![]() |
|
Log-Analyse und Auswertung: Windows 7: Fehlermeldung bei Systemstart und Avira lässt sich nicht mehr öffnen.Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #2 |
| ![]() Windows 7: Fehlermeldung bei Systemstart und Avira lässt sich nicht mehr öffnen. Addition.txt
__________________Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:12-08-2015 durchgeführt von Spadino (2015-08-13 17:42:30) Gestartet von C:\Users\Spadino\Desktop Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3527228419-551410770-667213951-500 - Administrator - Disabled) Gast (S-1-5-21-3527228419-551410770-667213951-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3527228419-551410770-667213951-1002 - Limited - Enabled) Spadino (S-1-5-21-3527228419-551410770-667213951-1000 - Administrator - Enabled) => C:\Users\Spadino W7FirewallControl (S-1-5-21-3527228419-551410770-667213951-1003 - Limited - Enabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 3DMark 11 (HKLM-x32\...\{46EDCFA5-7EDB-46A9-B093-1C6237470CEC}) (Version: 1.0.3 - Futuremark Corporation) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.5.1.17730 - Adobe Systems Inc.) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.4.980 - Adobe Systems Incorporated.) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Adobe Story (HKLM-x32\...\com.adobe.AdobeStory.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.0.571 - Adobe Systems Incorporated) ape@map (HKLM-x32\...\{F253D9EA-6D70-437C-BE99-27DA5A50EC9A}) (Version: 3.0.6 - Onyx Technologie OG) Apple Application Support (HKLM-x32\...\{A83279FD-CA4B-4206-9535-90974DE76654}) (Version: 2.1.5 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Application Verifier (x64) (HKLM\...\{89026002-A893-42D9-9E20-6829B844735E}) (Version: 4.1.1078 - Microsoft Corporation) Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive) ASRock eXtreme Tuner v0.1.116 (HKLM-x32\...\ASRock eXtreme Tuner_is1) (Version: - ) Autodesk Inventor Content Center Libraries 2012 (Desktop Content) (HKLM\...\{B46DECD1-1664-4EF1-0000-22D71E81877C}) (Version: 16.0.16000.0000 - Autodesk, Inc.) Autodesk Inventor Fusion 2012 (HKLM\...\Autodesk Inventor Fusion 2012) (Version: 1.0.0.79 - Autodesk, Inc.) Autodesk Inventor Fusion 2012 (Version: 1.0.0.79 - Autodesk, Inc.) Hidden Autodesk Inventor Fusion 2012 Language Pack (Version: 1.0.0.79 - Autodesk, Inc.) Hidden Autodesk Inventor Fusion for Inventor 2012 Add-in (HKLM\...\Autodesk Inventor Fusion for Inventor 2012 Zusatzmodul) (Version: 1.0.0.18 - Autodesk) Autodesk Inventor Fusion for Inventor 2012 Zusatzmodul (Version: 1.0.0.18 - Autodesk) Hidden Autodesk Inventor Fusion for Inventor 2012 Zusatzmodul Language Pack (Version: 1.0.0.18 - Autodesk) Hidden Autodesk Inventor Professional 2012 (Version: 16.0.16000.0000 - Autodesk) Hidden Autodesk Inventor Professional 2012 Deutsch (HKLM\...\Autodesk Inventor Professional 2012) (Version: 16.0.16000.0000 - Autodesk) Autodesk Inventor Professional 2012 Language Pack - Deutsch (Version: 16.0.16000.0000 - Autodesk) Hidden Autodesk Material Library 2012 (HKLM-x32\...\{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}) (Version: 2.5.0.8 - Autodesk) Autodesk Material Library Base Resolution Image Library 2012 (HKLM-x32\...\{65420DC9-306E-4371-905F-F4DC3B418E52}) (Version: 2.5.0.8 - Autodesk) Autodesk Material Library Low Resolution Image Library 2012 (HKLM-x32\...\{24FF088D-CDCF-480C-8A4B-98F14A54CAA8}) (Version: 2.5.0.8 - Autodesk) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.9.504 - Avira Operations GmbH & Co. KG) Belkin USB Wireless Adapter (HKLM-x32\...\InstallShield_{549CE1BD-88E4-4C5E-BF75-B155624714CC}) (Version: 1.0.0.12 - Belkin) Belkin USB Wireless Adapter (x32 Version: 1.0.0.12 - Belkin) Hidden BUFFALO NAS Navigator2 (HKLM-x32\...\UN060501) (Version: - ) calibre (HKLM-x32\...