|
Plagegeister aller Art und deren Bekämpfung: Skype Malware/ SpamWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
10.08.2015, 18:34 | #1 |
| Skype Malware/ Spam Hallo! Ich bin neu hier im Forum . Neulich hat mir ein Freund über Skype einen Link geschickt, welchen ich dummerweise angeklickt habe. Seitdem habe ich ebenfalls ungewollt Nachrichten an alle Kontakte in meiner Liste "verschickt" mit demselben Link. Ich habe daraufhin natürlich alle informiert, dass Sie diesen Link bitte NICHT anklicken sollen. Als nächstes habe ich alle ausführbaren Dateien (*.exe) aus meinem Roaming Ordner entfernt und die Applikationen, welche Zugriff auf Skype haben, überprüft. Hier war jedoch kein auffälliger Eintrag vorhanden. Trotzdem habe ich mit Avast Free Antivirus (aktuellste Version) einen kompletten Systemscan machen lassen, was jedoch keinen Erfolg brachte (kein Fund). Damit dachte ich, ich bin das Problem los. Doch gestern Abend ist es wieder passiert! Nun hoffe ich, dass ihr mir helfen könnt! Vielen Dank vorab! Mit freundlichen Grüßen Lyxus |
10.08.2015, 18:57 | #2 |
/// the machine /// TB-Ausbilder | Skype Malware/ Spam hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
10.08.2015, 19:14 | #3 |
| Skype Malware/ Spam Danke für die Antwort.
__________________1.) FRST.txt Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:09-08-2015 durchgeführt von Nils Geiger (Administrator) auf NILS-PC (10-08-2015 20:01:48) Gestartet von C:\Users\Nils Geiger\Downloads Geladene Profile: Nils Geiger (Verfügbare Profile: Nils Geiger) Platform: Windows 10 Pro (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Stardock Software, Inc) C:\Program Files (x86)\Stardock\DeskScapes8\DS8Srv.exe (Stardock Corporation) C:\Program Files (x86)\Stardock\WindowFX\WindowFXSRV.exe (Stardock Corporation) C:\Program Files (x86)\Stardock\WindowBlinds\WBSrv.exe () C:\Program Files (x86)\Stardock\WindowFX\wfx32.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe (Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe (CM & V) C:\Program Files (x86)\DVBViewer\DVBVservice.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe (DTS) C:\Program Files\Realtek\Audio\HDA\DTSAudioService64.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Atheros Communications, Inc.) C:\Program Files (x86)\NETGEAR\WNA1100\jswpbapi.exe (My Digital Life Forums) C:\Windows\KMSServerService\KMS Server Service.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Unified Intents AB) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe (Winstep Software Technologies) C:\Program Files (x86)\Winstep\WsxService.exe () C:\Program Files (x86)\NETGEAR\WNA1100\WifiSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Stardock Software, Inc) C:\Program Files (x86)\Stardock\DeskScapes8\Deskscapes64.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel(R) Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe (Microsoft Corporation) C:\Windows\System32\sihost.exe (Microsoft Corporation) C:\Windows\System32\taskhostw.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (CM&V Hackbart) C:\Program Files (x86)\DVBViewer\DVBVCtrl.exe (Stardock Corporation) C:\Program Files (x86)\Stardock\CursorFX\CursorFX.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe (Samsung Electronics.) C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe (Microsoft Corporation) C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\OneDrive.exe () C:\Program Files\Rainmeter\Rainmeter.exe (Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe (Microsoft Corporation) C:\Windows\System32\fontdrvhost.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.87.58.0\OverwolfHelper.exe () C:\Program Files (x86)\RocketDock\RocketDock.exe (Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.87.58.0\OverwolfHelper64.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\Purplizer.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\0.87.58.0\OverwolfBrowser.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\0.87.58.0\OverwolfBrowser.exe (Microsoft Corporation) C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe (Microsoft Corporation) C:\Windows\System32\ApplicationFrameHost.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.8.3.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6106.42001.0_x64__8wekyb3d8bbwe\HxMail.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6106.42001.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.12101.0_x64__8wekyb3d8bbwe\Video.UI.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.803.16240.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Valve Corporation) D:\Steam\Steam.exe (Valve Corporation) D:\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8492800 2015-06-24] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_DTS] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-24] (Realtek Semiconductor) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [10464536 2014-07-02] (Logitech Inc.) HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454144 2013-01-31] (Saitek) HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2013-01-31] (Saitek) HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472992 2013-03-21] (Adobe Systems Incorporated) HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation) HKLM\...\Run: [THXCfg64] => C:\WINDOWS\system32\RunDLL32.exe C:\WINDOWS\system32\THXCfg64.dll,RunDLLEntry THXCfg64 HKLM\...\Run: [vksts] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe [168552 2011-05-26] (Cambridge Silicon Radio Limited) HKLM\...\Run: [HarmonyUserStartup] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe [37504 2011-05-26] (Cambridge Silicon Radio Limited) HKLM\...\Run: [HarmonyHFPSkypePlugin] => C:\Program Files (x86)\CSR\CSR Harmony Wireless Software Stack\HarmonyHFPSkypePlugin.exe [147080 2011-05-26] (Cambridge Silicon Radio Limited) HKLM\...\Run: [TrayApplication] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe [619136 2011-05-26] (Cambridge Silicon Radio Limited) HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634896 2015-07-24] (NVIDIA Corporation) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170280 2015-07-11] (Apple Inc.) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-05-15] (Apple Inc.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [85600 2013-12-13] (Nullsoft, Inc.) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [402432 2010-07-22] (Adobe Systems Incorporated) HKLM-x32\...\Run: [PowerDVD14Agent] => C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe [795672 2014-04-28] (CyberLink Corp.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-21] (Avast Software s.r.o.) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-06-17] (Apple Inc.) HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [448520 2015-06-24] (DivX, LLC) HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861640 2015-06-27] (DivX, LLC) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) Winlogon\Notify\WB: C:\Program Files (x86)\Stardock\WindowBlinds\fast64.dll [X] Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation) HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [RocketDock] => C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] () HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [CubeDesktopNXT] => C:\Program Files (x86)\CubeDesktop NXT\TiB.CubeDesktop.exe [2548224 2013-04-25] (Thinking Minds Building Bytes) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Steam] => D:\Steam\steam.exe [2899136 2015-08-07] (Valve Corporation) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [HP Officejet 7500 E910 (NET)] => C:\Program Files\HP\HP Officejet 7500 E910\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [DVBV Service Ctrl] => C:\Program Files (x86)\DVBViewer\DVBVCtrl.exe [66560 2013-12-23] (CM&V Hackbart) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Unified Remote v2] => C:\Program Files (x86)\Unified Remote\RemoteServer.exe [333008 2014-06-03] (Unified Intents AB) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Amazon Music] => C:\Users\Nils Geiger\AppData\Local\Amazon Music\Amazon Music Helper.exe [6277952 2014-12-08] () HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53661824 2015-07-28] (Skype Technologies S.A.) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8358680 2015-06-01] (Piriform Ltd) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Unified Remote V3] => C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe [4217552 2015-01-13] (Unified Intents AB) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [CursorFX] => C:\Program Files (x86)\Stardock\CursorFX\CursorFX.exe [624296 2015-03-16] (Stardock Corporation) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Spotify Web Helper] => "C:\Users\Nils Geiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [41200 2015-07-19] (Overwolf LTD) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Dropbox Update] => C:\Users\Nils Geiger\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-07-14] (Dropbox, Inc.) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [OneDrive] => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\OneDrive.exe [402632 2015-07-29] (Microsoft Corporation) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Spotify] => "C:\Users\Nils Geiger\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\RunOnce: [Uninstall C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CineForm Status.lnk [2015-01-11] ShortcutTarget: CineForm Status.lnk -> C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe (GoPro) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GoPro Importer.lnk [2014-11-19] ShortcutTarget: GoPro Importer.lnk -> C:\Program Files (x86)\GoPro\Tools\Importer\GoPro Importer.exe (GoPro) Startup: C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2014-01-17] ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe () Startup: C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rocketdock.bat [2014-11-18] () Startup: C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tintenwarnungen überwachen - HP Officejet 7500 E910 (Netzwerk).lnk [2013-06-02] ShortcutTarget: Tintenwarnungen überwachen - HP Officejet 7500 E910 (Netzwerk).lnk -> C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPStatusBL.dll (Hewlett-Packard Co.) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-05-06] (Avast Software s.r.o.) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-29] (Microsoft Corporation) GroupPolicyScripts: Gruppenrichtline erkannt <======= ACHTUNG CHR HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\SOFTWARE\Policies\Google: Richtlinienbeschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-15] (Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-15] (Oracle Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-15] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-15] (Oracle Corporation) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{d70fde9c-5b01-4030-86c7-4538b1fb3a3c}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{e328989f-9700-4fd0-ad89-817257ef6a5a}: [DhcpNameServer] 192.168.42.129 FireFox: ======== FF ProfilePath: C:\Users\Nils Geiger\AppData\Roaming\Mozilla\Firefox\Profiles\hsbqrsni.default-1432296395773 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-15] () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.) FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-15] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-15] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.2 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2013-03-21] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-15] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-01-06] () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2015-06-29] (DivX, LLC) FF Plugin-x32: @esn/npbattlelog,version=2.3.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll [2013-11-21] (EA Digital Illusions CE AB) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-08-08] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-08-08] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-15] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-15] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 -> C:\Program Files (x86)\Winamp Detect\npwachk.dll [2013-12-13] (Nullsoft, Inc.) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-09-27] (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.2 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2013-03-21] (Adobe Systems) FF Plugin HKU\S-1-5-21-1160257173-3920074079-2544844589-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Nils Geiger\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-09-05] (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-1160257173-3920074079-2544844589-1001: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-09-27] (Pando Networks) FF Plugin HKU\S-1-5-21-1160257173-3920074079-2544844589-1001: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2015-07-07] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2015-07-07] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2015-07-07] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2015-07-07] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2015-07-07] (Apple Inc.) FF Extension: Cookies Manager+ - C:\Users\Nils Geiger\AppData\Roaming\Mozilla\Firefox\Profiles\hsbqrsni.default-1432296395773\Extensions\{bb6bc1bb-f824-4702-90cd-35e2fb24f25d} [2015-07-31] FF Extension: ProxTube - Unblock YouTube - C:\Users\Nils Geiger\AppData\Roaming\Mozilla\Firefox\Profiles\hsbqrsni.default-1432296395773\Extensions\ich@maltegoetz.de.xpi [2015-05-22] FF Extension: Adblock Plus - C:\Users\Nils Geiger\AppData\Roaming\Mozilla\Firefox\Profiles\hsbqrsni.default-1432296395773\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-05-22] Chrome: ======= CHR Profile: C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2012-11-08] CHR Extension: (Google Drive) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-11-08] CHR Extension: (Web Developer) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbameneiokkgbdmiekhjnmfkcnldhhm [2014-07-25] CHR Extension: (YouTube) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-11-08] CHR Extension: (Adblock Plus) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-08-11] CHR Extension: (Google Search) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-11-08] CHR Extension: (EditThisCookie) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2015-07-31] CHR Extension: (AllCast Receiver) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjbljnpdahefgnopeohlaeohgkiidnoe [2014-09-20] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-14] CHR Extension: (Chrome Web Store Payments) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-26] CHR Extension: (Gmail) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-11-08] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AJRouter; C:\Windows\System32\AJRouter.dll [23040 2015-07-10] (Microsoft Corporation) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2012-06-01] () R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2012-06-01] (ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-17] (ASUSTeK Computer Inc.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-05-06] (Avast Software s.r.o.) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [326144 2015-07-10] (Microsoft Corporation) S3 CDPSvc; C:\Windows\System32\CDPSvc.dll [134144 2015-07-10] (Microsoft Corporation) R3 ClipSVC; C:\Windows\System32\ClipSVC.dll [658568 2015-07-29] (Microsoft Corporation) R2 CoreMessagingRegistrar; C:\Windows\system32\coremessaging.dll [808856 2015-07-29] (Microsoft Corporation) R2 CoreMessagingRegistrar; C:\Windows\SysWOW64\coremessaging.dll [510976 2015-07-29] (Microsoft Corporation) S3 DcpSvc; C:\Windows\system32\dcpsvc.dll [196096 2015-07-10] (Microsoft Corporation) R2 DeskScapes8; C:\Program Files (x86)\Stardock\DeskScapes8\ds8srv.exe [75376 2014-03-10] (Stardock Software, Inc) R3 DevQueryBroker; C:\Windows\system32\DevQueryBroker.dll [33280 2015-07-10] (Microsoft Corporation) S3 diagnosticshub.standardcollector.service; C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [27136 2015-07-10] (Microsoft Corporation) S3 DmEnrollmentSvc; C:\Windows\system32\Windows.Internal.Management.dll [267776 2015-07-10] (Microsoft Corporation) S3 DmEnrollmentSvc; C:\Windows\SysWOW64\Windows.Internal.Management.dll [193024 2015-07-10] (Microsoft Corporation) S2 dmwappushservice; C:\Windows\system32\dmwappushsvc.dll [63488 2015-07-10] (Microsoft Corporation) S2 DoSvc; C:\Windows\system32\dosvc.dll [1169408 2015-07-29] (Microsoft Corporation) R3 DsSvc; C:\Windows\System32\DsSvc.dll [143872 2015-07-10] (Microsoft Corporation) R2 DTSAudioService; C:\Program Files\Realtek\Audio\HDA\DTSAudioService64.exe [218768 2015-06-24] (DTS) R2 DVBVRecorder; C:\Program Files (x86)\DVBViewer\DVBVservice.exe [874112 2014-06-01] (CM & V) [Datei ist nicht signiert] S3 embeddedmode; C:\Windows\System32\embeddedmodesvc.dll [87040 2015-07-10] (Microsoft Corporation) S3 EntAppSvc; C:\Windows\system32\EnterpriseAppMgmtSvc.dll [275456 2015-07-10] (Microsoft Corporation) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155216 2015-07-24] (NVIDIA Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) S3 icssvc; C:\Windows\System32\tetheringservice.dll [148992 2015-07-29] (Microsoft Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation) R2 jswpbapi; C:\Program Files (x86)\NETGEAR\WNA1100\jswpbapi.exe [241664 2012-03-26] (Atheros Communications, Inc.) [Datei ist nicht signiert] S3 jswpsapi; C:\Program Files (x86)\NETGEAR\WNA1100\jswpsapi.exe [1102848 2012-03-26] (Atheros Communications, Inc.) [Datei ist nicht signiert] R2 KMSServerService; C:\Windows\KMSServerService\KMS Server Service.exe [211968 2014-11-14] (My Digital Life Forums) [Datei ist nicht signiert] R3 lfsvc; C:\Windows\System32\lfsvc.dll [27136 2015-07-10] (Microsoft Corporation) R3 lfsvc; C:\Windows\SysWOW64\lfsvc.dll [22528 2015-07-10] (Microsoft Corporation) R3 LicenseManager; C:\Windows\system32\LicenseManagerSvc.dll [21504 2015-07-10] (Microsoft Corporation) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-07-30] (IObit) S2 MapsBroker; C:\Windows\System32\moshost.dll [62464 2015-07-10] (Microsoft Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) S3 NetSetupSvc; C:\Windows\System32\NetSetupSvc.dll [186368 2015-07-10] (Microsoft Corporation) S3 NgcCtnrSvc; C:\Windows\System32\NgcCtnrSvc.dll [268800 2015-07-10] (Microsoft Corporation) S3 NgcSvc; C:\Windows\system32\ngcsvc.dll [512000 2015-07-10] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-24] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544592 2015-07-24] (NVIDIA Corporation) S2 OneSyncSvc; C:\Windows\System32\APHostService.dll [296960 2015-07-10] (Microsoft Corporation) R2 OneSyncSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation) R2 OneSyncSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2004488 2015-07-14] (Electronic Arts) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1001200 2015-07-19] (Overwolf LTD) S3 PimIndexMaintenanceSvc; C:\Windows\System32\PimIndexMaintenance.dll [289280 2015-07-10] (Microsoft Corporation) R3 PimIndexMaintenanceSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation) R3 PimIndexMaintenanceSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation) R2 RemoteServerWin; C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe [4217552 2015-01-13] (Unified Intents AB) S3 RetailDemo; C:\Windows\system32\RDXService.dll [988672 2015-07-30] (Microsoft Corporation) S3 SensorDataService; C:\Windows\System32\SensorDataService.exe [1031680 2015-07-29] (Microsoft Corporation) S3 SensorService; C:\Windows\system32\SensorService.dll [229376 2015-07-30] (Microsoft Corporation) S3 SmsRouter; C:\Windows\system32\SmsRouterSvc.dll [583680 2015-07-10] (Microsoft Corporation) R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-12-31] (DEVGURU Co., LTD.) R3 StateRepository; C:\Windows\system32\windows.staterepository.dll [2674176 2015-07-10] (Microsoft Corporation) R3 StateRepository; C:\Windows\SysWOW64\windows.staterepository.dll [2049024 2015-07-10] (Microsoft Corporation) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5495056 2015-06-18] (TeamViewer GmbH) R2 tiledatamodelsvc; C:\Windows\system32\tileobjserver.dll [503808 2015-07-30] (Microsoft Corporation) S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH) S3 UnistoreSvc; C:\Windows\System32\unistore.dll [1203200 2015-07-29] (Microsoft Corporation) S3 UnistoreSvc; C:\Windows\SysWOW64\unistore.dll [925696 2015-07-29] (Microsoft Corporation) R3 UnistoreSvc_Session1; C:\WINDOWS\System32\svchost.exe [39856 2015-07-10] (Microsoft Corporation) R3 UnistoreSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation) S3 UserDataSvc; C:\Windows\System32\userdataservice.dll [1420288 2015-07-30] (Microsoft Corporation) R3 UserDataSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation) R3 UserDataSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation) R2 UserManager; C:\Windows\System32\usermgr.dll [717312 2015-07-10] (Microsoft Corporation) S3 UsoSvc; C:\Windows\system32\usocore.dll [343040 2015-07-29] (Microsoft Corporation) S3 vmicvmsession; C:\Windows\System32\ICSvc.dll [506880 2015-07-10] (Microsoft Corporation) S3 WalletService; C:\Windows\system32\WalletService.dll [504320 2015-07-10] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) R2 WindowBlinds; C:\Program Files (x86)\Stardock\WindowBlinds\wbsrv.exe [89600 2013-05-16] (Stardock Corporation) [Datei ist nicht signiert] R2 WindowFX; C:\Program Files (x86)\Stardock\WindowFX\WindowFXSrv.exe [181904 2014-06-12] (Stardock Corporation) S3 WpnService; C:\Windows\system32\WpnService.dll [49152 2015-07-10] (Microsoft Corporation) R2 WSWNA1100; C:\Program Files (x86)\NETGEAR\WNA1100\WifiSvc.exe [316120 2014-03-19] () R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [627992 2013-12-17] (Wacom Technology, Corp.) S3 XblAuthManager; C:\Windows\System32\XblAuthManager.dll [918016 2015-07-10] (Microsoft Corporation) S3 XblGameSave; C:\Windows\System32\XblGameSave.dll [1149440 2015-07-10] (Microsoft Corporation) S3 XboxNetApiSvc; C:\Windows\system32\XboxNetApiSvc.dll [1019392 2015-07-10] (Microsoft Corporation) R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [18384 2014-03-13] (Intel(R) Corporation) R2 Winstep Xtreme Service; C:\Program Files (x86)\Winstep\WsxService [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2012-09-14] () R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-05-06] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-05-06] (Avast Software s.r.o.) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-05-06] (Avast Software s.r.o.) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-05-06] () S1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-05-06] (Avast Software s.r.o.) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-26] (Avast Software s.r.o.) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-05-06] (Avast Software s.r.o.) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-05-06] () R3 athur; C:\Windows\System32\drivers\athuwbx.sys [2702336 2013-11-20] (Qualcomm Atheros Communications, Inc.) S3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2014-03-16] (Broadcom Corporation.) S3 BtHidBus; C:\Windows\System32\Drivers\BtHidBus.sys [22568 2014-08-12] (IVT Corporation.) S3 buttonconverter; C:\Windows\System32\drivers\buttonconverter.sys [32256 2015-07-10] (Microsoft Corporation) S3 CapImg; C:\Windows\System32\drivers\capimg.sys [116736 2015-07-10] (Microsoft Corporation) S4 cnghwassist; C:\Windows\System32\DRIVERS\cnghwassist.sys [39264 2015-07-10] (Microsoft Corporation) R3 CompositeBus; C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys [39936 2015-07-10] (Microsoft Corporation) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2013-11-20] (Disc Soft Ltd) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3436896 2015-07-10] (QLogic Corporation) S3 fcvsc; C:\Windows\System32\drivers\fcvsc.sys [31232 2015-07-10] (Microsoft Corporation) R1 FileCrypt; C:\Windows\System32\drivers\filecrypt.sys [83968 2015-07-10] (Microsoft Corporation) S3 genericusbfn; C:\Windows\System32\drivers\genericusbfn.sys [20992 2015-07-10] (Microsoft Corporation) R1 GpuEnergyDrv; C:\Windows\System32\drivers\gpuenergydrv.sys [8192 2015-07-10] (Microsoft Corporation) S3 hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2014-02-26] (LogMeIn Inc.) S3 hidinterrupt; C:\Windows\System32\drivers\hidinterrupt.sys [50016 2015-07-10] (Microsoft Corporation) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-02-20] (REALiX(tm)) S3 ibbus; C:\Windows\System32\drivers\ibbus.sys [424800 2015-07-10] (Mellanox) R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [28912 2014-02-18] (Intel Corporation) S3 IoQos; C:\Windows\System32\drivers\ioqos.sys [26624 2015-07-10] (Microsoft Corporation) S3 IvtAudioBusSrv; C:\Windows\System32\Drivers\IvtBtBus.sys [27256 2012-12-24] (IVT Corporation.) S3 IvtPanBusSrv; C:\Windows\System32\Drivers\btnetBus.sys [31480 2012-12-24] (IVT Corporation.) S3 LGSHidFilt; C:\Windows\system32\DRIVERS\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.) S3 LGSUsbFilt; C:\Windows\system32\DRIVERS\LGSUsbFilt.Sys [41752 2013-05-30] (Logitech Inc.) S0 LSI_SAS2i; C:\Windows\System32\drivers\lsi_sas2i.sys [104800 2015-07-10] (LSI Corporation) S0 LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [99168 2015-07-10] (Avago Technologies) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) S0 megasas; C:\Windows\System32\drivers\megasas.sys [59744 2015-07-10] (Avago Technologies) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-07-26] (Intel Corporation) S3 mlx4_bus; C:\Windows\System32\drivers\mlx4_bus.sys [705376 2015-07-10] (Mellanox) R2 MMCSS; C:\Windows\system32\drivers\mmcss.sys [48128 2015-07-10] (Microsoft Corporation) S3 ndfltr; C:\Windows\System32\drivers\ndfltr.sys [76128 2015-07-10] (Mellanox) S3 netvsc; C:\Windows\System32\drivers\netvsc.sys [94720 2015-07-10] (Microsoft Corporation) R2 npf; C:\Windows\System32\drivers\npf.sys [36600 2014-04-18] (Riverbed Technology, Inc.) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-07-24] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47976 2015-07-03] (NVIDIA Corporation) S0 percsas2i; C:\Windows\System32\drivers\percsas2i.sys [58208 2015-07-10] (LSI Corporation) S0 percsas3i; C:\Windows\System32\drivers\percsas3i.sys [58720 2015-07-10] (Avago Technologies) S3 ReFSv1; C:\Windows\System32\Drivers\ReFSv1.sys [934752 2015-07-29] (Microsoft Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek ) R3 SaiK1708; C:\Windows\system32\DRIVERS\SaiK1708.sys [180544 2012-09-20] (Saitek) R3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [25120 2013-02-01] (Saitek) R3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-02-01] (Saitek) R3 SaiU1708; C:\Windows\System32\drivers\SaiU1708.sys [47168 2012-09-20] (Saitek) R1 se64a; C:\Windows\System32\drivers\se64a.sys [14032 2007-05-03] (EnTech Taiwan) R2 storqosflt; C:\Windows\System32\drivers\storqosflt.sys [61952 2015-07-10] (Microsoft Corporation) S0 storufs; C:\Windows\System32\drivers\storufs.sys [40288 2015-07-10] (Microsoft Corporation) R3 swenum; C:\Windows\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys [17760 2015-07-10] (Microsoft Corporation) S3 UcmCx0101; C:\Windows\System32\Drivers\UcmCx.sys [61952 2015-07-10] (Microsoft Corporation) S3 UcmUcsi; C:\Windows\System32\drivers\UcmUcsi.sys [46080 2015-07-29] (Microsoft Corporation) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S3 UDST7000BDA; C:\Windows\System32\Drivers\UDST7000BDA.sys [527632 2009-06-15] (TechniSat Digital S.A.) S3 UDST7000HID; C:\Windows\system32\drivers\UDST7000HID.sys [27664 2009-07-15] (TechniSat Digital S.A.) S3 Ufx01000; C:\Windows\System32\drivers\ufx01000.sys [245088 2015-07-10] (Microsoft Corporation) S3 UfxChipidea; C:\Windows\System32\drivers\UfxChipidea.sys [94048 2015-07-10] (Microsoft Corporation) S3 ufxsynopsys; C:\Windows\System32\drivers\ufxsynopsys.sys [127840 2015-07-10] (Microsoft Corporation) S3 UHSfiltv; C:\Windows\system32\drivers\UHSfiltv.sys [23552 2012-09-12] (Creative Technology Ltd.) S3 UrsChipidea; C:\Windows\System32\drivers\urschipidea.sys [28512 2015-07-10] (Microsoft Corporation) S3 UrsCx01000; C:\Windows\System32\drivers\urscx01000.sys [57696 2015-07-10] (Microsoft Corporation) S3 UrsSynopsys; C:\Windows\System32\drivers\urssynopsys.sys [27488 2015-07-10] (Microsoft Corporation) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2014-07-28] (Apple, Inc.) [Datei ist nicht signiert] R3 uvhid; C:\Windows\System32\drivers\uvhid.sys [25592 2015-01-13] (Windows (R) Win 7 DDK provider) R3 VBAudioVACMME; C:\Windows\system32\DRIVERS\vbaudio_cable64_win7.sys [41192 2015-01-30] (Windows (R) Win 7 DDK provider) S3 vhf; C:\Windows\System32\drivers\vhf.sys [31744 2015-07-10] (Microsoft Corporation) S3 wdiwifi; C:\Windows\System32\DRIVERS\wdiwifi.sys [685056 2015-07-10] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) R0 WindowsTrustedRT; C:\Windows\System32\drivers\WindowsTrustedRT.sys [106520 2015-07-10] (Microsoft Corporation) R0 WindowsTrustedRTProxy; C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys [17944 2015-07-10] (Microsoft Corporation) S3 WinMad; C:\Windows\System32\drivers\winmad.sys [26976 2015-07-10] (Mellanox) S3 WinVerbs; C:\Windows\System32\drivers\winverbs.sys [59232 2015-07-10] (Mellanox) S3 xboxgip; C:\Windows\System32\drivers\xboxgip.sys [222720 2015-07-10] (Microsoft Corporation) S3 xinputhid; C:\Windows\System32\drivers\xinputhid.sys [25600 2015-07-10] (Microsoft Corporation) R3 xusb22; C:\Windows\System32\drivers\xusb22.sys [95744 2015-07-10] (Microsoft Corporation) R2 {C5F942FD-1110-4664-86CE-0C6BDA305235}; C:\Program Files (x86)\CyberLink\PowerDVD14\Common\NavFilter\000.fcl [32456 2014-04-28] (CyberLink Corp.) S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) NETSVC: dosvc -> C:\Windows\system32\dosvc.dll (Microsoft Corporation) NETSVC: DcpSvc -> C:\Windows\system32\dcpsvc.dll (Microsoft Corporation) NETSVC: NetSetupSvc -> C:\Windows\System32\NetSetupSvc.dll (Microsoft Corporation) NETSVC: dmwappushservice -> C:\Windows\system32\dmwappushsvc.dll (Microsoft Corporation) NETSVC: XblGameSave -> C:\Windows\System32\XblGameSave.dll (Microsoft Corporation) NETSVC: XboxNetApiSvc -> C:\Windows\system32\XboxNetApiSvc.dll (Microsoft Corporation) NETSVC: UsoSvc -> C:\Windows\system32\usocore.dll (Microsoft Corporation) NETSVC: UserManager -> C:\Windows\System32\usermgr.dll (Microsoft Corporation) NETSVC: DmEnrollmentSvc -> C:\Windows\system32\Windows.Internal.Management.dll (Microsoft Corporation) NETSVC: XblAuthManager -> C:\Windows\System32\XblAuthManager.dll (Microsoft Corporation) NETSVC: RetailDemo -> C:\Windows\system32\RDXService.dll (Microsoft Corporation) NETSVCx32: NetSetupSvc -> C:\Windows\SysWOW64\NetSetupSvc.dll ==> Keine Datei NETSVCx32: UserManager -> C:\Windows\SysWOW64\usermgr.dll ==> Keine Datei ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-10 19:59 - 2015-08-10 20:01 - 00051540 _____ C:\Users\Nils Geiger\Downloads\FRST.txt 2015-08-10 19:58 - 2015-08-10 19:59 - 02171392 _____ (Farbar) C:\Users\Nils Geiger\Downloads\FRST64.exe 2015-08-10 18:38 - 2015-08-10 18:38 - 00016148 _____ C:\WINDOWS\system32\NILS-PC_Nils Geiger_HistoryPrediction.bin 2015-08-10 17:41 - 2015-08-10 17:41 - 00000000 ___HD C:\OneDriveTemp 2015-08-10 00:11 - 2015-08-10 19:59 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-09 23:38 - 2015-08-09 23:38 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-08-09 23:38 - 2015-08-09 23:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-08-09 23:38 - 2015-08-09 23:38 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-08-09 23:38 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-08-09 23:38 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-08-09 23:38 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-08-09 23:32 - 2015-08-09 23:35 - 00000000 ____D C:\WINDOWS\Minidump 2015-08-09 23:15 - 2015-08-10 20:01 - 00000000 ____D C:\FRST 2015-08-09 23:14 - 2015-08-09 23:14 - 00000168 _____ C:\Users\Nils Geiger\defogger_reenable 2015-08-07 20:38 - 2015-08-08 14:09 - 01865516 _____ C:\Users\Apps\musixmatch-lyrics-cp.spa 2015-08-07 20:38 - 2015-08-08 14:09 - 00449780 _____ C:\Users\snapshot_blob.bin 2015-08-07 20:38 - 2015-08-08 14:09 - 00410937 _____ C:\Users\natives_blob.bin 2015-08-05 23:58 - 2015-07-30 08:24 - 01561872 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2015-08-05 23:58 - 2015-07-30 08:23 - 00527952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2015-08-05 23:58 - 2015-07-30 08:22 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-08-05 23:58 - 2015-07-30 08:21 - 00816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2015-08-05 23:58 - 2015-07-30 08:17 - 01200400 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2015-08-05 23:58 - 2015-07-30 08:17 - 01025840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2015-08-05 23:58 - 2015-07-30 08:17 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2015-08-05 23:58 - 2015-07-30 08:16 - 02147080 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2015-08-05 23:58 - 2015-07-30 08:16 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2015-08-05 23:58 - 2015-07-30 08:15 - 00632168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2015-08-05 23:58 - 2015-07-30 08:14 - 00333168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll 2015-08-05 23:58 - 2015-07-30 08:09 - 01562968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2015-08-05 23:58 - 2015-07-30 08:06 - 01043872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2015-08-05 23:58 - 2015-07-30 08:05 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-08-05 23:58 - 2015-07-30 08:05 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2015-08-05 23:58 - 2015-07-30 08:04 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-08-05 23:58 - 2015-07-30 08:03 - 02116448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2015-08-05 23:58 - 2015-07-30 08:03 - 01983328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2015-08-05 23:58 - 2015-07-30 07:30 - 22319520 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-08-05 23:58 - 2015-07-30 07:24 - 00252768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2015-08-05 23:58 - 2015-07-30 06:42 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2015-08-05 23:58 - 2015-07-30 06:29 - 00705520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2015-08-05 23:58 - 2015-07-30 06:26 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2015-08-05 23:58 - 2015-07-30 06:26 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2015-08-05 23:58 - 2015-07-30 06:25 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2015-08-05 23:58 - 2015-07-30 06:25 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2015-08-05 23:58 - 2015-07-30 06:24 - 01769056 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-08-05 23:58 - 2015-07-30 06:24 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2015-08-05 23:58 - 2015-07-30 06:24 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2015-08-05 23:58 - 2015-07-30 06:24 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll 2015-08-05 23:58 - 2015-07-30 06:22 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2015-08-05 23:58 - 2015-07-30 06:22 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2015-08-05 23:58 - 2015-07-30 06:21 - 00962400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-08-05 23:58 - 2015-07-30 06:17 - 21873664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-08-05 23:58 - 2015-07-30 06:12 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2015-08-05 23:58 - 2015-07-30 06:12 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2015-08-05 23:58 - 2015-07-30 06:09 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe 2015-08-05 23:58 - 2015-07-30 06:08 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2015-08-05 23:58 - 2015-07-30 06:08 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2015-08-05 23:58 - 2015-07-30 06:08 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2015-08-05 23:58 - 2015-07-30 06:07 - 20854776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-08-05 23:58 - 2015-07-30 06:02 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll 2015-08-05 23:58 - 2015-07-30 05:59 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2015-08-05 23:58 - 2015-07-30 05:56 - 16707072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-08-05 23:58 - 2015-07-30 05:54 - 24591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-08-05 23:58 - 2015-07-30 05:54 - 02415616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-08-05 23:58 - 2015-07-30 05:53 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2015-08-05 23:58 - 2015-07-30 05:53 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2015-08-05 23:58 - 2015-07-30 05:53 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll 2015-08-05 23:58 - 2015-07-30 05:52 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-08-05 23:58 - 2015-07-30 05:52 - 00521216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2015-08-05 23:58 - 2015-07-30 05:52 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2015-08-05 23:58 - 2015-07-30 05:49 - 11557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2015-08-05 23:58 - 2015-07-30 05:49 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2015-08-05 23:58 - 2015-07-30 05:49 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-05 23:58 - 2015-07-30 05:46 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2015-08-05 23:58 - 2015-07-30 05:46 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-08-05 23:58 - 2015-07-30 05:46 - 00487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2015-08-05 23:58 - 2015-07-30 05:46 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2015-08-05 23:58 - 2015-07-30 05:45 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2015-08-05 23:58 - 2015-07-30 05:45 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys 2015-08-05 23:58 - 2015-07-30 05:44 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2015-08-05 23:58 - 2015-07-30 05:44 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-08-05 23:58 - 2015-07-30 05:44 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2015-08-05 23:58 - 2015-07-30 05:44 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll 2015-08-05 23:58 - 2015-07-30 05:44 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys 2015-08-05 23:58 - 2015-07-30 05:44 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll 2015-08-05 23:58 - 2015-07-30 05:42 - 00596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2015-08-05 23:58 - 2015-07-30 05:42 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2015-08-05 23:58 - 2015-07-30 05:41 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2015-08-05 23:58 - 2015-07-30 05:41 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2015-08-05 23:58 - 2015-07-30 05:41 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll 2015-08-05 23:58 - 2015-07-30 05:40 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-08-05 23:58 - 2015-07-30 05:40 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2015-08-05 23:58 - 2015-07-30 05:38 - 01420288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2015-08-05 23:58 - 2015-07-30 05:38 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll 2015-08-05 23:58 - 2015-07-30 05:34 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2015-08-05 23:58 - 2015-07-30 05:32 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-08-05 23:58 - 2015-07-30 05:32 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2015-08-05 23:58 - 2015-07-30 05:29 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2015-08-05 23:58 - 2015-07-30 05:23 - 13024256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-08-05 23:58 - 2015-07-30 05:15 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2015-08-05 23:58 - 2015-07-30 05:14 - 19333632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-08-05 23:58 - 2015-07-30 05:13 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2015-08-05 23:58 - 2015-07-30 05:13 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll 2015-08-05 23:58 - 2015-07-30 05:12 - 01914880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-08-05 23:58 - 2015-07-30 05:11 - 18803712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-08-05 23:58 - 2015-07-30 05:10 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2015-08-05 23:58 - 2015-07-30 05:10 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-05 23:58 - 2015-07-30 05:07 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll 2015-08-05 23:58 - 2015-07-30 05:06 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2015-08-05 23:58 - 2015-07-30 05:06 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2015-08-05 23:58 - 2015-07-30 05:06 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll 2015-08-05 23:58 - 2015-07-30 05:06 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoiceActivationManager.dll 2015-08-05 23:58 - 2015-07-30 05:04 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2015-08-05 23:58 - 2015-07-30 05:04 - 00495616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2015-08-05 23:58 - 2015-07-30 05:04 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2015-08-05 23:58 - 2015-07-30 04:59 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2015-08-05 23:58 - 2015-07-30 04:58 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll 2015-08-05 23:58 - 2015-07-30 04:58 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2015-08-01 19:14 - 2015-08-01 19:14 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef 2015-08-01 19:14 - 2015-07-03 06:28 - 00065896 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2015-08-01 14:19 - 2015-08-01 14:19 - 00021232 _____ (Thesycon GmbH) C:\WINDOWS\system32\Drivers\dpclat_driver.sys 2015-07-30 20:34 - 2015-07-30 20:34 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-07-30 18:53 - 2015-07-30 18:53 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2015-07-30 18:03 - 2015-07-30 18:03 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\PeerDistRepub 2015-07-29 16:50 - 2015-07-29 16:09 - 00000000 ___DC C:\WINDOWS\Panther 2015-07-29 16:49 - 2015-07-29 16:49 - 00000000 ____D C:\Windows.old 2015-07-29 16:48 - 2015-07-29 16:48 - 14241792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 12502016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 11260928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 07051264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 06488312 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 06305792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04791296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04760576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04611584 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04047288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 03780096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03620736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03589632 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03362816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02878000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02741760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02446336 _____ C:\WINDOWS\system32\InputService.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02224128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02150696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01890304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01773056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01680896 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01611264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01601024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01593856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01591856 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01533496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01521664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01411072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01365072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2015-07-29 16:48 - 2015-07-29 16:48 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01274880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01201664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01177600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01169408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 01161728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01135312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01101792 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01085776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01067520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2015-07-29 16:48 - 2015-07-29 16:48 - 00991584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2015-07-29 16:48 - 2015-07-29 16:48 - 00966424 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00934752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00916800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00808856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00783112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00695136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00658568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00643616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00630160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00607008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00606392 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00601344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00594472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efscore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00565088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00539216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00521568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00516960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-07-29 16:48 - 2015-07-29 16:48 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00505344 _____ C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00425824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00412672 _____ C:\WINDOWS\system32\diagtrack_win.