FRST Teil 2 Code:
C:\WINDOWS\SysWOW64\AdvancedInstallers
2016-09-14 14:43 - 2015-10-30 08:31 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-09-14 14:43 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-09-14 14:43 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-09-14 13:47 - 2016-01-18 18:52 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-09-14 13:47 - 2015-10-30 20:47 - 00000000 ____D C:\WINDOWS\ShellNew
2016-09-14 13:45 - 2016-01-18 18:52 - 144199024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-09-13 19:54 - 2015-10-30 09:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2016-09-13 19:54 - 2015-10-30 09:19 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2016-09-13 19:54 - 2015-10-30 09:18 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2016-09-10 15:35 - 2016-01-21 17:01 - 00000000 ____D C:\Users\Dinc\AppData\Roaming\TS3Client
2016-09-07 08:04 - 2016-03-01 14:03 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-09-07 03:00 - 2015-10-30 09:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-09-07 03:00 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-09-05 14:37 - 2016-06-05 11:55 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-09-05 14:36 - 2016-08-17 16:34 - 00000000 ____D C:\ProgramData\AMD
2016-09-05 14:36 - 2016-03-01 14:02 - 00000000 ____D C:\Program Files\AMD
2016-09-01 17:15 - 2016-08-07 14:49 - 00000000 ____D C:\Users\Dinc\Documents\Overwatch
2016-08-30 20:30 - 2016-02-08 19:48 - 00000000 ____D C:\Users\Dinc\AppData\Local\Overwolf
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2016-05-09 21:52 - 2016-05-09 22:15 - 0000132 _____ () C:\Users\Dinc\AppData\Roaming\Adobe CS6-PNG-Format - Voreinstellungen
2016-02-28 22:49 - 2016-03-14 00:18 - 0000600 _____ () C:\Users\Dinc\AppData\Local\PUTTY.RND
2016-01-21 14:38 - 2016-01-21 14:38 - 0000057 _____ () C:\ProgramData\Ament.ini
2016-05-31 20:10 - 2016-05-31 20:10 - 0000016 _____ () C:\ProgramData\mntemp
2016-05-31 21:04 - 2016-05-31 21:04 - 0005033 _____ () C:\ProgramData\mzemgkrx.fuc
2016-05-31 20:10 - 2016-05-31 20:10 - 0004131 _____ () C:\ProgramData\rxsmznjf.zcp
2016-05-31 20:53 - 2016-05-31 20:53 - 0005050 _____ () C:\ProgramData\wmzddnmb.cix
Einige Dateien in TEMP:
====================
C:\Users\Dinc\AppData\Local\Temp\131063161345952962.exe
C:\Users\Dinc\AppData\Local\Temp\13106316135743430234.exe
C:\Users\Dinc\AppData\Local\Temp\131063162196509668.exe
C:\Users\Dinc\AppData\Local\Temp\13106316220312788380.exe
C:\Users\Dinc\AppData\Local\Temp\bassmod.dll
C:\Users\Dinc\AppData\Local\Temp\HssInstaller.exe
C:\Users\Dinc\AppData\Local\Temp\jansi-64-1263554340549494749.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-1272518510704259555.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-1543654167105457237.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-1601872869631860624.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-1721116738975767427.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-1842570905992785466.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-1967623555088148327.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-2045748078393291912.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-2109870303131446216.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-2120946973977893379.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-281735563621094443.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-2940750577670556803.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-3085800028897163377.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-3137057466171837592.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-3268016366032514705.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-3722741965151369655.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-3867945709622162785.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-3926565478607467496.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-413238284092688660.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-4135693922306376757.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-4650797276864063292.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-4943471245827751036.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-4953873164849757428.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-5130657899238917001.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-5283162875248298685.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-5286683470951392507.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-5731218311504721648.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-6132473653196662613.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-6134906832756705622.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-6348545317557397992.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-6426028655008529834.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-6464860749553656289.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-6619225475166495162.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-666398928281701299.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-6920933646583807211.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-7109994395159736147.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-7163575786102206284.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-7610167567889750237.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-7658831924302990827.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-7810823818327568621.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-7820305182734942411.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-8148175450620045581.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-8291221718475351208.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-8336930735985401356.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-8631870280347953128.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-9134829607640382761.dll
