hier erstmal noch der txt von jrt Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.2 (03.10.2017)
Operating System: Windows 10 Pro x64
Ran by Tingeltangel Bob (Administrator) on 03.04.2017 at 16:06:43,11
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 1
Successfully deleted: C:\ProgramData\1478767317.bdinstall.bin (File)
Registry: 0
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 03.04.2017 at 16:07:13,54
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 15-03-2017
durchgeführt von Tingeltangel Bob (03-04-2017 16:12:10)
Gestartet von C:\Users\Tingeltangel Bob\Downloads
Windows 10 Pro Version 1607 (X64) (2016-11-10 03:56:42)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-3393826999-1603443876-4149317521-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3393826999-1603443876-4149317521-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-3393826999-1603443876-4149317521-1000 - Limited - Disabled) => C:\Users\defaultuser0
Gast (S-1-5-21-3393826999-1603443876-4149317521-501 - Limited - Disabled)
Tingeltangel Bob (S-1-5-21-3393826999-1603443876-4149317521-1001 - Administrator - Enabled) => C:\Users\Tingeltangel Bob
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Bitdefender-Virenschutz (Enabled - Up to date) {3FB17364-4FCC-0FA7-6BBF-973897395371}
AS: Bitdefender-Spyware-Schutz (Enabled - Up to date) {84D09280-69F6-0029-510F-AC4AECBE19CC}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Bitdefender Firewall (Enabled) {078AF241-05A3-0EFF-40E0-3E0D69EA140A}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Ansel (Version: 378.92 - NVIDIA Corporation) Hidden
APP Shop v1.0.24 (HKLM-x32\...\{90242E9B-BC60-46E3-8EE7-8E953F702280}_is1) (Version: 1.0.24 - ASRock Inc.)
ARK: Survival Evolved (HKLM\...\Steam App 346110) (Version: - Studio Wildcard)
ASRock App Charger v1.0.6 (HKLM\...\ASRock App Charger_is1) (Version: 1.0.6 - ASRock Inc.)
ASRock Restart to UEFI v1.0.5 (HKLM-x32\...\ASRock Restart to UEFI_is1) (Version: 1.0.5 - )
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.49.14731 - Electronic Arts)
Bitdefender Internet Security 2015 (HKLM\...\Bitdefender) (Version: 19.6.0.326 - Bitdefender)
CPUID CPU-Z 1.77 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
Discord (HKU\S-1-5-21-3393826999-1603443876-4149317521-1001\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
DivX-Setup (HKLM\...\DivX Setup) (Version: 3.0.0.224 - DivX, LLC)
Farming Simulator 17 (HKLM-x32\...\FarmingSimulator2017_is1) (Version: 1.0.0.0 - GIANTS Software)
Geeks3D FurMark 1.18.2.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D)
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1173 - Intel Corporation)
Intel(R) Network Connections 20.2.4001.0 (HKLM\...\PROSetDX) (Version: 20.2.4001.0 - Intel)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.6.0.1029 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.12 - Intel(R) Corporation) Hidden
LockHunter 3.1, 32/64 bit (HKLM\...\LockHunter_is1) (Version: - Crystal Rich Ltd)
Logitech Gaming Software 8.88 (HKLM\...\Logitech Gaming Software) (Version: 8.88.30 - Logitech Inc.)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Mozilla Firefox 52.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 52.0.2 (x86 de)) (Version: 52.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 52.0.2.6291 - Mozilla)
MSI Afterburner 4.3.0 Beta 14 (HKLM-x32\...\Afterburner) (Version: 4.3.0 Beta 14 - MSI Co., LTD)
NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 378.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 378.92 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.4.0.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.4.0.70 - NVIDIA Corporation)
NVIDIA Grafiktreiber 378.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 378.92 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.34.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.23 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NvNodejs (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
NvTelemetry (Version: 2.3.16.0 - NVIDIA Corporation) Hidden
NvvHci (Version: 2.02.0.5 - NVIDIA Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.4.3.15631 - Electronic Arts, Inc.)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.103.44.0 - Overwolf Ltd.)