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00403968 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00365056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00335248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00325984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00290312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systemcpl.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00243760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00242264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00208736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00097128 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00061280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00032768 _____ C:\WINDOWS\system32\LicenseManagerApi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe 2015-07-29 16:47 - 2015-07-29 16:47 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2015-07-29 16:46 - 2015-07-29 16:46 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-07-29 16:46 - 2015-07-29 16:46 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-07-29 16:46 - 2015-07-29 16:46 - 00000000 ____D C:\Program Files\MSBuild 2015-07-29 16:46 - 2015-07-29 16:46 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-07-29 16:46 - 2015-07-29 16:00 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-07-29 16:45 - 2015-06-17 19:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-07-29 16:45 - 2015-06-17 19:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-07-29 16:45 - 2015-06-17 19:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-07-29 16:45 - 2015-05-29 22:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-07-29 16:45 - 2015-05-29 22:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-07-29 16:45 - 2015-05-29 22:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-07-29 16:35 - 2015-07-29 16:35 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\NetworkTiles 2015-07-29 16:32 - 2015-07-29 16:32 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\MicrosoftEdge 2015-07-29 16:30 - 2015-07-29 16:30 - 00002421 _____ C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-07-29 16:30 - 2015-07-29 16:30 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Publishers 2015-07-29 16:29 - 2015-07-29 16:29 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-07-29 16:08 - 2015-08-10 17:31 - 01793546 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-07-29 16:07 - 2015-07-30 21:29 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Comms 2015-07-29 16:07 - 2015-07-29 16:07 - 00000020 ___SH C:\Users\Nils Geiger\ntuser.ini 2015-07-29 16:07 - 2015-07-29 16:07 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\TileDataLayer 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-07-29 16:01 - 2015-07-10 12:59 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Roaming\Mozilla 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Local\Overwolf 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Local\Mozilla 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Mozilla 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Local\Overwolf 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Local\Mozilla 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2015-07-29 15:59 - 2015-07-29 15:59 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-07-29 15:57 - 2015-07-29 15:57 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2015-07-29 15:56 - 2015-08-10 01:04 - 00000000 ____D C:\Users\Nils Geiger 2015-07-29 15:56 - 2015-07-29 16:07 - 00000000 ___RD C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Vorlagen 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Startmenü 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Netzwerkumgebung 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Lokale Einstellungen 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Eigene Dateien 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Druckumgebung 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\AppData\Local\Verlauf 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\AppData\Local\Anwendungsdaten 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Anwendungsdaten 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 ___RD C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 ___RD C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-07-29 15:56 - 2015-07-10 13:04 - 00000000 __RSD C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-07-29 15:56 - 2015-07-10 13:04 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-07-29 15:55 - 2015-07-29 15:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SaiK1708_01009.Wdf 2015-07-29 15:55 - 2015-07-29 15:55 - 00000000 ____H C:\ProgramData\DP45977C.lfl 2015-07-29 15:55 - 2015-07-29 15:55 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2015-07-29 15:55 - 2015-07-29 15:55 - 00000000 ____D C:\WINDOWS\system32\DAX2 2015-07-29 15:55 - 2015-07-29 15:55 - 00000000 ____D C:\Program Files\Realtek 2015-07-29 15:52 - 2015-08-01 19:14 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-07-29 15:52 - 2015-07-29 15:57 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-07-29 15:52 - 2015-07-29 15:57 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-07-29 15:52 - 2015-07-29 15:52 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-07-29 15:52 - 2015-07-29 15:52 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2015-07-29 15:51 - 2015-08-10 17:24 - 00018034 _____ C:\WINDOWS\PFRO.log 2015-07-29 15:51 - 2015-07-29 15:52 - 00035627 _____ C:\WINDOWS\system32\NetSetupMig.log 2015-07-29 15:40 - 2015-07-29 16:04 - 00007060 _____ C:\WINDOWS\comsetup.log 2015-07-29 15:29 - 2015-07-29 15:40 - 00000000 ___HD C:\$Windows.~BT 2015-07-29 15:09 - 2015-07-29 15:09 - 00000000 ___HD C:\$Windows.~WS 2015-07-23 04:02 - 2015-07-29 16:13 - 00031976 _____ C:\WINDOWS\system32\nvinfo.pb 2015-07-23 04:02 - 2015-07-23 04:02 - 42730312 _____ C:\WINDOWS\system32\nvcompiler.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 37749064 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 30518928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 22973584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 18376584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 16160440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 16011680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 15754192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 14511608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 13274904 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 12973680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 11843384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 11142984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2015-07-23 04:02 - 2015-07-23 04:02 - 03351864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 02963208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 02360976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 02164040 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 01898128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6435362.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 01557648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6435362.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 01165192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 01061008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 01053000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00991152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00983368 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00976528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00176904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00155280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00150832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00128512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll 2015-07-18 00:18 - 2015-07-18 00:18 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\CEF 2015-07-16 16:42 - 2015-07-29 15:42 - 01731674 _____ C:\WINDOWS\WindowsUpdate (1).log 2015-07-16 15:40 - 2015-07-16 15:41 - 00001822 ____H C:\WINDOWS\EPMBatch.ept 2015-07-16 15:36 - 2015-07-16 15:36 - 00000000 ____D C:\Program Files (x86)\EaseUS 2015-07-16 14:40 - 2015-07-16 14:40 - 00000041 _____ C:\script.txt 2015-07-16 14:40 - 2015-07-16 14:40 - 00000031 _____ C:\WINDOWS\script.txt 2015-07-16 14:36 - 2015-07-29 15:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Samsung 2015-07-16 14:36 - 2015-07-29 15:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NeoSmart Technologies 2015-07-16 14:32 - 2015-07-29 16:04 - 00003394 _____ C:\WINDOWS\System32\Tasks\SamsungMagician 2015-07-16 14:30 - 2015-07-29 16:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician 2015-07-15 16:55 - 2015-07-15 16:55 - 00000000 ____D C:\Filme 2015-07-15 16:01 - 2015-07-15 15:59 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2015-07-15 16:00 - 2015-07-15 16:00 - 00000000 _____ C:\WINDOWS\SysWOW64\REN9DA6.tmp 2015-07-14 19:22 - 2015-08-10 19:32 - 00001264 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001UA.job 2015-07-14 19:22 - 2015-08-09 13:32 - 00001212 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001Core.job 2015-07-14 19:22 - 2015-07-29 16:04 - 00004332 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001UA 2015-07-14 19:22 - 2015-07-29 16:04 - 00003952 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001Core 2015-07-14 19:21 - 2015-07-14 19:21 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Dropbox 2015-07-14 19:21 - 2015-07-14 19:21 - 00000000 ____D C:\ProgramData\Dropbox 2015-07-14 17:31 - 2015-07-29 16:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2015-07-14 17:30 - 2015-07-14 17:30 - 00000000 ____D C:\Program Files\iPod 2015-07-11 20:05 - 2015-08-02 17:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MouseServer 2015-07-11 20:05 - 2015-08-02 17:29 - 00000000 ____D C:\Program Files (x86)\MouseServer |
10.08.2015, 19:14 | #4 |
| Skype Malware/ Spam FRST.txt Teil 2 Code:
ATTFilter ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-10 19:59 - 2015-04-12 16:56 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-10 19:54 - 2013-03-10 11:44 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Skype 2015-08-10 19:33 - 2015-07-10 14:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log 2015-08-10 19:26 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sru 2015-08-10 19:17 - 2015-05-23 22:27 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Purplizer 2015-08-10 19:08 - 2014-04-07 17:12 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-08-10 19:04 - 2012-11-08 21:38 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-08-10 17:42 - 2013-03-10 11:44 - 00000000 ____D C:\ProgramData\Skype 2015-08-10 17:41 - 2014-05-12 01:45 - 00000000 __RDO C:\Users\Nils Geiger\OneDrive 2015-08-10 17:41 - 2013-08-04 13:14 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Overwolf 2015-08-10 17:41 - 2012-11-08 21:38 - 00001130 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-08-10 17:31 - 2015-07-10 18:34 - 00772138 _____ C:\WINDOWS\system32\perfh007.dat 2015-08-10 17:31 - 2015-07-10 18:34 - 00154500 _____ C:\WINDOWS\system32\perfc007.dat 2015-08-10 17:24 - 2015-07-10 14:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-08-10 17:24 - 2015-07-10 14:20 - 00064525 _____ C:\WINDOWS\setupact.log 2015-08-10 17:24 - 2015-01-24 16:35 - 00000000 ____D C:\ProgramData\Unified Remote 2015-08-10 01:04 - 2015-07-10 11:05 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2015-08-10 00:54 - 2012-11-08 21:52 - 00004168 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{7F8DEDA0-40A5-4C00-8FBE-6DE7C21F0E76} 2015-08-09 23:35 - 2012-11-04 11:55 - 00283368 ____N C:\WINDOWS\Minidump\080915-9093-01.dmp 2015-08-09 23:32 - 2012-11-04 11:55 - 00278248 ____N C:\WINDOWS\Minidump\080915-9031-01.dmp 2015-08-09 23:23 - 2013-04-04 21:18 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Rainmeter 2015-08-09 23:20 - 2013-11-22 16:10 - 00000000 ____D C:\AdwCleaner 2015-08-09 23:19 - 2014-01-27 23:12 - 00000000 ____D C:\Program Files (x86)\Nmap 2015-08-09 22:50 - 2015-04-12 14:16 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Spotify 2015-08-09 22:50 - 2012-11-19 19:55 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\.minecraft 2015-08-09 12:04 - 2015-04-12 14:16 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Spotify 2015-08-09 11:08 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-08-09 02:00 - 2014-08-17 02:00 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Adobe 2015-08-08 21:27 - 2014-05-31 23:25 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Kodi 2015-08-08 17:01 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\rescache 2015-08-08 14:09 - 2015-06-04 22:08 - 00602180 _____ C:\Users\Apps\local-files-desktop.spa 2015-08-08 14:09 - 2015-06-04 22:08 - 00158566 _____ C:\Users\Apps\hub.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 45066808 _____ C:\Users\libcef.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 10207504 _____ C:\Users\icudtl.dat 2015-08-08 14:09 - 2015-04-23 19:15 - 07675448 _____ (Spotify Ltd) C:\Users\Spotify.exe 2015-08-08 14:09 - 2015-04-23 19:15 - 04487782 _____ C:\Users\devtools_resources.pak 2015-08-08 14:09 - 2015-04-23 19:15 - 03457592 _____ (Microsoft Corporation) C:\Users\d3dcompiler_47.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 02332541 _____ C:\Users\Apps\musixmatch-lyrics.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 02184260 _____ C:\Users\cef.pak 2015-08-08 14:09 - 2015-04-23 19:15 - 02157552 _____ C:\Users\Apps\glue-resources.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 02106424 _____ (Microsoft Corporation) C:\Users\d3dcompiler_43.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 02018360 _____ (Spotify Ltd) C:\Users\SpotifyWebHelper.exe 2015-08-08 14:09 - 2015-04-23 19:15 - 01649208 _____ C:\Users\libGLESv2.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 00967736 _____ (The Chromium Authors) C:\Users\ffmpegsumo.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 00900089 _____ C:\Users\Apps\zlink.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00838712 _____ (Spotify Ltd) C:\Users\SpotifyCrashService.exe 2015-08-08 14:09 - 2015-04-23 19:15 - 00721136 _____ C:\Users\Apps\browse.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00622967 _____ C:\Users\cef_200_percent.pak 2015-08-08 14:09 - 2015-04-23 19:15 - 00606828 _____ C:\Users\Apps\playlist-desktop.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00542847 _____ C:\Users\Apps\notification-center.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00530001 _____ C:\Users\Apps\settings.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00528578 _____ C:\Users\Apps\collection.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00512594 _____ C:\Users\Apps\genre.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00508698 _____ C:\Users\Apps\collection-artist.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00504671 _____ C:\Users\Apps\discover.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00471783 _____ C:\Users\Apps\messages.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00468951 _____ C:\Users\cef_100_percent.pak 2015-08-08 14:09 - 2015-04-23 19:15 - 00466223 _____ C:\Users\Apps\collection-album.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00451113 _____ C:\Users\Apps\social-feed.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00444041 _____ C:\Users\Apps\article.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00416475 _____ C:\Users\Apps\album.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00395528 _____ C:\Users\Apps\collection-songs.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00392161 _____ C:\Users\Apps\zlogin.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00383262 _____ C:\Users\Apps\social-chart.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00368227 _____ C:\Users\Apps\charts.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00366817 _____ C:\Users\Apps\buddy-list.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00363479 _____ C:\Users\Apps\artist.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00304572 _____ C:\Users\Apps\radio.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00278727 _____ C:\Users\Apps\folder.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00274437 _____ C:\Users\Apps\share.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00257997 _____ C:\Users\Apps\zlink-queue.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00244918 _____ C:\Users\Apps\profile.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00236396 _____ C:\Users\Apps\chart.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00216723 _____ C:\Users\Apps\search.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00216045 _____ C:\Users\Apps\findfriends.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00196416 _____ C:\Users\Apps\suggest.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00158229 _____ C:\Users\Apps\follow.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00098360 _____ (Spotify Ltd) C:\Users\SpotifyLauncher.exe 2015-08-08 14:09 - 2015-04-23 19:15 - 00080952 _____ C:\Users\libEGL.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 00080587 _____ C:\Users\Apps\about.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00073272 _____ C:\Users\wow_helper.exe 2015-08-08 14:09 - 2015-04-23 19:15 - 00072701 _____ C:\Users\Apps\error.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00053462 _____ C:\Users\Apps\ad.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00050934 _____ C:\Users\Apps\licenses.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00014086 _____ C:\Users\locales\en-US.pak 2015-08-08 14:09 - 2015-04-23 19:15 - 00008009 _____ C:\Users\locales\el.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00007791 _____ C:\Users\locales\ru.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00007076 _____ C:\Users\locales\ja.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006969 _____ C:\Users\locales\hu.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006950 _____ C:\Users\locales\fr-CA.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006899 _____ C:\Users\locales\fr.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006876 _____ C:\Users\locales\fi.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006875 _____ C:\Users\locales\pl.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006808 _____ C:\Users\locales\es-419.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006793 _____ C:\Users\locales\nl.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006756 _____ C:\Users\locales\de.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006740 _____ C:\Users\locales\zsm.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006739 _____ C:\Users\locales\it.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006731 _____ C:\Users\locales\es.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006726 _____ C:\Users\locales\tr.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006719 _____ C:\Users\locales\zh-Hant.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006717 _____ C:\Users\locales\pt-BR.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006672 _____ C:\Users\locales\sv.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006540 _____ C:\Users\locales\arb.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006469 _____ C:\Users\locales\en.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00000020 _____ C:\Users\inst_ver.dat 2015-08-08 14:09 - 2015-04-23 19:15 - 00000000 ____D C:\Users\locales 2015-08-07 00:33 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-08-07 00:33 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Provisioning 2015-08-07 00:01 - 2013-05-22 16:55 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\TS3Client 2015-08-07 00:00 - 2013-05-22 16:54 - 00000000 ____D C:\Program Files (x86)\TeamSpeak3 2015-08-06 19:06 - 2015-07-10 12:55 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-08-05 23:42 - 2014-12-19 01:48 - 00000000 ____D C:\ProgramData\ProductData 2015-08-05 21:21 - 2013-01-16 20:18 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\vlc 2015-08-02 21:08 - 2013-09-24 21:58 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\JDownloader v2.0 2015-08-01 19:36 - 2014-07-30 19:56 - 00000000 ____D C:\ProgramData\TEMP 2015-08-01 19:14 - 2014-09-19 22:11 - 00000000 ____D C:\Program Files (x86)\TriDef 3D 2015-08-01 12:52 - 2015-04-13 19:04 - 00004280 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update 2015-07-30 20:34 - 2012-11-27 00:35 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Dropbox 2015-07-30 15:15 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\appcompat 2015-07-29 18:43 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\restore 2015-07-29 16:50 - 2015-07-10 13:04 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2015-07-29 16:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe 2015-07-29 16:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-07-29 16:49 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2015-07-29 16:49 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Dism 2015-07-29 16:48 - 2015-07-10 13:06 - 00792568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-07-29 16:48 - 2015-07-10 13:06 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-07-29 16:46 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-07-29 16:46 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-07-29 16:46 - 2015-07-10 13:00 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\telnet.exe 2015-07-29 16:46 - 2015-07-10 12:59 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe 2015-07-29 16:46 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe 2015-07-29 16:46 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe 2015-07-29 16:46 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll 2015-07-29 16:40 - 2012-11-15 16:29 - 00000000 ____D C:\Program Files (x86)\Stardock 2015-07-29 16:37 - 2012-11-15 16:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock 2015-07-29 16:34 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2015-07-29 16:32 - 2012-11-04 12:05 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Packages 2015-07-29 16:28 - 2015-07-10 14:20 - 05085856 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-07-29 16:13 - 2015-06-01 16:21 - 00000000 ____D C:\ProgramData\boost_interprocess 2015-07-29 16:13 - 2015-02-15 00:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-07-29 16:08 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-07-29 16:08 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PrintDialog 2015-07-29 16:08 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\MiracastView 2015-07-29 16:08 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-07-29 16:05 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows NT 2015-07-29 16:05 - 2015-07-10 11:05 - 00000000 __RHD C:\Users\Default 2015-07-29 16:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Registration 2015-07-29 16:04 - 2015-05-23 22:27 - 00003838 _____ C:\WINDOWS\System32\Tasks\Overwolf Updater Task 2015-07-29 16:04 - 2015-04-28 17:40 - 00003810 _____ C:\WINDOWS\System32\Tasks\klcp_update 2015-07-29 16:04 - 2015-02-20 12:57 - 00003036 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Nils Geiger) 2015-07-29 16:04 - 2015-01-16 17:41 - 00002492 _____ C:\WINDOWS\System32\Tasks\ASC8_SkipUac_Nils Geiger 2015-07-29 16:04 - 2014-12-19 01:32 - 00003324 _____ C:\WINDOWS\System32\Tasks\{43F28C09-FCE3-4572-8078-87947A3B2D83} 2015-07-29 16:04 - 2014-11-15 13:34 - 00009528 _____ C:\WINDOWS\diagwrn.xml 2015-07-29 16:04 - 2014-11-15 13:34 - 00009528 _____ C:\WINDOWS\diagerr.xml 2015-07-29 16:04 - 2014-08-30 11:28 - 00003228 _____ C:\WINDOWS\System32\Tasks\{376E1EBF-3B8C-4617-8E47-99B792FF36A8} 2015-07-29 16:04 - 2014-07-10 15:06 - 00003622 _____ C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-nils.geiger@gmx.de 2015-07-29 16:04 - 2014-05-13 18:13 - 00003330 _____ C:\WINDOWS\System32\Tasks\{B1625993-C297-4BEE-9F70-D7FFAEA62E61} 2015-07-29 16:04 - 2014-04-07 17:12 - 00003882 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-07-29 16:04 - 2014-01-28 17:23 - 00004138 _____ C:\WINDOWS\System32\Tasks\Stardock Central-S-1-5-21-1160257173-3920074079-2544844589-1001 2015-07-29 16:04 - 2013-10-25 14:11 - 00023056 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-07-29 16:04 - 2013-09-28 12:35 - 00003404 _____ C:\WINDOWS\System32\Tasks\{5FC0CC8F-D358-4A9B-9EB0-0C6B6F3C0463} 2015-07-29 16:04 - 2013-06-02 14:57 - 00003744 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP Officejet 7500 E910 2015-07-29 16:04 - 2013-04-09 22:26 - 00003328 _____ C:\WINDOWS\System32\Tasks\{48418533-D70D-4612-9EB6-288FEF954A58} 2015-07-29 16:04 - 2013-04-04 22:26 - 00003272 _____ C:\WINDOWS\System32\Tasks\{DEF54CF1-0EE4-4CEB-862C-35CB85BD4D89} 2015-07-29 16:04 - 2013-01-14 10:53 - 00002894 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2015-07-29 16:04 - 2012-12-10 18:45 - 00003450 _____ C:\WINDOWS\System32\Tasks\{D5569CD3-60E5-481E-84E5-314172D0E027} 2015-07-29 16:04 - 2012-11-08 21:38 - 00004216 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-07-29 16:04 - 2012-11-08 21:38 - 00003980 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-07-29 16:04 - 2012-11-06 20:56 - 00004046 _____ C:\WINDOWS\System32\Tasks\KMS Activation for Office 2015-07-29 16:04 - 2012-11-04 14:42 - 00003670 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask 2015-07-29 16:04 - 2012-11-04 12:11 - 00003708 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1160257173-3920074079-2544844589-1001 2015-07-29 16:03 - 2015-07-10 13:04 - 00000000 __RHD C:\Users\Public\Libraries 2015-07-29 16:01 - 2014-11-17 21:09 - 00000000 ____D C:\ProgramData\NVIDIA 2015-07-29 16:00 - 2015-07-10 18:44 - 00000000 ____D C:\WINDOWS\ShellNew 2015-07-29 16:00 - 2015-07-10 13:05 - 00004362 _____ C:\WINDOWS\DtcInstall.log 2015-07-29 16:00 - 2015-07-10 11:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-07-29 16:00 - 2015-07-07 17:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2015-07-29 16:00 - 2015-06-15 22:51 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi 2015-07-29 16:00 - 2015-06-15 21:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters 2015-07-29 16:00 - 2015-04-28 17:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2015-07-29 16:00 - 2015-04-24 14:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2015-07-29 16:00 - 2015-04-21 15:37 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 2015-07-29 16:00 - 2015-04-13 19:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2015-07-29 16:00 - 2015-04-12 16:46 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker 2015-07-29 16:00 - 2015-03-13 18:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Meeting 2007 2015-07-29 16:00 - 2015-02-24 21:09 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sauerbraten 2015-07-29 16:00 - 2015-01-24 17:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-07-29 16:00 - 2015-01-24 16:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unified Remote 3 2015-07-29 16:00 - 2015-01-20 16:41 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ninja Lite 2015-07-29 16:00 - 2015-01-20 16:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ninja Lite 2015-07-29 16:00 - 2015-01-03 23:15 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft AppLocale 2015-07-29 16:00 - 2014-12-26 19:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Universal Media Server 2015-07-29 16:00 - 2014-12-26 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AviSynth 2015-07-29 16:00 - 2014-12-25 19:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDFab 9 2015-07-29 16:00 - 2014-12-21 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 14 2015-07-29 16:00 - 2014-11-17 23:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MonInfo 2015-07-29 16:00 - 2014-11-15 22:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock 2015-07-29 16:00 - 2014-10-04 15:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-07-29 16:00 - 2014-09-18 12:57 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Plane9 2015-07-29 16:00 - 2014-09-05 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Die Sims 4 2015-07-29 16:00 - 2014-07-17 22:30 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unified Remote 2015-07-29 16:00 - 2014-07-13 17:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn 2015-07-29 16:00 - 2014-07-10 14:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe 2015-07-29 16:00 - 2014-07-10 14:15 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wacom 2015-07-29 16:00 - 2014-07-08 17:12 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Erkennungs-Plug-in 2015-07-29 16:00 - 2014-07-08 17:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp 2015-07-29 16:00 - 2014-06-15 22:25 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2015-07-29 16:00 - 2014-06-08 17:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MediaMonkey 2015-07-29 16:00 - 2014-05-27 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Control 2015-07-29 16:00 - 2014-05-25 17:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2015-07-29 16:00 - 2014-05-14 14:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Extreme Tuning Utility 2015-07-29 16:00 - 2014-05-13 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolphin 2015-07-29 16:00 - 2014-03-18 17:11 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server 2015-07-29 16:00 - 2014-03-18 17:11 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X 2015-07-29 16:00 - 2014-02-27 21:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhiteCap 2015-07-29 16:00 - 2014-02-05 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vocaluxe 2015-07-29 16:00 - 2014-01-27 20:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NoLimits Track Packager 2015-07-29 16:00 - 2014-01-22 21:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPER © - by eRightSoft 2015-07-29 16:00 - 2014-01-11 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NoLimits 2 2015-07-29 16:00 - 2013-11-25 00:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LockHunter 2015-07-29 16:00 - 2013-11-22 18:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2015-07-29 16:00 - 2013-11-03 00:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2015-07-29 16:00 - 2013-11-03 00:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-07-29 16:00 - 2013-10-20 13:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-07-29 16:00 - 2013-09-29 14:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer 2015-07-29 16:00 - 2013-09-24 21:59 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader 2015-07-29 16:00 - 2013-09-19 19:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2015-07-29 16:00 - 2013-09-18 16:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX 2015-07-29 16:00 - 2013-08-22 15:36 - 00000000 ____D C:\Users\Default.migrated 2015-07-29 16:00 - 2013-08-18 15:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tunngle 2015-07-29 16:00 - 2013-08-17 15:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WordToPDF 2015-07-29 16:00 - 2013-07-18 11:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CubeDesktop NXT 2015-07-29 16:00 - 2013-06-22 22:25 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2015-07-29 16:00 - 2013-06-09 18:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Façade 2015-07-29 16:00 - 2013-06-02 14:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2015-07-29 16:00 - 2013-05-30 13:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Duplicate Music Files Finder 2015-07-29 16:00 - 2013-05-29 23:28 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Similarity 2015-07-29 16:00 - 2013-05-26 00:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraStar Deluxe 2015-07-29 16:00 - 2013-05-22 16:55 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2015-07-29 16:00 - 2013-05-01 13:22 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks 2015-07-29 16:00 - 2013-05-01 13:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks 2015-07-29 16:00 - 2013-04-23 19:42 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-07-29 16:00 - 2013-04-23 19:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-07-29 16:00 - 2013-04-18 20:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\xbox-360-controller-custom (x64) 2015-07-29 16:00 - 2013-04-16 16:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories 2015-07-29 16:00 - 2013-04-15 18:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XBCD 2015-07-29 16:00 - 2013-04-09 19:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winstep 2015-07-29 16:00 - 2013-04-09 18:23 - 00000000 ____D C:\WINDOWS\de 2015-07-29 16:00 - 2013-03-06 19:48 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse 2015-07-29 16:00 - 2013-02-28 22:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Technology 2015-07-29 16:00 - 2013-02-28 22:15 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WBFS Manager 2015-07-29 16:00 - 2013-02-18 23:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-07-29 16:00 - 2013-01-17 17:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVBViewer 2015-07-29 16:00 - 2013-01-14 10:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2015-07-29 16:00 - 2013-01-02 21:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKVToolNix 2015-07-29 16:00 - 2012-12-12 00:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetOn 2 2015-07-29 16:00 - 2012-12-11 23:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetOn 2015-07-29 16:00 - 2012-12-05 13:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-07-29 16:00 - 2012-11-28 20:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2015-07-29 16:00 - 2012-11-27 00:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blue Ripple Sound 2015-07-29 16:00 - 2012-11-27 00:18 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-07-29 16:00 - 2012-11-15 16:25 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stardock 2015-07-29 16:00 - 2012-11-08 21:40 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-07-29 16:00 - 2012-11-06 20:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2015-07-29 16:00 - 2012-11-06 20:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-07-29 16:00 - 2012-11-05 01:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3dtv.at Stereoscopic Player 2015-07-29 15:58 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\zh-HK 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\uk-UA 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\tr-TR 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\th-TH 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sr-Latn-RS 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sl-SI 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sk-SK 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\ro-RO 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\hr-HR 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\he-IL 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\et-EE 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\bg-BG 2015-07-29 15:57 - 2015-07-10 15:19 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\ar-SA 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\zh-HK 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\uk-UA 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\tr-TR 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\th-TH 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\spool 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sl-SI 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sk-SK 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\ro-RO 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\Recovery 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\lv-LV 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\lt-LT 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\InputMethod 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\IME 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\hr-HR 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\he-IL 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\et-EE 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\en-GB 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\bg-BG 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\ar-SA 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\InputMethod 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Help 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Common Files\System 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-07-29 15:57 - 2015-06-05 15:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REVisionEffects 2015-07-29 15:57 - 2015-04-13 19:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2015-07-29 15:57 - 2015-03-13 14:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bullzip 2015-07-29 15:57 - 2014-11-19 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GoPro 2015-07-29 15:57 - 2014-09-17 00:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iWASEL VPN Service 2015-07-29 15:57 - 2014-09-15 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xiph.Org 2015-07-29 15:57 - 2014-07-18 20:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\X-Mirage 2015-07-29 15:57 - 2014-05-11 01:58 - 00000000 ___RD C:\Users\Public\Recorded TV 2015-07-29 15:57 - 2014-03-16 12:09 - 00000000 ____D C:\Program Files\WIDCOMM 2015-07-29 15:57 - 2014-02-27 22:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Animated Wallpaper 2015-07-29 15:57 - 2013-11-21 19:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue 2015-07-29 15:57 - 2013-11-19 21:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony 2015-07-29 15:57 - 2013-11-11 18:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CineForm 2015-07-29 15:57 - 2013-09-27 18:19 - 00000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin 2015-07-29 15:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared 2015-07-29 15:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared 2015-07-29 15:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer 2015-07-29 15:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ADFS 2015-07-29 15:57 - 2013-05-29 22:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2015-07-29 15:57 - 2013-03-27 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Screaming Bee 2015-07-29 15:57 - 2013-03-10 16:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES 2015-07-29 15:57 - 2012-12-19 15:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft 2015-07-29 15:57 - 2012-11-20 19:05 - 00000000 ____D C:\WINDOWS\system32\appmgmt 2015-07-29 15:57 - 2012-11-04 12:05 - 00000000 ____D C:\ProgramData\PRICache 2015-07-29 15:57 - 2012-07-26 10:12 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2015-07-29 15:56 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-07-29 15:56 - 2015-05-23 22:27 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf 2015-07-29 15:56 - 2013-10-25 16:38 - 00000000 __SHD C:\Recovery 2015-07-29 15:56 - 2013-07-31 17:08 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2015-07-29 15:56 - 2013-01-16 19:33 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MainConcept 2015-07-29 15:42 - 2013-10-24 23:54 - 00008192 __RSH C:\BOOTSECT.BAK 2015-07-29 15:40 - 2013-11-10 20:15 - 00090216 _____ C:\WINDOWS\system32\lvcoinst.log 2015-07-28 09:26 - 2015-04-23 19:15 - 00000000 _____ C:\Users\Nils.redir 2015-07-27 15:14 - 2013-12-09 01:35 - 00000000 ____D C:\Program Files (x86)\Overwolf 2015-07-24 06:21 - 2015-02-15 00:15 - 01756608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll 2015-07-24 06:21 - 2015-02-15 00:15 - 01710568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2015-07-24 06:21 - 2015-02-15 00:15 - 01423304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2015-07-24 06:21 - 2015-02-15 00:15 - 01316000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll 2015-07-23 04:02 - 2014-11-17 21:09 - 00112784 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2015-07-23 04:02 - 2014-11-17 21:09 - 00105288 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2015-07-22 16:52 - 2015-04-15 18:28 - 00000080 _____ C:\Users\Nils Geiger\AppData\Local剜捯獫慴慇敭屳呇⁁屖湥楴汴浥湥湩潦 2015-07-16 16:05 - 2013-01-14 10:53 - 00000000 ____D C:\Program Files\CCleaner 2015-07-16 15:55 - 2015-04-13 19:36 - 00000000 ____D C:\Program Files\Rockstar Games 2015-07-16 14:36 - 2013-05-29 22:49 - 00000000 ____D C:\Program Files (x86)\Samsung 2015-07-16 14:36 - 2013-04-03 18:13 - 00000000 ____D C:\Program Files (x86)\NeoSmart Technologies 2015-07-16 14:36 - 2012-11-04 12:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-07-16 14:29 - 2013-05-29 22:49 - 00000000 ____D C:\ProgramData\Samsung 2015-07-15 16:15 - 2013-10-20 13:05 - 00000000 ____D C:\ProgramData\Oracle 2015-07-15 16:01 - 2014-09-12 22:26 - 00000000 ____D C:\Program Files (x86)\Java 2015-07-15 16:01 - 2013-01-12 01:29 - 00000000 ____D C:\Program Files\Java 2015-07-15 16:00 - 2013-10-20 13:05 - 00110688 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2015-07-15 15:49 - 2015-07-07 17:46 - 00000000 ____D C:\Program Files\iTunes 2015-07-15 15:47 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData 2015-07-15 15:44 - 2012-11-06 20:45 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-07-15 15:41 - 2013-07-19 03:00 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-07-14 21:59 - 2013-08-18 13:59 - 00000000 ____D C:\ProgramData\Origin 2015-07-14 21:52 - 2012-12-05 14:55 - 00000000 ____D C:\ProgramData\Package Cache 2015-07-14 21:39 - 2013-08-18 14:01 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Origin 2015-07-14 21:27 - 2013-08-18 13:59 - 00000000 ____D C:\Program Files (x86)\Origin 2015-07-14 19:25 - 2012-11-27 00:48 - 00000000 ___RD C:\Users\Nils Geiger\Dropbox 2015-07-14 17:30 - 2013-02-21 17:36 - 00000000 ____D C:\Program Files (x86)\iTunes 2015-07-14 17:30 - 2012-11-04 18:57 - 00000000 ____D C:\Program Files\Common Files\Apple 2015-07-12 00:39 - 2015-07-05 22:05 - 02157552 _____ C:\Users\Apps\glue-resources-pre-vis-2.spa ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2014-07-11 00:56 - 2014-10-26 22:30 - 0000132 _____ () C:\Users\Nils Geiger\AppData\Roaming\Adobe BMP Format CS5 Prefs 2013-11-20 19:58 - 2013-11-20 19:58 - 0000132 _____ () C:\Users\Nils Geiger\AppData\Roaming\Adobe BMP-Format CC - Voreinstellungen 2014-11-13 22:56 - 2014-11-13 22:57 - 0000132 _____ () C:\Users\Nils Geiger\AppData\Roaming\Adobe PNG Format CS5 Prefs 2014-01-27 20:31 - 2014-01-27 20:31 - 0000132 _____ () C:\Users\Nils Geiger\AppData\Roaming\Adobe PNG-Format CC - Voreinstellungen 2013-05-30 17:11 - 2014-03-29 11:03 - 0038464 _____ () C:\Users\Nils Geiger\AppData\Roaming\Kommagetrennte Werte (DOS).ADR 2013-05-29 23:05 - 2013-05-30 17:33 - 0038484 _____ () C:\Users\Nils Geiger\AppData\Roaming\Kommagetrennte Werte (Windows).ADR 2013-10-07 18:27 - 2015-07-20 20:05 - 0002147 _____ () C:\Users\Nils Geiger\AppData\Roaming\SpeedRunnersLog.txt 2014-12-18 22:51 - 2014-12-18 22:51 - 0002916 _____ () C:\Users\Nils Geiger\AppData\Roaming\TargetInvocationLog.txt 2014-12-29 20:29 - 2014-12-29 20:29 - 0000038 ___SH () C:\Users\Nils Geiger\AppData\Local\69ff07055291669bb2b218.72821112 2015-05-26 16:16 - 2015-05-26 16:16 - 0008288 ____H () C:\Users\Nils Geiger\AppData\Local\Plugin.dat 2014-05-17 17:11 - 2014-05-17 17:11 - 0001465 _____ () C:\Users\Nils Geiger\AppData\Local\recently-used.xbel 2013-01-24 13:10 - 2013-01-24 13:10 - 0007605 _____ () C:\Users\Nils Geiger\AppData\Local\Resmon.ResmonCfg 2014-12-19 15:20 - 2014-12-19 15:20 - 0000700 ___SH () C:\Users\Nils Geiger\AppData\Local\systemFL7.dat 2011-06-05 23:51 - 2011-06-19 13:51 - 0059194 _____ () C:\Users\Nils Geiger\AppData\Local\TempGUIPic.jpg 2015-07-05 02:21 - 2015-07-05 02:21 - 0000000 _____ () C:\Users\Nils Geiger\AppData\Local\{F9619F0C-F9F1-42A0-8E1E-7A56CBEFD0CD} 2013-11-03 00:25 - 2013-11-03 13:45 - 0000040 ___SH () C:\ProgramData\.zreglib 2013-06-02 14:57 - 2013-06-02 14:57 - 0000057 _____ () C:\ProgramData\Ament.ini 2015-07-29 15:55 - 2015-07-29 15:55 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Nils Geiger\AppData\Local\Temp\proxy_vole7770595751646505260.dll C:\Users\Nils Geiger\AppData\Local\Temp\Quarantine.exe C:\Users\Nils Geiger\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-08-08 16:20 ==================== Ende von log ============================ |
