ADWCleaner. 1. Log Code:
# AdwCleaner 7.0.2.1 - Logfile created on Mon Sep 18 20:56:36 2017
# Updated on 2017/29/08 by Malwarebytes
# Database: 09-15-2017.1
# Running on Windows 10 Home (X64)
# Mode: scan
# Support: https://www.malwarebytes.com/support
***** [ Services ] *****
PUP.Optional.Chip, chip1click
***** [ Folders ] *****
PUP.Optional.Chip, C:\Program Files (x86)\Chip Digital GmbH
PUP.Optional.Chip, C:\Users\migue\AppData\Local\Downloaded Installations\{DAD82379-C684-4D04-83D5-2B9934A9C362}
PUP.Optional.Chip, C:\Windows\Installer\{503CA94E-0834-4CEE-AD92-BA17AF4E809A}
***** [ Files ] *****
No malicious files found.
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{503CA94E-0834-4CEE-AD92-BA17AF4E809A}
PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\04A063A0BBEACF54EAEF493C49D9E3F6
PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\04A063A0BBEACF54EAEF493C49D9E3F6
PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E49AC3054380EEC4DA29AB71FAE408A9
PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Classes\Installer\Features\E49AC3054380EEC4DA29AB71FAE408A9
PUP.Optional.Chip, [Key] - HKLM\SOFTWARE\Classes\Installer\Products\E49AC3054380EEC4DA29AB71FAE408A9
PUP.Optional.Chip, [Key] - HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\chip 1-click download service
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries.
*************************
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ########## Malwarebytes Log. Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 18.09.17
Scan-Zeit: 23:03
Protokolldatei: c5e47122-9cb4-11e7-95fd-d017c29b58b4.json
Administrator: Ja
-Softwaredaten-
Version: 3.2.2.2029
Komponentenversion: 1.0.188
Version des Aktualisierungspakets: 1.0.2836
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10 (Build 15063.608)
CPU: x64
Dateisystem: NTFS
Benutzer: DESKTOP-HIIA28F\migue
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Ergebnis: Abgeschlossen
Gescannte Objekte: 346518
Erkannte Bedrohungen: 1
In die Quarantäne verschobene Bedrohungen: 1
Abgelaufene Zeit: 3 Min., 40 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Erkennung
PUM: Erkennung
-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)
Modul: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswert: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 0
(keine bösartigen Elemente erkannt)
Datei: 1
Trojan.Floxif, C:\USERS\MIGUE\DOWNLOADS\CCSETUP533_SLIM.EXE, In Quarantäne, [8820], [436381],1.0.2836
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
(end) Kommt von CC Cleaner ... wurde ja irgendwie gehackt oder so.
Addition.txt Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 17-09-2017 01
durchgeführt von migue (18-09-2017 23:15:25)
Gestartet von C:\Users\migue\Downloads
Windows 10 Home Version 1703 (X64) (2017-08-16 05:52:54)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-2798883569-1047031540-1599698678-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2798883569-1047031540-1599698678-503 - Limited - Disabled)
Gast (S-1-5-21-2798883569-1047031540-1599698678-501 - Limited - Disabled)
migue (S-1-5-21-2798883569-1047031540-1599698678-1001 - Administrator - Enabled) => C:\Users\migue
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Adobe Flash Player 26 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 26.0.0.151 - Adobe Systems Incorporated)
Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 384.94 - NVIDIA Corporation) Hidden
ASUS GPU TweakII (HKLM-x32\...\{0075AAC2-EA9F-490E-83F7-5D5F81EB2A43}) (Version: 1.1.7.2 - ASUSTek COMPUTER INC.) Hidden
ASUS GPU TweakII (HKLM-x32\...\InstallShield_{0075AAC2-EA9F-490E-83F7-5D5F81EB2A43}) (Version: 1.1.7.2 - ASUSTek COMPUTER INC.)
ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.031 - ASUSTek Computer Inc.)