Overwolf.Setup.VC100CRTx64.Dist (HKLM\...\{EC9D5554-6852-4A55-81BB-AC02C7A8CFED}) (Version: 1.0.0 - Overwolf)
Overwolf.Setup.VC100CRTx86.Dist (x32 Version: 1.0.0 - Overwolf) Hidden
Razer Surround (HKLM-x32\...\Razer Surround) (Version: 1.05.26 - Razer Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.15.1104 - Razer Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7614 - Realtek Semiconductor Corp.)
Resident Evil / biohazard HD REMASTER (HKLM\...\Steam App 304240) (Version: - CAPCOM Co., Ltd.)
RivaTuner Statistics Server 6.6.0 (HKLM-x32\...\RTSS) (Version: 6.6.0 - Unwinder)
SHIELD Streaming (Version: 7.1.0351 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
Spotify (HKU\S-1-5-21-3393826999-1603443876-4149317521-1001\...\Spotify) (Version: 1.0.50.41368.gbd68dbef - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Titanfall™ 2 (HKLM-x32\...\{4BD80373-FEE7-45B6-8249-6E8E98717405}) (Version: 1.0.0.4 - Electronic Arts, Inc.)
Total War: WARHAMMER (HKLM\...\Steam App 364360) (Version: - Creative Assembly)
Ubuntu (HKLM-x32\...\Wubi) (Version: 12.10-rev273 - Ubuntu)
Uplay (HKLM-x32\...\Uplay) (Version: 4.7 - Ubisoft)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-3393826999-1603443876-4149317521-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Tingeltangel Bob\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\amd64\FileSyncApi64.dll => (Der Dateneintrag hat 12 mehr Zeichen).
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {234ECEC4-FBEE-46F3-88FB-D6F990020E8C} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-02-23] (NVIDIA Corporation)
Task: {573A3B0A-2173-4AC2-8CDA-DB98E0F7772F} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Tingeltangel Bob\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
Task: {83902CB9-AEE5-4F11-8518-1D8F72094427} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2017-03-21] (Overwolf LTD)
Task: {919432E7-45D5-4316-9277-89974AB33D56} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {ADFAB159-4363-4F68-8057-7E200F578627} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {C8F60C0F-DFFB-4E9F-8C63-5045236E241C} - System32\Tasks\AsrAPPShop => C:\Program Files (x86)\ASRock Utility\APP Shop\AsrAPPShop.exe [2016-02-05] ()
Task: {CC752479-5287-4850-8B97-78264E8D59EE} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {CCE15559-B8DF-4A25-952A-F28D7290B31F} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {CDF0F8CB-B5AD-4F2A-BB78-E1C5885E5DE5} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23] (NVIDIA Corporation)
Task: {DE7A3377-D6B6-4FEE-ACC7-710AF9CC8336} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-02-23] (NVIDIA Corporation)
Task: {F9608C63-EDB3-4C38-B0DD-90F1B97CA222} - System32\Tasks\DivXUpdate => C:\Program Files (x86)\Common Files\DivX Shared\DivX Update\DivXUpdate.exe [2017-02-03] (DivX, LLC)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\Windows\SYSTEM32\ism32k.dll
2017-03-14 20:25 - 2017-03-04 09:19 - 02681200 _____ () C:\Windows\system32\CoreUIComponents.dll
2016-11-10 10:43 - 2015-11-04 15:06 - 00265080 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\txmlutil.dll
2016-11-10 10:43 - 2013-09-03 15:29 - 00101328 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\bdmetrics.dll
2016-11-10 10:43 - 2016-03-02 17:08 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\UI\accessl.ui
2016-11-10 10:43 - 2015-11-10 15:23 - 00152816 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\bdfwcore.dll
2017-02-09 00:52 - 2017-02-09 00:52 - 01008448 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_02451_004\ashttpbr.mdl
2017-02-09 00:52 - 2017-02-09 00:52 - 00541952 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_02451_004\ashttpdsp.mdl
2017-02-09 00:52 - 2017-02-09 00:52 - 03243920 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_02451_004\ashttpph.mdl
2017-02-09 00:52 - 2017-02-09 00:52 - 01544568 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_02451_004\ashttprbl.mdl
2016-09-25 01:20 - 2016-09-25 01:21 - 00189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2017-03-14 20:25 - 2017-03-04 09:19 - 02681200 _____ () C:\Windows\SYSTEM32\CoreUIComponents.dll
2016-11-10 06:01 - 2016-11-10 06:01 - 01864384 _____ () C:\Users\Tingeltangel Bob\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\amd64\ClientTelemetry.dll