10.08.2015, 19:17 | #5 |
| Skype Malware/ Spam 2. Addition.txt Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:09-08-2015 durchgeführt von Nils Geiger (2015-08-10 20:02:17) Gestartet von C:\Users\Nils Geiger\Downloads Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1160257173-3920074079-2544844589-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1160257173-3920074079-2544844589-503 - Limited - Disabled) Gast (S-1-5-21-1160257173-3920074079-2544844589-501 - Limited - Disabled) Nils Geiger (S-1-5-21-1160257173-3920074079-2544844589-1001 - Administrator - Enabled) => C:\Users\Nils Geiger ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) 7-Zip 9.22beta (HKLM-x32\...\7-Zip) (Version: - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 18.0.0.144 - Adobe Systems Incorporated) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated) Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated) Adobe Photoshop CC (HKLM-x32\...\{2D99B50E-431D-4AA8-85C1-172A6F8BCF09}) (Version: 14.0 - Adobe Systems Incorporated) Adobe Photoshop CS5 (HKLM-x32\...\{15FEDA5F-141C-4127-8D7E-B962D1742728}) (Version: 12.0 - Adobe Systems Incorporated) Adobe Premiere Pro CC (HKLM-x32\...\{505FF1AC-E7F5-4462-BBA7-08900E7E9EEF}) (Version: 7.2.2 - Adobe Systems Incorporated) Amazon Music (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Amazon Amazon Music) (Version: 3.7.1.698 - Amazon Services LLC) AMD Catalyst Install Manager (HKLM\...\{9AB0D5B6-4779-8C4F-CA91-A1FEDB56D7EC}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.) Animated Wallpaper - Soft Shines 3D (HKLM\...\Soft Shines 3D_is1) (Version: 3.64 - PUSH Entertainment) ANNO 2070 (HKLM-x32\...\{B48E264C-C8CD-4617-B0BE-46E977BAD694}) (Version: 1.0.0.0 - Ubisoft) Apple Application Support (32-Bit) (HKLM-x32\...\{7FE25256-B7C1-480D-B736-10A67A833AEA}) (Version: 3.2 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{B255D495-4734-4E9B-B4F5-96702FD4A7B9}) (Version: 3.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{5D61F006-168C-4B8B-B7FD-F113C10AE0E4}) (Version: 8.2.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Audiosurf 2 (HKLM-x32\...\Steam App 235800) (Version: - Dylan Fitterer) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software) AviSynth (HKLM-x32\...\AviSynth) (Version: 2.6.0 MT - ) BCC 8 OFX 64Bit (HKLM\...\{24D38864-527F-4688-B831-A1A4CC60CD54}) (Version: 8.0.1 - Boris FX, Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Bullzip PDF Printer 10.10.0.2307 (HKLM\...\Bullzip PDF Printer_is1) (Version: 10.10.0.2307 - Bullzip) CCleaner (HKLM\...\CCleaner) (Version: 5.07 - Piriform) CodeBlocks (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\CodeBlocks) (Version: 12.11 - The Code::Blocks Team) CSR Harmony Wireless Software Stack (HKLM\...\{CAF754D7-AD99-409B-A594-C63DB5A51BC2}) (Version: 1.0.15.0 - Cambridge Silicon Radio Limited.) CubeDesktop NXT (HKLM-x32\...\{A02A3737-CE39-4C13-92A7-D71337010EC4}) (Version: 2.13.0425 - Thinking Minds Building Bytes) Curse Client - Test (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\c5c968b829b4973b) (Version: 5.1.1.653 - Curse) CyberLink PowerDVD 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.4028.58 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) Device Simulation Framework 1.0.1 (HKLM\...\{C7966AB3-A8D9-48D5-B7DF-922674C40098}) (Version: 1.0.1 - Microsoft) Die Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.) DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.7.0.77 - DivX, LLC) DmC Devil May Cry (HKLM-x32\...\Steam App 220440) (Version: - Ninja Theory) Dolphin (HKLM-x32\...\Dolphin) (Version: 4.0.2 - Dolphin Development Team) Dropbox (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Dropbox) (Version: 3.8.5 - Dropbox, Inc.) DSF-KitSetup (x32 Version: 1.1.6001.0 - Microsoft Corporation) Hidden Duplicate Music Files Finder 1.5.5 (HKLM-x32\...\Duplicate Music Files Finder_is1) (Version: - LC IBros Solutions S.R.L.) Dust: An Elysian Tail (HKLM-x32\...\Steam App 236090) (Version: - Humble Hearts LLC) DVBViewer Pro (HKLM-x32\...\DVBViewer Pro_is1) (Version: 5.3.0 - CM&V) DVBViewer Recording Service (HKLM-x32\...\DVBViewer Recording Service_is1) (Version: 1.29.0 - CM&V) DVDFab 9.1.6.6 (04/09/2014) (HKLM-x32\...\DVDFab 9_is1) (Version: - Fengtao Software Inc.) EasyBCD 2.2 (HKLM-x32\...\EasyBCD) (Version: 2.2 - NeoSmart Technologies) EVGA Precision X 4.2.1 (HKLM-x32\...\PrecisionX) (Version: 4.2.1 - EVGA Corporation) Façade (HKLM-x32\...\{24E34264-D483-477C-A9A0-4E53F69834CF}) (Version: 1.1.2 - Procedural Arts) FaceRig (HKLM-x32\...\Steam App 274920) (Version: - Holotech Studios) Fences (Version: 1.0 - Stardock Corporation) Hidden Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Free YouTube to MP3 Converter version 3.12.35.514 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.35.514 - DVDVideoSoft Ltd.) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Garry) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden GoPro Studio 2.5.3 (HKLM-x32\...\GoPro Studio) (Version: 2.5.3 - GoPro, Inc.) GoProCineFormDecoders 1.2.0 (HKLM-x32\...\GoProCineFormDecoders) (Version: 1.2.0 - CineForm, Inc & GoPro, Inc.) Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) Guns of Icarus Dev App (HKLM-x32\...\Steam App 229680) (Version: - ) Guns of Icarus Online (HKLM-x32\...\Steam App 209080) (Version: - Muse Games) HF pAppLoc version 1.0 (HKLM-x32\...\{9143B17E-BBDE-4EA7-A4E3-20D384D9C8A5}_is1) (Version: 1.0 - Inquisitor) HP ePrint (HKLM-x32\...\{2794875B-6CCF-48B8-84A5-5B10DB98BEE6}) (Version: 12.0.13351.1658 - Hewlett-Packard) HP Officejet 7500 E910 - Grundlegende Software für das Gerät (HKLM\...\{6B3982D8-8E88-4A42-B1C4-66B4E9B34CFB}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Officejet 7500 E910 Hilfe (HKLM-x32\...\{24DC9885-E759-4BD2-8A20-D4AC509A7FDE}) (Version: 140.0.93.93 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.9572 - HP) HP Update (HKLM-x32\...\{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}) (Version: 5.003.003.001 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) Intel Extreme Tuning Utility (HKLM-x32\...\{185df49c-e692-4c00-a9ff-827bc6f4c8bf}) (Version: 4.4.0.4 - Intel Corporation) Intel Extreme Tuning Utility (x32 Version: 4.4.0.4 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation) iTunes (HKLM\...\{6CF1A7E2-8001-4870-9F18-3C6CDD6FE9E3}) (Version: 12.2.1.16 - Apple Inc.) Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) K-Lite Codec Pack 11.2.8 Standard (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.2.8 - ) Kodi (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Kodi) (Version: - XBMC-Foundation) LAV Filters 0.65 (HKLM-x32\...\lavfilters_is1) (Version: 0.65 - Hendrik Leppkes) Life is Feudal: Your Own (HKLM-x32\...\Steam App 290080) (Version: - Bitbox Ltd.) LockHunter 3.1, 32/64 bit (HKLM\...\LockHunter_is1) (Version: - Crystal Rich Ltd) Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) Logitech Gaming Software 8.53 (HKLM\...\Logitech Gaming Software) (Version: 8.53.186 - Logitech Inc.) LYNE (HKLM-x32\...\Steam App 266010) (Version: - Thomas Bowker) MainConcept DTV Decoder Pro (HKLM-x32\...\{793FCE60-DE5E-4977-A942-A7B69A45B17D}) (Version: 1.5.0.2 - MainConcept GmbH) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Media Control 6.0.15 (HKLM-x32\...\Media Control_is1) (Version: - Damien Bain-Thouverez) MediaMonkey 4.1 (HKLM-x32\...\MediaMonkey_is1) (Version: 4.1 - Ventis Media Inc.) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Live Meeting 2007 (HKLM-x32\...\{0309B99E-C7EA-414C-AC53-A78061277595}) (Version: 8.0.6362.223 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visio Viewer 2010 (HKLM-x32\...\{95140000-0052-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{887868A2-D6DE-3255-AA92-AA0B5A59B874}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{92a68ee6-690a-4c60-b5ac-4292593cb68c}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{4fd02573-5f12-4ae4-8027-c63f8e1115af}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version: - ) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{B3B750C0-8C22-439D-B7CE-67F3ED99CC2B}) (Version: 1.20.146.0 - Microsoft) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) MKVToolNix 7.4.0 (64bit) (HKLM-x32\...\MKVToolNix) (Version: 7.4.0 - Moritz Bunkus) Monaco (HKLM-x32\...\Steam App 113020) (Version: - Pocketwatch Games) Monitor Asset Manager (HKLM-x32\...\{AD0BBBFD-C5E9-4214-A863-E83313D67C0C}_is1) (Version: - EnTech Taiwan) MorphVOX Pro (HKLM-x32\...\{62DAB694-358E-4C6F-82BF-26DA64B297A6}) (Version: 4.3.2 - Screaming Bee) MouseServer Version 1.6.0.0 (HKLM-x32\...\{E13018F5-FFC7-4729-9C1B-1A85807D03E6}_is1) (Version: 1.6.0.0 - Necta Co.) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 39.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 39.0.3 (x86 de)) (Version: 39.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 37.0.1 - Mozilla) My Game Long Name (HKLM\...\UDK-33924326-e738-4af3-9f5f-01ab32f9b138) (Version: - Epic Games, Inc.) MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.5 - F.J. Wechselberger) NARUTO SHIPPUDEN: Ultimate Ninja STORM 3 Full Burst (HKLM-x32\...\Steam App 234670) (Version: - CyberConnect 2) NARUTO SHIPPUDEN: Ultimate Ninja STORM Revolution (HKLM-x32\...\Steam App 272510) (Version: - CyberConnect2 Co., Ltd.) Need for Speed(TM) Hot Pursuit (HKLM-x32\...\{83A606F5-BF6F-42ED-9F33-B9F74297CDED}) (Version: 1.0.0.0 - Electronic Arts) NETGEAR WNA1100 wireless USB 2.0 driver (HKLM-x32\...\{A2AE9709-283B-4B48-AA34-729C070A62FB}) (Version: 1.2.0.2 - NETGEAR) NewBlue 3D Explosions for Windows (HKLM-x32\...\NewBlue 3D Explosions for Windows) (Version: 3.0 - NewBlue) NewBlue 3D Transformations for Windows (HKLM-x32\...\NewBlue 3D Transformations for Windows) (Version: 3.0 - NewBlue) NewBlue Art Blends for Windows (HKLM-x32\...\NewBlue Art Blends for Windows) (Version: 3.0 - NewBlue) NewBlue Art Effects for Windows (HKLM-x32\...\NewBlue Art Effects for Windows) (Version: 3.0 - NewBlue) NewBlue ColorFast for Windows (HKLM-x32\...\NewBlue ColorFast for Windows) (Version: 3.0 - NewBlue) NewBlue Film Effects for Windows (HKLM-x32\...\NewBlue Film Effects for Windows) (Version: 3.0 - NewBlue) NewBlue Flash Remover Pro for Windows (HKLM-x32\...\NewBlue Flash Remover Pro for Windows) (Version: 3.0 - NewBlue) NewBlue Light Blends for Windows (HKLM-x32\...\NewBlue Light Blends for Windows) (Version: 3.0 - NewBlue) NewBlue Light Effects for Windows (HKLM-x32\...\NewBlue Light Effects for Windows) (Version: 3.0 - NewBlue) NewBlue Motion Blends for Windows (HKLM-x32\...\NewBlue Motion Blends for Windows) (Version: 2.4 - NewBlue) NewBlue Motion Effects for Windows (HKLM-x32\...\NewBlue Motion Effects for Windows) (Version: 3.0 - NewBlue) NewBlue Paint Blends for Windows (HKLM-x32\...\NewBlue Paint Blends for Windows) (Version: 3.0 - NewBlue) NewBlue Paint Effects for Windows (HKLM-x32\...\NewBlue Paint Effects for Windows) (Version: 3.0 - NewBlue) NewBlue plug-ins bundle patch build 121206 (HKLM\...\NewBlue plug-ins bundle patch build 121206_is1) (Version: 3.0.0.0 - NewBlue Inc.) NewBlue Stabilizer for Windows (HKLM-x32\...\NewBlue Stabilizer for Windows) (Version: 1.4 - NewBlue) NewBlue Titler Pro 2.0 for Windows (HKLM-x32\...\NewBlue Titler Pro 2.0 for Windows) (Version: 1.0 - NewBlue) NewBlue Titler Pro for Windows (HKLM-x32\...\NewBlue Titler Pro for Windows) (Version: 1.0 - NewBlue) NewBlue Video Essentials for Windows (HKLM-x32\...\NewBlue Video Essentials for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials II for Windows (HKLM-x32\...\NewBlue Video Essentials II for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials III for Windows (HKLM-x32\...\NewBlue Video Essentials III for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials IV for Windows (HKLM-x32\...\NewBlue Video Essentials IV for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials V for Windows (HKLM-x32\...\NewBlue Video Essentials V for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials VI for Windows (HKLM-x32\...\NewBlue Video Essentials VI for Windows) (Version: 3.0 - NewBlue) Nexus 12.2 (HKLM-x32\...\Winstep Xtreme_is1) (Version: - ) Ninja Lite 7.5.3 (HKLM-x32\...\{{4E8FFAB1-88FA-4A8C-B611-08C2C9DD69F3}_is1) (Version: 4 - Global IP Telecommunications Ltd.) NoLimits 2 (remove only) (HKLM\...\NoLimits 2) (Version: - ) NoLimits 2 Roller Coaster Simulation (HKLM-x32\...\Steam App 301320) (Version: - Ole Lange) NoLimits Track Packager 1.5 (HKLM-x32\...\NoLimits Track Packager) (Version: 1.5 - Gravimetric Studios) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.3 - ) NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA 3DTV Play Activation Utility (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DTV) (Version: 347.58 - NVIDIA Corporation) NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation) NVIDIA Grafiktreiber 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) Ori and the Blind Forest (HKLM-x32\...\Steam App 261570) (Version: - Moon Studios GmbH) Origin (HKLM-x32\...\Origin) (Version: 9.3.1.4482 - Electronic Arts, Inc.) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.87.58.0 - Overwolf Ltd.) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.) PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.1.1 - pdfforge) piaip AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS) Plane9 v2.1.0.5 (HKLM-x32\...\Plane9) (Version: v2.1.0.5 - Joakim Dahl / Planestate Software) PlayReady PC Runtime amd64 (HKLM\...\{2E0C1D31-8FEC-411E-97FB-6E56BD429A98}) (Version: 1.3.10 - Microsoft Corporation) QuickTime 7 (HKLM-x32\...\{627FFC10-CE0A-497F-BA2B-208CAC638010}) (Version: 7.77.80.95 - Apple Inc.) Rainmeter (HKLM-x32\...\Rainmeter) (Version: 3.2.1 r2386 - ) Rapture3D 2.5.1 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound) RE:Vision Effects Twixtor AE (HKLM\...\Twixtor AE 6.1.0_is1) (Version: 6.1.0 - Team V.R) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.) RivaTuner Statistics Server 5.4.1 (HKLM-x32\...\RTSS) (Version: 5.4.1 - Unwinder) Rocket League (HKLM-x32\...\Steam App 252950) (Version: - Psyonix) <==== ACHTUNG RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.1 - Rockstar Games) Samsung Data Migration (HKLM-x32\...\{D4DE3DB4-7734-47E5-8D92-B80146311406}) (Version: 2.7 - Samsung) Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.15024.8 - Samsung Electronics Co., Ltd.) Samsung Kies3 (x32 Version: 3.2.15024.8 - Samsung Electronics Co., Ltd.) Hidden Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.5.1 - Samsung Electronics) Samsung SideSync 3.0 (HKLM-x32\...\Samsung SideSync) (Version: 3.1.5.1038 - Samsung Electronics Co., Ltd.) Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.53.0 - Samsung Electronics Co., Ltd.) Sauerbraten (HKLM-x32\...\Sauerbraten) (Version: - ) Secure Download Manager (HKLM-x32\...\{C58626D6-7EBD-460D-8B6C-75B3C3464879}) (Version: 3.1.60 - Kivuto Solutions Inc.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden Similarity 1.8.4 (HKLM-x32\...\{136E0987-DA28-4F25-8782-62A87C4117B5}) (Version: 1.8.1694 - GAR Software) Skype™ 7.7 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.103 - Skype Technologies S.A.) Smart Technology Programming Software 7.0.24.8 (HKLM\...\{F31F1F66-5685-4C21-906E-20CB74C7BCDF}) (Version: 7.0.24.8 - Mad Catz) Source SDK Base 2006 (HKLM-x32\...\Steam App 215) (Version: - Valve) SpeedRunners (HKLM-x32\...\Steam App 207140) (Version: - DoubleDutch Games) Spotify (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Spotify) (Version: 1.0.11.134.ga37df67b - Spotify AB) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Stardock Central (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Stardock Central) (Version: - Stardock Corporation) Stardock CursorFX (HKLM-x32\...\CursorFX) (Version: 2.16 - Stardock Corporation) Stardock DeskScapes 8 (HKLM-x32\...\Stardock DeskScapes 8) (Version: 8.21 - Stardock Software, Inc.) Stardock WindowBlinds (HKLM-x32\...\Stardock WindowBlinds) (Version: 8.12 - Stardock Software, Inc.) Stardock WindowFX (HKLM-x32\...\WindowFX) (Version: 5.15 - Stardock Software, Inc.) Stereoscopic Player (HKLM-x32\...\{1257BD7D-0A39-456C-ADB0-341D799C3B59}) (Version: 2.1.0 - 3dtv.at) Stereoscopic Player (HKLM-x32\...\{9a171608-6f44-4711-873c-241af6ce3ae2}) (Version: 2.3.7 - 3dtv.at) Stereoscopic Player (x32 Version: 2.3.7 - 3dtv.at) Hidden Studie zur Verbesserung von HP Officejet 7500 E910 Produkten (HKLM\...\{DD52EE0D-3F63-4203-8AC3-7804D32B44EA}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) SUPER © v2013.build.59+Recorder (2013/12/18) Version v2013.buil (HKLM-x32\...\{8E2A18E2-96AF-4DF9-8459-5C06B75139A4}_is1) (Version: v2013.build.59+Recorder - eRightSoft) Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit) Tabletop Simulator (HKLM-x32\...\Steam App 286160) (Version: - Berserk Games) Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.43879 - TeamViewer) TechniSat DVB-PC TV Star (HKLM-x32\...\{CE9F9FBC-5253-46D2-9883-09E55003D794}) (Version: 1.0.0 - TechniSat) Theme Park Studio (HKLM-x32\...\Steam App 254590) (Version: - Pantera Entertainment) TriDef 3D 6.7 (HKLM-x32\...\essentials-bundle) (Version: 6.7 - Dynamic Digital Depth Australia Pty Ltd) Tunngle beta (HKLM-x32\...\Tunngle beta_is1) (Version: - Tunngle.net GmbH) UltraStar Deluxe (HKLM-x32\...\UltraStar Deluxe) (Version: 1.1 - USDX Team) Unified Remote (HKLM-x32\...\{415B4714-4F8C-49C6-B310-881EAF892CFB}_is1) (Version: 3.1 - Unified Intents AB) Unified Remote (HKLM-x32\...\{BD96B1DF-2A2E-4ED1-B255-F8050DEB1B3D}) (Version: 2.14.2.0 - Unified Remote) Unity Web Player (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\UnityWebPlayer) (Version: 4.5.4f1 - Unity Technologies ApS) Universal Media Server (HKLM-x32\...\Universal Media Server) (Version: 4.3.1 - Universal Media Server) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Unreal Development Kit: 2012-10 (HKLM\...\UDK-302f39cb-e160-4f3b-b234-fe1edd9f855b) (Version: - Epic Games, Inc.) Uplay (HKLM-x32\...\Uplay) (Version: 4.2 - Ubisoft) VBCABLE, The Virtual Audio Cable (HKLM\...\VB:VBCABLE {87459874-1236-4469}) (Version: - VB-Audio Software) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Vegas Pro 12.0 (64-bit) (HKLM\...\{6592B670-2680-11E3-B0E0-F04DA23A5C58}) (Version: 12.0.726 - Sony) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN) Vocaluxe (HKLM-x32\...\Vocaluxe 0.3.0.81) (Version: 0.3.0.81 - Vocaluxe Team) Vocaluxe (Version: 0.3.0.81 - Vocaluxe Team) Hidden Wacom (HKLM\...\Pen Tablet Driver) (Version: 5.3.3-2 - Wacom Technology Corp.) WBFS Manager 3.0 (HKLM-x32\...\WBFS Manager 3.0) (Version: 3.0 - AlexDP) WebM Project Directshow Filters (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\webmdshow) (Version: - ) WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.) WIDCOMM Bluetooth Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.8050 - Broadcom Corporation) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) WindowFX (x32 Version: 5.10 - Stardock Corporation) Hidden Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices (03/07/2012 ) (HKLM\...\0B624A43DD66DBF5CF3EDFA9741A364E688062A4) (Version: 03/07/2012 - GoPro) Windows Installer Clean Up (HKLM-x32\...\{121634B0-2F4B-11D3-ADA3-00C04F52DD52}) (Version: 3.00.00.0000 - Microsoft Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows-Treiberpaket - Masahiko Morii (Xbox360Controller) HIDClass (05/04/2010 6.1.7600.16385) (HKLM\...\24E7741D5B688C9EF37D8E61D67229C0CAAE21BB) (Version: 05/04/2010 6.1.7600.16385 - Masahiko Morii) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - CACE Technologies) WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) WordToPDF 2.9 (HKLM-x32\...\WordToPDF_is1) (Version: 2.9 - Mario Noack) Worms Reloaded (HKLM-x32\...\Steam App 22600) (Version: - Team17 Software Ltd.) XBCD 1.07 (HKLM-x32\...\XBCD) (Version: 1.07 - Redcl0ud) xbox-360-controller-custom (x64) (HKLM-x32\...\xbox-360-controller-custom (x64) 1.0.0) (Version: 1.0.0 - Masahiko Morii) xbox-360-controller-custom (x64) (Version: 1.0.0 - Masahiko Morii) Hidden Xilisoft iPhone to PC Copy (HKLM-x32\...\Xilisoft iPhone to PC Copy) (Version: 5.4.7.20121205 - Xilisoft) Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) X-Mirage version 1.01.3 (HKLM-x32\...\{EE034220-E0F5-4AA3-82B5-DD1CC216A6F5}_is1) (Version: 1.01.3 - X-Mirage, Inc.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay Keine Datei CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{092dfa86-5807-5a94-bf3b-5a53ba9e5308}\InprocServer32 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{2259ED92-5044-4BBE-A933-E71CD7D68710}\InprocServer32 -> C:\Program Files (x86)\NinjaLite\NinjaLite\SPOA.dll (Global IP Telecommunications Ltd.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1B}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) ==================== Wiederherstellungspunkte ========================= 29-07-2015 18:43:21 Windows Update 05-08-2015 16:05:16 Windows Modules Installer ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2014-07-10 15:01 - 2014-07-10 15:01 - 00001371 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com 127.0.0.1 activate.adobe.com 127.0.0.1 ereg.adobe.com 127.0.0.1 3dns-2.adobe.com 127.0.0.1 3dns-3.adobe.com 127.0.0.1 adobe-dns.adobe.com 127.0.0.1 adobe-dns-2.adobe.com 127.0.0.1 adobe-dns-3.adobe.com 127.0.0.1 activate-sea.adobe.com 127.0.0.1 wwis-dubc1-vip60.adobe.com 127.0.0.1 activate-sjc0.adobe.com 127.0.0.1 ereg.wip3.adobe.com 127.0.0.1 wip3.adobe.com 127.0.0.1 activate.wip3.adobe.com 127.0.0.1 wip4.adobe.com 127.0.0.1 activate.wip4.adobe.com ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation) Task: {0266B2C1-C734-4DBE-84E7-0555E4CEB29F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-08] (Google Inc.) Task: {0B98D0F1-0B74-40B9-AECE-6A590806AF16} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-08] (Google Inc.) Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation) Task: {1641F54C-1E57-4902-AB65-EE2B65E5629D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation) Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation) Task: {1D3D099E-EE1E-4907-8BA2-BA8F12D11AA6} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2015-07-10] (Microsoft Corporation) Task: {20488A4E-D0EC-4487-BD22-CA1A159E6AC2} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-15] (Adobe Systems Incorporated) Task: {27EA48BD-EF33-4F10-A49F-681373F5A72B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-07-03] (Microsoft Corporation) Task: {295EC3C6-0B2F-48D8-A5B8-78B70ADA16FC} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {2AC79F37-A3EF-42F5-B8F6-27828806E0BB} - System32\Tasks\{D5569CD3-60E5-481E-84E5-314172D0E027} => pcalua.exe -a "C:\Program Files (x86)\CureROM\CureROM.exe" -d "C:\Program Files (x86)\CureROM\" -c -launch "C:\Program Files (x86)\CureROM\Profiles\RCT3plus.crp" Task: {2BEA93B5-7567-4F3B-A6D1-FA7195D0E550} - System32\Tasks\{43F28C09-FCE3-4572-8078-87947A3B2D83} => pcalua.exe -a "D:\Program Files (x86)\Hi-Rez Studios\HiRezGamesDiagAndSupport.exe" -c uninstall=17 Task: {2C97A00A-1C5C-4318-B5CC-8A1A126B77F9} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask Task: {308C470C-3C20-4975-A5DA-06F2912008AC} - System32\Tasks\{5FC0CC8F-D358-4A9B-9EB0-0C6B6F3C0463} => pcalua.exe -a "C:\Program Files\AVAST Software\Avast\aswRunDll.exe" -c "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup Task: {3BBE8F38-A41C-454A-9C55-6FE8B823ED9B} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation) Task: {433115CB-B142-4981-9BC6-DE7CB8A36FF1} - \Safer-Networking\Spybot - Search and Destroy\Refresh immunization -> Keine Datei <==== ACHTUNG Task: {4454A8D0-2E4E-4A02-BF67-48DF6A7BFAB4} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask Task: {47366B4E-528D-4461-97E5-FA7DA9F24955} - System32\Tasks\ASC8_SkipUac_Nils Geiger => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe Task: {538EF034-4D7F-4D84-B242-220AEA355608} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {59085276-86D1-4C83-B555-A93ECCC015B6} - \Safer-Networking\Spybot - Search and Destroy\Scan the system -> Keine Datei <==== ACHTUNG Task: {5E5515C1-7D87-4904-B9CE-FD29EB2ADB72} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync Task: {60100D64-6658-4C7F-82BF-8CF429D38EE8} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2015-07-19] (Overwolf LTD) Task: {611C823C-437B-46E7-9683-5312DFFCFD7B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation) Task: {6A5A8D39-6AEC-429A-B0F6-01CEEE07D348} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {6F88997F-9EA2-4262-BA9F-9FDF1838D728} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {711EE2F9-A611-4773-AF8E-D4B278A6718D} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask Task: {744C9FEA-08B7-43E1-A729-0F94647D655C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation) Task: {7587136C-7EA5-4CFA-886E-958ECC5E02ED} - System32\Tasks\{376E1EBF-3B8C-4617-8E47-99B792FF36A8} => pcalua.exe -a F:\DirectX\dxsetup.exe -d F:\DirectX Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance Task: {7A003965-A297-4DC6-B15B-852D798391E0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\WINDOWS\system32\MusNotification.exe [2015-07-29] (Microsoft Corporation) Task: {848DCC36-520C-4946-BF68-C7EFFEFA2F84} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot => C:\windows\system32\MusNotification.exe [2015-07-29] (Microsoft Corporation) Task: {8C70E710-BA98-4297-9017-E04381859B2D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {8D158547-EB0D-4D00-A5D1-5060FF5AB558} - \Safer-Networking\Spybot - Search and Destroy\Check for updates -> Keine Datei <==== ACHTUNG Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-07-29] (Microsoft Corporation) Task: {9C4DE5EF-7CAE-4D87-8C82-400C063506B8} - System32\Tasks\Stardock Central-S-1-5-21-1160257173-3920074079-2544844589-1001 => C:\Users\Nils Geiger\AppData\Local\Stardock\StardockCentral\Stardock Central.exe [2013-10-25] (Stardock) Task: {A364E297-00AD-490D-900E-22AC34598C71} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation) Task: {A3DF5B54-767D-4049-8385-C8EB158F0FE5} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-05-31] () Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager Task: {A7ADF384-459F-409E-A010-EB1DE961DE52} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001UA => C:\Users\Nils Geiger\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-07-14] (Dropbox, Inc.) Task: {AC29E64E-3271-47BA-B8F1-914523CF379B} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update Task: {AC9DCA8A-CE46-4718-BE3A-E8C3C93C8537} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [2014-09-28] (Samsung Electronics.) Task: {AF49CA28-6326-4039-9F85-9944A8EDB547} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {AFF435F1-AD88-476A-8D5D-14C3909D5B37} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001Core => C:\Users\Nils Geiger\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-07-14] (Dropbox, Inc.) Task: {B9B36D41-C776-424E-9A13-5387E17A2CEB} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2015-07-10] (Microsoft Corporation) Task: {BBA541D8-0E0F-40F1-B657-78053D4F6392} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {BE5F9E04-CACB-4CB3-929D-8D5D5177A71F} - System32\Tasks\{B1625993-C297-4BEE-9F70-D7FFAEA62E61} => pcalua.exe -a "C:\Users\Nils Geiger\Downloads\NFS\Texmod.exe" -d "C:\Users\Nils Geiger\Downloads\NFS" Task: {BFFD6E09-5336-47FC-B401-878C67A04536} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {C2162702-FFEB-48C0-AA5F-2DA3A8887D61} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation Task: {C55DC34C-8BCA-4273-B920-40052E55A390} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation) Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation) Task: {D23081A7-ECE0-411D-9098-1CADF5DE410E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-18] (Avast Software s.r.o.) Task: {D2401052-A382-42DE-9C79-D1CF3563F654} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation Task: {D30DD387-D2F4-489B-B048-AE47CB20F1AF} - System32\Tasks\{48418533-D70D-4612-9EB6-288FEF954A58} => pcalua.exe -a "C:\Users\Nils Geiger\Desktop\samurize_1.64.3_3.exe" -d "C:\Users\Nils Geiger\Desktop" Task: {D5E186CE-5D96-426B-B0D0-CD9E92BB1243} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {DAF2BAE3-1C5B-4CB5-9F62-0911C031A15A} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2015-07-10] (Microsoft Corporation) Task: {E26CDB22-5AEC-4418-9EF3-802CB0BB83A8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-06-01] (Piriform Ltd) Task: {EA3F661E-B31C-44A9-B40C-E3D5D56149D4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display => C:\windows\system32\MusNotification.exe [2015-07-29] (Microsoft Corporation) Task: {EEFF7B58-A14C-468B-9157-FF22BDAF418E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {F996A9DA-EA47-45E0-A89B-D3CE16160772} - System32\Tasks\{DEF54CF1-0EE4-4CEB-862C-35CB85BD4D89} => pcalua.exe -a C:\PROGRA~2\Stardock\OBJECT~2\objectdock.exe -c /uninstall Task: {F9F13562-8A54-4647-9699-2FDE84F3C279} - System32\Tasks\HPCustParticipation HP Officejet 7500 E910 => C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {FA0652F6-A05B-4045-948F-43D48622D379} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {FA0A0280-F104-4C63-BF48-0FE2C1FCFE4E} - System32\Tasks\KMS Activation for Office => C:\Windows\KMSAct.exe Task: {FD8BE2BD-95FC-4D92-8586-B5CB11ADBE65} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe Task: {FD971673-18E2-44C0-A460-AB8F73A03403} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {FE065D6A-8708-4C1F-B800-1AFBE55FD24D} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-nils.geiger@gmx.de => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-03-21] (Adobe Systems Incorporated) Task: {FF158EA4-B4FC-49DF-85D8-9E5EB58D007C} - System32\Tasks\Driver Booster SkipUAC (Nils Geiger) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\ASC8_SkipUac_Nils Geiger.job => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001Core.job => C:\Users\Nils Geiger\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001UA.job => C:\Users\Nils Geiger\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-07-29 16:48 - 2015-07-29 16:48 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll 2014-11-17 21:09 - 2015-06-17 08:48 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-07-14 13:50 - 2014-07-14 13:50 - 00597536 _____ () C:\Program Files (x86)\Stardock\WindowFX\WFX32.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00403968 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll 2015-01-20 23:35 - 2015-01-20 23:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-05-15 16:26 - 2015-05-15 16:26 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2013-05-21 20:33 - 2012-06-01 17:42 - 00920736 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe 2014-09-12 17:57 - 2014-03-19 10:51 - 00316120 _____ () C:\Program Files (x86)\NETGEAR\WNA1100\WifiSvc.exe 2014-01-04 15:09 - 2013-11-26 02:22 - 00607744 _____ () C:\WINDOWS\system32\spool\DRIVERS\x64\3\JobCapsA.DLL 2015-08-05 23:58 - 2015-07-30 08:05 - 02498808 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-08-05 23:58 - 2015-07-30 08:05 - 02498808 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2010-07-15 06:44 - 2010-07-15 06:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2012-06-18 17:24 - 2012-06-18 17:24 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_05.dll 2015-08-05 23:58 - 2015-08-02 03:36 - 02028544 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RulesService.dll 2015-07-10 13:00 - 2015-07-10 18:43 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00619008 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SignalsManager.dll 2015-08-05 23:58 - 2015-08-02 03:35 - 00928768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RulesBackgroundTasks.dll 2015-07-10 12:59 - 2015-07-10 12:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2015-07-10 12:59 - 2015-07-10 12:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll 2015-08-05 23:58 - 2015-08-02 03:37 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2015-08-05 23:58 - 2015-08-02 03:40 - 00882688 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2015-08-05 23:58 - 2015-08-02 03:34 - 01806848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2015-08-05 23:58 - 2015-08-02 03:35 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-07-10 13:00 - 2015-07-10 18:43 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00577024 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.NodeWinrtWrap.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00181248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\dss_service\node_modules\nodert-buffer-utils\bin\NodeRT_Buffer_Utils.node 2015-07-29 16:48 - 2015-07-29 16:48 - 00559616 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\dss_service\node_modules\windows.storage.streams\bin\NodeRT_Windows_Storage_Streams.node 2015-07-29 16:48 - 2015-07-29 16:48 - 00643072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\dss_service\node_modules\windows.foundation.diagnostics\bin\NodeRT_Windows_Foundation_Diagnostics.node 2015-07-10 13:00 - 2015-07-10 18:44 - 00037888 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\dss_service\node_modules\winrt-projections\bin\Winrt_Projections.node 2015-07-29 16:48 - 2015-07-29 16:48 - 00796160 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\dss_service\node_modules\windows.web.http\bin\NodeRT_Windows_Web_Http.node 2015-07-29 16:48 - 2015-07-29 16:48 - 00961536 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\dss_service\node_modules\windows.web.http.headers\bin\NodeRT_Windows_Web_Http_Headers.node 2015-07-29 16:48 - 2015-07-29 16:48 - 00204288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\dss_service\node_modules\windows.web.http.filters\bin\NodeRT_Windows_Web_Http_Filters.node 2015-07-29 16:48 - 2015-07-29 16:48 - 00397824 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\dss_service\node_modules\windows.foundation\bin\NodeRT_Windows_Foundation.node 2015-07-29 16:48 - 2015-07-29 16:48 - 00074240 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\dss_service\node_modules\windows.networking\bin\NodeRT_Windows_Networking.node 2015-07-29 16:48 - 2015-07-29 16:48 - 00093696 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\dss_service\node_modules\windows.security.cryptography\bin\NodeRT_Windows_Security_Cryptography.node 2015-07-29 16:48 - 2015-07-29 16:48 - 00124416 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\dss_service\node_modules\windows.cortana.pal\bin\NodeRT_Windows_Cortana_PAL.node 2013-02-18 00:45 - 2013-12-17 03:17 - 01356568 _____ () C:\Program Files\Tablet\Pen\libxml2.dll 2015-03-24 15:28 - 2015-03-24 15:28 - 00036544 _____ () C:\Program Files\Rainmeter\Rainmeter.exe 2015-03-24 15:28 - 2015-03-24 15:28 - 00775872 _____ () C:\Program Files\Rainmeter\Rainmeter.dll 2015-03-24 15:27 - 2015-03-24 15:27 - 00058368 _____ () C:\Program Files\Rainmeter\Plugins\WebParser.dll 2015-03-24 15:28 - 2015-03-24 15:28 - 00022528 _____ () C:\Program Files\Rainmeter\Plugins\InputText.dll 2015-03-24 15:27 - 2015-03-24 15:27 - 00012800 _____ () C:\Program Files\Rainmeter\Plugins\PerfMon.dll 2014-11-15 22:15 - 2007-09-02 14:58 - 00495616 _____ () C:\Program Files (x86)\RocketDock\RocketDock.exe 2015-08-05 15:58 - 2015-08-05 15:58 - 07824896 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.8.3.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll 2015-08-05 15:58 - 2015-08-05 15:58 - 02062336 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.8.3.0_x64__8wekyb3d8bbwe\MS.Entertainment.Common.Mobile.dll 2015-08-09 11:05 - 2015-08-09 11:05 - 00007168 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.803.16240.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2015-08-09 11:05 - 2015-08-09 11:05 - 11284480 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.803.16240.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2015-07-10 18:50 - 2015-07-10 18:50 - 07897088 _____ () C:\Program Files\WindowsApps\Microsoft.NET.Native.Framework.1.0_1.0.22929.0_x64__8wekyb3d8bbwe\SharedLibrary.dll 2015-05-06 15:39 - 2015-05-06 15:39 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-05-06 15:39 - 2015-05-06 15:39 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-08-09 22:57 - 2015-08-09 22:57 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15080901\algo.dll 2015-08-10 17:25 - 2015-08-10 17:25 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15081002\algo.dll 2015-08-10 20:01 - 2015-08-10 20:01 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15081003\algo.dll 2013-01-17 17:18 - 2013-05-20 11:58 - 00620718 _____ () C:\Program Files (x86)\DVBViewer\sqlite3.dll 2013-05-21 20:33 - 2015-08-10 17:24 - 00020992 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll 2013-05-21 20:33 - 2010-06-29 10:58 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll 2014-12-19 01:48 - 2014-12-19 01:48 - 00622880 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll 2014-09-12 17:57 - 2014-03-06 17:45 - 00372736 _____ () C:\Program Files (x86)\NETGEAR\WNA1100\WifiLib.dll 2015-03-30 21:30 - 2015-07-24 06:22 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2014-03-10 16:44 - 2014-03-10 16:44 - 00067728 _____ () C:\Program Files (x86)\Stardock\CursorFX\zlib1.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 40555008 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\libcef.DLL 2014-11-15 22:15 - 2007-09-02 14:57 - 00069632 _____ () C:\Program Files (x86)\RocketDock\RocketDock.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00146432 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\OWGameEventsConsumer.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00025600 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\CoreAudioApi.dll 2015-07-16 14:29 - 2014-09-28 17:59 - 00019872 _____ () C:\Program Files (x86)\Samsung\Samsung Magician\SAMSUNG_SSD.dll 2015-04-13 19:04 - 2015-04-13 19:04 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2013-04-09 23:14 - 2007-12-24 01:08 - 00391680 _____ () C:\Program Files (x86)\RocketDock\Docklets\StackDocklet\StackDocklet.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 01274655 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\libxml2-2.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00028160 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\libssp-0.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00100352 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\zlib1.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00373657 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\plugins\libmsn.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00021337 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\plugins\libxmpp.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00415553 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\libjabber.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00190464 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\libsasl.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00022832 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\plugins\libyahoo.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00228908 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\libymsg.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00027811 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\plugins\ssl-nss.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00012004 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\plugins\ssl.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00140288 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\sasl2\saslDIGESTMD5.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00102912 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\sasl2\saslPLAIN.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00425984 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\sqlite3.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00985088 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\ffmpegsumo.dll 2015-07-18 00:18 - 2015-07-03 18:12 - 00778240 _____ () D:\Steam\SDL2.dll 2015-07-18 00:18 - 2015-07-03 18:12 - 04962816 _____ () D:\Steam\v8.dll 2015-08-10 18:48 - 2015-08-07 02:30 - 02413248 _____ () D:\Steam\video.dll 2014-12-03 11:27 - 2014-12-01 23:31 - 02396672 _____ () D:\Steam\libavcodec-56.dll 2014-12-03 11:27 - 2014-12-01 23:31 - 00479744 _____ () D:\Steam\libavformat-56.dll 2014-12-03 11:27 - 2014-12-01 23:31 - 00332800 _____ () D:\Steam\libavresample-2.dll 2014-12-03 11:27 - 2014-12-01 23:31 - 00442880 _____ () D:\Steam\libavutil-54.dll 2014-12-03 11:27 - 2014-12-01 23:31 - 00485888 _____ () D:\Steam\libswscale-3.dll 2015-07-18 00:18 - 2015-07-03 18:12 - 01556992 _____ () D:\Steam\icui18n.dll 2015-07-18 00:18 - 2015-07-03 18:12 - 01187840 _____ () D:\Steam\icuuc.dll 2015-08-10 18:48 - 2015-08-07 02:30 - 00704192 _____ () D:\Steam\bin\chromehtml.DLL 2015-07-30 15:24 - 2015-07-27 03:13 - 00171008 _____ () D:\Steam\bin\openvr_api.dll 2015-07-18 00:18 - 2015-07-03 18:12 - 39553928 _____ () D:\Steam\bin\libcef.dll 2015-03-30 21:23 - 2015-03-30 21:23 - 00045568 _____ () D:\Steam\steamapps\common\FaceRig\Bin\FaceRigVirtualCam32.ax 2015-08-06 23:04 - 2015-07-31 08:19 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libglesv2.dll 2015-08-06 23:04 - 2015-07-31 08:19 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\TEMP:054203E4 AlternateDataStreams: C:\ProgramData\TEMP:966F7784 AlternateDataStreams: C:\Users\Nils Geiger\OneDrive:ms-properties ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service" ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Nils Geiger\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\lyxus_große_augen_ohne_ponnie.bmp DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\...\StartupApproved\StartupFolder: => "NETGEAR WNA1100 Setup-Assistent.lnk" HKLM\...\StartupApproved\StartupFolder: => "Dyn Updater Tray Icon.lnk" HKLM\...\StartupApproved\StartupFolder: => "XBox Joypad.lnk" HKLM\...\StartupApproved\StartupFolder: => "CineForm Status.lnk" HKLM\...\StartupApproved\StartupFolder: => "GoPro Importer.lnk" HKLM\...\StartupApproved\Run: => "Launch LCore" HKLM\...\StartupApproved\Run: => "SaiMfd" HKLM\...\StartupApproved\Run: => "ProfilerU" HKLM\...\StartupApproved\Run: => "Samurize" HKLM\...\StartupApproved\Run: => "XboxStat" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "Nvtmru" HKLM\...\StartupApproved\Run: => "ShadowPlay" HKLM\...\StartupApproved\Run: => "NvBackend" HKLM\...\StartupApproved\Run: => "RtHDVBg_DTS" HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run: => "Start WingMan Profiler" HKLM\...\StartupApproved\Run: => "IAStorIcon" HKLM\...\StartupApproved\Run: => "vksts" HKLM\...\StartupApproved\Run: => "TrayApplication" HKLM\...\StartupApproved\Run: => "HarmonyUserStartup" HKLM\...\StartupApproved\Run: => "HarmonyHFPSkypePlugin" HKLM\...\StartupApproved\Run: => "THXCfg64" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "jswtrayutil" HKLM\...\StartupApproved\Run32: => "APSDaemon" HKLM\...\StartupApproved\Run32: => "DivXUpdate" HKLM\...\StartupApproved\Run32: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "Lachesis" HKLM\...\StartupApproved\Run32: => "KiesTrayAgent" HKLM\...\StartupApproved\Run32: => "AdobeCEPServiceManager" HKLM\...\StartupApproved\Run32: => "HP Software Update" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKLM\...\StartupApproved\Run32: => "AdobeCS5ServiceManager" HKLM\...\StartupApproved\Run32: => "SwitchBoard" HKLM\...\StartupApproved\Run32: => "WinampAgent" HKLM\...\StartupApproved\Run32: => "PowerDVD14Agent" HKLM\...\StartupApproved\Run32: => "SDTray" HKLM\...