| Christian123 |  19.07.2017 20:03 |        FRST Additions Logfile:   Code:  
 Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 18-07-2017 
durchgeführt von Privat (19-07-2017 20:57:46) 
Gestartet von D:\Downloads 
Windows 8.1 Professional (Update) (X64) (2014-06-09 11:11:22) 
Start-Modus: Normal 
==========================================================     
==================== Konten: =============================   
Administrator (S-1-5-21-2210286070-902605142-1894119712-500 - Administrator - Disabled) 
Gast (S-1-5-21-2210286070-902605142-1894119712-501 - Limited - Enabled) 
HomeGroupUser$ (S-1-5-21-2210286070-902605142-1894119712-1008 - Limited - Enabled) 
Privat (S-1-5-21-2210286070-902605142-1894119712-1001 - Administrator - Enabled) => C:\Users\Privat   
==================== Sicherheits-Center ========================   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)   
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} 
AS: Spybot - Search and Destroy (Enabled - Out of date) {A16C3F68-9280-E053-1818-342707FECF4D} 
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}   
==================== Installierte Programme ======================   
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)   
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden 
8GadgetPack (HKLM-x32\...\{180B50DF-B2C8-43A1-AB97-2101AA62DDD3}) (Version: 12.0.0 - Helmut Buhler) 
ACDSee (HKLM-x32\...\ACDSee) (Version:  - ) 
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 17.009.20058 - Adobe Systems Incorporated) 
Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.131 - Adobe Systems Incorporated) 
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) 
Advanced PDF to TEXT converter 1.8 (HKLM-x32\...\Advanced PDF to TEXT converter_is1) (Version: 1.8 - IntraPDF) 
Apple Application Support (32-Bit) (HKLM-x32\...\{E92BB800-BCC5-4C25-8102-AC2C3B7C7C1E}) (Version: 5.5 - Apple Inc.) 
Apple Application Support (64-Bit) (HKLM\...\{9C912B1E-06DD-43EF-BB2B-45CB2C88BAAE}) (Version: 5.5 - Apple Inc.) 
Apple Mobile Device Support (HKLM\...\{0A596141-97D5-45FA-9281-98DFAF48D579}) (Version: 10.3.2.3 - Apple Inc.) 
Apple Software Update (HKLM-x32\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.) 
BCL easyConverter 3.0 Licensing Module (BCL License) (HKLM-x32\...\{5598FBEB-CEB5-41CE-BAA4-70128DF02FFB}) (Version: 3.0.18 - BCL Technologies) Hidden 
BCL easyConverter 3.0 Loader SDK Module (HKLM-x32\...\{83E61899-81B2-4F35-A3EB-42CF51B94BBD}) (Version: 3.0.18 - BCL Technologies) Hidden 
BCL easyConverter 3.0 Module (Loader, BCL License) (HKLM-x32\...\{F8D605A4-979D-43FF-9FD5-6BDDF1E3E288}) (Version: 3.0.18 - BCL Technologies) Hidden 
BCL easyConverter 3.0 Module (RTF, BCL License) (HKLM-x32\...\{FBE9E2A1-E7F0-42AA-875A-E230EB9AFA19}) (Version: 3.0.18 - BCL Technologies) Hidden 
BCL easyConverter 3.0 RTF SDK Module (HKLM-x32\...\{111225F7-13A9-4AD6-A759-C7923C8981E6}) (Version: 3.0.18 - BCL Technologies) Hidden 
BCL easyConverter 3.0 SDK Module (HKLM-x32\...\{E1BDAC32-B358-442C-A337-D91BA0386824}) (Version: 3.0.18 - BCL Technologies) Hidden 
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) 
BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden 
C309a (HKLM-x32\...\{C045ED98-5FDB-45A0-AB48-C4B7560E7816}) (Version: 140.0.846.000 - Hewlett-Packard) Hidden 
CDBurnerXP (HKLM-x32\...\{909A791A-DBB0-432F-BC0E-D0C81925E340}) (Version: 4.5.3.4746 - Canneverbe Limited) 
chip 1-click download service (HKLM-x32\...\{503CA94E-0834-4CEE-AD92-BA17AF4E809A}) (Version: 3.6.9.0 - Chip Digital GmbH) 
Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft) 
CyberGhost 6 (HKLM\...\CyberGhost 6_is1) (Version:  - CyberGhost S.R.L.) 
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) 
Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden 
DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden 
DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 140.0.185.000 - Hewlett-Packard) Hidden 
Dropbox (HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\Dropbox) (Version: 30.4.22 - Dropbox, Inc.) 
EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version:  - EaseUS) 
ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 17.0.4.20160106 - Landesfinanzdirektion Thüringen) 
eMule (HKLM-x32\...\eMule) (Version:  - ) 
Fax (HKLM-x32\...\{9294F169-72EE-4D74-AE92-CA25F64B4FF8}) (Version: 140.0.307.000 - Hewlett-Packard) Hidden 
File Repair (HKLM-x32\...\File Repair_is1) (Version:  - File Repair) 
Finanzen.net Vista Gadget (HKLM-x32\...\{C9658186-2517-46D2-83E6-ED202443E5DE}) (Version: 1.0.0 - Smarthouse Media GmbH) 
Free Hide IP (HKLM-x32\...\FreeHideIP) (Version: 4.0.0.2 - ) 
Free M4a to MP3 Converter 9.3 (HKLM-x32\...\Free M4a to MP3 Converter_is1) (Version:  - ManiacTools.com) 
FreeOCR v5.4 (HKLM-x32\...\freeocr_is1) (Version:  - ) 
FRITZ!Box USB-Fernanschluss (HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\195fa74437467f40) (Version: 2.3.4.0 - AVM Berlin) 
Google Toolbar for Internet Explorer (HKLM-x32\...\{18455581-E099-4BA8-BC6B-F34B2F06600C}) (Version: 1.0.0 - Google Inc.) Hidden 
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.) 
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden 
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden 
GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden 
gs_x64 (HKLM\...\{F48BA767-358B-41F5-95DF-17AE56490D96}) (Version: 9.15 - MAY Computer) 
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) 
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) 
HP LaserJet 1020 Series (HKLM\...\HP LaserJet 1020 Series) (Version:  - ) 
HP Photosmart C309a All-In-One Driver Software 14.0 Rel. 6 (HKLM\...\{F089B734-1356-484F-A7B8-1B78F1616A15}) (Version: 14.0 - HP) 
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) 
HP Update (HKLM-x32\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard) 
HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden 
HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden 
HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden 
iBackupBot 5.3.1 (HKLM-x32\...\iBackupBot) (Version: 5.3.1 - VOWSoft, Ltd.) 
iCloud (HKLM\...\{5B1A59DA-D1EC-4C3A-A996-DF011A0A9668}) (Version: 6.2.2.39 - Apple Inc.) 
iExplorer 3.6.9.0 (HKLM-x32\...\{7FD8B0C1-CDDA-4B4D-A577-B2E3570EA3A3}_is1) (Version:  - Macroplant LLC) 
iFunbox (v2.95.2610.819), iFunbox DevTeam (HKLM-x32\...\iFunbox_is1) (Version: v2.95.2610.819 - ) 
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1010 - Intel Corporation) 
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.1.70.1205 - Intel Corporation) 
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3517 - Intel Corporation) 
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) 
iPhone Backup Browser 2.1 (HKLM-x32\...\iPhone Backup Browser_is1) (Version:  - iPod PC Transfer) 
iPhone Backup Extractor (HKLM-x32\...\{F3AA09BF-B33F-4134-8E62-9AD2E4E1DC4C}) (Version: 6.0.7.832 - Reincubate Ltd) Hidden 
iPhone Backup Extractor (HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\iPhone Backup Extractor) (Version: 6.0.7.832 - Reincubate Ltd) 
ISO to USB (HKLM-x32\...\{D08A30AC-A663-4EA8-8D81-B98E17F19F1C}_is1) (Version:  - isotousb.com) 
iTunes (HKLM\...\{F0C7385A-9D20-45F3-8101-05D383885180}) (Version: 12.6.1.25 - Apple Inc.) 
Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle) 
JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) 
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) 
JMB36X Raid Configurer (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.00.0000 - JMICRON Technology Corp.) 
Lexware buchhalter 2017 (HKLM-x32\...\{4AFD4B62-4876-480D-BA39-8230CE09A19E}) (Version: 22.03.00.0261 - Haufe-Lexware GmbH & Co.KG) Hidden 
Lexware Datenbank plus 2015 (HKLM-x32\...\{CDBE389D-6228-47A1-8094-2D8FE203E3DB}) (Version: 15.25.00.0079 - Haufe-Lexware GmbH & Co.KG) Hidden 
Lexware Einnahmen-Überschuss-Rechner 2017 (HKLM-x32\...\{c442d620-aec3-4a8b-8584-ad4fbb07fc14}) (Version: 22.3.0.159 - Haufe-Lexware GmbH & Co.KG) 
Lexware Elster (HKLM-x32\...\{F12BE1A8-82BD-4A81-AF0C-E85EC3241F14}) (Version: 17.02.00.0161 - Haufe-Lexware GmbH & Co.KG) Hidden 
Lexware Elster 2017 (HKLM-x32\...\{e82c7378-79e4-405f-8342-79e5850a232a}) (Version: 17.2.0.62 - Haufe-Lexware GmbH & Co.KG) 
Lexware Info Service (HKLM-x32\...\{73681446-EE9F-47DF-9185-4BB6B985F743}) (Version: 17.00.00.0028 - Haufe-Lexware GmbH & Co.KG) Hidden 
Lexware Installations Dienst (HKLM-x32\...\{3E7D13DE-D424-4AF6-A2DD-2E28506844E7}) (Version: 5.03.00.0048 - Haufe-Lexware GmbH & Co.KG) Hidden 
Lexware online banking (HKLM-x32\...\{F84F8DB2-E997-469C-BBC2-F684F4D188FF}) (Version: 23.01.00.0085 - Haufe-Lexware GmbH & Co.KG) Hidden 
Lexware PDF-Export 5 (HKLM-x32\...\{D6604FDD-E71F-40CA-9764-98649EC969DD}) (Version: 5.50.01.0011 - Haufe-Lexware GmbH & Co.KG) Hidden 
Lexware reisekosten plus 2015 (HKLM-x32\...\{C2382556-2BDA-4E5F-8C0D-BE251B42139A}) (Version: 15.03.00.0158 - Haufe-Lexware GmbH & Co.KG) Hidden 
Lexware reisekosten plus Gratisversion 2015 (HKLM-x32\...\{29872c1a-2923-40cc-b5c9-5fcac3ec3d76}) (Version: 15.3.0.109 - Haufe-Lexware GmbH & Co.KG) 
Lexware Services (HKLM-x32\...\{49561F21-8F8D-46E5-AB83-C75261590908}) (Version: 3.00.00.0003 - Haufe-Lexware GmbH & Co.KG) Hidden 
Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech) 
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) 
MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden 
Microsoft Office 2000 Premium (HKLM-x32\...\{00000407-78E1-11D2-B60F-006097C998E7}) (Version: 9.00.2816 - Microsoft Corporation) 
Microsoft Office 97 Developer Tools (HKLM-x32\...\Microsoft Office 97 Developer Tools) (Version:  - ) 
Microsoft Office 97, Professional Edition (HKLM-x32\...\Office8.0) (Version:  - ) 
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) 
Microsoft Power Map Preview for Excel (HKLM\...\{6CF64AF4-011A-4432-9033-1BA25D3C8F21}) (Version: 1.0.1406 - Microsoft Corporation) 
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) 
Microsoft SQL Server 2008 R2 Report Builder 3.0 (HKLM-x32\...\{C1F938A6-3B5D-415B-A238-FEAAAF0D8F94}) (Version: 10.50.1600.1 - Microsoft Corporation) 
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) 
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) 
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) 
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) 
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) 
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) 
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) 
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) 
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) 
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) 
Monitor Off Utility 1.0 (HKLM-x32\...\{10F0131F-1CA2-4433-8473-7C890C769581}_is1) (Version:  - Dekisoft) 
Mozilla Firefox 54.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 54.0.1 (x86 de)) (Version: 54.0.1 - Mozilla) 
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 54.0.1.6388 - Mozilla) 
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.7 - F.J. Wechselberger) 
Network64 (HKLM\...\{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}) (Version: 140.0.306.000 - Hewlett-Packard) Hidden 
NVIDIA 3D Vision Treiber 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 335.23 - NVIDIA Corporation) 
NVIDIA Grafiktreiber 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 335.23 - NVIDIA Corporation) 
NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) 
NVIDIA Update 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation) 
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP) 
Ontrack EasyRecovery Home (HKLM-x32\...\{B8686BCF-5181-477F-9CBE-786391011B9C}_is1) (Version: 11.1.0.0 - Kroll Ontrack Inc.) 
Outils de vérification linguistique 2013 de Microsoft Office*- Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden 
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden 
PDF24 Creator 7.9.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org) 
PDF2Word Converter Version 1.1.0 (Build 164) (HKLM-x32\...\PDF2Word Converter_is1) (Version: PDF2Word Converter - Version 1.1.0 (Build 164) - Th. Hodes Software) 
PL-2303 USB-to-Serial (HKLM-x32\...\{A9111573-EF12-4D80-A5B9-55F620D5BCA1}) (Version: 1.00.000 - Prolific Technology INC) 
PL2303 USB-to-Serial Driver (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.18.0 - Prolific Technology INC) 
Plex Media Server (HKLM-x32\...\{4A10DB6A-8093-40A8-BF1C-C3587B0A901D}) (Version: 1.3.3148 - Plex, Inc.) Hidden 
Plex Media Server (HKLM-x32\...\{d685b3b4-91da-4364-9e7d-f365a614d42b}) (Version: 1.3.3.3148 - Plex, Inc.) 
PS_AIO_05_C309_Software_Min (HKLM-x32\...\{FA0E7183-6B11-4899-B25F-2C490543967E}) (Version: 140.0.855.000 - Hewlett-Packard) Hidden 
Python 2.7.3 (64-bit) (HKLM\...\{C0C31BCC-56FB-42a7-8766-D29E1BD74C7d}) (Version: 2.7.3150 - Python Software Foundation) 
QuickSteuer Deluxe 2016 (HKLM-x32\...\{3077FB33-83B4-4B16-9A35-CD160CD3D012}) (Version: 21.36.103 - Haufe-Lexware GmbH & Co.KG) 
QuickSteuer Deluxe 2017 (HKLM-x32\...\{BC0423F1-44FC-43B2-BC77-ED912E75D64F}) (Version: 22.27.60 - Haufe-Lexware GmbH & Co.KG) 
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5883 - Realtek Semiconductor Corp.) 
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform) 
RemoteX Server (HKLM-x32\...\RemoteX) (Version: 2.8.2 - PEEPLEware) 
Rylstim Screen Recorder (HKLM-x32\...\Rylstim Screen Recorder_is1) (Version: 1.4 - Rylstim) 
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.3.0 - Samsung Electronics) 
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.59.0 - Samsung Electronics Co., Ltd.) 
Samsung_MonSetup (HKLM-x32\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung) 
Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden 
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) 
sipgate Faxdrucker (HKLM\...\{F4950C66-CC26-4BB6-A7E7-D913565573B8}) (Version: 3.21.1 - sipgate GmbH) 
Smart Data Recovery v5.0 (HKLM-x32\...\Smart Data Recovery_is1) (Version: 5.0 - Smart PC Solutions) 
Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.16052.2 - Samsung Electronics Co., Ltd.) Hidden 
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.16052.2 - Samsung Electronics Co., Ltd.) 
SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden 
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - ) 
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) 
SSDlife Pro (HKLM-x32\...\{08829747-2605-42CC-A484-78426B68A203}) (Version: 2.5.80 - BinarySense Inc.) 