\{8DE7A656-A244-47C6-BB05-D412820FDA3C}) (Version: 0.8.48 - Kovid Goyal) CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.4.0.3018 - CDBurnerXP) ConvertHelper 2.2 (HKLM-x32\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version: - DownloadHelper) CPUID CPU-Z 1.59 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CyberLink PowerDVD 11 (HKLM-x32\...\InstallShield_{F232C87C-6E92-4775-8210-DFE90B7777D9}) (Version: 11.0.2211.53 - CyberLink Corp.) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.45.3.0297 - DT Soft Ltd) DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive) Debugging Tools for Windows (x64) (HKLM\...\{DBFC6AAE-DCCB-4C23-B01C-3EDDDC03298B}) (Version: 6.12.2.633 - Microsoft Corporation) DiRT 3 (x32 Version: 1.0.0003.130 - Codemasters) Hidden Dropbox (HKU\S-1-5-21-3527228419-551410770-667213951-1000\...\Dropbox) (Version: 3.8.6 - Dropbox, Inc.) Eco Materials Adviser (x64) (HKLM\...\{E027C59C-4C47-4BE8-8078-BCD3D2680EC3}) (Version: 1.32.0.0 - Granta Design Limited) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 15.1.13904 - Landesfinanzdirektion Thüringen) Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.05.394.1 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.05.394.1 - Etron Technology) Hidden Evernote v. 5.8.1 (HKLM-x32\...\{4FD2D1C8-8636-11E4-9D21-00163E98E7D6}) (Version: 5.8.1.6061 - Evernote Corp.) f.lux (HKU\S-1-5-21-3527228419-551410770-667213951-1000\...\Flux) (Version: - ) Free Audio Converter version 5.0.40.514 (HKLM-x32\...\Free Audio Converter_is1) (Version: 5.0.40.514 - DVDVideoSoft Ltd.) Free YouTube to MP3 Converter version 3.12.20.1230 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.20.1230 - DVDVideoSoft Ltd.) Futuremark SystemInfo (HKLM-x32\...\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}) (Version: 4.6.0 - Futuremark Corporation) Garmin BaseCamp (HKLM-x32\...\{22613FA5-4D3B-4EE5-8E4A-39EBE649324E}) (Version: 3.3.3 - Garmin Ltd or its subsidiaries) Garmin City Navigator Europe (Unicode) NT 2012.40 Update (HKLM-x32\...\{AB270FA2-DF21-4C3A-99DB-3300802089AE}) (Version: 15.40.0.0 - Garmin Ltd or its subsidiaries) Garmin TransAlpin 2012 Pro (HKLM-x32\...\{F6D76DCB-D013-4DC0-A470-6A2C377BA23C}) (Version: 3.0.0.0 - Garmin Ltd or its subsidiaries) Garmin USB Drivers (HKLM-x32\...\{510D2239-6C2E-457B-9590-485EC552D94D}) (Version: 2.3.0.0 - Garmin Ltd or its subsidiaries) GIMP 2.8.2 (HKLM\...\GIMP-2_is1) (Version: 2.8.2 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.155 - Google Inc.) Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.7.0 - LIGHTNING UK!) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.32 - Irfan Skiljan) Java 7 Update 67 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417067FF}) (Version: 7.0.670 - Oracle) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Joe (HKLM-x32\...\{2C644329-C3E7-4442-8DA4-5DBD790031D1}) (Version: 4.05.0100 - Wirth IT Design) LinuxLive USB Creator (HKLM-x32\...\LinuxLive USB Creator) (Version: 2.8 - Thibaut Lauziere) MATLAB R2012a (HKLM\...\Matlab R2012a) (Version: 7.14 - The MathWorks, Inc.) MediaInfo 0.7.53 (HKLM\...\MediaInfo) (Version: 0.7.53 - MediaArea.net) Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 RC (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50861 - Microsoft Corporation) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Image Composite Editor (HKLM\...\{B821CDAA-34DE-46FD-87C9-E6EE7158DB5D}) (Version: 1.4.4 - Microsoft Corporation) Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ Compilers 2010 Standard - enu - x64 (HKLM\...\{88387B3B-B110-392F-B919-1A15B48F21D4}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ Compilers 2010 Standard - enu - x86 (HKLM-x32\...\{370187B9-6964-38D0-851F-6C4898B0C2B1}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Windows Performance Toolkit (HKLM\...\{E7F9E526-2324-437B-A609-E8C5309465CB}) (Version: 4.8.0 - Microsoft Corporation) Microsoft Windows SDK for Windows 7 (7.1) (HKLM\...