Alt 09.01.2015, 12:40   #1
CPU auf 100% ohne laufende Programme - Standard

CPU auf 100% ohne laufende Programme


ich glaube ich habe mir irgendwas auf meinem Rechner eingefangen.

Die CPU-Leistung läuft die ganze Zeit auf 100% ohne dass ich ein Programm offen habe. Browser laufen extrem langsam.

Hab Malwarebytes drüber laufen lassen. Das hat nix gefunden.

Hab auch schon mal proforma (weil ichs in einem anderen Thread gelesen habe) einen Scan mit FRST gemacht:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-01-2015
Ran by *** (administrator) on PHILIPP-THINK on 09-01-2015 12:32:37
Running from C:\Users\***\Desktop\APPS
Loaded Profiles: *** & Administrator & UpdatusUser & Philipp & (Available profiles: *** & Administrator & UpdatusUser & Philipp)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Authentec Inc.) C:\Program Files\ThinkVantage Fingerprint Software\upeksvr.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(ClanServers Hosting LLC) C:\Program Files (x86)\GameTracker\GSInGameService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CamMute.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
() C:\Program Files (x86)\Search\WebSearch.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Lenovo.) C:\Windows\System32\TpShocks.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Jumping Bytes) C:\Program Files (x86)\PureSync\PureSyncTray.exe
(Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
(Google Inc.) C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe
(Autodesk Inc) C:\Program Files (x86)\Autodesk\SketchBook Pro 6.0.1\SketchBookSnapshot.exe
() C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
(Google Inc.) C:\Users\***\AppData\Local\Google\Update\\GoogleCrashHandler.exe
(Google Inc.) C:\Users\***\AppData\Local\Google\Update\\GoogleCrashHandler64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Ricoh co.,Ltd.) C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation) C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Lenovo Group Limited) C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe
(Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\Bluetooth Headset Helper.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Jumping Bytes) C:\Program Files (x86)\Common Files\Jumping Bytes\jbUpdater.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Message Center Plus\MCPLaunch.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\VIP Access Client\GreenList.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\VIP Access Client\WhiteList.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [TpShocks] => C:\Windows\system32\TpShocks.exe [382528 2012-02-24] (Lenovo.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12480616 2012-04-17] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-03-09] (Realtek Semiconductor)
HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [290160 2012-06-01] (Lenovo Group Limited)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-09-19] (Adobe Systems Incorporated)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916112 2012-04-08] (Synaptics Incorporated)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-16] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-04-19] (Intel Corporation)
HKLM-x32\...\Run: [RotateImage] => C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe [55808 2008-10-30] (Ricoh co.,Ltd.)
HKLM-x32\...\Run: [PWMTRV] => rundll32 C:\PROGRA~2\ThinkPad\UTILIT~1\PWMTR64V.DLL,PwrMgrBkGndMonitor
HKLM-x32\...\Run: [Lenovo Registration] => C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [4351712 2011-07-13] (Lenovo, Inc.)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [133400 2012-02-28] (Intel Corporation)
HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [507744 2011-12-20] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43816 2014-07-03] (Apple Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2694320 2014-10-01] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3498728 2014-12-03] (Adobe Systems Inc.)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [126200 2014-11-20] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\psfus: C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll (Authentec Inc.)
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Run: [CloudSync] => C:\Program Files\Adobe\Adobe Creative Cloud Connection (64 Bit)\Creative Cloud Connection.exe
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Run: [GoogleChromeAutoLaunch_4D326D02F94F7C8B6A511782275FC3F5] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [856904 2014-12-06] (Google Inc.)
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2012-09-24] (Google Inc.)
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Run: [Google Update] => C:\Users\***\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-08-21] (Google Inc.)
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Policies\Explorer: [NoRecentDocsNetHood] 1
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Policies\Explorer: [DisablePersonalDirChange] 1
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Policies\Explorer: [NoDesktopCleanupWizard] 1
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Policies\Explorer: [NoStartMenuMyMusic] 1
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Policies\Explorer: [NoSimpleStartMenu] 1
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Policies\Explorer: [NoTaskGrouping] 0
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\MountPoints2: {aba4b94f-0680-11e2-b743-806e6f6e6963} - Q:\LenovoQDrive.exe
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CloudSync] => C:\Program Files\Adobe\Adobe Creative Cloud Connection (64 Bit)\Creative Cloud Connection.exe
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [GoogleChromeAutoLaunch_4D326D02F94F7C8B6A511782275FC3F5] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [856904 2014-12-06] (Google Inc.)
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2012-09-24] (Google Inc.)
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Google Update] => C:\Users\***\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-08-21] (Google Inc.)
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\Explorer: [NoRecentDocsNetHood] 1
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\Explorer: [DisablePersonalDirChange] 1
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\Explorer: [NoDesktopCleanupWizard] 1
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\Explorer: [NoStartMenuMyMusic] 1
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\Explorer: [NoSimpleStartMenu] 1
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Policies\Explorer: [NoTaskGrouping] 0
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {aba4b94f-0680-11e2-b743-806e6f6e6963} - Q:\LenovoQDrive.exe
HKU\S-1-5-21-2074290114-3587195105-669080466-500\...\MountPoints2: {aba4b94f-0680-11e2-b743-806e6f6e6963} - Q:\LenovoQDrive.exe
HKU\S-1-5-21-2074290114-3587195105-669080466-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {aba4b94f-0680-11e2-b743-806e6f6e6963} - Q:\LenovoQDrive.exe
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001\...\Run: [HP ENVY 110 series (NET)] => C:\Program Files\HP\HP ENVY 110 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001\...\RunOnce: [Adobe Speed Launcher] => 1419011523
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001\...\MountPoints2: {aba4b94f-0680-11e2-b743-806e6f6e6963} - Q:\LenovoQDrive.exe
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001\...\MountPoints2: {aba4b952-0680-11e2-b743-806e6f6e6963} - E:\autorun.exe
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [HP ENVY 110 series (NET)] => C:\Program Files\HP\HP ENVY 110 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\RunOnce: [Adobe Speed Launcher] => 1419011523
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {aba4b94f-0680-11e2-b743-806e6f6e6963} - Q:\LenovoQDrive.exe
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {aba4b952-0680-11e2-b743-806e6f6e6963} - E:\autorun.exe
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [245872 2013-11-15] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [201576 2013-11-15] (NVIDIA Corporation)
Lsa: [Notification Packages] scecli C:\Program Files\ThinkPad\Bluetooth Software\BtwProximityCP.dll C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File
ShellIconOverlayIdentifiers: [Symbol-Overlay-Steuerprogramm für AutoCAD Digitale Signaturen] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll (Autodesk, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled.
ProxyServer: [.DEFAULT] => http=;https=
ProxyEnable: [S-1-5-21-2074290114-3587195105-669080466-2689] => Internet Explorer proxy is enabled.
ProxyServer: [S-1-5-21-2074290114-3587195105-669080466-2689] => http=;https=
ProxyEnable: [S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0] => Internet Explorer proxy is enabled.
ProxyServer: [S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0] => http=;https=
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=LENP&bmod=LENP
HKU\S-1-5-21-2074290114-3587195105-669080466-2689\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=LENP&bmod=LENP
HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-2074290114-3587195105-669080466-500\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-2074290114-3587195105-669080466-500\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=LENP&bmod=LENP
HKU\S-1-5-21-2074290114-3587195105-669080466-500\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/ig/redirectdomain?brand=LENP&bmod=LENP
HKU\S-1-5-21-2074290114-3587195105-669080466-500\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-2074290114-3587195105-669080466-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-2074290114-3587195105-669080466-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=LENP&bmod=LENP
HKU\S-1-5-21-2074290114-3587195105-669080466-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/ig/redirectdomain?brand=LENP&bmod=LENP
HKU\S-1-5-21-2074290114-3587195105-669080466-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=LENP&bmod=LENP
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/ig/redirectdomain?brand=LENP&bmod=LENP
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=LENP&bmod=LENP
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/ig/redirectdomain?brand=LENP&bmod=LENP
HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-2074290114-3587195105-669080466-2689 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP_deDE513
SearchScopes: HKU\S-1-5-21-2074290114-3587195105-669080466-2689 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP_deDE513
SearchScopes: HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP_deDE513
SearchScopes: HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP_deDE513
SearchScopes: HKU\S-1-5-21-2074290114-3587195105-669080466-500 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP
SearchScopes: HKU\S-1-5-21-2074290114-3587195105-669080466-500 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP
SearchScopes: HKU\S-1-5-21-2074290114-3587195105-669080466-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP
SearchScopes: HKU\S-1-5-21-2074290114-3587195105-669080466-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP
SearchScopes: HKU\S-1-5-21-3994390389-2711207413-3176889650-1001 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP
SearchScopes: HKU\S-1-5-21-3994390389-2711207413-3176889650-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP
SearchScopes: HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP
SearchScopes: HKU\S-1-5-21-3994390389-2711207413-3176889650-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7LENP
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Symantec VIP Access Add-On -> {C63CD127-A1CB-4D49-A4F7-D6F88A917BE6} -> C:\Program Files (x86)\Symantec\VIP Access Client\64bit\VIPAddOnForIE64.dll (Symantec Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Symantec VIP Access Add-On -> {C63CD127-A1CB-4D49-A4F7-D6F88A917BE6} -> C:\Program Files (x86)\Symantec\VIP Access Client\VIPAddOnForIE.dll (Symantec Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-2074290114-3587195105-669080466-2689 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKU\S-1-5-21-2074290114-3587195105-669080466-2689 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer]

FF ProfilePath: C:\Users\***\AppData\Roaming\Mozilla\Firefox\Profiles\713cge5b.default
FF SelectedSearchEngine: Google
FF Homepage: about:home
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @wacom.com/wtPlugin,version= -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF Plugin: adobe.com/AdobeAAMDetect_x86_64 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro PDF\Professional 7\npnitromozilla.dll ( )
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @wacom.com/wtPlugin,version= -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll No File
FF Plugin HKU\S-1-5-21-2074290114-3587195105-669080466-2689: @tools.google.com/Google Update;version=3 -> C:\Users\***\AppData\Local\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-2074290114-3587195105-669080466-2689: @tools.google.com/Google Update;version=9 -> C:\Users\***\AppData\Local\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-2074290114-3587195105-669080466-2689: sony.com/MediaGoDetector -> C:\Program Files (x86)\Sony\Media Go\npMediaGoDetector.dll (Sony Network Entertainment International LLC)
FF Plugin HKU\S-1-5-21-2074290114-3587195105-669080466-2689: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF Plugin HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0: @tools.google.com/Google Update;version=3 -> C:\Users\***\AppData\Local\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0: @tools.google.com/Google Update;version=9 -> C:\Users\***\AppData\Local\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0: sony.com/MediaGoDetector -> C:\Program Files (x86)\Sony\Media Go\npMediaGoDetector.dll (Sony Network Entertainment International LLC)
FF Plugin HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF Extension: FireFTP - C:\Users\***\AppData\Roaming\Mozilla\Firefox\Profiles\713cge5b.default\Extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f} [2014-12-29]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM-x32\...\Firefox\Extensions: [VIP1X@verisign.com] - C:\Program Files (x86)\Symantec\VIP Access Client
FF Extension: Symantec VIP Access Add-On - C:\Program Files (x86)\Symantec\VIP Access Client [2012-09-24]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2014-05-19]
FF HKLM-x32\...\Firefox\Extensions: [VIP3X@verisign.com] - C:\Program Files (x86)\Symantec\VIP Access Client