2017-03-14 20:25 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-03-14 20:25 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-03-14 20:25 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-03-14 20:25 - 2017-03-04 08:05 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2017-03-14 20:25 - 2017-03-04 08:05 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-03-14 20:25 - 2017-03-04 08:08 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2017-03-18 03:38 - 2017-03-18 03:39 - 00077312 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-03-18 03:38 - 2017-03-18 03:39 - 00182784 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-03-18 03:38 - 2017-03-18 03:39 - 41048064 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-03-18 03:38 - 2017-03-18 03:39 - 02236896 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.12.112.0_x64__kzf8qxf38zg5c\roottools.dll
2016-11-10 07:12 - 2017-02-23 20:35 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2016-11-10 07:12 - 2017-02-23 20:35 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-11-10 08:13 - 2016-09-07 06:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-03-14 20:26 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-11-10 07:12 - 2017-02-23 20:35 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-11-10 07:12 - 2017-02-23 20:35 - 03774400 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll
2016-11-10 07:12 - 2017-02-23 20:35 - 00900032 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\Battle.net-Setup.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\DivXInstaller.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FarmingSimulator2017Patch1.3.1.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FarmingSimulator2017Patch1.3.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\flashplayer24au_d_install.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FRST64.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_brantnerDPW18000.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_DCK_Compass.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_DCK_RoundBalerAutoUnload(1).exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_DCK_RoundBalerAutoUnload.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_fendtHarvesterPackage.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_holmerPack(1).exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_holmerPack.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_kroneBigXPack.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_lizardFloodLightTrailer.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_Lossberg.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_mengeleGarant5402.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_newHollandLM742.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_oekoPlusRBG_Double.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_rabaudSweeperBSM.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_shedPackage.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FS17_veenhuisW400.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\FurMark_1.18.2.0_Setup.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\Hearthstone-Setup.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\lockhuntersetup_3-1-1.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\SteamSetup.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\The_New_Bitdefender_UninstallTool.exe:BDU [0]
AlternateDataStreams: C:\Users\Tingeltangel Bob\Downloads\wubi_19367.exe:BDU [0]
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2016-07-16 13:47 - 2016-11-10 10:11 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-3393826999-1603443876-4149317521-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
HKU\S-1-5-21-3393826999-1603443876-4149317521-1001\...\StartupApproved\Run: => "Spotify"
HKU\S-1-5-21-3393826999-1603443876-4149317521-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-3393826999-1603443876-4149317521-1001\...\StartupApproved\Run: => "Steam"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{080923E8-82BD-4C88-BDD4-35C232C9149B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{39069182-652B-4CAD-B3FD-E4D6D9162B3B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{99EAF924-FAC7-4134-8FF9-7CAB53BC7BF7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{F5B54B38-17A6-40C3-B22D-650A34654F89}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{067F71CF-B377-4500-8E2A-7ACDA95799F8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{9F3D2853-109F-4EB4-B82D-DA52F62B1598}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{2AC2A268-F44E-4DAC-BE63-917B48C5401B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{FD5B3178-C51E-4F95-973A-1A06BED9234F}C:\users\tingeltangel bob\appdata\local\temp\rarsfx1\x32\pcsftool.exe] => (Allow) C:\users\tingeltangel bob\appdata\local\temp\rarsfx1\x32\pcsftool.exe
FirewallRules: [UDP Query User{2D1D4D4B-6B11-40E7-8FD6-3D9D32899850}C:\users\tingeltangel bob\appdata\local\temp\rarsfx1\x32\pcsftool.exe] => (Allow) C:\users\tingeltangel bob\appdata\local\temp\rarsfx1\x32\pcsftool.exe
