| Yukimura |  11.12.2016 17:21 |        Code FRST zusätzlich    Addition.txt    Code:  
 Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 07-12-2016 
durchgeführt von Yukimura Hio (11-12-2016 14:24:51) 
Gestartet von C:\Users\Yukimura Hio\Desktop 
Windows 10 Home Version 1607 (X64) (2016-09-22 18:02:32) 
Start-Modus: Normal 
==========================================================     
==================== Konten: =============================   
Administrator (S-1-5-21-1342403820-2600081939-2237182615-500 - Administrator - Disabled) 
DefaultAccount (S-1-5-21-1342403820-2600081939-2237182615-503 - Limited - Disabled) 
Gast (S-1-5-21-1342403820-2600081939-2237182615-501 - Limited - Disabled) 
HomeGroupUser$ (S-1-5-21-1342403820-2600081939-2237182615-1007 - Limited - Enabled) 
Yukimura Hio (S-1-5-21-1342403820-2600081939-2237182615-1003 - Administrator - Enabled) => C:\Users\Yukimura Hio   
==================== Sicherheits-Center ========================   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)   
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} 
AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} 
AS: Spybot - Search and Destroy (Enabled - Up to date) {A16C3F68-9280-E053-1818-342707FECF4D} 
AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} 
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}   
==================== Installierte Programme ======================   
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)   
4K Video Downloader 4.0 (HKLM-x32\...\4K Video Downloader_is1) (Version: 4.0.0.2016 - Open Media LLC) 
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated) 
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) 
Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.13.3296) (Version: 1.13.3296 - Aeria Games & Entertainment) 
Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.13.3296 - Aeria Games & Entertainment) 
Aeria Ignite (x32 Version: 1.13.3296 - Aeria Games & Entertainment) Hidden 
AION Free-to-Play (HKLM\...\Steam App 261430) (Version:  - NCSOFT) 
Alan Wake (HKLM\...\Steam App 108710) (Version:  - Remedy Entertainment) 
Alice: Madness Returns (HKLM-x32\...\Steam App 19680) (Version:  - Spicy Horse Games) 
Anno Online (HKLM\...\Steam App 336510) (Version:  - Blue Byte) 
ArgoUML 0.34 (HKLM-x32\...\ArgoUML) (Version: 0.34 - ) 
Assassin's Creed (HKLM-x32\...\{8CFA9151-6404-409A-AF22-4632D04582FD}) (Version: 1.02 - Ubisoft) 
Audacity 2.1.1 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.1 - Audacity Team) 
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment) 
Besiege (HKLM\...\Steam App 346010) (Version:  - Spiderling Studios) 
BioShock 2 (HKLM-x32\...\Steam App 8850) (Version:  - 2K Marin) 
BioShock 2 Remastered (HKLM\...\Steam App 409720) (Version:  - 2K Marin) 
BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version:  - Irrational Games) 
BlueJ (HKLM-x32\...\{7D66971C-652B-4065-A6B1-B3EE313C254B}) (Version: 3.1.7 - BlueJ Team) 
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version:  - Valve) 
Crawlers and Brawlers (HKLM\...\Steam App 462860) (Version:  - Ugly Beard Games) 
Cry of Fear (HKLM\...\Steam App 223710) (Version:  - Team Psykskallar) 
CyberLink Home Cinema 10 (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 10.0 - CyberLink Corp.) 
CyberLink PowerRecover (HKLM-x32\...\InstallShield_{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.7.0.4510 - CyberLink Corp.) 
CyberLink PowerRecover (Version: 5.7.0.4510 - CyberLink Corp.) Hidden 
Dead by Daylight (HKLM\...\Steam App 381210) (Version:  - Behaviour Digital Inc.) 
Deponia Doomsday (HKLM-x32\...\Deponia Doomsday_is1) (Version:  - ) 
Enter the Gungeon (HKLM\...\Steam App 311690) (Version:  - Dodge Roll) 
Fable Anniversary (HKLM-x32\...\Steam App 288470) (Version:  - Lionhead Studios) 
Gameforge Live 2.0.12 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.12 - Gameforge) 
Geometry Dash (HKLM\...\Steam App 322170) (Version:  - RobTop Games) 
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 55.0.2883.87 - Google Inc.) 
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden 
Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) 
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment) 
HiSuite (HKLM-x32\...\Hi Suite) (Version: 1.0 - Huawei Technologies Co.,Ltd) 
How to Survive (HKLM\...\Steam App 250400) (Version:  - EKO Software) 
Intel(R) Chipset Device Software (x32 Version: 10.1.1.9 - Intel(R) Corporation) Hidden 
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1159 - Intel Corporation) 
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.6.0.1029 - Intel Corporation) 
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) 
Java 8 Update 77 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218077F0}) (Version: 8.0.770.3 - Oracle Corporation) 
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) 
Left 4 Dead (HKLM\...\Steam App 500) (Version:  - Valve) 
Left 4 Dead 2 (HKLM\...\Steam App 550) (Version:  - Valve) 
Life is Strange Complete First Season Version 1.0.0.371598 (HKLM-x32\...\{D5DF0D21-62C1-46E0-BD21-4E3DAE94DA32}_is1) (Version: 1.0.0.371598 - Square Enix) 
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) 
Malwarebytes Version 3.0.4.1269 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.4.1269 - Malwarebytes) 
MEGAsync (HKLM-x32\...\MEGAsync) (Version:  - Mega Limited) 
Metric Collection SDK (x32 Version: 1.1.0012.00 - Lenovo Group Limited) Hidden 
Microsoft Office Home and Student 2016 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 16.0.7466.2038 - Microsoft Corporation) 
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) 
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) 
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) 
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) 
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) 
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) 
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) 
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) 
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) 
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) 
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) 
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) 
Mozilla Firefox 47.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 47.0 (x86 de)) (Version: 47.0 - Mozilla) 
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0 - Mozilla) 
MURDERED: SOUL SUSPECT™ (HKLM-x32\...\Steam App 233290) (Version:  - Airtight Games) 
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.9.2 - Notepad++ Team) 
NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) 
NVIDIA 3D Vision Treiber 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 359.06 - NVIDIA Corporation) 
NVIDIA GeForce Experience 2.7.4.10 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.7.4.10 - NVIDIA Corporation) 
NVIDIA Grafiktreiber 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 359.06 - NVIDIA Corporation) 
NVIDIA HD-Audiotreiber 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation) 
NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation) 
NVIDIA PhysX (Legacy) (HKLM-x32\...\{FAAC26AD-73BA-40CE-86AA-C9213F9E064A}) (Version: 9.13.0604 - NVIDIA Corporation) 
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7466.2038 - Microsoft Corporation) Hidden 
Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7426.1015 - Microsoft Corporation) Hidden 
Office 16 Click-to-Run Licensing Component (Version: 16.0.7466.2038 - Microsoft Corporation) Hidden 
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7466.2038 - Microsoft Corporation) Hidden 
osu! (HKLM-x32\...\{610ad37d-ffae-458c-a7e0-e724849d5e15}) (Version: latest - ppy Pty Ltd) 
OutDrive (HKLM\...\Steam App 441870) (Version:  - D Ξ N V Ξ R) 
Outlast (HKLM-x32\...\Steam App 238320) (Version:  - Red Barrels) 
paint.net (HKLM\...\{A1D05314-DC32-4668-A97E-51060EC8BCCE}) (Version: 4.0.12 - dotPDN LLC) 
Party Hard (HKLM\...\Steam App 356570) (Version:  - Pinokl Games) 
PAYDAY 2 (HKLM-x32\...\Steam App 218620) (Version:  - OVERKILL - a Starbreeze Studio.) 
Portal (HKLM-x32\...\Steam App 400) (Version:  - Valve) 
Portal 2 (HKLM-x32\...\Steam App 620) (Version:  - Valve) 
RAGE (HKLM\...\Steam App 9200) (Version:  - id Software) 
RealDownloader (x32 Version: 18.1.6.161 - RealNetworks) Hidden 
RealDownloader (x32 Version: 18.1.6.161 - RealNetworks, Inc.) Hidden 
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden 
RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden 
RealPlayer (RealTimes) (HKLM-x32\...\RealPlayer 18.1) (Version: 18.1.6 - RealNetworks) 
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.2.703.2015 - Realtek) 
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7541 - Realtek Semiconductor Corp.) 
RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden 
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.0.5 - Rockstar Games) 
Runes of Magic (HKLM-x32\...\{F57FBE91-C48B-4A86-91C8-A9C3D744E459}_is1) (Version: 6.5.6.2776 - Gameforge Productions GmbH) 
Sherlock Holmes Crimes and Punishments Version 1.0 (HKLM-x32\...\{DA951913-30E5-4182-8731-84C2163310B8}_is1) (Version: 1.0 - Focus Home Interactive) 
Sherlock Holmes versus Jack the Ripper (HKLM-x32\...\Steam App 11190) (Version:  - Frogwares) 
SHIELD Streaming (Version: 4.1.0240 - NVIDIA Corporation) Hidden 
SHIELD Wireless Controller Driver (Version: 2.7.4.10 - NVIDIA Corporation) Hidden 
Sid Meier's Civilization V (HKLM\...\Steam App 8930) (Version:  - Firaxis Games) 
Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) 
Skype™ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.) 
Sniper Elite 3 (HKLM\...\Steam App 238090) (Version:  - Rebellion) 
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) 
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) 
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) 
TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.71503 - TeamViewer) 
Terraria (HKLM-x32\...\1207665503_is1) (Version: 2.11.0.13 - GOG.com) 
The Elder Scrolls V: Skyrim (HKLM\...\Steam App 72850) (Version:  - Bethesda Game Studios) 
The Testament of Sherlock Holmes (HKLM\...\Steam App 205650) (Version:  - Frogwares) 
The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version:  - CD PROJEKT RED) 
Thief (HKLM\...\Steam App 239160) (Version:  - Eidos-Montréal) 
TI-Nspire™ CX Student Software (HKLM-x32\...\{603D81E7-2DC0-45A7-96BD-3B7B6D5AFBA8}) (Version: 4.3.0.702 - Texas Instruments Inc.) 
Tom Clancy's Rainbow Six Siege (HKLM\...\Steam App 359550) (Version:  - Ubisoft Montreal) 
Tomb Raider (HKLM\...\Steam App 203160) (Version:  - Crystal Dynamics) 
Trine (HKLM-x32\...\Steam App 35700) (Version:  - Frozenbyte) 
Trine 2 (HKLM\...\Steam App 35720) (Version:  - Frozenbyte) 
Trine 3: The Artifacts of Power (HKLM\...\Steam App 319910) (Version:  - Frozenbyte) 
Undertale (HKLM\...\Steam App 391540) (Version:  - tobyfox) 
Unity Web Player (HKU\S-1-5-21-1342403820-2600081939-2237182615-1003\...\UnityWebPlayer) (Version: 5.3.4f1 - Unity Technologies ApS) 
UpdateService (x32 Version: 1.0.0 - RealNetworks, Inc.) Hidden 
Uplay (HKLM-x32\...\Uplay) (Version: 22.1 - Ubisoft) 
vc2012_redist (x32 Version: 1.0.0.0 - Realnetworks) Hidden 
Video Downloader (x32 Version: 1.3.0 - RealNetworks) Hidden 
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) 
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) 
vs2015_redist x86 (x32 Version: 1.0.0.0 - Realnetworks) Hidden 
WhatsApp (HKU\S-1-5-21-1342403820-2600081939-2237182615-1003\...\WhatsApp) (Version: 0.2.2732 - WhatsApp) 
Windows 7 Games for Windows 8 and 10 (HKLM-x32\...\MicrosoftGamesForWin8) (Version: 1.1.0.10 - ) 
WinRAR 5.31 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) 
World of Tanks (HKU\S-1-5-21-1342403820-2600081939-2237182615-1003\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version:  - Wargaming.net) 
World of Warships (HKU\S-1-5-21-1342403820-2600081939-2237182615-1003\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1) (Version:  - Wargaming.net) 
Yet Another Zombie Defense (HKLM\...\Steam App 270550) (Version:  - Awesome Games Studio)   
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)     
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)   
Task: {0749A3D6-C24F-4937-BE5B-649BF1BD1535} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-30] (Microsoft Corporation) 
Task: {12C5A4B7-EDE1-4C43-B090-7245C989BB62} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1342403820-2600081939-2237182615-1003 => C:\program files (x86)\real\realplayer\RealDownloader\RealUpgrade.exe [2016-11-11] (RealNetworks, Inc.) 
Task: {147015F9-E868-4AF3-9722-8BF47DE17CBA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-11] (Google Inc.) 
Task: {16D1B19E-D7CB-4046-B92A-E8B651F3C402} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1342403820-2600081939-2237182615-1003 => C:\program files (x86)\real\realplayer\RealDownloader\RealUpgrade.exe [2016-11-11] (RealNetworks, Inc.) 
Task: {35705C6B-E4DD-468F-BEB5-671EEA38A3C1} - System32\Tasks\RealDownloader Update Check => C:\program files (x86)\real\realplayer\RealDownloader\downloader2.exe [2016-11-11] () 
Task: {3C655525-BB5F-4D55-B0EB-70686DC07E12} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated) 
Task: {4741B739-6A3D-4037-A742-7225EB078DF6} - System32\Tasks\PDVDServ12 Task => C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe [2015-08-27] (CyberLink Corp.) 
Task: {4CCED5ED-3AA4-465D-A835-3C4A7BC035B8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) 
Task: {5241D180-AD04-4588-88E8-46A98F4AB9B9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-11] (Google Inc.) 
Task: {5D1938C1-9679-435F-83A9-17CD1FFB73A2} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-30] (Microsoft Corporation) 
Task: {681734BE-3226-4747-BDE7-0319A7948FDC} - System32\Tasks\Opera scheduled Autoupdate 1465630682 => C:\Program Files (x86)\Opera\launcher.exe 
Task: {6D78429A-F3D2-4876-98BE-900FD8905F06} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) 
Task: {7FF8AD72-FF11-4594-97B8-46DA62D80C04} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) 
Task: {8D3E9AA7-7802-477A-BCC6-133EE616D13F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) 
Task: {9D3B1260-95F8-45B9-97D9-B3005D72CF55} - System32\Tasks\{9EA30C4F-A32D-470D-979F-C02D3EEE72E4} => pcalua.exe -a "C:\Users\Yukimura Hio\AppData\Local\Akamai\uninstall.exe" 
Task: {B44930A4-4AA2-47A4-BAD9-8114FC9BFAD1} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2016-03-21] (Safer-Networking Ltd.) 