\SDKSetup_7.1.7600.0.30514) (Version: 7.1.7600.0.30514 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) MKVToolNix 5.3.0 (HKLM-x32\...\MKVToolNix) (Version: 5.3.0 - Moritz Bunkus) MozBackup 1.5.1 (HKLM-x32\...\MozBackup) (Version: - Pavel Cvrcek) Mozilla Firefox 40.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 40.0 (x86 de)) (Version: 40.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.0.5697 - Mozilla) Mozilla Thunderbird 31.7.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.7.0 (x86 de)) (Version: 31.7.0 - Mozilla) Mp3tag v2.58 (HKLM-x32\...\Mp3tag) (Version: v2.58 - Florian Heidenreich) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.4 - F.J. Wechselberger) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.5.4 - Notepad++ Team) NVIDIA Grafiktreiber 290.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 290.53 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.11.1107 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.11.1107 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Ori and the Blind Forest (HKLM-x32\...\Steam App 261570) (Version: - Moon Studios GmbH) Origin (HKLM-x32\...\Origin) (Version: 9.0.15.65 - Electronic Arts, Inc.) PDF24 Creator 4.2.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) PhotoFiltre 7 (HKU\S-1-5-21-3527228419-551410770-667213951-1000\...\PhotoFiltre 7) (Version: - ) PlanetSide 2 (HKU\S-1-5-21-3527228419-551410770-667213951-1000\...\SOE-PlanetSide 2) (Version: 1.0.3.183 - Sony Online Entertainment) Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve) PowerNap (HKLM-x32\...\{922A8108-6233-4AD6-AFBB-6404D8FA80AF}) (Version: 1.3.5 - Dell) PxMergeModule (x32 Version: 1.00.0000 - Your Company Name) Hidden QuickTime (HKLM-x32\...\{7BE15435-2D3E-4B58-867F-9C75BED0208C}) (Version: 7.71.80.42 - Apple Inc.) Rapture3D 2.4.8 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek) Revo Uninstaller Pro 2.5.8 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 2.5.8 - VS Revo Group, Ltd.) Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.) Samsung Kies3 (x32 Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.) Hidden Schnell-Deinstallations-Tool für Autodesk Inventor 2012 (HKLM\...\{D25FF5C1-1664-469A-9794-69309387C193}) (Version: 16.0.16000.0000 - Autodesk) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Shutter (HKLM-x32\...\Shutter_is1) (Version: 2.90 - [den4b] Denis Kozlov) softOSD Client (Build 1445) (HKLM-x32\...\softOSD Client) (Version: - ) Sound Forge Audio Studio 10.0 (HKLM-x32\...\{7A9D3D30-BEEC-11E1-91CF-F04DA23A5C58}) (Version: 10.0.178 - Sony) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spotify (HKU\S-1-5-21-3527228419-551410770-667213951-1000\...\Spotify) (Version: 1.0.11.134.ga37df67b - Spotify AB) Starbound (HKLM-x32\...\Steam App 211820) (Version: - ) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Sweet Home 3D version 4.5 (HKLM\...\Sweet Home 3D_is1) (Version: - eTeks) System Requirements Lab for Intel (HKLM-x32\...\{EFE3D683-903C-4B58-AB8F-C68C69F33758}) (Version: 4.5.3.0 - Husdawg, LLC) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.13 - TeamSpeak Systems GmbH) TeamViewer 8 (HKLM-x32\...\TeamViewer 8) (Version: 8.0.22298 - TeamViewer) TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp) VBA (2627.01) (x32 Version: 6.03.00.9402 - Microsoft Corporation) Hidden VBA (2701.01) (x32 Version: 6.03.00.9402 - Microsoft Corporation) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0) (HKLM\...\49CF605F02C7954F4E139D18828DE298CD59217C) (Version: 06/03/2009 2.3.0.0 - Garmin) Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation) Windows7FirewallControl (x64) 5.0.0.15 (HKLM\...\Windows7FirewallControl_is1) (Version: 5.0.0.15 - Sphinx Software) Wing Commander Saga 1.0.2.7795 (HKLM\...\{F6FD24B4-34A3-4635-8ECD-7B5C791EAE5F}) (Version: 1.0.2.7795 - Wing Commander Saga Team) xp-AntiSpy 3.98-1 (HKLM-x32\...