47 - 2016-07-05 04:47 - 00000000 ____D C:\Program Files (x86)\IIS
2016-07-05 04:45 - 2016-07-05 04:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Help Viewer
2016-07-05 04:44 - 2016-07-26 05:49 - 00000000 ____D C:\WINDOWS\SysWOW64\1033
2016-07-05 04:44 - 2016-07-05 04:58 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2016-07-05 04:44 - 2016-07-05 04:58 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2016-07-05 04:43 - 2016-07-26 05:54 - 00000000 ____D C:\WINDOWS\system32\1033
2016-07-05 04:43 - 2016-07-05 04:43 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf
2016-07-05 04:42 - 2016-07-26 05:50 - 00000000 ____D C:\Program Files (x86)\Windows Kits
2016-07-05 04:42 - 2016-07-26 05:50 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs
2016-07-05 04:42 - 2016-07-05 04:42 - 00030400 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
2016-07-05 04:42 - 2016-07-05 04:42 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll
2016-06-29 01:58 - 2016-06-29 22:46 - 11927953 _____ C:\Users\Brate\Documents\B1_Richtige_farbe.psd
2016-06-29 01:13 - 2016-06-29 01:41 - 08805086 _____ C:\Users\Brate\Documents\B1try.psd
2016-06-29 01:12 - 2016-06-29 01:12 - 11634753 _____ C:\Users\Brate\Documents\B1.psd
2016-06-29 00:54 - 2016-06-29 00:54 - 13658240 _____ C:\Users\Brate\Documents\Unbenannt-3.psd
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2016-07-26 16:54 - 2015-08-24 02:50 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-07-26 16:45 - 2015-03-10 20:02 - 00003594 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3595532581-57849558-2667381476-1001
2016-07-26 16:43 - 2014-10-25 08:59 - 00807196 _____ C:\WINDOWS\system32\perfh007.dat
2016-07-26 16:43 - 2014-10-25 08:59 - 00176672 _____ C:\WINDOWS\system32\perfc007.dat
2016-07-26 16:43 - 2014-03-18 12:03 - 01886820 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-07-26 16:43 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\Inf
2016-07-26 08:43 - 2015-03-10 21:30 - 00000000 ____D C:\Users\Brate\AppData\Roaming\.purple
2016-07-26 08:30 - 2014-10-24 23:41 - 00000000 ____D C:\Program Files (x86)\Acer
2016-07-26 07:38 - 2015-03-10 19:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-07-26 06:59 - 2015-06-16 15:53 - 00000000 ____D C:\Program Files (x86)\Dropbox
2016-07-26 06:53 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-07-26 06:46 - 2016-04-06 13:18 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-07-26 06:41 - 2016-02-11 04:12 - 00000000 ____D C:\Program Files (x86)\No-IP
2016-07-26 06:36 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-07-26 06:30 - 2014-10-24 23:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-07-26 06:30 - 2013-08-22 17:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-07-26 06:26 - 2016-03-31 10:14 - 00000000 ____D C:\Program Files (x86)\NeoSmart Technologies
2016-07-26 06:23 - 2015-06-16 15:53 - 00000000 ____D C:\Users\Brate\AppData\Local\Dropbox
2016-07-26 06:16 - 2014-10-24 23:22 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-07-26 06:15 - 2015-03-21 20:55 - 00000000 ____D C:\Users\Brate\AppData\Roaming\BitTorrent
2016-07-26 06:14 - 2015-06-16 14:18 - 00000000 ____D C:\Program Files (x86)\Amazon
2016-07-26 06:13 - 2014-10-24 23:41 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2016-07-26 06:06 - 2016-01-27 17:48 - 00000000 ____D C:\Users\Brate\AppData\Roaming\Adobe
2016-07-26 06:03 - 2016-05-09 17:26 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-07-26 05:57 - 2015-04-27 22:50 - 00000000 ____D C:\Users\Public\OEM
2016-07-26 05:54 - 2014-10-24 23:21 - 00000000 ____D C:\ProgramData\Package Cache
2016-07-26 05:54 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-07-26 05:50 - 2014-07-14 19:37 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-07-26 05:03 - 2016-05-15 06:48 - 00000953 _____ C:\Users\Brate\Desktop\vpn.txt
2016-07-26 04:59 - 2014-07-14 19:55 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-07-26 04:59 - 2014-07-14 19:55 - 00000000 ____D C:\ProgramData\WildTangent