C:\Users\Dinc\AppData\Local\Temp\jansi-64-9179024087669354956.dll
C:\Users\Dinc\AppData\Local\Temp\playstv_patch.exe
C:\Users\Dinc\AppData\Local\Temp\proxy_vole1733798044912677202.dll
C:\Users\Dinc\AppData\Local\Temp\proxy_vole2964871845245195352.dll
C:\Users\Dinc\AppData\Local\Temp\proxy_vole8118450820959264740.dll
C:\Users\Dinc\AppData\Local\Temp\ubiD3F7.tmp.exe
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2016-09-21 17:45
==================== Ende von FRST.txt ============================ Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 24-09-2016 02
durchgeführt von Dinc (25-09-2016 12:41:04)
Gestartet von C:\Users\Dinc\Desktop
Windows 10 Pro Version 1511 (X64) (2016-03-01 12:06:29)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
A. Dinc (S-1-5-21-3026207070-1183349167-1555027123-1003 - Administrator - Enabled)
Administrator (S-1-5-21-3026207070-1183349167-1555027123-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3026207070-1183349167-1555027123-503 - Limited - Disabled)
Dinc (S-1-5-21-3026207070-1183349167-1555027123-1001 - Administrator - Enabled) => C:\Users\Dinc
Gast (S-1-5-21-3026207070-1183349167-1555027123-501 - Limited - Disabled)
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 20.0.0.260 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
Android ADB Fastboot (HKLM-x32\...\{200AFB67-D980-4B32-B086-3AEEF3428926}) (Version: 1.3 - ajua Custom Installers)
Assassin's Creed Revelations (HKLM-x32\...\{33A22B2D-55BA-4508-B767-BF2E9C21A73F}) (Version: 1.00 - Ubisoft)
AutoHotkey 1.1.24.00 (HKLM\...\AutoHotkey) (Version: 1.1.24.00 - Lexikos)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.1.2253 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bus Simulator 16 (HKLM\...\YnVzc2ltdWxhdG9yMTY_is1) (Version: 1 - )
Castle Crashers (HKLM-x32\...\Castle Crashers_is1) (Version: - )
Catalyst Control Center Next Localization BR (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization BR (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization BR (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0321.1015.16463 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0718.1747.30147 - Advanced Micro Devices, Inc.) Hidden
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve)
CyberGhost 6 (HKLM\...\CyberGhost 6_is1) (Version: - CyberGhost S.R.L.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Day of Defeat: Source (HKLM\...\Steam App 300) (Version: - Valve)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
Dont Starve Together (HKLM-x32\...\Dont Starve Together_is1) (Version: - )
FIFA 16 (HKLM-x32\...\{28FA2805-7992-4A28-844B-040C57204718}) (Version: 1.44.20513.9 - Electronic Arts)
FIFA 17 (HKLM-x32\...\{8C0DD062-B659-409C-9AB7-8EBD1D64D2EB}) (Version: 1.0.45.33307 - Electronic Arts)
FIFA 17 DEMO (HKLM-x32\...\{39C00B2C-EA3C-4A6B-AECF-DADA0F09C2AE}) (Version: 1.0.45.26330 - Electronic Arts)
FileZilla Client 3.15.0.2 (HKLM-x32\...\FileZilla Client) (Version: 3.15.0.2 - Tim Kosse)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
Gameforge Live 2.0.12 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.12 - Gameforge)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.116 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Hearts of Iron III (HKLM-x32\...\{D0106CC2-E34B-4FA3-B6B6-91F0ACEA2CC3}) (Version: - )
Hitman: Absolution (HKLM\...\Steam App 203140) (Version: - IO Interactive)
HP Deskjet 2510 series - Grundlegende Software für das Gerät (HKLM\...\{288614B1-F070-4B47-A1F5-4790BD8A3176}) (Version: 28.0.1313.0 - Hewlett-Packard Co.)
HP Deskjet 2510 series Setup Guide (HKLM-x32\...\{216C7F38-4BBC-4E9A-8392-C9FA21B54386}) (Version: 27.0.0 - Hewlett Packard)
Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
L.A. Noire The Complete Edition Version 1.3.2617 (HKLM-x32\...\{19636B1A-DA19-41FC-97D8-86065695E227}_is1) (Version: 1.3.2617 - Rockstar Games)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Nostale(DE) (HKLM-x32\...\NosTale(DE)_is1) (Version: - Gameforge 4D GmbH)
Nox APP Player (HKLM-x32\...\Nox) (Version: 3.7.1.0 - Duodian Technology Co. Ltd.)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
OpenOffice 4.1.2 (HKLM-x32\...\{F5CAB1AF-7B1A-4CEC-B829-A3F699473AE1}) (Version: 4.12.9782 - Apache Software Foundation)
Origin (HKLM-x32\...\Origin) (Version: 10.0.2.33129 - Electronic Arts, Inc.)
Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.98.16.0 - Overwolf Ltd.)
Papers, Please (HKLM-x32\...\GOGPACKPAPERSPLEASE_is1) (Version: 2.2.0.8 - GOG.com)
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
Pixel Heroes: Byte & Magic (HKLM-x32\...\UGl4ZWxIZXJvZXNCeXRlTWFnaWM=_is1) (Version: 1 - )
PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.10.0-r112342-release - Plays.tv, LLC)
Punch Club (HKLM\...\UHVuY2hDbHVi_is1) (Version: 1 - )
Raptr (HKLM-x32\...\Raptr) (Version: 5.2.6-r115593-release - Raptr, Inc)
Rayman Legends (HKLM-x32\...\Rayman Legends_is1) (Version: - )
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.9.6 - Rockstar Games)
Skype Web Plugin (HKLM-x32\...\{7E4C8063-6644-4580-B27F-6B70B1A51F0E}) (Version: 7.17.0.44 - Skype Technologies S.A.)