Brawlhalla (HKLM\...\Steam App 291550) (Version: - Blue Mammoth Games)
Chrome Remote Desktop Host (HKLM-x32\...\{BAD014C7-DB71-474A-AC68-F06FAE17A949}) (Version: 61.0.3163.20 - Google Inc.)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
Discord (HKU\S-1-5-21-2798883569-1047031540-1599698678-1001\...\Discord) (Version: 0.0.298 - Discord Inc.)
Garry's Mod (HKLM\...\Steam App 4000) (Version: - Facepunch Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 60.0.3112.113 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.115 - Google Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games)
Gyazo 3.3.2 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.)
H1Z1: King of the Kill Test Server (HKLM\...\Steam App 439700) (Version: - Daybreak Game Company)
Infestation: The New Z (HKLM\...\Steam App 555570) (Version: - Fredaikis AB)
Java 8 Update 144 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
League of Legends (HKLM-x32\...\{C56877FD-6BEB-4717-81B3-1254FA1FD7FC}) (Version: 4.2.1 - Riot Games) Hidden
League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games)
Logitech Gaming Software 8.96 (HKLM\...\Logitech Gaming Software) (Version: 8.96.81 - Logitech Inc.)
Malwarebytes Version 3.2.2.2029 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.2.2.2029 - Malwarebytes)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25017 (HKLM-x32\...\{58b3beca-b999-4f6f-a48c-81681136a620}) (Version: 14.10.25017.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mozilla Firefox 55.0.3 (x64 de) (HKLM\...\Mozilla Firefox 55.0.3 (x64 de)) (Version: 55.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.1 - Mozilla)
NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.9.0.61 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.9.0.61 - NVIDIA Corporation)
NVIDIA Grafiktreiber 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 359.06 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Opera Stable 47.0.2631.80 (HKU\S-1-5-21-2798883569-1047031540-1599698678-1001\...\Opera 47.0.2631.80) (Version: 47.0.2631.80 - Opera Software)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7910 - Realtek Semiconductor Corp.)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.9 - Rockstar Games)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.5 - TeamSpeak Systems GmbH)
Tom Clancy's Rainbow Six Siege (HKLM-x32\...\Uplay Install 635) (Version: - Ubisoft Montreal)
Vegas Pro 13.0 (64-bit) (HKLM\...\{386F5740-091D-11E4-B13E-F04DA23A5C58}) (Version: 13.0.373 - Sony)
VEGAS Pro 14.0 (64-bit) (HKLM\...\{8C4D3D00-4FB0-11E7-8E8D-A9EF5249FCEF}) (Version: 14.0.270 - VEGAS)
Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.)
WinRAR 5.50 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
Worms Revolution (HKLM\...\Steam App 200170) (Version: - Team17 Digital Ltd)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-2798883569-1047031540-1599698678-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\migue\AppData\Local\Microsoft\OneDrive\17.3.6943.0625\amd64\FileSyncShell64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2798883569-1047031540-1599698678-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\migue\AppData\Local\Microsoft\OneDrive\17.3.6943.0625\amd64\FileSyncShell64.dll => Keine Datei
CustomCLSID: HKU\S-1-5-21-2798883569-1047031540-1599698678-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\migue\AppData\Local\Microsoft\OneDrive\17.3.6943.0625\amd64\FileSyncShell64.dll => Keine Datei
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2015-11-24] (NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {03312E55-E690-4C00-813A-1FBE2DC39546} - System32\Tasks\Opera scheduled Autoupdate 1505587027 => C:\Users\migue\AppData\Local\Programs\Opera\launcher.exe [2017-09-06] (Opera Software)
Task: {2554B5DE-052F-489E-ADCA-0E2EDAE2AC45} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-08-18] (NVIDIA Corporation)
Task: {34DB5D5D-F93A-4165-935D-828BBA1A633A} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-05-16] ()
Task: {5F346AC6-C3FB-44A0-9D92-B857841EBE1B} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-05-16] ()
Task: {83D2A2BD-F123-477E-A3C8-A0551D7FA75F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-08-16] (Google Inc.)