\StartupApproved\Run32: => "DivXMediaServer" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\StartupFolder: => "Winamp.lnk" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\StartupFolder: => "OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\StartupFolder: => "Tintenwarnungen überwachen - HP Officejet 7500 E910 (Netzwerk).lnk" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\StartupFolder: => "I See Fire (Kygo Remix).WAV" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "BrowserChoice" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "DAEMON Tools Lite" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Connectify" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "CubeDesktopNXT" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "RocketDock" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "KiesPreload" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "HP Officejet 7500 E910 (NET)" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "AmazonMP3DownloaderHelper" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Amazon Cloud Player" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "NextLive" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Virtual WiFi Router" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Unified Remote v2" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Amazon Music" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Unified Remote V3" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Advanced SystemCare 8" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Dropbox Update" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [{BEC563D3-E765-4704-8F05-12B4B4AF8E06}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{38A4389C-DCF9-4122-A49B-52B2910D55AE}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{2AC22284-D564-4B15-8A6A-9AAE4A4FB8AD}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{642103BC-21CB-4803-AFE4-91EB6E6ED547}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [{6B167F97-E9B6-4EC8-9BC9-AD94D784DDE3}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [UDP Query User{1FC941F2-300D-410A-B44A-4B5D3D12BB37}C:\program files (x86)\mouseserver\mouseserver.exe] => (Allow) C:\program files (x86)\mouseserver\mouseserver.exe FirewallRules: [TCP Query User{032233DB-B84C-4A90-B9D2-47FBFE0657DC}C:\program files (x86)\mouseserver\mouseserver.exe] => (Allow) C:\program files (x86)\mouseserver\mouseserver.exe FirewallRules: [UDP Query User{882E1877-303A-4AF4-BD84-E87EA23BA81C}C:\users\spotify.exe] => (Allow) C:\users\spotify.exe FirewallRules: [TCP Query User{E38D9B09-288D-4640-B307-7CF035051395}C:\users\spotify.exe] => (Allow) C:\users\spotify.exe FirewallRules: [{7FA0EEE0-0099-473B-9EFD-8D1F66666788}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{6B2FEB1E-CEFD-4FDC-9892-8BE782997B14}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{BB74370D-C0BD-428B-AF76-6BE3A0CBDA49}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{30BF21DC-7719-4C47-84EC-03A8C8CAF17F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [UDP Query User{FC164850-5125-430F-8670-E1EA7F817564}C:\users\spotify.exe] => (Allow) C:\users\spotify.exe FirewallRules: [TCP Query User{9A5E2862-D4CA-4ABE-9C04-52CEB47F44C9}C:\users\spotify.exe] => (Allow) C:\users\spotify.exe FirewallRules: [{3E86E999-3C6C-42A9-AFBD-646C6E4333CC}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [{0FE12F7B-5001-4680-B7B5-16A0ADF55016}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [UDP Query User{61849AF4-3081-4EF5-9AAB-41142B1CD7C8}C:\users\nils geiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nils geiger\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{7DF596F2-A21F-4D4A-890E-839F4DF9B7E2}C:\users\nils geiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nils geiger\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{EF77E89B-38B5-4D10-86AD-97246AAE1E5B}D:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{CE04BA36-0887-4E95-A2BE-759E977CDA0B}D:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{7F5B9B93-412C-44FA-81FA-0C2D1B57E7C2}D:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{DF3CD87B-1AB3-48A1-A286-C5781A3E2100}D:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{8F1C9756-2E19-4BB9-9CB6-7853A1EAEAAD}C:\users\nils geiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nils geiger\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{C7BD1153-E110-4411-91D5-0DA7BEF233CC}C:\users\nils geiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nils geiger\appdata\roaming\spotify\spotify.exe FirewallRules: [{D2971BF6-5E44-4BDF-A545-8D4CC95E3104}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{29CAE7A3-0A39-4817-8DEA-8D164E7ECEC6}] => (Allow) C:\Program Files (x86)\Samsung\SideSync3\SideSync3.exe FirewallRules: [{AEC0AB46-1A61-40D3-9C59-BF741ED40E44}] => (Allow) C:\Program Files (x86)\Samsung\SideSync3\SideSync3.exe FirewallRules: [UDP Query User{24D27487-F1FE-4EA0-AB33-F09BE20C418C}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe FirewallRules: [TCP Query User{0DE17696-1C4E-4E60-BCC0-8E60E0EF6D0D}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe FirewallRules: [{987CAC33-A1F0-41EE-852D-F5D996E56CF6}] => (Allow) D:\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [{871C8E55-8436-4CFA-A112-855BC64C86C2}] => (Allow) D:\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [UDP Query User{B62D6476-3D66-4C2A-A5C8-4CC4FA2630BA}C:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe] => (Allow) C:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe FirewallRules: [TCP Query User{53B50C28-EF43-4F98-9379-87DA55EFB05B}C:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe] => (Allow) C:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe FirewallRules: [{F00C67E9-1281-4152-BACF-A3B18DEE2E48}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{2BE7F3E7-4FD3-40C4-A47E-FEF22D12606B}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{819F4AEB-72EF-4CDC-9326-242B2F3D83B1}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{35038119-E8A5-44C0-B115-98B1D4F9783A}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{AFA7CC63-428D-455F-B62B-AF02BAF5379B}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\my_garrysmod_server\srcds.exe FirewallRules: [{33403E21-5FBC-4830-B58F-1C7D557CA53B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{CBEC02FA-1BE2-4F5C-A885-A709097A8C75}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [UDP Query User{54FF3F33-0EEA-4DE4-9EF9-ADC37343128F}D:\steam\steamapps\common\dmc devil may cry\binaries\win32\dmc-devilmaycry.exe] => (Allow) D:\steam\steamapps\common\dmc devil may cry\binaries\win32\dmc-devilmaycry.exe FirewallRules: [TCP Query User{AE802BA2-4F1B-41A8-A6EE-54AD30478E76}D:\steam\steamapps\common\dmc devil may cry\binaries\win32\dmc-devilmaycry.exe] => (Allow) D:\steam\steamapps\common\dmc devil may cry\binaries\win32\dmc-devilmaycry.exe FirewallRules: [{A9901F08-8632-48E3-9663-6035BAB2150B}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe FirewallRules: [{435D169C-9243-46D9-930A-2BA796155CE7}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe FirewallRules: [{C181A355-2F2A-48C9-A0E3-836CAC5962A7}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\CTI\xcti.exe FirewallRules: [{EED60256-F500-49B4-ABB4-B8E8768AA907}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\CTI\xcti.exe FirewallRules: [{ADEB42B0-7F63-4804-8D26-973D6D826CB9}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\USB\Jabra32.exe FirewallRules: [{8EC8E56C-658B-4D75-BBBD-3DCAFAAE779A}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\USB\Jabra32.exe FirewallRules: [{6295FE2E-B16F-4B28-887F-3C31F937EB3F}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\xproxy.exe FirewallRules: [{5B34CA45-29D3-4A86-88C4-A1AF0BF61091}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\xproxy.exe FirewallRules: [{F8776F70-B41A-4554-83CB-E535250C9BD5}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\NinjaLi.exe FirewallRules: [{83908FC1-486B-4CEE-BFED-5B62B0A78DAB}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\NinjaLi.exe FirewallRules: [UDP Query User{18A1B96B-8336-4927-9F62-A767EA608BED}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [TCP Query User{7BDA0B96-FC15-4D0F-9DF6-4C30E2CFADED}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [{439632C4-7BC6-4981-9943-D37316FE79B0}] => (Allow) D:\Steam\SteamApps\common\NoLimits 2\64bit\nolimits2stm.exe FirewallRules: [{F36A9933-5A77-4DDE-B4C9-79A1BD447266}] => (Allow) D:\Steam\SteamApps\common\NoLimits 2\64bit\nolimits2stm.exe FirewallRules: [{44F9E6C0-BD85-4B8B-81DE-4D2CD99CDD08}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVD Cinema\PowerDVDCinema.exe FirewallRules: [{40A97253-0F12-47CE-BEFD-C2165D2DCC6B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVDMovie.exe FirewallRules: [{35445DA6-DC9D-45FB-BBD2-77070C58E7AB}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe FirewallRules: [{562D039A-AA7F-44D5-ADA4-ADDAFCED9A4C}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPDVD14.exe FirewallRules: [{4FD3ADF2-C532-421F-B0DD-8921C375CC4E}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD.exe FirewallRules: [{C213A110-EB59-488C-B551-B10A9E9C8DC5}] => (Allow) D:\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{37E83043-6A70-4DC2-8FA6-E9DAF795FA16}] => (Allow) D:\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{32A33A93-D05F-435B-B3D7-7261411C2F1B}] => (Allow) D:\Steam\SteamApps\common\Tabletop Simulator\Tabletop Simulator.exe FirewallRules: [{EDB60158-CA1F-4B2B-88F3-9A9EE1C032B7}] => (Allow) D:\Steam\SteamApps\common\Tabletop Simulator\Tabletop Simulator.exe FirewallRules: [{C9E80B2D-2B0C-4F5B-863B-CB613893CCE3}] => (Allow) D:\Steam\SteamApps\common\FaceRig\Bin\Launcher.exe FirewallRules: [{4DD96D9D-6B11-411D-8EB1-56D9CCD96027}] => (Allow) D:\Steam\SteamApps\common\FaceRig\Bin\Launcher.exe FirewallRules: [{CB4D2725-56D1-43A0-933B-C034B26EF071}] => (Allow) D:\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe FirewallRules: [{4E7EFF41-1326-44DF-A3C6-E7AC8D2D4FE2}] => (Allow) D:\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe FirewallRules: [{DE46F40F-0D35-48F3-9460-4BBAFBFA0630}] => (Allow) D:\Steam\SteamApps\common\LYNE\LYNE.exe FirewallRules: [{0121D028-E2F3-4C0C-BF99-BADFF4EFB7B5}] => (Allow) D:\Steam\SteamApps\common\LYNE\LYNE.exe FirewallRules: [{D328C2D7-F6AD-470C-AF30-E0CA75D43548}] => (Allow) D:\Steam\SteamApps\common\DmC Devil May Cry\Binaries\Win32\DMC-DevilMayCry.exe FirewallRules: [{5D3507AC-171D-45B1-B7DF-92AB95CE9FC1}] => (Allow) D:\Steam\SteamApps\common\DmC Devil May Cry\Binaries\Win32\DMC-DevilMayCry.exe FirewallRules: [UDP Query User{82F50E6B-A4B5-4673-AFCD-511152152E57}D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe] => (Block) D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe FirewallRules: [TCP Query User{D25D2E55-B3BB-4A35-80B0-96138D98B78A}D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe] => (Block) D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe FirewallRules: [UDP Query User{B33EE54C-ACEB-4B77-B2BD-0FEA2F7A592F}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [TCP Query User{97D45E6E-BDD6-47CD-99B9-DF720005E181}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [UDP Query User{EE6BB073-EE74-4EAC-A86A-8B50359FF6CD}D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe] => (Allow) D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe FirewallRules: [TCP Query User{C4DFC358-E30F-418F-BF01-8C0FD5ED6051}D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe] => (Allow) D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe FirewallRules: [{CCB9889C-888A-42A9-BD9E-6CCEE48896CC}] => (Allow) D:\Program Files (x86)\Electronic Arts\Need for Speed(TM) Hot Pursuit\Launcher.exe FirewallRules: [{B4C8FAD9-36DB-46CA-8128-7A90CC0CD943}] => (Allow) D:\Program Files (x86)\Electronic Arts\Need for Speed(TM) Hot Pursuit\Launcher.exe FirewallRules: [UDP Query User{79D2A481-7B69-4C23-9D08-18B9A04E4345}D:\tmunitedforever\tmforever.exe] => (Allow) D:\tmunitedforever\tmforever.exe FirewallRules: [TCP Query User{89B8396C-D841-4DF9-B66E-06E2399AB43B}D:\tmunitedforever\tmforever.exe] => (Allow) D:\tmunitedforever\tmforever.exe FirewallRules: [UDP Query User{1DD2FD76-C08E-45E2-A88E-5A33AFA5730D}D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe] => (Allow) D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe FirewallRules: [TCP Query User{1C0CC903-6330-49A3-ABB9-D45EA7D21A37}D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe] => (Allow) D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe FirewallRules: [{A469CC7A-E4D6-405E-BCBF-543A3C835B15}] => (Allow) LPort=25565 FirewallRules: [{E12BAB7F-9264-4EF9-A7E3-8E84B4CEC625}] => (Allow) LPort=25565 FirewallRules: [{BE715005-DF7D-4505-A111-BBBC9B922304}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{543071D4-46E0-4349-8341-46B21E7EB283}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{D1772513-C229-4811-A288-4D152BD02655}] => (Allow) D:\Steam\SteamApps\common\Theme Park Studio\ThemeParkStudio.exe FirewallRules: [{9270748A-F874-4ED8-B7D1-6704923EF678}] => (Allow) D:\Steam\SteamApps\common\Theme Park Studio\ThemeParkStudio.exe FirewallRules: [{D595D4D4-072B-45CD-AE91-47619A04FEAC}] => (Block) D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe FirewallRules: [{6A49148C-0CBB-4739-85B4-598108442BDE}] => (Block) D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe FirewallRules: [UDP Query User{CB2985A4-FD14-430A-BD46-89E5E8CD631E}D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe] => (Allow) D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe FirewallRules: [TCP Query User{3C250A1B-02C5-44E5-90AE-0F9BBEA584FC}D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe] => (Allow) D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe FirewallRules: [{307266E0-3316-4E61-847C-A4C82699F21A}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{376A3970-1CC7-461C-805A-238A520DD038}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{46EB2AAE-635A-4FA7-AABB-11EF809AC009}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{2428BC79-752E-4B92-83AD-92564C49017C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{B6195493-A9E3-41F3-A7F6-A254E11D4ACE}] => (Allow) D:\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{606D0F44-B8BB-40FD-8AB6-2D2C3C273109}] => (Allow) D:\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{5FF38424-9DEF-44B6-A209-63CDDA1C2FE3}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{AD4B5E94-0A59-472C-A79C-8EB1CFDE30DB}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{7578ECF0-A791-4D7D-AD44-C3E876669046}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{AFB68B28-768D-46A4-BD33-0B84FE9DF275}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPNetworkCommunicator.exe FirewallRules: [{EE2DAAE9-5992-4DBF-ADCE-1CDE216B1720}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\Bin\DeviceSetup.exe FirewallRules: [{6E2F7B01-0BA4-4476-8FD5-9EE5DC0928B0}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\bin\SendAFax.exe FirewallRules: [{6BCB4B86-A307-4BB1-B1D9-37C2F59DEA34}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\bin\DigitalWizards.exe FirewallRules: [{40ABC182-2FA9-46BF-BAEA-839D09B705D4}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\bin\FaxApplications.exe FirewallRules: [{A075F4B4-076F-431C-9F25-1CFE1C15D630}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{493CD3DB-16C4-42B4-B32A-7C948972A724}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{6139E8BE-3AC2-438A-BAB7-DEF620EB0B6A}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{ED545F13-746D-4F07-8FC8-A9A1B4D0EDBF}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{4E1C4AFA-E020-4200-8C09-4EBEBE15B3A1}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{D2591605-D01C-4CB8-B055-A2B20F0C8032}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{CB98F463-D045-466F-9F50-F4F49319AFE6}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{CCE5236E-E4B8-4A9D-9862-114AC28F13E6}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{8CEDB04B-F0CA-4DE9-A327-E08A3BCFB2AB}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{EDC641F3-9AD7-40E5-B51A-A3ADA6497180}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{3CBF97DF-B9A2-4728-A69C-5F3BE2F34EBF}] => (Allow) D:\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{32FE8189-0C32-406D-B276-E5C58A2431BD}] => (Allow) D:\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{70DB637A-9B81-44D4-9E12-BDCD2CE0F640}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{8249E862-09EC-483C-9711-B24255981823}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{B61DD159-417A-4CF2-8149-0279FEFB99CD}] => (Allow) D:\Steam\SteamApps\common\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst\NS3FB_launcher.exe FirewallRules: [{DFAE2E93-0E32-414C-905A-EE6DC30BDF00}] => (Allow) D:\Steam\SteamApps\common\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst\NS3FB_launcher.exe FirewallRules: [{1CB7EE0D-463F-4515-93F0-6613C60E3392}] => (Allow) D:\Steam\SteamApps\common\Chaos on Deponia\VisionaireConfigurationTool.exe FirewallRules: [{B5AED8C4-4F81-4B77-9FE6-CB8CBC784FFC}] => (Allow) D:\Steam\SteamApps\common\Chaos on Deponia\VisionaireConfigurationTool.exe FirewallRules: [{7501D972-7958-42D2-B238-0197CD549795}] => (Allow) D:\Steam\SteamApps\common\Chaos on Deponia\deponia2.exe FirewallRules: [{2DD2E42B-DBD7-47B3-AD60-8A8962EAD4BB}] => (Allow) D:\Steam\SteamApps\common\Chaos on Deponia\deponia2.exe FirewallRules: [{09317978-AD50-4220-B690-10076D9E082C}] => (Allow) D:\Steam\SteamApps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{5357BE86-2508-4B0A-BF71-73E1F6AD7D2D}] => (Allow) D:\Steam\SteamApps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{E8936DC0-7CC2-4B5E-A8FF-D93876C923AA}] => (Allow) D:\Steam\SteamApps\common\Deponia\Deponia.exe FirewallRules: [{5ABD3859-2AA0-4FFF-8031-639D12311BC9}] => (Allow) D:\Steam\SteamApps\common\Deponia\Deponia.exe FirewallRules: [{35F2B412-8BC3-438D-AC82-AFF66B5E97D0}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{066D856D-7438-480C-84DA-421E735E14B5}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{5D6AE509-6E89-4550-B18D-89842CFFE397}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{3766DF1D-6C72-4907-A8E8-5BC5D75EED86}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{11EF207E-413A-4E91-AAE0-996D90966852}] => (Allow) D:\Steam\SteamApps\common\QUBE\Binaries\Win32\QUBE.exe FirewallRules: [{F236D136-19AC-4467-BAE9-8850026A525B}] => (Allow) D:\Steam\SteamApps\common\QUBE\Binaries\Win32\QUBE.exe FirewallRules: [{EE823C97-E84B-4A7A-A167-710AD80E90C5}] => (Allow) D:\Steam\SteamApps\common\f1 race stars\F1RaceStars.exe FirewallRules: [{D61CD54B-FAC1-41C6-BE23-EC2D45C9EBBF}] => (Allow) D:\Steam\SteamApps\common\f1 race stars\F1RaceStars.exe FirewallRules: [{BFEA3332-9EB6-4976-A3AA-B68B98944D47}] => (Allow) D:\Steam\SteamApps\common\sonic generations\ConfigurationTool.exe FirewallRules: [{584FF6E6-47C8-4A50-AB32-74445A9D8580}] => (Allow) D:\Steam\SteamApps\common\sonic generations\ConfigurationTool.exe FirewallRules: [{BECD0A77-BFA6-42C2-9E7F-6D67C05AC1A1}] => (Allow) D:\Steam\SteamApps\common\sonic generations\SonicGenerations.exe FirewallRules: [{22E380F0-9A55-40A4-A236-FA4E76208053}] => (Allow) D:\Steam\SteamApps\common\sonic generations\SonicGenerations.exe FirewallRules: [{03F357C3-F4F9-42D2-9CC7-C3BBC87617F0}] => (Allow) D:\Steam\SteamApps\common\call of duty black ops\BlackOpsMP.exe FirewallRules: [{2FB4D31F-DA64-4118-B6C2-1871384361AD}] => (Allow) D:\Steam\SteamApps\common\call of duty black ops\BlackOpsMP.exe FirewallRules: [{434898D3-A2AC-4FA3-9630-992C47DBB661}] => (Allow) D:\Steam\SteamApps\common\call of duty black ops\BlackOps.exe FirewallRules: [{EBF6B8D5-2600-45DC-BEC0-4B6AC22F87DC}] => (Allow) D:\Steam\SteamApps\common\call of duty black ops\BlackOps.exe FirewallRules: [{240A98B3-B182-4C06-ADFF-ECAAB022C20E}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [{ECE9510E-704E-4C7F-A671-8FEE1818A8C3}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [{646AD78E-A057-47CA-AEA7-CCB54A1DEC51}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5sp.exe FirewallRules: [{2DA560C6-A96C-4C2B-8821-CE74F29B68A7}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5sp.exe FirewallRules: [{CAA7684D-262B-4C37-B9A2-60561E278070}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\Support\EA Help\Electronic_Arts_Technical_Support.htm FirewallRules: [{73BEE2E6-6996-4678-958E-FA87E7ECEFAA}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\Support\EA Help\Electronic_Arts_Technical_Support.htm FirewallRules: [{831DDFD2-3A20-4E07-82F5-720128D7783A}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe FirewallRules: [{DA9427E8-2E71-4766-B0E2-244C80D5907A}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe FirewallRules: [{A5870B91-1528-4BE6-A27D-57857E5BC54E}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe FirewallRules: [{D3071468-563C-4197-B938-A5DAB8B4437E}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe FirewallRules: [{69D0E0BD-0C5D-4CFC-BB63-9ACC4D111300}] => (Allow) D:\Steam\SteamApps\common\brink\brink.exe FirewallRules: [{7DDEBBDB-C70A-4B11-BE90-E606AB051808}] => (Allow) D:\Steam\SteamApps\common\brink\brink.exe FirewallRules: [{B05CA184-5287-4FF5-9F4B-7BF56CF62804}] => (Allow) D:\Steam\SteamApps\common\mirrors edge\Support\EA Help\Electronic_Arts_Technical_Support.htm FirewallRules: [{8B8958AA-8673-45F3-A6C4-5C8B3B22808F}] => (Allow) D:\Steam\SteamApps\common\mirrors edge\Support\EA Help\Electronic_Arts_Technical_Support.htm FirewallRules: [{9D0C19E2-06DB-4637-8522-A2DB0ED62415}] => (Allow) D:\Steam\SteamApps\common\mirrors edge\Binaries\MirrorsEdge.exe FirewallRules: [{BD382F30-E56E-481E-8C21-3E64B08446FD}] => (Allow) D:\Steam\SteamApps\common\mirrors edge\Binaries\MirrorsEdge.exe FirewallRules: [{AC91DB96-E876-4147-A008-0E53632E987F}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe FirewallRules: [{2FF19A27-68A7-41DE-A465-26B192D484E8}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe FirewallRules: [{4C618471-2D66-4D57-B1C1-D5E45B549539}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 2\iw4sp.exe FirewallRules: [{C0DA58B3-B81E-4063-8862-6EB3C4F4E233}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 2\iw4sp.exe FirewallRules: [{972EA344-D41F-48B7-B8A5-3EDF4565F9EE}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{943CE081-1573-4C5D-BFA4-ACE2195A2EB5}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{47CDD316-FE6E-4C77-AAF7-57553CB1BD96}] => (Allow) D:\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{D3F5C6B5-CEBA-4CDD-B571-00FC478212AE}] => (Allow) D:\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{BE0EE4C5-5397-450F-BBA3-3484027B561A}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{EF4A4322-CD5B-4A0A-B278-7A92A4638216}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{4EECFB13-8AB8-4340-9E5F-372B8C69C303}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{A7D73273-AFC4-4D6C-9E43-5CD118172A46}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{2E3137FB-EA41-45D0-916E-5E0CE231A2AB}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{5D8E075E-DEA4-4388-BC88-EC27C72F91A1}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [UDP Query User{8FC52D5D-85F1-4E3F-9EA4-2EB02A71D23B}D:\program files (x86)\ubisoft\related designs\anno 2070\autopatcher.exe] => (Allow) D:\program files (x86)\ubisoft\related designs\anno 2070\autopatcher.exe FirewallRules: [TCP Query User{DA2EE183-847C-462B-A47A-822ABECD4C5B}D:\program files (x86)\ubisoft\related designs\anno 2070\autopatcher.exe] => (Allow) D:\program files (x86)\ubisoft\related designs\anno 2070\autopatcher.exe FirewallRules: [{0F557997-9E48-4BA6-932A-E2BE1B7F00DB}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{5FE4822D-D799-4E68-96A2-FCD6F37581DB}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{C209C891-E1B7-4AB2-8C07-C5C2495E25F6}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\InitEngine.exe FirewallRules: [{2D7D3052-C79F-48A0-B1BD-40E36F93EA69}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\InitEngine.exe FirewallRules: [{339D0845-89D1-45A0-9A61-E0B959BB0652}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\AutoPatcher.exe FirewallRules: [{3520C5D3-16BE-45A4-A18D-931041D9964B}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\AutoPatcher.exe FirewallRules: [{8D2631FB-1C41-4321-83B9-F474EA3AADD5}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\Anno5.exe FirewallRules: [{5D27BB2E-261E-4D16-9B0A-F3561EEA66DA}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\Anno5.exe FirewallRules: [{E451C8A5-E743-4536-9D1D-B5AB75F6F541}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{75080D4C-6ECC-4D97-BD6A-8920B3E0D567}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{26765480-9E68-4603-99D9-91A3E81B2E86}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{CD8C986A-DEAE-4AC4-B1ED-0D00380571E4}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{B1173632-00BA-4841-9F9F-C172B45A0900}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{4900661D-824D-4DEF-8127-8922A420776C}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{5897024F-0298-4ADE-AEDA-E681457B461A}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{FA410AF6-6F4E-43D4-8371-EB1CF91D3E0C}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{220A38E3-44A8-4726-97F6-54CFEBD23523}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{AD793FA4-726B-4A34-B29B-91EE9AB5E305}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{6993F139-0C0C-4A56-8938-E54B8BFF61DF}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{A44C17CF-7BA0-41B5-ABAC-8A7030E9CA44}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{B80E5AB1-A21C-4DF7-BE3A-146D2805776D}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{48E91C91-3DE7-4642-B890-B0883AE75035}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{C1DBB8AA-7571-4680-88E0-B4122501A268}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{6DB23026-D6A4-4702-97FC-ED071E9060AA}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{C809FE0B-D73E-4CB4-8900-E987D349A59D}] => (Allow) D:\Steam\SteamApps\common\Source SDK Base\hl2.exe FirewallRules: [{9353BCA6-4F94-4D5B-ABE8-1305D02CCC72}] => (Allow) D:\Steam\SteamApps\common\Source SDK Base\hl2.exe FirewallRules: [{9E365BCF-98CC-457F-919E-EA3832CE311D}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{92DA579F-5AF5-4ACA-A1C9-B8C3496BD61D}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{86BDFBBB-608D-458A-8D26-667B759D0459}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{A978ED48-0609-4D1A-9AB0-9E633701EA29}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{DEFC5D29-A859-474D-B671-6B352D1B4458}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{E82C04AC-0FAF-487A-BD9D-FD39E535C093}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{92DF0DB3-C0CB-4705-AC81-B7309029612A}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{0DB8867C-123D-4861-955C-515F848D75AD}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{620A36D9-08CA-4086-8B77-B7DFF6F69051}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{C0DF22F0-A4CC-4A69-8C42-DA0C7FCB1147}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{C4D21E05-8CF8-4C9D-BC92-678230F192B0}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{05DA1206-570D-42AE-9B3B-ADAACB02052A}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{8863007B-742D-4F4B-85DA-619B054469C4}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{70ACE0A5-25F0-4271-8280-A3CD761EBF81}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{DF607514-48F7-439E-9526-0302E6A9B94B}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{DBBBBA86-0AA4-47F0-A280-36292DC43909}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{425C6FE9-D823-4B87-A829-88CA1F6DEE43}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{37A28CCA-8705-4646-BE1E-5D59D8AD808C}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{06B0641E-D5D0-4063-8F89-C6158FBDF3B7}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{F84C072C-6D59-4BD8-B5BB-3DCD85641047}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [UDP Query User{9F9283CC-09DA-4D0A-A3DF-6F9B929FF960}C:\users\nils geiger\appdata\local\jdownloader v2.0\jdownloader2.exe] => (Allow) C:\users\nils geiger\appdata\local\jdownloader v2.0\jdownloader2.exe FirewallRules: [TCP Query User{824E0EC0-AD86-44C7-B4D4-EC116DB75962}C:\users\nils geiger\appdata\local\jdownloader v2.0\jdownloader2.exe] => (Allow) C:\users\nils geiger\appdata\local\jdownloader v2.0\jdownloader2.exe FirewallRules: [{18DE8D10-1891-4C8A-95BA-F567744FCCFD}] => (Block) %ProgramFiles%\Sony\Vegas Pro 12.0\vegas120.exe FirewallRules: [{A29AAF68-BB2A-4AF0-8F19-F4FFD235E6A9}] => (Block) %ProgramFiles%\Sony\Vegas Pro 12.0\ApplicationRegistration.exe FirewallRules: [{A5037E50-7568-4C00-B1A1-67ADE8C576D6}] => (Allow) C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{FC9A188A-7A85-444B-BABE-8EB97D726439}] => (Allow) C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{53C698C3-EF3A-4F2D-9893-5F2C2BB1A5B1}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [{907BE00C-5510-4269-B631-1E4AFED42C9B}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [{06C9A383-8B1B-4DAA-945C-42BAD4E56C7C}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{3737BBCE-EEB6-4F49-AED7-764015D3F9D4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{015BD1FE-CA54-4E17-AF79-2C4B562DD28C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{D752C393-8EB1-454E-9E11-16F9592118BD}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [TCP Query User{7A50F123-FB55-4A00-A16C-3E2349D0C13E}C:\program files (x86)\dvbviewer\dvbviewer.exe] => (Allow) C:\program files (x86)\dvbviewer\dvbviewer.exe FirewallRules: [UDP Query User{7ADBFA56-831D-438E-B559-388BCC636CB8}C:\program files (x86)\dvbviewer\dvbviewer.exe] => (Allow) C:\program files (x86)\dvbviewer\dvbviewer.exe FirewallRules: [{F567813B-E02F-4E4F-A373-341952CBFE16}] => (Allow) C:\Users\Nils Geiger\AppData\Local\Apps\2.0\B1XZ4CJD.GOC\D2NK1YQ7.NT4\curs..tion_0000000000000000_0005.0001_d3a016ce8f6b6226\CurseClient.exe FirewallRules: [{C1A360C0-130B-42B5-8BED-CBCED062B9F4}] => (Allow) C:\Users\Nils Geiger\AppData\Local\Apps\2.0\B1XZ4CJD.GOC\D2NK1YQ7.NT4\curs..tion_0000000000000000_0005.0001_d3a016ce8f6b6226\CurseClient.exe FirewallRules: [{E9C92E37-DCB1-4EC3-BA42-3C59B6F313C2}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{2DEDEAEA-F057-4FD1-BB31-C9B99CFCF681}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{A558E858-AD33-4BD5-A871-0E702DEF31D5}] => (Allow) LPort=2869 FirewallRules: [{B21770D5-A0DD-48FB-876B-E5869F3A64BF}] => (Allow) LPort=1900 FirewallRules: [TCP Query User{F0A1C1A1-F6BA-42DD-98DE-3260F422F86E}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [UDP Query User{3031173B-3622-4226-A7BD-A79CDBB3A656}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [TCP Query User{069A4A81-C445-40C8-B201-F02CA45A1E58}C:\program files (x86)\unified remote\remoteserver.exe] => (Allow) C:\program files (x86)\unified remote\remoteserver.exe FirewallRules: [UDP Query User{D4D8FC65-5C47-4C3C-ABE9-DE23F365A2E3}C:\program files (x86)\unified remote\remoteserver.exe] => (Allow) C:\program files (x86)\unified remote\remoteserver.exe FirewallRules: [{B0EBCA6A-D8FC-4DCD-A6C0-045400D040F0}] => (Allow) %APPDATA%\.minecraft\Minecraft.exe FirewallRules: [{E45BE3DE-4826-4495-AA3C-112C73A74CD5}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{3B13C231-4E6E-4BF2-9DD3-070137FC079C}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{A837B188-1E31-4D83-B6FC-8DDDB37A0E19}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{B55D1DC2-25B6-4DF1-9836-AEFEDE07E6B7}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{2B31D2B5-0C9D-4C6B-BDBC-4C7764F82EFF}] => (Allow) D:\Steam\SteamApps\common\sonic generations\SonicGenerations.exe FirewallRules: [{462B9BC8-6B0D-4BDD-8F29-7F98A22C974F}] => (Allow) D:\Steam\SteamApps\common\sonic generations\SonicGenerations.exe FirewallRules: [{EDFD1481-BE09-4755-8177-C243097910C3}] => (Allow) D:\Steam\SteamApps\common\sonic generations\ConfigurationTool.exe FirewallRules: [{434AB96D-5C96-478C-B994-C0F2BDFCCC26}] => (Allow) D:\Steam\SteamApps\common\sonic generations\ConfigurationTool.exe FirewallRules: [TCP Query User{75BA6026-EBDB-43AF-BC94-0D2C9A82D785}D:\steam\steam.exe] => (Allow) D:\steam\steam.exe FirewallRules: [UDP Query User{6A60C30A-4B2B-4202-BDAB-22CBE4CCC7D1}D:\steam\steam.exe] => (Allow) D:\steam\steam.exe FirewallRules: [{8720B008-0041-4AB1-86B9-A7A09B32CF60}] => (Allow) D:\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{3D273E58-AF32-471F-93D7-A95B58A87554}] => (Allow) D:\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [TCP Query User{BE8F908B-7E85-4C32-9DDD-988567035DD3}D:\tmunitedforever\tmforever.exe] => (Allow) D:\tmunitedforever\tmforever.exe FirewallRules: [UDP Query User{C0110A8D-62A1-4146-9049-AB0ADF808091}D:\tmunitedforever\tmforever.exe] => (Allow) D:\tmunitedforever\tmforever.exe FirewallRules: [TCP Query User{F5395AC5-E651-4442-A181-C4E45A557BF8}C:\program files (x86)\pando networks\media booster\pmb.exe] => (Allow) C:\program files (x86)\pando networks\media booster\pmb.exe FirewallRules: [UDP Query User{DA22D8CC-7886-4BC9-A40A-2CDA363404CB}C:\program files (x86)\pando networks\media booster\pmb.exe] => (Allow) C:\program files (x86)\pando networks\media booster\pmb.exe FirewallRules: [TCP Query User{592A3D55-58E4-4382-8A0F-E371A020177A}D:\steamless counterstrikesource pack\hl2.exe] => (Allow) D:\steamless counterstrikesource pack\hl2.exe FirewallRules: [UDP Query User{EA1C22BD-7FE1-47CD-88B8-FEAF70F4264D}D:\steamless counterstrikesource pack\hl2.exe] => (Allow) D:\steamless counterstrikesource pack\hl2.exe FirewallRules: [TCP Query User{C14DD6DD-7A97-46E2-AF47-CB29D011E138}D:\call of duty 4\iw3mp.exe] => (Allow) D:\call of duty 4\iw3mp.exe FirewallRules: [UDP Query User{03D36B9A-68DF-4798-9AC5-A23638F509BE}D:\call of duty 4\iw3mp.exe] => (Allow) D:\call of duty 4\iw3mp.exe FirewallRules: [TCP Query User{F30BB3D5-68E6-4A00-93A1-27400EA0443F}D:\ea games\need for speed underground 2\speed2.exe] => (Allow) D:\ea games\need for speed underground 2\speed2.exe FirewallRules: [UDP Query User{D398F51B-E8D4-4240-B830-33B36E26F204}D:\ea games\need for speed underground 2\speed2.exe] => (Allow) D:\ea games\need for speed underground 2\speed2.exe FirewallRules: [TCP Query User{B545F2BD-3A6A-41BC-8AF2-1C658CC0455A}D:\warcraft iii frozen throne esk\war3.exe] => (Allow) D:\warcraft iii frozen throne esk\war3.exe FirewallRules: [UDP Query User{3B75814F-C14A-4A15-8F72-2C5A82149F9C}D:\warcraft iii frozen throne esk\war3.exe] => (Allow) D:\warcraft iii frozen throne esk\war3.exe FirewallRules: [{E254D2A1-D010-4B19-A0E5-F0357C5741D0}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{490376D9-AC52-4C6B-BD4E-6F785014DE32}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{C732DE59-5EBB-4438-82A5-6D9F174D328B}] => (Allow) C:\Program Files (x86)\Intel\Extreme Tuning Utility\Client\PerfTune.exe FirewallRules: [TCP Query User{352C07DF-4385-45D7-8E25-89CD9D8DFA40}D:\ubisoft\related designs\anno 1404\tools\anno4web.exe] => (Block) D:\ubisoft\related designs\anno 1404\tools\anno4web.exe FirewallRules: [UDP Query User{F379E485-3DAA-4721-9538-7FD6D3FB221C}D:\ubisoft\related designs\anno 1404\tools\anno4web.exe] => (Block) D:\ubisoft\related designs\anno 1404\tools\anno4web.exe FirewallRules: [TCP Query User{11093953-F7F0-4C9A-9840-B80C26E6D11A}D:\ubisoft\related designs\anno 1404\tools\addonweb.exe] => (Block) D:\ubisoft\related designs\anno 1404\tools\addonweb.exe FirewallRules: [UDP Query User{01D48875-EEEF-49DF-95D2-0291CDB161D1}D:\ubisoft\related designs\anno 1404\tools\addonweb.exe] => (Block) D:\ubisoft\related designs\anno 1404\tools\addonweb.exe FirewallRules: [TCP Query User{6810C979-A35A-45DE-B53D-5C036D52903F}D:\ubisoft\related designs\anno 1404\addon.exe] => (Block) D:\ubisoft\related designs\anno 1404\addon.exe FirewallRules: [UDP Query User{10949702-FD43-4E79-8AC6-B464021BEC26}D:\ubisoft\related designs\anno 1404\addon.exe] => (Block) D:\ubisoft\related designs\anno 1404\addon.exe FirewallRules: [{398048F3-EF4D-49D1-A81B-34C6F5145FAB}] => (Allow) D:\Steam\SteamApps\common\worms reloaded\WormsReloaded.exe FirewallRules: [{2E01D95E-D00D-4D66-B1DB-8ECF73FA7933}] => (Allow) D:\Steam\SteamApps\common\worms reloaded\WormsReloaded.exe FirewallRules: [TCP Query User{24915C0E-982C-4EC6-8F87-F08DA44DB896}D:\worms armageddon\wa.exe] => (Allow) D:\worms armageddon\wa.exe FirewallRules: [UDP Query User{F71195E4-A9C9-451E-894A-894F10B81F3F}D:\worms armageddon\wa.exe] => (Allow) D:\worms armageddon\wa.exe FirewallRules: [{4740D0DD-AAC8-4F5A-A9CF-7A039F94B1B5}] => (Allow) C:\Program Files (x86)\DVBViewer\DVBVservice.exe FirewallRules: [{5D00410B-500C-4056-B066-6A3E91C41AFF}] => (Allow) C:\Program Files (x86)\DVBViewer\DVBVservice.exe FirewallRules: [{0B04846D-560C-40FC-BDA1-D6F1CA80B635}] => (Allow) C:\Program Files (x86)\MyPublicWiFi\MyPublicWiFi.exe FirewallRules: [{0E80FD5A-1536-4876-86BB-ACEFA936553E}] => (Allow) C:\Program Files (x86)\MyPublicWiFi\MyPublicWiFi.exe FirewallRules: [{27780477-7D28-46E9-8BFF-0AE0E1598D38}] => (Allow) LPort=8082 FirewallRules: [{7C24835D-262D-45AF-9DD8-0A0A220B23B1}] => (Allow) LPort=8082 FirewallRules: [TCP Query User{B6CEABB7-12A6-4F5C-A398-3600D19D01CF}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{3C0C3B20-8570-4724-8378-AADD3384E65F}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [TCP Query User{94500151-0AD8-4047-8CE8-9C3DCF3B6DCB}C:\program files (x86)\unified remote\remoteserver.exe] => (Allow) C:\program files (x86)\unified remote\remoteserver.exe FirewallRules: [UDP Query User{8E9B25FC-AF12-4B88-9671-0AF8600E7F27}C:\program files (x86)\unified remote\remoteserver.exe] => (Allow) C:\program files (x86)\unified remote\remoteserver.exe FirewallRules: [{A1F70865-07BE-4D47-9E72-CD1B8577D568}] => (Allow) C:\Program Files (x86)\X-Mirage\x-mirage.exe FirewallRules: [{CAEAD36F-CE2A-4DDE-8E97-800EE139DFD7}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Dev App\GunsOfIcarusOnline.exe FirewallRules: [{288E7C4B-82FF-4FA4-B09D-81105C010CF2}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Dev App\GunsOfIcarusOnline.exe FirewallRules: [{B8628407-B918-411D-99C9-48B8E8D465EC}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{A3E8A168-CB6D-4E7D-B578-AAE1C5EEF63A}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{CEE53357-A73A-40E3-AC43-2E6CC468319B}] => (Allow) D:\Steam\SteamApps\common\FaceRig\Bin\FaceRig.exe FirewallRules: [{C94F3E99-E2F5-4AF4-A41A-0A27BD144558}] => (Allow) D:\Steam\SteamApps\common\FaceRig\Bin\FaceRig.exe FirewallRules: [{123130AE-8554-4A55-A0A6-FC8EC4E8659F}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{22E48FFE-4F35-440C-A7C9-74E1EACAD0D0}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [TCP Query User{E8B460BA-4A33-4FA7-98BD-835D75D4775F}D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe] => (Allow) D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe FirewallRules: [UDP Query User{E19634EF-8427-467A-88B5-1F160DBABF3A}D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe] => (Allow) D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe FirewallRules: [{90D81BE3-4691-40BF-A490-6DEF5277A60C}] => (Allow) D:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{2724F276-1713-46E8-AC0A-1D45581BBE76}] => (Allow) D:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{B247FBE5-F2E8-45CC-A7AF-7A669D3C646B}] => (Allow) D:\Steam\SteamApps\common\Life is Feudal Your Own\yo_cm_client.exe FirewallRules: [{3D9D3BC2-2767-4F3B-9FFB-6D15AA10AB37}] => (Allow) D:\Steam\SteamApps\common\Life is Feudal Your Own\yo_cm_client.exe FirewallRules: [TCP Query User{4C76A550-C656-4D85-961D-C6ED51C5979C}D:\steam\steamapps\common\life is feudal your own\server\cm_yo_server.exe] => (Allow) D:\steam\steamapps\common\life is feudal your own\server\cm_yo_server.exe FirewallRules: [UDP Query User{A7DDC59C-FC5F-4F3C-B107-7850611FAEF8}D:\steam\steamapps\common\life is feudal your own\server\cm_yo_server.exe] => (Allow) D:\steam\steamapps\common\life is feudal your own\server\cm_yo_server.exe FirewallRules: [TCP Query User{E62EF870-6451-4EED-97F9-6970CDACDEB7}C:\users\nils geiger\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\nils geiger\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{706B1811-27C7-48A2-A103-013D03E7DD57}C:\users\nils geiger\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\nils geiger\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{9CE96289-254E-4F45-8E99-468EEB73C3F0}] => (Allow) D:\Steam\SteamApps\common\Dream\Binaries\Win32\Dream.exe FirewallRules: [{76873EC8-F08F-46F0-B2BC-A19A2866AB72}] => (Allow) D:\Steam\SteamApps\common\Dream\Binaries\Win32\Dream.exe FirewallRules: [{240C3B7C-9AD1-4198-BD4B-FF68E9C8E76E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{B66159B0-5D36-4CE5-B66D-73C5F554ADD0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{19CDFEA5-F3E6-4898-B17C-BC0EED9732D6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{09A034BB-009F-4BDF-A967-80B6A8255B73}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{C1C97C88-EB5F-46F1-859A-E150819CB6ED}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{25FA7513-B525-40BE-98FB-31D58CC5BDC2}C:\program files (x86)\mouseserver\mouseserver.exe] => (Allow) C:\program files (x86)\mouseserver\mouseserver.exe FirewallRules: [UDP Query User{B2BB9842-92E2-4A18-9BC7-EA9451D21592}C:\program files (x86)\mouseserver\mouseserver.exe] => (Allow) C:\program files (x86)\mouseserver\mouseserver.exe FirewallRules: [{3A997356-6A9B-465A-A789-A91478BBF19A}] => (Allow) D:\Steam\SteamApps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{20F88C23-3C06-4651-92B8-3746C6696E61}] => (Allow) D:\Steam\SteamApps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{D44E2637-1E88-4351-8002-2237D25AE286}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\TriDef 3D\TriDef\TriDefMediaPlayer\TriDefMediaPlayer.exe] => Enabled:TriDef 3D Media Player StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service |
10.08.2015, 19:18 | #6 |
| Skype Malware/ Spam Addition.txt Teil 2 Code:
ATTFilter ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/10/2015 06:32:01 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Bei der Aktivierung der App „Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/10/2015 06:31:56 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Bei der Aktivierung der App „Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/10/2015 05:46:48 PM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Es wird bereits eine Instanz des Dienstes ausgeführt Error: (08/10/2015 05:46:48 PM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Das Handle ist ungültig Error: (08/10/2015 05:34:58 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_f41f7b285750ef43.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_f41f7b285750ef43.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_f41f7b285750ef43.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_f41f7b285750ef43.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_3bccb1ff6bcd1849.manifest. Error: (08/10/2015 01:04:26 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/09/2015 11:40:50 PM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Es wird bereits eine Instanz des Dienstes ausgeführt Error: (08/09/2015 11:40:50 PM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Das Handle ist ungültig Error: (08/09/2015 11:36:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Bei der Aktivierung der App „Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/09/2015 11:20:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: svchost.exe_DeviceAssociationService, Version: 10.0.10240.16384, Zeitstempel: 0x559f38cb Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10240.16392, Zeitstempel: 0x55a864a2 Ausnahmecode: 0xc0000374 Fehleroffset: 0x00000000000ea28c ID des fehlerhaften Prozesses: 0x23c Startzeit der fehlerhaften Anwendung: 0xsvchost.exe_DeviceAssociationService0 Pfad der fehlerhaften Anwendung: svchost.exe_DeviceAssociationService1 Pfad des fehlerhaften Moduls: svchost.exe_DeviceAssociationService2 Berichtskennung: svchost.exe_DeviceAssociationService3 Vollständiger Name des fehlerhaften Pakets: svchost.exe_DeviceAssociationService4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: svchost.exe_DeviceAssociationService5 Systemfehler: ============= Error: (08/10/2015 06:48:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (08/10/2015 06:48:48 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (08/10/2015 05:42:51 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/10/2015 05:42:51 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/10/2015 05:42:50 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/10/2015 05:42:49 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/10/2015 05:42:49 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/10/2015 05:42:48 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/10/2015 05:42:47 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/10/2015 05:42:47 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Microsoft Office: ========================= Error: (08/10/2015 06:32:01 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp-2144927148 Error: (08/10/2015 06:31:56 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp-2144927148 Error: (08/10/2015 05:46:48 PM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Es wird bereits eine Instanz des Dienstes ausgeführt Error: (08/10/2015 05:46:48 PM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Das Handle ist ungültig Error: (08/10/2015 05:34:58 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_f41f7b285750ef43.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_3bccb1ff6bcd1849.manifestC:\Program Files (x86)\Samsung\SideSync3\SideSync3.exe Error: (08/10/2015 01:04:26 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2144927141 Error: (08/09/2015 11:40:50 PM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Es wird bereits eine Instanz des Dienstes ausgeführt Error: (08/09/2015 11:40:50 PM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Das Handle ist ungültig Error: (08/09/2015 11:36:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp-2144927148 Error: (08/09/2015 11:20:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: svchost.exe_DeviceAssociationService10.0.10240.16384559f38cbntdll.dll10.0.10240.1639255a864a2c000037400000000000ea28c23c01d0d282231f7248C:\WINDOWS\system32\svchost.exeC:\WINDOWS\SYSTEM32\ntdll.dll72c42553-0f12-464e-8690-10fa819e66de CodeIntegrity: =================================== Date: 2015-08-06 21:51:19.875 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-06 21:51:19.862 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system. Date: 2015-07-30 19:29:36.558 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.497 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.480 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.467 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.453 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.441 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.428 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.415 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== Processor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz Prozentuale Nutzung des RAM: 38% Installierter physikalischer RAM: 8156.87 MB Verfügbarer physikalischer RAM: 5034.05 MB Summe virtueller Speicher: 8356.87 MB Verfügbarer virtueller Speicher: 3806.26 MB ==================== Laufwerke ================================ Drive c: (Windows 8) (Fixed) (Total:465.76 GB) (Free:266.63 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)] Drive d: (Spiele) (Fixed) (Total:781.25 GB) (Free:228.92 GB) NTFS Drive e: (Multimedia) (Fixed) (Total:1081.64 GB) (Free:741.42 GB) NTFS Drive i: (Festplatte Nils Geiger) (Fixed) (Total:931.51 GB) (Free:834.55 GB) NTFS Drive v: (Filme und Videos) (Fixed) (Total:931.51 GB) (Free:38.65 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: E47966F8) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 465.8 GB) (Disk ID: 19DF990A) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 04A7994E) Partition: GPT. ======================================================== Disk: 3 (Size: 931.5 GB) (Disk ID: 514EE0B8) Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Ende von log ============================ |