Skype™ 7.28 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.28.101 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Sublime Text 2.0.2 (HKLM\...\Sublime Text 2_is1) (Version: - )
TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - )
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH)
TI Connect™ (HKLM-x32\...\{D06BA64C-4447-49B4-B99D-E85BEA9E1035}) (Version: 4.0.0.218 - Texas Instruments Inc.)
Tropico 5 1.9 (HKLM-x32\...\Tropico 5 1.9) (Version: 1.9 - Black Poseidon)
Tropico 5 Complete Edition Update 2 1.9 (HKLM-x32\...\Tropico 5 Complete Edition Update 2 1.9) (Version: 1.9 - Black Poseidon)
Tropico 5 Complete Edition Update 3 10 (HKLM-x32\...\Tropico 5 Complete Edition Update 3 10) (Version: 10 - Black Poseidon)
Tropico 5 Espionage DLC 1.0 (HKLM-x32\...\Tropico 5 Espionage DLC 1.0) (Version: 1.0 - Black Poseidon)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Uplay (HKLM-x32\...\Uplay) (Version: 4.9 - Ubisoft)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.5.0.0 - Elaborate Bytes)
Vulkan Run Time Libraries 1.0.17.0 (HKLM\...\VulkanRT1.0.17.0) (Version: 1.0.17.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1) (Version: 1.0.3.1 - LunarG, Inc.)
Windows Driver Package - BigNox Corporation (VBoxUSB) USB (09/16/2015 4.3.12) (HKLM\...\76B144D15273552931249392EDB13C0BBD52C84E) (Version: 09/16/2015 4.3.12 - BigNox Corporation)
Windows Driver Package - BigNox Corporation VBoxUSBMon System (09/16/2015 4.3.12) (HKLM\...\39F54A37125643D2E1E90FA7D81F36ACC9441510) (Version: 09/16/2015 4.3.12 - BigNox Corporation)
Windows Driver Package - BigNox Corporation XQHDrv System (09/16/2015 4.3.12) (HKLM\...\0147813640F7AF69F569581EE672B6BE1E71798E) (Version: 09/16/2015 4.3.12 - BigNox Corporation)
Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 1.0.0.0) (HKLM\...\EC3E466026556D3EB760B01C4772277614354E11) (Version: 06/11/2009 1.0.0.0 - Texas Instruments Inc.)
Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 1.0.0.1) (HKLM\...\7511B29C86C398B4D11A0B0E4176CAD68D1B7057) (Version: 09/02/2009 1.0.0.1 - Texas Instruments Inc.)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.30 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH)
X-Mouse Button Control 2.12.1 (HKLM-x32\...\X-Mouse Button Control) (Version: 2.12.1 - Highresolution Enterprises)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-3026207070-1183349167-1555027123-1001_Classes\CLSID\{0BFBE3EE-00BF-49F9-BC19-26B42AF261C1}\InprocServer32 -> C:\Users\Dinc\AppData\Local\SkypePlugin\7.17.0.44\GatewayActiveX-x64.dll (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-3026207070-1183349167-1555027123-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Dinc\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3026207070-1183349167-1555027123-1001_Classes\CLSID\{AC4E242D-28FB-40A2-9C2E-150FF1EE5B49}\localserver32 -> C:\Users\Dinc\AppData\Local\SkypePlugin\7.17.0.44\GatewayVersion-x64.exe (Skype Technologies S.A.)
CustomCLSID: HKU\S-1-5-21-3026207070-1183349167-1555027123-1001_Classes\CLSID\{CBF9CD8C-2714-4F36-B76A-43E6C7547BC2}\localserver32 -> C:\Users\Dinc\AppData\Local\SkypePlugin\7.17.0.44\EdgeCalling.exe (Skype Technologies S.A.)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {40878FDC-865B-4311-9168-15F50124020C} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-09-14] (Microsoft Corporation)
Task: {47238653-646D-4F40-BA91-378D8A8F6D78} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-09-25] (Google Inc.)
Task: {6CEE8179-2E13-4B19-A3B1-D591E3C39C56} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-03-11] (AVAST Software)
Task: {84BD7684-F13E-466C-86CB-D37CD60E7BAB} - System32\Tasks\Bsiwardgogition Provider => C:\Program Files (x86)\Jozerentnibas\remiy.exe [2016-09-25] (Glarysoft Ltd)
Task: {9E696A9F-FBB2-4EF7-96E7-3E8D8D907C8C} - System32\Tasks\avast! Windows 10 Start Menu helper => c:\program files\avast software\avast\asww10mon.exe
Task: {B12367DB-B68E-4ADE-9E37-2B5781EBA7E5} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-03-21] (Advanced Micro Devices, Inc.)