FirewallRules: [TCP Query User{E87195BF-2DBE-4EC9-81E3-73D50AC42858}C:\users\tingeltangel bob\appdata\local\temp\rarsfx1\x64\pcsftool.exe] => (Allow) C:\users\tingeltangel bob\appdata\local\temp\rarsfx1\x64\pcsftool.exe
FirewallRules: [UDP Query User{6800F640-6688-407A-A145-B28B30AB9842}C:\users\tingeltangel bob\appdata\local\temp\rarsfx1\x64\pcsftool.exe] => (Allow) C:\users\tingeltangel bob\appdata\local\temp\rarsfx1\x64\pcsftool.exe
FirewallRules: [{65B41F52-54E1-413C-80FB-5C84E40BB4F1}] => (Block) C:\users\tingeltangel bob\appdata\local\temp\rarsfx1\x64\pcsftool.exe
FirewallRules: [{5C98B44A-AE01-46E3-A0D7-F88A8E8B3887}] => (Block) C:\users\tingeltangel bob\appdata\local\temp\rarsfx1\x64\pcsftool.exe
FirewallRules: [{6EA7BAC7-4636-42F9-A3AB-AE5BE5797C9D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{CD151A4A-C23C-4EFC-8C11-122E441D8428}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{070A0C3B-A416-4378-88D5-2D27CB7A49BD}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\FarmingSimulator2017.exe
FirewallRules: [{197BB513-49AB-457E-AFAD-30850C37A4F8}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\FarmingSimulator2017.exe
FirewallRules: [{FD122FA3-043E-4010-8233-EBD4940BF5CB}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\x86\FarmingSimulator2017Game.exe
FirewallRules: [{74DB78A1-602B-4DD3-A976-7C7698F8B0CB}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\x86\FarmingSimulator2017Game.exe
FirewallRules: [{EF775AB4-2180-49B8-8E49-92D89650C553}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\x64\FarmingSimulator2017Game.exe
FirewallRules: [{19113193-8617-42C2-8C27-674620CCB083}] => (Allow) C:\Program Files (x86)\Farming Simulator 2017\x64\FarmingSimulator2017Game.exe
FirewallRules: [{2A111450-3BCE-45DB-A812-5631826F942C}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\RisingWorld\risingworldx64.exe
FirewallRules: [{1C1813A7-3AC5-40F9-A8F8-CD0689B96F0F}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\RisingWorld\risingworldx64.exe
FirewallRules: [{45B1FAC4-1F0E-45CC-BFA1-E29D5D5A1A45}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{32B74AF0-CC17-48FC-B3F9-7999DC35BE23}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{C53D5461-78E6-4AD1-9BC3-3F30E36B5D7A}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{0F7EAABB-5EFD-46FB-9B6F-474BB20560F5}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{712C7845-22B2-4DE5-9842-52873706393E}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{8BFF8643-ED2F-473F-9A4B-4A47C2201B53}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{5FDD46C4-26CC-4946-B9AD-3953F73505B1}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{4B4E8C54-4454-40FE-9C68-5DDFC709FD1A}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{D18CAC74-E47C-4963-9A95-8DC6660FEB1B}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [{9E2C0B12-6845-4A94-8490-E6338C74C21C}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [{34D0A9A5-98DA-4E98-A8F9-322341E7652B}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\pCars\pCARS64.exe
FirewallRules: [{5BF1C26E-974A-4DAF-BAEE-00CDF07420D4}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\pCars\pCARS64.exe
FirewallRules: [{9710BA5B-D5BE-4B4A-A717-9D92536E4855}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\mordheim\mordheim.exe
FirewallRules: [{7CDE134D-BF99-43AA-A576-864A022A35C3}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\mordheim\mordheim.exe
FirewallRules: [{848EE1EA-F5C4-42AB-8153-70C64085AD92}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\This War of Mine\This War of Mine.exe
FirewallRules: [{ACCE94EC-677F-4BC5-B937-4BFBD73293BD}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\This War of Mine\This War of Mine.exe
FirewallRules: [{84C6D4EA-C83A-430E-AA14-14B0C0937FAE}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\This War of Mine\Storyteller.exe
FirewallRules: [{36EB76AB-170D-4AC8-B2D3-29E420430AD4}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\This War of Mine\Storyteller.exe
FirewallRules: [{82E897FF-F8D4-4AC2-A7B8-74E39634B246}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\MK10\Binaries\Retail\MK10.exe
FirewallRules: [{FD88DC71-3F78-4D69-BEF5-DDC332C85A40}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\MK10\Binaries\Retail\MK10.exe
FirewallRules: [{F7D66D26-62C6-4FB6-93CA-BAB822B74529}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\MK10\Binaries\Retail\MKXLauncher.exe
FirewallRules: [{7FBE001E-5C99-472A-BC45-D763F760E090}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\MK10\Binaries\Retail\MKXLauncher.exe