CHR Profile: C:\Users\***\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-12-10]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-04]
CHR Extension: (YouTube) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-12-10]
CHR Extension: (Google-Suche) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-12-10]
CHR Extension: (iCloud-Lesezeichen) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2014-06-19]
CHR Extension: (Avira Browserschutz) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-08-05]
CHR Extension: („Pin it“-Button) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic [2014-06-17]
CHR Extension: (CrowdBar) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhinknkceoifkecnmmlgnelmdipmbcdn [2014-08-26]
CHR Extension: (Arte+7 Downloader) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\limmimgcnlpibopnnahmfnkmciojgfji [2014-08-21]
CHR Extension: (Google Wallet) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-02]
CHR Extension: (Google Mail) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-12-10]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2014-12-03]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
CHR HKLM-x32\...\Chrome\Extension: [ihenkjeihefokohmemphikjnjbmegdik] - "C:\Program Files (x86)\Sony\Media Go\MediaGoDetector.crx" [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-12-16] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-16] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [166192 2014-11-20] (Avira Operations GmbH & Co. KG)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [448384 2014-11-19] ()
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 DailytoolsUpdateService; C:\Windows\SysWOW64\update1.dll [352256 2014-12-03] (Dailytools GmbH) [File not signed]
S3 DozeSvc; C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE [320576 2012-05-15] (Lenovo.)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [923136 2009-05-21] (Hewlett-Packard Co.) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-28] (Intel Corporation)
R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [179568 2012-06-01] (Lenovo Group Limited)
R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [133992 2011-07-12] (Lenovo Group Limited)
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272776 2014-10-16] ()
S2 McNeelUpdate; C:\Program Files (x86)\McNeelUpdate\5.0\McNeelUpdateService.exe [67752 2012-10-25] (Robert McNeel & Associates)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2012-02-26] ()
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [File not signed]
R2 NitroDriverReadSpool2; C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe [216072 2012-05-23] (Nitro PDF Software)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [File not signed]
R2 Search; C:\Program Files (x86)\Search\WebSearch.exe [435184 2014-12-17] ()
S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [22376 2013-02-04] ()
R2 VIPAppService; C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe [84080 2012-04-18] (Symantec Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2669840 2012-02-26] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-14] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-10-14] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-26] (Avira Operations GmbH & Co. KG)
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [163368 2012-04-01] (Broadcom Corporation.)
R2 smihlp; C:\Program Files\ThinkVantage Fingerprint Software\smihlp.sys [13128 2011-05-30] (Authentec Inc.)
R3 TVTI2C; C:\Windows\System32\DRIVERS\Tvti2c.sys [40248 2011-05-29] (Lenovo Information Product(ShenZhen China) Inc.)
R3 tvtvcamd; C:\Windows\System32\DRIVERS\tvtvcamd.sys [27432 2011-12-07] (ThinkVantage Communications Utility)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-09 10:34 - 2015-01-09 12:32 - 00000000 ____D () C:\FRST
2015-01-09 10:21 - 2015-01-09 10:21 - 00211664 _____ () C:\Users\***\Desktop\AVSCAN-20150108-115655-7D5BC0A7.LOG
2015-01-05 09:46 - 2015-01-09 08:47 - 00001081 _____ () C:\Windows\setupact.log
2015-01-05 09:46 - 2015-01-05 09:46 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-01 16:52 - 2015-01-01 16:52 - 00000000 ____D () C:\Users\***\AppData\Local\Arma 3
2015-01-01 16:52 - 2015-01-01 16:52 - 00000000 ____D () C:\ProgramData\Bohemia Interactive
2014-12-30 15:26 - 2014-12-30 20:36 - 00000000 ____D () C:\Users\***\Desktop\2
2014-12-30 14:44 - 2014-12-30 14:44 - 00000000 ____D () C:\Users\***\Desktop\1
2014-12-30 14:34 - 2014-12-30 15:05 - 00000000 ____D () C:\Users\***\Desktop\Fotobuch 120_2
2014-12-30 12:48 - 2014-12-30 12:55 - 00000000 ____D () C:\Users\***\Desktop\Fotobuch 120_1
2014-12-30 12:40 - 2014-12-30 12:40 - 00001953 _____ () C:\Users\Public\Desktop\Joe.lnk
2014-12-30 12:40 - 2014-12-30 12:40 - 00000000 ____D () C:\Users\***\AppData\Local\Tools&More
2014-12-30 12:40 - 2014-12-30 12:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tools&More
2014-12-30 12:40 - 2014-12-30 12:40 - 00000000 ____D () C:\Program Files (x86)\Tools&More
2014-12-29 16:55 - 2014-12-29 16:55 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2014-12-29 16:39 - 2014-12-29 16:39 - 00000000 ____D () C:\Program Files\Common Files\SPBA
2014-12-29 16:35 - 2014-12-29 16:35 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf
2014-12-29 16:07 - 2014-12-29 16:07 - 00000000 ____D () C:\Users\***\AppData\Local\Macromedia
2014-12-27 11:58 - 2014-12-28 21:02 - 00000000 ____D () C:\Users\***\AppData\Roaming\LEGO Company
2014-12-27 11:48 - 2014-12-27 11:48 - 00002157 _____ () C:\Users\Public\Desktop\LEGO Digital Designer.lnk
2014-12-27 11:48 - 2014-12-27 11:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LEGO Company
2014-12-27 11:48 - 2014-12-27 11:48 - 00000000 ____D () C:\Program Files (x86)\LEGO Company
2014-12-27 11:33 - 2014-12-27 11:33 - 00001170 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-12-23 13:49 - 2014-12-23 13:49 - 00000000 ____D () C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software
2014-12-23 13:49 - 2014-12-23 13:49 - 00000000 ____D () C:\Program Files\OBS
2014-12-23 13:49 - 2014-12-23 13:49 - 00000000 ____D () C:\Program Files (x86)\OBS
2014-12-18 20:04 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-12-18 20:04 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-12-18 20:04 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-12-18 20:04 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-12-18 20:04 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-12-18 20:02 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-18 20:02 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-18 20:01 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-12-18 20:01 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-12-18 20:01 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-12-18 20:01 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-12-18 19:59 - 2014-11-22 04:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-18 19:59 - 2014-11-22 04:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-12-18 19:59 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-18 19:59 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-18 19:59 - 2014-11-22 03:41 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-18 19:59 - 2014-11-22 03:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-18 19:59 - 2014-11-22 03:35 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-12-18 19:59 - 2014-11-22 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-12-18 19:59 - 2014-11-22 03:22 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-18 19:59 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-12-18 19:59 - 2014-11-22 03:14 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-18 19:59 - 2014-11-22 03:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-18 19:59 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-18 19:59 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-18 19:59 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-18 19:59 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-18 19:59 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-12-18 19:59 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-12-18 19:59 - 2014-11-22 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-12-18 19:59 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-12-18 19:59 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-12-18 19:59 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-18 19:59 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-18 19:59 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-12-18 19:58 - 2014-11-27 02:43 - 00389296 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-18 19:58 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-18 19:58 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-18 19:58 - 2014-11-22 03:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-18 19:58 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-18 19:58 - 2014-11-22 03:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-12-18 19:58 - 2014-11-22 03:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-18 19:58 - 2014-11-22 03:35 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-12-18 19:58 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-18 19:58 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-18 19:58 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-18 19:58 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-12-18 19:58 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-12-18 19:58 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-18 19:58 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-12-18 19:58 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-12-18 19:58 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-18 19:58 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-18 19:58 - 2014-11-22 02:47 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-12-18 19:58 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-18 19:58 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-18 19:58 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-18 19:58 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-18 19:58 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-18 19:58 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-18 19:58 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-18 19:58 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-18 19:58 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-12-18 19:58 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-18 19:58 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-18 19:58 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-18 19:58 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-18 19:57 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-12-18 19:57 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-12-18 19:56 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-12-18 19:56 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-12-18 19:56 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-12-18 19:56 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-12-18 19:56 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-12-18 19:56 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-12-18 19:56 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-12-18 19:56 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-12-18 19:54 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-12-18 19:54 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-12-18 19:54 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-12-18 19:54 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-12-18 19:54 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-12-18 19:54 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-12-18 19:54 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-12-18 19:54 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-12-18 19:52 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-12-18 19:52 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-12-18 19:52 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-12-18 19:52 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-12-18 19:52 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-12-18 19:52 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-12-18 19:52 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-12-18 19:52 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-12-18 19:52 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-12-18 19:52 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-12-18 19:52 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-12-18 19:52 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-12-18 19:52 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-12-18 19:52 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-12-18 19:51 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-12-18 19:51 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-12-18 19:51 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-12-17 14:18 - 2014-12-17 14:18 - 00000000 ____D () C:\Program Files (x86)\Search

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-09 12:31 - 2013-08-12 09:49 - 00000000 ____D () C:\Users\***\Desktop\Phil
2015-01-09 12:30 - 2014-08-21 18:33 - 00001136 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2074290114-3587195105-669080466-2689UA.job
2015-01-09 12:30 - 2013-10-11 19:52 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-09 12:30 - 2012-09-24 21:02 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-09 12:30 - 2012-09-24 21:01 - 01680420 _____ () C:\Windows\WindowsUpdate.log
2015-01-09 10:47 - 2012-11-20 15:06 - 00000000 ____D () C:\Users\***\AppData\Local\Adobe
2015-01-09 10:13 - 2014-08-21 18:33 - 00001084 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2074290114-3587195105-669080466-2689Core.job
2015-01-09 10:10 - 2014-10-28 13:49 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-09 09:47 - 2012-09-24 21:02 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-08 11:58 - 2013-01-03 13:59 - 00000000 ____D () C:\Windows\pss
2015-01-08 11:53 - 2014-06-19 11:33 - 00000000 ____D () C:\Users\***\AppData\Local\89F2DDAE-9271-415A-8966-040BB1C061D5.aplzod
2015-01-08 10:29 - 2014-02-13 08:51 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-01-07 16:05 - 2009-07-14 05:45 - 00034208 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-07 16:05 - 2009-07-14 05:45 - 00034208 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-07 15:32 - 2012-11-20 15:02 - 00000112 _____ () C:\Windows\system32\config\netlogon.ftl
2015-01-06 16:37 - 2013-08-29 09:27 - 00000000 ____D () C:\Users\***\AppData\Roaming\vlc
2015-01-06 16:37 - 2013-02-05 13:21 - 00000000 ____D () C:\Users\***\AppData\Roaming\FileZilla
2015-01-01 16:50 - 2012-10-25 12:21 - 01603716 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-01-01 16:50 - 2012-09-25 06:41 - 00703214 _____ () C:\Windows\system32\perfh007.dat
2015-01-01 16:50 - 2012-09-25 06:41 - 00150822 _____ () C:\Windows\system32\perfc007.dat
2015-01-01 16:50 - 2009-07-14 06:13 - 01603716 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-01 16:49 - 2014-03-24 09:54 - 00000000 ____D () C:\ProgramData\Package Cache
2014-12-30 14:46 - 2014-10-18 15:17 - 00000000 ____D () C:\Users\***\AppData\Local\Albelli Fotobücher
2014-12-30 12:39 - 2012-09-24 20:57 - 00000000 ____D () C:\Windows\Downloaded Installations
2014-12-29 16:56 - 2013-10-11 19:52 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-29 16:56 - 2013-10-11 19:52 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-29 16:56 - 2013-10-11 19:52 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-29 16:56 - 2012-11-20 15:08 - 00000000 ____D () C:\Users\***\AppData\Roaming\Nitro PDF
2014-12-29 16:55 - 2012-11-29 10:36 - 00000000 ____D () C:\Users\***\AppData\Roaming\Skype
2014-12-29 16:42 - 2012-09-24 21:01 - 00000000 ____D () C:\Program Files\ThinkVantage Fingerprint Software
2014-12-29 16:42 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-29 16:42 - 2009-07-14 05:45 - 05234264 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-12-29 16:39 - 2012-09-24 20:56 - 00000000 ___HD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools
2014-12-29 16:39 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\WinBioPlugIns
2014-12-29 16:38 - 2012-09-24 21:06 - 00000000 ____D () C:\Windows\System32\Tasks\TVT
2014-12-29 16:35 - 2012-11-20 15:20 - 00000000 ____D () C:\Users\***\AppData\Roaming\LSC
2014-12-29 16:34 - 2012-11-20 15:20 - 00000000 ____D () C:\Users\***\AppData\Local\LSC
2014-12-29 16:34 - 2012-09-24 20:57 - 00000000 ____D () C:\Windows\System32\Tasks\Lenovo
2014-12-29 16:34 - 2012-09-24 20:52 - 00000000 ____D () C:\Program Files\Lenovo
2014-12-29 16:34 - 2012-09-24 14:33 - 00000000 ____D () C:\ProgramData\Lenovo
2014-12-27 11:34 - 2012-12-18 16:59 - 00000000 ____D () C:\Users\***\AppData\Local\Mozilla
2014-12-27 11:33 - 2012-12-18 16:59 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-27 11:33 - 2012-12-18 16:59 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-24 10:50 - 2014-03-20 10:05 - 00000000 ____D () C:\Users\***\AppData\Roaming\TS3Client
2014-12-24 10:29 - 2011-02-24 18:03 - 00000000 ____D () C:\Windows\Panther
2014-12-24 09:52 - 2012-12-10 10:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-12-24 09:52 - 2012-12-10 10:07 - 00000000 ____D () C:\Program Files\CCleaner
2014-12-24 09:18 - 2014-10-28 13:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware
2014-12-24 09:18 - 2014-10-28 13:48 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware
2014-12-24 09:08 - 2013-09-09 10:58 - 00000000 ____D () C:\AdwCleaner
2014-12-22 17:50 - 2012-10-01 07:47 - 00161520 _____ () C:\Users\Philipp\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-22 17:33 - 2012-11-20 15:06 - 00161520 _____ () C:\Users\***\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-22 17:31 - 2013-09-17 10:57 - 00000000 ____D () C:\Windows\rescache
2014-12-19 18:54 - 2012-10-02 13:15 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-12-19 18:54 - 2012-10-02 13:15 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Skype
2014-12-19 18:54 - 2012-10-02 13:15 - 00000000 ____D () C:\ProgramData\Skype
2014-12-19 18:54 - 2012-10-01 07:56 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Nitro PDF
2014-12-19 18:52 - 2012-10-01 07:57 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Adobe
2014-12-19 18:51 - 2012-10-10 10:09 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Adobe
2014-12-19 18:49 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-18 20:26 - 2012-10-10 08:41 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-18 20:23 - 2013-08-19 16:10 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-18 18:23 - 2014-10-26 07:44 - 00000000 ____D () C:\Users\***\.mediathek3
2014-12-18 17:32 - 2012-11-05 12:17 - 00000000 ____D () C:\Users\***\Projekte
2014-12-18 08:14 - 2012-10-01 14:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-12-18 08:14 - 2012-10-01 14:32 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-12-17 15:16 - 2014-02-24 17:29 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-12-17 08:23 - 2014-05-19 09:40 - 00002453 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat XI Pro.lnk
2014-12-17 08:23 - 2014-05-19 09:40 - 00002221 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe FormsCentral.lnk
2014-12-17 08:23 - 2014-05-19 09:40 - 00002060 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller XI.lnk

Some content of TEMP:

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2013-02-13 12:17

==================== End Of Log ============================
Hat jemand eine Idee?

Viele Grüße


Alt 09.01.2015, 13:16   #2
/// Winkelfunktion
/// TB-Süch-Tiger™
CPU auf 100% ohne laufende Programme - Standard

CPU auf 100% ohne laufende Programme

Hallo und

Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden?

Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520

Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten!
Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht!

Außerdem fehlt die Addition.txt von FRST, bitte nachreichen!

Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit.
Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten.
Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.


Alt 09.01.2015, 13:49   #3
CPU auf 100% ohne laufende Programme - Standard


Hi, sorry ich dachte die Addition wär nicht wichtig.