Task: {C45DE53D-64F4-4737-99FE-151CC84D114C} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2016-09-15] (Overwolf LTD)
Task: {DB386331-26F6-4931-AE97-CF14021DB0C0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-09-25] (Google Inc.)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
ShortcutWithArgument: C:\Users\Dinc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --disable-quic
ShortcutWithArgument: C:\Users\Dinc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --disable-quic
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --disable-quic
ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --disable-quic
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-09-22 17:51 - 2016-09-22 17:51 - 05300224 _____ () C:\Program Files\c242a29cd6cfa12916141b14765c8b93\86f28014a5925d40787edec99cd7cbd8.exe
2016-09-13 20:11 - 2016-09-07 07:39 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-13 20:11 - 2016-09-07 07:39 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2014-05-01 16:13 - 2014-05-01 16:13 - 00470016 _____ () C:\Users\Dinc\AppData\Local\MEGAsync\ShellExtX64.dll
2016-03-01 13:59 - 2016-03-01 13:59 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-07-13 13:27 - 2016-07-01 05:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-09-13 20:09 - 2016-09-07 06:15 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-09-13 20:09 - 2016-09-07 06:10 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-09-13 20:09 - 2016-09-07 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-09-13 20:09 - 2016-09-07 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-06-25 17:34 - 2015-06-25 17:34 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2015-06-25 17:37 - 2015-06-25 17:37 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-06-25 17:35 - 2015-06-25 17:35 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2015-06-25 17:38 - 2015-06-25 17:38 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-06-25 16:53 - 2015-06-25 16:53 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll
2015-06-25 16:51 - 2015-06-25 16:51 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2016-09-24 15:25 - 2016-09-24 15:25 - 00015872 _____ () D:\Origin\QtWebEngineProcess.exe
2016-04-19 11:53 - 2016-04-19 11:53 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-09-25 12:04 - 2016-09-14 04:52 - 02280264 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.116\libglesv2.dll
2016-09-25 12:04 - 2016-09-14 04:52 - 00107848 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.116\libegl.dll
2016-09-25 12:11 - 2016-09-12 17:48 - 30996160 _____ () C:\Users\Dinc\AppData\Local\Google\Chrome\User Data\PepperFlash\23.0.0.166\pepflashplayer.dll
2016-03-11 17:01 - 2016-03-11 17:01 - 00113496 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2016-03-11 17:01 - 2016-03-11 17:01 - 00133768 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-09-25 11:56 - 2016-09-25 11:56 - 03118360 _____ () C:\Program Files\AVAST Software\Avast\defs\16092500\algo.dll
2016-04-14 12:27 - 2016-04-14 12:27 - 00509344 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00028160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\servicemanager.pyd
2015-11-24 22:46 - 2015-11-24 22:46 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes26.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00041472 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32service.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_hashlib.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00017920 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32event.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00019968 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32evtlog.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_socket.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ssl.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ctypes.pyd
2015-11-24 22:46 - 2015-11-24 22:46 - 00354304 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom26.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 01980928 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd
2015-12-07 22:57 - 2015-12-07 22:57 - 00077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 01862144 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 00516608 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 04060160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\select.pyd
2016-09-24 15:25 - 2016-09-24 15:25 - 02493440 _____ () D:\Origin\libGLESv2.dll
2016-01-19 17:41 - 2016-01-19 17:41 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2010-11-23 00:56 - 2010-11-23 00:56 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_ctypes.pyd
2010-11-23 00:56 - 2010-11-23 00:56 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_socket.pyd
2010-11-23 00:56 - 2010-11-23 00:56 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_ssl.pyd
2014-05-14 01:26 - 2014-05-14 01:26 - 05812736 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtGui.pyd
2014-05-14 01:26 - 2014-05-14 01:26 - 00067584 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\sip.pyd
2014-05-14 01:26 - 2014-05-14 01:26 - 01662464 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtCore.pyd