Task: {8F6E1A40-4CAE-45BD-BDA5-DC4DCF945D3C} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-08-18] (NVIDIA Corporation)
Task: {9EF4BC32-B901-422D-9D56-54A56CEC44F8} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-08-18] (NVIDIA Corporation)
Task: {AFFC5128-0509-43E0-AFEE-040B271EB09E} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {BD598002-BD2F-438E-AC12-613C11127E0F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-08-18] (NVIDIA Corporation)
Task: {C3F1B8C2-79B2-4697-976F-0C00A8BCA538} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-08-18] (NVIDIA Corporation)
Task: {D641E046-2DF8-4415-8B6B-C3F599395FB8} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-08-18] (NVIDIA Corporation)
Task: {E127E4AE-09B5-4AE5-8738-3EDFF4C9E0C9} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-08-18] (NVIDIA Corporation)
Task: {F466EBB0-FE46-4415-AAC1-7B772EC4EC78} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-08-16] (Google Inc.)
Task: {F71887BA-9870-4DF3-BBD2-ABE1F0D4AA12} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2015-05-18] ()
Task: {FEDDEF65-C243-4E53-BFCA-E5CE449521F7} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-08-18] (NVIDIA Corporation)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
==================== Verknüpfungen & WMI ========================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
ShortcutWithArgument: C:\Users\migue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Chrome Remote Desktop.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2017-08-16 08:32 - 2015-11-24 21:32 - 000116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-08-18 22:31 - 2015-08-18 22:31 - 000048640 _____ () C:\Windows\SysWOW64\ASGT.exe
2017-08-20 21:08 - 2017-08-18 06:36 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-03-18 22:58 - 2017-03-18 22:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-03-18 22:59 - 2017-03-20 06:36 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-08-22 19:05 - 2017-08-22 19:05 - 000074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-08-22 19:05 - 2017-08-22 19:05 - 000203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-08-22 19:05 - 2017-08-22 19:05 - 036162048 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-08-22 19:05 - 2017-08-22 19:05 - 002237952 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\skypert.dll
2015-03-07 02:07 - 2015-03-07 02:07 - 000908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll
2017-08-18 11:01 - 2017-08-18 11:01 - 001096824 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll
2015-03-07 02:07 - 2015-03-07 02:07 - 000060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll
2017-08-18 11:01 - 2017-08-18 11:01 - 000241784 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll
2015-12-02 15:30 - 2015-12-02 15:30 - 000065536 _____ () C:\Program Files (x86)\ASUS\GPU TweakII\Exeio.dll
2015-11-30 10:12 - 2015-11-30 10:12 - 001946624 _____ () C:\Program Files (x86)\ASUS\GPU TweakII\Vender.dll
2017-08-20 21:08 - 2017-08-18 06:36 - 069807552 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2017-08-20 21:08 - 2017-08-18 06:36 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2017-03-18 23:03 - 2017-03-18 23:01 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-2798883569-1047031540-1599698678-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
HKU\S-1-5-21-2798883569-1047031540-1599698678-1001\...\StartupApproved\Run: => "Discord"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [{CBE6CE9E-844C-4211-97C4-209E2B917FCB}] => (Allow) C:\Users\migue\Desktop\Steam\Steam.exe
FirewallRules: [{9F909FF3-41A8-497F-A609-E07086E1D589}] => (Allow) C:\Users\migue\Desktop\Steam\Steam.exe
FirewallRules: [{7156A08C-19FB-4AE3-8738-E2A3F4A2C522}] => (Allow) C:\Users\migue\Desktop\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{DC00A94C-3777-4FF2-AE2F-2A0468BAA6D9}] => (Allow) C:\Users\migue\Desktop\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{67C64876-BAED-4D71-854C-BC837B58ED57}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{4E1280D0-4842-4BB0-BBEB-E79AE5DEDDEE}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{EF4A8A04-3080-450D-9FEF-F74FD497ECAD}C:\users\migue\desktop\steam\steamapps\common\h1z1 king of the kill test server\h1z1.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\h1z1 king of the kill test server\h1z1.exe