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-01-2015
Ran by *** at 2015-01-09 12:33:41
Running from C:\Users\***\Desktop\APPS
Boot Mode: Normal

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

4500_G510nz_Help (x32 Version: 000.0.439.000 - Hewlett-Packard) Hidden
4500G510nz (x32 Version: 000.0.439.000 - Hewlett-Packard) Hidden
4500G510nz_Software_Min (x32 Version: 000.0.423.000 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden
Adobe Acrobat XI Pro (HKLM-x32\...\{23D3F585-AE29-4670-8E3E-64A0EFB29240}) (Version: 11.0 - Adobe Systems Incorporated)
Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.10 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: - Adobe Systems Incorporated)
Adobe Digital Editions 2.0 (HKLM-x32\...\Adobe Digital Editions 2.0) (Version: 2.0 - Adobe Systems Incorporated)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Illustrator CC (HKLM-x32\...\{F2321021-08A2-44D6-B1DF-BDB415F23EC3}) (Version: 17.0 - Adobe Systems Incorporated)
Adobe InDesign CC (HKLM-x32\...\{BC448016-6F11-1014-B0EA-97CEE6E26CB6}) (Version: 9.0 - Adobe Systems Incorporated)
Adobe InDesign CC 2014 (HKLM-x32\...\{CCDCB9C4-72BA-1014-A3F8-D123F2F18BC2}) (Version: - Adobe Systems Incorporated)
Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Muse (HKLM-x32\...\{9A554C9D-E12D-4205-8101-9F4337CD5673}) (Version: 3.2 - Adobe Systems Incorporated)
Adobe Muse (HKLM-x32\...\AdobeMuse) (Version: 7.4.30 - Adobe Systems Incorporated)
Adobe Muse CC 2014 (HKLM\...\{AF6524CF-0CED-4B0B-91BF-5757F381E52B}) (Version: 2014.2.1.10 - Adobe Systems, Incorporated)
Adobe Photoshop CC (HKLM-x32\...\{2D99B50E-431D-4AA8-85C1-172A6F8BCF09}) (Version: 14.0 - Adobe Systems Incorporated)
Adobe Photoshop CC 2014 (HKLM-x32\...\{D7A4F897-B20A-42D0-862D-CB5F6DB7391D}) (Version: 15.2.1 - Adobe Systems Incorporated)
Adobe Photoshop Lightroom 5.4 64-bit (HKLM\...\{558B5965-CC1B-4AF1-BA07-5D6832404050}) (Version: 5.4.0 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Adobe Touch App Plugins (HKLM-x32\...\{1EC083EE-5B76-4A2A-B95A-CAF460AA29D6}) (Version: 1.0 - Adobe Systems Incorporated)
Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.)
Adobe® Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 3.4.3 - Adobe Systems, Incorporated)
AirParrot (HKLM\...\{C3794227-9CB1-4AF7-9848-D6859E0C790B}) (Version: - Squirrels)
Albelli Fotobücher (HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\{EE20E438-B675-4421-AB07-928F0EC9FB22}_is1) (Version:  - Albelli)
Albelli Fotobücher (HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\{EE20E438-B675-4421-AB07-928F0EC9FB22}_is1) (Version:  - Albelli)
Anno 2070 (HKLM-x32\...\Steam App 48240) (Version:  - BlueByte)
Apple Application Support (HKLM-x32\...\{21ECABC3-40B2-42DF-8E21-ACF3A4D0D95A}) (Version: 3.0.5 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{6AF2AC2A-3532-43FD-9F4D-BDC9C0D724C7}) (Version: - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: - Apple Inc.)
Arma 3 (HKLM-x32\...\Steam App 107410) (Version:  - Bohemia Interactive)
AutoCAD 2012 - Deutsch (HKLM\...\AutoCAD 2012 - Deutsch) (Version: - Autodesk)
AutoCAD 2012 - Deutsch (Version: - Autodesk) Hidden
AutoCAD 2012 Language Pack - Deutsch (Version: - Autodesk) Hidden
Autodesk SketchBook Pro 6.0.1 (HKLM-x32\...\{783C27F9-EF0B-4B81-8464-8592AE8CB5B8}) (Version: 6.01.0000 - Autodesk)
Avira (HKLM-x32\...\{e7c7c227-b742-4878-9425-f09bbf9951db}) (Version: - Avira Operations & Co. KG)
Avira (x32 Version: - Avira Operations & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: - Avira)
AwesomiumSetup (HKLM-x32\...\{19EF99D1-7EE6-4B5E-ABEE-0B3825F703B0}) (Version: 1.00.0000 - SIX Networks GmbH)
bl (x32 Version: 1.0.0 - Your Company Name) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: - Apple Inc.)
BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden
CamStudio version 2.7 (HKLM-x32\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7 - CamStudio Open Source)
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
Create Recovery Media (HKLM-x32\...\{50DC5136-21E8-48BC-97E5-1AD055F6B0B6}) (Version: - Lenovo Group Limited)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DayZ (HKLM-x32\...\Steam App 221100) (Version:  - Bohemia Interactive)
Disable AMT Profile Synchronization Pop-up for Windows XP/Vista/7 (HKLM\...\DisableAMTPopup) (Version: 1.00 - )
Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.7000.11 - Dolby Laboratories Inc)
Energie-Manager (HKLM-x32\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}) (Version: 6.32 - )
Evolve (HKLM-x32\...\Steam App 273350) (Version:  - Turtle Rock Studios)
FARO LS 1.1.406.58 (HKLM-x32\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: - FARO Scanner Production)
FileZilla Client 3.7.3 (HKLM-x32\...\FileZilla Client) (Version: 3.7.3 - Tim Kosse)
Fraps (HKLM-x32\...\Fraps) (Version:  - )
Free Avi To Mp4 Converter (HKLM-x32\...\{6DC5AB78-DF81-45B8-BEA8-C00569E2A28A}) (Version: 1.0.0 - convertaudiofree)
Free YouTube Download version (HKLM-x32\...\Free YouTube Download_is1) (Version: - DVDVideoSoft Ltd.)
GameTracker Lite (HKLM-x32\...\GameTracker Lite) (Version:  - ClanServers Hosting LLC.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
Google Chrome Canary (HKU\S-1-5-21-2074290114-3587195105-669080466-2689\...\Google Chrome SxS) (Version: 41.0.2270.0 - Google Inc.)
Google Chrome Canary (HKU\S-1-5-21-2074290114-3587195105-669080466-2689-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Google Chrome SxS) (Version: 41.0.2270.0 - Google Inc.)
Google Drive (HKLM-x32\...\{C60F3836-333A-4AE2-B526-CFDBA143A9BA}) (Version: 1.18.7821.2489 - Google, Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: - Google Inc.) Hidden
HFSExplorer 0.21 (HKLM-x32\...\HFSExplorer) (Version: 0.21 - Catacombae Software)
HP ENVY 110 series - Grundlegende Software für das Gerät (HKLM\...\{8CA09F9B-A122-4F50-9A6F-7909106019F9}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Officejet 4500 G510n-z (HKLM\...\{7E0E61CC-1C99-429D-BEA7-C4DD5B898D2A}) (Version: 13.0 - HP)
iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: - Apple Inc.)
Integrated Camera Driver Installer Package Ver. (HKLM-x32\...\{A78800AF-1779-4AE8-8EBE-16E1BE727C71}) (Version: - RICOH)
Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: - Intel)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: - Intel Corporation)
Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version:  - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: - Intel Corporation)
Intel(R) WiDi (HKLM\...\{728985C5-A04B-457C-9D62-15360F3EAF85}) (Version: - Intel Corporation)
Intel(R) Wireless Display (HKLM\...\{28EF7372-9087-4AC3-9B9F-D9751FCDF830}) (Version:  - )
Intel® PROSet/Wireless WiFi-Software (HKLM\...\{E97F409F-9E1C-42A0-B72D-765A78DF3696}) (Version: 15.01.0000.0830 - Intel Corporation)
Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation)
iTunes (HKLM\...\{33E28B58-7BA0-47B7-AA01-9225ABA2B8A9}) (Version: - Apple Inc.)
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217017FF}) (Version: 7.0.550 - Oracle)
Joe (HKLM-x32\...\{0AD3DEBC-5321-457E-8B43-8F546940169B}) (Version: 4.00.0050 - Wirth IT Design)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
LEGO Digital Designer (HKLM-x32\...\New LEGO Digital Designer) (Version:  - LEGO A/S)
Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 1.11 - )
Lenovo Patch Utility (HKLM-x32\...\{6E6E7725-C7BC-4C39-8B3F-14B67331A120}) (Version: - Lenovo Group Limited)
Lenovo Patch Utility 64 bit (HKLM\...\{0369F866-2CE0-4EB9-B426-88FA122C6E82}) (Version: - Lenovo Group Limited)
Lenovo Registration (HKLM-x32\...\{6707C034-ED6B-4B6A-B21F-969B3606FBDE}) (Version: 1.0.4 - Lenovo Inc.)
Lenovo SimpleTap (HKLM\...\{BF601122-9F0A-41A9-BA06-3158D9FB4B80}) (Version: 3.2.0004.00 - Lenovo Group Limited)
Lenovo Solution Center (HKLM\...\{4C2B6F96-3AED-4E3F-8DCE-917863D1E6B1}) (Version: - Lenovo Group Limited)
Lenovo System Update (HKLM-x32\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.06.0016 - Lenovo)
Lenovo User Guide (HKLM-x32\...\{13F59938-C595-479C-B479-F171AB9AF64F}) (Version: 1.0.0009.00 - Lenovo Group Limited)
Lenovo Warranty Information (HKLM-x32\...\{FD4EC278-C1B1-4496-99ED-C0BE1B0AA521}) (Version: 1.0.0005.00 - Lenovo)
Lenovo Welcome (HKLM-x32\...\{2DC26D10-CC6A-494F-BEA3-B5BC21126D5E}) (Version: 3.1.0020.00 - Lenovo Group Limited)
Life is Feudal: Your Own (HKLM-x32\...\Steam App 290080) (Version:  - Bitbox Ltd.)
Malwarebytes Anti-Malware Version (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: - Malwarebytes Corporation)
Maxwell 3 (HKLM-x32\...\Maxwell 3) (Version:  - )
Maxwell for Rhino x64 (HKLM\...\{BF008E85-058E-49A3-B365-60E8DA7AA456}) (Version: 3.0.0 - Next Limit Technologies)
Maxwell Shell Extension (x64) (HKLM\...\{7636B8E9-4F52-41F7-A3B2-526E97F2879F}) (Version: 3.0.0 - Next Limit Technologies)
Media Go (HKLM-x32\...\{AF06B8FA-B916-4001-AE51-6645488DEF09}) (Version: 2.8.303 - Sony)
Media Go Network Downloader (HKLM-x32\...\{5562F05F-908C-4F15-9B3C-98D5FD32DCAB}) (Version: - Sony)
Media Go Video Playback Engine (HKLM-x32\...\{15023164-F226-9ECA-D0CB-59AB4B40D222}) (Version: - Sony)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Message Center Plus (HKLM\...\{C2C2DB64-1BCE-4FA7-962D-457795ECCEC0}) (Version: 3.3.0004.00 - Lenovo Group Limited)
Microsoft .NET Framework 4.5 DEU Language Pack (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 RC (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50861 - Microsoft Corporation)
Microsoft Office Home and Business 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Mozilla Firefox 34.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
myphotobook.de (HKLM-x32\...\de.myphotobook.creator.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1) (Version: 1.6.0 - myphotobook GmbH)
myphotobook.de (x32 Version: 1.6.0 - myphotobook GmbH) Hidden
Network64 (Version: 130.0.374.000 - Hewlett-Packard) Hidden
Nitro Pro 7 (HKLM\...\{36710189-55DF-4D75-8B6A-523CC61B7047}) (Version: - Nitro PDF Software)
NVIDIA Grafiktreiber 312.69 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 312.69 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.12.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.0604 - NVIDIA Corporation)
NVIDIA Update 1.11.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.11.3 - NVIDIA Corporation)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden
Pepakura Designer 3 (HKLM-x32\...\pepakura_designer3en) (Version:  - TamaSoftware)
ph (x32 Version: 1.0.0 - Your Company Name) Hidden
PlayStation(R)Store (HKLM-x32\...\{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}) (Version: - Sony Computer Entertainment Inc.)
PureSync (x32 Version: 3.7.0 - Jumping Bytes) Hidden
PureSync 3.7.0 (HKLM-x32\...\PureSync) (Version: 3.7.0 - Jumping Bytes)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: - Apple Inc.)
RapidBoot Shield (HKLM\...\{5E2652DF-743F-482B-A593-C95F431A5769}) (Version: 1.23 - Lenovo)
RealFlow 2013 (HKLM-x32\...\RealFlow 2013) (Version:  - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.)
Registry Patch to Enable Maximum Power Saving on WiFi Adapters for Windows 7 (HKLM\...\EnablePS) (Version: 1.00 - )
Rhinoceros 3.0 (HKLM-x32\...\Rhinoceros 3.0) (Version: 3.0 Release - Robert McNeel & Associates, 3670 Woodland Park Avenue North, Seattle, WA 98103 USA)
Rhinoceros 4.0 SR9 Hot Fix 1 (HKLM-x32\...\{AC46A19C-0D2E-4FE2-A7F3-75031C970D43}) (Version: 5.0.2011.0324 - Robert McNeel & Associates)
Rhinoceros 5.0 (64-bit) (HKLM\...\{BB435434-EDC8-4E54-B32D-28452CACAEC6}) (Version: 5.1.20927.2230 - Robert McNeel & Associates)
Samsung_MonSetup (HKLM-x32\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung)
Scan (x32 Version: - Hewlett-Packard) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
simfy (HKLM-x32\...\Simfy) (Version: 1.7.7 - simfy AG)
simfy (x32 Version: 1.7.7 - simfy AG) Hidden
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Sony PC Companion 2.10.236 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.236 - Sony)
Steam (HKLM-x32\...\Steam) (Version:  - Valve Corporation)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH)
The Forest (HKLM-x32\...\Steam App 242760) (Version:  - Endnight Games Ltd)
The Long Dark (HKLM-x32\...\Steam App 305620) (Version:  - Hinterland Studio Inc.)
ThinkPad Bluetooth with Enhanced Data Rate Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: - Broadcom Corporation)
ThinkPad Power Management Driver (HKLM\...\Power Management Driver) (Version: - )
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: - )
ThinkVantage Communications Utility (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: - Lenovo)
ThinkVantage Fingerprint Software (HKLM\...\{F58DA859-016E-492D-A588-317D9BB28002}) (Version: - Authentec Inc.)
ThinkVantage System für aktiven Festplattenschutz (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.76 - Lenovo)
TomTom HOME (HKLM-x32\...\{7A2BB1C8-903D-4585-9F3B-CADD67D07D37}) (Version: 2.9.8 - Ihr Firmenname)
TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.)
Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden
TV-Total Emulator v1.4.1.1 (HKLM-x32\...\TV-Total Emulator_is1) (Version:  - Sebastian-Gebhardt.de)
VIP Access (HKLM-x32\...\{E8D46836-CD55-453C-A107-A59EC51CB8DC}) (Version: - VeriSign)
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
Wacom Tablett (HKLM\...\Wacom Tablet Driver) (Version: 6.3.3-4 - Wacom Technology Corp.)
WebReg (x32 Version: - Hewlett-Packard) Hidden
WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: - Wacom Technology Corp.)
WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: - Wacom Technology Corp.)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows-Treiberpaket - Intel (e1cexpress) Net  (01/11/2012 (HKLM\...\EC2A0F2B229770EC589265FCF2B4839A0C221993) (Version: 01/11/2012 - Intel)
Windows-Treiberpaket - Intel System  (01/11/2012 (HKLM\...\09839A9B5EDA69DA2DCC34637B5140AAF8A53B44) (Version: 01/11/2012 - Intel)
Windows-Treiberpaket - Intel System  (08/26/2011 (HKLM\...\9D7CD466F7FC8B18FF1B84943B7BB8648D17FCE8) (Version: 08/26/2011 - Intel)
Windows-Treiberpaket - Intel System  (08/26/2011 (HKLM\...\D8EF6CACF49BD33CC1FACD124C8CC2B1A8E8AE35) (Version: 08/26/2011 - Intel)
Windows-Treiberpaket - Intel USB  (08/26/2011 (HKLM\...\97EE1802A0385A37DE6323FA39EC76BEB2D73E41) (Version: 08/26/2011 - Intel)
Windows-Treiberpaket - Lenovo (02/29/2012 (HKLM\...\E3535F123E7F666D573665142F90D3E5004DC326) (Version: 02/29/2012 - Lenovo)
Windows-Treiberpaket - Synaptics (SynTP) Mouse  (04/06/2012 (HKLM\...\64B3C27E4CF7B6AD920184EFFF6C488C55EF2892) (Version: 04/06/2012 - Synaptics)
WinRAR 4.20 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-2074290114-3587195105-669080466-2689_Classes\CLSID\{092dfa86-5807-5a94-bf3b-5a53ba9e5308}\InprocServer32 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
CustomCLSID: HKU\S-1-5-21-2074290114-3587195105-669080466-2689_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\***\AppData\Local\Google\Update\\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-2074290114-3587195105-669080466-2689_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Deutsch\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-2074290114-3587195105-669080466-2689_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\***\AppData\Local\Google\Update\\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-2074290114-3587195105-669080466-2689_Classes\CLSID\{B77E471C-FBF3-4CB5-880F-D7528AD4B349}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Deutsch\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-2074290114-3587195105-669080466-2689_Classes\CLSID\{C92FB640-AD4D-498A-9979-A51A2540C977}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Deutsch\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-2074290114-3587195105-669080466-2689_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\***\AppData\Local\Google\Update\\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2074290114-3587195105-669080466-2689_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Deutsch\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-2074290114-3587195105-669080466-2689_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Deutsch\acadficn.dll (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-2074290114-3587195105-669080466-2689_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\***\AppData\Local\Google\Update\\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3994390389-2711207413-3176889650-1001_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Deutsch\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3994390389-2711207413-3176889650-1001_Classes\CLSID\{B77E471C-FBF3-4CB5-880F-D7528AD4B349}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Deutsch\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3994390389-2711207413-3176889650-1001_Classes\CLSID\{C92FB640-AD4D-498A-9979-A51A2540C977}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Deutsch\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3994390389-2711207413-3176889650-1001_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Deutsch\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3994390389-2711207413-3176889650-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Deutsch\acadficn.dll (Autodesk, Inc.)