2014-05-14 01:26 - 2014-05-14 01:26 - 00494592 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtNetwork.pyd
2010-11-23 00:57 - 2010-11-23 00:57 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32api.pyd
2010-11-23 00:56 - 2010-11-23 00:56 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\pywintypes26.dll
2010-11-23 00:56 - 2010-11-23 00:56 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\select.pyd
2010-11-23 00:56 - 2010-11-23 00:56 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_hashlib.pyd
2010-11-23 00:57 - 2010-11-23 00:57 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32process.pyd
2010-11-23 00:57 - 2010-11-23 00:57 - 00111104 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32file.pyd
2010-11-23 00:56 - 2010-11-23 00:56 - 00044544 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\_sqlite3.pyd
2011-02-15 20:17 - 2011-02-15 20:17 - 00417501 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\sqlite3.dll
2010-11-23 00:57 - 2010-11-23 00:57 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\win32gui.pyd
2014-05-14 01:26 - 2014-05-14 01:26 - 00313856 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\PyQt4.QtWebKit.pyd
2010-11-23 00:56 - 2010-11-23 00:56 - 00127488 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\pyexpat.pyd
2010-11-23 00:56 - 2010-11-23 00:56 - 00009216 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\winsound.pyd
2015-10-21 22:29 - 2015-10-21 22:29 - 00113171 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libvlc.dll
2015-10-21 22:29 - 2015-10-21 22:29 - 02396691 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libvlccore.dll
2010-11-23 00:56 - 2010-11-23 00:56 - 00583680 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\unicodedata.pyd
2010-11-23 00:57 - 2010-11-23 00:57 - 00141312 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\gobject._gobject.pyd
2016-04-19 19:08 - 2016-04-19 19:08 - 02717595 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\heliotrope._purple.pyd
2011-02-15 20:17 - 2011-02-15 20:17 - 01213633 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libxml2-2.dll
2010-11-23 01:06 - 2010-11-23 01:06 - 00055808 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\zlib1.dll
2013-05-10 01:52 - 2013-05-10 01:52 - 00495680 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libaim.dll
2013-05-10 01:52 - 2013-05-10 01:52 - 01183699 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\liboscar.dll
2013-05-10 01:52 - 2013-05-10 01:52 - 00483306 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libicq.dll
2013-05-03 20:57 - 2013-05-03 20:57 - 00655356 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libirc.dll
2013-05-03 20:56 - 2013-05-03 20:56 - 01306387 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libmsn.dll
2013-05-03 20:56 - 2013-05-03 20:56 - 00565461 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libxmpp.dll
2013-05-03 20:57 - 2013-05-03 20:57 - 01640221 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libjabber.dll
2013-05-03 20:56 - 2013-05-03 20:56 - 00506276 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libyahoo.dll
2013-05-03 20:57 - 2013-05-03 20:57 - 01053730 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\libymsg.dll
2013-05-03 20:57 - 2013-05-03 20:57 - 00497782 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\libyahoojp.dll
2013-05-03 20:57 - 2013-05-03 20:57 - 00603326 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\ssl-nss.dll
2013-05-03 20:57 - 2013-05-03 20:57 - 00474199 _____ () C:\Program Files (x86)\Raptr Inc\Raptr\plugins\ssl.dll
2016-09-24 15:25 - 2016-09-24 15:25 - 00012288 _____ () D:\Origin\libEGL.DLL
2016-06-16 19:27 - 2016-06-16 19:27 - 00266240 _____ () D:\Origin\imageformats\qmng.dll
2016-04-19 11:53 - 2016-04-19 11:53 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-04-19 11:53 - 2016-04-19 11:53 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-08-07 14:26 - 2016-08-18 14:22 - 00174448 _____ () C:\Program Files\CyberGhost 6\Data\OpenVPN\liblzo2-2.dll
2016-08-07 14:26 - 2016-08-18 14:22 - 00112040 _____ () C:\Program Files\CyberGhost 6\Data\OpenVPN\libpkcs11-helper-1.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ==========================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2016-03-01 17:47 - 2016-05-09 21:16 - 00001231 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 practivate.adobe.com
127.0.0.1 ereg.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 wip3.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 adobe-dns.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
127.0.0.1 adobe-dns-3.adobe.com
127.0.0.1 ereg.wip3.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 adobeereg.com
127.0.0.1 adobe.activate.com
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-3026207070-1183349167-1555027123-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
DNS Servers: 194.187.251.67 - 185.93.180.131
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "XMouseButtonControl"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager"
HKLM\...\StartupApproved\Run32: => "PlaysTV"
HKLM\...\StartupApproved\Run32: => "SwitchBoard"
HKLM\...\StartupApproved\Run32: => "VirtualCloneDrive"
HKLM\...\StartupApproved\Run32: => "NSWatchDog"