\xp-AntiSpy) (Version: - Christian Taubenheim) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{00F064D8-FEC3-48ac-B07D-39C314D1727B}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{073CB204-6B29-46FC-AB98-451F1D068741}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\TestServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{1029ABC3-2457-11D5-8E9D-0010B541CD80}\localserver32 -> E:\Programme\Autodesk\Inventor 2012\Compatibility\Bin\DbxBridge.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{12545889-6D32-4424-9967-1E1D7BD1F809}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{13009989-EFB5-48C9-8BD2-943E0392BD71}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\RxAppCtrl.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{17A14094-F274-44E2-B54B-FC0E966AE5C7}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\LUxClientSink.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{18A21864-E37B-42b9-9612-2C1E8C450A29}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{21DB88B0-BFBF-11D4-8DE6-0010B541CAA8}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\iDrop.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{244298EC-E661-11d4-BC13-0010B5891E89}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\TI.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{2D5C6B27-86B3-4E81-9F8B-9C68887F5BE6}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\LUxUIMgr.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{3897B445-D5B8-410d-899A-9789B8ADB643}\localserver32 -> E:\Programme\Autodesk\Inventor 2012\Compatibility\Bin\DbxBridge.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{3C3F63EA-C7BA-11d4-8E60-0010B541CD80}\localserver32 -> E:\Programme\Autodesk\Inventor 2012\Compatibility\Bin\DbxBridge.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{3FC94EB5-AEBD-4f3f-A2A4-B6CE57113C01}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\RxAppDocView.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{45122C53-8483-4b62-B15A-EAA9FE5FC3D5}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{4C80573A-9150-11d2-B772-0060B0F159EF}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\RxAppDocView.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{4D29B490-49B2-11D0-93C3-7E0706000000}\localserver32 -> E:\Programme\Autodesk\Inventor 2012\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{62FBB030-24C7-11D3-B78D-0060B0F159EF}\localserver32 -> E:\Programme\Autodesk\Inventor 2012\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{644190AE-BD8F-493F-B63D-C79404AC5E07}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{6FDE7A70-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{6FDE7A71-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{6FDE7A72-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{6FDE7A73-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{6FDE7A74-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{6FDE7A77-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\DtCp.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{714D325C-E9CE-44ab-A72A-36BB410BA19B}\localserver32 -> E:\Programme\Autodesk\Inventor 2012\Bin\FEAFilesHandler.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{72EC5CC5-88F3-45B1-A865-0A327DF58CC8}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{76283A80-50DD-11D3-A7E3-00C04F79D7BC}\localserver32 -> E:\Programme\Autodesk\Inventor 2012\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{81D07C3D-0350-11D3-B7C2-0060B0EC020B}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\RxAppCtrl.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{8421A29C-54B8-11D1-9837-0060B03C43C8}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\SolidObject.Dll () CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{846217D0-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\UCxTextBtn.ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{846217D1-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\UCxTextBtn.ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{8B0E6BD9-610C-11D1-9842-0060B03C43C8}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\SolidObject.Dll () CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{8C23B656-4E6E-4B45-9920-9617168D39A3}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\TestServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{97E17F04-17DF-11d5-BC38-0010B5891E89}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\BodyReceiver.dll () CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{B6B5DC40-96E3-11d2-B774-0060B0F159EF}\localserver32 -> E:\Programme\Autodesk\Inventor 2012\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{B8E7214B-25CA-4116-84CB-E86FB9625B36}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{BBF9FDF1-52DC-11D0-8C04-0800090BE8EC}\localserver32 -> E:\Programme\Autodesk\Inventor 2012\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{BC71DEA1-D6FB-48B8-AB06-D151C81BBCDD}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{BE54741D-E02B-4572-93D6-105AF4EDE777}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{C0E7110B-2136-11D4-8DD0-0010B541CAA8}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\RxInventorMarshal.Dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{C343ED84-A129-11d3-B799-0060B0F159EF}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\RxApprenticeServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{C92F8F8C-8B2C-11d4-B872-0060B0EC020B}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{CFEE2BAF-14F9-4D23-853D-B6E2BCC14263}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{D7A1987D-4A73-11D1-9A4B-080009DCE505}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ColorButton.ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{D7A1987E-4A73-11D1-9A4B-080009DCE505}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ColorButton.ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{DA1F437C-9BD9-11d4-B87C-0060B0EC020B}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{DB5D476B-3FF4-4E9D-A606-1E2B473BE571}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\AcInetUI.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{DCA7356C-FF94-4b20-AE04-7AA6A8E14117}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{DDA9A20F-5B56-49F5-9465-CE82FC199352}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{DE6B563C-B074-4BF1-A8A0-B3FED8703E99}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{E1C85E9F-60B2-4007-80C3-2C5E09474C3B}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\RxInventorUtilities.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{E5B0515D-48D2-4F04-906D-0192ED65A2DD}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\TestServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{E60F81E1-49B3-11D0-93C3-7E0706000000}\localserver32 -> E:\Programme\Autodesk\Inventor 2012\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{E6E92821-2731-4AA3-B919-D2BC514FEC64}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Compatibility\Bin\DbxBridgePS.Dll () CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Spadino\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{F13E75B9-6AF6-49CB-80B3-6D2FF6E09932}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{F61064CC-DBFB-47ee-9BC8-CA5A1CBDF0DA}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\InvResc.dll (Autodesk) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FA62F626-EBD5-4dc5-B970-D9E81E0E20E0}\InprocServer32 -> E:\Programme\Autodesk\Inventor 2012\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spadino\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spadino\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spadino\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spadino\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spadino\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spadino\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spadino\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Spadino\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FB469644-3F14-4403-ACCA-6B13486FF7BD}\localserver32 -> E:\Programme\Autodesk\Inventor 2012\Bin\InvTXTStack.