==================== Restore Points  =========================

29-12-2014 16:32:53 Installed Lenovo Solution Center.
30-12-2014 12:40:25 Joe wird installiert
30-12-2014 14:31:13 Windows Update
01-01-2015 16:48:47 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
01-01-2015 16:48:52 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
01-01-2015 16:49:01 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
01-01-2015 16:49:09 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {15DD2148-AB59-4D27-AA79-BEB6FFD163B3} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2074290114-3587195105-669080466-2689UA => C:\Users\***\AppData\Local\Google\Update\GoogleUpdate.exe [2014-08-21] (Google Inc.)
Task: {1B4F4F65-C182-4A36-A6D6-830C1C5F2464} - System32\Tasks\AdobeAAMUpdater-1.0-Philipp-THINK-Philipp => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-09-19] (Adobe Systems Incorporated)
Task: {4885AC8E-8CFE-4E48-AFB2-EE00FE619851} - System32\Tasks\PMTask => C:\Program Files (x86)\ThinkPad\Utilities\PWMIDTSV.EXE [2012-05-15] (Lenovo Group Limited)
Task: {52849BA1-30CC-4FBD-8750-186D98A09628} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {675A900E-5F43-401B-8940-554CF404C7F0} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-29] (Adobe Systems Incorporated)
Task: {7274A240-035C-491C-A41C-518677BF9781} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2014-10-16] ()
Task: {74E52BC7-04D5-479A-B143-1DEFC082500F} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2013-02-04] ()
Task: {7CEFE238-ECB6-4DCB-861D-28A59107B18B} - System32\Tasks\Lenovo\SimpleTap\Start SimpleTap for Philipp-THINK.Philipp => C:\Program Files\Lenovo\SimpleTap\SimpleTap.exe [2012-05-15] (Lenovo)
Task: {AF228169-1947-4BBD-BA80-5ECC668DB947} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2014-10-16] (Lenovo)
Task: {AFBEC7CC-CD76-40A5-9A4B-DEE108B38429} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2074290114-3587195105-669080466-2689Core => C:\Users\***\AppData\Local\Google\Update\GoogleUpdate.exe [2014-08-21] (Google Inc.)
Task: {B5704A04-BDA8-49F0-9035-4FC22422B008} - System32\Tasks\Lenovo\SimpleTap\Start SimpleTap for KYPW.*** => C:\Program Files\Lenovo\SimpleTap\SimpleTap.exe [2012-05-15] (Lenovo)
Task: {B8168EEF-AAD1-4098-AAC9-57B2D85D94E1} - System32\Tasks\Lenovo\Message Center Plus Launcher => C:\Program Files (x86)\Lenovo\message center plus\mcplaunch.exe [2014-09-13] (Lenovo)
Task: {C79897E0-4554-41EC-953C-753EED95BE9E} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2013-05-17] (Lenovo)
Task: {CB77B019-D340-4FA4-8E68-EAAB18DB0F47} - System32\Tasks\AdobeAAMUpdater-1.0-KYPW-*** => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-09-19] (Adobe Systems Incorporated)
Task: {CF827FA3-C8D7-4905-A66C-027BFDE29A36} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {DDBDC081-75A4-4FE9-A9FF-CD561BA0862F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {E38A90A9-6E7D-4CD6-A8A0-7F6633A0E12B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-27] (Google Inc.)
Task: {E653C969-A3CE-421E-9D41-211683C1B271} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2014-10-16] (Lenovo)
Task: {F1D89057-AC6B-431E-B86B-6A3DDCE7DB41} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-27] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2074290114-3587195105-669080466-2689Core.job => C:\Users\***\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2074290114-3587195105-669080466-2689UA.job => C:\Users\***\AppData\Local\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2014-12-17 14:18 - 2014-12-17 14:18 - 00435184 _____ () C:\Program Files (x86)\Search\WebSearch.exe
2012-12-05 10:31 - 2012-08-02 13:42 - 01184672 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll
2012-09-24 20:55 - 2013-10-29 01:53 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-09-24 20:55 - 2012-04-09 00:54 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2013-10-11 19:50 - 2014-06-23 08:07 - 00113376 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
2012-09-24 20:56 - 2012-05-15 22:32 - 00103936 ____N () C:\Program Files (x86)\ThinkPad\Utilities\GR\PWMRT64V.DLL
2014-09-26 13:40 - 2014-09-26 13:40 - 06237856 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
2014-12-12 23:24 - 2014-12-12 23:24 - 00047104 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2014-09-26 13:41 - 2014-09-26 13:41 - 01021088 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2010-01-02 15:42 - 2010-01-02 15:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
2014-04-23 15:05 - 2014-04-23 15:05 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-04-23 15:04 - 2014-04-23 15:04 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2012-09-24 20:57 - 2011-08-02 03:58 - 02201088 _____ () C:\Program Files\Lenovo\Communications Utility\cxcore210.dll
2012-09-24 20:57 - 2011-08-02 03:58 - 02085888 _____ () C:\Program Files\Lenovo\Communications Utility\cv210.dll
2012-09-24 20:53 - 2012-02-21 04:09 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2013-10-11 19:50 - 2012-04-30 10:57 - 00039936 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\TMonitorAPI.dll
2013-10-11 19:50 - 2013-09-13 10:02 - 00208896 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\MExplorer.dll
2011-07-07 14:54 - 2011-07-07 14:54 - 00233984 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\Report.dll
2013-10-11 19:50 - 2013-05-20 11:58 - 00620718 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\sqlite3.dll
2013-10-11 19:50 - 2010-01-11 15:44 - 00053248 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\VObject.dll
2013-09-26 15:47 - 2013-09-26 15:47 - 00610816 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\PhoneUpdate.dll
2013-09-14 00:51 - 2013-09-14 00:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\zlib1.dll
2013-09-14 00:50 - 2013-09-14 00:50 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\libxml2.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 00891392 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtNetwork4.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 02281984 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtCore4.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 00322048 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\log4cplus.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 00339456 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtXml4.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 00400384 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\sqlite3.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 00016896 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\featureController.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 00062976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\osEvents.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 00195584 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\libgsoap.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 00062464 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\zlib1.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 00446976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\deviceProfile.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 00019456 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\eventsSender.dll
2012-09-24 21:02 - 2012-07-12 13:59 - 00062976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\serviceManagerStarter.dll
2014-09-28 20:01 - 2014-09-28 20:01 - 36730032 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libcef.dll
2013-08-07 20:25 - 2013-08-07 20:25 - 00093696 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll
2012-09-23 19:43 - 2012-09-23 19:43 - 00010240 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\de_de\acrotray.deu
2014-09-28 20:01 - 2014-09-28 20:01 - 00746160 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libglesv2.dll
2014-09-28 20:01 - 2014-09-28 20:01 - 00136368 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libegl.dll
2014-12-12 20:22 - 2014-12-06 02:50 - 01077064 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\libglesv2.dll
2014-12-12 20:22 - 2014-12-06 02:50 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\libegl.dll
2014-12-12 20:22 - 2014-12-06 02:50 - 09009480 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\pdf.dll
2014-12-12 20:22 - 2014-12-06 02:50 - 01677128 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\ffmpegsumo.dll
2012-04-18 23:15 - 2012-04-18 23:15 - 00087640 _____ () C:\Program Files (x86)\Symantec\VIP Access Client\JSON.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\***\Cookies:WdJx5gY9Hn2uaz2AMO8rjVG7iYw

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)

==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SketchBook Snapshot.lnk => C:\Windows\pss\SketchBook Snapshot.lnk.CommonStartup
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: PureSync => "C:\Program Files (x86)\PureSync\PureSyncTray.exe"
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: Sony PC Companion => "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
MSCONFIG\startupreg: TomTomHOME.exe => "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"

========================= Accounts: ==========================

Administrator (S-1-5-21-3994390389-2711207413-3176889650-500 - Administrator - Disabled)
Gast (S-1-5-21-3994390389-2711207413-3176889650-501 - Limited - Disabled)
Philipp (S-1-5-21-3994390389-2711207413-3176889650-1001 - Administrator - Enabled) => C:\Users\Philipp
UpdatusUser (S-1-5-21-3994390389-2711207413-3176889650-1000 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Faulty Device Manager Devices =============

Name: HP LaserJet Professional P1606dn
Description: HP LaserJet Professional P1606dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: hp LaserJet 2420
Description: hp LaserJet 2420
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet Professional P1606dn
Description: HP LaserJet Professional P1606dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Officejet 4500 G510n-z
Description: Officejet 4500 G510n-z
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: HP
Service: StillCam
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet Professional P1606dn
Description: HP LaserJet Professional P1606dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: DesignJet 1050C (C6074A)
Description: DesignJet 1050C (C6074A)
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Officejet 6700
Description: Officejet 6700
Class Guid: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Officejet 6700
Description: Officejet 6700
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet 8150 Series
Description: HP LaserJet 8150 Series
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP Color LaserJet CP5225n
Description: HP Color LaserJet CP5225n
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet 4050 Series
Description: HP LaserJet 4050 Series
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Officejet 6700
Description: Officejet 6700
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet Professional P1606dn
Description: HP LaserJet Professional P1606dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet Professional P1606dn
Description: HP LaserJet Professional P1606dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet Professional P1606dn
Description: HP LaserJet Professional P1606dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Officejet 6700
Description: Officejet 6700
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet 500 color MFP M575
Description: HP LaserJet 500 color MFP M575
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Officejet 4500 G510n-z
Description: Officejet 4500 G510n-z
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet Professional P1606dn
Description: HP LaserJet Professional P1606dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet Professional P1606dn
Description: HP LaserJet Professional P1606dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet Professional P1606dn
Description: HP LaserJet Professional P1606dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: HP LaserJet Professional P1606dn
Description: HP LaserJet Professional P1606dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

==================== Event log errors: =========================

Application errors:
Error: (01/09/2015 11:39:55 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3089

Error: (01/09/2015 11:39:55 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3089

Error: (01/09/2015 11:39:55 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (01/09/2015 11:39:54 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1560

Error: (01/09/2015 11:39:54 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1560

Error: (01/09/2015 11:39:54 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (01/09/2015 09:46:26 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1668399

Error: (01/09/2015 09:46:26 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1668399

Error: (01/09/2015 09:46:26 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (01/09/2015 09:46:24 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1666933

System errors:
Error: (01/09/2015 00:30:26 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst Wlansvc erreicht.

Error: (01/09/2015 08:47:18 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: KYPW)
Description: Bei der Verarbeitung der Gruppenrichtlinie ist aufgrund fehlender Netzwerkkonnektivität mit einem Domänencontroller ein Fehler aufgetreten. Dies kann eine vorübergehende Bedingung sein. Es wird eine Erfolgsmeldung generiert, wenn die Verbindung des Computers mit dem Domänencontroller wiederhergestellt wurde und wenn die Gruppenrichtlinie erfolgreich verarbeitet wurde. Falls für mehrere Stunden keine Erfolgsmeldung angezeigt wird, wenden Sie sich an den Administrator.