HKLM\...\StartupApproved\Run32: => "NielsenOnline"
HKU\S-1-5-21-3026207070-1183349167-1555027123-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3026207070-1183349167-1555027123-1001\...\StartupApproved\Run: => "CyberGhost"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [UDP Query User{B9A4E2AC-FEBA-4790-A2AF-DFC96DCD6435}D:\program files (x86)\origin games\fifa 16\fifa16.exe] => (Allow) D:\program files (x86)\origin games\fifa 16\fifa16.exe
FirewallRules: [TCP Query User{8BD525D2-8BFD-44DE-B3D7-F27D8C01EF23}D:\program files (x86)\origin games\fifa 16\fifa16.exe] => (Allow) D:\program files (x86)\origin games\fifa 16\fifa16.exe
FirewallRules: [UDP Query User{F0188D80-7038-484B-85B9-CDFCA4381988}C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [TCP Query User{0F67E018-302C-466E-927B-FF0517B63E51}C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [{446D9744-2148-4A03-A513-9A7B6C521975}] => (Allow) C:\Program Files\HP\HP Deskjet 2510 series\Bin\USBSetup.exe
FirewallRules: [UDP Query User{009DAC44-017D-4263-ACFC-8B9C72FF00BD}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{5C795F82-A83C-47CC-BD99-3A4636777FBA}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{94467D62-FCA7-491F-954A-5CA1040734CC}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{26604F65-A079-4F74-A3AE-73242BA30206}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{0CE6F55B-D14F-4DBF-A322-95FCE92A100C}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{35ED54C4-8D69-4340-B3FF-17B1CBD78AAD}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{2174FCC8-3E46-4854-9919-28A411C9B94C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{87FD7DEE-2AE6-4278-97D4-C118D87F1F03}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{E9314747-FC80-48FB-B234-8B5EFFED857E}] => (Allow) D:\Steam\Steam.exe
FirewallRules: [{F312E23D-264C-4BBE-9983-8AC134D020C9}] => (Allow) D:\Steam\Steam.exe
FirewallRules: [{C60B34E6-6BD1-4151-A459-6432FBE12402}] => (Allow) D:\Steam\bin\steamwebhelper.exe
FirewallRules: [{95E14216-A64B-454B-BF06-197A9618F43D}] => (Allow) D:\Steam\bin\steamwebhelper.exe
FirewallRules: [{52F859C7-5529-4C1F-A42E-3ABAB8F74712}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{1A2FA310-4D14-48BD-9C79-3E5EB534E382}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{5B70AD39-6C9D-45E7-A56A-E2A4E991CD6F}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Source\hl2.exe
FirewallRules: [{9E6278CF-6CCE-42CA-AAB2-EFF69A6CCD97}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Source\hl2.exe
FirewallRules: [{B1D8FA7B-F4B1-49D2-ABC0-429E4FCB6AA0}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{1DEB3F5E-F064-48EC-A398-3CE5A803E6C1}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{F85B6866-E3F1-4280-B713-73F2C4AF5765}] => (Allow) D:\Steam\steamapps\common\Day of Defeat Source\hl2.exe
FirewallRules: [{FAC601F0-1902-4EE1-969A-C2ADFA531F9D}] => (Allow) D:\Steam\steamapps\common\Day of Defeat Source\hl2.exe
FirewallRules: [TCP Query User{EA6FFF86-318E-4147-86F1-5634DE3FFACB}C:\users\dinc\desktop\spiele\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) C:\users\dinc\desktop\spiele\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{AEC4AE0E-43D4-4B6C-B6F3-2B307AE59BD4}C:\users\dinc\desktop\spiele\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) C:\users\dinc\desktop\spiele\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{9CF3FE88-5971-433F-B188-C8D3E175F4F6}C:\users\dinc\appdata\local\skypeplugin\7.17.0.44\pluginhost.exe] => (Allow) C:\users\dinc\appdata\local\skypeplugin\7.17.0.44\pluginhost.exe
FirewallRules: [UDP Query User{ADC7A612-2D1F-4E7C-AE39-3D6D0B1EF84F}C:\users\dinc\appdata\local\skypeplugin\7.17.0.44\pluginhost.exe] => (Allow) C:\users\dinc\appdata\local\skypeplugin\7.17.0.44\pluginhost.exe
FirewallRules: [{89E3F02C-52E7-4B00-A9F0-BBAE9AC292E1}] => (Allow) D:\Jo\Phone\Skype.exe
FirewallRules: [{9B58AE1D-B534-4D48-B0C4-C6819FBE7388}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{05430F96-1744-4AB4-B000-81367A38C78A}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{CF506AF1-6C06-4330-A0D0-0D994A177743}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{8D76F79C-CB76-41DB-9C3B-A4AF29277C9D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{4B2CB0D9-E53C-4288-8F5E-DD3B6EA3E94B}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{817B05D6-D42B-4E5C-BC19-73117A990B4E}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{25A52F73-4C97-4C28-A414-5CA703C6ADCA}] => (Allow) D:\Spiele\ACR\ACRSP.exe
FirewallRules: [{D81E872A-2825-49D3-919D-A44E0C510090}] => (Allow) D:\Spiele\ACR\ACRSP.exe
FirewallRules: [{1DA7A5D5-2C94-4369-8B76-8BE3B345E3CA}] => (Allow) D:\Spiele\ACR\ACRMP.exe
FirewallRules: [{29167C74-EAEC-419B-96E6-5D18924F1362}] => (Allow) D:\Spiele\ACR\ACRMP.exe
FirewallRules: [{B8993DBF-E1A1-4250-9056-665177017048}] => (Allow) D:\Spiele\ACR\AssassinsCreedRevelations.exe
FirewallRules: [{182278F1-C597-412A-8722-126D67540F54}] => (Allow) D:\Spiele\ACR\AssassinsCreedRevelations.exe
FirewallRules: [{D05D7469-D5CE-4009-A640-C75EE2292B13}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{CC6FD0C9-2DC7-4311-874A-B0B88D7E3F01}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{BA3374B8-8790-436F-BD6A-51BA3BC8E3EC}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{ED0C1AB9-7EAD-423B-B280-BAE305C33725}] => (Allow) LPort=2869