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Spadino\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll Keine Datei CustomCLSID: HKU\S-1-5-21-3527228419-551410770-667213951-1000_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll Keine Datei ==================== Wiederherstellungspunkte ========================= 30-07-2015 00:03:34 Geplanter Prüfpunkt 02-08-2015 22:10:06 Windows-Sicherung 03-08-2015 20:12:40 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 09-08-2015 20:30:43 Windows Update 12-08-2015 23:27:53 Windows Update ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2012-05-05 14:14 - 00000855 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 activate.adobe.com ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {103CC50F-E60D-4968-AAA7-ACB96C418D29} - System32\Tasks\{7BB89B65-59A1-4088-B802-A90146EB99B2} => pcalua.exe -a C:\Windows\SysWOW64\Samsung_USB_Drivers\5\SSSDUninstall.exe Task: {1D9F2648-7F85-4158-A387-4C685F88CF50} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-11] (Adobe Systems Incorporated) Task: {39B4010E-AD91-4ADD-A3FE-2E9054BA94E5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {9BE67012-91FA-4AFD-BBF0-09AE465581BC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-22] (Google Inc.) Task: {9F871CC2-57C2-40DF-A63C-97CE81FC5181} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2012-09-15] () Task: {B5E2191B-ECAF-4E6A-8A9A-4F4A5E5DEE37} - System32\Tasks\{54BAEDD9-1817-47D5-AEAA-40B9BDA388B6} => pcalua.exe -a F:\Downloads\winsdk_web.exe -d F:\Downloads Task: {BA55EFD6-87AD-4134-9433-9AA963E9AD9D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-22] (Google Inc.) Task: {BF5F879F-A824-4988-A4E2-8B68C6DCF9AA} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3527228419-551410770-667213951-1000UA => C:\Users\Spadino\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-18] (Dropbox, Inc.) Task: {C1D19257-A8C8-4A10-8FE1-467B5D0BB77C} - System32\Tasks\{DC5B262E-7416-4474-8107-D85E0511388E} => E:\Games\Fallout 3 Game of the Year Edition\FalloutLauncher.exe Task: {C8B68398-E675-441B-B52E-BEC6BE3591FC} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3527228419-551410770-667213951-1000Core => C:\Users\Spadino\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-18] (Dropbox, Inc.) Task: {FD042311-168D-4DE4-B130-EFEDE73DFD17} - System32\Tasks\{919F248A-052B-4257-9F75-45258891CC92} => pcalua.exe -a "C:\Program Files (x86)\Avira\AntiVir Desktop\setup.exe" -c /REMOVE (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3527228419-551410770-667213951-1000Core.job => C:\Users\Spadino\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3527228419-551410770-667213951-1000UA.job => C:\Users\Spadino\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2012-02-01 22:07 - 2011-08-24 03:13 - 00083240 _____ () C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe 2011-06-14 10:32 - 2011-06-14 10:32 - 00011776 _____ () C:\Program Files (x86)\Dell\PowerNap\PowerNap.Service.exe 2011-06-14 10:32 - 2011-06-14 10:32 - 00057856 _____ () C:\Program Files (x86)\Dell\PowerNap\PowerNap.Core.dll 2012-03-19 22:09 - 2012-03-19 22:09 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-02-01 22:07 - 2011-08-26 06:57 - 00260096 _____ () C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\sqlite3.dll 2015-08-13 17:39 - 2015-08-13 17:39 - 00071168 _____ () c:\users\spadino\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpauwli1.dll 2014-12-17 16:11 - 2014-12-17 16:11 - 00439304 _____ () E:\Programme\Evernote\libxml2.dll 2014-12-17 16:11 - 2014-12-17 16:11 - 00321032 _____ () E:\Programme\Evernote\libtidy.dll 2014-09-12 11:43 - 2014-09-12 11:43 - 14588632 _____ () C:\Program Files (x86)\Adobe\Reader 11.0\Reader\NPSWF32.dll 2012-09-23 21:43 - 2012-09-23 21:43 - 00313992 _____ () C:\Program Files (x86)\Adobe\Reader 11.0\Reader\sqlite.