Error: (01/09/2015 08:47:10 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: NT-AUTORITÄT)
Description: Bei der Verarbeitung der Gruppenrichtlinie ist aufgrund fehlender Netzwerkkonnektivität mit einem Domänencontroller ein Fehler aufgetreten. Dies kann eine vorübergehende Bedingung sein. Es wird eine Erfolgsmeldung generiert, wenn die Verbindung des Computers mit dem Domänencontroller wiederhergestellt wurde und wenn die Gruppenrichtlinie erfolgreich verarbeitet wurde. Falls für mehrere Stunden keine Erfolgsmeldung angezeigt wird, wenden Sie sich an den Administrator.

Error: (01/09/2015 08:47:06 AM) (Source: NETLOGON) (EventID: 5719) (User: )
Description: Der Computer konnte eine sichere Sitzung mit einem
Domänencontroller in der Domäne KYPW aufgrund der folgenden
Ursache nicht einrichten: 

Dies kann zu Authentifizierungsproblemen führen. Stellen
Sie sicher, dass der Computer mit dem Netzwerk verbunden ist.
Wenden Sie sich an den Domänenadministrator, wenn das Problem
weiterhin besteht.


Wenn dieser Computer ein Domänencontroller der bestimmten
Domäne ist, wird eine sichere Sitzung zum primären
Domänencontrolleremulator in der bestimmten Domäne eingerichtet.
Andernfalls richtet dieser Computer eine sichere Sitzung zu
einem beliebigen Domänencontroller in der bestimmten Domäne ein.

Error: (01/08/2015 07:21:31 PM) (Source: NETLOGON) (EventID: 5719) (User: )
Description: Der Computer konnte eine sichere Sitzung mit einem
Domänencontroller in der Domäne KYPW aufgrund der folgenden
Ursache nicht einrichten: 

Dies kann zu Authentifizierungsproblemen führen. Stellen
Sie sicher, dass der Computer mit dem Netzwerk verbunden ist.
Wenden Sie sich an den Domänenadministrator, wenn das Problem
weiterhin besteht.


Wenn dieser Computer ein Domänencontroller der bestimmten
Domäne ist, wird eine sichere Sitzung zum primären
Domänencontrolleremulator in der bestimmten Domäne eingerichtet.
Andernfalls richtet dieser Computer eine sichere Sitzung zu
einem beliebigen Domänencontroller in der bestimmten Domäne ein.

Error: (01/08/2015 07:21:29 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst IPBusEnum erreicht.

Error: (01/08/2015 00:50:54 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst IPBusEnum erreicht.

Error: (01/08/2015 08:36:19 AM) (Source: NETLOGON) (EventID: 5719) (User: )
Description: Der Computer konnte eine sichere Sitzung mit einem
Domänencontroller in der Domäne KYPW aufgrund der folgenden
Ursache nicht einrichten: 

Dies kann zu Authentifizierungsproblemen führen. Stellen
Sie sicher, dass der Computer mit dem Netzwerk verbunden ist.
Wenden Sie sich an den Domänenadministrator, wenn das Problem
weiterhin besteht.


Wenn dieser Computer ein Domänencontroller der bestimmten
Domäne ist, wird eine sichere Sitzung zum primären
Domänencontrolleremulator in der bestimmten Domäne eingerichtet.
Andernfalls richtet dieser Computer eine sichere Sitzung zu
einem beliebigen Domänencontroller in der bestimmten Domäne ein.

Error: (01/08/2015 08:34:26 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: KYPW)
Description: Bei der Verarbeitung der Gruppenrichtlinie ist aufgrund fehlender Netzwerkkonnektivität mit einem Domänencontroller ein Fehler aufgetreten. Dies kann eine vorübergehende Bedingung sein. Es wird eine Erfolgsmeldung generiert, wenn die Verbindung des Computers mit dem Domänencontroller wiederhergestellt wurde und wenn die Gruppenrichtlinie erfolgreich verarbeitet wurde. Falls für mehrere Stunden keine Erfolgsmeldung angezeigt wird, wenden Sie sich an den Administrator.

Error: (01/08/2015 08:34:11 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1129) (User: NT-AUTORITÄT)
Description: Bei der Verarbeitung der Gruppenrichtlinie ist aufgrund fehlender Netzwerkkonnektivität mit einem Domänencontroller ein Fehler aufgetreten. Dies kann eine vorübergehende Bedingung sein. Es wird eine Erfolgsmeldung generiert, wenn die Verbindung des Computers mit dem Domänencontroller wiederhergestellt wurde und wenn die Gruppenrichtlinie erfolgreich verarbeitet wurde. Falls für mehrere Stunden keine Erfolgsmeldung angezeigt wird, wenden Sie sich an den Administrator.

Microsoft Office Sessions:
Error: (01/09/2015 11:39:55 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3089

Error: (01/09/2015 11:39:55 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3089

Error: (01/09/2015 11:39:55 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (01/09/2015 11:39:54 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1560

Error: (01/09/2015 11:39:54 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1560

Error: (01/09/2015 11:39:54 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (01/09/2015 09:46:26 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1668399

Error: (01/09/2015 09:46:26 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1668399

Error: (01/09/2015 09:46:26 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (01/09/2015 09:46:24 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1666933

CodeIntegrity Errors:
  Date: 2014-12-29 16:55:05.538
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-23 10:37:07.543
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-23 10:36:06.645
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-19 18:55:21.511
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-19 18:52:18.120
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-18 10:21:45.542
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-18 10:01:59.728
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-18 10:01:04.282
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-18 09:59:11.430
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-12-17 08:14:37.764
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-3320M CPU @ 2.60GHz
Percentage of memory in use: 49%
Total physical RAM: 7915.11 MB
Available physical RAM: 4027.74 MB
Total Pagefile: 15828.39 MB
Available Pagefile: 11049.05 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: (Windows7_OS) (Fixed) (Total:440.96 GB) (Free:152.57 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive q: (Lenovo_Recovery) (Fixed) (Total:15.34 GB) (Free:3.15 GB) NTFS

==================== MBR & Partition Table ==================

Disk: 0 (Size: 465.8 GB) (Disk ID: B655E5D6)
Partition 1: (Active) - (Size=1.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=441 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=15.3 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=8 GB) - (Type=84)

==================== End Of Log ============================

Hatte vorher schonmal mit Avira und Malwarebytes gescannt. Avira hatte was gefunden und entfernt damit dachte ich es wär weg. Aber das Problem besteht weiterhin. Malwarebytes hat nix gefunden.

Alt 09.01.2015, 13:50   #4
CPU auf 100% ohne laufende Programme - Standard

CPU auf 100% ohne laufende Programme

Da müsste die Avira Log file sein:

Avira Free Antivirus
Report file date: Donnerstag, 8. Januar 2015  11:57

The program is running as an unrestricted full version.
Online services are available.

Licensee        : Avira Antivirus Free
Serial number   : 0000149996-AVHOE-0000001
Platform        : Windows 7 Professional
Windows version : (Service Pack 1)  [6.1.7601]
Boot mode       : Normally booted
Username        : ***
Computer name   : PHILIPP-THINK