FirewallRules: [UDP Query User{88E9D097-987E-4EA1-9FA2-DCA2075857DD}C:\users\migue\desktop\steam\steamapps\common\h1z1 king of the kill test server\h1z1.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\h1z1 king of the kill test server\h1z1.exe
FirewallRules: [{52027635-D63E-4A4A-A96C-1D79DE0BA698}] => (Allow) C:\Users\migue\Desktop\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{45D866E4-C904-4954-AF7C-F03F16063726}] => (Allow) C:\Users\migue\Desktop\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{DC81D245-22C0-469F-9ABA-5073C235930F}] => (Allow) C:\Users\migue\Desktop\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{E45E22BD-A693-441B-9494-0E2853558A33}] => (Allow) C:\Users\migue\Desktop\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [TCP Query User{69214606-9DFC-4692-95E5-58AF1E9098B5}C:\users\migue\desktop\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{C7A0381B-4906-48E7-A73B-941EC6E254D2}C:\users\migue\desktop\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{1322D9DA-F6EE-4337-9BB5-1673FD1B752F}C:\users\migue\desktop\steam\steamapps\common\warface\mycomgames\mycomgames.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\warface\mycomgames\mycomgames.exe
FirewallRules: [UDP Query User{F87958F9-B36B-40B2-8C58-C8766CEA3536}C:\users\migue\desktop\steam\steamapps\common\warface\mycomgames\mycomgames.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\warface\mycomgames\mycomgames.exe
FirewallRules: [TCP Query User{9D821BCA-6336-4F92-B174-C07730479E06}C:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) C:\program files\rockstar games\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{9A159A7D-5AA6-444C-BE84-749345B1B8EC}C:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) C:\program files\rockstar games\grand theft auto v\gta5.exe
FirewallRules: [{CC12A5AF-52E0-4A70-B967-96E9845430A8}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [{CC5A7D67-E4AD-467B-894B-F0E5850104D0}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [{64995413-D21B-4287-95DC-4B9E0C42753A}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Fallout Shelter\FalloutShelter.exe
FirewallRules: [{4BC11836-7C94-4553-9F31-91C1B158F42E}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Fallout Shelter\FalloutShelter.exe
FirewallRules: [TCP Query User{11C1D243-EB64-4DEA-B23C-549A69970B53}C:\users\migue\desktop\steam\steamapps\common\burst the game\burstthegame415\binaries\win64\burstthegame.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\burst the game\burstthegame415\binaries\win64\burstthegame.exe
FirewallRules: [UDP Query User{2695B5BA-3C76-4450-9496-25D05AF65FF2}C:\users\migue\desktop\steam\steamapps\common\burst the game\burstthegame415\binaries\win64\burstthegame.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\burst the game\burstthegame415\binaries\win64\burstthegame.exe
FirewallRules: [{2AC1B3A8-D16C-4B9B-A4FB-8A74FB282BCC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{71A1ADC0-AB7C-48CB-91CB-0F575FAA3A2D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{07FCB7BA-F6FA-4C26-BD54-36CCEE924B7F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{8D5B80F4-1D75-4D36-A6D4-DBBFB61E239D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{ECEA8735-E9ED-4DF9-9067-C27516775129}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{0BD77980-D7C0-446F-8E05-38714AE20936}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe
FirewallRules: [{5CB90842-C10F-48C8-94E4-74EFCED118F3}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe
FirewallRules: [{3C32E734-3B24-4FF7-82E7-23C4F1BFDD50}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Blackwake\Blackwake.exe
FirewallRules: [{3DDBBC09-BCEB-4E4A-B8A3-0DA01E9E47EB}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Blackwake\Blackwake.exe