StarMoney (HKLM-x32\...\{113B170E-9109-4EF0-8D70-4596A68E1873}) (Version: 6.0.0.313 - StarFinanz) Hidden 
StarMoney (HKLM-x32\...\{18B4BD4D-FC8F-4D3E-B967-311F194B1F06}) (Version: 4.0.4.16 - StarFinanz) Hidden 
StarMoney (HKLM-x32\...\{2E6951AE-6A91-4D23-959C-BA407FED3704}) (Version: 6.0.0.313 - StarFinanz) Hidden 
StarMoney (HKLM-x32\...\{E473B285-2243-4771-BA17-55F99AD7C84F}) (Version: 4.0.4.16 - StarFinanz) Hidden 
StarMoney 11  (HKLM-x32\...\{D4D4D06C-CFB2-420D-8A58-65A9E6021C16}) (Version: 11 - Star Finanz GmbH) 
StarMoney 9.0  (HKLM-x32\...\{1DA14FB3-C658-4BA8-85F2-3A32AFDF79E4}) (Version: 9.0 - Star Finanz GmbH) 
Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden 
Stopping Plex (HKLM-x32\...\{0F4F2C9B-2C85-4DBF-B385-3D6D44446C16}) (Version: 1.3.3148 - Plex, Inc.) Hidden 
Streamripper (Remove only) (HKLM-x32\...\Streamripper) (Version:  - ) 
streamWriter (HKLM-x32\...\streamWriter_is1) (Version: 5.4.0.2 - Alexander Nottelmann) 
TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) 
TomTom MyDrive Connect 4.1.4.3089 (HKLM-x32\...\MyDriveConnect) (Version: 4.1.4.3089 - TomTom) 
Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden 
TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden 
Unified Remote (HKLM-x32\...\{415B4714-4F8C-49C6-B310-881EAF892CFB}_is1) (Version: 3.3.5 - Unified Intents AB) 
Update for Skype for Business 2015 (KB3213574) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8C2A4D8F-3020-403E-94D4-E8EC03F9E723}) (Version:  - Microsoft) 
Update for Skype for Business 2015 (KB3213574) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8C2A4D8F-3020-403E-94D4-E8EC03F9E723}) (Version:  - Microsoft) 
Update for Skype for Business 2015 (KB3213574) 64-Bit Edition (HKLM\...\{90150000-012B-0407-1000-0000000FF1CE}_Office15.PROPLUS_{8C2A4D8F-3020-403E-94D4-E8EC03F9E723}) (Version:  - Microsoft) 
USB/DVD-Downloadtool für Windows 7 (HKLM-x32\...\{7D6DDE45-FE2F-4D11-A7E7-BC2C2910536C}) (Version: 1.0.30 - Microsoft Corporation) 
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) 
VLC media player (HKLM\...\VLC media player) (Version: 2.2.6 - VideoLAN) 
VMware Horizon Client (HKLM\...\{DF1CBB07-34D5-48EA-A792-B1BEE16EBBE6}) (Version: 4.3.0.4209 - VMware, Inc.) 
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden 
Winamp (nur entfernen) (HKLM-x32\...\Winamp) (Version:  - ) 
WinRAR 5.11 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) 
XviD Video Codec (remove only) (HKLM-x32\...\XviD Video Codec) (Version:  - )   
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)   
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{083f5ae0-2b0a-11dd-bd0b-0800200c9a66}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\Privat\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
CustomCLSID: HKU\S-1-5-21-2210286070-902605142-1894119712-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll (Dropbox, Inc.) 
ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 2013\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation) 
ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 2013\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation) 
ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 2013\Office15\GROOVEEX.DLL [2017-02-23] (Microsoft Corporation) 
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.) 
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.) 
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.) 
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.) 
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.) 
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.) 
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.) 
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.) 
ShellIconOverlayIdentifiers: [EldosIconOverlay] -> {5BB532A2-BF14-4CCC-86B7-71B81EF6F8BC} => C:\Windows\system32\CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation) 
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) 
ShellIconOverlayIdentifiers-x32: [EldosIconOverlay] -> {5BB532A2-BF14-4CCC-86B7-71B81EF6F8BC} => C:\Windows\SysWow64\CbFsMntNtf3.dll [2012-04-09] (EldoS Corporation) 
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) 
ContextMenuHandlers01: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} =>  -> Keine Datei 
ContextMenuHandlers01: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2017-05-09] (Apple Inc.) 
ContextMenuHandlers01: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-09-03] (Alexander Roshal) 
ContextMenuHandlers01: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} =>  -> Keine Datei 
ContextMenuHandlers03: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll [2016-03-10] (Malwarebytes) 
ContextMenuHandlers04: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd) 
ContextMenuHandlers05: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2014-03-20] (Intel Corporation) 
ContextMenuHandlers05: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2014-03-04] (NVIDIA Corporation) 
ContextMenuHandlers06: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll [2016-03-10] (Malwarebytes) 
ContextMenuHandlers06: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd) 
ContextMenuHandlers06: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\Windows\system32\StartMenuHelper64.dll [2014-04-20] (IvoSoft) 
ContextMenuHandlers06: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2014-09-03] (Alexander Roshal) 
ContextMenuHandlers06: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} =>  -> Keine Datei 
ContextMenuHandlers1_S-1-5-21-2210286070-902605142-1894119712-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.) 
ContextMenuHandlers4_S-1-5-21-2210286070-902605142-1894119712-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.) 
ContextMenuHandlers5_S-1-5-21-2210286070-902605142-1894119712-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Privat\AppData\Roaming\Dropbox\bin\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)   
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)   
Task: {2419184A-0B14-406E-B026-F405D2CAAF48} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2210286070-902605142-1894119712-1001UA => C:\Users\Privat\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-01-06] (Dropbox, Inc.) 
Task: {25360C57-47E3-4964-82A1-7AE880761801} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) 
Task: {2745DD49-D491-4EC5-9412-66422B73F4DD} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) 
Task: {3973CB61-6FC0-4EE8-99FF-F37807FA2727} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-02-14] (Apple Inc.) 
Task: {43258154-388C-49E2-8988-4478C2C3FE30} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2016-03-21] (Safer-Networking Ltd.) 
Task: {580570DF-A65E-4274-A064-82368DFEE9C7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) 
Task: {8601917F-DADA-4C3F-851C-F7CC6FBB7CCE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-06-24] (Adobe Systems Incorporated) 
Task: {8D46012F-3E8A-4B09-B4C1-47862A21D087} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2210286070-902605142-1894119712-1001Core => C:\Users\Privat\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-01-06] (Dropbox, Inc.) 
Task: {91B35E1C-0CBD-48BC-AA93-D7C43E1D3DB1} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2016-03-21] (Safer-Networking Ltd.) 