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\Microsoft:GhpKHScwqyLwfR9FBm AlternateDataStreams: C:\ProgramData\Microsoft:lESyvBHBXKxMst7tf364ChwPjPQ AlternateDataStreams: C:\ProgramData\Microsoft:RJhrgr31gT4d7DrVtk7xZ AlternateDataStreams: C:\Users\Spadino\AppData\Local\Temporary Internet Files:Lxq06RFLuooKTQZbDXbBwI ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\se64a.sys => ""="Driver" ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-3527228419-551410770-667213951-1000\...\sony.com -> sony.com ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3527228419-551410770-667213951-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Spadino\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: Datenträger ist nicht mit dem Internet verbunden. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [TCP Query User{326E8117-7CE3-460C-8DFA-5EF62FE18144}C:\program files (x86)\java\jre6\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre6\bin\javaw.exe FirewallRules: [UDP Query User{205DBE8D-C53A-4859-AEE9-F31C1BC21686}C:\program files (x86)\java\jre6\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre6\bin\javaw.exe FirewallRules: [TCP Query User{CDCB8FB8-08CC-41C3-AC97-A95B32C49216}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [UDP Query User{F0E177AB-A891-4BFB-8D11-818083F23520}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [{95C726CD-21DD-4452-BD92-5ADA9A1F9C48}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD11\Movie\PowerDVD Cinema\PowerDVDCinema11.exe FirewallRules: [{5A3D7117-4F56-4082-A904-A846FB1B1684}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD11\PowerDVD11.exe FirewallRules: [{A35A10F7-5F43-457F-8E1E-147C6F90CCC4}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe FirewallRules: [{53DED582-685F-4C7B-A36E-67BA05E71044}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe FirewallRules: [{B1828CF6-4BE9-4B64-ACE9-F2348E3E6FB0}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD11\Movie\MovieModule.exe FirewallRules: [{73B31E01-ACD0-4071-BF72-5021A566B145}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{FB2D0070-C42E-4D4E-9B0A-C934FEAA219B}] => (Allow) E:\Games\Dirt3\dirt3_game.exe FirewallRules: [{C243DCD5-D4E7-4EF1-B41B-D231D26AB6AD}] => (Allow) E:\Games\Dirt3\dirt3_game.exe FirewallRules: [{BF030018-C9D3-4643-84B9-C4FCCAB876A5}] => (Allow) C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe FirewallRules: [{D09BC417-C5FB-48E0-B12B-B471E0286868}] => (Allow) C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe FirewallRules: [TCP Query User{FB646318-540E-4319-BCF8-0DE7BEBEF4FC}C:\program files (x86)\buffalo\nasnavi\nasnavi.exe] => (Allow) C:\program files (x86)\buffalo\nasnavi\nasnavi.exe FirewallRules: [UDP Query User{7748494F-CB08-4037-A148-DC33F3A0531A}C:\program files (x86)\buffalo\nasnavi\nasnavi.exe] => (Allow) C:\program files (x86)\buffalo\nasnavi\nasnavi.exe FirewallRules: [{FD772C33-C5DB-457C-A6FB-FEAC310FDC47}] => (Allow) E:\Programme\Allshare\AllShare Control PC.exe FirewallRules: [{90CD78D0-344F-4421-8B19-28BA2994A677}] => (Allow) E:\Programme\Allshare\AllShare Control PC.exe FirewallRules: [{A6A0135D-179D-4985-AF92-A2A626556191}] => (Allow) LPort=7878 FirewallRules: [{309B55F7-DB9B-419E-94EF-D78372A530F4}] => (Allow) LPort=20102 FirewallRules: [{45843391-4597-48E1-B113-47A092925C21}] => (Allow) LPort=1900 FirewallRules: [{C6F01D92-4653-4528-98CE-1191749A7B66}] => (Allow) C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{D3733D78-7591-4282-81FB-8E3418C845CA}] => (Allow) C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [TCP Query