Version information:
BUILD.DAT       :     91859 Bytes  24.11.2014 10:23:00
AVSCAN.EXE      :   1015544 Bytes  16.12.2014 08:42:09
AVSCANRC.DLL    :     54576 Bytes  18.11.2014 14:22:57
LUKE.DLL        :     60664 Bytes  16.12.2014 08:42:16
AVSCPLR.DLL     :     93488 Bytes  16.12.2014 08:42:09
REPAIR.DLL      :    366328 Bytes  16.12.2014 08:42:09
REPAIR.RDF      :      639336 Bytes  07.01.2015 13:15:48
AVREG.DLL       :    264952 Bytes  18.11.2014 14:22:56
AVLODE.DLL      :    561456 Bytes  16.12.2014 08:42:08
AVLODE.RDF      :      78895 Bytes  08.12.2014 07:22:05
XBV00013.VDF    :     2048 Bytes  07.08.2014 13:01:09
XBV00014.VDF    :     2048 Bytes  07.08.2014 13:01:09
XBV00015.VDF    :     2048 Bytes  07.08.2014 13:01:09
XBV00016.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00017.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00018.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00019.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00020.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00021.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00022.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00023.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00024.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00025.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00026.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00027.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00028.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00029.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00030.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00031.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00032.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00033.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00034.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00035.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00036.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00037.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00038.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00039.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00040.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00041.VDF    :     2048 Bytes  07.08.2014 13:01:10
XBV00192.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00193.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00194.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00195.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00196.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00197.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00198.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00199.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00200.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00201.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00202.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00203.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00204.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00205.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00206.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00207.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00208.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00209.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00210.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00211.VDF    :     2048 Bytes  23.12.2014 16:12:45
XBV00212.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00213.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00214.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00215.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00216.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00217.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00218.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00219.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00220.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00221.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00222.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00223.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00224.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00225.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00226.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00227.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00228.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00229.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00230.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00231.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00232.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00233.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00234.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00235.VDF    :     2048 Bytes  23.12.2014 16:12:46
XBV00236.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00237.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00238.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00239.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00240.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00241.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00242.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00243.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00244.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00245.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00246.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00247.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00248.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00249.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00250.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00251.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00252.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00253.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00254.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00255.VDF    :     2048 Bytes  23.12.2014 16:12:47
XBV00000.VDF    :   66736640 Bytes  04.04.2013 13:34:49
XBV00001.VDF    :  2201600 Bytes  30.04.2013 14:05:59
XBV00002.VDF    :   2751488 Bytes  28.05.2013 13:16:40
XBV00003.VDF    :  2162688 Bytes  21.06.2013 11:05:34
XBV00004.VDF    :  3903488 Bytes  23.07.2013 07:18:31
XBV00005.VDF    :  6822912 Bytes  29.08.2013 13:51:22
XBV00006.VDF    : 15708672 Bytes  27.03.2014 13:50:10
XBV00007.VDF    :  4193792 Bytes  02.06.2014 19:43:09
XBV00008.VDF    :  4251136 Bytes  07.08.2014 13:01:09
XBV00009.VDF    :  2094080 Bytes  15.09.2014 13:09:43
XBV00010.VDF    :  1581056 Bytes  14.10.2014 12:13:03
XBV00011.VDF    :  2178560 Bytes  11.11.2014 08:22:46
XBV00012.VDF    :  1876992 Bytes  03.12.2014 14:02:05
XBV00042.VDF    :    35840 Bytes  03.12.2014 14:02:05
XBV00043.VDF    :     2048 Bytes  03.12.2014 14:02:05
XBV00044.VDF    :    18944 Bytes  03.12.2014 07:53:20
XBV00045.VDF    :     7680 Bytes  03.12.2014 07:53:20
XBV00046.VDF    :     5120 Bytes  03.12.2014 07:53:20
XBV00047.VDF    :     9216 Bytes  03.12.2014 07:53:20
XBV00048.VDF    :     4608 Bytes  04.12.2014 07:53:20
XBV00049.VDF    :     8192 Bytes  04.12.2014 07:53:20
XBV00050.VDF    :    20480 Bytes  04.12.2014 13:53:06
XBV00051.VDF    :    19456 Bytes  04.12.2014 13:53:06
XBV00052.VDF    :    12800 Bytes  04.12.2014 07:22:05
XBV00053.VDF    :     5120 Bytes  04.12.2014 07:22:05
XBV00054.VDF    :     2048 Bytes  04.12.2014 07:22:05
XBV00055.VDF    :     2048 Bytes  04.12.2014 07:22:05
XBV00056.VDF    :     2048 Bytes  04.12.2014 07:22:05
XBV00057.VDF    :     8192 Bytes  04.12.2014 07:22:05
XBV00058.VDF    :     6144 Bytes  05.12.2014 07:22:05
XBV00059.VDF    :     6144 Bytes  05.12.2014 07:22:05
XBV00060.VDF    :    24064 Bytes  05.12.2014 07:22:06
XBV00061.VDF    :     2048 Bytes  05.12.2014 07:22:06
XBV00062.VDF    :    11776 Bytes  05.12.2014 07:22:06
XBV00063.VDF    :    29696 Bytes  06.12.2014 07:22:06
XBV00064.VDF    :    41472 Bytes  06.12.2014 07:22:06
XBV00065.VDF    :     2048 Bytes  06.12.2014 07:22:06
XBV00066.VDF    :    37888 Bytes  07.12.2014 07:22:06
XBV00067.VDF    :    13824 Bytes  07.12.2014 07:22:06
XBV00068.VDF    :    31744 Bytes  08.12.2014 07:22:06
XBV00069.VDF    :     2048 Bytes  08.12.2014 07:22:06
XBV00070.VDF    :     7680 Bytes  08.12.2014 13:21:51
XBV00071.VDF    :     3584 Bytes  08.12.2014 13:21:51
XBV00072.VDF    :    24064 Bytes  08.12.2014 13:21:52
XBV00073.VDF    :     2048 Bytes  08.12.2014 13:21:52
XBV00074.VDF    :     2048 Bytes  08.12.2014 13:21:52
XBV00075.VDF    :     2560 Bytes  08.12.2014 19:21:55
XBV00076.VDF    :     2048 Bytes  08.12.2014 19:21:55
XBV00077.VDF    :     2048 Bytes  08.12.2014 19:21:55
XBV00078.VDF    :    31232 Bytes  08.12.2014 05:21:32
XBV00079.VDF    :     2048 Bytes  08.12.2014 05:21:32
XBV00080.VDF    :    14336 Bytes  09.12.2014 05:21:32
XBV00081.VDF    :     8192 Bytes  09.12.2014 11:21:22
XBV00082.VDF    :    10240 Bytes  09.12.2014 11:21:22
XBV00083.VDF    :     4096 Bytes  09.12.2014 11:21:22
XBV00084.VDF    :     5120 Bytes  09.12.2014 17:21:23
XBV00085.VDF    :     7680 Bytes  09.12.2014 17:21:23
XBV00086.VDF    :     9216 Bytes  09.12.2014 17:21:23
XBV00087.VDF    :     2048 Bytes  09.12.2014 17:21:23
XBV00088.VDF    :    25088 Bytes  09.12.2014 07:24:19
XBV00089.VDF    :    63488 Bytes  09.12.2014 07:24:19
XBV00090.VDF    :  1426944 Bytes  23.12.2014 16:12:40
XBV00091.VDF    :     5120 Bytes  23.12.2014 16:12:41
XBV00092.VDF    :    22016 Bytes  23.12.2014 10:21:17
XBV00093.VDF    :    21504 Bytes  23.12.2014 10:21:17
XBV00094.VDF    :     2048 Bytes  23.12.2014 10:21:17
XBV00095.VDF    :    12288 Bytes  23.12.2014 10:21:18
XBV00096.VDF    :     8192 Bytes  23.12.2014 10:21:18
XBV00097.VDF    :    26112 Bytes  24.12.2014 10:21:18
XBV00098.VDF    :     8192 Bytes  24.12.2014 10:21:18
XBV00099.VDF    :    20480 Bytes  24.12.2014 10:21:18
XBV00100.VDF    :     7680 Bytes  24.12.2014 10:21:18
XBV00101.VDF    :    22016 Bytes  24.12.2014 10:21:18
XBV00102.VDF    :     6144 Bytes  24.12.2014 10:21:18
XBV00103.VDF    :     6144 Bytes  24.12.2014 10:21:18
XBV00104.VDF    :    44032 Bytes  25.12.2014 10:21:18
XBV00105.VDF    :     2048 Bytes  25.12.2014 10:21:18
XBV00106.VDF    :    16896 Bytes  25.12.2014 10:21:18
XBV00107.VDF    :     6656 Bytes  25.12.2014 10:21:18
XBV00108.VDF    :    94208 Bytes  26.12.2014 10:21:18
XBV00109.VDF    :     12288 Bytes  26.12.2014 10:21:18
XBV00110.VDF    :    13824 Bytes  26.12.2014 10:21:18
XBV00111.VDF    :    10752 Bytes  26.12.2014 10:21:18
XBV00112.VDF    :     2048 Bytes  26.12.2014 10:21:18
XBV00113.VDF    :     2048 Bytes  26.12.2014 10:21:18
XBV00114.VDF    :   108544 Bytes  27.12.2014 07:28:44
XBV00115.VDF    :     2048 Bytes  27.12.2014 07:28:44
XBV00116.VDF    :    23552 Bytes  27.12.2014 07:28:45
XBV00117.VDF    :    94208 Bytes  28.12.2014 18:56:51
XBV00118.VDF    :    18432 Bytes  28.12.2014 18:56:51
XBV00119.VDF    :    85504 Bytes  29.12.2014 07:27:28
XBV00120.VDF    :     2048 Bytes  29.12.2014 07:27:28
XBV00121.VDF    :    13824 Bytes  29.12.2014 14:52:13
XBV00122.VDF    :     4096 Bytes  29.12.2014 14:52:13
XBV00123.VDF    :     9216 Bytes  29.12.2014 14:52:13
XBV00124.VDF    :    12288 Bytes  29.12.2014 14:52:13
XBV00125.VDF    :    23040 Bytes  29.12.2014 11:29:01
XBV00126.VDF    :    12800 Bytes  29.12.2014 11:29:01
XBV00127.VDF    :   109056 Bytes  30.12.2014 11:29:01
XBV00128.VDF    :     9728 Bytes  30.12.2014 18:31:38
XBV00129.VDF    :    11264 Bytes  30.12.2014 18:31:39
XBV00130.VDF    :    12800 Bytes  30.12.2014 18:31:39
XBV00131.VDF    :     7680 Bytes  30.12.2014 18:31:39
XBV00132.VDF    :    14848 Bytes  30.12.2014 18:31:39
XBV00133.VDF    :    12800 Bytes  30.12.2014 15:27:19
XBV00134.VDF    :    86016 Bytes  31.12.2014 15:27:19
XBV00135.VDF    :     7680 Bytes  31.12.2014 15:27:20
XBV00136.VDF    :    12288 Bytes  31.12.2014 15:27:20
XBV00137.VDF    :     2048 Bytes  31.12.2014 15:27:20
XBV00138.VDF    :    28160 Bytes  31.12.2014 15:27:20
XBV00139.VDF    :   107520 Bytes  01.01.2015 15:27:20
XBV00140.VDF    :    16384 Bytes  01.01.2015 15:27:20
XBV00141.VDF    :     43008 Bytes  02.01.2015 10:39:10
XBV00142.VDF    :    20992 Bytes  02.01.2015 10:39:10
XBV00143.VDF    :    35840 Bytes  02.01.2015 10:39:10
XBV00144.VDF    :     4608 Bytes  02.01.2015 10:39:10
XBV00145.VDF    :    22528 Bytes  02.01.2015 10:39:10
XBV00146.VDF    :     2048 Bytes  02.01.2015 10:39:10
XBV00147.VDF    :     6656 Bytes  02.01.2015 10:39:10
XBV00148.VDF    :     6656 Bytes  02.01.2015 10:39:11
XBV00149.VDF    :    86528 Bytes  03.01.2015 10:39:11
XBV00150.VDF    :     2048 Bytes  03.01.2015 10:39:11
XBV00151.VDF    :    27648 Bytes  03.01.2015 09:42:33
XBV00152.VDF    :     2048 Bytes  03.01.2015 09:42:33
XBV00153.VDF    :    11264 Bytes  03.01.2015 09:42:33
XBV00154.VDF    :    13824 Bytes  03.01.2015 09:42:33
XBV00155.VDF    :     9728 Bytes  03.01.2015 09:42:33
XBV00156.VDF    :    85504 Bytes  04.01.2015 09:42:33
XBV00157.VDF    :    11776 Bytes  04.01.2015 08:47:02
XBV00158.VDF    :     9216 Bytes  04.01.2015 08:47:02
XBV00159.VDF    :    10240 Bytes  04.01.2015 08:47:02
XBV00160.VDF    :    12288 Bytes  04.01.2015 08:47:02
XBV00161.VDF    :    29696 Bytes  05.01.2015 08:47:02
XBV00162.VDF    :     2048 Bytes  05.01.2015 08:47:02
XBV00163.VDF    :     2048 Bytes  05.01.2015 08:47:02
XBV00164.VDF    :    17408 Bytes  05.01.2015 14:46:33
XBV00165.VDF    :     9216 Bytes  05.01.2015 14:46:33
XBV00166.VDF    :    12288 Bytes  05.01.2015 14:46:33
XBV00167.VDF    :    19968 Bytes  05.01.2015 06:47:56
XBV00168.VDF    :     2048 Bytes  05.01.2015 06:47:56
XBV00169.VDF    :     2048 Bytes  05.01.2015 06:47:56
XBV00170.VDF    :     2048 Bytes  05.01.2015 06:47:56
XBV00171.VDF    :    43520 Bytes  05.01.2015 06:47:56
XBV00172.VDF    :    12288 Bytes  05.01.2015 06:47:56
XBV00173.VDF    :    22528 Bytes  06.01.2015 06:47:57
XBV00174.VDF    :     9216 Bytes  06.01.2015 12:47:24
XBV00175.VDF    :     3584 Bytes  06.01.2015 12:47:24
XBV00176.VDF    :    13824 Bytes  06.01.2015 12:47:24
XBV00177.VDF    :    13312 Bytes  06.01.2015 12:47:24
XBV00178.VDF    :    17920 Bytes  06.01.2015 12:47:24
XBV00179.VDF    :    18432 Bytes  06.01.2015 12:47:24
XBV00180.VDF    :    94720 Bytes  06.01.2015 13:15:46
XBV00181.VDF    :    56832 Bytes  06.01.2015 13:15:46
XBV00182.VDF    :    28672 Bytes  06.01.2015 13:15:46
XBV00183.VDF    :    19456 Bytes  06.01.2015 13:15:46
XBV00184.VDF    :     3584 Bytes  06.01.2015 13:15:46
XBV00185.VDF    :     3584 Bytes  07.01.2015 13:15:46
XBV00186.VDF    :   102400 Bytes  07.01.2015 13:15:46
XBV00187.VDF    :     3584 Bytes  07.01.2015 13:15:47
XBV00188.VDF    :     2048 Bytes  07.01.2015 13:15:47
XBV00189.VDF    :    23552 Bytes  07.01.2015 13:15:47
XBV00190.VDF    :    19968 Bytes  07.01.2015 13:15:47
XBV00191.VDF    :    30208 Bytes  07.01.2015 13:15:47
LOCAL001.VDF    : 119618048 Bytes  07.01.2015 13:16:08
Engine version  :  
AEVDF.DLL       :       133992 Bytes  20.08.2014 14:13:08
AESCRIPT.DLL    :      546728 Bytes  19.12.2014 17:56:32
AESCN.DLL       :       139456 Bytes  04.08.2014 12:37:58
AESBX.DLL       :    1409224 Bytes  09.05.2014 09:52:48
AERDL.DLL       :      743328 Bytes  29.10.2014 13:54:50
AEPACK.DLL      :      789360 Bytes  30.11.2014 14:56:14
AEOFFICE.DLL    :       350120 Bytes  30.11.2014 14:56:14
AEMOBILE.DLL    :       277360 Bytes  16.12.2014 15:09:46
AEHEUR.DLL      :   7940008 Bytes  19.12.2014 17:56:30
AEHELP.DLL      :       278728 Bytes  28.05.2014 18:11:14
AEGEN.DLL       :      456608 Bytes  19.12.2014 17:56:24
AEEXP.DLL       :      252776 Bytes  25.11.2014 15:05:07
AEEMU.DLL       :       399264 Bytes  07.08.2014 19:01:12
AEDROID.DLL     :       850800 Bytes  16.12.2014 15:09:46
AECORE.DLL      :       243624 Bytes  16.12.2014 15:09:46
AEBB.DLL        :        60448 Bytes  07.08.2014 19:01:12
AVWINLL.DLL     :     25904 Bytes  18.11.2014 14:22:51
AVPREF.DLL      :     52016 Bytes  18.11.2014 14:22:56
AVREP.DLL       :    220976 Bytes  18.11.2014 14:22:56
AVARKT.DLL      :    227632 Bytes  18.11.2014 14:22:52
AVEVTLOG.DLL    :    184112 Bytes  16.12.2014 08:42:08
SQLITE3.DLL     :    453936 Bytes  18.11.2014 14:23:20
AVSMTP.DLL      :     79096 Bytes  18.11.2014 14:22:58
NETNT.DLL       :     15152 Bytes  18.11.2014 14:23:16
RCIMAGE.DLL     :   4866808 Bytes  18.11.2014 14:22:51
RCTEXT.DLL      :     75568 Bytes  18.11.2014 14:22:51

Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: C:\Program Files (x86)\Avira\AntiVir Desktop\sysscan.avp
Reporting...........................: default
Primary action......................: Interactive
Secondary action....................: Ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:, Q:, 
Process scan........................: on
Extended process scan...............: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Limit recursion depth...............: 20
Smart extensions....................: on
Macrovirus heuristic................: on
File heuristic......................: extended

Start of the scan: Donnerstag, 8. Januar 2015  11:57

Start scanning boot sectors:
Boot sector 'HDD0(C:, Q:)'
    [INFO]      No virus was found!

Starting search for hidden objects.
  [NOTE]      The process is not visible.