FirewallRules: [{FBE62D11-03EC-44E4-BA50-325B2FB5F4DD}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Besiege\Besiege.exe
FirewallRules: [{12D9F527-64D8-4EB6-9116-CD3CB52B006B}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Besiege\Besiege.exe
FirewallRules: [{68327BC3-F2B8-40DF-866C-734124FAF2B7}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe
FirewallRules: [{310F2587-C09A-4CC9-8C69-8BC9D814B097}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe
FirewallRules: [{2BFBF6A8-35A4-4095-9A68-57B6304A4E9E}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{C0AC47D5-822D-4366-BDB7-ADCC0CAEFC94}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{3C868F76-BD92-4F91-8C60-17038DD6F068}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Age2HD\Launcher.exe
FirewallRules: [{92C8704B-AD4F-4911-8DD0-25AE09C3E2F9}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Age2HD\Launcher.exe
FirewallRules: [{0F0DB087-BCD5-4CF1-A5D0-2C45EB311FAC}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{5A16B77B-46A7-4CBF-986C-7900EAFE16C5}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{8B7BD33B-BC84-4EBF-A1B0-6624EE780176}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe
FirewallRules: [{C331DF0B-9D66-46DD-B5A6-7D2D74BD69AA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe
FirewallRules: [{D261DD5A-8932-4E21-8D08-2DCED910D8DF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{24914943-C0D3-4DD4-8D7A-2DFB056943C9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{9F642E7E-93C0-47BE-B7BC-57F004D80563}] => (Allow) C:\Program Files (x86)\Origin Games\Titanfall2\Titanfall2.exe
FirewallRules: [{076BFF4F-FEBC-4833-B4D0-34B18D7D05A8}] => (Allow) C:\Program Files (x86)\Origin Games\Titanfall2\Titanfall2.exe
FirewallRules: [{451E55D8-82E3-4776-94EA-5D395DB11BEB}] => (Allow) C:\Program Files (x86)\Origin Games\Titanfall2\Titanfall2_trial.exe
FirewallRules: [{F49284EA-D657-42CB-85A2-3CB6290E0770}] => (Allow) C:\Program Files (x86)\Origin Games\Titanfall2\Titanfall2_trial.exe
FirewallRules: [{F61E8A11-57C5-433A-B94E-AD7017C4C81E}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 1\bf1Trial.exe
FirewallRules: [{702C5BD2-8741-4B34-BE56-80B4F928E2CA}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 1\bf1Trial.exe
FirewallRules: [{D5E35FA7-D02E-4798-9B58-608FA55913BB}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 1\bf1.exe
FirewallRules: [{12CB76E7-CA42-45AD-8E97-CCD88332DACB}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 1\bf1.exe
FirewallRules: [{2CC74330-2A06-44C7-9ABE-68C57454B9E4}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Portal 2\portal2.exe
FirewallRules: [{512B2876-7EFF-4D52-A305-6BC6BCA1D78E}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Portal 2\portal2.exe
FirewallRules: [{33BD5A31-EF99-4888-8974-B1F0AEBFAD31}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\RaceTheSun\RaceTheSun.exe
FirewallRules: [{47041917-BD6E-49D3-B9BB-FC94DE41A225}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\RaceTheSun\RaceTheSun.exe
FirewallRules: [{14DAA8CF-03CF-4022-81F8-DBD69F8DF53D}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{384E385A-A384-4F61-97E3-578438AF84B5}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{01041EA5-B371-499D-83B0-531CDC3286EB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Resident Evil Biohazard HD REMASTER\bhd.exe
FirewallRules: [{E7A3FA80-C5C6-41C8-8154-238F848B4050}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Resident Evil Biohazard HD REMASTER\bhd.exe
FirewallRules: [{ACDA12D0-8E6C-40C3-96E9-C1D809495A83}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Dirty Bomb\DirtyBombLauncher.exe
FirewallRules: [{B9E22F14-522C-444F-AB95-D3225448AE33}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Dirty Bomb\DirtyBombLauncher.exe
FirewallRules: [{B83094CB-8891-4E75-86E1-921A23AB97BD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{D41ED711-D0B3-4173-A37A-A4CDF877B2B9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{4CE402BB-EA84-4D07-A31E-21D0676A428C}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Space\spacegame\Binaries\Win64\Fractured Space.exe
FirewallRules: [{6AE40948-44FE-4EF2-A317-28056BB1CECE}] => (Allow) E:\Program Files (x86)\SteamLibrary\steamapps\common\Space\spacegame\Binaries\Win64\Fractured Space.exe
==================== Wiederherstellungspunkte =========================
15-03-2017 02:26:06 Windows Update
18-03-2017 04:08:24 Windows Update
26-03-2017 15:19:15 Geplanter Prüfpunkt
30-03-2017 21:43:01 Malwarebytes Anti-Rootkit Restore Point
03-04-2017 16:06:44 JRT Pre-Junkware Removal
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (04/03/2017 04:06:46 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.