Task: {D1F5E3FE-5CB0-4EDB-98EF-66C83E2BAFE9} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-11-10] (Microsoft Corporation) 
Task: {D8D2733D-F414-4633-B9B3-69BB51B7C522} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) 
Task: {EDCC7283-C8BC-421C-8159-529827D3788C} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo) 
Task: {F8E59297-9F69-448E-A0BA-857AF8232107} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-13] (Adobe Systems Incorporated) 
Task: {FC2C3355-E4FD-484F-B646-1779099680DE} - \Browsing Secure Updater -> Keine Datei <==== ACHTUNG 
Task: {FC66DB03-93C3-4D74-9847-CD64B98C437F} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2016-03-21] (Safer-Networking Ltd.)   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)   
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe   
==================== Verknüpfungen =============================   
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)   
ShortcutWithArgument: C:\Users\Yukimura Hio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Google*Hangouts.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=knipolnnllmklapflnccelgolnpehhpl   
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============   
2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 
2016-12-09 15:56 - 2016-11-11 11:10 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 
2016-08-26 10:08 - 2016-08-26 10:08 - 00192200 _____ () C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe 
2015-09-22 20:52 - 2014-12-12 17:24 - 00044760 _____ () C:\Windows\runSW.exe 
2016-11-11 12:52 - 2016-11-11 12:52 - 00035104 _____ () C:\program files (x86)\real\realplayer\UpdateService\RealPlayerUpdateSvc.exe 
2016-12-09 15:56 - 2016-11-11 11:10 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 
2016-09-22 19:10 - 2016-09-22 19:10 - 00959168 _____ () C:\Users\Yukimura Hio\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll 
2014-05-01 15:13 - 2016-08-02 12:35 - 00592384 _____ () C:\Users\Yukimura Hio\AppData\Local\MEGAsync\ShellExtX64.dll 
2016-05-17 23:42 - 2016-05-17 23:42 - 00230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 
2016-11-17 14:36 - 2016-11-17 14:36 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeHost.exe 
2016-11-17 14:36 - 2016-11-17 14:36 - 00178688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 
2016-11-17 14:36 - 2016-11-17 14:36 - 41609728 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkyWrap.dll 
2016-11-17 14:36 - 2016-11-17 14:36 - 00114688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeHost.Proxies.dll 
2016-09-22 19:23 - 2016-09-22 19:23 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 
2016-12-09 15:56 - 2016-11-11 10:23 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 
2016-11-10 17:49 - 2016-11-02 11:21 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 
2016-11-10 17:49 - 2016-11-02 11:15 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 
2016-11-10 17:49 - 2016-11-02 11:14 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 
2016-11-10 17:49 - 2016-11-02 11:15 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 
2016-11-10 17:49 - 2016-11-02 11:16 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 
2016-11-10 17:49 - 2016-11-02 11:17 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 
2015-10-22 12:22 - 2016-07-18 19:02 - 00174872 _____ () C:\Program Files\TeamSpeak 3 Client\quazip.dll 
2015-10-22 12:21 - 2016-07-18 19:02 - 00103192 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 
2015-10-22 12:21 - 2016-07-18 19:02 - 00107800 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 
2015-10-22 12:22 - 2016-07-18 19:02 - 00312088 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 
2015-10-22 12:22 - 2016-07-18 19:02 - 00485656 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 
2016-12-11 00:11 - 2016-12-08 09:03 - 02412888 _____ () C:\Program Files (x86)\Google\Chrome\Application\55.0.2883.87\libglesv2.dll 
2016-12-11 00:11 - 2016-12-08 09:03 - 00099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\55.0.2883.87\libegl.dll 
2016-11-11 12:07 - 2016-11-11 12:07 - 00729840 _____ () C:\program files (x86)\real\realplayer\RealDownloader\downloader2.exe 
2016-11-11 12:52 - 2016-11-11 12:52 - 00040248 _____ () C:\program files (x86)\real\realplayer\UpdateService\DL2UpdatePlugin.dll 
2016-11-11 12:52 - 2016-11-11 12:52 - 00042296 _____ () C:\program files (x86)\real\realplayer\UpdateService\RealDownloaderUpdatePlugin.dll 
2016-11-11 12:52 - 2016-11-11 12:52 - 00039752 _____ () C:\program files (x86)\real\realplayer\UpdateService\VideoDLUpdatePlugin.dll 
2016-12-11 01:37 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 
2016-12-11 01:37 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 
2016-12-11 01:37 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 
2016-12-11 01:37 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 
2016-12-11 01:37 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 
2015-07-22 01:18 - 2015-07-22 01:18 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 
2015-12-13 15:41 - 2015-11-25 00:07 - 00012080 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll   
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)     
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)   
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"   
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)     
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)   
IE trusted site: HKU\S-1-5-21-1342403820-2600081939-2237182615-1003\...\aeriagames.com -> hxxps://aeriagames.com 
IE trusted site: HKU\S-1-5-21-1342403820-2600081939-2237182615-1003\...\aeriagames.com -> hxxp://aeriagames.com   
==================== Hosts Inhalt: ===============================   
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)   
2015-07-10 12:04 - 2016-03-23 15:03 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts     
==================== Andere Bereiche ============================   
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)   
HKU\S-1-5-21-1342403820-2600081939-2237182615-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\Yukimura Hio\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper 
DNS Servers: 192.168.2.1 
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) 
Windows Firewall ist aktiviert.   
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==   
HKLM\...\StartupApproved\Run32: => "BlueStacks Agent" 
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" 
HKLM\...\StartupApproved\Run32: => "Aeria Ignite" 
HKU\S-1-5-21-1342403820-2600081939-2237182615-1003\...\StartupApproved\StartupFolder: => "MEGAsync.lnk" 
HKU\S-1-5-21-1342403820-2600081939-2237182615-1003\...\StartupApproved\Run: => "OneDrive" 
HKU\S-1-5-21-1342403820-2600081939-2237182615-1003\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"   
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)   
FirewallRules: [vm-monitoring-nb-session] => LPort=139 