FirewallRules: [TCP Query User{B08C6385-1568-434B-A5F3-5CFDAE4099AC}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{68200461-25BF-4DDA-8163-6738EC4EC26F}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [{8C07EF8C-BC27-4141-8950-778A2751763E}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{0E0DB27D-2FA2-46E6-A753-7FE47579EA52}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [TCP Query User{10002180-D3DB-47CB-AEFB-99CAAA4C5E8A}C:\users\migue\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Block) C:\users\migue\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [UDP Query User{3E0A3826-8B8D-4DCC-80A1-6E704ECF9BBC}C:\users\migue\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Block) C:\users\migue\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [{62335770-C6E8-47BC-852D-DA8C71E0899B}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\NewZ\NewZLauncher.exe
FirewallRules: [{5477B175-4A7B-4EE1-A6F8-F4A44A7A68C4}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\NewZ\NewZLauncher.exe
FirewallRules: [TCP Query User{34F26E46-54B2-4767-9064-0FD01426817A}C:\users\migue\desktop\steam\steamapps\common\newz\thenewz.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\newz\thenewz.exe
FirewallRules: [UDP Query User{91DA8DDB-2952-4963-863D-0E0CD0629EC0}C:\users\migue\desktop\steam\steamapps\common\newz\thenewz.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\newz\thenewz.exe
FirewallRules: [{9A4AA867-FAF3-4D7C-BE33-52FF89584804}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Spacewar\SteamworksExample.exe
FirewallRules: [{EA57A09C-EFEC-4CFB-A41E-A92C870BCF20}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Spacewar\SteamworksExample.exe
FirewallRules: [{66FF8D93-4AA3-4909-B3CB-FBCE6BC8975E}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\61.0.3163.20\remoting_host.exe
FirewallRules: [{121E358B-127B-4978-84A3-02B45F75BEBE}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{C6138806-CEC5-4B5D-88B7-76E5F1B0FB92}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Miscreated\Miscreated.exe
FirewallRules: [{7C7EBC81-96D6-4DFA-9D69-E60E535EFAD4}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Miscreated\Miscreated.exe
FirewallRules: [TCP Query User{252EAF6C-CB51-4343-932E-089F998D852B}C:\users\migue\desktop\steam\steamapps\common\rocketleague\binaries\win32\rocketleague.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\rocketleague\binaries\win32\rocketleague.exe
FirewallRules: [UDP Query User{F7C2495F-6447-450F-B751-10D384BDA567}C:\users\migue\desktop\steam\steamapps\common\rocketleague\binaries\win32\rocketleague.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\rocketleague\binaries\win32\rocketleague.exe
FirewallRules: [{CCE1F238-210F-4179-8193-FDC9BAF7E6AB}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\7 Days To Die\7dLauncher.exe
FirewallRules: [{73765425-1EF6-493D-8FAF-71CC285E22B6}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\7 Days To Die\7dLauncher.exe
FirewallRules: [{9DD1D8E9-1E8D-4598-8542-F832C22E2124}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Burst The Game\BurstTheGame415\Binaries\Win64\BurstTheGameServer.exe
FirewallRules: [{6D75E51B-7107-4539-877B-0181332BB5AF}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Burst The Game\BurstTheGame415\Binaries\Win64\BurstTheGameServer.exe
FirewallRules: [{609BB54F-319E-47E1-A09D-7E4015020484}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{1CC15AA5-BCB8-4525-9FA7-9E629AE770D8}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{2C05F388-54EB-49C3-9D00-6B49E6E8B3C1}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\We Were Here\We Were Here.exe
FirewallRules: [{116E38D1-105E-4CC7-A681-5EAEFD43BBA6}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\We Were Here\We Were Here.exe
FirewallRules: [TCP Query User{50F879CB-CEA6-4BE5-B304-5CF6BB453416}C:\users\migue\downloads\anydesk.exe] => (Allow) C:\users\migue\downloads\anydesk.exe
FirewallRules: [UDP Query User{708A5596-9448-4BAB-887F-13CE4DC5B4EE}C:\users\migue\downloads\anydesk.exe] => (Allow) C:\users\migue\downloads\anydesk.exe