2016-07-26 01:53 - 2016-04-08 15:56 - 00020524 ____H C:\Users\Brate\AppData\Local\IconCache.db.backup
2016-07-25 19:22 - 2016-03-31 10:14 - 00003922 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{DA4BD7AD-016B-4B64-B0B1-72EC263B0AAD}
2016-07-24 19:17 - 2015-09-01 06:17 - 00001093 _____ C:\Users\Public\Desktop\SocksClient - HIDEPASS.lnk
2016-07-24 19:17 - 2015-03-12 17:34 - 00000000 ____D C:\Users\Brate\AppData\Roaming\VIP72 Socks Client
2016-07-24 19:17 - 2015-03-12 17:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VIP72 Socks Client
2016-07-24 19:08 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-07-24 18:40 - 2015-05-20 18:48 - 00000000 ____D C:\ProgramData\SpeedBit
2016-07-24 18:37 - 2015-03-11 14:59 - 00000000 ____D C:\festplatte2
2016-07-23 02:16 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-07-22 02:05 - 2015-03-10 19:53 - 00000000 ____D C:\Users\Brate\AppData\Local\CrashDumps
2016-07-21 05:16 - 2015-03-12 21:48 - 00007603 _____ C:\Users\Brate\AppData\Local\resmon.resmoncfg
2016-07-19 18:10 - 2016-03-17 22:31 - 00000000 ____D C:\Users\Brate\Downloads\IM4
2016-07-18 03:05 - 2014-07-14 19:58 - 00000000 ____D C:\ProgramData\McAfee
2016-07-18 03:04 - 2013-08-22 17:36 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-07-18 03:04 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2016-07-14 22:54 - 2015-08-24 02:50 - 00003772 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-07-14 22:54 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-07-14 22:54 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-07-11 02:48 - 2015-03-10 19:30 - 00000000 ____D C:\Users\Brate\AppData\Local\Packages
2016-07-09 05:16 - 2016-05-11 00:17 - 00000000 ____D C:\Users\Brate\Downloads\PP_BOT
2016-07-08 17:58 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2016-07-05 06:16 - 2015-03-10 19:44 - 00000000 ____D C:\Users\Brate
2016-07-05 04:55 - 2013-08-22 17:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-07-03 17:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-06-28 13:55 - 2016-06-24 02:04 - 00000000 ____D C:\Users\Brate\AppData\Roaming\TS3Client
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2016-06-21 23:46 - 2016-06-21 23:46 - 0000132 _____ () C:\Users\Brate\AppData\Roaming\Adobe CS6-AIFF-Format - Voreinstellungen
2015-03-12 21:48 - 2016-07-21 05:16 - 0007603 _____ () C:\Users\Brate\AppData\Local\resmon.resmoncfg
2015-03-14 19:39 - 2015-03-14 19:39 - 0000057 _____ () C:\ProgramData\Ament.ini
2014-10-24 23:37 - 2014-10-24 23:37 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Einige Dateien in TEMP:
====================
C:\Users\Brate\AppData\Local\Temp\AcerDocsSetup.exe
C:\Users\Brate\AppData\Local\Temp\AOPSetup.exe
C:\Users\Brate\AppData\Local\Temp\avgnt.exe
C:\Users\Brate\AppData\Local\Temp\cabex.dll
C:\Users\Brate\AppData\Local\Temp\GRRemove.exe
C:\Users\Brate\AppData\Local\Temp\HSS669A.exe
C:\Users\Brate\AppData\Local\Temp\Microsoft.Win32.TaskScheduler.dll
C:\Users\Brate\AppData\Local\Temp\oct39F7.tmp.exe
C:\Users\Brate\AppData\Local\Temp\SpotifyUninstall.exe
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2016-07-19 15:06
==================== Ende von FRST.txt ============================ --- --- ---
Addition.txt
FRST Additions Logfile: Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 25-07-2016
durchgeführt von Brate (2016-07-26 16:55:41)
Gestartet von C:\Users\Brate\Downloads
Windows 8.1 Pro (Update) (X64) (2015-03-10 17:45:09)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-3595532581-57849558-2667381476-500 - Administrator - Disabled)
Brate (S-1-5-21-3595532581-57849558-2667381476-1001 - Administrator - Enabled) => C:\Users\Brate
Gast (S-1-5-21-3595532581-57849558-2667381476-501 - Limited - Disabled)
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Acer Care Center (HKLM\...\{A424844F-CDB3-45E2-BB77-1DDE4A091E76}) (Version: 1.00.3013 - Acer Incorporated)
Acer Explorer Agent (HKLM\...\{4D0F42CF-1693-43D9-BDC8-19141D023EE0}) (Version: 2.00.3000 - Acer Incorporated)
Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8107 - Acer Incorporated)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8105 - Acer Incorporated)
Acer Quick Access (HKLM\...\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}) (Version: 1.01.3016.0 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8108 - Acer Incorporated)
Acer User Experience Improvement Program App Monitor Plugin (HKLM\...\{978724F6-1863-4DD5-9E66-FB77F5AB5613}) (Version: 1.02.3004 - Acer Incorporated)
Acer User Experience Improvement Program Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 1.02.3004 - Acer Incorporated)
Active Directory Authentication Library for SQL Server (Version: 13.0.1601.5 - Microsoft Corporation) Hidden
Active Directory Authentication Library for SQL Server (x86) (x32 Version: 13.0.1601.5 - Microsoft Corporation) Hidden
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.6.0.248 - Adobe Systems Incorporated)
Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
Apple Application Support (32-Bit) (HKLM-x32\...\{26356515-5821-40FA-9C3D-9785052A1062}) (Version: 4.3.1 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{C2651553-6CA3-4822-B2E6-BC4ACA6E0EA2}) (Version: 4.3.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.17.273 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{92a7fd6b-31e5-472f-862e-79214c5032ef}) (Version: 1.1.67.18988 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.1.67.18988 - Avira Operations GmbH & Co. KG) Hidden
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
Counter-Strike: Source (HKLM\...\Steam App 240) (Version: - Valve)
Foxit PhantomPDF Business (HKLM-x32\...\{05594894-9B62-4D66-BC12-4DA14CA22F28}) (Version: 7.3.6.321 - Foxit Software Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.106 - Google Inc.)
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
HP Officejet 7500 E910 - Grundlegende Software für das Gerät (HKLM\...\{6B3982D8-8E88-4A42-B1C4-66B4E9B34CFB}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1168 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3643 - Intel Corporation)
Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{5BC2A343-DED5-40E8-8F64-472FD74D80EA}) (Version: 17.1.1433.02 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden
Intel® PROSet/Wireless Software (HKLM-x32\...\{7991b5ae-96d7-4df2-97fb-a605b7cb638b}) (Version: 17.12.0 - Intel Corporation)
Java 8 Update 92 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418092F0}) (Version: 8.0.920.14 - Oracle Corporation)
LibreOffice 5.0.5.2 (HKLM-x32\...\{43D862C3-739D-4FF6-91C0-25612368CC81}) (Version: 5.0.5.2 - The Document Foundation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 SDK (Deutsch) (HKLM-x32\...\{529EFF09-750D-48B9-A47A-34A3B6248C3F}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.25420 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20513.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{9D573E71-1077-4C7E-B4DB-4E22A5D2B48B}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Transact-SQL ScriptDom (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 T-SQL Language Service (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2016 LocalDB (HKLM\...\{E359515A-92E6-4FA3-A2C9-E1BA02D8DE6E}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft SQL Server 2016 Management Objects (HKLM-x32\...\{0F1C8E2F-199A-4946-B3BF-0906DACFD032}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft SQL Server 2016 Management Objects (x64) (HKLM\...\{20EA85AA-2A1D-4F11-B09F-4BA2BF3C8989}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft SQL Server 2016 T-SQL Language Service (HKLM-x32\...\{8BFDE775-C5B8-46DB-84EF-43FFC8A2E8AD}) (Version: 13.0.14500.10 - Microsoft Corporation)