Task: {9577BFEE-68E8-44F1-909E-64EE2C8D5549} - System32\Tasks\Plex => P:\Programmdaten\PlexConnect\PlexConnect.pyc [2017-03-26] () 
Task: {AAFA745D-2E46-4844-B168-B98525011631} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 2013\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) 
Task: {AD3F489E-5777-4E0A-8634-3701BADEAF55} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) 
Task: {B64D14D3-BF89-4B67-9BAE-6D876EF00AE9} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2017-07-12] (Microsoft Corporation) 
Task: {C12E71D9-E442-425F-A90F-7E73E712E2C9} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 2013\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) 
Task: {D2717B72-0B06-4522-9112-73329CA329B1} - System32\Tasks\{15D56EB3-FA5C-47A0-A827-0386F46B44F3} => C:\Windows\system32\pcalua.exe -a E:\setup.EXE -d E:\ -c /AUTORUN 
Task: {D81EDD40-0ED5-41F3-9F03-1848A4D166DB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)   
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2210286070-902605142-1894119712-1001Core.job => C:\Users\Privat\AppData\Local\Dropbox\Update\DropboxUpdate.exe 
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2210286070-902605142-1894119712-1001UA.job => C:\Users\Privat\AppData\Local\Dropbox\Update\DropboxUpdate.exe   
==================== Verknüpfungen & WMI ========================   
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)     
Shortcut: C:\Users\Privat\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\8GadgetPack\Website.lnk -> hxxp://tiny.cc/8gadgetpac   
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============   
2014-10-25 16:10 - 2012-09-18 15:27 - 00192512 _____ () C:\Windows\System32\zlhp1020.dll 
2014-10-25 16:10 - 2012-09-18 15:27 - 00065024 _____ () C:\Windows\system32\spool\PRTPROCS\x64\pphp1020.dll 
2014-08-08 18:22 - 2012-09-18 15:27 - 03162624 ____N () C:\Windows\system32\spool\DRIVERS\x64\3\suhp1020.dll 
2014-08-08 18:22 - 2012-09-18 15:27 - 01236992 ____N () C:\Windows\system32\spool\DRIVERS\x64\3\gchp1020.dll 
2012-04-10 23:24 - 2012-04-10 23:24 - 00027136 _____ () C:\Program Files\Phyton27\python.exe 
2012-04-10 23:24 - 2012-04-10 23:24 - 00046080 _____ () C:\Program Files\Phyton27\DLLs\_socket.pyd 
2012-04-10 23:30 - 2012-04-10 23:30 - 01167360 _____ () C:\Program Files\Phyton27\DLLs\_ssl.pyd 
2012-04-10 23:24 - 2012-04-10 23:24 - 00031744 _____ () C:\Program Files\Phyton27\DLLs\_multiprocessing.pyd 
2012-04-10 23:24 - 2012-04-10 23:24 - 00166912 _____ () C:\Program Files\Phyton27\DLLs\_elementtree.pyd 
2012-04-10 23:24 - 2012-04-10 23:24 - 00164352 _____ () C:\Program Files\Phyton27\DLLs\pyexpat.pyd 
2012-04-10 23:30 - 2012-04-10 23:30 - 00471552 _____ () C:\Program Files\Phyton27\DLLs\_hashlib.pyd 
2012-04-10 23:24 - 2012-04-10 23:24 - 00010752 _____ () C:\Program Files\Phyton27\DLLs\select.pyd 
2012-04-10 23:25 - 2012-04-10 23:25 - 00111616 _____ () C:\Program Files\Phyton27\DLLs\_ctypes.pyd 
2016-09-01 18:12 - 2016-09-01 18:12 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 
2017-05-09 00:44 - 2017-05-09 00:44 - 01354040 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 
2016-10-03 13:41 - 2016-10-03 13:41 - 00234400 _____ () C:\Program Files\Common Files\VMware\DeviceRedirectionCommon\ftnlsv.exe 
2016-01-08 14:54 - 2007-06-08 11:15 - 00057344 ____R () C:\Windows\SysWOW64\xServiceSetup.exe 
2016-01-08 14:54 - 2007-06-08 11:05 - 00036864 ____R () C:\Windows\SysWOW64\xScanSetup.exe 
2014-01-29 23:02 - 2014-01-29 23:02 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 
2014-09-27 19:56 - 2013-06-06 20:16 - 00012520 _____ () C:\Users\Privat\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\CoreTempReader.dll 
2014-09-27 19:56 - 2013-06-06 20:16 - 00015080 _____ () C:\Users\Privat\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\GetCoreTempInfoNET.dll 
2014-09-27 19:56 - 2013-06-06 20:16 - 00014056 _____ () C:\Users\Privat\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\SystemInfo.dll 
2014-09-25 13:33 - 2014-09-25 13:33 - 02210480 _____ () C:\Program Files\Microsoft Office 2013\Office15\tmpod.dll 
2015-10-13 16:10 - 2015-10-13 16:10 - 01428648 _____ () C:\Program Files\Microsoft Office 2013\Office15\ADDINS\UmOutlookAddin.dll 
2016-10-18 14:02 - 2016-10-18 14:02 - 06331296 _____ () C:\Program Files (x86)\VMware\ScannerRedirection\ftscanmgrhv.exe 
2016-12-15 14:53 - 2016-12-15 14:53 - 00083440 _____ () C:\Program Files (x86)\Plex\Plex Media Server\zlib.dll 
2016-12-15 14:53 - 2016-12-15 14:53 - 00203248 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libidn.dll 
2015-08-10 19:57 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 
2015-08-10 19:57 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 
2015-08-10 19:57 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 
2015-08-10 19:57 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 
2015-08-10 19:57 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 
2017-06-29 21:36 - 2016-01-28 15:33 - 01060160 _____ () C:\Program Files (x86)\StarMoney 11\ouservice\libxml2.dll 
2017-06-29 21:36 - 2017-01-23 17:49 - 00232800 _____ () C:\Program Files (x86)\StarMoney 11\ouservice\PATCHW32.dll 
2014-11-29 17:19 - 2011-01-13 11:44 - 00232800 _____ () C:\Program Files (x86)\StarMoney 9.0\ouservice\PATCHW32.dll 
2011-02-11 15:52 - 2011-02-11 15:52 - 00170496 _____ () C:\Program Files (x86)\RemoteX\modules\computer.dll 
2015-07-15 22:34 - 2002-04-25 06:42 - 00053248 _____ () C:\Program Files (x86)\Hardcopy\hcdll2_9.dll 
2017-05-09 00:45 - 2017-05-09 00:45 - 01041720 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 
2017-05-09 00:44 - 2017-05-09 00:44 - 00189752 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll 
2016-09-01 18:13 - 2016-09-01 18:13 - 00080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 
2015-07-15 22:34 - 2003-07-15 08:21 - 00225280 _____ () C:\Program Files (x86)\Hardcopy\HcDllS.dll 
2015-07-15 22:34 - 1999-06-03 07:46 - 00032768 _____ () C:\Program Files (x86)\Hardcopy\hardcopy.dll 
2016-12-15 14:53 - 2016-12-15 14:53 - 01083376 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxml2.dll 
2016-12-15 14:53 - 2016-12-15 14:53 - 00115696 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_core-vc80-3_0.dll 
2016-12-15 14:53 - 2016-12-15 14:53 - 00059888 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_sqlite3-vc80-3_0.dll 
2016-12-15 14:53 - 2016-12-15 14:53 - 00772080 _____ () C:\Program Files (x86)\Plex\Plex Media Server\tag.dll 
2016-12-15 14:53 - 2016-12-15 14:53 - 01741296 _____ () C:\Program Files (x86)\Plex\Plex Media Server\opencv_imgproc2411.dll 
2016-12-15 14:53 - 2016-12-15 14:53 - 01962992 _____ () C:\Program Files (x86)\Plex\Plex Media Server\opencv_core2411.dll 
2016-12-15 14:53 - 2016-12-15 14:53 - 00025584 _____ () C:\Program Files (x86)\Plex\Plex Media Server\lyric_lite.dll 
2016-12-15 14:53 - 2016-12-15 14:53 - 00050160 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_socket.pyd 
2016-12-15 14:53 - 2016-12-15 14:53 - 00071664 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ssl.pyd 
2016-12-15 14:53 - 2016-12-15 14:53 - 00024560 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_hashlib.pyd 
2016-12-15 14:53 - 2016-12-15 14:53 - 00041456 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\simplejson\_speedups.pyd 
2016-12-15 14:53 - 2016-12-15 14:53 - 00930288 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\etree.pyd 
2016-12-15 14:53 - 2016-12-15 14:53 - 00074736 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libexslt.dll 
2016-12-15 14:53 - 2016-12-15 14:53 - 00190960 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxslt.dll 
2016-12-15 14:53 - 2016-12-15 14:53 - 00218096 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\objectify.pyd 
2016-12-15 14:53 - 2016-12-15 14:53 - 00018928 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\select.pyd 
2016-12-15 14:53 - 2016-12-15 14:53 - 00095728 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ctypes.pyd 
2016-12-15 14:53 - 2016-12-15 14:53 - 00143344 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\pyexpat.pyd 
2016-12-15 14:53 - 2016-12-15 14:53 - 00694256 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\unicodedata.pyd 
2016-12-15 14:53 - 2016-12-15 14:53 - 00036336 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_multiprocessing.pyd 
2016-11-26 00:25 - 2016-11-26 00:13 - 00807424 _____ () C:\Users\Privat\AppData\Local\Plex Media Server\Plug-in Support\Data\com.plexapp.plugins.trakttv\Libraries\Windows\i386\vc14\ucs2\apsw.pyd 
2016-11-26 00:25 - 2016-11-26 00:13 - 00028160 _____ () C:\Users\Privat\AppData\Local\Plex Media Server\Plug-in Support\Data\com.plexapp.plugins.trakttv\Libraries\Windows\i386\vc14\ucs2\llist.pyd 
2016-12-03 14:06 - 2016-04-28 22:26 - 00069632 _____ () P:\Programmdaten\FireFox default\extensions\{7E7165E2-0767-448c-852F-5FA8714F2C37}\bin\PlainOldFavorites.dll 
2016-10-03 13:41 - 2016-10-03 13:41 - 00241056 _____ () C:\Program Files (x86)\Common Files\VMware\DeviceRedirectionCommon\ftnlapi.dll   
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)   
AlternateDataStreams: C:\Windows:F0FCB77C45A7A739 [50] 
AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57 [122]   
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)     
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)     
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)     
==================== Hosts Inhalt: ==========================   
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)   
2013-08-22 15:25 - 2014-11-09 03:48 - 00001026 _____ C:\Windows\system32\Drivers\etc\hosts   
127.0.0.1 lmlicenses.wip4.adobe.com 
127.0.0.1 lm.licenses.adope.com 
127.0.0.1 na1r.services.adobe.com 
127.0.0.1 hlrcv.stage.adobe.com 
127.0.0.1 practivate.adobe.com 
127.0.0.1 activate.adobe.com   
==================== Andere Bereiche ============================   
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)   
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\Control Panel\Desktop\\Wallpaper ->  
DNS Servers: 192.168.178.1 
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) 
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) 
Windows Firewall ist aktiviert.   