FirewallRules: [UDP Query User{C54138D5-8D7E-44D5-A71A-CB139CA1BC51}C:\program files (x86)\ti education\ti-nspire cx student software\jre\bin\java.exe] => C:\program files (x86)\ti education\ti-nspire cx student software\jre\bin\java.exe 
FirewallRules: [TCP Query User{A8A67804-36B3-4998-BE60-8AC288873D45}C:\program files (x86)\ti education\ti-nspire cx student software\jre\bin\java.exe] => C:\program files (x86)\ti education\ti-nspire cx student software\jre\bin\java.exe 
FirewallRules: [UDP Query User{3AC949B3-D6DE-4F30-99F9-80D7CCF2D2E4}C:\program files (x86)\ti education\ti-nspire cx student software\ti-nspire cx student software.exe] => C:\program files (x86)\ti education\ti-nspire cx student software\ti-nspire cx student software.exe 
FirewallRules: [TCP Query User{B87D2B15-CFFC-4789-A1BD-DAB16A4EABFA}C:\program files (x86)\ti education\ti-nspire cx student software\ti-nspire cx student software.exe] => C:\program files (x86)\ti education\ti-nspire cx student software\ti-nspire cx student software.exe 
FirewallRules: [{C8E1FA58-1034-47C6-B7C7-F78E85B366D8}] => C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe 
FirewallRules: [{BD5103F5-E8D7-4BB9-81E2-9D1E3E35534F}] => C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe 
FirewallRules: [{BC310ADC-E830-44E9-AB11-5E0D67442C4C}] => C:\Program Files (x86)\Steam\steamapps\common\How to Survive\Detect.exe 
FirewallRules: [{47C69454-1877-44C8-9928-44C40871B510}] => C:\Program Files (x86)\Steam\steamapps\common\How to Survive\Detect.exe 
FirewallRules: [{F3DF8D3F-6FDD-4F71-A3E4-7186B887BD11}] => C:\Program Files (x86)\Steam\steamapps\common\How to Survive\HowToSurvive.exe 
FirewallRules: [{0126C077-B224-4C3E-90ED-B61AFA11DFF7}] => C:\Program Files (x86)\Steam\steamapps\common\How to Survive\HowToSurvive.exe 
FirewallRules: [{03C952F2-3D82-4FAC-AF88-7D742B41C41A}] => C:\Program Files (x86)\Steam\steamapps\common\RAGE\Rage64.exe 
FirewallRules: [{89ABF9C3-AB00-4097-9B4C-6D12019292ED}] => C:\Program Files (x86)\Steam\steamapps\common\RAGE\Rage64.exe 
FirewallRules: [{60CD9010-FD80-4903-998F-5309E4FAE416}] => C:\Program Files (x86)\Steam\steamapps\common\RAGE\Rage.exe 
FirewallRules: [{3E331D73-D23E-4E99-B5F8-0BCEBE0E20DB}] => C:\Program Files (x86)\Steam\steamapps\common\RAGE\Rage.exe 
FirewallRules: [{385DCB92-5749-4779-80BA-78F1D4E0F4C0}] => C:\Program Files (x86)\Steam\steamapps\common\Anno Online\nw.exe 
FirewallRules: [{DFF5BE70-B2EE-47CA-91EB-9F2325C69C90}] => C:\Program Files (x86)\Steam\steamapps\common\Anno Online\nw.exe 
FirewallRules: [UDP Query User{C62622C2-CABF-4C4E-BF06-937005A61D1E}C:\gog games\terraria\terrariaserver.exe] => C:\gog games\terraria\terrariaserver.exe 
FirewallRules: [TCP Query User{CE8E69A4-D485-4044-B795-09A877D08E99}C:\gog games\terraria\terrariaserver.exe] => C:\gog games\terraria\terrariaserver.exe 
FirewallRules: [{1971D738-7D38-4058-B875-2B656FD842BF}] => C:\Program Files (x86)\Steam\steamapps\common\Thief\Binaries\Win64\Shipping-ThiefGame.exe 
FirewallRules: [{AE155FD3-CD42-48A8-AAC8-83F6794CF5E5}] => C:\Program Files (x86)\Steam\steamapps\common\Thief\Binaries\Win64\Shipping-ThiefGame.exe 
FirewallRules: [{5DA8B8B9-82B2-4666-B146-17C18D38247C}] => C:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe 
FirewallRules: [{BF482E0A-6EB0-48B1-8BA0-99EE2E71F863}] => C:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe 
FirewallRules: [{60F7610A-7EB8-4A34-B302-F4B2D3D68BFD}] => C:\Program Files (x86)\Steam\steamapps\common\left 4 dead\left4dead.exe 
FirewallRules: [{CEE78F45-80B4-4F0E-8AFB-E5D701CC11D0}] => C:\Program Files (x86)\Steam\steamapps\common\left 4 dead\left4dead.exe 
FirewallRules: [{E77F0FA6-02AE-4419-81BD-148D6D1D9AB6}] => C:\Program Files (x86)\Steam\steamapps\common\Undertale\UNDERTALE.exe 
FirewallRules: [{D41F0BB8-4059-485E-B4E7-1D7747D4287F}] => C:\Program Files (x86)\Steam\steamapps\common\Undertale\UNDERTALE.exe 
FirewallRules: [{7DF2976A-B9F0-44C2-A589-7CE1270A19D8}] => C:\Program Files (x86)\Steam\steamapps\common\Enter the Gungeon\EtG.exe 
FirewallRules: [{915534BD-A852-4B4C-923A-2C27D868B921}] => C:\Program Files (x86)\Steam\steamapps\common\Enter the Gungeon\EtG.exe 
FirewallRules: [{1F5211FF-89EF-4D4C-81AA-984B039D9A4F}] => C:\Program Files (x86)\Steam\steamapps\common\Geometry Dash\GeometryDash.exe 
FirewallRules: [{C379AFB7-3DC2-4516-AF5D-589D2A83BB0B}] => C:\Program Files (x86)\Steam\steamapps\common\Geometry Dash\GeometryDash.exe 
FirewallRules: [{16F2ED4B-72B1-4C33-87A1-5E90B8E57222}] => C:\Program Files (x86)\Steam\steamapps\common\Alan Wake\AlanWake.exe 
FirewallRules: [{740556B8-CAB0-4091-B2C8-63DC2BE0277B}] => C:\Program Files (x86)\Steam\steamapps\common\Alan Wake\AlanWake.exe 
FirewallRules: [{9D2DBFCC-25E1-4D35-BFAF-E26BC14E9902}] => C:\Users\Yukimura Hio\AppData\Local\Temp\Setup.exe 
FirewallRules: [{C86FCE04-D29B-40A7-897C-D225E67F4CC0}] => C:\Users\Yukimura Hio\AppData\Local\Temp\Setup.exe 
FirewallRules: [{D04E5855-F70E-4624-9B2C-E8883F409632}] => C:\Games\World_of_Warships\worldofwarships.exe 
FirewallRules: [{DD1602C2-8406-4FF0-816F-D0FB8767A712}] => C:\Games\World_of_Warships\worldofwarships.exe 
FirewallRules: [{9BF65D9D-4F4B-492E-94DB-25D1478EACBB}] => C:\Games\World_of_Warships\WoWSLauncher.exe 
FirewallRules: [{674910D0-14EA-428D-8489-F7EDF5DD619E}] => C:\Games\World_of_Warships\WoWSLauncher.exe 
FirewallRules: [{77CCE711-2158-433E-8A4E-CC40F7626881}] => C:\Program Files\Andy\HandyAndy.exe 
FirewallRules: [{8D33D416-8660-4B47-878D-3BDA179C30A7}] => C:\Program Files\Andy\HandyAndy.exe 
FirewallRules: [{75A07DAC-663F-4B61-9311-5B6B3556C834}] => C:\Program Files\Andy\AndyConsole.exe 
FirewallRules: [{67B84359-826C-4B07-9C7D-96483C4BB17A}] => C:\Program Files\Andy\AndyConsole.exe 
FirewallRules: [{2DA71470-910A-4634-9F73-EA44A343963A}] => C:\Program Files\Andy\andy.exe 
FirewallRules: [{E044D847-DC3D-4D60-B63C-E3BDF8F298E5}] => C:\Program Files\Andy\andy.exe 
FirewallRules: [{D3E8F155-E357-4499-AECC-AE31615CF9E9}] => C:\Program Files (x86)\Seablue\Seablue\bin\Seablue_server.exe 
FirewallRules: [{494D129E-B1AB-4BCC-A055-4727376207CC}] => C:\Program Files (x86)\Seablue\Seablue\chrome.exe 
FirewallRules: [{10DE63BF-E374-4160-90B9-2D6F96ACA941}] => C:\ProgramData\Seablue\protect\protect.exe 
FirewallRules: [{8653BAB3-B3C8-426C-8B37-E96D78B1FB88}] => C:\Program Files (x86)\Steam\steamapps\common\Cry of Fear\CoFLaunchApp.exe 
FirewallRules: [{6512F20F-B2FE-4D92-9D63-222B5FA28FC2}] => C:\Program Files (x86)\Steam\steamapps\common\Cry of Fear\CoFLaunchApp.exe 
FirewallRules: [{64178030-C655-4EB4-9268-14A54CE23EAC}] => C:\Program Files (x86)\Steam\steamapps\common\Besiege\Besiege.exe 
FirewallRules: [{79200E63-71DD-4BE9-A859-3D94CAC187AE}] => C:\Program Files (x86)\Steam\steamapps\common\Besiege\Besiege.exe 
FirewallRules: [UDP Query User{8482BC83-3A1D-49B7-92A1-712568EF183C}C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe 
FirewallRules: [TCP Query User{0C2ED6D2-C097-4F46-B934-F25AB4184FFE}C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe 
FirewallRules: [{46334123-C3A2-4BF1-B928-CA9098EBBAA3}] => C:\Program Files (x86)\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe 