Microsoft SQL Server 2016 T-SQL ScriptDom (HKLM\...\{D091DE8C-EA0F-49AF-8DE3-BD6C79737C6E}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - enu (14.0.60519.0) (HKLM-x32\...\{4E27B0EF-7BAB-432A-AF3D-3FC8F3F7353F}) (Version: 14.0.60519.0 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2016 (HKLM\...\{96EB5054-C775-4BEF-B7B9-AA96A295EDCD}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2016 (HKLM-x32\...\{84C23ECA-FE4D-494F-9247-3EBAD57E7F0C}) (Version: 13.0.1601.5 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d491dd9d-2eda-4d75-b504-1a201436e7fd}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation)
Microsoft Web Deploy 3.6 (HKLM\...\{94E1227C-08A9-4962-B388-1F05D89AEA75}) (Version: 3.1238.1962 - Microsoft Corporation)
Miranda Fusion 3.2.31.0 (HKLM-x32\...\MirandaFusion) (Version: 3.2.31.0 - Miranda Fusion Team)
Mozilla Firefox 47.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 47.0.1 (x86 de)) (Version: 47.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0.1 - Mozilla)
Mozilla Thunderbird 45.2.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 45.2.0 (x86 de)) (Version: 45.2.0 - Mozilla)
NVIDIA GeForce Experience 2.4.3.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.3.31 - NVIDIA Corporation)
NVIDIA Grafiktreiber 352.86 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 352.86 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
OpenVPN 2.3.10-I002 (HKLM\...\OpenVPN) (Version: 2.3.10-I002 - )
Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM-x32\...\{4860C1E5-CE58-4D32-89DE-37951333B4C9}) (Version: 4.6.01055 - Microsoft Corporation)
Pidgin (HKLM-x32\...\Pidgin) (Version: 2.10.11 - )
pidgin-otr 4.0.1 (HKLM-x32\...\pidgin-otr) (Version: 4.0.1 - Cypherpunks CA)
Prerequisites for SSDT (HKLM-x32\...\{21373064-AD95-48DB-A32E-0D9E08EF7355}) (Version: 12.0.2000.8 - Microsoft Corporation)
Prerequisites for SSDT (HKLM-x32\...\{B7E94916-7AE6-4F7F-A377-7A410A42BA19}) (Version: 13.0.1601.5 - Microsoft Corporation)
Python 3.5.1 (32-bit) (HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\{c39d559b-aa83-4476-ba20-988a35a1199a}) (Version: 3.5.1150.0 - Python Software Foundation)
Python 3.5.1 (64-bit) (HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\{b8440650-9dbe-4b7d-8167-6e0e3dcdf5d0}) (Version: 3.5.1150.0 - Python Software Foundation)
Python 3.5.1 Add to Path (64-bit) (Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Core Interpreter (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Core Interpreter (64-bit) (Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Development Libraries (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Development Libraries (64-bit) (Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Documentation (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Documentation (64-bit) (Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Executables (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Executables (64-bit) (Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Launcher (32-bit) (HKLM-x32\...\{17778F7B-FB5A-4A93-9719-D75BAF673498}) (Version: 3.5.150.0 - Python Software Foundation)
Python 3.5.1 Launcher (32-bit) (HKLM-x32\...\{EC00AEF9-6544-4FEC-8152-C8949CDDCC85}) (Version: 3.5.150.0 - Python Software Foundation)
Python 3.5.1 pip Bootstrap (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 pip Bootstrap (64-bit) (Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Standard Library (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Standard Library (64-bit) (Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Tcl/Tk Support (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Tcl/Tk Support (64-bit) (Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Test Suite (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Test Suite (64-bit) (Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Utility Scripts (32-bit) (x32 Version: 3.5.1150.0 - Python Software Foundation) Hidden
Python 3.5.1 Utility Scripts (64-bit) (Version: 3.5.1150.0 - Python Software Foundation) Hidden
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.39059 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.32.508.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7260 - Realtek Semiconductor Corp.)