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==   
MSCONFIG\Services: AdobeARMservice => 2 
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 
MSCONFIG\Services: Apple Mobile Device Service => 2 
MSCONFIG\Services: BBSvc => 2 
MSCONFIG\Services: BBUpdate => 3 
HKLM\...\StartupApproved\StartupFolder: => "Microsoft Office.lnk" 
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" 
HKLM\...\StartupApproved\Run: => "iTunesHelper" 
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" 
HKLM\...\StartupApproved\Run32: => "WinampAgent" 
HKLM\...\StartupApproved\Run32: => "Adobe ARM" 
HKLM\...\StartupApproved\Run32: => "iTunesHelper" 
HKLM\...\StartupApproved\Run32: => "HP Software Update" 
HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager" 
HKLM\...\StartupApproved\Run32: => "SwitchBoard" 
HKLM\...\StartupApproved\Run32: => "SDTray" 
HKLM\...\StartupApproved\Run32: => "PDFPrint" 
HKLM\...\StartupApproved\Run32: => "LexwareInfoService" 
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\StartupFolder: => "Samsung Magician.lnk" 
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\StartupFolder: => "SM9TB.lnk" 
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk" 
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "DAEMON Tools Lite" 
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "swg" 
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "Plex Media Server" 
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "AppleIEDAV" 
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "iFunBox Fast App Install Handler" 
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "SpybotPostWindows10UpgradeReInstall" 
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "Spybot-S&D Cleaning" 
HKU\S-1-5-21-2210286070-902605142-1894119712-1001\...\StartupApproved\Run: => "SmartSwitchPDLR.exe"   
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============   
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)   
FirewallRules: [{2DACA260-4223-4BE1-8D62-FE1242401BAB}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe 
FirewallRules: [{2498201F-9758-4D7C-8520-3DDC35CDA1A6}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe 
FirewallRules: [{414C2835-5EA0-4E91-AECC-EE6B4F609BB8}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe 
FirewallRules: [{FF9641E2-08F5-4F92-8AB8-C43D8211AE83}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe 
FirewallRules: [{5B6B1D5A-9E8F-4021-A101-33EDC33B9F51}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe 
FirewallRules: [{E79CE8C8-0ABD-4C20-840B-2D9A276CDB66}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe 
FirewallRules: [{F9C06C64-02DD-4187-A960-75D65FA58E74}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe 
FirewallRules: [{A9E13E81-FB53-447A-BF0D-AC8E8E8CAE5F}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe 
FirewallRules: [{D79E4EE9-EFDA-4E67-8058-B61F6DB74F1B}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\lync.exe 
FirewallRules: [{52CF03BB-6450-4DE0-9F62-DBCCAB1375E2}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\lync.exe 
FirewallRules: [{2ECD17B5-BA11-4883-B71D-3ECAF0000F5A}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\UcMapi.exe 
FirewallRules: [{5F4F56C8-E25E-4F57-9C6E-8BF24B0740D7}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\UcMapi.exe 
FirewallRules: [{1B43FB4F-6820-42BE-B648-E2A0B645ECAC}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\outlook.exe 
FirewallRules: [TCP Query User{7536AADD-AFB1-4D74-BFC5-93866D0F20B1}C:\program files\phyton27\python.exe] => (Allow) C:\program files\phyton27\python.exe 
FirewallRules: [UDP Query User{037325D5-1A05-43FA-8437-AF8F79E0252D}C:\program files\phyton27\python.exe] => (Allow) C:\program files\phyton27\python.exe 
FirewallRules: [{35B66280-F3BF-48D1-B258-60521AD76F91}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe 
FirewallRules: [{48685958-6510-45F7-AECD-B0BA13FB8A78}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe 
FirewallRules: [{FC170E4A-A552-4DEB-B449-BC60F3411496}] => (Allow) C:\Users\Privat\AppData\Roaming\Dropbox\bin\Dropbox.exe 
FirewallRules: [{15EBFFE2-2D50-4355-BA16-388A69710491}] => (Allow) C:\Users\Privat\AppData\Roaming\Dropbox\bin\Dropbox.exe 
FirewallRules: [{A17B094A-FB68-4796-B4A0-14F3AA5B2584}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS7D20\setup\hpznui40.exe 
FirewallRules: [{F0758AD3-B930-4C5E-B6B6-298E292AE1FF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe 
FirewallRules: [{67F18ADA-8896-4DCF-A0E4-54637D666994}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe 
FirewallRules: [{DD22AFF3-EC8E-4059-88E5-2DCB0890DCC3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe 
FirewallRules: [{C1D2B773-6F3B-4ACD-9FF4-D9F7D55E27C5}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe 
FirewallRules: [{273A9206-2239-4FC1-B37D-59F5AB0CC838}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe 
FirewallRules: [{3202F6ED-8B74-491D-BD6C-C0E67A33592B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe 
FirewallRules: [{E225E8DA-7B7F-4455-8241-EAB3B8B29FC9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe 
FirewallRules: [{52D3AB68-5E44-43A8-B294-32A375A644FD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe 
FirewallRules: [{F352972A-2F29-4B27-A511-773F89EBD56F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe 
FirewallRules: [{93A16612-EEB3-4E54-8FE7-BF9F0E0AFD76}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe 
FirewallRules: [{4F942095-9D57-4B7B-B46A-81965E28578E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe 
FirewallRules: [{3D883B83-2E4A-4EF6-B41A-5154D78E63E2}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe 
FirewallRules: [{FC7BB2E4-620F-41AA-AE63-E5E687C67876}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe 
FirewallRules: [{3EDA11E9-891F-445C-9233-2DF7D7F255D0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe 
FirewallRules: [{763F05D1-51D3-4CEB-B99F-60D8D46BDA36}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe 
FirewallRules: [{F35E9B93-E5EE-4E03-A347-D92B1761D23B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe 
FirewallRules: [{6AE928BF-B4D9-4207-B070-24586D74C25A}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe 
FirewallRules: [{1165552C-1D2C-4502-8C26-8A996371016C}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS1DA5\HPDiagnosticCoreUI.exe 
FirewallRules: [{8D1FDDC1-F3F3-402B-B22C-FA3C61BE24E9}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS1DA5\HPDiagnosticCoreUI.exe 
FirewallRules: [{6E1B2C19-01AD-4539-8EF2-13BDCFBCA249}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS011D\HPDiagnosticCoreUI.exe 
FirewallRules: [{E45EE944-2926-42BD-A42D-A16B16F59760}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS011D\HPDiagnosticCoreUI.exe 
FirewallRules: [{D51D5E92-C54B-4288-99DF-85BE5B61F535}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe 
FirewallRules: [{D681DF84-3BF8-4D00-8658-81797BF0147A}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe 
FirewallRules: [{445B4488-8CF4-4193-9202-A064AD86E2B2}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS6A37\HPDiagnosticCoreUI.exe 
FirewallRules: [{C89AF27E-602C-4907-B242-8003CEBAF483}] => (Allow) C:\Users\Privat\AppData\Local\Temp\7zS6A37\HPDiagnosticCoreUI.exe 
FirewallRules: [TCP Query User{7C301066-E20B-4424-8A84-C23075CBCBE6}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe 
FirewallRules: [UDP Query User{7A133D9B-1559-40AF-9CBD-5E145AE27C7B}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe 