System Error:
Zugriff verweigert
.
Error: (04/03/2017 03:46:27 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "WmiApRpl" in der DLL "C:\Windows\system32\wbem\wmiaprpl.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Error: (04/03/2017 03:46:27 PM) (Source: Perflib) (EventID: 1023) (User: )
Description: Die erweiterbare Leistungsindikator-DLL rdyboost kann nicht geladen werden. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Windows-Fehlercode.
Error: (04/03/2017 03:46:27 PM) (Source: PerfNet) (EventID: 2004) (User: )
Description: Das Serverdienst-Leistungsobjekt kann nicht geöffnet werden. Die ersten vier Bytes (DWORD) des Datenabschnitts enthalten den Statuscode.
Error: (04/03/2017 03:46:27 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "MSDTC" in der DLL "C:\Windows\system32\msdtcuiu.DLL" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Error: (04/03/2017 03:46:27 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "Lsa" in der DLL "C:\Windows\System32\Secur32.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Error: (04/03/2017 03:46:27 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "ESENT" in der DLL "C:\Windows\system32\esentprf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Error: (04/03/2017 03:46:27 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Error: (04/03/2017 03:39:59 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm Discord.exe, Version 0.0.41.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 124c
Startzeit: 01d2ac7c98a3de41
Beendigungszeit: 4294967295
Anwendungspfad: C:\Users\Tingeltangel Bob\AppData\Local\Discord\app-0.0.297\Discord.exe
Berichts-ID: 073cd07a-1873-11e7-a6dd-7085c20eecf4
Vollständiger Name des fehlerhaften Pakets:
Auf das fehlerhafte Paket bezogene Anwendungs-ID:
Error: (04/01/2017 05:45:30 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: ShooterGame.exe, Version: 4.5.1.0, Zeitstempel: 0x58defd8f
Name des fehlerhaften Moduls: RTSSHooks64.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x58a324fa
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000019d98
ID des fehlerhaften Prozesses: 0x378
Startzeit der fehlerhaften Anwendung: 0x01d2aa9a4806524a
Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
Pfad des fehlerhaften Moduls: RTSSHooks64.dll
Berichtskennung: 004b0906-cdfa-4899-abe6-52535b81c33a
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Systemfehler:
=============
Error: (04/03/2017 04:11:34 PM) (Source: DCOM) (EventID: 10005) (User: NT-AUTORITÄT)
Description: Fehler "2" in DCOM, als der Dienst "vsservp" mit den Argumenten "" gestartet wurde, um den folgenden Server zu verwenden:
{B548B6A5-B4C1-4DE2-8DB2-B60C1E80387E}
Error: (04/03/2017 04:11:34 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Bitdefender Protected Service" wurde aufgrund folgenden Fehlers nicht gestartet:
Das System kann die angegebene Datei nicht finden.
Error: (04/03/2017 04:06:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "NVIDIA LocalSystem Container" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 1000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (04/03/2017 04:06:34 PM) (Source: DCOM) (EventID: 10005) (User: NT-AUTORITÄT)
Description: Fehler "2" in DCOM, als der Dienst "vsservp" mit den Argumenten "" gestartet wurde, um den folgenden Server zu verwenden:
{B548B6A5-B4C1-4DE2-8DB2-B60C1E80387E}
Error: (04/03/2017 04:06:34 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Bitdefender Protected Service" wurde aufgrund folgenden Fehlers nicht gestartet:
Das System kann die angegebene Datei nicht finden.