Roslyn Language Services - x86 (x32 Version: 14.0.25421 - Microsoft Corporation) Hidden
SHIELD Streaming (Version: 4.1.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.4.3.31 - NVIDIA Corporation) Hidden
Skype™ 7.10 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.10.101 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - )
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation)
VPN Manager 1.8.8.0 (HKLM-x32\...\VPN Manager) (Version: 1.8.8.0 - Perfect-Privacy)
WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-3595532581-57849558-2667381476-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {31691BF6-C31C-478B-9E34-1CCD8B20B06B} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [2014-06-08] (Acer Incorporated)
Task: {47326578-94DF-4802-95D0-9F96B3BA954B} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14 => D:\Programme (x86)\Microsoft Visual Studio 14.0\Common7\IDE\VSIXAutoUpdate.exe
Task: {5023F72D-61BC-4B5D-937B-7EECB3CE867E} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {560B826C-8393-4044-BD39-B8BBFFAFEC7D} - System32\Tasks\VPN Manager => C:\Program Files (x86)\Perfect Privacy VPN Manager\VPNManager.exe [2016-04-18] (Perfect Privacy)
Task: {5657CB4B-278C-4F92-889B-3612FCC56498} - System32\Tasks\OOBE Process\AcerOOBETask => C:\OEM\PRELOAD\Utility\OOBERegData.exe [2014-02-13] (TODO: <Company name>)
Task: {608664B8-653C-4826-BB53-4A63D2FE96E8} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {7052EB2C-DEF5-445C-ABC8-9C922E9F40CD} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2014-06-10] (Acer Incorporate)
Task: {77918EC3-9AAD-4772-B6A5-AFFE79EFA4A8} - System32\Tasks\DolbySelectorTask => C:\Program Files\Dolby Digital Plus\ddp.exe
Task: {8046C73C-F558-48BB-A9D5-CD987E5BE5E4} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [2014-08-29] ()
Task: {95419547-E721-4A46-B61B-A156F73F35FE} - System32\Tasks\DropboxUpdateTaskMachineCore1d0c161fd651656 => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: {A1ADB439-F05A-4CA9-BA16-8E152A9B08C9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-10] (Google Inc.)
Task: {A46641B2-980C-4EA4-BB00-4910CDB76BF2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-10] (Google Inc.)
Task: {AC500A33-A9AA-4EB7-A077-A453D9CE026C} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
Task: {B3CDDEAD-74D6-420D-BE86-BF9D0E0A3E86} - System32\Tasks\Quick Access Quick Launcher => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-06-26] (Acer Incorporate)
Task: {B811241E-154E-4B99-921B-EB459D89DE3D} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [2014-06-12] (Acer Incorporated)
Task: {BA9E95ED-008E-4E0B-A0F1-2D6B18BDE626} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-14] (Adobe Systems Incorporated)
Task: {C7CA580C-16CF-498D-851A-571D0B028C5C} - System32\Tasks\{88A7413A-A391-4798-87A0-CB5052926F5D} => pcalua.exe -a "D:\Riot Games\League of Legends\lol.launcher.exe" -d "D:\Riot Games\League of Legends"
Task: {CFDDE14A-D7F0-4211-8705-7466F3A8972E} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-06-26] (Acer Incorporate)
Task: {DEC4D037-DF46-40C7-9774-84002461ABD5} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [2014-03-12] (TODO: <Company name>)
Task: {E366E104-BEC2-4873-B056-E512CD2C1A7A} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2014-08-29] ()
Task: {F48FB8C2-9E57-43C6-9D7A-F2AF6E34F521} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
Shortcut: C:\Users\Brate\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Topic.lnk -> C:\Program Files\Accessory Store\Topic.bat ()
ShortcutWithArgument: C:\Users\Brate\Desktop\ordner\verknüpfjungen\Booking.com.lnk -> C:\Program Files\Booking.COM\StartURL.exe () -> hxxp://www.booking.com/index.html?aid=379334
ShortcutWithArgument: C:\Users\Brate\Desktop\ordner\verknüpfjungen\Dropbox.lnk -> C:\Program Files\Dropbox\StartURL.exe () -> hxxps://www.dropbox.com/partners/acer2014/download