FirewallRules: [{3C2DCA19-5187-4FB6-9DE1-0D6F60E5FB65}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\lync.exe 
FirewallRules: [{4E376449-C954-4D0B-B9ED-A6CD5D442251}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\lync.exe 
FirewallRules: [{475EF830-BB78-41AB-9167-4CAF1875422A}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\UcMapi.exe 
FirewallRules: [{2F9B3A84-6027-4E61-ABF4-2A9D7437490A}] => (Allow) C:\Program Files\Microsoft Office 2013\Office15\UcMapi.exe 
FirewallRules: [TCP Query User{66F11E45-44DB-43F7-9ADC-A32A237B9F70}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe 
FirewallRules: [UDP Query User{3B01F281-BC5D-4474-821E-994EF0B615B8}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe 
FirewallRules: [TCP Query User{DA7BD0C9-EC0C-42B2-A843-5C25E7B736BF}C:\program files (x86)\nutsaboutnets\netstress\netstress.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress.exe 
FirewallRules: [UDP Query User{06812317-171E-469F-80CC-11992FE7C9A7}C:\program files (x86)\nutsaboutnets\netstress\netstress.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress.exe 
FirewallRules: [TCP Query User{B366DC9E-088E-4B7C-870D-1B07EEEAAB1A}C:\program files (x86)\nutsaboutnets\netstress\nan-finder.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\nan-finder.exe 
FirewallRules: [UDP Query User{6423529E-A6A2-4A7F-B1C9-E477D2DF94DA}C:\program files (x86)\nutsaboutnets\netstress\nan-finder.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\nan-finder.exe 
FirewallRules: [TCP Query User{208FD738-B687-4EA7-89F4-75DBEDAC428E}C:\program files (x86)\nutsaboutnets\netstress\netstress-tcpserver.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress-tcpserver.exe 
FirewallRules: [UDP Query User{3C4DB53D-3ED5-40F3-8DB7-BC63719F9993}C:\program files (x86)\nutsaboutnets\netstress\netstress-tcpserver.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress-tcpserver.exe 
FirewallRules: [TCP Query User{55F6911D-48BB-46AC-8D20-F33CCF017276}C:\program files (x86)\nutsaboutnets\netstress\netstress-udpserver.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress-udpserver.exe 
FirewallRules: [UDP Query User{8D1E0BAE-8F9E-4C99-9B33-9B2D80621F19}C:\program files (x86)\nutsaboutnets\netstress\netstress-udpserver.exe] => (Allow) C:\program files (x86)\nutsaboutnets\netstress\netstress-udpserver.exe 
FirewallRules: [TCP Query User{CD88D7DD-6655-401B-862B-AF19F0C94E7D}C:\users\privat\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\privat\appdata\roaming\spotify\spotify.exe 
FirewallRules: [UDP Query User{5CE491C9-E46F-4EAC-AB12-86F7FD5D9BF4}C:\users\privat\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\privat\appdata\roaming\spotify\spotify.exe 
FirewallRules: [{DE6E0FF9-1807-4054-948D-11949E6F2F42}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe\Bonjour\mDNSResponder.exe 
FirewallRules: [{07E6606E-DB92-4ED0-94ED-B901ADB3FFBC}] => (Allow) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe 
FirewallRules: [{8A49BA2B-5EEC-492F-8082-15CFD6AE3C14}] => (Allow) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\mDNSResponder.exe 
FirewallRules: [{85A9552C-B1AE-42A1-952F-EA8EE56F3FAE}] => (Allow) C:\Program Files (x86)\RemoteX\remotex.exe 
FirewallRules: [{D3EA61EC-A70B-4B24-ADDC-BD0EA8083DA2}] => (Allow) C:\Program Files (x86)\RemoteX\remotex.exe 
FirewallRules: [{AEEE2A0B-F1A9-428C-8EAF-EFC555F8AADB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe 
FirewallRules: [{60D3476F-C834-4E13-9BE2-C52594722670}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe 
FirewallRules: [{7E69A2DD-2D53-43CE-8EE1-65C6C43DB542}] => (Allow) C:\Program Files (x86)\RemoteX\remotex.exe 
FirewallRules: [{BE45AA4C-703C-4193-B8A3-6DC0BF85D02C}] => (Allow) C:\Program Files (x86)\RemoteX\remotex.exe 
FirewallRules: [{E2371494-6228-439C-A139-9564DE6E236C}] => (Allow) C:\Program Files (x86)\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe 
FirewallRules: [{2D4C714C-EC45-4D2F-B733-9949BE6A11D1}] => (Allow) C:\Program Files (x86)\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe 
FirewallRules: [{1488902C-F30A-4A63-AAA9-B43E78235398}] => (Allow) C:\Program Files (x86)\StarMoney 9.0\app\StarMoney.exe 
FirewallRules: [{64E6F3B1-0681-4927-9CD1-E346F0D8F66B}] => (Allow) C:\Program Files (x86)\StarMoney 9.0\app\StarMoney.exe 
FirewallRules: [TCP Query User{C890031C-B89B-499E-A70F-B6FDA20367F2}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe 
FirewallRules: [UDP Query User{8BB419D8-2FBA-47E6-97A8-95D3A7D185B6}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe 
FirewallRules: [TCP Query User{9E8AFD5E-89B5-46BF-8EBD-91CD7926BB39}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe 
FirewallRules: [UDP Query User{27C30B2B-B899-4926-8665-8998B15A65CE}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe 
FirewallRules: [{1135494F-3CC0-44BD-8EC5-97F5FDA28F75}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe 
FirewallRules: [{E7CC9BDD-11C8-44C5-90BC-962A3AD7EAC8}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe 
FirewallRules: [{255C08EB-46A6-42B1-973C-CD5F0A8324EE}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe 
FirewallRules: [{DBE27BB1-BB59-4366-A8B2-5DC1C9FAFF42}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe 
FirewallRules: [TCP Query User{DF1B8213-0243-487D-824F-C35B14128814}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe 
FirewallRules: [UDP Query User{135BBC4C-B800-405B-92E0-430FBC638FCF}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60014d656f6786b9\fritzbox-usb-fernanschluss.exe 
FirewallRules: [{28235C9C-7646-43C6-BB25-CDC8DF72C9D0}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe 
FirewallRules: [{27A1A0DA-D10A-492B-BC08-088CFB599AC6}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe 
FirewallRules: [TCP Query User{9B10B11F-AFE5-41B3-8528-E667B7D78CA8}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe 
FirewallRules: [UDP Query User{D1714D81-5141-4D51-BAC4-87134D375833}C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe] => (Allow) C:\users\privat\appdata\local\apps\2.0\gmddbe1b.po9\ndcnw7rl.o84\frit..tion_1acae14e4778b8d2_0002.0003_60ff6cdc6aeff8f9\fritzbox-usb-fernanschluss.exe 
FirewallRules: [{DC309707-4CB2-4DB0-990C-2F32D9953460}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe 
FirewallRules: [{84401280-8492-4BC1-A7D2-A9AC65BD85B4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe 
FirewallRules: [{FFEE8F03-BAE9-4CDC-B788-E001E4D2CA47}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe 
FirewallRules: [{5E2437DD-FA43-4CE9-AEB6-6F2C1625D03F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe 
FirewallRules: [{C5C9B702-0CDD-4B53-A362-D2825D431776}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe 
FirewallRules: [{437349DB-C38B-4C0A-A192-99930F115E5D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe 
FirewallRules: [TCP Query User{7C88E175-6E29-4984-BB28-7747E755886B}C:\users\privat\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\privat\appdata\roaming\dropbox\bin\dropbox.exe 
FirewallRules: [UDP Query User{F701C8C9-7644-464F-9751-6384DB4D2F0B}C:\users\privat\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\privat\appdata\roaming\dropbox\bin\dropbox.exe 
FirewallRules: [{30ADEEFA-EBF5-49B1-BCFB-2F5027880709}] => (Allow) LPort=1689 
FirewallRules: [{7EFCA915-DD98-4F0E-B7BB-6CC97D29E909}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe 
FirewallRules: [{045F8522-31E8-4988-A74C-B7204167F9FF}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe 