The scan of running processes will be started:
Scan process 'svchost.exe' - '62' Module(s) have been scanned
Scan process 'ibmpmsvc.exe' - '16' Module(s) have been scanned
Scan process 'nvvsvc.exe' - '36' Module(s) have been scanned
Scan process 'svchost.exe' - '48' Module(s) have been scanned
Scan process 'svchost.exe' - '89' Module(s) have been scanned
Scan process 'svchost.exe' - '110' Module(s) have been scanned
Scan process 'svchost.exe' - '171' Module(s) have been scanned
Scan process 'svchost.exe' - '94' Module(s) have been scanned
Scan process 'Wacom_TouchService.exe' - '30' Module(s) have been scanned
Scan process 'WUDFHost.exe' - '31' Module(s) have been scanned
Scan process 'svchost.exe' - '90' Module(s) have been scanned
Scan process 'WLANExt.exe' - '83' Module(s) have been scanned
Scan process 'conhost.exe' - '17' Module(s) have been scanned
Scan process 'upeksvr.exe' - '62' Module(s) have been scanned
Scan process 'spoolsv.exe' - '130' Module(s) have been scanned
Scan process 'sched.exe' - '63' Module(s) have been scanned
Scan process 'svchost.exe' - '73' Module(s) have been scanned
Scan process 'avguard.exe' - '143' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '71' Module(s) have been scanned
Scan process 'mDNSResponder.exe' - '36' Module(s) have been scanned
Scan process 'btwdins.exe' - '40' Module(s) have been scanned
Scan process 'SkypeC2CAutoUpdateSvc.exe' - '48' Module(s) have been scanned
Scan process 'SkypeC2CPNRSvc.exe' - '26' Module(s) have been scanned
Scan process 'svchost.exe' - '61' Module(s) have been scanned
Scan process 'EvtEng.exe' - '75' Module(s) have been scanned
Scan process 'GSInGameService.exe' - '32' Module(s) have been scanned
Scan process 'HeciServer.exe' - '28' Module(s) have been scanned
Scan process 'jhi_service.exe' - '45' Module(s) have been scanned
Scan process 'CAMMUTE.exe' - '36' Module(s) have been scanned
Scan process 'TPKNRSVC.exe' - '24' Module(s) have been scanned
Scan process 'vcamsvc.exe' - '72' Module(s) have been scanned
Scan process 'lvvsst.exe' - '35' Module(s) have been scanned
Scan process 'NitroPDFDriverService2x64.exe' - '20' Module(s) have been scanned
Scan process 'RegSrvc.exe' - '39' Module(s) have been scanned
Scan process 'WebSearch.exe' - '113' Module(s) have been scanned
Scan process 'Wacom_Tablet.exe' - '45' Module(s) have been scanned
Scan process 'TomTomHOMEService.exe' - '16' Module(s) have been scanned
Scan process 'WLIDSVC.EXE' - '76' Module(s) have been scanned
Scan process 'ZeroConfigService.exe' - '71' Module(s) have been scanned
Scan process 'Avira.OE.ServiceHost.exe' - '127' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '53' Module(s) have been scanned
Scan process 'unsecapp.exe' - '28' Module(s) have been scanned
Scan process 'avshadow.exe' - '29' Module(s) have been scanned
Scan process 'svchost.exe' - '36' Module(s) have been scanned
Scan process 'svchost.exe' - '73' Module(s) have been scanned
Scan process 'svchost.exe' - '38' Module(s) have been scanned
Scan process 'nvxdsync.exe' - '53' Module(s) have been scanned
Scan process 'nvvsvc.exe' - '68' Module(s) have been scanned
Scan process 'WLIDSvcM.exe' - '18' Module(s) have been scanned
Scan process 'SearchIndexer.exe' - '61' Module(s) have been scanned
Scan process 'svchost.exe' - '35' Module(s) have been scanned
Scan process 'PresentationFontCache.exe' - '39' Module(s) have been scanned
Scan process 'svchost.exe' - '51' Module(s) have been scanned
Scan process 'LMS.exe' - '39' Module(s) have been scanned
Scan process 'VIPAppService.exe' - '31' Module(s) have been scanned
Scan process 'UNS.exe' - '95' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '122' Module(s) have been scanned
Scan process 'taskhost.exe' - '79' Module(s) have been scanned
Scan process 'virtscrl.exe' - '38' Module(s) have been scanned
Scan process 'Wacom_TouchUser.exe' - '37' Module(s) have been scanned
Scan process 'Wacom_TabletUser.exe' - '26' Module(s) have been scanned
Scan process 'Wacom_Tablet.exe' - '57' Module(s) have been scanned
Scan process 'Dwm.exe' - '40' Module(s) have been scanned
Scan process 'igfxext.exe' - '26' Module(s) have been scanned
Scan process 'igfxsrvc.exe' - '31' Module(s) have been scanned
Scan process 'TpShocks.exe' - '25' Module(s) have been scanned
Scan process 'RAVCpl64.exe' - '44' Module(s) have been scanned
Scan process 'RAVBg64.exe' - '44' Module(s) have been scanned
Scan process 'igfxpers.exe' - '50' Module(s) have been scanned
Scan process 'TpKnrres.exe' - '62' Module(s) have been scanned
Scan process 'hkcmd.exe' - '29' Module(s) have been scanned
Scan process 'SynTPEnh.exe' - '49' Module(s) have been scanned
Scan process 'PureSyncTray.exe' - '80' Module(s) have been scanned
Scan process 'PCCompanion.exe' - '146' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '81' Module(s) have been scanned
Scan process 'iCloudServices.exe' - '79' Module(s) have been scanned
Scan process 'TomTomHOMERunner.exe' - '39' Module(s) have been scanned
Scan process 'BTTray.exe' - '70' Module(s) have been scanned
Scan process 'SketchBookSnapshot.exe' - '33' Module(s) have been scanned
Scan process 'PCCompanionInfo.exe' - '55' Module(s) have been scanned
Scan process 'GoogleCrashHandler.exe' - '33' Module(s) have been scanned
Scan process 'GoogleCrashHandler64.exe' - '28' Module(s) have been scanned
Scan process 'avgnt.exe' - '103' Module(s) have been scanned
Scan process 'iusb3mon.exe' - '37' Module(s) have been scanned
Scan process 'RCIMGDIR.exe' - '25' Module(s) have been scanned
Scan process 'rundll32.exe' - '34' Module(s) have been scanned
Scan process 'rundll32.exe' - '77' Module(s) have been scanned
Scan process 'ismagent.exe' - '142' Module(s) have been scanned
Scan process 'pcee4.exe' - '75' Module(s) have been scanned
Scan process 'Creative Cloud.exe' - '161' Module(s) have been scanned
Scan process 'jusched.exe' - '82' Module(s) have been scanned
Scan process 'acrotray.exe' - '38' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '80' Module(s) have been scanned
Scan process 'Avira.OE.Systray.exe' - '136' Module(s) have been scanned
Scan process 'AdobeIPCBroker.exe' - '28' Module(s) have been scanned
Scan process 'iPodService.exe' - '34' Module(s) have been scanned
Scan process 'SCHTASK.exe' - '32' Module(s) have been scanned
Scan process 'SynTPLpr.exe' - '27' Module(s) have been scanned
Scan process 'SYNTPHELPER.EXE' - '19' Module(s) have been scanned
Scan process 'CoreSync.exe' - '100' Module(s) have been scanned
Scan process 'mobsync.exe' - '53' Module(s) have been scanned
Scan process 'RunDll32.exe' - '38' Module(s) have been scanned
Scan process 'CCleaner64.exe' - '96' Module(s) have been scanned
Scan process 'BtStackServer.exe' - '94' Module(s) have been scanned
Scan process 'Bluetooth Headset Helper.exe' - '39' Module(s) have been scanned
Scan process 'Adobe CEF Helper.exe' - '69' Module(s) have been scanned
Scan process 'Adobe CEF Helper.exe' - '69' Module(s) have been scanned
Scan process 'Adobe CEF Helper.exe' - '82' Module(s) have been scanned
Scan process 'armsvc.exe' - '29' Module(s) have been scanned
Scan process 'taskeng.exe' - '32' Module(s) have been scanned
Scan process 'LSCNotify.exe' - '28' Module(s) have been scanned
Scan process 'jbUpdater.exe' - '80' Module(s) have been scanned
Scan process 'mcplaunch.exe' - '31' Module(s) have been scanned
Scan process 'PrivacyIconClient.exe' - '89' Module(s) have been scanned
Scan process 'jucheck.exe' - '77' Module(s) have been scanned
Scan process 'taskeng.exe' - '29' Module(s) have been scanned
Scan process 'rundll32.exe' - '34' Module(s) have been scanned
Scan process 'PWMDBSVC.EXE' - '49' Module(s) have been scanned
Scan process 'ApplePhotoStreams.exe' - '95' Module(s) have been scanned
Scan process 'OSPPSVC.EXE' - '33' Module(s) have been scanned
Scan process 'svchost.exe' - '15' Module(s) have been scanned
Scan process 'explorer.exe' - '221' Module(s) have been scanned
Scan process 'Rhino.exe' - '200' Module(s) have been scanned
Scan process 'avcenter.exe' - '139' Module(s) have been scanned
Scan process 'avscan.exe' - '123' Module(s) have been scanned
Scan process 'vssvc.exe' - '48' Module(s) have been scanned
Scan process 'svchost.exe' - '29' Module(s) have been scanned
Scan process 'chrome.exe' - '117' Module(s) have been scanned
Scan process 'chrome.exe' - '59' Module(s) have been scanned
Scan process 'chrome.exe' - '55' Module(s) have been scanned
Scan process 'chrome.exe' - '55' Module(s) have been scanned
Scan process 'chrome.exe' - '55' Module(s) have been scanned
Scan process 'chrome.exe' - '55' Module(s) have been scanned
Scan process 'chrome.exe' - '55' Module(s) have been scanned
Scan process 'calc.exe' - '31' Module(s) have been scanned
Scan process 'chrome.exe' - '55' Module(s) have been scanned
Scan process 'chrome.exe' - '55' Module(s) have been scanned
Scan process 'chrome.exe' - '55' Module(s) have been scanned
Scan process 'avwsc.exe' - '31' Module(s) have been scanned
Scan process 'smss.exe' - '2' Module(s) have been scanned
Scan process 'csrss.exe' - '18' Module(s) have been scanned
Scan process 'wininit.exe' - '27' Module(s) have been scanned
Scan process 'csrss.exe' - '18' Module(s) have been scanned
Scan process 'services.exe' - '36' Module(s) have been scanned
Scan process 'lsass.exe' - '108' Module(s) have been scanned
Scan process 'lsm.exe' - '16' Module(s) have been scanned
Scan process 'winlogon.exe' - '38' Module(s) have been scanned

Starting to scan executable files (registry):
The registry was scanned ( '2526' files ).

Starting the file scan:

Begin scan in 'C:\' <Windows7_OS>
    [0] Archive type: RSRC
    --> C:\Program Files\ThinkVantage Fingerprint Software\TCWBF_Driver\WinUSBCoInstaller2.dll
        [1] Archive type: RSRC
      --> C:\Program Files\ThinkVantage Fingerprint Software\TCWBF_Driver\WUDFUpdate_01009.dll
          [2] Archive type: RSRC
        --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\CurrentSigned\x86x64\amd64\WUDFUpdate_01007.dll
            [3] Archive type: RSRC
          --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\CurrentSigned\x86x64\i386\WUDFUpdate_01007.dll
              [4] Archive type: RSRC
            --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{0471BDC9-9609-48CF-8972-707EBE20725A}\amd64\winusbcoinstaller2.dll
                [5] Archive type: RSRC
              --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{0471BDC9-9609-48CF-8972-707EBE20725A}\amd64\WUDFUpdate_01009.dll
                  [6] Archive type: RSRC
                --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{0471BDC9-9609-48CF-8972-707EBE20725A}\i386\winusbcoinstaller2.dll
                    [7] Archive type: RSRC
                  --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{0471BDC9-9609-48CF-8972-707EBE20725A}\i386\WUDFUpdate_01009.dll
                      [8] Archive type: RSRC
                    --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{14EC83AA-3584-4C91-A1DD-0D0D98F6421B}\amd64\winusbcoinstaller2.dll
                        [9] Archive type: RSRC
                      --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{14EC83AA-3584-4C91-A1DD-0D0D98F6421B}\amd64\WUDFUpdate_01009.dll
                          [10] Archive type: RSRC
                        --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{14EC83AA-3584-4C91-A1DD-0D0D98F6421B}\i386\winusbcoinstaller2.dll
                            [11] Archive type: RSRC
                          --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{14EC83AA-3584-4C91-A1DD-0D0D98F6421B}\i386\WUDFUpdate_01009.dll
                              [12] Archive type: RSRC
                            --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{2CCFFEA6-8825-42c7-A2A5-94678EFB925F}\amd64\WUDFUpdate_01007.dll
                                [13] Archive type: RSRC
                              --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{2CCFFEA6-8825-42c7-A2A5-94678EFB925F}\i386\WUDFUpdate_01007.dll
                                  [14] Archive type: RSRC
                                --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{2CD1390C-A74E-434A-B652-73D3683B3BEF}\amd64\winusbcoinstaller2.dll
                                    [15] Archive type: RSRC
                                  --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{2CD1390C-A74E-434A-B652-73D3683B3BEF}\amd64\WUDFUpdate_01009.dll
                                      [16] Archive type: RSRC
                                    --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{2CD1390C-A74E-434A-B652-73D3683B3BEF}\i386\winusbcoinstaller2.dll
                                        [17] Archive type: RSRC
                                      --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{2CD1390C-A74E-434A-B652-73D3683B3BEF}\i386\WUDFUpdate_01009.dll
                                          [18] Archive type: RSRC
                                        --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{2FC12C0B-6D73-4F66-8D2D-64E907627969}\amd64\winusbcoinstaller2.dll
                                            [19] Archive type: RSRC
                                          --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{2FC12C0B-6D73-4F66-8D2D-64E907627969}\amd64\WUDFUpdate_01009.dll
                                              [20] Archive type: RSRC
                                            --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{2FC12C0B-6D73-4F66-8D2D-64E907627969}\i386\winusbcoinstaller2.dll
                                                [21] Archive type: RSRC
                                              --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{2FC12C0B-6D73-4F66-8D2D-64E907627969}\i386\WUDFUpdate_01009.dll
                                                  [22] Archive type: RSRC
                                                --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{335082FB-37CD-443F-A25D-8A8CECC4CAF3}\amd64\winusbcoinstaller2.dll
                                                    [23] Archive type: RSRC
                                                  --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{335082FB-37CD-443F-A25D-8A8CECC4CAF3}\amd64\WUDFUpdate_01009.dll
                                                      [24] Archive type: RSRC
                                                    --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{335082FB-37CD-443F-A25D-8A8CECC4CAF3}\i386\winusbcoinstaller2.dll
                                                        [25] Archive type: RSRC
                                                      --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{335082FB-37CD-443F-A25D-8A8CECC4CAF3}\i386\WUDFUpdate_01009.dll
                                                          [26] Archive type: RSRC
                                                        --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{4804CEA3-DDE0-46A0-8430-54DFDE2C5EC0}\amd64\winusbcoinstaller2.dll
                                                            [27] Archive type: RSRC
                                                          --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{4804CEA3-DDE0-46A0-8430-54DFDE2C5EC0}\amd64\WUDFUpdate_01009.dll
                                                              [28] Archive type: RSRC
                                                            --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{4804CEA3-DDE0-46A0-8430-54DFDE2C5EC0}\i386\winusbcoinstaller2.dll
                                                                [29] Archive type: RSRC
                                                              --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{4804CEA3-DDE0-46A0-8430-54DFDE2C5EC0}\i386\WUDFUpdate_01009.dll
                                                                  [30] Archive type: RSRC
                                                                --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{4B11437A-A1BD-4786-A0A2-916CB6DE3153}\amd64\winusbcoinstaller2.dll
                                                                    [31] Archive type: RSRC
                                                                  --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{4B11437A-A1BD-4786-A0A2-916CB6DE3153}\amd64\WUDFUpdate_01009.dll
                                                                      [32] Archive type: RSRC
                                                                    --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{4B11437A-A1BD-4786-A0A2-916CB6DE3153}\i386\winusbcoinstaller2.dll
                                                                        [33] Archive type: RSRC
                                                                      --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{4B11437A-A1BD-4786-A0A2-916CB6DE3153}\i386\WUDFUpdate_01009.dll
                                                                          [34] Archive type: RSRC
                                                                        --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{5A2F2D1B-F67A-4754-88D7-6E6F20C68D85}\amd64\winusbcoinstaller2.dll
                                                                            [35] Archive type: RSRC
                                                                          --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{5A2F2D1B-F67A-4754-88D7-6E6F20C68D85}\amd64\WUDFUpdate_01009.dll
                                                                              [36] Archive type: RSRC
                                                                            --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{5A2F2D1B-F67A-4754-88D7-6E6F20C68D85}\i386\winusbcoinstaller2.dll
                                                                                [37] Archive type: RSRC
                                                                              --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{5A2F2D1B-F67A-4754-88D7-6E6F20C68D85}\i386\WUDFUpdate_01009.dll
                                                                                  [38] Archive type: RSRC
                                                                                --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{696E03A2-E631-4DAC-A8B3-4C19380CE316}\amd64\winusbcoinstaller2.dll
                                                                                    [39] Archive type: RSRC
                                                                                  --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{696E03A2-E631-4DAC-A8B3-4C19380CE316}\amd64\WUDFUpdate_01009.dll
                                                                                      [40] Archive type: RSRC
                                                                                    --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{696E03A2-E631-4DAC-A8B3-4C19380CE316}\i386\winusbcoinstaller2.dll
                                                                                        [41] Archive type: RSRC
                                                                                      --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{696E03A2-E631-4DAC-A8B3-4C19380CE316}\i386\WUDFUpdate_01009.dll
                                                                                          [42] Archive type: RSRC
                                                                                        --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{884EF9E6-97FC-41A1-9CD3-636DAAEA6035}\amd64\winusbcoinstaller2.dll
                                                                                            [43] Archive type: RSRC
                                                                                          --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{884EF9E6-97FC-41A1-9CD3-636DAAEA6035}\amd64\WUDFUpdate_01009.dll
                                                                                              [44] Archive type: RSRC
                                                                                            --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{884EF9E6-97FC-41A1-9CD3-636DAAEA6035}\i386\winusbcoinstaller2.dll
                                                                                                [45] Archive type: RSRC
                                                                                              --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{884EF9E6-97FC-41A1-9CD3-636DAAEA6035}\i386\WUDFUpdate_01009.dll
                                                                                                  [46] Archive type: RSRC
                                                                                                --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{A5609460-97E8-4D84-9F38-23BDA4E869A2}\amd64\winusbcoinstaller2.dll
                                                                                                    [47] Archive type: RSRC
                                                                                                  --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{A5609460-97E8-4D84-9F38-23BDA4E869A2}\amd64\WUDFUpdate_01009.dll
                                                                                                      [48] Archive type: RSRC
                                                                                                    --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{A5609460-97E8-4D84-9F38-23BDA4E869A2}\i386\winusbcoinstaller2.dll
                                                                                                        [49] Archive type: RSRC
                                                                                                      --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{A5609460-97E8-4D84-9F38-23BDA4E869A2}\i386\WUDFUpdate_01009.dll
                                                                                                          [50] Archive type: RSRC
                                                                                                        --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{D89CC0CF-6D2C-47B6-8D3C-A6413F0DC159}\amd64\winusbcoinstaller2.dll
                                                                                                            [51] Archive type: RSRC
                                                                                                          --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{D89CC0CF-6D2C-47B6-8D3C-A6413F0DC159}\amd64\WUDFUpdate_01009.dll
                                                                                                              [52] Archive type: RSRC
                                                                                                            --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{D89CC0CF-6D2C-47B6-8D3C-A6413F0DC159}\i386\winusbcoinstaller2.dll
                                                                                                                [53] Archive type: RSRC
                                                                                                              --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{D89CC0CF-6D2C-47B6-8D3C-A6413F0DC159}\i386\WUDFUpdate_01009.dll
                                                                                                                  [54] Archive type: RSRC
                                                                                                                --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{DCBD67C6-D741-45A9-AC84-E9DD1BC8E48C}\amd64\winusbcoinstaller2.dll
                                                                                                                    [55] Archive type: RSRC
                                                                                                                  --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{DCBD67C6-D741-45A9-AC84-E9DD1BC8E48C}\amd64\WUDFUpdate_01009.dll
                                                                                                                      [56] Archive type: RSRC
                                                                                                                    --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{DCBD67C6-D741-45A9-AC84-E9DD1BC8E48C}\i386\winusbcoinstaller2.dll
                                                                                                                        [57] Archive type: RSRC
                                                                                                                      --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{DCBD67C6-D741-45A9-AC84-E9DD1BC8E48C}\i386\WUDFUpdate_01009.dll
                                                                                                                          [58] Archive type: RSRC
                                                                                                                        --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{E1D21655-9444-4688-943A-4A7B81E772DE}\amd64\winusbcoinstaller2.dll
                                                                                                                            [59] Archive type: RSRC
                                                                                                                          --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{E1D21655-9444-4688-943A-4A7B81E772DE}\amd64\WUDFUpdate_01009.dll
                                                                                                                              [60] Archive type: RSRC
                                                                                                                            --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{E1D21655-9444-4688-943A-4A7B81E772DE}\i386\winusbcoinstaller2.dll
                                                                                                                                [61] Archive type: RSRC
                                                                                                                              --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{E1D21655-9444-4688-943A-4A7B81E772DE}\i386\WUDFUpdate_01009.dll
                                                                                                                                  [62] Archive type: RSRC
                                                                                                                                --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{EE975EE3-08EC-4949-9C38-3A637996A670}\amd64\winusbcoinstaller2.dll
                                                                                                                                    [63] Archive type: RSRC
                                                                                                                                  --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{EE975EE3-08EC-4949-9C38-3A637996A670}\amd64\WUDFUpdate_01009.dll
                                                                                                                                      [64] Archive type: RSRC
                                                                                                                                    --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{EE975EE3-08EC-4949-9C38-3A637996A670}\i386\winusbcoinstaller2.dll
                                                                                                                                        [65] Archive type: RSRC
                                                                                                                                      --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{EE975EE3-08EC-4949-9C38-3A637996A670}\i386\WUDFUpdate_01009.dll
                                                                                                                                          [66] Archive type: RSRC
                                                                                                                                        --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{EF68E455-7AD6-472C-A7CC-D55CC114FDEB}\amd64\winusbcoinstaller2.dll
                                                                                                                                            [67] Archive type: RSRC
                                                                                                                                          --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{EF68E455-7AD6-472C-A7CC-D55CC114FDEB}\amd64\WUDFUpdate_01009.dll
                                                                                                                                              [68] Archive type: RSRC
                                                                                                                                            --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{EF68E455-7AD6-472C-A7CC-D55CC114FDEB}\i386\winusbcoinstaller2.dll
                                                                                                                                                [69] Archive type: RSRC
                                                                                                                                              --> C:\Program Files (x86)\Sony\Sony PC Companion\Drivers\{EF68E455-7AD6-472C-A7CC-D55CC114FDEB}\i386\WUDFUpdate_01009.dll
                                                                                                                                                  [70] Archive type: RSRC
                                                                                                                                                --> C:\Program Files (x86)\Steam\SteamApps\common\Arma 3\_CommonRedist\DotNet\4.5.1\NDP451-KB2872776-x86-x64-AllOS-ENU.exe
                                                                                                                                                    [71] Archive type: 7-Zip SFX (self extracting)
                                                                                                                                                  --> netfx_core_x64.msi
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> netfx_core_x86.msi
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> netfx_extended_x64.msi
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> netfx_extended_x86.msi
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> netfx_Full_GDR_x64.msi
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> netfx_Full_GDR_x86.msi
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> netfx_Full_LDR_x64.msi
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> netfx_Full_LDR_x86.msi
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> netfx_Full_x64.msi
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> netfx_Full_x86.msi
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> header.bmp
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> SplashScreen.bmp
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> watermark.bmp
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> DisplayIcon.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/Print.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/Rotate1.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/Rotate2.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/Rotate3.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/Rotate4.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/Rotate5.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/Rotate6.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/Rotate7.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/Rotate8.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/Save.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/Setup.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/stop.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/SysReqMet.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/SysReqNotMet.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Graphics/warn.ico
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1025/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 2052/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1028/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1029/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1030/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1031/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1032/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1033/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1035/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 3082/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1037/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1038/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1036/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1042/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1041/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1043/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1040/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1046/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1044/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1045/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1053/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1049/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 2070/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1055/LocalizedData.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> ParameterInfo.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Strings.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> UiInfo.xml
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> SetupUi.xsd
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> DHtmlHeader.html
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1030/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1025/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1033/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1035/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1032/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1036/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1040/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1038/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1037/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1041/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1044/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1043/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1046/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1045/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1042/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1053/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1055/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1049/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 3082/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 2070/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 2052/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1029/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1028/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1031/eula.rtf
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Setup.exe
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> SetupUtility.exe
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> SetupEngine.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 2052/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1028/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1041/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1037/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1025/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1033/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1030/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1029/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1035/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1040/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1031/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1036/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1038/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 3082/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1032/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1042/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1044/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1053/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1055/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1045/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1046/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1049/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 2070/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> 1043/SetupResources.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> SetupUi.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> sqmapi.dll
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Windows6.0-KB956250-v6001-x64.msu
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Windows6.0-KB956250-v6001-x86.msu
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Windows6.1-KB958488-v6001-x64.msu
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Windows6.1-KB958488-v6001-x86.msu
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Windows8-RT-KB2872772-x64.msu
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> Windows8-RT-KB2872772-x86.msu
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> netfx_Full_GDR.mzz
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                  --> netfx_Full_LDR.mzz
                                                                                                                                                      [WARNING]   Insufficient memory. The file was not scanned!
C:\Program Files (x86)\Steam\SteamApps\common\Arma 3\_CommonRedist\DotNet\4.5.1\NDP451-KB2872776-x86-x64-AllOS-ENU.exe
  [WARNING]   Insufficient memory. The file was not scanned!
                                                                                                                                                --> C:\Users\***\Downloads\1407933280499.zip
                                                                                                                                                    [71] Archive type: ZIP
                                                                                                                                                  --> Arte.exe
                                                                                                                                                      [DETECTION] Is the TR/Rogue.116736.11 Trojan
                                                                                                                                                      [WARNING]   Infected files in archives cannot be repaired
  [DETECTION] Is the TR/Rogue.116736.11 Trojan
                                                                                                                                                --> C:\Users\***\Downloads\chromeinstall-7u55.exe
                                                                                                                                                    [71] Archive type: Runtime Packed
                                                                                                                                                  --> C:\Users\***\Downloads\chromeinstall-7u67.exe
                                                                                                                                                      [72] Archive type: Runtime Packed
                                                                                                                                                    --> C:\Users\***\Downloads\TV Total Nippelboard - CHIP-Installer.exe
                                                                                                                                                        [73] Archive type: RSRC
                                                                                                                                                      --> C:\Users\***\Downloads\TV Total Nippelboard - CHIP-Installer.exe
                                                                                                                                                          [74] Archive type: Runtime Packed
                                                                                                                                                        --> C:\Users\Philipp\Downloads\chromeinstall-7u7.exe
                                                                                                                                                            [75] Archive type: Runtime Packed
                                                                                                                                                          --> C:\Users\Philipp\Downloads\Sketch.rar
                                                                                                                                                              [76] Archive type: RAR
                                                                                                                                                            --> Sketch.part1.rar
                                                                                                                                                                [77] Archive type: RAR
                                                                                                                                                              --> Sketch\Extensions\sk_en_20090226\inst.exe
                                                                                                                                                                  [DETECTION] Is the TR/Gendal.6185854 Trojan
                                                                                                                                                                  [WARNING]   Infected files in archives cannot be repaired
                                                                                                                                                              --> Sketch\Extensions\SKMarine\SKMarine.v4.0.1.rar
                                                                                                                                                                  [78] Archive type: RAR
                                                                                                                                                                --> setup.exe
                                                                                                                                                                    [DETECTION] Is the TR/Spy.51712.11 Trojan
                                                                                                                                                                    [WARNING]   Infected files in archives cannot be repaired
                                                                                                                                                              --> Sketch\BlockEditor\SK_be.exe
                                                                                                                                                                  [DETECTION] Is the TR/Drop.Delf.itw.7 Trojan
                                                                                                                                                                  [WARNING]   Infected files in archives cannot be repaired
  [DETECTION] Is the TR/Drop.Delf.itw.7 Trojan
Begin scan in 'Q:\' <Lenovo_Recovery>

Beginning disinfection:
  [DETECTION] Is the TR/Drop.Delf.itw.7 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '51b43444.qua'!
  [DETECTION] Is the TR/Rogue.116736.11 Trojan
  [NOTE]      The file was moved to the quarantine directory under the name '48e41bca.qua'!

End of the scan: Freitag, 9. Januar 2015  10:03
Used time: 21:59:46 Hour(s)

The scan has been done completely.

  58663 Scanned directories
 2067087 Files were scanned
      6 Viruses and/or unwanted programs were found
      0 Files were classified as suspicious
      0 Files were deleted
      0 Viruses and unwanted programs were repaired
      2 Files were moved to quarantine
      0 Files were renamed
      0 Files cannot be scanned
 2067081 Files not concerned
  20306 Archives were scanned
      5 Warnings
      3 Notes
 1338260 Objects were scanned with rootkit scan
      4 Hidden objects were found

Alt 09.01.2015, 15:17   #5
/// Winkelfunktion
/// TB-Süch-Tiger™
CPU auf 100% ohne laufende Programme - Standard

CPU auf 100% ohne laufende Programme

Ist das ein gewerblich gentuztes System?

Logfiles bitte immer in CODE-Tags posten

Alt 09.01.2015, 16:36   #6
CPU auf 100% ohne laufende Programme - Standard

CPU auf 100% ohne laufende Programme

Sowohl als auch. Macht das einen Unterschied?

Ich habe gesehen, dass Ihr keine gewerblichen Rechner "behandelt", sorry. Wir sind aber nur 3 Mann und haben keine IT-Spezialisten. Wär's dann trotzdem möglich?

Gibt es absolut keine Möglichkeit Dir eine PN zu schicken. Hab noch eine ganz wichtige Frage.

Alt 09.01.2015, 17:21   #7
/// Winkelfunktion
/// TB-Süch-Tiger™
CPU auf 100% ohne laufende Programme - Standard

CPU auf 100% ohne laufende Programme

Doch da helfen wir auch aber bitte das hier richtig lesen => http://www.trojaner-board.de/108422-...-anfragen.html

Bedenkt jedoch, dass Logfiles viele heikle Informationen enthalten können (Kundendaten, Bankdaten, etc.) sowie das Malware genauso wie unsere Scanner die Möglichkeit besitzt, diese auszuspähen und zu missbrauchen. Hier legen wir euch ein Formatieren und Neuaufsetzen nahe. Hier gilt insbesondere, dass wir im Nachhinein keine Logfiles löschen werden, egal wie sehr "euer Chef das auch will".
Logfiles bitte immer in CODE-Tags posten

Alt 11.01.2015, 09:16   #8
CPU auf 100% ohne laufende Programme - Standard

CPU auf 100% ohne laufende Programme

Hmm... Das hört sich ja an als wäre das ganze eher kontraproduktiv für mich.