FirewallRules: [{F6788D81-898B-4585-A29F-9838DEC58900}] => C:\Program Files (x86)\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe 
FirewallRules: [UDP Query User{465480F0-E99F-4973-958E-B62B8B28649D}C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe 
FirewallRules: [TCP Query User{044369AF-C7A0-44F8-A2B5-8B318C776486}C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe 
FirewallRules: [UDP Query User{38DA2559-3419-4CDF-B723-287FE5739479}C:\program files\rockstar games\grand theft auto v\gta5.exe] => C:\program files\rockstar games\grand theft auto v\gta5.exe 
FirewallRules: [TCP Query User{BB1C7B6E-01F8-463A-9126-60C618588A58}C:\program files\rockstar games\grand theft auto v\gta5.exe] => C:\program files\rockstar games\grand theft auto v\gta5.exe 
FirewallRules: [{2277E56F-0E14-49CC-A72B-9464D862F74F}] => C:\Program Files (x86)\Steam\steamapps\common\Yet Another Zombie Defense\YetAnotherZombieDefense.exe 
FirewallRules: [{BC91756A-6A4B-4EC2-9D80-151285D65A89}] => C:\Program Files (x86)\Steam\steamapps\common\Yet Another Zombie Defense\YetAnotherZombieDefense.exe 
FirewallRules: [UDP Query User{E088F72B-0034-4042-BF9F-D2EBC3847187}C:\program files (x86)\hearthstone\hearthstone.exe] => C:\program files (x86)\hearthstone\hearthstone.exe 
FirewallRules: [TCP Query User{58E307BE-CBB7-41CA-B129-29F345217DF8}C:\program files (x86)\hearthstone\hearthstone.exe] => C:\program files (x86)\hearthstone\hearthstone.exe 
FirewallRules: [{9B75A86A-CFED-4833-85F5-9DF63A4C1710}] => C:\Program Files (x86)\Steam\steamapps\common\Magic Duels\MagicDuels.exe 
FirewallRules: [{E262BDA6-8885-487B-B23C-BF1BA198BE50}] => C:\Program Files (x86)\Steam\steamapps\common\Magic Duels\MagicDuels.exe 
FirewallRules: [UDP Query User{8EBCF7B5-BC56-4B9F-B3B8-05D19B7FB611}C:\program files (x86)\steam\steamapps\common\trine 3\trine3_64bit.exe] => C:\program files (x86)\steam\steamapps\common\trine 3\trine3_64bit.exe 
FirewallRules: [TCP Query User{1AAF07A8-B0C2-4A14-9A15-861C2780C17A}C:\program files (x86)\steam\steamapps\common\trine 3\trine3_64bit.exe] => C:\program files (x86)\steam\steamapps\common\trine 3\trine3_64bit.exe 
FirewallRules: [UDP Query User{3A244E7C-E2CA-49B4-AEA7-5E14897BC224}C:\users\yukimura hio\appdata\local\akamai\netsession_win.exe] => C:\users\yukimura hio\appdata\local\akamai\netsession_win.exe 
FirewallRules: [TCP Query User{E26D2925-5FDD-474B-BAC4-92723A5DEEF7}C:\users\yukimura hio\appdata\local\akamai\netsession_win.exe] => C:\users\yukimura hio\appdata\local\akamai\netsession_win.exe 
FirewallRules: [{50CF1442-82E7-47AD-B474-12DFB203A34C}] => C:\Program Files (x86)\Steam\steamapps\common\Trine 3\trine3_launcher.exe 
FirewallRules: [{230990EF-E1C1-46BA-958F-D8EAE51E624F}] => C:\Program Files (x86)\Steam\steamapps\common\Trine 3\trine3_launcher.exe 
FirewallRules: [UDP Query User{9C67CAD8-C020-401C-A5C1-F530AD73BF27}C:\program files (x86)\steam\steamapps\common\trine 2\trine2_32bit.exe] => C:\program files (x86)\steam\steamapps\common\trine 2\trine2_32bit.exe 
FirewallRules: [TCP Query User{809226C9-8E89-4356-A3AF-047EB8F1C5D4}C:\program files (x86)\steam\steamapps\common\trine 2\trine2_32bit.exe] => C:\program files (x86)\steam\steamapps\common\trine 2\trine2_32bit.exe 
FirewallRules: [{86959BDB-B151-4D50-A762-7841B46DC48F}] => C:\Program Files (x86)\Steam\steamapps\common\AION\NCLauncher.exe 
FirewallRules: [{3D862E10-D48B-49A0-8C57-E6B2266FFBE0}] => C:\Program Files (x86)\Steam\steamapps\common\AION\NCLauncher.exe 
FirewallRules: [UDP Query User{5B3C2D0E-3394-4DF2-9708-512C0560B2F5}C:\users\yukimura hio\appdata\local\akamai\netsession_win.exe] => C:\users\yukimura hio\appdata\local\akamai\netsession_win.exe 
FirewallRules: [TCP Query User{46FE1D72-A8EA-4DFC-96ED-2B234F585699}C:\users\yukimura hio\appdata\local\akamai\netsession_win.exe] => C:\users\yukimura hio\appdata\local\akamai\netsession_win.exe 
FirewallRules: [{F87E585A-DE8C-4AC7-9CCA-C4FAEBC195D7}] => C:\Program Files (x86)\Steam\steamapps\common\OutDrive\OutDrive.exe 
FirewallRules: [{4F73FFE1-7C24-4D01-AC45-5B9EC2B4CC90}] => C:\Program Files (x86)\Steam\steamapps\common\OutDrive\OutDrive.exe 
FirewallRules: [{38BBCA89-08C7-4A9A-B2E9-8F6F00E69C0A}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe 
FirewallRules: [{C9AB0C73-1C39-49C2-8E70-13788BF49751}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe 
FirewallRules: [{B60240DA-25D5-4901-B804-342FD14589BF}] => C:\Program Files (x86)\Steam\steamapps\common\Trine 2\trine2_launcher.exe 
FirewallRules: [{B6505E97-FDDB-464B-A62C-089D780E2E8D}] => C:\Program Files (x86)\Steam\steamapps\common\Trine 2\trine2_launcher.exe 
FirewallRules: [{DCC2ACB5-4E35-4AF7-BAED-FE7BB20FACDA}] => C:\Program Files (x86)\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe 
FirewallRules: [{EB5CDAFD-4F0D-4476-9DC1-BB1F4002B879}] => C:\Program Files (x86)\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe 
FirewallRules: [UDP Query User{00A44848-1ABA-4A63-A238-8665E1056140}C:\program files (x86)\steam\steamapps\common\trine\_enchanted_edition_\trine1_32bit.exe] => C:\program files (x86)\steam\steamapps\common\trine\_enchanted_edition_\trine1_32bit.exe 
FirewallRules: [TCP Query User{8A66FD4F-182A-45D8-AACA-F0A13F548B5C}C:\program files (x86)\steam\steamapps\common\trine\_enchanted_edition_\trine1_32bit.exe] => C:\program files (x86)\steam\steamapps\common\trine\_enchanted_edition_\trine1_32bit.exe 
FirewallRules: [{8DCFB722-C0D4-4804-9169-0863FCD036EA}] => C:\Users\Yukimura Hio\AppData\Local\wd\wd.exe 
FirewallRules: [{5DF49561-0939-4926-A930-9626B8437753}] => C:\Users\Yukimura Hio\AppData\Local\wd\wd.exe 
FirewallRules: [{955A80A8-4D02-4062-A8AF-B70E86478D6C}] => C:\Users\Yukimura Hio\AppData\Local\Chromatic\Utils\Updater.exe 
FirewallRules: [{13F92D94-FE01-4E66-A29C-E295FE119EE5}] => C:\Users\Yukimura Hio\AppData\Local\Chromatic\Utils\Updater.exe 
FirewallRules: [{7933DB86-5A82-4A7E-8B46-711F5A056ABF}] => C:\Users\Yukimura Hio\AppData\Local\Chromatic\Application\chromatic.exe 
FirewallRules: [{3649C42E-44EF-40F8-A748-3B3E22CA26EE}] => C:\Users\Yukimura Hio\AppData\Local\Chromatic\Application\chromatic.exe 
FirewallRules: [{241F352C-230A-4C64-99BD-D2126E547E9D}] => C:\Program Files (x86)\Steam\steamapps\common\Fable Anniversary\Binaries\Win32\Editor.exe 
FirewallRules: [{BF5EFEFF-EDAF-411E-9218-211836FA3B40}] => C:\Program Files (x86)\Steam\steamapps\common\Fable Anniversary\Binaries\Win32\Editor.exe 
FirewallRules: [{FC2AA6E4-3190-46AF-83C6-3497F7945AF3}] => C:\Program Files (x86)\Steam\steamapps\common\Fable Anniversary\Binaries\Win32\Fable Anniversary.exe 
FirewallRules: [{3B069974-4747-48C0-9FF0-13DA1767EFF3}] => C:\Program Files (x86)\Steam\steamapps\common\Fable Anniversary\Binaries\Win32\Fable Anniversary.exe 
FirewallRules: [{4724E1C5-A0FF-46E2-B7BC-AD334DA4B995}] => C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe 
FirewallRules: [{17C435F8-27D9-40AF-B66C-7BB1AADF0991}] => C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe 
FirewallRules: [{E689DC72-32F7-483A-8BAE-33F6E00357B8}] => C:\Program Files (x86)\Steam\steamapps\common\BioShock 2\MP\Builds\Binaries\Bioshock2Launcher.exe 