FirewallRules: [{F2B7C6FE-F63A-4626-9CC1-DB6B81C2ED78}] => (Allow) LPort=1900
FirewallRules: [{7AB817EC-0874-46EA-8429-E17C237CECF0}] => (Allow) D:\Steam\steamapps\common\Hitman Absolution\HMA.exe
FirewallRules: [{8BD90A77-FE28-4DBF-9EEE-47B6BA00FCF4}] => (Allow) D:\Steam\steamapps\common\Hitman Absolution\HMA.exe
FirewallRules: [{2E6F57C4-5B17-47E8-B553-879752521096}] => (Allow) C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenOnline.exe
FirewallRules: [{95A91BA5-4AE8-4949-8AF7-40E1C6A3B55E}] => (Allow) C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenOnline.exe
FirewallRules: [{B2339978-0E85-4485-A73C-03C27AB7E87F}] => (Allow) D:\Games\Dont Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{B71941EF-46FE-4CFD-9BEB-D70B7C20CFD3}] => (Allow) D:\Games\Dont Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{B4FA36F2-FD74-4310-919D-E3AFA2990C3D}] => (Allow) D:\Games\Dont Starve Together\bin\dontstarve_dedicated_server_nullrenderer.exe
FirewallRules: [{9BE6E367-C96F-44D3-B54B-F1547621173F}] => (Allow) D:\Games\Dont Starve Together\bin\dontstarve_dedicated_server_nullrenderer.exe
FirewallRules: [{4BAA9AB3-8D21-434C-B730-A13F44013B0A}] => (Allow) D:\GameforgeLive\gfl_client.exe
FirewallRules: [{EE0717CE-FE51-488B-BD83-F8E1373FEAAD}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 16\fifasetup\fifaconfig.exe
FirewallRules: [{1D046AA2-84E7-432B-9C87-702981643CE5}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 16\fifasetup\fifaconfig.exe
FirewallRules: [TCP Query User{4A8D940F-FC62-48D7-9DE2-DA3BF975AEF4}D:\games\battle.net\overwatch\overwatch.exe] => (Allow) D:\games\battle.net\overwatch\overwatch.exe
FirewallRules: [UDP Query User{3786F950-9C10-4947-BD92-BD450A5C9CAF}D:\games\battle.net\overwatch\overwatch.exe] => (Allow) D:\games\battle.net\overwatch\overwatch.exe
FirewallRules: [TCP Query User{04386166-AEE5-4E2E-B3A1-FC182EEE6718}D:\games\battle.net\diablo 3\diablo iii\diablo iii.exe] => (Allow) D:\games\battle.net\diablo 3\diablo iii\diablo iii.exe
FirewallRules: [UDP Query User{66878143-405E-46E6-9968-631216193D1A}D:\games\battle.net\diablo 3\diablo iii\diablo iii.exe] => (Allow) D:\games\battle.net\diablo 3\diablo iii\diablo iii.exe
FirewallRules: [{061DB4F9-939D-4689-82F4-0B85C9C346B2}] => (Allow) D:\Spiele\PokemonGO\Nox\bin\Nox.exe
FirewallRules: [{EEF053A1-7036-478C-A06B-AAA60708608B}] => (Allow) C:\Program Files\Bignox\BigNoxVM\RTNoxVMHandle.exe
FirewallRules: [{87DB217E-D26B-4F19-A448-EF00DD490C11}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{A10FF573-51B8-43CE-B7ED-A385D81144A7}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{9F06BF0C-A283-48BC-A76D-B58868BA5088}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{8EC3063C-7A09-4334-B583-F4480B9053BC}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{B8D3B40D-FD01-4E54-B066-C092BED33471}] => (Allow) D:\Origin\Spiele\FIFA 17 DEMO\FIFASetup\fifaconfig.exe
FirewallRules: [{5E47735A-63EC-426B-A584-5BEE48BFDF0B}] => (Allow) D:\Origin\Spiele\FIFA 17 DEMO\FIFASetup\fifaconfig.exe
FirewallRules: [TCP Query User{118D80D9-A14D-4384-9567-3E98BF50BCD2}D:\origin\spiele\fifa 17 demo\fifa17_demo.exe] => (Allow) D:\origin\spiele\fifa 17 demo\fifa17_demo.exe
FirewallRules: [UDP Query User{D87128A0-9842-448F-AAC6-9EB6B2C2FC5C}D:\origin\spiele\fifa 17 demo\fifa17_demo.exe] => (Allow) D:\origin\spiele\fifa 17 demo\fifa17_demo.exe
FirewallRules: [{ABC27EEF-A6DA-4662-A44B-197556C7BC59}] => (Allow) D:\Origin\Spiele\FIFA 17\FIFASetup\fifaconfig.exe
FirewallRules: [{1B1EEC7B-740B-477D-BF41-AAAB32C5CD13}] => (Allow) D:\Origin\Spiele\FIFA 17\FIFASetup\fifaconfig.exe
FirewallRules: [TCP Query User{D41B75F2-092D-487E-8D15-0F69F78B8419}D:\origin\spiele\fifa 17\fifa17_trial.exe] => (Allow) D:\origin\spiele\fifa 17\fifa17_trial.exe
FirewallRules: [UDP Query User{22694971-8FC6-41AF-AEB3-7F4AC79095EB}D:\origin\spiele\fifa 17\fifa17_trial.exe] => (Allow) D:\origin\spiele\fifa 17\fifa17_trial.exe
FirewallRules: [{72AA0355-E888-4DFE-B3FE-C0629FC5CAC2}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Wiederherstellungspunkte =========================
23-09-2016 18:12:04 ASU_MSI_TRAN
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (09/25/2016 11:55:30 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-E3593SQ)
Description: Bei der Aktivierung der App „windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy:microsoft.windows.immersivecontrolpanel“ ist folgender Fehler aufgetreten: -2144927149. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (09/25/2016 11:55:17 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-E3593SQ)
Description: Bei der Aktivierung der App „Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge“ ist folgender Fehler aufgetreten: -2144927149. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (09/25/2016 11:55:10 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-E3593SQ)
Description: Bei der Aktivierung der App „Microsoft.MicrosoftEdge_25.10586.0.0_neutral__8wekyb3d8bbwe:MicrosoftEdge.AppX9zvsr9qeth9e9a03yr0g7rpdrcrwgn5r.mca“ ist folgender Fehler aufgetreten: -2144927149. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (09/25/2016 11:28:43 AM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Error: (09/25/2016 10:14:51 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0x8007232B