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2016-04-22 01:07 - 2016-04-22 01:07 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-04-22 01:07 - 2016-04-22 01:07 - 01337144 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-05-21 13:20 - 2015-05-12 05:30 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-04-01 23:18 - 2016-04-01 23:18 - 00426160 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2016-03-07 16:06 - 2016-03-07 16:06 - 00226432 _____ () C:\Program Files (x86)\Perfect Privacy VPN Manager\OpenVPN\liblzo2-2.dll
2016-03-07 16:06 - 2016-03-07 16:06 - 00123000 _____ () C:\Program Files (x86)\Perfect Privacy VPN Manager\OpenVPN\libpkcs11-helper-1.dll
2014-02-19 18:51 - 2014-02-19 18:51 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-05-21 13:12 - 2015-05-08 02:36 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
AlternateDataStreams: C:\ProgramData\Temp:862BDB1A [266]
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-1074364927-1859095889-3112359641-500\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 217.114.218.30 - 82.199.134.174
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Dropbox"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "PDFPrint"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\StartupApproved\Run: => "Miranda Fusion"
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\StartupApproved\Run: => "HP Officejet 7500 E910 (NET)"
HKU\S-1-5-21-3595532581-57849558-2667381476-1001\...\StartupApproved\Run: => "VoipConnect"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [TCP Query User{E79B7136-5648-410E-AFE5-A1A78A2CC9E9}C:\users\brate\appdata\roaming\vip72 socks client\vip72socks.exe] => (Allow) C:\users\brate\appdata\roaming\vip72 socks client\vip72socks.exe
FirewallRules: [UDP Query User{0116FCB0-8EDC-4DF0-8F9C-56DD1BBC150E}C:\users\brate\appdata\roaming\vip72 socks client\vip72socks.exe] => (Allow) C:\users\brate\appdata\roaming\vip72 socks client\vip72socks.exe
FirewallRules: [TCP Query User{9448BF65-E464-4EA8-8C94-D127EA35A037}C:\program files (x86)\acer\abmusic\dmcdaemon.exe] => (Block) C:\program files (x86)\acer\abmusic\dmcdaemon.exe
FirewallRules: [UDP Query User{C2B5F667-1811-4320-9271-CA84A3400469}C:\program files (x86)\acer\abmusic\dmcdaemon.exe] => (Block) C:\program files (x86)\acer\abmusic\dmcdaemon.exe
FirewallRules: [{FEAED78F-BA25-4494-A8C3-8CF814DBF663}] => (Allow) C:\Program Files (x86)\Perfect Privacy VPN Manager\OpenVPN\openvpn.exe
FirewallRules: [{CC921D35-063D-4E51-8654-19DBE00DEBB5}] => (Allow) C:\Program Files (x86)\Perfect Privacy VPN Manager\VPNManager.exe
FirewallRules: [{008CB01B-3EB0-4B8C-A202-9CC3C7C9650B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{4D4A258A-F9CA-4679-BEE3-A023AB64A609}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Wiederherstellungspunkte =========================
13-07-2016 17:26:24 Geplanter Prüfpunkt
19-07-2016 15:27:43 Free Antivirus - 19.07.2016 15:27
26-07-2016 05:13:04 Microsoft Visual Studio Community 2015 with Updates
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (07/26/2016 08:35:40 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Error: (07/26/2016 08:35:01 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Error: (07/26/2016 08:35:01 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Error: (07/26/2016 05:49:57 AM) (Source: HlpCtntMgr) (EventID: 1003) (User: )
Description: Help Content Manager exited with error: NoBooksToUninstall
Error: (07/26/2016 05:13:23 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetVolumePathName is fail on the path C:\Users\Administrator\Local Settings\Application Data\Office\16.0\OfficeFileCache, winerror 0x00000002." ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.
Vorgang:
OnPostSnapshot-Ereignis
PostSnapshot-Ereignis
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Ausführungskontext: Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {fdf6e8b8-0143-4ddc-beb1-69cccad60ea5}
Error: (07/26/2016 05:13:23 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetVolumePathName is fail on the path C:\Users\Administrator\Local Settings\Application Data\Office\16.0\OfficeFileCache\LocalCacheFileEditManager, winerror 0x00000002." ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.