FirewallRules: [{FDF41F56-FD72-498F-9013-E4F7FA0473B3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{D9B35F93-D538-4285-9C4A-3979E3648A63}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{5CD0169D-93C3-4660-B3C8-4A6391A075BE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{FF4F3D70-94BA-4615-B9DE-B0305C573698}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{B16E5FCA-DDE8-4128-A284-D9580A09651D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{AF065F4E-38BB-487D-ABAD-EC1EAD381832}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\The Forest\TheForest.exe
FirewallRules: [{9E14993A-ED19-40D1-8348-DE08CE3AA496}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\The Forest\TheForest.exe
FirewallRules: [{01DA9576-D20F-476D-A1D1-DA80060E8600}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\MultiplayerFPSTutorialDemo\MultiplayerFPSDemo_KinoDerTotenMap.exe
FirewallRules: [{D404DB1C-F2A8-4401-9A68-422B08A0F23C}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\MultiplayerFPSTutorialDemo\MultiplayerFPSDemo_KinoDerTotenMap.exe
FirewallRules: [{ECB6F38C-EA8F-4517-A375-D70FA4B07C5B}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\MultiplayerFPSTutorialDemo\MultiplayerFPSDemo_OpenWorld.exe
FirewallRules: [{B5BD0FFA-C40C-48E5-9F09-3200471708C7}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\MultiplayerFPSTutorialDemo\MultiplayerFPSDemo_OpenWorld.exe
FirewallRules: [TCP Query User{87239C03-80D1-4E1B-85A9-99C6A4796600}C:\users\migue\downloads\anydesk(1).exe] => (Allow) C:\users\migue\downloads\anydesk(1).exe
FirewallRules: [UDP Query User{B797BFF2-1B56-4B1F-8C5F-72304609E385}C:\users\migue\downloads\anydesk(1).exe] => (Allow) C:\users\migue\downloads\anydesk(1).exe
FirewallRules: [{D4105026-90DA-4315-BB7B-4A32565FF582}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{CF0DA9C2-00BB-44E1-97EB-9F70A444D877}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{7142DD02-AC37-4FAF-93F5-91569E5923E3}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\wallpaper_engine\launcher.exe
FirewallRules: [{93900235-D1AB-4C2D-940B-51EAF9850A05}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\wallpaper_engine\launcher.exe
FirewallRules: [TCP Query User{054E5637-6070-4B2E-BB9D-D3A9118F275C}C:\users\migue\desktop\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\arma 3\arma3_x64.exe
FirewallRules: [UDP Query User{B8A748F1-9806-49FA-AE96-ED8E48E044B6}C:\users\migue\desktop\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) C:\users\migue\desktop\steam\steamapps\common\arma 3\arma3_x64.exe
FirewallRules: [{43F09048-228F-472A-B450-8DC91AA1E4EE}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [{E1E128F5-E48D-41E9-AECC-076BEDB1AF04}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [{EE0979E7-925A-4E44-A337-2A86D05D9FE3}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe
FirewallRules: [{595ABAAC-9F00-4EF7-86F8-0C45AB560E3E}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe
FirewallRules: [{F1193057-21FD-40A3-AE13-4971171783AF}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Verdun\1914-1918 Series.exe
FirewallRules: [{99E9C07F-D688-4FD8-B53D-52A660A61D30}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\Verdun\1914-1918 Series.exe
FirewallRules: [TCP Query User{79775457-C1D3-4162-86EE-AE86766738D2}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{B7698B5E-F005-4793-A831-95056B2DE53D}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{FB227E36-13DA-4690-AC07-A8EFB03CCECD}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{E5ED4A27-8922-4C28-8015-172DD964BE4C}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [TCP Query User{F6ADE289-D1F8-4818-ABF8-07FE5DDB92E7}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [UDP Query User{64445698-AF73-4EC5-AABD-E2E7221219F3}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [{06757913-CA8B-4C49-9CB2-BCB0BD6A0F5E}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\WormsRevolution\WormsRevolution.exe
FirewallRules: [{A0888564-CC23-4C4B-BEAD-209F6A11A19A}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\WormsRevolution\WormsRevolution.exe
FirewallRules: [TCP Query User{16E2BC1C-41EB-41DE-9939-581FEA2F9279}C:\users\migue\downloads\anydesk(2).exe] => (Allow) C:\users\migue\downloads\anydesk(2).exe
FirewallRules: [UDP Query User{69CBDE8C-C501-4EED-B650-6B141B928108}C:\users\migue\downloads\anydesk(2).exe] => (Allow) C:\users\migue\downloads\anydesk(2).exe