Befehlszeilenargumente:
RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (09/25/2016 10:14:51 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0x8007232B
Befehlszeilenargumente:
RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=UserLogon;SessionId=3
Error: (09/24/2016 11:26:37 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Error: (09/24/2016 10:51:57 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0x8007232B
Befehlszeilenargumente:
RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (09/24/2016 10:51:49 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode:
hr=0x8007232B
Befehlszeilenargumente:
RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=UserLogon;SessionId=2
Error: (09/24/2016 10:51:22 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error
Systemfehler:
=============
Error: (09/25/2016 12:38:28 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Error: (09/25/2016 12:36:31 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Error: (09/25/2016 12:36:31 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Error: (09/25/2016 12:33:44 PM) (Source: Schannel) (EventID: 4108) (User: NT-AUTORITÄT)
Description: Das vom Remoteserver empfangene Zertifikat wurde nicht ordnungsgemäß bestätigt. Fehlercode: 0x80092012. Fehler bei der TLS-Verbindungsanforderung. Die angefügten Daten enthalten das Serverzertifikat.
Error: (09/25/2016 12:30:48 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Error: (09/25/2016 12:30:46 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: Der Computer wurde nach einem schwerwiegenden Fehler neu gestartet. Der Fehlercode war: 0x0000003b (0x00000000c0000005, 0xfffff8010389107f, 0xffffd00025c4eac0, 0x0000000000000000). Ein volles Abbild wurde gespeichert in: C:\WINDOWS\MEMORY.DMP. Berichts-ID: a95e2245-b44d-4820-b9e6-f1cc8d410381.
Error: (09/25/2016 12:30:42 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "HomeGroupProvider" ist vom Dienst "fdPHost" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Error: (09/25/2016 12:30:41 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am 25.09.2016 um 11:56:05 unerwartet heruntergefahren.
Error: (09/25/2016 11:56:06 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "HomeGroupProvider" ist vom Dienst "fdPHost" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Error: (09/25/2016 11:55:46 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-E3593SQ)
Description: Fehler "1084" in DCOM, als der Dienst "WSearch" mit den Argumenten "Nicht verfügbar" gestartet wurde, um den folgenden Server zu verwenden:
{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
CodeIntegrity:
===================================
Date: 2016-09-25 11:56:31.293
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-115528.dll that did not meet the Store signing level requirements.
Date: 2016-09-25 11:56:28.068
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-115528.dll that did not meet the Store signing level requirements.
Date: 2016-09-25 11:56:28.055
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-115528.dll that did not meet the Store signing level requirements.
Date: 2016-09-25 11:56:28.047
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-115528.dll that did not meet the Store signing level requirements.
Date: 2016-09-25 11:40:00.964
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-115528.dll that did not meet the Store signing level requirements.
Date: 2016-09-25 11:39:50.392
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-115528.dll that did not meet the Store signing level requirements.
Date: 2016-09-25 11:39:19.643
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-115528.dll that did not meet the Store signing level requirements.
Date: 2016-09-24 15:48:42.496
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-115528.dll that did not meet the Store signing level requirements.
Date: 2016-09-24 15:39:26.554
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-115528.dll that did not meet the Store signing level requirements.
Date: 2016-09-24 15:39:26.546
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Raptr Inc\Raptr\ltc_help64-115528.dll that did not meet the Store signing level requirements.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i5-4570 CPU @ 3.20GHz
Prozentuale Nutzung des RAM: 31%
Installierter physikalischer RAM: 8070.98 MB
Verfügbarer physikalischer RAM: 5499.47 MB
Summe virtueller Speicher: 10070.98 MB
Verfügbarer virtueller Speicher: 7179.15 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:232.4 GB) (Free:172.06 GB) NTFS
Drive d: () (Fixed) (Total:931.51 GB) (Free:583.55 GB) NTFS
Drive g: () (Removable) (Total:3.71 GB) (Free:2.64 GB) FAT32
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 8C4E2F5A)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: E84C926F)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232.4 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (Size: 3.7 GB) (Disk ID: A6FB1F52)
Partition 1: (Not Active) - (Size=3.7 GB) - (Type=0B)
==================== Ende von Addition.txt ============================ |