11.08.2015, 16:34 | #7 |
/// the machine /// TB-Ausbilder | Skype Malware/ Spam Erstmal das gecrackte Adobe deinstallieren, vorher gibt es keinen Support.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
11.08.2015, 17:12 | #8 |
| Skype Malware/ Spam Sorry, war noch ein Überbleibsel. Wurde erledigt. Soll ich neue Log Dateien anlegen? |
12.08.2015, 09:04 | #9 |
/// the machine /// TB-Ausbilder | Skype Malware/ Spam Ja bitte, mit Addition
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
12.08.2015, 14:04 | #10 |
| Skype Malware/ Spam FRST Teil 1 Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:11-08-2015 02 durchgeführt von Nils Geiger (Administrator) auf NILS-PC (12-08-2015 15:01:33) Gestartet von C:\Users\Nils Geiger\Downloads Geladene Profile: Nils Geiger (Verfügbare Profile: Nils Geiger) Platform: Windows 10 Pro (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Stardock Software, Inc) C:\Program Files (x86)\Stardock\DeskScapes8\DS8Srv.exe (Stardock Corporation) C:\Program Files (x86)\Stardock\WindowBlinds\WBSrv.exe (Stardock Corporation) C:\Program Files (x86)\Stardock\WindowFX\WindowFXSRV.exe () C:\Program Files (x86)\Stardock\WindowFX\wfx32.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe (Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe (DTS) C:\Program Files\Realtek\Audio\HDA\DTSAudioService64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (CM & V) C:\Program Files (x86)\DVBViewer\DVBVservice.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (My Digital Life Forums) C:\Windows\KMSServerService\KMS Server Service.exe (Atheros Communications, Inc.) C:\Program Files (x86)\NETGEAR\WNA1100\jswpbapi.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe (DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Unified Intents AB) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe (Winstep Software Technologies) C:\Program Files (x86)\Winstep\WsxService.exe () C:\Program Files (x86)\NETGEAR\WNA1100\WifiSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Stardock Software, Inc) C:\Program Files (x86)\Stardock\DeskScapes8\Deskscapes64.exe (Microsoft Corporation) C:\Windows\System32\sihost.exe (Microsoft Corporation) C:\Windows\System32\taskhostw.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Users\Nils Geiger\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (CM&V Hackbart) C:\Program Files (x86)\DVBViewer\DVBVCtrl.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Samsung Electronics.) C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe (Stardock Corporation) C:\Program Files (x86)\Stardock\CursorFX\CursorFX.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe (Microsoft Corporation) C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\OneDrive.exe () C:\Program Files\Rainmeter\Rainmeter.exe (Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe (Microsoft Corporation) C:\Windows\System32\fontdrvhost.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.87.58.0\OverwolfHelper.exe (Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.87.58.0\OverwolfHelper64.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\Purplizer.exe () C:\Program Files (x86)\RocketDock\RocketDock.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8492800 2015-06-24] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_DTS] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-24] (Realtek Semiconductor) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [10464536 2014-07-02] (Logitech Inc.) HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454144 2013-01-31] (Saitek) HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2013-01-31] (Saitek) HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation) HKLM\...\Run: [THXCfg64] => C:\WINDOWS\system32\RunDLL32.exe C:\WINDOWS\system32\THXCfg64.dll,RunDLLEntry THXCfg64 HKLM\...\Run: [vksts] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe [168552 2011-05-26] (Cambridge Silicon Radio Limited) HKLM\...\Run: [HarmonyUserStartup] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe [37504 2011-05-26] (Cambridge Silicon Radio Limited) HKLM\...\Run: [HarmonyHFPSkypePlugin] => C:\Program Files (x86)\CSR\CSR Harmony Wireless Software Stack\HarmonyHFPSkypePlugin.exe [147080 2011-05-26] (Cambridge Silicon Radio Limited) HKLM\...\Run: [TrayApplication] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe [619136 2011-05-26] (Cambridge Silicon Radio Limited) HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634896 2015-07-24] (NVIDIA Corporation) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170280 2015-07-11] (Apple Inc.) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-05-15] (Apple Inc.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [85600 2013-12-13] (Nullsoft, Inc.) HKLM-x32\...\Run: [PowerDVD14Agent] => C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe [795672 2014-04-28] (CyberLink Corp.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-21] (Avast Software s.r.o.) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-06-17] (Apple Inc.) HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [448520 2015-06-24] (DivX, LLC) HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861640 2015-06-27] (DivX, LLC) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) Winlogon\Notify\WB: C:\Program Files (x86)\Stardock\WindowBlinds\fast64.dll [X] Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation) HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [RocketDock] => C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] () HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [CubeDesktopNXT] => C:\Program Files (x86)\CubeDesktop NXT\TiB.CubeDesktop.exe [2548224 2013-04-25] (Thinking Minds Building Bytes) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Steam] => D:\Steam\steam.exe [2899136 2015-08-07] (Valve Corporation) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [HP Officejet 7500 E910 (NET)] => C:\Program Files\HP\HP Officejet 7500 E910\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [DVBV Service Ctrl] => C:\Program Files (x86)\DVBViewer\DVBVCtrl.exe [66560 2013-12-23] (CM&V Hackbart) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Unified Remote v2] => C:\Program Files (x86)\Unified Remote\RemoteServer.exe [333008 2014-06-03] (Unified Intents AB) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Amazon Music] => C:\Users\Nils Geiger\AppData\Local\Amazon Music\Amazon Music Helper.exe [6277952 2014-12-08] () HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53661824 2015-07-28] (Skype Technologies S.A.) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8358680 2015-06-01] (Piriform Ltd) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Unified Remote V3] => C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe [4217552 2015-01-13] (Unified Intents AB) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [CursorFX] => C:\Program Files (x86)\Stardock\CursorFX\CursorFX.exe [624296 2015-03-16] (Stardock Corporation) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Spotify Web Helper] => C:\Users\Nils Geiger\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2018360 2015-08-11] (Spotify Ltd) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [41200 2015-07-19] (Overwolf LTD) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Dropbox Update] => C:\Users\Nils Geiger\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-07-14] (Dropbox, Inc.) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [OneDrive] => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\OneDrive.exe [402632 2015-07-29] (Microsoft Corporation) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Run: [Spotify] => C:\Users\Nils Geiger\AppData\Roaming\Spotify\Spotify.exe [7675448 2015-08-11] (Spotify Ltd) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\RunOnce: [Uninstall C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CineForm Status.lnk [2015-01-11] ShortcutTarget: CineForm Status.lnk -> C:\Program Files (x86)\CineForm\Tools\GoProCineFormStatusViewer.exe (GoPro) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GoPro Importer.lnk [2014-11-19] ShortcutTarget: GoPro Importer.lnk -> C:\Program Files (x86)\GoPro\Tools\Importer\GoPro Importer.exe (GoPro) Startup: C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2014-01-17] ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe () Startup: C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rocketdock.bat [2014-11-18] () Startup: C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tintenwarnungen überwachen - HP Officejet 7500 E910 (Netzwerk).lnk [2013-06-02] ShortcutTarget: Tintenwarnungen überwachen - HP Officejet 7500 E910 (Netzwerk).lnk -> C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPStatusBL.dll (Hewlett-Packard Co.) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-05-06] (Avast Software s.r.o.) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-29] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-29] (Microsoft Corporation) GroupPolicyScripts: Gruppenrichtline erkannt <======= ACHTUNG CHR HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\SOFTWARE\Policies\Google: Richtlinienbeschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-15] (Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-15] (Oracle Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-15] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-15] (Oracle Corporation) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{d70fde9c-5b01-4030-86c7-4538b1fb3a3c}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{e328989f-9700-4fd0-ad89-817257ef6a5a}: [DhcpNameServer] 192.168.42.129 FireFox: ======== FF ProfilePath: C:\Users\Nils Geiger\AppData\Roaming\Mozilla\Firefox\Profiles\hsbqrsni.default-1432296395773 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-15] () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.) FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-15] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-15] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.2 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Keine Datei] FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-15] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-01-06] () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2015-06-29] (DivX, LLC) FF Plugin-x32: @esn/npbattlelog,version=2.3.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll [2013-11-21] (EA Digital Illusions CE AB) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-08-08] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-08-08] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-15] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-15] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 -> C:\Program Files (x86)\Winamp Detect\npwachk.dll [2013-12-13] (Nullsoft, Inc.) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-09-27] (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.2 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin HKU\S-1-5-21-1160257173-3920074079-2544844589-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Nils Geiger\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-09-05] (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-1160257173-3920074079-2544844589-1001: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-09-27] (Pando Networks) FF Plugin HKU\S-1-5-21-1160257173-3920074079-2544844589-1001: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2015-07-07] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2015-07-07] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2015-07-07] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2015-07-07] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2015-07-07] (Apple Inc.) FF Extension: Cookies Manager+ - C:\Users\Nils Geiger\AppData\Roaming\Mozilla\Firefox\Profiles\hsbqrsni.default-1432296395773\Extensions\{bb6bc1bb-f824-4702-90cd-35e2fb24f25d} [2015-07-31] FF Extension: ProxTube - Unblock YouTube - C:\Users\Nils Geiger\AppData\Roaming\Mozilla\Firefox\Profiles\hsbqrsni.default-1432296395773\Extensions\ich@maltegoetz.de.xpi [2015-05-22] FF Extension: Adblock Plus - C:\Users\Nils Geiger\AppData\Roaming\Mozilla\Firefox\Profiles\hsbqrsni.default-1432296395773\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-05-22] Chrome: ======= CHR Profile: C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2012-11-08] CHR Extension: (Google Drive) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-11-08] CHR Extension: (Web Developer) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbameneiokkgbdmiekhjnmfkcnldhhm [2014-07-25] CHR Extension: (YouTube) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-11-08] CHR Extension: (Adblock Plus) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-08-11] CHR Extension: (Google Search) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-11-08] CHR Extension: (EditThisCookie) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2015-07-31] CHR Extension: (AllCast Receiver) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjbljnpdahefgnopeohlaeohgkiidnoe [2014-09-20] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-14] CHR Extension: (Chrome Web Store Payments) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-26] CHR Extension: (Gmail) - C:\Users\Nils Geiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-11-08] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AJRouter; C:\Windows\System32\AJRouter.dll [23040 2015-07-10] (Microsoft Corporation) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2012-06-01] () R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2012-06-01] (ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-17] (ASUSTeK Computer Inc.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-05-06] (Avast Software s.r.o.) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [326144 2015-07-10] (Microsoft Corporation) S3 CDPSvc; C:\Windows\System32\CDPSvc.dll [134144 2015-07-10] (Microsoft Corporation) R3 ClipSVC; C:\Windows\System32\ClipSVC.dll [658568 2015-07-29] (Microsoft Corporation) R2 CoreMessagingRegistrar; C:\Windows\system32\coremessaging.dll [808856 2015-07-29] (Microsoft Corporation) R2 CoreMessagingRegistrar; C:\Windows\SysWOW64\coremessaging.dll [510976 2015-07-29] (Microsoft Corporation) S3 DcpSvc; C:\Windows\system32\dcpsvc.dll [196096 2015-07-10] (Microsoft Corporation) R2 DeskScapes8; C:\Program Files (x86)\Stardock\DeskScapes8\ds8srv.exe [75376 2014-03-10] (Stardock Software, Inc) R3 DevQueryBroker; C:\Windows\system32\DevQueryBroker.dll [33280 2015-07-10] (Microsoft Corporation) S3 diagnosticshub.standardcollector.service; C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [27136 2015-07-10] (Microsoft Corporation) S3 DmEnrollmentSvc; C:\Windows\system32\Windows.Internal.Management.dll [267776 2015-07-10] (Microsoft Corporation) S3 DmEnrollmentSvc; C:\Windows\SysWOW64\Windows.Internal.Management.dll [193024 2015-07-10] (Microsoft Corporation) S2 dmwappushservice; C:\Windows\system32\dmwappushsvc.dll [63488 2015-07-10] (Microsoft Corporation) S2 DoSvc; C:\Windows\system32\dosvc.dll [1169408 2015-07-29] (Microsoft Corporation) S3 DsSvc; C:\Windows\System32\DsSvc.dll [143872 2015-07-10] (Microsoft Corporation) R2 DTSAudioService; C:\Program Files\Realtek\Audio\HDA\DTSAudioService64.exe [218768 2015-06-24] (DTS) R2 DVBVRecorder; C:\Program Files (x86)\DVBViewer\DVBVservice.exe [874112 2014-06-01] (CM & V) [Datei ist nicht signiert] S3 embeddedmode; C:\Windows\System32\embeddedmodesvc.dll [87040 2015-07-10] (Microsoft Corporation) S3 EntAppSvc; C:\Windows\system32\EnterpriseAppMgmtSvc.dll [275456 2015-07-10] (Microsoft Corporation) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155216 2015-07-24] (NVIDIA Corporation) S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) S3 icssvc; C:\Windows\System32\tetheringservice.dll [148992 2015-07-29] (Microsoft Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation) R2 jswpbapi; C:\Program Files (x86)\NETGEAR\WNA1100\jswpbapi.exe [241664 2012-03-26] (Atheros Communications, Inc.) [Datei ist nicht signiert] S3 jswpsapi; C:\Program Files (x86)\NETGEAR\WNA1100\jswpsapi.exe [1102848 2012-03-26] (Atheros Communications, Inc.) [Datei ist nicht signiert] R2 KMSServerService; C:\Windows\KMSServerService\KMS Server Service.exe [211968 2014-11-14] (My Digital Life Forums) [Datei ist nicht signiert] R3 lfsvc; C:\Windows\System32\lfsvc.dll [27136 2015-07-10] (Microsoft Corporation) R3 lfsvc; C:\Windows\SysWOW64\lfsvc.dll [22528 2015-07-10] (Microsoft Corporation) R3 LicenseManager; C:\Windows\system32\LicenseManagerSvc.dll [21504 2015-07-10] (Microsoft Corporation) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-07-30] (IObit) S2 MapsBroker; C:\Windows\System32\moshost.dll [62464 2015-07-10] (Microsoft Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) S3 NetSetupSvc; C:\Windows\System32\NetSetupSvc.dll [186368 2015-07-10] (Microsoft Corporation) S3 NgcCtnrSvc; C:\Windows\System32\NgcCtnrSvc.dll [268800 2015-07-10] (Microsoft Corporation) S3 NgcSvc; C:\Windows\system32\ngcsvc.dll [512000 2015-07-10] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-24] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544592 2015-07-24] (NVIDIA Corporation) S2 OneSyncSvc; C:\Windows\System32\APHostService.dll [296960 2015-07-10] (Microsoft Corporation) S2 OneSyncSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation) S2 OneSyncSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2004488 2015-07-14] (Electronic Arts) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1001200 2015-07-19] (Overwolf LTD) S3 PimIndexMaintenanceSvc; C:\Windows\System32\PimIndexMaintenance.dll [289280 2015-07-10] (Microsoft Corporation) R3 PimIndexMaintenanceSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation) R3 PimIndexMaintenanceSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation) R2 RemoteServerWin; C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe [4217552 2015-01-13] (Unified Intents AB) S3 RetailDemo; C:\Windows\system32\RDXService.dll [988672 2015-07-30] (Microsoft Corporation) S3 SensorDataService; C:\Windows\System32\SensorDataService.exe [1031680 2015-07-29] (Microsoft Corporation) S3 SensorService; C:\Windows\system32\SensorService.dll [229376 2015-07-30] (Microsoft Corporation) S3 SmsRouter; C:\Windows\system32\SmsRouterSvc.dll [583680 2015-07-10] (Microsoft Corporation) R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-12-31] (DEVGURU Co., LTD.) R3 StateRepository; C:\Windows\system32\windows.staterepository.dll [2674176 2015-07-10] (Microsoft Corporation) R3 StateRepository; C:\Windows\SysWOW64\windows.staterepository.dll [2049024 2015-07-10] (Microsoft Corporation) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5495056 2015-06-18] (TeamViewer GmbH) R2 tiledatamodelsvc; C:\Windows\system32\tileobjserver.dll [503808 2015-07-30] (Microsoft Corporation) S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] (Tunngle.net GmbH) S3 UnistoreSvc; C:\Windows\System32\unistore.dll [1203200 2015-07-29] (Microsoft Corporation) S3 UnistoreSvc; C:\Windows\SysWOW64\unistore.dll [925696 2015-07-29] (Microsoft Corporation) R3 UnistoreSvc_Session1; C:\WINDOWS\System32\svchost.exe [39856 2015-07-10] (Microsoft Corporation) R3 UnistoreSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation) S3 UserDataSvc; C:\Windows\System32\userdataservice.dll [1420288 2015-07-30] (Microsoft Corporation) R3 UserDataSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation) R3 UserDataSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation) R2 UserManager; C:\Windows\System32\usermgr.dll [717312 2015-07-10] (Microsoft Corporation) S3 UsoSvc; C:\Windows\system32\usocore.dll [343040 2015-07-29] (Microsoft Corporation) S3 vmicvmsession; C:\Windows\System32\ICSvc.dll [506880 2015-07-10] (Microsoft Corporation) S3 WalletService; C:\Windows\system32\WalletService.dll [504320 2015-07-10] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) R2 WindowBlinds; C:\Program Files (x86)\Stardock\WindowBlinds\wbsrv.exe [89600 2013-05-16] (Stardock Corporation) [Datei ist nicht signiert] R2 WindowFX; C:\Program Files (x86)\Stardock\WindowFX\WindowFXSrv.exe [181904 2014-06-12] (Stardock Corporation) S3 WpnService; C:\Windows\system32\WpnService.dll [49152 2015-07-10] (Microsoft Corporation) R2 WSWNA1100; C:\Program Files (x86)\NETGEAR\WNA1100\WifiSvc.exe [316120 2014-03-19] () R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [627992 2013-12-17] (Wacom Technology, Corp.) S3 XblAuthManager; C:\Windows\System32\XblAuthManager.dll [918016 2015-07-10] (Microsoft Corporation) S3 XblGameSave; C:\Windows\System32\XblGameSave.dll [1149440 2015-07-10] (Microsoft Corporation) S3 XboxNetApiSvc; C:\Windows\system32\XboxNetApiSvc.dll [1019392 2015-07-10] (Microsoft Corporation) S2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [18384 2014-03-13] (Intel(R) Corporation) R2 Winstep Xtreme Service; C:\Program Files (x86)\Winstep\WsxService [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2012-09-14] () R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-05-06] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-05-06] (Avast Software s.r.o.) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-05-06] (Avast Software s.r.o.) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-05-06] () S1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-05-06] (Avast Software s.r.o.) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-26] (Avast Software s.r.o.) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-05-06] (Avast Software s.r.o.) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-05-06] () R3 athur; C:\Windows\System32\drivers\athuwbx.sys [2702336 2013-11-20] (Qualcomm Atheros Communications, Inc.) S3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2014-03-16] (Broadcom Corporation.) S3 BtHidBus; C:\Windows\System32\Drivers\BtHidBus.sys [22568 2014-08-12] (IVT Corporation.) S3 buttonconverter; C:\Windows\System32\drivers\buttonconverter.sys [32256 2015-07-10] (Microsoft Corporation) S3 CapImg; C:\Windows\System32\drivers\capimg.sys [116736 2015-07-10] (Microsoft Corporation) S4 cnghwassist; C:\Windows\System32\DRIVERS\cnghwassist.sys [39264 2015-07-10] (Microsoft Corporation) R3 CompositeBus; C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys [39936 2015-07-10] (Microsoft Corporation) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2013-11-20] (Disc Soft Ltd) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3436896 2015-07-10] (QLogic Corporation) S3 fcvsc; C:\Windows\System32\drivers\fcvsc.sys [31232 2015-07-10] (Microsoft Corporation) R1 FileCrypt; C:\Windows\System32\drivers\filecrypt.sys [83968 2015-07-10] (Microsoft Corporation) S3 genericusbfn; C:\Windows\System32\drivers\genericusbfn.sys [20992 2015-07-10] (Microsoft Corporation) R1 GpuEnergyDrv; C:\Windows\System32\drivers\gpuenergydrv.sys [8192 2015-07-10] (Microsoft Corporation) S3 hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2014-02-26] (LogMeIn Inc.) S3 hidinterrupt; C:\Windows\System32\drivers\hidinterrupt.sys [50016 2015-07-10] (Microsoft Corporation) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-02-20] (REALiX(tm)) S3 ibbus; C:\Windows\System32\drivers\ibbus.sys [424800 2015-07-10] (Mellanox) R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [28912 2014-02-18] (Intel Corporation) S3 IoQos; C:\Windows\System32\drivers\ioqos.sys [26624 2015-07-10] (Microsoft Corporation) S3 IvtAudioBusSrv; C:\Windows\System32\Drivers\IvtBtBus.sys [27256 2012-12-24] (IVT Corporation.) S3 IvtPanBusSrv; C:\Windows\System32\Drivers\btnetBus.sys [31480 2012-12-24] (IVT Corporation.) S3 LGSHidFilt; C:\Windows\system32\DRIVERS\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.) S3 LGSUsbFilt; C:\Windows\system32\DRIVERS\LGSUsbFilt.Sys [41752 2013-05-30] (Logitech Inc.) S0 LSI_SAS2i; C:\Windows\System32\drivers\lsi_sas2i.sys [104800 2015-07-10] (LSI Corporation) S0 LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [99168 2015-07-10] (Avago Technologies) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) S0 megasas; C:\Windows\System32\drivers\megasas.sys [59744 2015-07-10] (Avago Technologies) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-07-26] (Intel Corporation) S3 mlx4_bus; C:\Windows\System32\drivers\mlx4_bus.sys [705376 2015-07-10] (Mellanox) R2 MMCSS; C:\Windows\system32\drivers\mmcss.sys [48128 2015-07-10] (Microsoft Corporation) S3 ndfltr; C:\Windows\System32\drivers\ndfltr.sys [76128 2015-07-10] (Mellanox) S3 netvsc; C:\Windows\System32\drivers\netvsc.sys [94720 2015-07-10] (Microsoft Corporation) R2 npf; C:\Windows\System32\drivers\npf.sys [36600 2014-04-18] (Riverbed Technology, Inc.) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-07-24] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47976 2015-07-03] (NVIDIA Corporation) S0 percsas2i; C:\Windows\System32\drivers\percsas2i.sys [58208 2015-07-10] (LSI Corporation) S0 percsas3i; C:\Windows\System32\drivers\percsas3i.sys [58720 2015-07-10] (Avago Technologies) S3 ReFSv1; C:\Windows\System32\Drivers\ReFSv1.sys [934752 2015-07-29] (Microsoft Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek ) R3 SaiK1708; C:\Windows\system32\DRIVERS\SaiK1708.sys [180544 2012-09-20] (Saitek) R3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [25120 2013-02-01] (Saitek) R3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [52640 2013-02-01] (Saitek) R3 SaiU1708; C:\Windows\System32\drivers\SaiU1708.sys [47168 2012-09-20] (Saitek) R1 se64a; C:\Windows\System32\drivers\se64a.sys [14032 2007-05-03] (EnTech Taiwan) R2 storqosflt; C:\Windows\System32\drivers\storqosflt.sys [61952 2015-07-10] (Microsoft Corporation) S0 storufs; C:\Windows\System32\drivers\storufs.sys [40288 2015-07-10] (Microsoft Corporation) R3 swenum; C:\Windows\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys [17760 2015-07-10] (Microsoft Corporation) S3 UcmCx0101; C:\Windows\System32\Drivers\UcmCx.sys [61952 2015-07-10] (Microsoft Corporation) S3 UcmUcsi; C:\Windows\System32\drivers\UcmUcsi.sys [46080 2015-07-29] (Microsoft Corporation) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S3 UDST7000BDA; C:\Windows\System32\Drivers\UDST7000BDA.sys [527632 2009-06-15] (TechniSat Digital S.A.) S3 UDST7000HID; C:\Windows\system32\drivers\UDST7000HID.sys [27664 2009-07-15] (TechniSat Digital S.A.) S3 Ufx01000; C:\Windows\System32\drivers\ufx01000.sys [245088 2015-07-10] (Microsoft Corporation) S3 UfxChipidea; C:\Windows\System32\drivers\UfxChipidea.sys [94048 2015-07-10] (Microsoft Corporation) S3 ufxsynopsys; C:\Windows\System32\drivers\ufxsynopsys.sys [127840 2015-07-10] (Microsoft Corporation) S3 UHSfiltv; C:\Windows\system32\drivers\UHSfiltv.sys [23552 2012-09-12] (Creative Technology Ltd.) S3 UrsChipidea; C:\Windows\System32\drivers\urschipidea.sys [28512 2015-07-10] (Microsoft Corporation) S3 UrsCx01000; C:\Windows\System32\drivers\urscx01000.sys [57696 2015-07-10] (Microsoft Corporation) S3 UrsSynopsys; C:\Windows\System32\drivers\urssynopsys.sys [27488 2015-07-10] (Microsoft Corporation) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2014-07-28] (Apple, Inc.) [Datei ist nicht signiert] R3 uvhid; C:\Windows\System32\drivers\uvhid.sys [25592 2015-01-13] (Windows (R) Win 7 DDK provider) R3 VBAudioVACMME; C:\Windows\system32\DRIVERS\vbaudio_cable64_win7.sys [41192 2015-01-30] (Windows (R) Win 7 DDK provider) S3 vhf; C:\Windows\System32\drivers\vhf.sys [31744 2015-07-10] (Microsoft Corporation) S3 wdiwifi; C:\Windows\System32\DRIVERS\wdiwifi.sys [685056 2015-07-10] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) R0 WindowsTrustedRT; C:\Windows\System32\drivers\WindowsTrustedRT.sys [106520 2015-07-10] (Microsoft Corporation) R0 WindowsTrustedRTProxy; C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys [17944 2015-07-10] (Microsoft Corporation) S3 WinMad; C:\Windows\System32\drivers\winmad.sys [26976 2015-07-10] (Mellanox) S3 WinVerbs; C:\Windows\System32\drivers\winverbs.sys [59232 2015-07-10] (Mellanox) S3 xboxgip; C:\Windows\System32\drivers\xboxgip.sys [222720 2015-07-10] (Microsoft Corporation) S3 xinputhid; C:\Windows\System32\drivers\xinputhid.sys [25600 2015-07-10] (Microsoft Corporation) R3 xusb22; C:\Windows\System32\drivers\xusb22.sys [95744 2015-07-10] (Microsoft Corporation) R2 {C5F942FD-1110-4664-86CE-0C6BDA305235}; C:\Program Files (x86)\CyberLink\PowerDVD14\Common\NavFilter\000.fcl [32456 2014-04-28] (CyberLink Corp.) S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) NETSVC: dosvc -> C:\Windows\system32\dosvc.dll (Microsoft Corporation) NETSVC: DcpSvc -> C:\Windows\system32\dcpsvc.dll (Microsoft Corporation) NETSVC: NetSetupSvc -> C:\Windows\System32\NetSetupSvc.dll (Microsoft Corporation) NETSVC: dmwappushservice -> C:\Windows\system32\dmwappushsvc.dll (Microsoft Corporation) NETSVC: XblGameSave -> C:\Windows\System32\XblGameSave.dll (Microsoft Corporation) NETSVC: XboxNetApiSvc -> C:\Windows\system32\XboxNetApiSvc.dll (Microsoft Corporation) NETSVC: UsoSvc -> C:\Windows\system32\usocore.dll (Microsoft Corporation) NETSVC: UserManager -> C:\Windows\System32\usermgr.dll (Microsoft Corporation) NETSVC: DmEnrollmentSvc -> C:\Windows\system32\Windows.Internal.Management.dll (Microsoft Corporation) NETSVC: XblAuthManager -> C:\Windows\System32\XblAuthManager.dll (Microsoft Corporation) NETSVC: RetailDemo -> C:\Windows\system32\RDXService.dll (Microsoft Corporation) NETSVCx32: NetSetupSvc -> C:\Windows\SysWOW64\NetSetupSvc.dll ==> Keine Datei NETSVCx32: UserManager -> C:\Windows\SysWOW64\usermgr.dll ==> Keine Datei ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-12 15:01 - 2015-08-12 15:01 - 00049504 _____ C:\Users\Nils Geiger\Downloads\FRST.txt 2015-08-12 15:01 - 2015-08-12 15:01 - 00000000 ____D C:\Users\Nils Geiger\Downloads\FRST-OlderVersion 2015-08-12 15:00 - 2015-08-12 15:00 - 00000000 ___HD C:\OneDriveTemp 2015-08-12 14:59 - 2015-08-12 14:59 - 00016148 _____ C:\WINDOWS\system32\NILS-PC_Nils Geiger_HistoryPrediction.bin 2015-08-11 20:54 - 2015-08-11 20:54 - 00000000 ____D C:\ProgramData\X360CE 2015-08-11 20:54 - 2015-08-11 20:54 - 00000000 ____D C:\Program Files (x86)\steam 2015-08-11 20:45 - 2015-08-11 20:45 - 00001911 _____ C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2015-08-10 19:58 - 2015-08-12 15:01 - 02172928 _____ (Farbar) C:\Users\Nils Geiger\Downloads\FRST64.exe 2015-08-10 00:11 - 2015-08-11 16:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-09 23:38 - 2015-08-09 23:38 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-08-09 23:38 - 2015-08-09 23:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-08-09 23:38 - 2015-08-09 23:38 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-08-09 23:38 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-08-09 23:38 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-08-09 23:38 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-08-09 23:32 - 2015-08-09 23:35 - 00000000 ____D C:\WINDOWS\Minidump 2015-08-09 23:15 - 2015-08-12 15:01 - 00000000 ____D C:\FRST 2015-08-09 23:14 - 2015-08-09 23:14 - 00000168 _____ C:\Users\Nils Geiger\defogger_reenable 2015-08-07 20:38 - 2015-08-08 14:09 - 01865516 _____ C:\Users\Apps\musixmatch-lyrics-cp.spa 2015-08-07 20:38 - 2015-08-08 14:09 - 00449780 _____ C:\Users\snapshot_blob.bin 2015-08-07 20:38 - 2015-08-08 14:09 - 00410937 _____ C:\Users\natives_blob.bin 2015-08-05 23:58 - 2015-07-30 08:24 - 01561872 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2015-08-05 23:58 - 2015-07-30 08:23 - 00527952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2015-08-05 23:58 - 2015-07-30 08:22 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-08-05 23:58 - 2015-07-30 08:21 - 00816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2015-08-05 23:58 - 2015-07-30 08:17 - 01200400 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2015-08-05 23:58 - 2015-07-30 08:17 - 01025840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2015-08-05 23:58 - 2015-07-30 08:17 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2015-08-05 23:58 - 2015-07-30 08:16 - 02147080 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2015-08-05 23:58 - 2015-07-30 08:16 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2015-08-05 23:58 - 2015-07-30 08:15 - 00632168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2015-08-05 23:58 - 2015-07-30 08:14 - 00333168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll 2015-08-05 23:58 - 2015-07-30 08:09 - 01562968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2015-08-05 23:58 - 2015-07-30 08:06 - 01043872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2015-08-05 23:58 - 2015-07-30 08:05 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-08-05 23:58 - 2015-07-30 08:05 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2015-08-05 23:58 - 2015-07-30 08:04 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-08-05 23:58 - 2015-07-30 08:03 - 02116448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2015-08-05 23:58 - 2015-07-30 08:03 - 01983328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2015-08-05 23:58 - 2015-07-30 07:30 - 22319520 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-08-05 23:58 - 2015-07-30 07:24 - 00252768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2015-08-05 23:58 - 2015-07-30 06:42 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2015-08-05 23:58 - 2015-07-30 06:29 - 00705520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2015-08-05 23:58 - 2015-07-30 06:26 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2015-08-05 23:58 - 2015-07-30 06:26 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2015-08-05 23:58 - 2015-07-30 06:25 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2015-08-05 23:58 - 2015-07-30 06:25 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2015-08-05 23:58 - 2015-07-30 06:24 - 01769056 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-08-05 23:58 - 2015-07-30 06:24 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2015-08-05 23:58 - 2015-07-30 06:24 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2015-08-05 23:58 - 2015-07-30 06:24 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll 2015-08-05 23:58 - 2015-07-30 06:22 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2015-08-05 23:58 - 2015-07-30 06:22 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2015-08-05 23:58 - 2015-07-30 06:21 - 00962400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-08-05 23:58 - 2015-07-30 06:17 - 21873664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-08-05 23:58 - 2015-07-30 06:12 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2015-08-05 23:58 - 2015-07-30 06:12 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2015-08-05 23:58 - 2015-07-30 06:09 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe 2015-08-05 23:58 - 2015-07-30 06:08 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2015-08-05 23:58 - 2015-07-30 06:08 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2015-08-05 23:58 - 2015-07-30 06:08 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2015-08-05 23:58 - 2015-07-30 06:07 - 20854776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-08-05 23:58 - 2015-07-30 06:02 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll 2015-08-05 23:58 - 2015-07-30 05:59 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2015-08-05 23:58 - 2015-07-30 05:56 - 16707072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-08-05 23:58 - 2015-07-30 05:54 - 24591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-08-05 23:58 - 2015-07-30 05:54 - 02415616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-08-05 23:58 - 2015-07-30 05:53 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2015-08-05 23:58 - 2015-07-30 05:53 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2015-08-05 23:58 - 2015-07-30 05:53 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll 2015-08-05 23:58 - 2015-07-30 05:52 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-08-05 23:58 - 2015-07-30 05:52 - 00521216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2015-08-05 23:58 - 2015-07-30 05:52 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2015-08-05 23:58 - 2015-07-30 05:49 - 11557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2015-08-05 23:58 - 2015-07-30 05:49 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2015-08-05 23:58 - 2015-07-30 05:49 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-05 23:58 - 2015-07-30 05:46 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2015-08-05 23:58 - 2015-07-30 05:46 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-08-05 23:58 - 2015-07-30 05:46 - 00487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2015-08-05 23:58 - 2015-07-30 05:46 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2015-08-05 23:58 - 2015-07-30 05:45 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2015-08-05 23:58 - 2015-07-30 05:45 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys 2015-08-05 23:58 - 2015-07-30 05:44 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2015-08-05 23:58 - 2015-07-30 05:44 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-08-05 23:58 - 2015-07-30 05:44 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2015-08-05 23:58 - 2015-07-30 05:44 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll 2015-08-05 23:58 - 2015-07-30 05:44 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys 2015-08-05 23:58 - 2015-07-30 05:44 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll 2015-08-05 23:58 - 2015-07-30 05:42 - 00596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2015-08-05 23:58 - 2015-07-30 05:42 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2015-08-05 23:58 - 2015-07-30 05:41 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2015-08-05 23:58 - 2015-07-30 05:41 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2015-08-05 23:58 - 2015-07-30 05:41 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll 2015-08-05 23:58 - 2015-07-30 05:40 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-08-05 23:58 - 2015-07-30 05:40 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2015-08-05 23:58 - 2015-07-30 05:38 - 01420288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2015-08-05 23:58 - 2015-07-30 05:38 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll 2015-08-05 23:58 - 2015-07-30 05:34 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2015-08-05 23:58 - 2015-07-30 05:32 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-08-05 23:58 - 2015-07-30 05:32 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2015-08-05 23:58 - 2015-07-30 05:29 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2015-08-05 23:58 - 2015-07-30 05:23 - 13024256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-08-05 23:58 - 2015-07-30 05:15 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2015-08-05 23:58 - 2015-07-30 05:14 - 19333632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-08-05 23:58 - 2015-07-30 05:13 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2015-08-05 23:58 - 2015-07-30 05:13 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll 2015-08-05 23:58 - 2015-07-30 05:12 - 01914880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-08-05 23:58 - 2015-07-30 05:11 - 18803712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-08-05 23:58 - 2015-07-30 05:10 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2015-08-05 23:58 - 2015-07-30 05:10 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-05 23:58 - 2015-07-30 05:07 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll 2015-08-05 23:58 - 2015-07-30 05:06 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2015-08-05 23:58 - 2015-07-30 05:06 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2015-08-05 23:58 - 2015-07-30 05:06 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll 2015-08-05 23:58 - 2015-07-30 05:06 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoiceActivationManager.dll 2015-08-05 23:58 - 2015-07-30 05:04 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2015-08-05 23:58 - 2015-07-30 05:04 - 00495616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2015-08-05 23:58 - 2015-07-30 05:04 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2015-08-05 23:58 - 2015-07-30 04:59 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2015-08-05 23:58 - 2015-07-30 04:58 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll 2015-08-05 23:58 - 2015-07-30 04:58 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2015-08-01 19:14 - 2015-08-01 19:14 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef 2015-08-01 19:14 - 2015-07-03 06:28 - 00065896 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2015-08-01 14:19 - 2015-08-01 14:19 - 00021232 _____ (Thesycon GmbH) C:\WINDOWS\system32\Drivers\dpclat_driver.sys 2015-07-30 20:34 - 2015-07-30 20:34 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-07-30 18:53 - 2015-07-30 18:53 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2015-07-30 18:03 - 2015-07-30 18:03 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\PeerDistRepub 2015-07-29 16:50 - 2015-07-29 16:09 - 00000000 ___DC C:\WINDOWS\Panther 2015-07-29 16:49 - 2015-07-29 16:49 - 00000000 ____D C:\Windows.old 2015-07-29 16:48 - 2015-07-29 16:48 - 14241792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 12502016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 11260928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 07051264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 06488312 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 06305792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04791296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04760576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04611584 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 04047288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 03780096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03620736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03589632 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03362816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02878000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02741760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02446336 _____ C:\WINDOWS\system32\InputService.