FirewallRules: [{45F00961-3332-454F-9C96-2FD2F5AB6C28}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe 
FirewallRules: [{3D052AF7-D3F7-46E5-B3BC-BD119E6D1F8A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe 
FirewallRules: [{D976D5CD-5E32-4069-9CE5-5E8E8AA1B1B3}] => (Allow) C:\Program Files (x86)\SQL Anywhere 12\Bin32\dbsrv12.exe 
FirewallRules: [{08C36848-8AC1-429B-BF43-33A287F5B6A1}] => (Allow) C:\Program Files (x86)\SQL Anywhere 12\Bin32\dbsrv12.exe 
FirewallRules: [{AEF99098-637D-4BBD-80E4-45EF918FA7BC}] => (Allow) C:\Program Files (x86)\Lexware\Update Service\Hmg.InstallationService.Service.exe 
FirewallRules: [{4F161BBF-8FD1-4323-B93D-F76706402798}] => (Allow) C:\Program Files (x86)\Lexware\Update Service\Hmg.InstallationService.Service.exe 
FirewallRules: [{848E5105-B0F0-438C-BE26-76F213FAA853}] => (Allow) C:\Program Files (x86)\Lexware\services\Haufe.FabricHostService.exe 
FirewallRules: [{AB9D1FBA-F79D-4B61-9E92-E34823C93145}] => (Allow) C:\Program Files (x86)\Lexware\services\Haufe.FabricHostService.exe 
FirewallRules: [{203FEFF9-54AE-46B1-AD28-799B4124FEA7}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe 
FirewallRules: [{6A1FCE33-B005-4345-A45E-BC1C65AC8A3E}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe 
FirewallRules: [{513400FE-62C4-4573-917A-551F27FBCD46}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe 
FirewallRules: [{7C438B49-7364-4266-B936-65C0AF930FC6}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe 
FirewallRules: [{FBF23D4D-C190-4A6A-8938-7C4C0107DAC8}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe 
FirewallRules: [{AFEE97A4-7A63-433B-935E-4995C37A1F9C}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe 
FirewallRules: [TCP Query User{F2670578-D33F-4703-9750-B6C08F3AB6B9}C:\program files (x86)\plex\plex media server\plex dlna server.exe] => (Allow) C:\program files (x86)\plex\plex media server\plex dlna server.exe 
FirewallRules: [UDP Query User{2090A4B0-F0EF-4529-A6FE-C264FDEE28C9}C:\program files (x86)\plex\plex media server\plex dlna server.exe] => (Allow) C:\program files (x86)\plex\plex media server\plex dlna server.exe 
FirewallRules: [{8C1785D8-6545-42AE-832F-1C1A2AB6D541}] => (Allow) C:\program files (x86)\plex\plex media server\plex dlna server.exe 
FirewallRules: [{22BD803B-D8C9-472B-BE4E-6CB554741AE9}] => (Allow) C:\program files (x86)\plex\plex media server\plex dlna server.exe 
FirewallRules: [{E1979067-E2ED-4576-BADD-9A8A4D0B3128}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_b5355c80db433451_0002.0003_6ff5e44d5e38db65\fritzbox-usb-fernanschluss.exe 
FirewallRules: [{D51AD513-252B-4276-ACF6-214C60C9A263}] => (Allow) C:\Users\Privat\AppData\Local\Apps\2.0\GMDDBE1B.PO9\NDCNW7RL.O84\frit..tion_b5355c80db433451_0002.0003_6ff5e44d5e38db65\fritzbox-usb-fernanschluss.exe 
FirewallRules: [TCP Query User{4CA1672B-DC5D-47C9-BFCF-B9020FD750E8}C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe] => (Allow) C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe 
FirewallRules: [UDP Query User{B87F0690-BF6F-4FE5-98F0-44A5F3C87638}C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe] => (Allow) C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe 
FirewallRules: [{9C3A4AE9-8FAB-4ADA-B545-86EBAF353C98}] => (Block) C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe 
FirewallRules: [{6DE0B844-8453-4EE5-96A0-6327FF22D040}] => (Block) C:\users\privat\appdata\local\plex media server\plug-ins\plex media server\plug-ins\bittorrent.bundle\contents\bin\windows_386\scrapmagnet.exe 
FirewallRules: [{48B62EBE-F492-4632-827A-FE9799BADBB8}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe 
FirewallRules: [{14767D7E-5547-4B9A-A423-E2699716E41F}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe 
FirewallRules: [{6A587AAF-2BD3-452A-9FB1-A4189CE992B0}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex DLNA Server.exe 
FirewallRules: [{1DD79883-D986-466A-8A23-999AEA46CEFB}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe 
FirewallRules: [{F8F8D3B0-768F-41FD-875E-A5687F64F5DC}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe 
FirewallRules: [{09665B21-A08A-4EAD-9423-FF0312DDB650}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe 
FirewallRules: [{D14BA356-E0AB-43C1-9D4C-1A227016AA9A}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe 
FirewallRules: [{B83FFB77-2209-41B5-AF05-D03593449712}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe 
FirewallRules: [{A1C3908E-F3ED-45B2-BA6C-651B49E8D8F3}] => (Allow) C:\Program Files (x86)\VMware\VMware Horizon View Client\x64\vmware-remotemks.exe 
FirewallRules: [{82717099-A8CF-4523-B2E7-076B436AA2E9}] => (Block) %ProgramFiles%\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe 
FirewallRules: [{D540058E-F758-459C-883B-F3BBB00E71E7}] => (Allow) LPort=1689 
FirewallRules: [TCP Query User{CEEFF73A-B5EB-4BD5-B34F-006EFDFBE52C}C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light] => (Allow) C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light 
FirewallRules: [UDP Query User{8790B0F4-5246-45EB-BA32-5F44343046D5}C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light] => (Allow) C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light 
FirewallRules: [{DA42BC18-ADF8-47D3-AE34-8919C309A404}] => (Block) C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light 
FirewallRules: [{4743768E-5F8E-4DD3-81AF-1F33C05619A6}] => (Block) C:\users\privat\appdata\local\temp\jivexviewer\jre\bin\jivex[dv] light 
FirewallRules: [TCP Query User{72F55C85-7D7D-4E57-97BE-49721E7337B0}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Allow) C:\program files (x86)\arduino\java\bin\javaw.exe 
FirewallRules: [UDP Query User{3B01D770-FEDF-40AF-B326-D9EBBE689852}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Allow) C:\program files (x86)\arduino\java\bin\javaw.exe 
FirewallRules: [{E9A8B7AA-7418-40B1-BCD4-3C27F0E6F78D}] => (Block) C:\program files (x86)\arduino\java\bin\javaw.exe 
FirewallRules: [{06B17BD5-E240-4E73-BB03-F0DE45269FE0}] => (Block) C:\program files (x86)\arduino\java\bin\javaw.exe 
FirewallRules: [{12BCAC9F-B278-4733-9378-DF0E6D20CD98}] => (Allow) C:\Program Files\iTunes\iTunes.exe 
FirewallRules: [{C74394F3-D2EE-4EAE-AA38-BF34DDF03897}] => (Allow) C:\Program Files (x86)\StarMoney 11\ouservice\StarMoneyOnlineUpdate.exe 
FirewallRules: [{D77DE123-5FBC-45CD-AF75-10FE6D264E70}] => (Allow) C:\Program Files (x86)\StarMoney 11\ouservice\StarMoneyOnlineUpdate.exe 
FirewallRules: [{C1A70C58-7DDA-474C-B7DF-2193FF80580A}] => (Allow) C:\Program Files (x86)\StarMoney 11\app\StarMoney.exe 
FirewallRules: [{F8C2E66D-FA0E-41D3-B866-3C1E484E5339}] => (Allow) C:\Program Files (x86)\StarMoney 11\app\StarMoney.exe 
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access 
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service 
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater 
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service   
==================== Wiederherstellungspunkte =========================   
29-06-2017 21:34:27 Installiert StarMoney 
08-07-2017 11:29:17 Geplanter Prüfpunkt 
12-07-2017 02:58:32 Windows Update   
==================== Fehlerhafte Geräte im Gerätemanager =============   
Name: Photosmart C309a series 
Description: Photosmart C309a series 
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318} 
Manufacturer: HP 
Service:  
Problem: : This device is disabled. (Code 22) 
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.   