FirewallRules: [{E4DF939A-D945-418D-A79E-1D54642A0F4E}] => C:\Program Files (x86)\Steam\steamapps\common\BioShock 2\MP\Builds\Binaries\Bioshock2Launcher.exe 
FirewallRules: [{86A45F5F-5C53-46EF-B485-CE29795E9D48}] => C:\Program Files (x86)\Steam\steamapps\common\BioShock 2\SP\Builds\Binaries\Bioshock2Launcher.exe 
FirewallRules: [{D6B43812-A405-47EF-9363-EE8351161B31}] => C:\Program Files (x86)\Steam\steamapps\common\BioShock 2\SP\Builds\Binaries\Bioshock2Launcher.exe 
FirewallRules: [{5E6FBA48-38F2-4ECE-9945-D73AD34B5FD7}] => C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe 
FirewallRules: [{51716D3D-D6FA-4F5E-B62F-F02AF99C4B86}] => C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe 
FirewallRules: [{C24F6346-23C4-478D-899C-3EF9B30EA7B2}] => C:\Program Files (x86)\Steam\steamapps\common\Murdered Soul Suspect\Binaries\Win64\Murdered.exe 
FirewallRules: [{2F0DC6D0-36A3-4750-8BDC-55935AED6042}] => C:\Program Files (x86)\Steam\steamapps\common\Murdered Soul Suspect\Binaries\Win64\Murdered.exe 
FirewallRules: [{341BCC0B-4AAB-490D-B119-E8D04F37F301}] => C:\Program Files (x86)\Steam\steamapps\common\Trine\_enchanted_edition_\trine1_launcher.exe 
FirewallRules: [{AE87A1F4-DA77-482A-AB23-523709B45040}] => C:\Program Files (x86)\Steam\steamapps\common\Trine\_enchanted_edition_\trine1_launcher.exe 
FirewallRules: [{A14C26D5-5CB2-4EDA-8174-B9B88A1FBD18}] => C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe 
FirewallRules: [{F18BC099-5710-4EA9-8073-10FDAAE3D30A}] => C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe 
FirewallRules: [{33EA9918-E0C7-40F0-9254-5015FC0D94CD}] => C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe 
FirewallRules: [{C979148E-D677-4B0D-8572-6CF86F34B342}] => C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe 
FirewallRules: [{B94C84EE-95DB-4A29-9BEB-7F1C69D25DD1}] => C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe 
FirewallRules: [{6C41A320-3E3F-44EC-90E6-F3C395BCDA66}] => C:\Program Files (x86)\Steam\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe 
FirewallRules: [{71A946AF-BDDD-41ED-903B-810DED0EFEC5}] => C:\Program Files (x86)\Steam\steamapps\common\Sherlock Holmes versus Jack the Ripper\game.exe 
FirewallRules: [{E97DAD45-D28F-41FC-8672-C072611C1973}] => C:\Program Files (x86)\Steam\steamapps\common\Sherlock Holmes versus Jack the Ripper\game.exe 
FirewallRules: [{2299CDDA-B6B0-49C0-A491-A60C923A6157}] => C:\Program Files (x86)\Steam\steamapps\common\Portal 2\portal2.exe 
FirewallRules: [{1B5E72CB-4E1D-46A1-B737-7DDE7C216313}] => C:\Program Files (x86)\Steam\steamapps\common\Portal 2\portal2.exe 
FirewallRules: [{320E5F3E-CF7D-48C4-A163-B1941B8CF3E9}] => C:\Program Files (x86)\Steam\steamapps\common\Portal\hl2.exe 
FirewallRules: [{80B4D7F5-BFB5-4EEF-92A3-2218BF96A3DC}] => C:\Program Files (x86)\Steam\steamapps\common\Portal\hl2.exe 
FirewallRules: [{25AA44A3-7504-448F-990F-2D1F95B4786B}] => C:\Program Files (x86)\Steam\steamapps\common\Alice Madness Returns\Binaries\Win32\AliceMadnessReturns.exe 
FirewallRules: [{B3E91F0A-862C-4511-8E8D-2D9F5EC24559}] => C:\Program Files (x86)\Steam\steamapps\common\Alice Madness Returns\Binaries\Win32\AliceMadnessReturns.exe 
FirewallRules: [{5006E38D-2694-4482-86E4-A6267AA0E5AE}] => C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe 
FirewallRules: [{ECEC0048-290B-4D66-9F7F-3E2D6FD11544}] => C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe 
FirewallRules: [{B7BB19AE-8DBB-4F12-AC27-5FEF2867078E}] => D:\SteamLibrary\steamapps\common\Team Fortress 2\hl2.exe 
FirewallRules: [{C23018BB-7F55-426B-8A63-A063195B5DD7}] => D:\SteamLibrary\steamapps\common\Team Fortress 2\hl2.exe 
FirewallRules: [{3DEEDE15-0A43-4AD2-A54C-188AD1EE619E}] => C:\Games\World_of_Tanks\worldoftanks.exe 
FirewallRules: [{BDCFB741-E239-48FD-90F5-6FC4B1415CB4}] => C:\Games\World_of_Tanks\worldoftanks.exe 
FirewallRules: [{86D179A3-96AF-49BA-B18A-DBCDDF9C20B8}] => C:\Games\World_of_Tanks\WoTLauncher.exe 
FirewallRules: [{CE52AB2B-93E0-4FAA-A50E-921D45A8D9F6}] => C:\Games\World_of_Tanks\WoTLauncher.exe 
FirewallRules: [{55E268C7-B31E-4512-975C-0D4673B03C47}] => C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD Cinema\PowerDVDCinema12.exe 
FirewallRules: [{5BEDA456-C079-4411-9FA7-CF9F8C3F1EF6}] => C:\Program Files (x86)\Steam\Steam.exe 
FirewallRules: [{EF8AD8C9-FD98-40F2-9D62-987BDA0AB70A}] => C:\Program Files (x86)\Steam\Steam.exe 
FirewallRules: [{BA76F550-1E02-453E-B566-720EA344DEE4}] => C:\Program Files (x86)\Steam\bin\steamwebhelper.exe 
FirewallRules: [{1896613D-5B50-429C-A4FE-8030B925064F}] => C:\Program Files (x86)\Steam\bin\steamwebhelper.exe 
FirewallRules: [{985DB765-F90E-4ABB-B84B-280B49E6C2FE}] => C:\Program Files (x86)\Steam\steamapps\common\Outlast\OutlastLauncher.exe 
FirewallRules: [{6032E1F6-82DB-4EB0-96F6-823C502F694A}] => C:\Program Files (x86)\Steam\steamapps\common\Outlast\OutlastLauncher.exe 
FirewallRules: [{3A93DB3C-0BE4-4DED-98C4-1CEA55740761}] => C:\Program Files (x86)\Skype\Phone\Skype.exe 
FirewallRules: [{0389224A-A1A9-4B23-935A-FD4EFC1A9596}] => D:\SteamLibrary\steamapps\common\Trine\_enchanted_edition_\trine1_launcher.exe 
FirewallRules: [{5A1ADD25-84B3-45E5-8DE2-02428F7A4AC0}] => D:\SteamLibrary\steamapps\common\Trine\_enchanted_edition_\trine1_launcher.exe 
FirewallRules: [{61EA3C5D-199C-43A7-9EDF-F61D372B7153}] => D:\SteamLibrary\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe 
FirewallRules: [{CAEC4C73-F01C-4D1D-9251-6ADEDC6D78AA}] => D:\SteamLibrary\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe 
FirewallRules: [{BD37584E-FFB4-4AAC-BCB5-54A927D85AF6}] => D:\SteamLibrary\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe 
FirewallRules: [{9CE594CD-B705-4A3F-AC6F-567FDDA95EA2}] => D:\SteamLibrary\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe 
FirewallRules: [{5E0D9C16-4431-4B50-A562-B0D57BAC6FE0}] => D:\SteamLibrary\steamapps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe 
FirewallRules: [{054ED145-4460-4375-B8B6-72AF703CFB49}] => D:\SteamLibrary\steamapps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe 
FirewallRules: [{C94E2A46-D916-4A20-8514-44F061A0981B}] => C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe 
FirewallRules: [{68EAF3E6-0A64-4BDB-AED2-AA447A4B8A42}] => C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe 
FirewallRules: [{949A07A8-ABB2-4E85-A5D5-71E54FEDF806}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe 
FirewallRules: [{DF1D3888-0469-439C-9165-76D4C7126AEC}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe 
FirewallRules: [{99AA7932-D220-4876-A356-46A837902857}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe 
FirewallRules: [{3DE701DC-553B-430A-BA07-03CAA0800A35}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe 
FirewallRules: [{FE14405E-E3E6-4324-ABA6-65DD03B9934A}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe 
FirewallRules: [{9B75478A-0298-4E38-9676-310442673AAF}] => D:\SteamLibrary\steamapps\common\DeadRealm\DeadRealm.exe 