FirewallRules: [{A64BFFFF-C64B-4AD5-9915-3354646ADD20}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\ShellShock Live\ShellShockLive.exe
FirewallRules: [{CF39E158-9186-4B9A-81D9-AB5EF5D767D5}] => (Allow) C:\Users\migue\Desktop\Steam\steamapps\common\ShellShock Live\ShellShockLive.exe
==================== Wiederherstellungspunkte =========================
15-09-2017 12:57:13 Installed Minecraft
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (09/18/2017 02:47:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: WormsRevolution.exe, Version: 0.0.0.0, Zeitstempel: 0x51b8406a
Name des fehlerhaften Moduls: WormsRevolution.exe, Version: 0.0.0.0, Zeitstempel: 0x51b8406a
Ausnahmecode: 0x40000015
Fehleroffset: 0x0002d91d
ID des fehlerhaften Prozesses: 0x278c
Startzeit der fehlerhaften Anwendung: 0x01d33074a57e45dd
Pfad der fehlerhaften Anwendung: C:\Users\migue\Desktop\Steam\steamapps\common\WormsRevolution\WormsRevolution.exe
Pfad des fehlerhaften Moduls: C:\Users\migue\Desktop\Steam\steamapps\common\WormsRevolution\WormsRevolution.exe
Berichtskennung: fd27b79a-e7a7-4b53-aeb0-0ef24d0e6fe8
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (09/18/2017 01:51:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 10.0.15063.608, Zeitstempel: 0xb00723ab
Name des fehlerhaften Moduls: twinui.dll, Version: 10.0.15063.608, Zeitstempel: 0x20640380
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000000dfe4d
ID des fehlerhaften Prozesses: 0x2484
Startzeit der fehlerhaften Anwendung: 0x01d3307365eb6f29
Pfad der fehlerhaften Anwendung: C:\WINDOWS\explorer.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\twinui.dll
Berichtskennung: 5979357e-8dac-4e38-bb25-0619bd9ae51f
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (09/18/2017 01:43:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 10.0.15063.608, Zeitstempel: 0xb00723ab
Name des fehlerhaften Moduls: twinui.dll, Version: 10.0.15063.608, Zeitstempel: 0x20640380
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000000dfe4d
ID des fehlerhaften Prozesses: 0xb44
Startzeit der fehlerhaften Anwendung: 0x01d3306f9e6f3af2
Pfad der fehlerhaften Anwendung: C:\WINDOWS\Explorer.EXE
Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\twinui.dll
Berichtskennung: 0fa27d39-1463-4060-85a9-635edc147a87
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (09/17/2017 07:58:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: csgo.exe, Version: 0.0.0.0, Zeitstempel: 0x59b7136d
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000
ID des fehlerhaften Prozesses: 0x281c
Startzeit der fehlerhaften Anwendung: 0x01d32fde7ef57b19
Pfad der fehlerhaften Anwendung: C:\Users\migue\Desktop\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
Pfad des fehlerhaften Moduls: unknown
Berichtskennung: 4e20b25e-1291-44a8-ac1c-c361e4a5ee42
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (09/17/2017 07:10:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: GTA5.exe, Version: 1.0.1103.2, Zeitstempel: 0x593a8450
Name des fehlerhaften Moduls: GTA5.exe, Version: 1.0.1103.2, Zeitstempel: 0x593a8450
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000120d1e4
ID des fehlerhaften Prozesses: 0xd20
Startzeit der fehlerhaften Anwendung: 0x01d32fd7b263361f
Pfad der fehlerhaften Anwendung: C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe
Pfad des fehlerhaften Moduls: C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe
Berichtskennung: cfcddb1b-e7aa-4584-a7e9-7683c5870f5f
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (09/16/2017 08:31:46 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-HIIA28F)
Description: Bei der Aktivierung der App „Microsoft.MicrosoftEdge_8wekyb3d8bbwe!ContentProcess“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (09/16/2017 08:31:44 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-HIIA28F)
Description: Bei der Aktivierung der App „Microsoft.MicrosoftEdge_8wekyb3d8bbwe!ContentProcess“ ist folgender Fehler aufgetreten: -2144927142. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (09/16/2017 08:31:43 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-HIIA28F)