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02224128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02150696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01890304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01773056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01680896 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01611264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01601024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01593856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01591856 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01533496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01521664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01411072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01365072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2015-07-29 16:48 - 2015-07-29 16:48 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01274880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01201664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01177600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01169408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 01161728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01135312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01101792 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01085776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01067520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2015-07-29 16:48 - 2015-07-29 16:48 - 00991584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2015-07-29 16:48 - 2015-07-29 16:48 - 00966424 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00934752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00916800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00808856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00783112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00695136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00658568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00643616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00630160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00607008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00606392 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00601344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00594472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efscore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00565088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00539216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00521568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00516960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-07-29 16:48 - 2015-07-29 16:48 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00505344 _____ C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00425824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00412672 _____ C:\WINDOWS\system32\diagtrack_win.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00403968 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00365056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00335248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00325984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00290312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systemcpl.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00243760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00242264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00208736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00097128 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00061280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys 2015-07-29 16:48 - 2015-07-29 16:48 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00032768 _____ C:\WINDOWS\system32\LicenseManagerApi.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe 2015-07-29 16:47 - 2015-07-29 16:47 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2015-07-29 16:46 - 2015-07-29 16:46 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-07-29 16:46 - 2015-07-29 16:46 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-07-29 16:46 - 2015-07-29 16:46 - 00000000 ____D C:\Program Files\MSBuild 2015-07-29 16:46 - 2015-07-29 16:46 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-07-29 16:46 - 2015-07-29 16:00 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-07-29 16:45 - 2015-06-17 19:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-07-29 16:45 - 2015-06-17 19:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-07-29 16:45 - 2015-06-17 19:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-07-29 16:45 - 2015-05-29 22:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-07-29 16:45 - 2015-05-29 22:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-07-29 16:45 - 2015-05-29 22:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-07-29 16:35 - 2015-07-29 16:35 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\NetworkTiles 2015-07-29 16:32 - 2015-07-29 16:32 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\MicrosoftEdge 2015-07-29 16:30 - 2015-07-29 16:30 - 00002421 _____ C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-07-29 16:30 - 2015-07-29 16:30 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Publishers 2015-07-29 16:29 - 2015-07-29 16:29 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-07-29 16:08 - 2015-08-11 16:17 - 01793546 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-07-29 16:07 - 2015-07-30 21:29 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Comms 2015-07-29 16:07 - 2015-07-29 16:07 - 00000020 ___SH C:\Users\Nils Geiger\ntuser.ini 2015-07-29 16:07 - 2015-07-29 16:07 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\TileDataLayer 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-07-29 16:05 - 2015-07-29 16:05 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-07-29 16:01 - 2015-07-10 12:59 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Roaming\Mozilla 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Local\Overwolf 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Local\Mozilla 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Mozilla 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Local\Overwolf 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Local\Mozilla 2015-07-29 16:00 - 2015-07-29 16:00 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2015-07-29 15:59 - 2015-07-29 15:59 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-07-29 15:57 - 2015-07-29 15:57 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2015-07-29 15:56 - 2015-08-10 01:04 - 00000000 ____D C:\Users\Nils Geiger 2015-07-29 15:56 - 2015-07-29 16:07 - 00000000 ___RD C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Vorlagen 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Startmenü 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Netzwerkumgebung 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Lokale Einstellungen 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Eigene Dateien 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Druckumgebung 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\AppData\Local\Verlauf 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\AppData\Local\Anwendungsdaten 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 _SHDL C:\Users\Nils Geiger\Anwendungsdaten 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 ___RD C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-07-29 15:56 - 2015-07-29 15:56 - 00000000 ___RD C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-07-29 15:56 - 2015-07-10 13:04 - 00000000 __RSD C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-07-29 15:56 - 2015-07-10 13:04 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-07-29 15:55 - 2015-07-29 15:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SaiK1708_01009.Wdf 2015-07-29 15:55 - 2015-07-29 15:55 - 00000000 ____H C:\ProgramData\DP45977C.lfl 2015-07-29 15:55 - 2015-07-29 15:55 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2015-07-29 15:55 - 2015-07-29 15:55 - 00000000 ____D C:\WINDOWS\system32\DAX2 2015-07-29 15:55 - 2015-07-29 15:55 - 00000000 ____D C:\Program Files\Realtek 2015-07-29 15:52 - 2015-08-01 19:14 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-07-29 15:52 - 2015-07-29 15:57 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-07-29 15:52 - 2015-07-29 15:57 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-07-29 15:52 - 2015-07-29 15:52 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-07-29 15:52 - 2015-07-29 15:52 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2015-07-29 15:51 - 2015-08-12 14:59 - 00020068 _____ C:\WINDOWS\PFRO.log 2015-07-29 15:51 - 2015-07-29 15:52 - 00035627 _____ C:\WINDOWS\system32\NetSetupMig.log 2015-07-29 15:40 - 2015-07-29 16:04 - 00007060 _____ C:\WINDOWS\comsetup.log 2015-07-29 15:29 - 2015-07-29 15:40 - 00000000 ___HD C:\$Windows.~BT 2015-07-29 15:09 - 2015-07-29 15:09 - 00000000 ___HD C:\$Windows.~WS 2015-07-23 04:02 - 2015-07-29 16:13 - 00031976 _____ C:\WINDOWS\system32\nvinfo.pb 2015-07-23 04:02 - 2015-07-23 04:02 - 42730312 _____ C:\WINDOWS\system32\nvcompiler.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 37749064 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 30518928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 22973584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 18376584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 16160440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 16011680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 15754192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 14511608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 13274904 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 12973680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 11843384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 11142984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2015-07-23 04:02 - 2015-07-23 04:02 - 03351864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 02963208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 02360976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 02164040 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 01898128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6435362.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 01557648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6435362.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 01165192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 01061008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 01053000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00991152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00983368 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00976528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00176904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00155280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00150832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll 2015-07-23 04:02 - 2015-07-23 04:02 - 00128512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll 2015-07-18 00:18 - 2015-07-18 00:18 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\CEF 2015-07-16 16:42 - 2015-07-29 15:42 - 01731674 _____ C:\WINDOWS\WindowsUpdate (1).log 2015-07-16 15:40 - 2015-07-16 15:41 - 00001822 ____H C:\WINDOWS\EPMBatch.ept 2015-07-16 15:36 - 2015-07-16 15:36 - 00000000 ____D C:\Program Files (x86)\EaseUS 2015-07-16 14:40 - 2015-07-16 14:40 - 00000041 _____ C:\script.txt 2015-07-16 14:40 - 2015-07-16 14:40 - 00000031 _____ C:\WINDOWS\script.txt 2015-07-16 14:36 - 2015-07-29 15:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Samsung 2015-07-16 14:36 - 2015-07-29 15:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NeoSmart Technologies 2015-07-16 14:32 - 2015-07-29 16:04 - 00003394 _____ C:\WINDOWS\System32\Tasks\SamsungMagician 2015-07-16 14:30 - 2015-07-29 16:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician 2015-07-15 16:55 - 2015-07-15 16:55 - 00000000 ____D C:\Filme 2015-07-15 16:01 - 2015-07-15 15:59 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2015-07-15 16:00 - 2015-07-15 16:00 - 00000000 _____ C:\WINDOWS\SysWOW64\REN9DA6.tmp 2015-07-14 19:22 - 2015-08-12 01:32 - 00001264 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001UA.job 2015-07-14 19:22 - 2015-08-09 13:32 - 00001212 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001Core.job 2015-07-14 19:22 - 2015-07-29 16:04 - 00004332 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001UA 2015-07-14 19:22 - 2015-07-29 16:04 - 00003952 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001Core 2015-07-14 19:21 - 2015-07-14 19:21 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Dropbox 2015-07-14 19:21 - 2015-07-14 19:21 - 00000000 ____D C:\ProgramData\Dropbox 2015-07-14 17:31 - 2015-07-29 16:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2015-07-14 17:30 - 2015-07-14 17:30 - 00000000 ____D C:\Program Files\iPod |
12.08.2015, 14:05 | #11 |
| Skype Malware/ Spam FRST Teil 2 Code:
ATTFilter ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-12 15:00 - 2015-05-23 22:27 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Purplizer 2015-08-12 15:00 - 2014-05-12 01:45 - 00000000 __RDO C:\Users\Nils Geiger\OneDrive 2015-08-12 15:00 - 2013-08-04 13:14 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Overwolf 2015-08-12 15:00 - 2013-03-10 11:44 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Skype 2015-08-12 14:59 - 2015-07-10 14:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log 2015-08-12 14:59 - 2015-07-10 14:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-08-12 14:59 - 2015-07-10 14:20 - 05085912 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-08-12 14:59 - 2015-07-10 14:20 - 00067085 _____ C:\WINDOWS\setupact.log 2015-08-12 14:59 - 2012-11-08 21:38 - 00001130 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-08-12 02:28 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sru 2015-08-12 02:28 - 2015-07-10 11:05 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2015-08-12 02:28 - 2015-01-24 16:35 - 00000000 ____D C:\ProgramData\Unified Remote 2015-08-12 02:27 - 2012-11-08 21:52 - 00004168 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{7F8DEDA0-40A5-4C00-8FBE-6DE7C21F0E76} 2015-08-12 02:08 - 2014-04-07 17:12 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-08-12 02:04 - 2012-11-08 21:38 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-08-11 23:46 - 2015-04-12 14:16 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Spotify 2015-08-11 21:50 - 2015-04-12 14:16 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Spotify 2015-08-11 18:11 - 2013-11-18 22:18 - 00000000 ____D C:\Program Files\Adobe 2015-08-11 18:11 - 2013-06-22 22:23 - 00000000 ____D C:\Program Files\Common Files\Adobe 2015-08-11 18:10 - 2013-06-22 22:25 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2015-08-11 18:09 - 2013-09-28 13:02 - 00000000 ____D C:\Program Files (x86)\Adobe 2015-08-11 18:09 - 2013-02-18 15:16 - 00000000 ____D C:\ProgramData\Adobe 2015-08-11 18:09 - 2012-11-04 12:05 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Adobe 2015-08-11 16:17 - 2015-07-10 18:34 - 00772138 _____ C:\WINDOWS\system32\perfh007.dat 2015-08-11 16:17 - 2015-07-10 18:34 - 00154500 _____ C:\WINDOWS\system32\perfc007.dat 2015-08-11 16:15 - 2014-08-17 02:00 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Adobe 2015-08-11 16:11 - 2015-04-12 16:56 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-10 17:42 - 2013-03-10 11:44 - 00000000 ____D C:\ProgramData\Skype 2015-08-09 23:35 - 2012-11-04 11:55 - 00283368 ____N C:\WINDOWS\Minidump\080915-9093-01.dmp 2015-08-09 23:32 - 2012-11-04 11:55 - 00278248 ____N C:\WINDOWS\Minidump\080915-9031-01.dmp 2015-08-09 23:23 - 2013-04-04 21:18 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Rainmeter 2015-08-09 23:20 - 2013-11-22 16:10 - 00000000 ____D C:\AdwCleaner 2015-08-09 23:19 - 2014-01-27 23:12 - 00000000 ____D C:\Program Files (x86)\Nmap 2015-08-09 22:50 - 2012-11-19 19:55 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\.minecraft 2015-08-09 11:08 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-08-08 21:27 - 2014-05-31 23:25 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Kodi 2015-08-08 17:01 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\rescache 2015-08-08 14:09 - 2015-06-04 22:08 - 00602180 _____ C:\Users\Apps\local-files-desktop.spa 2015-08-08 14:09 - 2015-06-04 22:08 - 00158566 _____ C:\Users\Apps\hub.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 45066808 _____ C:\Users\libcef.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 10207504 _____ C:\Users\icudtl.dat 2015-08-08 14:09 - 2015-04-23 19:15 - 07675448 _____ (Spotify Ltd) C:\Users\Spotify.exe 2015-08-08 14:09 - 2015-04-23 19:15 - 04487782 _____ C:\Users\devtools_resources.pak 2015-08-08 14:09 - 2015-04-23 19:15 - 03457592 _____ (Microsoft Corporation) C:\Users\d3dcompiler_47.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 02332541 _____ C:\Users\Apps\musixmatch-lyrics.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 02184260 _____ C:\Users\cef.pak 2015-08-08 14:09 - 2015-04-23 19:15 - 02157552 _____ C:\Users\Apps\glue-resources.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 02106424 _____ (Microsoft Corporation) C:\Users\d3dcompiler_43.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 02018360 _____ (Spotify Ltd) C:\Users\SpotifyWebHelper.exe 2015-08-08 14:09 - 2015-04-23 19:15 - 01649208 _____ C:\Users\libGLESv2.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 00967736 _____ (The Chromium Authors) C:\Users\ffmpegsumo.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 00900089 _____ C:\Users\Apps\zlink.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00838712 _____ (Spotify Ltd) C:\Users\SpotifyCrashService.exe 2015-08-08 14:09 - 2015-04-23 19:15 - 00721136 _____ C:\Users\Apps\browse.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00622967 _____ C:\Users\cef_200_percent.pak 2015-08-08 14:09 - 2015-04-23 19:15 - 00606828 _____ C:\Users\Apps\playlist-desktop.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00542847 _____ C:\Users\Apps\notification-center.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00530001 _____ C:\Users\Apps\settings.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00528578 _____ C:\Users\Apps\collection.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00512594 _____ C:\Users\Apps\genre.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00508698 _____ C:\Users\Apps\collection-artist.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00504671 _____ C:\Users\Apps\discover.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00471783 _____ C:\Users\Apps\messages.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00468951 _____ C:\Users\cef_100_percent.pak 2015-08-08 14:09 - 2015-04-23 19:15 - 00466223 _____ C:\Users\Apps\collection-album.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00451113 _____ C:\Users\Apps\social-feed.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00444041 _____ C:\Users\Apps\article.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00416475 _____ C:\Users\Apps\album.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00395528 _____ C:\Users\Apps\collection-songs.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00392161 _____ C:\Users\Apps\zlogin.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00383262 _____ C:\Users\Apps\social-chart.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00368227 _____ C:\Users\Apps\charts.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00366817 _____ C:\Users\Apps\buddy-list.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00363479 _____ C:\Users\Apps\artist.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00304572 _____ C:\Users\Apps\radio.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00278727 _____ C:\Users\Apps\folder.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00274437 _____ C:\Users\Apps\share.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00257997 _____ C:\Users\Apps\zlink-queue.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00244918 _____ C:\Users\Apps\profile.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00236396 _____ C:\Users\Apps\chart.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00216723 _____ C:\Users\Apps\search.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00216045 _____ C:\Users\Apps\findfriends.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00196416 _____ C:\Users\Apps\suggest.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00158229 _____ C:\Users\Apps\follow.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00098360 _____ (Spotify Ltd) C:\Users\SpotifyLauncher.exe 2015-08-08 14:09 - 2015-04-23 19:15 - 00080952 _____ C:\Users\libEGL.dll 2015-08-08 14:09 - 2015-04-23 19:15 - 00080587 _____ C:\Users\Apps\about.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00073272 _____ C:\Users\wow_helper.exe 2015-08-08 14:09 - 2015-04-23 19:15 - 00072701 _____ C:\Users\Apps\error.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00053462 _____ C:\Users\Apps\ad.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00050934 _____ C:\Users\Apps\licenses.spa 2015-08-08 14:09 - 2015-04-23 19:15 - 00014086 _____ C:\Users\locales\en-US.pak 2015-08-08 14:09 - 2015-04-23 19:15 - 00008009 _____ C:\Users\locales\el.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00007791 _____ C:\Users\locales\ru.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00007076 _____ C:\Users\locales\ja.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006969 _____ C:\Users\locales\hu.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006950 _____ C:\Users\locales\fr-CA.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006899 _____ C:\Users\locales\fr.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006876 _____ C:\Users\locales\fi.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006875 _____ C:\Users\locales\pl.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006808 _____ C:\Users\locales\es-419.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006793 _____ C:\Users\locales\nl.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006756 _____ C:\Users\locales\de.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006740 _____ C:\Users\locales\zsm.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006739 _____ C:\Users\locales\it.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006731 _____ C:\Users\locales\es.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006726 _____ C:\Users\locales\tr.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006719 _____ C:\Users\locales\zh-Hant.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006717 _____ C:\Users\locales\pt-BR.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006672 _____ C:\Users\locales\sv.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006540 _____ C:\Users\locales\arb.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00006469 _____ C:\Users\locales\en.mo 2015-08-08 14:09 - 2015-04-23 19:15 - 00000020 _____ C:\Users\inst_ver.dat 2015-08-08 14:09 - 2015-04-23 19:15 - 00000000 ____D C:\Users\locales 2015-08-07 00:33 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-08-07 00:33 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Provisioning 2015-08-07 00:01 - 2013-05-22 16:55 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\TS3Client 2015-08-07 00:00 - 2013-05-22 16:54 - 00000000 ____D C:\Program Files (x86)\TeamSpeak3 2015-08-06 19:06 - 2015-07-10 12:55 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-08-05 23:42 - 2014-12-19 01:48 - 00000000 ____D C:\ProgramData\ProductData 2015-08-05 21:21 - 2013-01-16 20:18 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\vlc 2015-08-02 21:08 - 2013-09-24 21:58 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\JDownloader v2.0 2015-08-02 17:29 - 2015-07-11 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MouseServer 2015-08-02 17:29 - 2015-07-11 20:05 - 00000000 ____D C:\Program Files (x86)\MouseServer 2015-08-01 19:36 - 2014-07-30 19:56 - 00000000 ____D C:\ProgramData\TEMP 2015-08-01 19:14 - 2014-09-19 22:11 - 00000000 ____D C:\Program Files (x86)\TriDef 3D 2015-08-01 12:52 - 2015-04-13 19:04 - 00004280 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update 2015-07-30 20:34 - 2012-11-27 00:35 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Dropbox 2015-07-30 15:15 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\appcompat 2015-07-29 18:43 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\restore 2015-07-29 16:50 - 2015-07-10 13:04 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2015-07-29 16:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe 2015-07-29 16:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-07-29 16:49 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2015-07-29 16:49 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Dism 2015-07-29 16:48 - 2015-07-10 13:06 - 00792568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-07-29 16:48 - 2015-07-10 13:06 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-07-29 16:46 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-07-29 16:46 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-07-29 16:46 - 2015-07-10 13:00 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\telnet.exe 2015-07-29 16:46 - 2015-07-10 12:59 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe 2015-07-29 16:46 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe 2015-07-29 16:46 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe 2015-07-29 16:46 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll 2015-07-29 16:46 - 2015-07-10 12:59 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll 2015-07-29 16:40 - 2012-11-15 16:29 - 00000000 ____D C:\Program Files (x86)\Stardock 2015-07-29 16:37 - 2012-11-15 16:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock 2015-07-29 16:34 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2015-07-29 16:32 - 2012-11-04 12:05 - 00000000 ____D C:\Users\Nils Geiger\AppData\Local\Packages 2015-07-29 16:13 - 2015-06-01 16:21 - 00000000 ____D C:\ProgramData\boost_interprocess 2015-07-29 16:13 - 2015-02-15 00:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-07-29 16:08 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-07-29 16:08 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PrintDialog 2015-07-29 16:08 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\MiracastView 2015-07-29 16:08 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-07-29 16:05 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows NT 2015-07-29 16:05 - 2015-07-10 11:05 - 00000000 __RHD C:\Users\Default 2015-07-29 16:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Registration 2015-07-29 16:04 - 2015-05-23 22:27 - 00003838 _____ C:\WINDOWS\System32\Tasks\Overwolf Updater Task 2015-07-29 16:04 - 2015-04-28 17:40 - 00003810 _____ C:\WINDOWS\System32\Tasks\klcp_update 2015-07-29 16:04 - 2015-02-20 12:57 - 00003036 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Nils Geiger) 2015-07-29 16:04 - 2015-01-16 17:41 - 00002492 _____ C:\WINDOWS\System32\Tasks\ASC8_SkipUac_Nils Geiger 2015-07-29 16:04 - 2014-12-19 01:32 - 00003324 _____ C:\WINDOWS\System32\Tasks\{43F28C09-FCE3-4572-8078-87947A3B2D83} 2015-07-29 16:04 - 2014-11-15 13:34 - 00009528 _____ C:\WINDOWS\diagwrn.xml 2015-07-29 16:04 - 2014-11-15 13:34 - 00009528 _____ C:\WINDOWS\diagerr.xml 2015-07-29 16:04 - 2014-08-30 11:28 - 00003228 _____ C:\WINDOWS\System32\Tasks\{376E1EBF-3B8C-4617-8E47-99B792FF36A8} 2015-07-29 16:04 - 2014-05-13 18:13 - 00003330 _____ C:\WINDOWS\System32\Tasks\{B1625993-C297-4BEE-9F70-D7FFAEA62E61} 2015-07-29 16:04 - 2014-04-07 17:12 - 00003882 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-07-29 16:04 - 2014-01-28 17:23 - 00004138 _____ C:\WINDOWS\System32\Tasks\Stardock Central-S-1-5-21-1160257173-3920074079-2544844589-1001 2015-07-29 16:04 - 2013-10-25 14:11 - 00023056 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-07-29 16:04 - 2013-09-28 12:35 - 00003404 _____ C:\WINDOWS\System32\Tasks\{5FC0CC8F-D358-4A9B-9EB0-0C6B6F3C0463} 2015-07-29 16:04 - 2013-06-02 14:57 - 00003744 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP Officejet 7500 E910 2015-07-29 16:04 - 2013-04-09 22:26 - 00003328 _____ C:\WINDOWS\System32\Tasks\{48418533-D70D-4612-9EB6-288FEF954A58} 2015-07-29 16:04 - 2013-04-04 22:26 - 00003272 _____ C:\WINDOWS\System32\Tasks\{DEF54CF1-0EE4-4CEB-862C-35CB85BD4D89} 2015-07-29 16:04 - 2013-01-14 10:53 - 00002894 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2015-07-29 16:04 - 2012-12-10 18:45 - 00003450 _____ C:\WINDOWS\System32\Tasks\{D5569CD3-60E5-481E-84E5-314172D0E027} 2015-07-29 16:04 - 2012-11-08 21:38 - 00004216 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-07-29 16:04 - 2012-11-08 21:38 - 00003980 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-07-29 16:04 - 2012-11-06 20:56 - 00004046 _____ C:\WINDOWS\System32\Tasks\KMS Activation for Office 2015-07-29 16:04 - 2012-11-04 14:42 - 00003670 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask 2015-07-29 16:04 - 2012-11-04 12:11 - 00003708 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1160257173-3920074079-2544844589-1001 2015-07-29 16:03 - 2015-07-10 13:04 - 00000000 __RHD C:\Users\Public\Libraries 2015-07-29 16:01 - 2014-11-17 21:09 - 00000000 ____D C:\ProgramData\NVIDIA 2015-07-29 16:00 - 2015-07-10 18:44 - 00000000 ____D C:\WINDOWS\ShellNew 2015-07-29 16:00 - 2015-07-10 13:05 - 00004362 _____ C:\WINDOWS\DtcInstall.log 2015-07-29 16:00 - 2015-07-10 11:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-07-29 16:00 - 2015-07-07 17:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2015-07-29 16:00 - 2015-06-15 22:51 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi 2015-07-29 16:00 - 2015-06-15 21:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters 2015-07-29 16:00 - 2015-04-28 17:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2015-07-29 16:00 - 2015-04-24 14:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2015-07-29 16:00 - 2015-04-21 15:37 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 2015-07-29 16:00 - 2015-04-13 19:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2015-07-29 16:00 - 2015-04-12 16:46 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker 2015-07-29 16:00 - 2015-03-13 18:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Meeting 2007 2015-07-29 16:00 - 2015-02-24 21:09 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sauerbraten 2015-07-29 16:00 - 2015-01-24 17:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-07-29 16:00 - 2015-01-24 16:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unified Remote 3 2015-07-29 16:00 - 2015-01-20 16:41 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ninja Lite 2015-07-29 16:00 - 2015-01-20 16:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ninja Lite 2015-07-29 16:00 - 2015-01-03 23:15 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft AppLocale 2015-07-29 16:00 - 2014-12-26 19:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Universal Media Server 2015-07-29 16:00 - 2014-12-26 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AviSynth 2015-07-29 16:00 - 2014-12-25 19:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDFab 9 2015-07-29 16:00 - 2014-12-21 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 14 2015-07-29 16:00 - 2014-11-17 23:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MonInfo 2015-07-29 16:00 - 2014-11-15 22:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock 2015-07-29 16:00 - 2014-10-04 15:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-07-29 16:00 - 2014-09-18 12:57 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Plane9 2015-07-29 16:00 - 2014-09-05 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Die Sims 4 2015-07-29 16:00 - 2014-07-17 22:30 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unified Remote 2015-07-29 16:00 - 2014-07-13 17:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn 2015-07-29 16:00 - 2014-07-10 14:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe 2015-07-29 16:00 - 2014-07-10 14:15 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wacom 2015-07-29 16:00 - 2014-07-08 17:12 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Erkennungs-Plug-in 2015-07-29 16:00 - 2014-07-08 17:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp 2015-07-29 16:00 - 2014-06-15 22:25 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2015-07-29 16:00 - 2014-06-08 17:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MediaMonkey 2015-07-29 16:00 - 2014-05-27 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Control 2015-07-29 16:00 - 2014-05-25 17:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2015-07-29 16:00 - 2014-05-14 14:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Extreme Tuning Utility 2015-07-29 16:00 - 2014-05-13 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolphin 2015-07-29 16:00 - 2014-03-18 17:11 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server 2015-07-29 16:00 - 2014-03-18 17:11 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X 2015-07-29 16:00 - 2014-02-27 21:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhiteCap 2015-07-29 16:00 - 2014-02-05 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vocaluxe 2015-07-29 16:00 - 2014-01-27 20:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NoLimits Track Packager 2015-07-29 16:00 - 2014-01-22 21:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPER © - by eRightSoft 2015-07-29 16:00 - 2014-01-11 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NoLimits 2 2015-07-29 16:00 - 2013-11-25 00:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LockHunter 2015-07-29 16:00 - 2013-11-22 18:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2015-07-29 16:00 - 2013-11-03 00:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2015-07-29 16:00 - 2013-11-03 00:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-07-29 16:00 - 2013-10-20 13:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-07-29 16:00 - 2013-09-29 14:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer 2015-07-29 16:00 - 2013-09-24 21:59 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader 2015-07-29 16:00 - 2013-09-19 19:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2015-07-29 16:00 - 2013-09-18 16:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX 2015-07-29 16:00 - 2013-08-22 15:36 - 00000000 ____D C:\Users\Default.migrated 2015-07-29 16:00 - 2013-08-18 15:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tunngle 2015-07-29 16:00 - 2013-08-17 15:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WordToPDF 2015-07-29 16:00 - 2013-07-18 11:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CubeDesktop NXT 2015-07-29 16:00 - 2013-06-09 18:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Façade 2015-07-29 16:00 - 2013-06-02 14:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2015-07-29 16:00 - 2013-05-30 13:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Duplicate Music Files Finder 2015-07-29 16:00 - 2013-05-29 23:28 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Similarity 2015-07-29 16:00 - 2013-05-26 00:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraStar Deluxe 2015-07-29 16:00 - 2013-05-22 16:55 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2015-07-29 16:00 - 2013-05-01 13:22 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks 2015-07-29 16:00 - 2013-05-01 13:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks 2015-07-29 16:00 - 2013-04-23 19:42 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-07-29 16:00 - 2013-04-23 19:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-07-29 16:00 - 2013-04-18 20:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\xbox-360-controller-custom (x64) 2015-07-29 16:00 - 2013-04-16 16:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories 2015-07-29 16:00 - 2013-04-15 18:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XBCD 2015-07-29 16:00 - 2013-04-09 19:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winstep 2015-07-29 16:00 - 2013-04-09 18:23 - 00000000 ____D C:\WINDOWS\de 2015-07-29 16:00 - 2013-03-06 19:48 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse 2015-07-29 16:00 - 2013-02-28 22:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Technology 2015-07-29 16:00 - 2013-02-28 22:15 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WBFS Manager 2015-07-29 16:00 - 2013-02-18 23:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-07-29 16:00 - 2013-01-17 17:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVBViewer 2015-07-29 16:00 - 2013-01-14 10:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2015-07-29 16:00 - 2013-01-02 21:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKVToolNix 2015-07-29 16:00 - 2012-12-12 00:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetOn 2 2015-07-29 16:00 - 2012-12-11 23:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetOn 2015-07-29 16:00 - 2012-12-05 13:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-07-29 16:00 - 2012-11-28 20:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2015-07-29 16:00 - 2012-11-27 00:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blue Ripple Sound 2015-07-29 16:00 - 2012-11-27 00:18 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-07-29 16:00 - 2012-11-15 16:25 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stardock 2015-07-29 16:00 - 2012-11-08 21:40 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-07-29 16:00 - 2012-11-06 20:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2015-07-29 16:00 - 2012-11-06 20:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-07-29 16:00 - 2012-11-05 01:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3dtv.at Stereoscopic Player 2015-07-29 15:58 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\zh-HK 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\uk-UA 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\tr-TR 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\th-TH 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sr-Latn-RS 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sl-SI 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sk-SK 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\ro-RO 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\hr-HR 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\he-IL 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\et-EE 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB 2015-07-29 15:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\bg-BG 2015-07-29 15:57 - 2015-07-10 15:19 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\ar-SA 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\zh-HK 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\uk-UA 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\tr-TR 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\th-TH 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\spool 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sl-SI 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sk-SK 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\ro-RO 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\Recovery 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\lv-LV 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\lt-LT 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\InputMethod 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\IME 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\hr-HR 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\he-IL 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\et-EE 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\en-GB 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\bg-BG 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\ar-SA 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\InputMethod 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Help 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Common Files\System 2015-07-29 15:57 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-07-29 15:57 - 2015-06-05 15:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REVisionEffects 2015-07-29 15:57 - 2015-04-13 19:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2015-07-29 15:57 - 2015-03-13 14:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bullzip 2015-07-29 15:57 - 2014-11-19 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GoPro 2015-07-29 15:57 - 2014-09-17 00:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iWASEL VPN Service 2015-07-29 15:57 - 2014-09-15 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xiph.Org 2015-07-29 15:57 - 2014-07-18 20:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\X-Mirage 2015-07-29 15:57 - 2014-05-11 01:58 - 00000000 ___RD C:\Users\Public\Recorded TV 2015-07-29 15:57 - 2014-03-16 12:09 - 00000000 ____D C:\Program Files\WIDCOMM 2015-07-29 15:57 - 2014-02-27 22:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Animated Wallpaper 2015-07-29 15:57 - 2013-11-21 19:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue 2015-07-29 15:57 - 2013-11-19 21:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony 2015-07-29 15:57 - 2013-11-11 18:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CineForm 2015-07-29 15:57 - 2013-09-27 18:19 - 00000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin 2015-07-29 15:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared 2015-07-29 15:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared 2015-07-29 15:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer 2015-07-29 15:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ADFS 2015-07-29 15:57 - 2013-05-29 22:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2015-07-29 15:57 - 2013-03-27 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Screaming Bee 2015-07-29 15:57 - 2013-03-10 16:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES 2015-07-29 15:57 - 2012-12-19 15:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft 2015-07-29 15:57 - 2012-11-20 19:05 - 00000000 ____D C:\WINDOWS\system32\appmgmt 2015-07-29 15:57 - 2012-11-04 12:05 - 00000000 ____D C:\ProgramData\PRICache 2015-07-29 15:57 - 2012-07-26 10:12 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2015-07-29 15:56 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-07-29 15:56 - 2015-05-23 22:27 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf 2015-07-29 15:56 - 2013-10-25 16:38 - 00000000 __SHD C:\Recovery 2015-07-29 15:56 - 2013-07-31 17:08 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2015-07-29 15:56 - 2013-01-16 19:33 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MainConcept 2015-07-29 15:42 - 2013-10-24 23:54 - 00008192 __RSH C:\BOOTSECT.BAK 2015-07-29 15:40 - 2013-11-10 20:15 - 00090216 _____ C:\WINDOWS\system32\lvcoinst.log 2015-07-28 09:26 - 2015-04-23 19:15 - 00000000 _____ C:\Users\Nils.redir 2015-07-27 15:14 - 2013-12-09 01:35 - 00000000 ____D C:\Program Files (x86)\Overwolf 2015-07-24 06:21 - 2015-02-15 00:15 - 01756608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll 2015-07-24 06:21 - 2015-02-15 00:15 - 01710568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2015-07-24 06:21 - 2015-02-15 00:15 - 01423304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2015-07-24 06:21 - 2015-02-15 00:15 - 01316000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll 2015-07-23 04:02 - 2014-11-17 21:09 - 00112784 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2015-07-23 04:02 - 2014-11-17 21:09 - 00105288 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2015-07-22 16:52 - 2015-04-15 18:28 - 00000080 _____ C:\Users\Nils Geiger\AppData\Local剜捯獫慴慇敭屳呇⁁屖湥楴汴浥湥湩潦 2015-07-16 16:05 - 2013-01-14 10:53 - 00000000 ____D C:\Program Files\CCleaner 2015-07-16 15:55 - 2015-04-13 19:36 - 00000000 ____D C:\Program Files\Rockstar Games 2015-07-16 14:36 - 2013-05-29 22:49 - 00000000 ____D C:\Program Files (x86)\Samsung 2015-07-16 14:36 - 2013-04-03 18:13 - 00000000 ____D C:\Program Files (x86)\NeoSmart Technologies 2015-07-16 14:36 - 2012-11-04 12:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-07-16 14:29 - 2013-05-29 22:49 - 00000000 ____D C:\ProgramData\Samsung 2015-07-15 16:15 - 2013-10-20 13:05 - 00000000 ____D C:\ProgramData\Oracle 2015-07-15 16:01 - 2014-09-12 22:26 - 00000000 ____D C:\Program Files (x86)\Java 2015-07-15 16:01 - 2013-01-12 01:29 - 00000000 ____D C:\Program Files\Java 2015-07-15 16:00 - 2013-10-20 13:05 - 00110688 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2015-07-15 15:49 - 2015-07-07 17:46 - 00000000 ____D C:\Program Files\iTunes 2015-07-15 15:47 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData 2015-07-15 15:44 - 2012-11-06 20:45 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-07-15 15:41 - 2013-07-19 03:00 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-07-14 21:59 - 2013-08-18 13:59 - 00000000 ____D C:\ProgramData\Origin 2015-07-14 21:52 - 2012-12-05 14:55 - 00000000 ____D C:\ProgramData\Package Cache 2015-07-14 21:39 - 2013-08-18 14:01 - 00000000 ____D C:\Users\Nils Geiger\AppData\Roaming\Origin 2015-07-14 21:27 - 2013-08-18 13:59 - 00000000 ____D C:\Program Files (x86)\Origin 2015-07-14 19:25 - 2012-11-27 00:48 - 00000000 ___RD C:\Users\Nils Geiger\Dropbox 2015-07-14 17:30 - 2013-02-21 17:36 - 00000000 ____D C:\Program Files (x86)\iTunes 2015-07-14 17:30 - 2012-11-04 18:57 - 00000000 ____D C:\Program Files\Common Files\Apple ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2014-07-11 00:56 - 2014-10-26 22:30 - 0000132 _____ () C:\Users\Nils Geiger\AppData\Roaming\Adobe BMP Format CS5 Prefs 2013-11-20 19:58 - 2013-11-20 19:58 - 0000132 _____ () C:\Users\Nils Geiger\AppData\Roaming\Adobe BMP-Format CC - Voreinstellungen 2014-11-13 22:56 - 2014-11-13 22:57 - 0000132 _____ () C:\Users\Nils Geiger\AppData\Roaming\Adobe PNG Format CS5 Prefs 2014-01-27 20:31 - 2014-01-27 20:31 - 0000132 _____ () C:\Users\Nils Geiger\AppData\Roaming\Adobe PNG-Format CC - Voreinstellungen 2013-05-30 17:11 - 2014-03-29 11:03 - 0038464 _____ () C:\Users\Nils Geiger\AppData\Roaming\Kommagetrennte Werte (DOS).ADR 2013-05-29 23:05 - 2013-05-30 17:33 - 0038484 _____ () C:\Users\Nils Geiger\AppData\Roaming\Kommagetrennte Werte (Windows).ADR 2013-10-07 18:27 - 2015-07-20 20:05 - 0002147 _____ () C:\Users\Nils Geiger\AppData\Roaming\SpeedRunnersLog.txt 2014-12-18 22:51 - 2014-12-18 22:51 - 0002916 _____ () C:\Users\Nils Geiger\AppData\Roaming\TargetInvocationLog.txt 2014-12-29 20:29 - 2014-12-29 20:29 - 0000038 ___SH () C:\Users\Nils Geiger\AppData\Local\69ff07055291669bb2b218.72821112 2015-05-26 16:16 - 2015-05-26 16:16 - 0008288 ____H () C:\Users\Nils Geiger\AppData\Local\Plugin.dat 2014-05-17 17:11 - 2014-05-17 17:11 - 0001465 _____ () C:\Users\Nils Geiger\AppData\Local\recently-used.xbel 2013-01-24 13:10 - 2013-01-24 13:10 - 0007605 _____ () C:\Users\Nils Geiger\AppData\Local\Resmon.ResmonCfg 2014-12-19 15:20 - 2014-12-19 15:20 - 0000700 ___SH () C:\Users\Nils Geiger\AppData\Local\systemFL7.dat 2011-06-05 23:51 - 2011-06-19 13:51 - 0059194 _____ () C:\Users\Nils Geiger\AppData\Local\TempGUIPic.jpg 2015-07-05 02:21 - 2015-07-05 02:21 - 0000000 _____ () C:\Users\Nils Geiger\AppData\Local\{F9619F0C-F9F1-42A0-8E1E-7A56CBEFD0CD} 2013-11-03 00:25 - 2013-11-03 13:45 - 0000040 ___SH () C:\ProgramData\.zreglib 2013-06-02 14:57 - 2013-06-02 14:57 - 0000057 _____ () C:\ProgramData\Ament.ini 2015-07-29 15:55 - 2015-07-29 15:55 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Nils Geiger\AppData\Local\Temp\50xp05qb.dll C:\Users\Nils Geiger\AppData\Local\Temp\biisok4p.dll C:\Users\Nils Geiger\AppData\Local\Temp\proxy_vole7770595751646505260.dll C:\Users\Nils Geiger\AppData\Local\Temp\Quarantine.exe C:\Users\Nils Geiger\AppData\Local\Temp\rld150zb.dll C:\Users\Nils Geiger\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-08-08 16:20 ==================== Ende von Ergebnis ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:11-08-2015 02 durchgeführt von Nils Geiger (2015-08-12 15:02:03) Gestartet von C:\Users\Nils Geiger\Downloads Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1160257173-3920074079-2544844589-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1160257173-3920074079-2544844589-503 - Limited - Disabled) Gast (S-1-5-21-1160257173-3920074079-2544844589-501 - Limited - Disabled) Nils Geiger (S-1-5-21-1160257173-3920074079-2544844589-1001 - Administrator - Enabled) => C:\Users\Nils Geiger ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) 7-Zip 9.22beta (HKLM-x32\...