FirewallRules: [{48D6E084-C563-4C07-86AB-6F436F170489}] => D:\SteamLibrary\steamapps\common\DeadRealm\DeadRealm.exe 
FirewallRules: [{4B271CE5-A9C2-49C5-BAA8-09DFAEC864EC}] => C:\Program Files (x86)\Steam\steamapps\common\BioShock 2 Remastered\Build\Final\Bioshock2.exe 
FirewallRules: [{DFD00ABA-36C6-4C12-B8E7-FEE3115FE347}] => C:\Program Files (x86)\Steam\steamapps\common\BioShock 2 Remastered\Build\Final\Bioshock2.exe 
FirewallRules: [{19A100E6-3EDB-4542-9D2C-40EE536B2B6B}] => C:\Program Files (x86)\Steam\steamapps\common\The Testament of Sherlock Holmes\game.exe 
FirewallRules: [{553157DB-600B-4C90-8322-37479571A2E0}] => C:\Program Files (x86)\Steam\steamapps\common\The Testament of Sherlock Holmes\game.exe 
FirewallRules: [{7A16030E-60FC-4C44-95D3-945E2879491B}] => C:\Program Files (x86)\Steam\steamapps\common\CrawlersAndBrawlers\CrawlersAndBrawlers.exe 
FirewallRules: [{D8325A25-E518-4AAB-B480-28A8C93DEBCC}] => C:\Program Files (x86)\Steam\steamapps\common\CrawlersAndBrawlers\CrawlersAndBrawlers.exe 
FirewallRules: [{6753F4F0-54B0-43B4-ADC1-50E15E37022B}] => C:\Program Files (x86)\Steam\steamapps\common\Sniper Elite 3\Launcher\Sniper3Launcher.exe 
FirewallRules: [{C3E382C1-C766-443B-9748-5F67C21ED21E}] => C:\Program Files (x86)\Steam\steamapps\common\Sniper Elite 3\Launcher\Sniper3Launcher.exe 
FirewallRules: [{A72CAE0F-EC32-46CE-84A6-1FC9D749DF6E}] => C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe 
FirewallRules: [{341DEA50-0C41-4150-A512-6CBE3A97AB65}] => C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe 
FirewallRules: [{960BFDA9-94E9-4A21-98F2-065E1A816BDD}] => C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe 
FirewallRules: [{AEB80887-7289-43BF-A6FA-ED14DA75E1BA}] => C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe 
FirewallRules: [{F715B6C4-DE01-4094-9C35-9781D7576A8E}] => C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe 
FirewallRules: [{31D513BC-B341-4FA6-A32D-D2E32917B826}] => C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe 
FirewallRules: [{072A6208-4BB0-4EAB-9C49-EBCE174F98DA}] => C:\Program Files (x86)\GameforgeLive\gfl_client.exe 
FirewallRules: [TCP Query User{238D0378-738A-4AD1-9AD9-412FC8AB9F15}C:\gameforge\deu_deu\runes of magic\launcher.exe] => C:\gameforge\deu_deu\runes of magic\launcher.exe 
FirewallRules: [UDP Query User{9C18E72A-094E-4292-8D56-BE4CBDAE1D47}C:\gameforge\deu_deu\runes of magic\launcher.exe] => C:\gameforge\deu_deu\runes of magic\launcher.exe 
FirewallRules: [{A5017DEE-57BB-43AF-8599-D6F7549CF0BB}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Splinter Cell Blacklist\Blacklist_Launcher.exe 
FirewallRules: [{E21C55C1-00CB-44D7-9054-50F1B21AA800}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Splinter Cell Blacklist\Blacklist_Launcher.exe 
FirewallRules: [{DE718FAB-4197-4AE8-B58D-8ADDD8680107}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Splinter Cell Blacklist\src\SYSTEM\Blacklist_game.exe 
FirewallRules: [{3982BECE-1277-4318-A6D9-30882B196553}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Splinter Cell Blacklist\src\SYSTEM\Blacklist_game.exe 
FirewallRules: [{CEB95883-053B-4F99-A201-AF3CE37E7DF3}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Splinter Cell Blacklist\src\SYSTEM\Blacklist_DX11_game.exe 
FirewallRules: [{95C88118-3E95-4D64-8822-CCC456C9807D}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Splinter Cell Blacklist\src\SYSTEM\Blacklist_DX11_game.exe 
FirewallRules: [{127A8E38-BDAE-49E5-AF16-21B2CB82DB15}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Splinter Cell Blacklist\src\SYSTEM\gu.exe 
FirewallRules: [{0813AB48-A2AE-4D58-8CAA-5C7517478323}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Splinter Cell Blacklist\src\SYSTEM\gu.exe 
FirewallRules: [{B341D4AB-57EF-44C5-97A3-42F98B4F024A}] => C:\Program Files (x86)\Steam\steamapps\common\Tomb Raider\TombRaider.exe 
FirewallRules: [{3349406C-A957-4A9E-9FFB-B6535FB953AD}] => C:\Program Files (x86)\Steam\steamapps\common\Tomb Raider\TombRaider.exe 
FirewallRules: [{C6F9D87D-B6BF-49BA-BF3E-8399E4D45A70}] => c:\program files (x86)\real\realplayer\RPDS\Bin\rpdsvc.exe 
FirewallRules: [{770A045B-1D5D-4115-89A8-4CCD5BFCAC03}] => C:\Program Files (x86)\Steam\steamapps\common\Party Hard\PartyHardGame.exe 
FirewallRules: [{CBEE2B82-25D9-4B86-9471-9CA26A875243}] => C:\Program Files (x86)\Steam\steamapps\common\Party Hard\PartyHardGame.exe 
FirewallRules: [{51425F89-3362-44C8-A8B2-36985342F757}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\rainbowsix.exe 
FirewallRules: [{1EEC71BE-9B97-43DF-A3E9-7CA6F6EC94B5}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\rainbowsix.exe 
FirewallRules: [{7C705E8C-F641-4C77-A818-8AA9B9502489}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe 
FirewallRules: [{26019909-0CF5-49D9-8CA9-FA970C77ACBE}] => C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe 
FirewallRules: [{93334B68-89A4-4472-845B-5BCFFA549607}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe 
FirewallRules: [{F96BD2FF-D366-443B-BCC2-F902D607468A}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe 
FirewallRules: [{0BE5137A-0BE4-491B-BBCD-0896FFDB630E}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe 
FirewallRules: [{051F52AD-9822-410B-8302-421A298C22C7}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe 
FirewallRules: [{35ACF53C-4C72-4D7E-AAD6-02196078264B}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access 
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service 
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater 
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service   
==================== Wiederherstellungspunkte =========================   
23-11-2016 19:03:43 Geplanter Prüfpunkt 
02-12-2016 19:37:54 Geplanter Prüfpunkt 
10-12-2016 11:05:46 Windows Update 
11-12-2016 14:14:22 JRT Pre-Junkware Removal   
==================== Fehlerhafte Geräte im Gerätemanager =============     
==================== Fehlereinträge in der Ereignisanzeige: =========================   
Applikationsfehler: 
================== 
Error: (12/11/2016 02:15:06 PM) (Source: Application Error) (EventID: 1000) (User: ) 
Description: Name der fehlerhaften Anwendung: SkypeApp.exe, Version: 11.9.261.0, Zeitstempel: 0x582508e5 
Name des fehlerhaften Moduls: CoreUIComponents.dll, Version: 0.0.0.0, Zeitstempel: 0x58258422 
Ausnahmecode: 0xc0000005 
Fehleroffset: 0x0000000000072fda 
ID des fehlerhaften Prozesses: 0x750 
Startzeit der fehlerhaften Anwendung: 0x01d253aff4f6e5c8 
Pfad der fehlerhaften Anwendung: C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeApp.exe 
Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\CoreUIComponents.dll 
Berichtskennung: dbb94da7-baa8-4401-a57a-9d1cad888648 
Vollständiger Name des fehlerhaften Pakets: Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: App   
Error: (12/11/2016 02:14:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) 
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".   
Details: 
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.   
System Error: 
Zugriff verweigert 
.   