Description: Bei der Aktivierung der App „Microsoft.MicrosoftEdge_8wekyb3d8bbwe!ContentProcess“ ist folgender Fehler aufgetreten: -2144927142. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (09/16/2017 08:31:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-HIIA28F)
Description: Bei der Aktivierung der App „Microsoft.MicrosoftEdge_8wekyb3d8bbwe!ContentProcess“ ist folgender Fehler aufgetreten: -2144927142. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (09/16/2017 08:31:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: MicrosoftEdgeCP.exe, Version: 11.0.15063.608, Zeitstempel: 0x59ae240c
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000604
Fehleroffset: 0x0000000000000000
ID des fehlerhaften Prozesses: 0x1500
Startzeit der fehlerhaften Anwendung: 0x01d32f1a05d6b2ef
Pfad der fehlerhaften Anwendung: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Pfad des fehlerhaften Moduls: unknown
Berichtskennung: 8c6d2e39-cbc1-49df-8344-14d1e0513afd
Vollständiger Name des fehlerhaften Pakets: Microsoft.MicrosoftEdge_40.15063.0.0_neutral__8wekyb3d8bbwe
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ContentProcess
Systemfehler:
=============
Error: (09/18/2017 11:09:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet:
Die Anforderung wird nicht unterstützt.
Error: (09/18/2017 11:08:31 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: Der Server "{A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (09/18/2017 11:08:31 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: Der Server "{A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (09/18/2017 10:58:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet:
Die Anforderung wird nicht unterstützt.
Error: (09/18/2017 10:57:26 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HIIA28F)
Description: Der Server "{9BA05972-F6A8-11CF-A442-00A0C90A8F39}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (09/18/2017 10:57:26 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HIIA28F)
Description: Der Server "{9BA05972-F6A8-11CF-A442-00A0C90A8F39}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (09/18/2017 10:56:58 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "chip 1-click download service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (09/18/2017 10:56:58 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "NVIDIA LocalSystem Container" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 6000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (09/18/2017 10:56:58 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Logitech Gaming Registry Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (09/18/2017 10:56:58 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Chrome Remote Desktop Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.
CodeIntegrity:
===================================
Date: 2017-09-16 20:31:33.824
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
Date: 2017-09-16 20:31:28.887
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
Date: 2017-09-16 20:31:28.008
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
Date: 2017-09-16 20:31:27.371
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
Date: 2017-09-16 20:31:26.858
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
Date: 2017-09-16 20:31:12.739
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
Date: 2017-09-16 20:30:56.564
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
Date: 2017-09-16 20:30:55.903
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
Date: 2017-09-16 16:31:52.902
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
Date: 2017-09-16 16:31:47.816
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
==================== Speicherinformationen ===========================
Prozessor: AMD Athlon(tm) X4 845 Quad Core Processor
Prozentuale Nutzung des RAM: 39%
Installierter physikalischer RAM: 8132.48 MB
Verfügbarer physikalischer RAM: 4917.08 MB
Summe virtueller Speicher: 9412.48 MB
Verfügbarer virtueller Speicher: 5745.33 MB
==================== Laufwerke ================================
Drive c: (Windows) (Fixed) (Total:920.1 GB) (Free:113.86 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== Ende von Addition.txt ============================ |