Error: (04/03/2017 03:54:11 PM) (Source: DCOM) (EventID: 10005) (User: NT-AUTORITÄT)
Description: Fehler "2" in DCOM, als der Dienst "vsservp" mit den Argumenten "" gestartet wurde, um den folgenden Server zu verwenden:
{B548B6A5-B4C1-4DE2-8DB2-B60C1E80387E}
Error: (04/03/2017 03:54:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Bitdefender Protected Service" wurde aufgrund folgenden Fehlers nicht gestartet:
Das System kann die angegebene Datei nicht finden.
Error: (04/03/2017 03:54:11 PM) (Source: DCOM) (EventID: 10005) (User: NT-AUTORITÄT)
Description: Fehler "2" in DCOM, als der Dienst "vsservp" mit den Argumenten "" gestartet wurde, um den folgenden Server zu verwenden:
{B548B6A5-B4C1-4DE2-8DB2-B60C1E80387E}
Error: (04/03/2017 03:54:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Bitdefender Protected Service" wurde aufgrund folgenden Fehlers nicht gestartet:
Das System kann die angegebene Datei nicht finden.
Error: (04/03/2017 03:53:51 PM) (Source: DCOM) (EventID: 10005) (User: NT-AUTORITÄT)
Description: Fehler "2" in DCOM, als der Dienst "vsservp" mit den Argumenten "" gestartet wurde, um den folgenden Server zu verwenden:
{B548B6A5-B4C1-4DE2-8DB2-B60C1E80387E}
CodeIntegrity:
===================================
Date: 2017-03-26 15:46:50.330
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Overwolf\0.103.40.0\x64\OWExplorer.dll that did not meet the Store signing level requirements.
Date: 2017-03-26 15:46:50.319
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Overwolf\0.103.40.0\x64\OWExplorer.dll that did not meet the Store signing level requirements.
Date: 2017-03-26 15:46:19.042
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
Date: 2017-03-26 15:46:18.809
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Overwolf\0.103.40.0\x64\OWExplorer.dll that did not meet the Store signing level requirements.
Date: 2017-03-19 19:33:56.211
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
Date: 2017-03-19 19:33:56.016
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Overwolf\0.103.32.0\x64\OWExplorer.dll that did not meet the Store signing level requirements.
Date: 2017-03-04 23:37:34.270
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Overwolf\0.102.217.0\x64\OWExplorer.dll that did not meet the Store signing level requirements.
Date: 2017-03-04 23:37:34.094
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Overwolf\0.102.217.0\x64\OWExplorer.dll that did not meet the Store signing level requirements.
Date: 2017-03-04 23:37:03.992
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
Date: 2017-03-04 23:37:03.936
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Overwolf\0.102.217.0\x64\OWExplorer.dll that did not meet the Store signing level requirements.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i5-6600K CPU @ 3.50GHz
Prozentuale Nutzung des RAM: 14%
Installierter physikalischer RAM: 16328.61 MB
Verfügbarer physikalischer RAM: 13933.13 MB
Summe virtueller Speicher: 24264.61 MB
Verfügbarer virtueller Speicher: 21782.76 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:488.5 GB) (Free:167.62 GB) NTFS
Drive d: (Lokaler Datenträger (D) ) (Fixed) (Total:111.79 GB) (Free:108.36 GB) NTFS
Drive e: (BOOT) (Fixed) (Total:911.96 GB) (Free:156.81 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive f: (Elements) (Fixed) (Total:465.64 GB) (Free:0.06 GB) FAT32
Drive h: (RECOVER) (Fixed) (Total:19.54 GB) (Free:1.48 GB) FAT32
Drive m: () (Removable) (Total:7.39 GB) (Free:7.39 GB) FAT32
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 489 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 9582FA20)
Partition 1: (Active) - (Size=111.8 GB) - (Type=07 NTFS)
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: B252BE35)
Partition 1: (Active) - (Size=912 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=19.6 GB) - (Type=OF Extended)
========================================================
Disk: 3 (Size: 465.8 GB) (Disk ID: 8D399BC0)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=0C)
========================================================
Disk: 8 (Size: 7.4 GB) (Disk ID: 00000000)
Partition: GPT.
==================== Ende von Addition.txt ============================ |