Vorgang:
OnPostSnapshot-Ereignis
PostSnapshot-Ereignis
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Ausführungskontext: Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {fdf6e8b8-0143-4ddc-beb1-69cccad60ea5}
Error: (07/26/2016 05:13:23 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetVolumePathName is fail on the path C:\Users\Administrator\Local Settings\Application Data\Office\16.0\OfficeFileCache\LocalCacheFileEditManager, winerror 0x00000002." ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.
Vorgang:
OnPostSnapshot-Ereignis
PostSnapshot-Ereignis
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Ausführungskontext: Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {fdf6e8b8-0143-4ddc-beb1-69cccad60ea5}
Error: (07/26/2016 05:13:23 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetVolumePathName is fail on the path C:\Users\Administrator\Local Settings\Application Data\Office\16.0\OfficeFileCache, winerror 0x00000002." ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.
Vorgang:
OnPostSnapshot-Ereignis
PostSnapshot-Ereignis
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Ausführungskontext: Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {fdf6e8b8-0143-4ddc-beb1-69cccad60ea5}
Error: (07/26/2016 05:13:23 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetVolumePathName is fail on the path C:\Users\Administrator\Local Settings\Application Data\Office\16.0\OfficeFileCache, winerror 0x00000002." ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.
Vorgang:
OnPostSnapshot-Ereignis
PostSnapshot-Ereignis
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Ausführungskontext: Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {fdf6e8b8-0143-4ddc-beb1-69cccad60ea5}
Error: (07/26/2016 05:13:22 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetVolumePathName is fail on the path C:\Users\Administrator\Local Settings\Application Data\Office\16.0\OfficeFileCache, winerror 0x00000002." ist ein unerwarteter Fehler aufgetreten. hr = 0x80070002, Das System kann die angegebene Datei nicht finden.
.
Vorgang:
OnPostSnapshot-Ereignis
PostSnapshot-Ereignis
Kontext:
Ausführungskontext: Shadow Copy Optimization Writer
Ausführungskontext: Writer
Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Generatorname: Shadow Copy Optimization Writer
Generatorinstanz-ID: {fdf6e8b8-0143-4ddc-beb1-69cccad60ea5}
Systemfehler:
=============
Error: (07/26/2016 06:48:15 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070003 fehlgeschlagen: Microsoft.ZuneMusic
Error: (07/26/2016 06:36:57 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "AdobeUpdateService" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2 = Das System kann die angegebene Datei nicht finden.
Error: (07/26/2016 06:36:45 AM) (Source: volmgr) (EventID: 46) (User: )
Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen.
Error: (07/26/2016 04:43:36 AM) (Source: DCOM) (EventID: 10010) (User: Salman)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}
Error: (07/26/2016 04:43:06 AM) (Source: DCOM) (EventID: 10010) (User: Salman)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Error: (07/26/2016 04:24:06 AM) (Source: DCOM) (EventID: 10010) (User: Salman)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Error: (07/26/2016 04:23:36 AM) (Source: DCOM) (EventID: 10010) (User: Salman)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}
Error: (07/26/2016 04:01:12 AM) (Source: DCOM) (EventID: 10010) (User: Salman)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}
Error: (07/26/2016 04:00:42 AM) (Source: DCOM) (EventID: 10010) (User: Salman)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Error: (07/26/2016 03:12:27 AM) (Source: DCOM) (EventID: 10010) (User: Salman)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
CodeIntegrity:
===================================
Date: 2016-07-18 03:21:11.556
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-05-13 08:09:13.947
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
Date: 2015-11-12 06:08:01.809
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i7-4710HQ CPU @ 2.50GHz
Prozentuale Nutzung des RAM: 26%
Installierter physikalischer RAM: 8119.33 MB
Verfügbarer physikalischer RAM: 5929.72 MB
Summe virtueller Speicher: 8119.33 MB
Verfügbarer virtueller Speicher: 5846.22 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:118.9 GB) (Free:53.95 GB) NTFS
Drive d: () (Fixed) (Total:931.51 GB) (Free:886.27 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 70738BBA)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=118.9 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: A28C3C08)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
==================== Ende von Addition.txt ============================ --- --- --- |