\7-Zip) (Version: - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 18.0.0.144 - Adobe Systems Incorporated) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated) Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated) Amazon Music (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Amazon Amazon Music) (Version: 3.7.1.698 - Amazon Services LLC) AMD Catalyst Install Manager (HKLM\...\{9AB0D5B6-4779-8C4F-CA91-A1FEDB56D7EC}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.) Animated Wallpaper - Soft Shines 3D (HKLM\...\Soft Shines 3D_is1) (Version: 3.64 - PUSH Entertainment) ANNO 2070 (HKLM-x32\...\{B48E264C-C8CD-4617-B0BE-46E977BAD694}) (Version: 1.0.0.0 - Ubisoft) Apple Application Support (32-Bit) (HKLM-x32\...\{7FE25256-B7C1-480D-B736-10A67A833AEA}) (Version: 3.2 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{B255D495-4734-4E9B-B4F5-96702FD4A7B9}) (Version: 3.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{5D61F006-168C-4B8B-B7FD-F113C10AE0E4}) (Version: 8.2.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Audiosurf 2 (HKLM-x32\...\Steam App 235800) (Version: - Dylan Fitterer) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software) AviSynth (HKLM-x32\...\AviSynth) (Version: 2.6.0 MT - ) BCC 8 OFX 64Bit (HKLM\...\{24D38864-527F-4688-B831-A1A4CC60CD54}) (Version: 8.0.1 - Boris FX, Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Bullzip PDF Printer 10.10.0.2307 (HKLM\...\Bullzip PDF Printer_is1) (Version: 10.10.0.2307 - Bullzip) CCleaner (HKLM\...\CCleaner) (Version: 5.07 - Piriform) CodeBlocks (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\CodeBlocks) (Version: 12.11 - The Code::Blocks Team) CSR Harmony Wireless Software Stack (HKLM\...\{CAF754D7-AD99-409B-A594-C63DB5A51BC2}) (Version: 1.0.15.0 - Cambridge Silicon Radio Limited.) CubeDesktop NXT (HKLM-x32\...\{A02A3737-CE39-4C13-92A7-D71337010EC4}) (Version: 2.13.0425 - Thinking Minds Building Bytes) Curse Client - Test (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\c5c968b829b4973b) (Version: 5.1.1.653 - Curse) CyberLink PowerDVD 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.4028.58 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) Device Simulation Framework 1.0.1 (HKLM\...\{C7966AB3-A8D9-48D5-B7DF-922674C40098}) (Version: 1.0.1 - Microsoft) Die Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.) DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.7.0.77 - DivX, LLC) DmC Devil May Cry (HKLM-x32\...\Steam App 220440) (Version: - Ninja Theory) Dolphin (HKLM-x32\...\Dolphin) (Version: 4.0.2 - Dolphin Development Team) Dropbox (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Dropbox) (Version: 3.8.5 - Dropbox, Inc.) DSF-KitSetup (x32 Version: 1.1.6001.0 - Microsoft Corporation) Hidden Duplicate Music Files Finder 1.5.5 (HKLM-x32\...\Duplicate Music Files Finder_is1) (Version: - LC IBros Solutions S.R.L.) Dust: An Elysian Tail (HKLM-x32\...\Steam App 236090) (Version: - Humble Hearts LLC) DVBViewer Pro (HKLM-x32\...\DVBViewer Pro_is1) (Version: 5.3.0 - CM&V) DVBViewer Recording Service (HKLM-x32\...\DVBViewer Recording Service_is1) (Version: 1.29.0 - CM&V) DVDFab 9.1.6.6 (04/09/2014) (HKLM-x32\...\DVDFab 9_is1) (Version: - Fengtao Software Inc.) EasyBCD 2.2 (HKLM-x32\...\EasyBCD) (Version: 2.2 - NeoSmart Technologies) EVGA Precision X 4.2.1 (HKLM-x32\...\PrecisionX) (Version: 4.2.1 - EVGA Corporation) Façade (HKLM-x32\...\{24E34264-D483-477C-A9A0-4E53F69834CF}) (Version: 1.1.2 - Procedural Arts) FaceRig (HKLM-x32\...\Steam App 274920) (Version: - Holotech Studios) Fences (Version: 1.0 - Stardock Corporation) Hidden Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Free YouTube to MP3 Converter version 3.12.35.514 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.35.514 - DVDVideoSoft Ltd.) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Garry) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden GoPro Studio 2.5.3 (HKLM-x32\...\GoPro Studio) (Version: 2.5.3 - GoPro, Inc.) GoProCineFormDecoders 1.2.0 (HKLM-x32\...\GoProCineFormDecoders) (Version: 1.2.0 - CineForm, Inc & GoPro, Inc.) Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) Guns of Icarus Dev App (HKLM-x32\...\Steam App 229680) (Version: - ) Guns of Icarus Online (HKLM-x32\...\Steam App 209080) (Version: - Muse Games) HF pAppLoc version 1.0 (HKLM-x32\...\{9143B17E-BBDE-4EA7-A4E3-20D384D9C8A5}_is1) (Version: 1.0 - Inquisitor) HP ePrint (HKLM-x32\...\{2794875B-6CCF-48B8-84A5-5B10DB98BEE6}) (Version: 12.0.13351.1658 - Hewlett-Packard) HP Officejet 7500 E910 - Grundlegende Software für das Gerät (HKLM\...\{6B3982D8-8E88-4A42-B1C4-66B4E9B34CFB}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Officejet 7500 E910 Hilfe (HKLM-x32\...\{24DC9885-E759-4BD2-8A20-D4AC509A7FDE}) (Version: 140.0.93.93 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.9572 - HP) HP Update (HKLM-x32\...\{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}) (Version: 5.003.003.001 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) Intel Extreme Tuning Utility (HKLM-x32\...\{185df49c-e692-4c00-a9ff-827bc6f4c8bf}) (Version: 4.4.0.4 - Intel Corporation) Intel Extreme Tuning Utility (x32 Version: 4.4.0.4 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation) iTunes (HKLM\...\{6CF1A7E2-8001-4870-9F18-3C6CDD6FE9E3}) (Version: 12.2.1.16 - Apple Inc.) Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) K-Lite Codec Pack 11.2.8 Standard (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.2.8 - ) Kodi (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Kodi) (Version: - XBMC-Foundation) LAV Filters 0.65 (HKLM-x32\...\lavfilters_is1) (Version: 0.65 - Hendrik Leppkes) Life is Feudal: Your Own (HKLM-x32\...\Steam App 290080) (Version: - Bitbox Ltd.) LockHunter 3.1, 32/64 bit (HKLM\...\LockHunter_is1) (Version: - Crystal Rich Ltd) Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) Logitech Gaming Software 8.53 (HKLM\...\Logitech Gaming Software) (Version: 8.53.186 - Logitech Inc.) LYNE (HKLM-x32\...\Steam App 266010) (Version: - Thomas Bowker) MainConcept DTV Decoder Pro (HKLM-x32\...\{793FCE60-DE5E-4977-A942-A7B69A45B17D}) (Version: 1.5.0.2 - MainConcept GmbH) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Media Control 6.0.15 (HKLM-x32\...\Media Control_is1) (Version: - Damien Bain-Thouverez) MediaMonkey 4.1 (HKLM-x32\...\MediaMonkey_is1) (Version: 4.1 - Ventis Media Inc.) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Live Meeting 2007 (HKLM-x32\...\{0309B99E-C7EA-414C-AC53-A78061277595}) (Version: 8.0.6362.223 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visio Viewer 2010 (HKLM-x32\...\{95140000-0052-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{887868A2-D6DE-3255-AA92-AA0B5A59B874}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{92a68ee6-690a-4c60-b5ac-4292593cb68c}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{4fd02573-5f12-4ae4-8027-c63f8e1115af}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version: - ) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{B3B750C0-8C22-439D-B7CE-67F3ED99CC2B}) (Version: 1.20.146.0 - Microsoft) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) MKVToolNix 7.4.0 (64bit) (HKLM-x32\...\MKVToolNix) (Version: 7.4.0 - Moritz Bunkus) Monaco (HKLM-x32\...\Steam App 113020) (Version: - Pocketwatch Games) Monitor Asset Manager (HKLM-x32\...\{AD0BBBFD-C5E9-4214-A863-E83313D67C0C}_is1) (Version: - EnTech Taiwan) MorphVOX Pro (HKLM-x32\...\{62DAB694-358E-4C6F-82BF-26DA64B297A6}) (Version: 4.3.2 - Screaming Bee) MouseServer Version 1.6.0.0 (HKLM-x32\...\{E13018F5-FFC7-4729-9C1B-1A85807D03E6}_is1) (Version: 1.6.0.0 - Necta Co.) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 39.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 39.0.3 (x86 de)) (Version: 39.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 37.0.1 - Mozilla) My Game Long Name (HKLM\...\UDK-33924326-e738-4af3-9f5f-01ab32f9b138) (Version: - Epic Games, Inc.) MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.5 - F.J. Wechselberger) NARUTO SHIPPUDEN: Ultimate Ninja STORM 3 Full Burst (HKLM-x32\...\Steam App 234670) (Version: - CyberConnect 2) NARUTO SHIPPUDEN: Ultimate Ninja STORM Revolution (HKLM-x32\...\Steam App 272510) (Version: - CyberConnect2 Co., Ltd.) Need for Speed(TM) Hot Pursuit (HKLM-x32\...\{83A606F5-BF6F-42ED-9F33-B9F74297CDED}) (Version: 1.0.0.0 - Electronic Arts) NETGEAR WNA1100 wireless USB 2.0 driver (HKLM-x32\...\{A2AE9709-283B-4B48-AA34-729C070A62FB}) (Version: 1.2.0.2 - NETGEAR) NewBlue 3D Explosions for Windows (HKLM-x32\...\NewBlue 3D Explosions for Windows) (Version: 3.0 - NewBlue) NewBlue 3D Transformations for Windows (HKLM-x32\...\NewBlue 3D Transformations for Windows) (Version: 3.0 - NewBlue) NewBlue Art Blends for Windows (HKLM-x32\...\NewBlue Art Blends for Windows) (Version: 3.0 - NewBlue) NewBlue Art Effects for Windows (HKLM-x32\...\NewBlue Art Effects for Windows) (Version: 3.0 - NewBlue) NewBlue ColorFast for Windows (HKLM-x32\...\NewBlue ColorFast for Windows) (Version: 3.0 - NewBlue) NewBlue Film Effects for Windows (HKLM-x32\...\NewBlue Film Effects for Windows) (Version: 3.0 - NewBlue) NewBlue Flash Remover Pro for Windows (HKLM-x32\...\NewBlue Flash Remover Pro for Windows) (Version: 3.0 - NewBlue) NewBlue Light Blends for Windows (HKLM-x32\...\NewBlue Light Blends for Windows) (Version: 3.0 - NewBlue) NewBlue Light Effects for Windows (HKLM-x32\...\NewBlue Light Effects for Windows) (Version: 3.0 - NewBlue) NewBlue Motion Blends for Windows (HKLM-x32\...\NewBlue Motion Blends for Windows) (Version: 2.4 - NewBlue) NewBlue Motion Effects for Windows (HKLM-x32\...\NewBlue Motion Effects for Windows) (Version: 3.0 - NewBlue) NewBlue Paint Blends for Windows (HKLM-x32\...\NewBlue Paint Blends for Windows) (Version: 3.0 - NewBlue) NewBlue Paint Effects for Windows (HKLM-x32\...\NewBlue Paint Effects for Windows) (Version: 3.0 - NewBlue) NewBlue plug-ins bundle patch build 121206 (HKLM\...\NewBlue plug-ins bundle patch build 121206_is1) (Version: 3.0.0.0 - NewBlue Inc.) NewBlue Stabilizer for Windows (HKLM-x32\...\NewBlue Stabilizer for Windows) (Version: 1.4 - NewBlue) NewBlue Titler Pro 2.0 for Windows (HKLM-x32\...\NewBlue Titler Pro 2.0 for Windows) (Version: 1.0 - NewBlue) NewBlue Titler Pro for Windows (HKLM-x32\...\NewBlue Titler Pro for Windows) (Version: 1.0 - NewBlue) NewBlue Video Essentials for Windows (HKLM-x32\...\NewBlue Video Essentials for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials II for Windows (HKLM-x32\...\NewBlue Video Essentials II for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials III for Windows (HKLM-x32\...\NewBlue Video Essentials III for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials IV for Windows (HKLM-x32\...\NewBlue Video Essentials IV for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials V for Windows (HKLM-x32\...\NewBlue Video Essentials V for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials VI for Windows (HKLM-x32\...\NewBlue Video Essentials VI for Windows) (Version: 3.0 - NewBlue) Nexus 12.2 (HKLM-x32\...\Winstep Xtreme_is1) (Version: - ) Ninja Lite 7.5.3 (HKLM-x32\...\{{4E8FFAB1-88FA-4A8C-B611-08C2C9DD69F3}_is1) (Version: 4 - Global IP Telecommunications Ltd.) NoLimits 2 (remove only) (HKLM\...\NoLimits 2) (Version: - ) NoLimits 2 Roller Coaster Simulation (HKLM-x32\...\Steam App 301320) (Version: - Ole Lange) NoLimits Track Packager 1.5 (HKLM-x32\...\NoLimits Track Packager) (Version: 1.5 - Gravimetric Studios) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.3 - ) NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA 3DTV Play Activation Utility (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DTV) (Version: 347.58 - NVIDIA Corporation) NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation) NVIDIA Grafiktreiber 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) Ori and the Blind Forest (HKLM-x32\...\Steam App 261570) (Version: - Moon Studios GmbH) Origin (HKLM-x32\...\Origin) (Version: 9.3.1.4482 - Electronic Arts, Inc.) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.87.58.0 - Overwolf Ltd.) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.) PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.1.1 - pdfforge) piaip AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS) Plane9 v2.1.0.5 (HKLM-x32\...\Plane9) (Version: v2.1.0.5 - Joakim Dahl / Planestate Software) PlayReady PC Runtime amd64 (HKLM\...\{2E0C1D31-8FEC-411E-97FB-6E56BD429A98}) (Version: 1.3.10 - Microsoft Corporation) QuickTime 7 (HKLM-x32\...\{627FFC10-CE0A-497F-BA2B-208CAC638010}) (Version: 7.77.80.95 - Apple Inc.) Rainmeter (HKLM-x32\...\Rainmeter) (Version: 3.2.1 r2386 - ) Rapture3D 2.5.1 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound) RE:Vision Effects Twixtor AE (HKLM\...\Twixtor AE 6.1.0_is1) (Version: 6.1.0 - Team V.R) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.) RivaTuner Statistics Server 5.4.1 (HKLM-x32\...\RTSS) (Version: 5.4.1 - Unwinder) Rocket League (HKLM-x32\...\Steam App 252950) (Version: - Psyonix) <==== ACHTUNG RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.1 - Rockstar Games) Samsung Data Migration (HKLM-x32\...\{D4DE3DB4-7734-47E5-8D92-B80146311406}) (Version: 2.7 - Samsung) Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.15024.8 - Samsung Electronics Co., Ltd.) Samsung Kies3 (x32 Version: 3.2.15024.8 - Samsung Electronics Co., Ltd.) Hidden Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.5.1 - Samsung Electronics) Samsung SideSync 3.0 (HKLM-x32\...\Samsung SideSync) (Version: 3.1.5.1038 - Samsung Electronics Co., Ltd.) Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.53.0 - Samsung Electronics Co., Ltd.) Sauerbraten (HKLM-x32\...\Sauerbraten) (Version: - ) Secure Download Manager (HKLM-x32\...\{C58626D6-7EBD-460D-8B6C-75B3C3464879}) (Version: 3.1.60 - Kivuto Solutions Inc.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden Similarity 1.8.4 (HKLM-x32\...\{136E0987-DA28-4F25-8782-62A87C4117B5}) (Version: 1.8.1694 - GAR Software) Skype™ 7.7 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.103 - Skype Technologies S.A.) Smart Technology Programming Software 7.0.24.8 (HKLM\...\{F31F1F66-5685-4C21-906E-20CB74C7BCDF}) (Version: 7.0.24.8 - Mad Catz) Source SDK Base 2006 (HKLM-x32\...\Steam App 215) (Version: - Valve) SpeedRunners (HKLM-x32\...\Steam App 207140) (Version: - DoubleDutch Games) Spotify (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Spotify) (Version: 1.0.11.134.ga37df67b - Spotify AB) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Stardock Central (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Stardock Central) (Version: - Stardock Corporation) Stardock CursorFX (HKLM-x32\...\CursorFX) (Version: 2.16 - Stardock Corporation) Stardock DeskScapes 8 (HKLM-x32\...\Stardock DeskScapes 8) (Version: 8.21 - Stardock Software, Inc.) Stardock WindowBlinds (HKLM-x32\...\Stardock WindowBlinds) (Version: 8.12 - Stardock Software, Inc.) Stardock WindowFX (HKLM-x32\...\WindowFX) (Version: 5.15 - Stardock Software, Inc.) Stereoscopic Player (HKLM-x32\...\{1257BD7D-0A39-456C-ADB0-341D799C3B59}) (Version: 2.1.0 - 3dtv.at) Stereoscopic Player (HKLM-x32\...\{9a171608-6f44-4711-873c-241af6ce3ae2}) (Version: 2.3.7 - 3dtv.at) Stereoscopic Player (x32 Version: 2.3.7 - 3dtv.at) Hidden Studie zur Verbesserung von HP Officejet 7500 E910 Produkten (HKLM\...\{DD52EE0D-3F63-4203-8AC3-7804D32B44EA}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) SUPER © v2013.build.59+Recorder (2013/12/18) Version v2013.buil (HKLM-x32\...\{8E2A18E2-96AF-4DF9-8459-5C06B75139A4}_is1) (Version: v2013.build.59+Recorder - eRightSoft) Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit) Tabletop Simulator (HKLM-x32\...\Steam App 286160) (Version: - Berserk Games) Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.43879 - TeamViewer) TechniSat DVB-PC TV Star (HKLM-x32\...\{CE9F9FBC-5253-46D2-9883-09E55003D794}) (Version: 1.0.0 - TechniSat) Theme Park Studio (HKLM-x32\...\Steam App 254590) (Version: - Pantera Entertainment) TriDef 3D 6.7 (HKLM-x32\...\essentials-bundle) (Version: 6.7 - Dynamic Digital Depth Australia Pty Ltd) Tunngle beta (HKLM-x32\...\Tunngle beta_is1) (Version: - Tunngle.net GmbH) UltraStar Deluxe (HKLM-x32\...\UltraStar Deluxe) (Version: 1.1 - USDX Team) Unified Remote (HKLM-x32\...\{415B4714-4F8C-49C6-B310-881EAF892CFB}_is1) (Version: 3.1 - Unified Intents AB) Unified Remote (HKLM-x32\...\{BD96B1DF-2A2E-4ED1-B255-F8050DEB1B3D}) (Version: 2.14.2.0 - Unified Remote) Unity Web Player (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\UnityWebPlayer) (Version: 4.5.4f1 - Unity Technologies ApS) Universal Media Server (HKLM-x32\...\Universal Media Server) (Version: 4.3.1 - Universal Media Server) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Unreal Development Kit: 2012-10 (HKLM\...\UDK-302f39cb-e160-4f3b-b234-fe1edd9f855b) (Version: - Epic Games, Inc.) Uplay (HKLM-x32\...\Uplay) (Version: 4.2 - Ubisoft) VBCABLE, The Virtual Audio Cable (HKLM\...\VB:VBCABLE {87459874-1236-4469}) (Version: - VB-Audio Software) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Vegas Pro 12.0 (64-bit) (HKLM\...\{6592B670-2680-11E3-B0E0-F04DA23A5C58}) (Version: 12.0.726 - Sony) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN) Vocaluxe (HKLM-x32\...\Vocaluxe 0.3.0.81) (Version: 0.3.0.81 - Vocaluxe Team) Vocaluxe (Version: 0.3.0.81 - Vocaluxe Team) Hidden Wacom (HKLM\...\Pen Tablet Driver) (Version: 5.3.3-2 - Wacom Technology Corp.) WBFS Manager 3.0 (HKLM-x32\...\WBFS Manager 3.0) (Version: 3.0 - AlexDP) WebM Project Directshow Filters (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\webmdshow) (Version: - ) WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.) WIDCOMM Bluetooth Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.8050 - Broadcom Corporation) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Winamp Erkennungs-Plug-in (HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) WindowFX (x32 Version: 5.10 - Stardock Corporation) Hidden Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices (03/07/2012 ) (HKLM\...\0B624A43DD66DBF5CF3EDFA9741A364E688062A4) (Version: 03/07/2012 - GoPro) Windows Installer Clean Up (HKLM-x32\...\{121634B0-2F4B-11D3-ADA3-00C04F52DD52}) (Version: 3.00.00.0000 - Microsoft Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows-Treiberpaket - Masahiko Morii (Xbox360Controller) HIDClass (05/04/2010 6.1.7600.16385) (HKLM\...\24E7741D5B688C9EF37D8E61D67229C0CAAE21BB) (Version: 05/04/2010 6.1.7600.16385 - Masahiko Morii) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - CACE Technologies) WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) WordToPDF 2.9 (HKLM-x32\...\WordToPDF_is1) (Version: 2.9 - Mario Noack) Worms Reloaded (HKLM-x32\...\Steam App 22600) (Version: - Team17 Software Ltd.) XBCD 1.07 (HKLM-x32\...\XBCD) (Version: 1.07 - Redcl0ud) xbox-360-controller-custom (x64) (HKLM-x32\...\xbox-360-controller-custom (x64) 1.0.0) (Version: 1.0.0 - Masahiko Morii) xbox-360-controller-custom (x64) (Version: 1.0.0 - Masahiko Morii) Hidden Xilisoft iPhone to PC Copy (HKLM-x32\...\Xilisoft iPhone to PC Copy) (Version: 5.4.7.20121205 - Xilisoft) Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) X-Mirage version 1.01.3 (HKLM-x32\...\{EE034220-E0F5-4AA3-82B5-DD1CC216A6F5}_is1) (Version: 1.01.3 - X-Mirage, Inc.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay Keine Datei CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{092dfa86-5807-5a94-bf3b-5a53ba9e5308}\InprocServer32 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{2259ED92-5044-4BBE-A933-E71CD7D68710}\InprocServer32 -> C:\Program Files (x86)\NinjaLite\NinjaLite\SPOA.dll (Global IP Telecommunications Ltd.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1B}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1160257173-3920074079-2544844589-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) ==================== Wiederherstellungspunkte ========================= 29-07-2015 18:43:21 Windows Update 05-08-2015 16:05:16 Windows Modules Installer ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2014-07-10 15:01 - 2014-07-10 15:01 - 00001371 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com 127.0.0.1 activate.adobe.com 127.0.0.1 ereg.adobe.com 127.0.0.1 3dns-2.adobe.com 127.0.0.1 3dns-3.adobe.com 127.0.0.1 adobe-dns.adobe.com 127.0.0.1 adobe-dns-2.adobe.com 127.0.0.1 adobe-dns-3.adobe.com 127.0.0.1 activate-sea.adobe.com 127.0.0.1 wwis-dubc1-vip60.adobe.com 127.0.0.1 activate-sjc0.adobe.com 127.0.0.1 ereg.wip3.adobe.com 127.0.0.1 wip3.adobe.com 127.0.0.1 activate.wip3.adobe.com 127.0.0.1 wip4.adobe.com 127.0.0.1 activate.wip4.adobe.com ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation) Task: {0266B2C1-C734-4DBE-84E7-0555E4CEB29F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-08] (Google Inc.) Task: {0B98D0F1-0B74-40B9-AECE-6A590806AF16} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-08] (Google Inc.) Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation) Task: {0D7354C9-5B28-4FA6-BDDF-E6D034E1D465} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-07-03] (Microsoft Corporation) Task: {1641F54C-1E57-4902-AB65-EE2B65E5629D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation) Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation) Task: {1D3D099E-EE1E-4907-8BA2-BA8F12D11AA6} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2015-07-10] (Microsoft Corporation) Task: {20488A4E-D0EC-4487-BD22-CA1A159E6AC2} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-15] (Adobe Systems Incorporated) Task: {295EC3C6-0B2F-48D8-A5B8-78B70ADA16FC} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {2AC79F37-A3EF-42F5-B8F6-27828806E0BB} - System32\Tasks\{D5569CD3-60E5-481E-84E5-314172D0E027} => pcalua.exe -a "C:\Program Files (x86)\CureROM\CureROM.exe" -d "C:\Program Files (x86)\CureROM\" -c -launch "C:\Program Files (x86)\CureROM\Profiles\RCT3plus.crp" Task: {2BEA93B5-7567-4F3B-A6D1-FA7195D0E550} - System32\Tasks\{43F28C09-FCE3-4572-8078-87947A3B2D83} => pcalua.exe -a "D:\Program Files (x86)\Hi-Rez Studios\HiRezGamesDiagAndSupport.exe" -c uninstall=17 Task: {2C97A00A-1C5C-4318-B5CC-8A1A126B77F9} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask Task: {308C470C-3C20-4975-A5DA-06F2912008AC} - System32\Tasks\{5FC0CC8F-D358-4A9B-9EB0-0C6B6F3C0463} => pcalua.exe -a "C:\Program Files\AVAST Software\Avast\aswRunDll.exe" -c "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup Task: {3BBE8F38-A41C-454A-9C55-6FE8B823ED9B} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation) Task: {433115CB-B142-4981-9BC6-DE7CB8A36FF1} - \Safer-Networking\Spybot - Search and Destroy\Refresh immunization -> Keine Datei <==== ACHTUNG Task: {4454A8D0-2E4E-4A02-BF67-48DF6A7BFAB4} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask Task: {47366B4E-528D-4461-97E5-FA7DA9F24955} - System32\Tasks\ASC8_SkipUac_Nils Geiger => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe Task: {538EF034-4D7F-4D84-B242-220AEA355608} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {59085276-86D1-4C83-B555-A93ECCC015B6} - \Safer-Networking\Spybot - Search and Destroy\Scan the system -> Keine Datei <==== ACHTUNG Task: {5E5515C1-7D87-4904-B9CE-FD29EB2ADB72} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync Task: {60100D64-6658-4C7F-82BF-8CF429D38EE8} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2015-07-19] (Overwolf LTD) Task: {611C823C-437B-46E7-9683-5312DFFCFD7B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation) Task: {6A5A8D39-6AEC-429A-B0F6-01CEEE07D348} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {6F88997F-9EA2-4262-BA9F-9FDF1838D728} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {711EE2F9-A611-4773-AF8E-D4B278A6718D} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask Task: {744C9FEA-08B7-43E1-A729-0F94647D655C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation) Task: {7587136C-7EA5-4CFA-886E-958ECC5E02ED} - System32\Tasks\{376E1EBF-3B8C-4617-8E47-99B792FF36A8} => pcalua.exe -a F:\DirectX\dxsetup.exe -d F:\DirectX Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance Task: {7A003965-A297-4DC6-B15B-852D798391E0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\WINDOWS\system32\MusNotification.exe [2015-07-29] (Microsoft Corporation) Task: {848DCC36-520C-4946-BF68-C7EFFEFA2F84} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot => C:\windows\system32\MusNotification.exe [2015-07-29] (Microsoft Corporation) Task: {8C70E710-BA98-4297-9017-E04381859B2D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {8D158547-EB0D-4D00-A5D1-5060FF5AB558} - \Safer-Networking\Spybot - Search and Destroy\Check for updates -> Keine Datei <==== ACHTUNG Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-07-29] (Microsoft Corporation) Task: {9C4DE5EF-7CAE-4D87-8C82-400C063506B8} - System32\Tasks\Stardock Central-S-1-5-21-1160257173-3920074079-2544844589-1001 => C:\Users\Nils Geiger\AppData\Local\Stardock\StardockCentral\Stardock Central.exe [2013-10-25] (Stardock) Task: {A364E297-00AD-490D-900E-22AC34598C71} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation) Task: {A3DF5B54-767D-4049-8385-C8EB158F0FE5} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-05-31] () Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager Task: {A7ADF384-459F-409E-A010-EB1DE961DE52} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001UA => C:\Users\Nils Geiger\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-07-14] (Dropbox, Inc.) Task: {AC29E64E-3271-47BA-B8F1-914523CF379B} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update Task: {AC9DCA8A-CE46-4718-BE3A-E8C3C93C8537} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [2014-09-28] (Samsung Electronics.) Task: {AF49CA28-6326-4039-9F85-9944A8EDB547} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {AFF435F1-AD88-476A-8D5D-14C3909D5B37} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001Core => C:\Users\Nils Geiger\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-07-14] (Dropbox, Inc.) Task: {B9B36D41-C776-424E-9A13-5387E17A2CEB} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2015-07-10] (Microsoft Corporation) Task: {BBA541D8-0E0F-40F1-B657-78053D4F6392} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {BE5F9E04-CACB-4CB3-929D-8D5D5177A71F} - System32\Tasks\{B1625993-C297-4BEE-9F70-D7FFAEA62E61} => pcalua.exe -a "C:\Users\Nils Geiger\Downloads\NFS\Texmod.exe" -d "C:\Users\Nils Geiger\Downloads\NFS" Task: {BFFD6E09-5336-47FC-B401-878C67A04536} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {C2162702-FFEB-48C0-AA5F-2DA3A8887D61} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation Task: {C55DC34C-8BCA-4273-B920-40052E55A390} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation) Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation) Task: {D23081A7-ECE0-411D-9098-1CADF5DE410E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-18] (Avast Software s.r.o.) Task: {D2401052-A382-42DE-9C79-D1CF3563F654} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation Task: {D30DD387-D2F4-489B-B048-AE47CB20F1AF} - System32\Tasks\{48418533-D70D-4612-9EB6-288FEF954A58} => pcalua.exe -a "C:\Users\Nils Geiger\Desktop\samurize_1.64.3_3.exe" -d "C:\Users\Nils Geiger\Desktop" Task: {D5E186CE-5D96-426B-B0D0-CD9E92BB1243} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {DAF2BAE3-1C5B-4CB5-9F62-0911C031A15A} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2015-07-10] (Microsoft Corporation) Task: {E26CDB22-5AEC-4418-9EF3-802CB0BB83A8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-06-01] (Piriform Ltd) Task: {EA3F661E-B31C-44A9-B40C-E3D5D56149D4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display => C:\windows\system32\MusNotification.exe [2015-07-29] (Microsoft Corporation) Task: {EEFF7B58-A14C-468B-9157-FF22BDAF418E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {F996A9DA-EA47-45E0-A89B-D3CE16160772} - System32\Tasks\{DEF54CF1-0EE4-4CEB-862C-35CB85BD4D89} => pcalua.exe -a C:\PROGRA~2\Stardock\OBJECT~2\objectdock.exe -c /uninstall Task: {F9F13562-8A54-4647-9699-2FDE84F3C279} - System32\Tasks\HPCustParticipation HP Officejet 7500 E910 => C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {FA0652F6-A05B-4045-948F-43D48622D379} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {FA0A0280-F104-4C63-BF48-0FE2C1FCFE4E} - System32\Tasks\KMS Activation for Office => C:\Windows\KMSAct.exe Task: {FD8BE2BD-95FC-4D92-8586-B5CB11ADBE65} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe Task: {FD971673-18E2-44C0-A460-AB8F73A03403} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {FF158EA4-B4FC-49DF-85D8-9E5EB58D007C} - System32\Tasks\Driver Booster SkipUAC (Nils Geiger) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\ASC8_SkipUac_Nils Geiger.job => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001Core.job => C:\Users\Nils Geiger\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1160257173-3920074079-2544844589-1001UA.job => C:\Users\Nils Geiger\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-07-29 16:48 - 2015-07-29 16:48 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll 2014-11-17 21:09 - 2015-06-17 08:48 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-07-14 13:50 - 2014-07-14 13:50 - 00597536 _____ () C:\Program Files (x86)\Stardock\WindowFX\WFX32.exe 2015-07-29 16:48 - 2015-07-29 16:48 - 00403968 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll 2015-01-20 23:35 - 2015-01-20 23:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-05-15 16:26 - 2015-05-15 16:26 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2013-05-21 20:33 - 2012-06-01 17:42 - 00920736 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe 2014-09-12 17:57 - 2014-03-19 10:51 - 00316120 _____ () C:\Program Files (x86)\NETGEAR\WNA1100\WifiSvc.exe 2014-01-04 15:09 - 2013-11-26 02:22 - 00607744 _____ () C:\WINDOWS\system32\spool\DRIVERS\x64\3\JobCapsA.DLL 2015-08-05 23:58 - 2015-07-30 08:05 - 02498808 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-08-05 23:58 - 2015-07-30 08:05 - 02498808 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2010-07-15 06:44 - 2010-07-15 06:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2015-08-05 23:58 - 2015-08-02 03:36 - 02028544 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RulesService.dll 2015-07-10 13:00 - 2015-07-10 18:43 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2015-07-29 16:48 - 2015-07-29 16:48 - 00619008 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SignalsManager.dll 2015-08-05 23:58 - 2015-08-02 03:35 - 00928768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RulesBackgroundTasks.dll 2015-07-10 12:59 - 2015-07-10 12:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2015-07-10 12:59 - 2015-07-10 12:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll 2015-08-05 23:58 - 2015-08-02 03:37 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2015-08-05 23:58 - 2015-08-02 03:40 - 00882688 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2015-08-05 23:58 - 2015-08-02 03:34 - 01806848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2015-08-05 23:58 - 2015-08-02 03:35 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-07-10 13:00 - 2015-07-10 18:43 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll 2013-02-18 00:45 - 2013-12-17 03:17 - 01356568 _____ () C:\Program Files\Tablet\Pen\libxml2.dll 2015-03-24 15:28 - 2015-03-24 15:28 - 00036544 _____ () C:\Program Files\Rainmeter\Rainmeter.exe 2015-03-24 15:28 - 2015-03-24 15:28 - 00775872 _____ () C:\Program Files\Rainmeter\Rainmeter.dll 2015-03-24 15:27 - 2015-03-24 15:27 - 00058368 _____ () C:\Program Files\Rainmeter\Plugins\WebParser.dll 2015-03-24 15:28 - 2015-03-24 15:28 - 00022528 _____ () C:\Program Files\Rainmeter\Plugins\InputText.dll 2015-03-24 15:27 - 2015-03-24 15:27 - 00012800 _____ () C:\Program Files\Rainmeter\Plugins\PerfMon.dll 2014-11-15 22:15 - 2007-09-02 14:58 - 00495616 _____ () C:\Program Files (x86)\RocketDock\RocketDock.exe 2015-05-06 15:39 - 2015-05-06 15:39 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-05-06 15:39 - 2015-05-06 15:39 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-08-10 20:01 - 2015-08-10 20:01 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15081003\algo.dll 2015-08-12 14:59 - 2015-08-12 14:59 - 02961920 _____ () C:\Program Files\AVAST Software\Avast\defs\15081201\algo.dll 2013-05-21 20:33 - 2015-08-12 14:59 - 00020992 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll 2013-05-21 20:33 - 2010-06-29 10:58 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll 2013-01-17 17:18 - 2013-05-20 11:58 - 00620718 _____ () C:\Program Files (x86)\DVBViewer\sqlite3.dll 2014-12-19 01:48 - 2014-12-19 01:48 - 00622880 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll 2014-09-12 17:57 - 2014-03-06 17:45 - 00372736 _____ () C:\Program Files (x86)\NETGEAR\WNA1100\WifiLib.dll 2015-03-30 21:30 - 2015-07-24 06:22 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-03-30 21:23 - 2015-03-30 21:23 - 00045568 _____ () D:\Steam\steamapps\common\FaceRig\Bin\FaceRigVirtualCam32.ax 2014-11-15 22:15 - 2007-09-02 14:57 - 00069632 _____ () C:\Program Files (x86)\RocketDock\RocketDock.dll 2015-07-16 14:29 - 2014-09-28 17:59 - 00019872 _____ () C:\Program Files (x86)\Samsung\Samsung Magician\SAMSUNG_SSD.dll 2014-03-10 16:44 - 2014-03-10 16:44 - 00067728 _____ () C:\Program Files (x86)\Stardock\CursorFX\zlib1.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 40555008 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\libcef.DLL 2015-04-13 19:04 - 2015-04-13 19:04 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 01274655 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\libxml2-2.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00028160 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\libssp-0.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00100352 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\zlib1.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00373657 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\plugins\libmsn.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00021337 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\plugins\libxmpp.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00415553 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\libjabber.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00190464 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\libsasl.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00022832 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\plugins\libyahoo.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00228908 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\libymsg.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00027811 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\plugins\ssl-nss.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00012004 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\plugins\ssl.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00140288 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\sasl2\saslDIGESTMD5.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00102912 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\sasl2\saslPLAIN.dll 2015-07-19 13:05 - 2015-07-19 13:05 - 00425984 _____ () C:\Program Files (x86)\Overwolf\0.87.58.0\Purplizer\sqlite3.dll 2013-04-09 23:14 - 2007-12-24 01:08 - 00391680 _____ () C:\Program Files (x86)\RocketDock\Docklets\StackDocklet\StackDocklet.dll 2015-08-06 23:04 - 2015-07-31 08:19 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libglesv2.dll 2015-08-06 23:04 - 2015-07-31 08:19 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\TEMP:054203E4 AlternateDataStreams: C:\ProgramData\TEMP:966F7784 AlternateDataStreams: C:\Users\Nils Geiger\OneDrive:ms-properties ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service" ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Nils Geiger\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\lyxus_große_augen_ohne_ponnie.bmp DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\...\StartupApproved\StartupFolder: => "NETGEAR WNA1100 Setup-Assistent.lnk" HKLM\...\StartupApproved\StartupFolder: => "Dyn Updater Tray Icon.lnk" HKLM\...\StartupApproved\StartupFolder: => "XBox Joypad.lnk" HKLM\...\StartupApproved\StartupFolder: => "CineForm Status.lnk" HKLM\...\StartupApproved\StartupFolder: => "GoPro Importer.lnk" HKLM\...\StartupApproved\Run: => "Launch LCore" HKLM\...\StartupApproved\Run: => "SaiMfd" HKLM\...\StartupApproved\Run: => "ProfilerU" HKLM\...\StartupApproved\Run: => "Samurize" HKLM\...\StartupApproved\Run: => "XboxStat" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "Nvtmru" HKLM\...\StartupApproved\Run: => "ShadowPlay" HKLM\...\StartupApproved\Run: => "NvBackend" HKLM\...\StartupApproved\Run: => "RtHDVBg_DTS" HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run: => "Start WingMan Profiler" HKLM\...\StartupApproved\Run: => "IAStorIcon" HKLM\...\StartupApproved\Run: => "vksts" HKLM\...\StartupApproved\Run: => "TrayApplication" HKLM\...\StartupApproved\Run: => "HarmonyUserStartup" HKLM\...\StartupApproved\Run: => "HarmonyHFPSkypePlugin" HKLM\...\StartupApproved\Run: => "THXCfg64" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "jswtrayutil" HKLM\...\StartupApproved\Run32: => "APSDaemon" HKLM\...\StartupApproved\Run32: => "DivXUpdate" HKLM\...\StartupApproved\Run32: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "Lachesis" HKLM\...\StartupApproved\Run32: => "KiesTrayAgent" HKLM\...\StartupApproved\Run32: => "AdobeCEPServiceManager" HKLM\...\StartupApproved\Run32: => "HP Software Update" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKLM\...\StartupApproved\Run32: => "AdobeCS5ServiceManager" HKLM\...\StartupApproved\Run32: => "SwitchBoard" HKLM\...\StartupApproved\Run32: => "WinampAgent" HKLM\...\StartupApproved\Run32: => "PowerDVD14Agent" HKLM\...\StartupApproved\Run32: => "SDTray" HKLM\...\StartupApproved\Run32: => "DivXMediaServer" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\StartupFolder: => "Winamp.lnk" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\StartupFolder: => "OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\StartupFolder: => "Tintenwarnungen überwachen - HP Officejet 7500 E910 (Netzwerk).lnk" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\StartupFolder: => "I See Fire (Kygo Remix).WAV" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "BrowserChoice" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "DAEMON Tools Lite" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Connectify" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "CubeDesktopNXT" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "RocketDock" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "KiesPreload" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "HP Officejet 7500 E910 (NET)" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "AmazonMP3DownloaderHelper" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Amazon Cloud Player" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "NextLive" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Virtual WiFi Router" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Unified Remote v2" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Amazon Music" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Unified Remote V3" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Advanced SystemCare 8" HKU\S-1-5-21-1160257173-3920074079-2544844589-1001\...\StartupApproved\Run: => "Dropbox Update" |
12.08.2015, 14:06 | #12 |
| Skype Malware/ Spam Addition Teil 2 Code:
ATTFilter ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [{BEC563D3-E765-4704-8F05-12B4B4AF8E06}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{38A4389C-DCF9-4122-A49B-52B2910D55AE}] => (Allow) C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe FirewallRules: [{2AC22284-D564-4B15-8A6A-9AAE4A4FB8AD}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{642103BC-21CB-4803-AFE4-91EB6E6ED547}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [{6B167F97-E9B6-4EC8-9BC9-AD94D784DDE3}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [UDP Query User{1FC941F2-300D-410A-B44A-4B5D3D12BB37}C:\program files (x86)\mouseserver\mouseserver.exe] => (Allow) C:\program files (x86)\mouseserver\mouseserver.exe FirewallRules: [TCP Query User{032233DB-B84C-4A90-B9D2-47FBFE0657DC}C:\program files (x86)\mouseserver\mouseserver.exe] => (Allow) C:\program files (x86)\mouseserver\mouseserver.exe FirewallRules: [UDP Query User{882E1877-303A-4AF4-BD84-E87EA23BA81C}C:\users\spotify.exe] => (Allow) C:\users\spotify.exe FirewallRules: [TCP Query User{E38D9B09-288D-4640-B307-7CF035051395}C:\users\spotify.exe] => (Allow) C:\users\spotify.exe FirewallRules: [{7FA0EEE0-0099-473B-9EFD-8D1F66666788}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{6B2FEB1E-CEFD-4FDC-9892-8BE782997B14}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{BB74370D-C0BD-428B-AF76-6BE3A0CBDA49}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{30BF21DC-7719-4C47-84EC-03A8C8CAF17F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [UDP Query User{FC164850-5125-430F-8670-E1EA7F817564}C:\users\spotify.exe] => (Allow) C:\users\spotify.exe FirewallRules: [TCP Query User{9A5E2862-D4CA-4ABE-9C04-52CEB47F44C9}C:\users\spotify.exe] => (Allow) C:\users\spotify.exe FirewallRules: [{3E86E999-3C6C-42A9-AFBD-646C6E4333CC}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [{0FE12F7B-5001-4680-B7B5-16A0ADF55016}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\workshop\Workshop.exe FirewallRules: [UDP Query User{61849AF4-3081-4EF5-9AAB-41142B1CD7C8}C:\users\nils geiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nils geiger\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{7DF596F2-A21F-4D4A-890E-839F4DF9B7E2}C:\users\nils geiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nils geiger\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{EF77E89B-38B5-4D10-86AD-97246AAE1E5B}D:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{CE04BA36-0887-4E95-A2BE-759E977CDA0B}D:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{7F5B9B93-412C-44FA-81FA-0C2D1B57E7C2}D:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{DF3CD87B-1AB3-48A1-A286-C5781A3E2100}D:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{8F1C9756-2E19-4BB9-9CB6-7853A1EAEAAD}C:\users\nils geiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nils geiger\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{C7BD1153-E110-4411-91D5-0DA7BEF233CC}C:\users\nils geiger\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nils geiger\appdata\roaming\spotify\spotify.exe FirewallRules: [{D2971BF6-5E44-4BDF-A545-8D4CC95E3104}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{29CAE7A3-0A39-4817-8DEA-8D164E7ECEC6}] => (Allow) C:\Program Files (x86)\Samsung\SideSync3\SideSync3.exe FirewallRules: [{AEC0AB46-1A61-40D3-9C59-BF741ED40E44}] => (Allow) C:\Program Files (x86)\Samsung\SideSync3\SideSync3.exe FirewallRules: [UDP Query User{24D27487-F1FE-4EA0-AB33-F09BE20C418C}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe FirewallRules: [TCP Query User{0DE17696-1C4E-4E60-BCC0-8E60E0EF6D0D}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe FirewallRules: [{987CAC33-A1F0-41EE-852D-F5D996E56CF6}] => (Allow) D:\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [{871C8E55-8436-4CFA-A112-855BC64C86C2}] => (Allow) D:\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [UDP Query User{B62D6476-3D66-4C2A-A5C8-4CC4FA2630BA}C:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe] => (Allow) C:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe FirewallRules: [TCP Query User{53B50C28-EF43-4F98-9379-87DA55EFB05B}C:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe] => (Allow) C:\program files (x86)\microsoft office\live meeting 8\console\pwconsole.exe FirewallRules: [{F00C67E9-1281-4152-BACF-A3B18DEE2E48}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{2BE7F3E7-4FD3-40C4-A47E-FEF22D12606B}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{819F4AEB-72EF-4CDC-9326-242B2F3D83B1}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{35038119-E8A5-44C0-B115-98B1D4F9783A}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{AFA7CC63-428D-455F-B62B-AF02BAF5379B}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\my_garrysmod_server\srcds.exe FirewallRules: [{33403E21-5FBC-4830-B58F-1C7D557CA53B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{CBEC02FA-1BE2-4F5C-A885-A709097A8C75}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [UDP Query User{54FF3F33-0EEA-4DE4-9EF9-ADC37343128F}D:\steam\steamapps\common\dmc devil may cry\binaries\win32\dmc-devilmaycry.exe] => (Allow) D:\steam\steamapps\common\dmc devil may cry\binaries\win32\dmc-devilmaycry.exe FirewallRules: [TCP Query User{AE802BA2-4F1B-41A8-A6EE-54AD30478E76}D:\steam\steamapps\common\dmc devil may cry\binaries\win32\dmc-devilmaycry.exe] => (Allow) D:\steam\steamapps\common\dmc devil may cry\binaries\win32\dmc-devilmaycry.exe FirewallRules: [{A9901F08-8632-48E3-9663-6035BAB2150B}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe FirewallRules: [{435D169C-9243-46D9-930A-2BA796155CE7}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe FirewallRules: [{C181A355-2F2A-48C9-A0E3-836CAC5962A7}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\CTI\xcti.exe FirewallRules: [{EED60256-F500-49B4-ABB4-B8E8768AA907}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\CTI\xcti.exe FirewallRules: [{ADEB42B0-7F63-4804-8D26-973D6D826CB9}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\USB\Jabra32.exe FirewallRules: [{8EC8E56C-658B-4D75-BBBD-3DCAFAAE779A}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\USB\Jabra32.exe FirewallRules: [{6295FE2E-B16F-4B28-887F-3C31F937EB3F}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\xproxy.exe FirewallRules: [{5B34CA45-29D3-4A86-88C4-A1AF0BF61091}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\xproxy.exe FirewallRules: [{F8776F70-B41A-4554-83CB-E535250C9BD5}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\NinjaLi.exe FirewallRules: [{83908FC1-486B-4CEE-BFED-5B62B0A78DAB}] => (Allow) C:\Program Files (x86)\NinjaLite\NinjaLite\NinjaLi.exe FirewallRules: [UDP Query User{18A1B96B-8336-4927-9F62-A767EA608BED}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [TCP Query User{7BDA0B96-FC15-4D0F-9DF6-4C30E2CFADED}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [{439632C4-7BC6-4981-9943-D37316FE79B0}] => (Allow) D:\Steam\SteamApps\common\NoLimits 2\64bit\nolimits2stm.exe FirewallRules: [{F36A9933-5A77-4DDE-B4C9-79A1BD447266}] => (Allow) D:\Steam\SteamApps\common\NoLimits 2\64bit\nolimits2stm.exe FirewallRules: [{44F9E6C0-BD85-4B8B-81DE-4D2CD99CDD08}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVD Cinema\PowerDVDCinema.exe FirewallRules: [{40A97253-0F12-47CE-BEFD-C2165D2DCC6B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVDMovie.exe FirewallRules: [{35445DA6-DC9D-45FB-BBD2-77070C58E7AB}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe FirewallRules: [{562D039A-AA7F-44D5-ADA4-ADDAFCED9A4C}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPDVD14.exe FirewallRules: [{4FD3ADF2-C532-421F-B0DD-8921C375CC4E}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD.exe FirewallRules: [{C213A110-EB59-488C-B551-B10A9E9C8DC5}] => (Allow) D:\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{37E83043-6A70-4DC2-8FA6-E9DAF795FA16}] => (Allow) D:\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{32A33A93-D05F-435B-B3D7-7261411C2F1B}] => (Allow) D:\Steam\SteamApps\common\Tabletop Simulator\Tabletop Simulator.exe FirewallRules: [{EDB60158-CA1F-4B2B-88F3-9A9EE1C032B7}] => (Allow) D:\Steam\SteamApps\common\Tabletop Simulator\Tabletop Simulator.exe FirewallRules: [{C9E80B2D-2B0C-4F5B-863B-CB613893CCE3}] => (Allow) D:\Steam\SteamApps\common\FaceRig\Bin\Launcher.exe FirewallRules: [{4DD96D9D-6B11-411D-8EB1-56D9CCD96027}] => (Allow) D:\Steam\SteamApps\common\FaceRig\Bin\Launcher.exe FirewallRules: [{CB4D2725-56D1-43A0-933B-C034B26EF071}] => (Allow) D:\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe FirewallRules: [{4E7EFF41-1326-44DF-A3C6-E7AC8D2D4FE2}] => (Allow) D:\Steam\SteamApps\common\Dust An Elysian Tail\DustAET.exe FirewallRules: [{DE46F40F-0D35-48F3-9460-4BBAFBFA0630}] => (Allow) D:\Steam\SteamApps\common\LYNE\LYNE.exe FirewallRules: [{0121D028-E2F3-4C0C-BF99-BADFF4EFB7B5}] => (Allow) D:\Steam\SteamApps\common\LYNE\LYNE.exe FirewallRules: [{D328C2D7-F6AD-470C-AF30-E0CA75D43548}] => (Allow) D:\Steam\SteamApps\common\DmC Devil May Cry\Binaries\Win32\DMC-DevilMayCry.exe FirewallRules: [{5D3507AC-171D-45B1-B7DF-92AB95CE9FC1}] => (Allow) D:\Steam\SteamApps\common\DmC Devil May Cry\Binaries\Win32\DMC-DevilMayCry.exe FirewallRules: [UDP Query User{82F50E6B-A4B5-4673-AFCD-511152152E57}D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe] => (Block) D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe FirewallRules: [TCP Query User{D25D2E55-B3BB-4A35-80B0-96138D98B78A}D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe] => (Block) D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe FirewallRules: [UDP Query User{B33EE54C-ACEB-4B77-B2BD-0FEA2F7A592F}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [TCP Query User{97D45E6E-BDD6-47CD-99B9-DF720005E181}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [UDP Query User{EE6BB073-EE74-4EAC-A86A-8B50359FF6CD}D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe] => (Allow) D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe FirewallRules: [TCP Query User{C4DFC358-E30F-418F-BF01-8C0FD5ED6051}D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe] => (Allow) D:\program files (x86)\electronic arts\need for speed(tm) hot pursuit\nfs11.exe FirewallRules: [{CCB9889C-888A-42A9-BD9E-6CCEE48896CC}] => (Allow) D:\Program Files (x86)\Electronic Arts\Need for Speed(TM) Hot Pursuit\Launcher.exe FirewallRules: [{B4C8FAD9-36DB-46CA-8128-7A90CC0CD943}] => (Allow) D:\Program Files (x86)\Electronic Arts\Need for Speed(TM) Hot Pursuit\Launcher.exe FirewallRules: [UDP Query User{79D2A481-7B69-4C23-9D08-18B9A04E4345}D:\tmunitedforever\tmforever.exe] => (Allow) D:\tmunitedforever\tmforever.exe FirewallRules: [TCP Query User{89B8396C-D841-4DF9-B66E-06E2399AB43B}D:\tmunitedforever\tmforever.exe] => (Allow) D:\tmunitedforever\tmforever.exe FirewallRules: [UDP Query User{1DD2FD76-C08E-45E2-A88E-5A33AFA5730D}D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe] => (Allow) D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe FirewallRules: [TCP Query User{1C0CC903-6330-49A3-ABB9-D45EA7D21A37}D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe] => (Allow) D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe FirewallRules: [{A469CC7A-E4D6-405E-BCBF-543A3C835B15}] => (Allow) LPort=25565 FirewallRules: [{E12BAB7F-9264-4EF9-A7E3-8E84B4CEC625}] => (Allow) LPort=25565 FirewallRules: [{BE715005-DF7D-4505-A111-BBBC9B922304}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{543071D4-46E0-4349-8341-46B21E7EB283}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{D1772513-C229-4811-A288-4D152BD02655}] => (Allow) D:\Steam\SteamApps\common\Theme Park Studio\ThemeParkStudio.exe FirewallRules: [{9270748A-F874-4ED8-B7D1-6704923EF678}] => (Allow) D:\Steam\SteamApps\common\Theme Park Studio\ThemeParkStudio.exe FirewallRules: [{D595D4D4-072B-45CD-AE91-47619A04FEAC}] => (Block) D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe FirewallRules: [{6A49148C-0CBB-4739-85B4-598108442BDE}] => (Block) D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe FirewallRules: [UDP Query User{CB2985A4-FD14-430A-BD46-89E5E8CD631E}D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe] => (Allow) D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe FirewallRules: [TCP Query User{3C250A1B-02C5-44E5-90AE-0F9BBEA584FC}D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe] => (Allow) D:\steam\steamapps\common\naruto shippuden ultimate ninja storm 3 full burst\ns3fb.exe FirewallRules: [{307266E0-3316-4E61-847C-A4C82699F21A}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{376A3970-1CC7-461C-805A-238A520DD038}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{46EB2AAE-635A-4FA7-AABB-11EF809AC009}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{2428BC79-752E-4B92-83AD-92564C49017C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{B6195493-A9E3-41F3-A7F6-A254E11D4ACE}] => (Allow) D:\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{606D0F44-B8BB-40FD-8AB6-2D2C3C273109}] => (Allow) D:\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{5FF38424-9DEF-44B6-A209-63CDDA1C2FE3}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{AD4B5E94-0A59-472C-A79C-8EB1CFDE30DB}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{7578ECF0-A791-4D7D-AD44-C3E876669046}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{AFB68B28-768D-46A4-BD33-0B84FE9DF275}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPNetworkCommunicator.exe FirewallRules: [{EE2DAAE9-5992-4DBF-ADCE-1CDE216B1720}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\Bin\DeviceSetup.exe FirewallRules: [{6E2F7B01-0BA4-4476-8FD5-9EE5DC0928B0}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\bin\SendAFax.exe FirewallRules: [{6BCB4B86-A307-4BB1-B1D9-37C2F59DEA34}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\bin\DigitalWizards.exe FirewallRules: [{40ABC182-2FA9-46BF-BAEA-839D09B705D4}] => (Allow) C:\Program Files\HP\HP Officejet 7500 E910\bin\FaxApplications.exe FirewallRules: [{A075F4B4-076F-431C-9F25-1CFE1C15D630}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{493CD3DB-16C4-42B4-B32A-7C948972A724}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{6139E8BE-3AC2-438A-BAB7-DEF620EB0B6A}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{ED545F13-746D-4F07-8FC8-A9A1B4D0EDBF}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{4E1C4AFA-E020-4200-8C09-4EBEBE15B3A1}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{D2591605-D01C-4CB8-B055-A2B20F0C8032}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{CB98F463-D045-466F-9F50-F4F49319AFE6}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{CCE5236E-E4B8-4A9D-9862-114AC28F13E6}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{8CEDB04B-F0CA-4DE9-A327-E08A3BCFB2AB}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{EDC641F3-9AD7-40E5-B51A-A3ADA6497180}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{3CBF97DF-B9A2-4728-A69C-5F3BE2F34EBF}] => (Allow) D:\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{32FE8189-0C32-406D-B276-E5C58A2431BD}] => (Allow) D:\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{70DB637A-9B81-44D4-9E12-BDCD2CE0F640}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{8249E862-09EC-483C-9711-B24255981823}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{B61DD159-417A-4CF2-8149-0279FEFB99CD}] => (Allow) D:\Steam\SteamApps\common\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst\NS3FB_launcher.exe FirewallRules: [{DFAE2E93-0E32-414C-905A-EE6DC30BDF00}] => (Allow) D:\Steam\SteamApps\common\NARUTO SHIPPUDEN Ultimate Ninja STORM 3 Full Burst\NS3FB_launcher.exe FirewallRules: [{1CB7EE0D-463F-4515-93F0-6613C60E3392}] => (Allow) D:\Steam\SteamApps\common\Chaos on Deponia\VisionaireConfigurationTool.exe FirewallRules: [{B5AED8C4-4F81-4B77-9FE6-CB8CBC784FFC}] => (Allow) D:\Steam\SteamApps\common\Chaos on Deponia\VisionaireConfigurationTool.exe FirewallRules: [{7501D972-7958-42D2-B238-0197CD549795}] => (Allow) D:\Steam\SteamApps\common\Chaos on Deponia\deponia2.exe FirewallRules: [{2DD2E42B-DBD7-47B3-AD60-8A8962EAD4BB}] => (Allow) D:\Steam\SteamApps\common\Chaos on Deponia\deponia2.exe FirewallRules: [{09317978-AD50-4220-B690-10076D9E082C}] => (Allow) D:\Steam\SteamApps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{5357BE86-2508-4B0A-BF71-73E1F6AD7D2D}] => (Allow) D:\Steam\SteamApps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{E8936DC0-7CC2-4B5E-A8FF-D93876C923AA}] => (Allow) D:\Steam\SteamApps\common\Deponia\Deponia.exe FirewallRules: [{5ABD3859-2AA0-4FFF-8031-639D12311BC9}] => (Allow) D:\Steam\SteamApps\common\Deponia\Deponia.exe FirewallRules: [{35F2B412-8BC3-438D-AC82-AFF66B5E97D0}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{066D856D-7438-480C-84DA-421E735E14B5}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{5D6AE509-6E89-4550-B18D-89842CFFE397}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{3766DF1D-6C72-4907-A8E8-5BC5D75EED86}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{11EF207E-413A-4E91-AAE0-996D90966852}] => (Allow) D:\Steam\SteamApps\common\QUBE\Binaries\Win32\QUBE.exe FirewallRules: [{F236D136-19AC-4467-BAE9-8850026A525B}] => (Allow) D:\Steam\SteamApps\common\QUBE\Binaries\Win32\QUBE.exe FirewallRules: [{EE823C97-E84B-4A7A-A167-710AD80E90C5}] => (Allow) D:\Steam\SteamApps\common\f1 race stars\F1RaceStars.exe FirewallRules: [{D61CD54B-FAC1-41C6-BE23-EC2D45C9EBBF}] => (Allow) D:\Steam\SteamApps\common\f1 race stars\F1RaceStars.exe FirewallRules: [{BFEA3332-9EB6-4976-A3AA-B68B98944D47}] => (Allow) D:\Steam\SteamApps\common\sonic generations\ConfigurationTool.exe FirewallRules: [{584FF6E6-47C8-4A50-AB32-74445A9D8580}] => (Allow) D:\Steam\SteamApps\common\sonic generations\ConfigurationTool.exe FirewallRules: [{BECD0A77-BFA6-42C2-9E7F-6D67C05AC1A1}] => (Allow) D:\Steam\SteamApps\common\sonic generations\SonicGenerations.exe FirewallRules: [{22E380F0-9A55-40A4-A236-FA4E76208053}] => (Allow) D:\Steam\SteamApps\common\sonic generations\SonicGenerations.exe FirewallRules: [{03F357C3-F4F9-42D2-9CC7-C3BBC87617F0}] => (Allow) D:\Steam\SteamApps\common\call of duty black ops\BlackOpsMP.exe FirewallRules: [{2FB4D31F-DA64-4118-B6C2-1871384361AD}] => (Allow) D:\Steam\SteamApps\common\call of duty black ops\BlackOpsMP.exe FirewallRules: [{434898D3-A2AC-4FA3-9630-992C47DBB661}] => (Allow) D:\Steam\SteamApps\common\call of duty black ops\BlackOps.exe FirewallRules: [{EBF6B8D5-2600-45DC-BEC0-4B6AC22F87DC}] => (Allow) D:\Steam\SteamApps\common\call of duty black ops\BlackOps.exe FirewallRules: [{240A98B3-B182-4C06-ADFF-ECAAB022C20E}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [{ECE9510E-704E-4C7F-A671-8FEE1818A8C3}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [{646AD78E-A057-47CA-AEA7-CCB54A1DEC51}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5sp.exe FirewallRules: [{2DA560C6-A96C-4C2B-8821-CE74F29B68A7}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5sp.exe FirewallRules: [{CAA7684D-262B-4C37-B9A2-60561E278070}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\Support\EA Help\Electronic_Arts_Technical_Support.htm FirewallRules: [{73BEE2E6-6996-4678-958E-FA87E7ECEFAA}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\Support\EA Help\Electronic_Arts_Technical_Support.htm FirewallRules: [{831DDFD2-3A20-4E07-82F5-720128D7783A}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe FirewallRules: [{DA9427E8-2E71-4766-B0E2-244C80D5907A}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe FirewallRules: [{A5870B91-1528-4BE6-A27D-57857E5BC54E}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe FirewallRules: [{D3071468-563C-4197-B938-A5DAB8B4437E}] => (Allow) D:\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe FirewallRules: [{69D0E0BD-0C5D-4CFC-BB63-9ACC4D111300}] => (Allow) D:\Steam\SteamApps\common\brink\brink.exe FirewallRules: [{7DDEBBDB-C70A-4B11-BE90-E606AB051808}] => (Allow) D:\Steam\SteamApps\common\brink\brink.exe FirewallRules: [{B05CA184-5287-4FF5-9F4B-7BF56CF62804}] => (Allow) D:\Steam\SteamApps\common\mirrors edge\Support\EA Help\Electronic_Arts_Technical_Support.htm FirewallRules: [{8B8958AA-8673-45F3-A6C4-5C8B3B22808F}] => (Allow) D:\Steam\SteamApps\common\mirrors edge\Support\EA Help\Electronic_Arts_Technical_Support.htm FirewallRules: [{9D0C19E2-06DB-4637-8522-A2DB0ED62415}] => (Allow) D:\Steam\SteamApps\common\mirrors edge\Binaries\MirrorsEdge.exe FirewallRules: [{BD382F30-E56E-481E-8C21-3E64B08446FD}] => (Allow) D:\Steam\SteamApps\common\mirrors edge\Binaries\MirrorsEdge.exe FirewallRules: [{AC91DB96-E876-4147-A008-0E53632E987F}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe FirewallRules: [{2FF19A27-68A7-41DE-A465-26B192D484E8}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe FirewallRules: [{4C618471-2D66-4D57-B1C1-D5E45B549539}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 2\iw4sp.exe FirewallRules: [{C0DA58B3-B81E-4063-8862-6EB3C4F4E233}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 2\iw4sp.exe FirewallRules: [{972EA344-D41F-48B7-B8A5-3EDF4565F9EE}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{943CE081-1573-4C5D-BFA4-ACE2195A2EB5}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{47CDD316-FE6E-4C77-AAF7-57553CB1BD96}] => (Allow) D:\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{D3F5C6B5-CEBA-4CDD-B571-00FC478212AE}] => (Allow) D:\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{BE0EE4C5-5397-450F-BBA3-3484027B561A}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{EF4A4322-CD5B-4A0A-B278-7A92A4638216}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Online\GunsOfIcarusOnline.exe FirewallRules: [{4EECFB13-8AB8-4340-9E5F-372B8C69C303}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{A7D73273-AFC4-4D6C-9E43-5CD118172A46}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{2E3137FB-EA41-45D0-916E-5E0CE231A2AB}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{5D8E075E-DEA4-4388-BC88-EC27C72F91A1}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [UDP Query User{8FC52D5D-85F1-4E3F-9EA4-2EB02A71D23B}D:\program files (x86)\ubisoft\related designs\anno 2070\autopatcher.exe] => (Allow) D:\program files (x86)\ubisoft\related designs\anno 2070\autopatcher.exe FirewallRules: [TCP Query User{DA2EE183-847C-462B-A47A-822ABECD4C5B}D:\program files (x86)\ubisoft\related designs\anno 2070\autopatcher.exe] => (Allow) D:\program files (x86)\ubisoft\related designs\anno 2070\autopatcher.exe FirewallRules: [{0F557997-9E48-4BA6-932A-E2BE1B7F00DB}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{5FE4822D-D799-4E68-96A2-FCD6F37581DB}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{C209C891-E1B7-4AB2-8C07-C5C2495E25F6}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\InitEngine.exe FirewallRules: [{2D7D3052-C79F-48A0-B1BD-40E36F93EA69}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\InitEngine.exe FirewallRules: [{339D0845-89D1-45A0-9A61-E0B959BB0652}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\AutoPatcher.exe FirewallRules: [{3520C5D3-16BE-45A4-A18D-931041D9964B}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\AutoPatcher.exe FirewallRules: [{8D2631FB-1C41-4321-83B9-F474EA3AADD5}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\Anno5.exe FirewallRules: [{5D27BB2E-261E-4D16-9B0A-F3561EEA66DA}] => (Allow) D:\Program Files (x86)\Ubisoft\Related Designs\ANNO 2070\Anno5.exe FirewallRules: [{E451C8A5-E743-4536-9D1D-B5AB75F6F541}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{75080D4C-6ECC-4D97-BD6A-8920B3E0D567}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{26765480-9E68-4603-99D9-91A3E81B2E86}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{CD8C986A-DEAE-4AC4-B1ED-0D00380571E4}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{B1173632-00BA-4841-9F9F-C172B45A0900}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{4900661D-824D-4DEF-8127-8922A420776C}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{5897024F-0298-4ADE-AEDA-E681457B461A}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{FA410AF6-6F4E-43D4-8371-EB1CF91D3E0C}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{220A38E3-44A8-4726-97F6-54CFEBD23523}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{AD793FA4-726B-4A34-B29B-91EE9AB5E305}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{6993F139-0C0C-4A56-8938-E54B8BFF61DF}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{A44C17CF-7BA0-41B5-ABAC-8A7030E9CA44}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{B80E5AB1-A21C-4DF7-BE3A-146D2805776D}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{48E91C91-3DE7-4642-B890-B0883AE75035}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{C1DBB8AA-7571-4680-88E0-B4122501A268}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{6DB23026-D6A4-4702-97FC-ED071E9060AA}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{C809FE0B-D73E-4CB4-8900-E987D349A59D}] => (Allow) D:\Steam\SteamApps\common\Source SDK Base\hl2.exe FirewallRules: [{9353BCA6-4F94-4D5B-ABE8-1305D02CCC72}] => (Allow) D:\Steam\SteamApps\common\Source SDK Base\hl2.exe FirewallRules: [{9E365BCF-98CC-457F-919E-EA3832CE311D}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{92DA579F-5AF5-4ACA-A1C9-B8C3496BD61D}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{86BDFBBB-608D-458A-8D26-667B759D0459}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{A978ED48-0609-4D1A-9AB0-9E633701EA29}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{DEFC5D29-A859-474D-B671-6B352D1B4458}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{E82C04AC-0FAF-487A-BD9D-FD39E535C093}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{92DF0DB3-C0CB-4705-AC81-B7309029612A}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{0DB8867C-123D-4861-955C-515F848D75AD}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{620A36D9-08CA-4086-8B77-B7DFF6F69051}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{C0DF22F0-A4CC-4A69-8C42-DA0C7FCB1147}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{C4D21E05-8CF8-4C9D-BC92-678230F192B0}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{05DA1206-570D-42AE-9B3B-ADAACB02052A}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{8863007B-742D-4F4B-85DA-619B054469C4}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{70ACE0A5-25F0-4271-8280-A3CD761EBF81}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{DF607514-48F7-439E-9526-0302E6A9B94B}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{DBBBBA86-0AA4-47F0-A280-36292DC43909}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{425C6FE9-D823-4B87-A829-88CA1F6DEE43}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{37A28CCA-8705-4646-BE1E-5D59D8AD808C}] => (Allow) D:\Steam\SteamApps\common\Audiosurf 2\Audiosurf2.exe FirewallRules: [{06B0641E-D5D0-4063-8F89-C6158FBDF3B7}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{F84C072C-6D59-4BD8-B5BB-3DCD85641047}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [UDP Query User{9F9283CC-09DA-4D0A-A3DF-6F9B929FF960}C:\users\nils geiger\appdata\local\jdownloader v2.0\jdownloader2.exe] => (Allow) C:\users\nils geiger\appdata\local\jdownloader v2.0\jdownloader2.exe FirewallRules: [TCP Query User{824E0EC0-AD86-44C7-B4D4-EC116DB75962}C:\users\nils geiger\appdata\local\jdownloader v2.0\jdownloader2.exe] => (Allow) C:\users\nils geiger\appdata\local\jdownloader v2.0\jdownloader2.exe FirewallRules: [{18DE8D10-1891-4C8A-95BA-F567744FCCFD}] => (Block) %ProgramFiles%\Sony\Vegas Pro 12.0\vegas120.exe FirewallRules: [{A29AAF68-BB2A-4AF0-8F19-F4FFD235E6A9}] => (Block) %ProgramFiles%\Sony\Vegas Pro 12.0\ApplicationRegistration.exe FirewallRules: [{A5037E50-7568-4C00-B1A1-67ADE8C576D6}] => (Allow) C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{FC9A188A-7A85-444B-BABE-8EB97D726439}] => (Allow) C:\Users\Nils Geiger\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{53C698C3-EF3A-4F2D-9893-5F2C2BB1A5B1}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [{907BE00C-5510-4269-B631-1E4AFED42C9B}] => (Allow) D:\Steam\SteamApps\common\call of duty modern warfare 3\iw5mp.exe FirewallRules: [{06C9A383-8B1B-4DAA-945C-42BAD4E56C7C}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{3737BBCE-EEB6-4F49-AED7-764015D3F9D4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{015BD1FE-CA54-4E17-AF79-2C4B562DD28C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{D752C393-8EB1-454E-9E11-16F9592118BD}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [TCP Query User{7A50F123-FB55-4A00-A16C-3E2349D0C13E}C:\program files (x86)\dvbviewer\dvbviewer.exe] => (Allow) C:\program files (x86)\dvbviewer\dvbviewer.exe FirewallRules: [UDP Query User{7ADBFA56-831D-438E-B559-388BCC636CB8}C:\program files (x86)\dvbviewer\dvbviewer.exe] => (Allow) C:\program files (x86)\dvbviewer\dvbviewer.exe FirewallRules: [{F567813B-E02F-4E4F-A373-341952CBFE16}] => (Allow) C:\Users\Nils Geiger\AppData\Local\Apps\2.0\B1XZ4CJD.GOC\D2NK1YQ7.NT4\curs..tion_0000000000000000_0005.0001_d3a016ce8f6b6226\CurseClient.exe FirewallRules: [{C1A360C0-130B-42B5-8BED-CBCED062B9F4}] => (Allow) C:\Users\Nils Geiger\AppData\Local\Apps\2.0\B1XZ4CJD.GOC\D2NK1YQ7.NT4\curs..tion_0000000000000000_0005.0001_d3a016ce8f6b6226\CurseClient.exe FirewallRules: [{E9C92E37-DCB1-4EC3-BA42-3C59B6F313C2}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{2DEDEAEA-F057-4FD1-BB31-C9B99CFCF681}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{A558E858-AD33-4BD5-A871-0E702DEF31D5}] => (Allow) LPort=2869 FirewallRules: [{B21770D5-A0DD-48FB-876B-E5869F3A64BF}] => (Allow) LPort=1900 FirewallRules: [TCP Query User{F0A1C1A1-F6BA-42DD-98DE-3260F422F86E}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [UDP Query User{3031173B-3622-4226-A7BD-A79CDBB3A656}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [TCP Query User{069A4A81-C445-40C8-B201-F02CA45A1E58}C:\program files (x86)\unified remote\remoteserver.exe] => (Allow) C:\program files (x86)\unified remote\remoteserver.exe FirewallRules: [UDP Query User{D4D8FC65-5C47-4C3C-ABE9-DE23F365A2E3}C:\program files (x86)\unified remote\remoteserver.exe] => (Allow) C:\program files (x86)\unified remote\remoteserver.exe FirewallRules: [{B0EBCA6A-D8FC-4DCD-A6C0-045400D040F0}] => (Allow) %APPDATA%\.minecraft\Minecraft.exe FirewallRules: [{E45BE3DE-4826-4495-AA3C-112C73A74CD5}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{3B13C231-4E6E-4BF2-9DD3-070137FC079C}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{A837B188-1E31-4D83-B6FC-8DDDB37A0E19}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{B55D1DC2-25B6-4DF1-9836-AEFEDE07E6B7}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{2B31D2B5-0C9D-4C6B-BDBC-4C7764F82EFF}] => (Allow) D:\Steam\SteamApps\common\sonic generations\SonicGenerations.exe FirewallRules: [{462B9BC8-6B0D-4BDD-8F29-7F98A22C974F}] => (Allow) D:\Steam\SteamApps\common\sonic generations\SonicGenerations.exe FirewallRules: [{EDFD1481-BE09-4755-8177-C243097910C3}] => (Allow) D:\Steam\SteamApps\common\sonic generations\ConfigurationTool.exe FirewallRules: [{434AB96D-5C96-478C-B994-C0F2BDFCCC26}] => (Allow) D:\Steam\SteamApps\common\sonic generations\ConfigurationTool.exe FirewallRules: [TCP Query User{75BA6026-EBDB-43AF-BC94-0D2C9A82D785}D:\steam\steam.exe] => (Allow) D:\steam\steam.exe FirewallRules: [UDP Query User{6A60C30A-4B2B-4202-BDAB-22CBE4CCC7D1}D:\steam\steam.exe] => (Allow) D:\steam\steam.exe FirewallRules: [{8720B008-0041-4AB1-86B9-A7A09B32CF60}] => (Allow) D:\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{3D273E58-AF32-471F-93D7-A95B58A87554}] => (Allow) D:\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [TCP Query User{BE8F908B-7E85-4C32-9DDD-988567035DD3}D:\tmunitedforever\tmforever.exe] => (Allow) D:\tmunitedforever\tmforever.exe FirewallRules: [UDP Query User{C0110A8D-62A1-4146-9049-AB0ADF808091}D:\tmunitedforever\tmforever.exe] => (Allow) D:\tmunitedforever\tmforever.exe FirewallRules: [TCP Query User{F5395AC5-E651-4442-A181-C4E45A557BF8}C:\program files (x86)\pando networks\media booster\pmb.exe] => (Allow) C:\program files (x86)\pando networks\media booster\pmb.exe FirewallRules: [UDP Query User{DA22D8CC-7886-4BC9-A40A-2CDA363404CB}C:\program files (x86)\pando networks\media booster\pmb.exe] => (Allow) C:\program files (x86)\pando networks\media booster\pmb.exe FirewallRules: [TCP Query User{592A3D55-58E4-4382-8A0F-E371A020177A}D:\steamless counterstrikesource pack\hl2.exe] => (Allow) D:\steamless counterstrikesource pack\hl2.exe FirewallRules: [UDP Query User{EA1C22BD-7FE1-47CD-88B8-FEAF70F4264D}D:\steamless counterstrikesource pack\hl2.exe] => (Allow) D:\steamless counterstrikesource pack\hl2.exe FirewallRules: [TCP Query User{C14DD6DD-7A97-46E2-AF47-CB29D011E138}D:\call of duty 4\iw3mp.exe] => (Allow) D:\call of duty 4\iw3mp.exe FirewallRules: [UDP Query User{03D36B9A-68DF-4798-9AC5-A23638F509BE}D:\call of duty 4\iw3mp.exe] => (Allow) D:\call of duty 4\iw3mp.exe FirewallRules: [TCP Query User{F30BB3D5-68E6-4A00-93A1-27400EA0443F}D:\ea games\need for speed underground 2\speed2.exe] => (Allow) D:\ea games\need for speed underground 2\speed2.exe FirewallRules: [UDP Query User{D398F51B-E8D4-4240-B830-33B36E26F204}D:\ea games\need for speed underground 2\speed2.exe] => (Allow) D:\ea games\need for speed underground 2\speed2.exe FirewallRules: [TCP Query User{B545F2BD-3A6A-41BC-8AF2-1C658CC0455A}D:\warcraft iii frozen throne esk\war3.exe] => (Allow) D:\warcraft iii frozen throne esk\war3.exe FirewallRules: [UDP Query User{3B75814F-C14A-4A15-8F72-2C5A82149F9C}D:\warcraft iii frozen throne esk\war3.exe] => (Allow) D:\warcraft iii frozen throne esk\war3.exe FirewallRules: [{E254D2A1-D010-4B19-A0E5-F0357C5741D0}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{490376D9-AC52-4C6B-BD4E-6F785014DE32}] => (Allow) D:\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{C732DE59-5EBB-4438-82A5-6D9F174D328B}] => (Allow) C:\Program Files (x86)\Intel\Extreme Tuning Utility\Client\PerfTune.exe FirewallRules: [TCP Query User{352C07DF-4385-45D7-8E25-89CD9D8DFA40}D:\ubisoft\related designs\anno 1404\tools\anno4web.exe] => (Block) D:\ubisoft\related designs\anno 1404\tools\anno4web.exe FirewallRules: [UDP Query User{F379E485-3DAA-4721-9538-7FD6D3FB221C}D:\ubisoft\related designs\anno 1404\tools\anno4web.exe] => (Block) D:\ubisoft\related designs\anno 1404\tools\anno4web.exe FirewallRules: [TCP Query User{11093953-F7F0-4C9A-9840-B80C26E6D11A}D:\ubisoft\related designs\anno 1404\tools\addonweb.exe] => (Block) D:\ubisoft\related designs\anno 1404\tools\addonweb.exe FirewallRules: [UDP Query User{01D48875-EEEF-49DF-95D2-0291CDB161D1}D:\ubisoft\related designs\anno 1404\tools\addonweb.exe] => (Block) D:\ubisoft\related designs\anno 1404\tools\addonweb.exe FirewallRules: [TCP Query User{6810C979-A35A-45DE-B53D-5C036D52903F}D:\ubisoft\related designs\anno 1404\addon.exe] => (Block) D:\ubisoft\related designs\anno 1404\addon.exe FirewallRules: [UDP Query User{10949702-FD43-4E79-8AC6-B464021BEC26}D:\ubisoft\related designs\anno 1404\addon.exe] => (Block) D:\ubisoft\related designs\anno 1404\addon.exe FirewallRules: [{398048F3-EF4D-49D1-A81B-34C6F5145FAB}] => (Allow) D:\Steam\SteamApps\common\worms reloaded\WormsReloaded.exe FirewallRules: [{2E01D95E-D00D-4D66-B1DB-8ECF73FA7933}] => (Allow) D:\Steam\SteamApps\common\worms reloaded\WormsReloaded.exe FirewallRules: [TCP Query User{24915C0E-982C-4EC6-8F87-F08DA44DB896}D:\worms armageddon\wa.exe] => (Allow) D:\worms armageddon\wa.exe FirewallRules: [UDP Query User{F71195E4-A9C9-451E-894A-894F10B81F3F}D:\worms armageddon\wa.exe] => (Allow) D:\worms armageddon\wa.exe FirewallRules: [{4740D0DD-AAC8-4F5A-A9CF-7A039F94B1B5}] => (Allow) C:\Program Files (x86)\DVBViewer\DVBVservice.exe FirewallRules: [{5D00410B-500C-4056-B066-6A3E91C41AFF}] => (Allow) C:\Program Files (x86)\DVBViewer\DVBVservice.exe FirewallRules: [{0B04846D-560C-40FC-BDA1-D6F1CA80B635}] => (Allow) C:\Program Files (x86)\MyPublicWiFi\MyPublicWiFi.exe FirewallRules: [{0E80FD5A-1536-4876-86BB-ACEFA936553E}] => (Allow) C:\Program Files (x86)\MyPublicWiFi\MyPublicWiFi.exe FirewallRules: [{27780477-7D28-46E9-8BFF-0AE0E1598D38}] => (Allow) LPort=8082 FirewallRules: [{7C24835D-262D-45AF-9DD8-0A0A220B23B1}] => (Allow) LPort=8082 FirewallRules: [TCP Query User{B6CEABB7-12A6-4F5C-A398-3600D19D01CF}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{3C0C3B20-8570-4724-8378-AADD3384E65F}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [TCP Query User{94500151-0AD8-4047-8CE8-9C3DCF3B6DCB}C:\program files (x86)\unified remote\remoteserver.exe] => (Allow) C:\program files (x86)\unified remote\remoteserver.exe FirewallRules: [UDP Query User{8E9B25FC-AF12-4B88-9671-0AF8600E7F27}C:\program files (x86)\unified remote\remoteserver.exe] => (Allow) C:\program files (x86)\unified remote\remoteserver.exe FirewallRules: [{A1F70865-07BE-4D47-9E72-CD1B8577D568}] => (Allow) C:\Program Files (x86)\X-Mirage\x-mirage.exe FirewallRules: [{CAEAD36F-CE2A-4DDE-8E97-800EE139DFD7}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Dev App\GunsOfIcarusOnline.exe FirewallRules: [{288E7C4B-82FF-4FA4-B09D-81105C010CF2}] => (Allow) D:\Steam\SteamApps\common\Guns of Icarus Dev App\GunsOfIcarusOnline.exe FirewallRules: [{B8628407-B918-411D-99C9-48B8E8D465EC}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{A3E8A168-CB6D-4E7D-B578-AAE1C5EEF63A}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{CEE53357-A73A-40E3-AC43-2E6CC468319B}] => (Allow) D:\Steam\SteamApps\common\FaceRig\Bin\FaceRig.exe FirewallRules: [{C94F3E99-E2F5-4AF4-A41A-0A27BD144558}] => (Allow) D:\Steam\SteamApps\common\FaceRig\Bin\FaceRig.exe FirewallRules: [{123130AE-8554-4A55-A0A6-FC8EC4E8659F}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{22E48FFE-4F35-440C-A7C9-74E1EACAD0D0}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [TCP Query User{E8B460BA-4A33-4FA7-98BD-835D75D4775F}D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe] => (Allow) D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe FirewallRules: [UDP Query User{E19634EF-8427-467A-88B5-1F160DBABF3A}D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe] => (Allow) D:\steam\steamapps\common\garrysmod\my_garrysmod_server\srcds.exe FirewallRules: [{90D81BE3-4691-40BF-A490-6DEF5277A60C}] => (Allow) D:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{2724F276-1713-46E8-AC0A-1D45581BBE76}] => (Allow) D:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{B247FBE5-F2E8-45CC-A7AF-7A669D3C646B}] => (Allow) D:\Steam\SteamApps\common\Life is Feudal Your Own\yo_cm_client.exe FirewallRules: [{3D9D3BC2-2767-4F3B-9FFB-6D15AA10AB37}] => (Allow) D:\Steam\SteamApps\common\Life is Feudal Your Own\yo_cm_client.exe FirewallRules: [TCP Query User{4C76A550-C656-4D85-961D-C6ED51C5979C}D:\steam\steamapps\common\life is feudal your own\server\cm_yo_server.exe] => (Allow) D:\steam\steamapps\common\life is feudal your own\server\cm_yo_server.exe FirewallRules: [UDP Query User{A7DDC59C-FC5F-4F3C-B107-7850611FAEF8}D:\steam\steamapps\common\life is feudal your own\server\cm_yo_server.exe] => (Allow) D:\steam\steamapps\common\life is feudal your own\server\cm_yo_server.exe FirewallRules: [TCP Query User{E62EF870-6451-4EED-97F9-6970CDACDEB7}C:\users\nils geiger\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\nils geiger\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{706B1811-27C7-48A2-A103-013D03E7DD57}C:\users\nils geiger\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\nils geiger\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{9CE96289-254E-4F45-8E99-468EEB73C3F0}] => (Allow) D:\Steam\SteamApps\common\Dream\Binaries\Win32\Dream.exe FirewallRules: [{76873EC8-F08F-46F0-B2BC-A19A2866AB72}] => (Allow) D:\Steam\SteamApps\common\Dream\Binaries\Win32\Dream.exe FirewallRules: [{240C3B7C-9AD1-4198-BD4B-FF68E9C8E76E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{B66159B0-5D36-4CE5-B66D-73C5F554ADD0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{19CDFEA5-F3E6-4898-B17C-BC0EED9732D6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{09A034BB-009F-4BDF-A967-80B6A8255B73}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{C1C97C88-EB5F-46F1-859A-E150819CB6ED}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{25FA7513-B525-40BE-98FB-31D58CC5BDC2}C:\program files (x86)\mouseserver\mouseserver.exe] => (Allow) C:\program files (x86)\mouseserver\mouseserver.exe FirewallRules: [UDP Query User{B2BB9842-92E2-4A18-9BC7-EA9451D21592}C:\program files (x86)\mouseserver\mouseserver.exe] => (Allow) C:\program files (x86)\mouseserver\mouseserver.exe FirewallRules: [{D44E2637-1E88-4351-8002-2237D25AE286}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{A905E8EF-3A79-4319-B7B7-F51BDDA17718}] => (Allow) C:\Program Files (x86)\steam\steamapps\common\call of duty modern warfare 3\iw5mp_server.exe FirewallRules: [{3C9764DE-5CD9-498D-9BF6-0D85101ED87B}] => (Allow) C:\Program Files (x86)\steam\steamapps\common\call of duty modern warfare 3\iw5mp_server.exe FirewallRules: [{1893276F-D517-4F34-B69A-A97DF0868299}] => (Allow) D:\Steam\SteamApps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{CAC9ACB8-4F58-4773-B817-904ECA0BAA43}] => (Allow) D:\Steam\SteamApps\common\rocketleague\Binaries\Win32\RocketLeague.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\TriDef 3D\TriDef\TriDefMediaPlayer\TriDefMediaPlayer.exe] => Enabled:TriDef 3D Media Player StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/12/2015 02:28:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/12/2015 02:16:38 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Bei der Aktivierung der App „Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/12/2015 02:16:34 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Bei der Aktivierung der App „Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/11/2015 08:41:55 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/11/2015 08:37:09 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/11/2015 08:37:06 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147024865. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/11/2015 08:37:06 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (08/11/2015 06:09:34 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.10240.16384, Zeitstempel: 0x559f39ae Name des fehlerhaften Moduls: SettingsHandlers_StorageSense.dll, Version: 10.0.10240.16384, Zeitstempel: 0x559f3d87 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000174b9 ID des fehlerhaften Prozesses: 0x185c Startzeit der fehlerhaften Anwendung: 0xSystemSettings.exe0 Pfad der fehlerhaften Anwendung: SystemSettings.exe1 Pfad des fehlerhaften Moduls: SystemSettings.exe2 Berichtskennung: SystemSettings.exe3 Vollständiger Name des fehlerhaften Pakets: SystemSettings.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SystemSettings.exe5 Error: (08/11/2015 06:06:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.10240.16384, Zeitstempel: 0x559f39ae Name des fehlerhaften Moduls: SettingsHandlers_StorageSense.dll, Version: 10.0.10240.16384, Zeitstempel: 0x559f3d87 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000174b9 ID des fehlerhaften Prozesses: 0x27bc Startzeit der fehlerhaften Anwendung: 0xSystemSettings.exe0 Pfad der fehlerhaften Anwendung: SystemSettings.exe1 Pfad des fehlerhaften Moduls: SystemSettings.exe2 Berichtskennung: SystemSettings.exe3 Vollständiger Name des fehlerhaften Pakets: SystemSettings.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SystemSettings.exe5 Error: (08/11/2015 05:24:01 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_f41f7b285750ef43.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_f41f7b285750ef43.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_f41f7b285750ef43.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_f41f7b285750ef43.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_3bccb1ff6bcd1849.manifest. Systemfehler: ============= Error: (08/12/2015 03:01:15 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/12/2015 03:01:14 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/12/2015 03:01:14 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/12/2015 03:01:13 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/12/2015 03:01:12 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/12/2015 03:01:12 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/12/2015 03:01:11 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/12/2015 03:01:10 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/12/2015 03:01:10 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/12/2015 03:01:09 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Microsoft Office: ========================= Error: (08/12/2015 02:28:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2144927141 Error: (08/12/2015 02:16:38 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp-2144927148 Error: (08/12/2015 02:16:34 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Microsoft.XboxApp_8wekyb3d8bbwe!Microsoft.XboxApp-2144927148 Error: (08/11/2015 08:41:55 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2144927141 Error: (08/11/2015 08:37:09 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2144927141 Error: (08/11/2015 08:37:06 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2147024865 Error: (08/11/2015 08:37:06 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NILS-PC) Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2144927141 Error: (08/11/2015 06:09:34 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SystemSettings.exe10.0.10240.16384559f39aeSettingsHandlers_StorageSense.dll10.0.10240.16384559f3d87c000000500000000000174b9185c01d0d44fbebcb7aeC:\WINDOWS\ImmersiveControlPanel\SystemSettings.exeC:\Windows\System32\SettingsHandlers_StorageSense.dllc77507c3-7a19-43aa-a1b7-b7dc0e59e15bwindows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewymicrosoft.windows.immersivecontrolpanel Error: (08/11/2015 06:06:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SystemSettings.exe10.0.10240.16384559f39aeSettingsHandlers_StorageSense.dll10.0.10240.16384559f3d87c000000500000000000174b927bc01d0d44f5bd9165cC:\WINDOWS\ImmersiveControlPanel\SystemSettings.exeC:\Windows\System32\SettingsHandlers_StorageSense.dll11b1ac56-d85b-4259-82b7-1985999f8abcwindows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewymicrosoft.windows.immersivecontrolpanel Error: (08/11/2015 05:24:01 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_f41f7b285750ef43.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_3bccb1ff6bcd1849.manifestC:\Program Files (x86)\Samsung\SideSync3\SideSync3.exe CodeIntegrity: =================================== Date: 2015-08-06 21:51:19.875 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-06 21:51:19.862 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\winhttp.dll because the set of per-page image hashes could not be found on the system. Date: 2015-07-30 19:29:36.558 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.497 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.480 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.467 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.453 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.441 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.428 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-30 19:29:36.415 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== Processor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz Prozentuale Nutzung des RAM: 33% Installierter physikalischer RAM: 8156.87 MB Verfügbarer physikalischer RAM: 5431.67 MB Summe virtueller Speicher: 8356.87 MB Verfügbarer virtueller Speicher: 5352.73 MB ==================== Laufwerke ================================ Drive c: (Windows 8) (Fixed) (Total:465.76 GB) (Free:271.94 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)] Drive d: (Spiele) (Fixed) (Total:781.25 GB) (Free:228.6 GB) NTFS Drive e: (Multimedia) (Fixed) (Total:1081.64 GB) (Free:741.42 GB) NTFS Drive v: (Filme und Videos) (Fixed) (Total:931.51 GB) (Free:38.65 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: E47966F8) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 465.8 GB) (Disk ID: 19DF990A) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 04A7994E) Partition: GPT. ==================== Ende von Ergebnis ============================ |
13.08.2015, 09:43 | #13 |
/// the machine /// TB-Ausbilder | Skype Malware/ Spam Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
13.08.2015, 09:55 | #14 |
| Skype Malware/ Spam Danke, eine Frage habe ich zu Rocket League. Sind die Spieldateien manipuliert worden? Muss ich das ganze dann in Steam ebenfalls deinstallieren? |
13.08.2015, 15:01 | #15 |
/// the machine /// TB-Ausbilder | Skype Malware/ Spam Hab grad nochmal geschaut, war ein Fehlalarm. Kannste also drauf lassen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Skype Malware/ Spam |
antivirus, ausführbare, avast, dateien, ebenfalls, entfernt, forum, free, freund, fund, kein fund, klicke, klicken, link, liste, malware, nachrichten, natürlich, neu, ordner, problem, roaming, skype, spam, ungewollt, verschickt, version, zugriff |