Name: Photosmart C309a series 
Description: Photosmart C309a series 
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f} 
Manufacturer: HP 
Service: StillCam 
Problem: : This device is disabled. (Code 22) 
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.     
==================== Fehlereinträge in der Ereignisanzeige: =========================   
Applikationsfehler: 
================== 
Error: (07/19/2017 05:59:42 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) 
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: 
hr=0xC004F074 
Befehlszeilenargumente: 
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable   
Error: (07/19/2017 05:59:39 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) 
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: 
hr=0xC004F074 
Befehlszeilenargumente: 
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable   
Error: (07/19/2017 06:36:26 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) 
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: 
hr=0xC004F074 
Befehlszeilenargumente: 
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable   
Error: (07/19/2017 06:36:23 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) 
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: 
hr=0xC004F074 
Befehlszeilenargumente: 
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable   
Error: (07/18/2017 07:02:28 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) 
Description: Das Volume "System-reserviert" wurde aufgrund eines Fehlers nicht optimiert: Falscher Parameter. (0x80070057)   
Error: (07/18/2017 06:35:45 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3002) (User: NT-AUTORITÄT) 
Description: Der Textzeichenfolgenwert zur Beschreibung des Leistungsindikators in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "34457". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten.   
Error: (07/18/2017 06:35:45 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) 
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.   
Error: (07/18/2017 06:30:17 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) 
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: 
hr=0xC004F074 
Befehlszeilenargumente: 
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=NetworkAvailable   
Error: (07/18/2017 06:30:05 PM) (Source: CyberGhost 6 Service) (EventID: 0) (User: ) 
Description: Der Dienst kann nicht beendet werden. System.NullReferenceException: Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt. 
   bei CyberGhost.VPNServices.OpenVpn.DisconnectFromVpnServer(Boolean sendDisconnectEvent) in C:\TeamCity\buildAgent\work\5e751977071a47b0\Projects\CyberGhost\CyberGhost 6\CyberGhost.VPNServices\OpenVPN.cs:Zeile 348. 
   bei Service.ServiceController.OnStop() in C:\TeamCity\buildAgent\work\5e751977071a47b0\Projects\CyberGhost\CyberGhost 6\CyberGhost.Service\ServiceController.cs:Zeile 170. 
   bei System.ServiceProcess.ServiceBase.DeferredStop()   
Error: (07/18/2017 06:30:05 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) 
Description: Fehler bei der Lizenzaktivierung (slui.exe). Fehlercode: 
hr=0xC004F074 
Befehlszeilenargumente: 
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=81671aaf-79d1-4eb1-b004-8cbbe173afea;NotificationInterval=1440;Trigger=UserLogon;SessionId=1     
Systemfehler: 
============= 
Error: (07/19/2017 05:59:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) 
Description: Der Dienst "Haufe FabricHostService" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.   
Error: (07/19/2017 09:37:45 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) 
Description: 4   
Error: (07/19/2017 06:48:08 AM) (Source: DCOM) (EventID: 10010) (User: Privat-PC) 
Description: Der Server "{BF6C1E47-86EC-4194-9CE5-13C15DCB2001}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.   
Error: (07/19/2017 06:47:38 AM) (Source: DCOM) (EventID: 10010) (User: Privat-PC) 
Description: Der Server "{1B1F472E-3221-4826-97DB-2C2324D389AE}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.   
Error: (07/19/2017 06:36:53 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) 
Description: Der Dienst "Haufe FabricHostService" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.   
Error: (07/18/2017 08:31:58 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) 
Description: 4   
Error: (07/18/2017 07:03:19 PM) (Source: DCOM) (EventID: 10010) (User: Privat-PC) 
Description: Der Server "{BF6C1E47-86EC-4194-9CE5-13C15DCB2001}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.   
Error: (07/18/2017 07:02:49 PM) (Source: DCOM) (EventID: 10010) (User: Privat-PC) 
Description: Der Server "{1B1F472E-3221-4826-97DB-2C2324D389AE}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.   
Error: (07/18/2017 06:29:37 PM) (Source: Service Control Manager) (EventID: 7016) (User: ) 
Description: Der Dienst "chip 1-click download service" hat einen ungültigen aktuellen Status gemeldet: 0   
Error: (07/18/2017 06:29:37 PM) (Source: Service Control Manager) (EventID: 7016) (User: ) 
Description: Der Dienst "chip 1-click download service" hat einen ungültigen aktuellen Status gemeldet: 0     
CodeIntegrity: 
=================================== 
  Date: 2017-07-18 19:02:28.082 
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.   
  Date: 2017-07-15 10:47:40.521 
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.   
  Date: 2017-07-10 18:57:19.881 
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.   
  Date: 2017-07-09 09:55:37.791 
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.   
  Date: 2017-07-06 20:07:00.933 
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.   
  Date: 2017-07-05 20:05:14.853 
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.   
  Date: 2017-07-03 19:49:13.879 
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.   
  Date: 2017-06-30 20:00:36.956 
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.   
  Date: 2017-06-29 18:27:25.006 
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.   
  Date: 2017-06-27 20:26:54.191 
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.     
==================== Speicherinformationen ===========================    
Prozessor: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz 
Prozentuale Nutzung des RAM: 83% 
Installierter physikalischer RAM: 3977.05 MB 
Verfügbarer physikalischer RAM: 674.97 MB 
Summe virtueller Speicher: 5129.05 MB 
Verfügbarer virtueller Speicher: 1498.07 MB   
==================== Laufwerke ================================   
Drive c: (System) (Fixed) (Total:179.35 GB) (Free:78.87 GB) NTFS 
Drive d: (Daten) (Fixed) (Total:1863.01 GB) (Free:821.13 GB) NTFS 
Drive p: (Programmdaten) (Fixed) (Total:53.2 GB) (Free:37.79 GB) NTFS   
==================== MBR & Partitionstabelle ==================   
======================================================== 
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 5ECC2F66) 
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) 
Partition 2: (Not Active) - (Size=179.3 GB) - (Type=07 NTFS) 
Partition 3: (Not Active) - (Size=53.2 GB) - (Type=07 NTFS)   
======================================================== 
Disk: 1 (Size: 1863 GB) (Disk ID: 9A98B04F) 
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)   
==================== Ende von Addition.txt ============================   --- --- ---   
Hm, ne Menge Text, was kann man ableiten und vor allem wie?  
Vielen Dank & Gruß 
Christian    |