Error: (12/11/2016 01:44:12 PM) (Source: Application Error) (EventID: 1000) (User: ) 
Description: Name der fehlerhaften Anwendung: microsoftedgecp.exe, Version: 11.0.14393.82, Zeitstempel: 0x57a55786 
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 
Ausnahmecode: 0xc0000604 
Fehleroffset: 0x0000000000000000 
ID des fehlerhaften Prozesses: 0x2b6c 
Startzeit der fehlerhaften Anwendung: 0x01d253ac46206469 
Pfad der fehlerhaften Anwendung: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe 
Pfad des fehlerhaften Moduls: unknown 
Berichtskennung: e11669f3-aab9-4c92-97f2-f4d5393a9769 
Vollständiger Name des fehlerhaften Pakets: Microsoft.MicrosoftEdge_38.14393.0.0_neutral__8wekyb3d8bbwe 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: MicrosoftEdge   
Error: (12/11/2016 12:58:18 PM) (Source: Application Error) (EventID: 1000) (User: ) 
Description: Name der fehlerhaften Anwendung: chrome.exe, Version: 55.0.2883.87, Zeitstempel: 0x5848db5a 
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 10.0.14393.479, Zeitstempel: 0x582588e6 
Ausnahmecode: 0xe0000008 
Fehleroffset: 0x0000000000017788 
ID des fehlerhaften Prozesses: 0x1128 
Startzeit der fehlerhaften Anwendung: 0x01d253a20f869405 
Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 
Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\KERNELBASE.dll 
Berichtskennung: 07e9f398-da0c-4c21-a19f-7fb503eecf1d 
Vollständiger Name des fehlerhaften Pakets:  
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:   
Error: (12/11/2016 12:28:54 PM) (Source: Application Error) (EventID: 1000) (User: ) 
Description: Name der fehlerhaften Anwendung: chrome.exe, Version: 55.0.2883.87, Zeitstempel: 0x5848db5a 
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 10.0.14393.479, Zeitstempel: 0x582588e6 
Ausnahmecode: 0xe0000008 
Fehleroffset: 0x0000000000017788 
ID des fehlerhaften Prozesses: 0x2304 
Startzeit der fehlerhaften Anwendung: 0x01d2539fbf749368 
Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 
Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\KERNELBASE.dll 
Berichtskennung: a4346187-31a8-4770-9c24-b0c17b6c1308 
Vollständiger Name des fehlerhaften Pakets:  
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:   
Error: (12/10/2016 11:03:00 PM) (Source: Application Hang) (EventID: 1002) (User: ) 
Description: Programm explorer.exe, Version 10.0.14393.479 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.   
Prozess-ID: 193c   
Startzeit: 01d25321fe2a2649   
Beendigungszeit: 4294967295   
Anwendungspfad: C:\Windows\explorer.exe   
Berichts-ID: 63ca741d-bf24-11e6-9c2b-b8aeedf29b10   
Vollständiger Name des fehlerhaften Pakets:    
Auf das fehlerhafte Paket bezogene Anwendungs-ID:   
Error: (12/10/2016 11:02:33 PM) (Source: Application Hang) (EventID: 1002) (User: ) 
Description: Programm rundll32.exe, Version 10.0.14393.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.   
Prozess-ID: 1c34   
Startzeit: 01d2532e796e85a2   
Beendigungszeit: 4294967295   
Anwendungspfad: C:\Windows\System32\rundll32.exe   
Berichts-ID: 58adfd3a-bf24-11e6-9c2b-b8aeedf29b10   
Vollständiger Name des fehlerhaften Pakets:    
Auf das fehlerhafte Paket bezogene Anwendungs-ID:   
Error: (12/10/2016 09:58:34 PM) (Source: Application Error) (EventID: 1000) (User: ) 
Description: Name der fehlerhaften Anwendung: chrome.exe, Version: 54.0.2840.99, Zeitstempel: 0x582209d1 
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 10.0.14393.479, Zeitstempel: 0x582588e6 
Ausnahmecode: 0xe0000008 
Fehleroffset: 0x0000000000017788 
ID des fehlerhaften Prozesses: 0x3288 
Startzeit der fehlerhaften Anwendung: 0x01d2532339a76221 
Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 
Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\KERNELBASE.dll 
Berichtskennung: 4fec8ed7-7f2f-4bb6-9467-0806d8142ea3 
Vollständiger Name des fehlerhaften Pakets:  
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:   
Error: (12/10/2016 05:22:46 PM) (Source: Application Error) (EventID: 1000) (User: ) 
Description: Name der fehlerhaften Anwendung: chrome.exe, Version: 54.0.2840.99, Zeitstempel: 0x582209d1 
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 10.0.14393.479, Zeitstempel: 0x582588e6 
Ausnahmecode: 0xe0000008 
Fehleroffset: 0x0000000000017788 
ID des fehlerhaften Prozesses: 0x1d10 
Startzeit der fehlerhaften Anwendung: 0x01d252fb94973f7f 
Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 
Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\KERNELBASE.dll 
Berichtskennung: 58b2f62f-0ba0-46f3-ae76-3a41cd60aefd 
Vollständiger Name des fehlerhaften Pakets:  
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:   
Error: (12/10/2016 01:42:50 PM) (Source: Application Error) (EventID: 1000) (User: ) 
Description: Name der fehlerhaften Anwendung: chrome.exe, Version: 54.0.2840.99, Zeitstempel: 0x582209d1 
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 10.0.14393.479, Zeitstempel: 0x582588e6 
Ausnahmecode: 0xe0000008 
Fehleroffset: 0x0000000000017788 
ID des fehlerhaften Prozesses: 0x1cb0 
Startzeit der fehlerhaften Anwendung: 0x01d252e227b68306 
Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe 
Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\KERNELBASE.dll 
Berichtskennung: 92186554-afba-4a41-b2a9-ad5eaf76428f 
Vollständiger Name des fehlerhaften Pakets:  
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:     
Systemfehler: 
============= 
Error: (12/11/2016 02:15:51 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT) 
Description: Der Server "{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.   
Error: (12/11/2016 01:49:23 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT) 
Description: Der Server "{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.   
Error: (12/11/2016 01:47:34 PM) (Source: Application Popup) (EventID: 56) (User: ) 
Description: ACPI5   
Error: (12/11/2016 01:41:58 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT) 
Description: Der Server "{5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.   
Error: (12/11/2016 01:39:28 PM) (Source: Application Popup) (EventID: 56) (User: ) 
Description: ACPI5   
Error: (12/11/2016 01:27:41 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) 
Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Windows Search" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler:  
Es wird bereits eine Instanz des Dienstes ausgeführt.   
Error: (12/11/2016 01:27:12 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) 
Description: Dienst "Steam Client Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.   
Error: (12/11/2016 01:27:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) 
Description: Der Dienst "Spybot-S&D 2 Security Center Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.   
Error: (12/11/2016 01:27:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) 
Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.   
Error: (12/11/2016 01:27:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) 
Description: Der Dienst "Spybot-S&D 2 Updating Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.     
==================== Speicherinformationen ===========================    
Prozessor: Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz 
Prozentuale Nutzung des RAM: 20% 
Installierter physikalischer RAM: 16336.23 MB 
Verfügbarer physikalischer RAM: 12953.79 MB 
Summe virtueller Speicher: 18768.23 MB 
Verfügbarer virtueller Speicher: 15477.61 MB   
==================== Laufwerke ================================   
Drive c: (Boot) (Fixed) (Total:869.8 GB) (Free:113.48 GB) NTFS 
Drive d: (Recover) (Fixed) (Total:60 GB) (Free:21.17 GB) NTFS 
Drive h: (TOSHIBA EXT) (Fixed) (Total:465.76 GB) (Free:367.1 GB) NTFS   
==================== MBR & Partitionstabelle ==================   
======================================================== 
Disk: 0 (Size: 931.5 GB) (Disk ID: A8E755A2)   
Partition: GPT.   
======================================================== 
Disk: 1 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: DD65FF86) 
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)   
==================== Ende von Addition.txt ============================   Hey Matthias,  
Ich glaube das Problem ist behoben. Ich sehe jetzt seit Stunden kein unsichtbares Fenster mehr im Hintergrund.  
Vielen herzlichen Dank für deine Hilfe, ich werde die Seite auf jeden Fall weiterempfehlen :D :dankeschoen:  
Mit freundlichen Grüßen 
Yukimura    |