User{CCA9F65A-AF63-447C-B82B-DF002D88EE16}C:\users\spadino\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\spadino\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{3517119D-BAC9-451E-8F44-E18F4642FE05}C:\users\spadino\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\spadino\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{81F71880-3FC2-4E70-8D85-98C23D2BE77D}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{F12DE1C2-4ED6-4287-979E-0925BCB48F4C}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [TCP Query User{775524AB-BA91-47CE-9DD8-E25AA4A42E5D}E:\games\star conflict\launcher.exe] => (Block) E:\games\star conflict\launcher.exe FirewallRules: [UDP Query User{5E75BFFF-1443-40D5-B5CD-648E5137DBAF}E:\games\star conflict\launcher.exe] => (Block) E:\games\star conflict\launcher.exe FirewallRules: [{53FA625B-4772-43F4-A5D3-6F45519BFFD3}] => (Allow) E:\Games\Steam\Steam.exe FirewallRules: [{2535A308-D0CB-4A61-A22F-BF90C543FD34}] => (Allow) E:\Games\Steam\Steam.exe FirewallRules: [TCP Query User{6E67F2D6-BAE2-4379-A0C6-F696B071F9EC}E:\games\crysis2\bin32\crysis2.exe] => (Allow) E:\games\crysis2\bin32\crysis2.exe FirewallRules: [UDP Query User{99C2801D-3C59-4DC6-9DBE-96FED9126026}E:\games\crysis2\bin32\crysis2.exe] => (Allow) E:\games\crysis2\bin32\crysis2.exe FirewallRules: [TCP Query User{9DFE5D75-33E8-4ADA-8ECE-691A7916555A}E:\programme\myphoneexplorer\myphoneexplorer.exe] => (Allow) E:\programme\myphoneexplorer\myphoneexplorer.exe FirewallRules: [UDP Query User{FF8A2ABB-A843-4F82-BF4B-2991A8CF27BC}E:\programme\myphoneexplorer\myphoneexplorer.exe] => (Allow) E:\programme\myphoneexplorer\myphoneexplorer.exe FirewallRules: [TCP Query User{FDCCB595-187F-4891-8626-F718758E781B}E:\games\cod_bo2\call of duty black ops ii\t6sp.exe] => (Block) E:\games\cod_bo2\call of duty black ops ii\t6sp.exe FirewallRules: [UDP Query User{580DBEB4-FDA8-4016-A873-4863FB671642}E:\games\cod_bo2\call of duty black ops ii\t6sp.exe] => (Block) E:\games\cod_bo2\call of duty black ops ii\t6sp.exe FirewallRules: [{37518BC6-0671-487A-9B37-90FA2F78A764}] => (Allow) E:\Programme\Pinnacle\Studio 16\programs\RM.exe FirewallRules: [{30288FEC-55F3-4CAA-A7EC-7DCB2F8F7D0E}] => (Allow) E:\Programme\Pinnacle\Studio 16\programs\RM.exe FirewallRules: [{E9C5820F-90A0-4720-A178-0C87C28EEB82}] => (Allow) E:\Programme\Pinnacle\Studio 16\programs\NGStudio.exe FirewallRules: [{99C7FB63-6C70-46C9-A8F1-F25BB6F118C0}] => (Allow) E:\Programme\Pinnacle\Studio 16\programs\NGStudio.exe FirewallRules: [{9BAF201F-5227-46B8-9DA5-51E82B38AAC2}] => (Allow) E:\Programme\Pinnacle\Studio 16\programs\UMI.exe FirewallRules: [{22738A17-9C9D-4E6C-A8A6-0C0C9C45F880}] => (Allow) E:\Programme\Pinnacle\Studio 16\programs\UMI.exe FirewallRules: [TCP Query User{EF6D6208-DE51-46B1-A3D9-63D80862CBB7}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{4C93B05F-0AB1-4924-AEF6-05F79ADAE840}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [TCP Query User{A1F7485D-E8DE-4EAA-B324-945745E4FF10}E:\games\rockstar games\max payne 3\maxpayne3.exe] => (Block) E:\games\rockstar games\max payne 3\maxpayne3.exe FirewallRules: [UDP Query User{8AFBF99D-2CF8-4BA3-8F63-19534B27A3CF}E:\games\rockstar games\max payne 3\maxpayne3.exe] => (Block) E:\games\rockstar games\max payne 3\maxpayne3.exe FirewallRules: [TCP Query User{6724E4D2-9065-493A-9571-3F4DBC79D161}E:\games\rockstar games\max payne 3\maxpayne3.exe] => (Block) E:\games\rockstar games\max payne 3\maxpayne3.exe FirewallRules: [UDP Query User{CC2FD4A1-3654-4CA7-880B-1161B39A6362}E:\games\rockstar games\max payne 3\maxpayne3.exe] => (Block) E:\games\rockstar games\max payne 3\maxpayne3.exe FirewallRules: [TCP Query User{3A9510BB-7F06-4ECF-983F-BDA15E024A84}C:\program files (x86)\rockstar games\max payne 3\maxpayne3.exe] => (Block) C:\program files (x86)\rockstar games\max payne 3\maxpayne3.exe FirewallRules: [UDP Query User{732859A9-8BAF-42F0-978E-0A45AA9DFC7C}C:\program files (x86)\rockstar games\max payne 3\maxpayne3.exe] => (Block) C:\program files (x86)\rockstar games\max payne 3\maxpayne3.exe FirewallRules: [TCP Query User{22799012-4177-4F7A-918C-5794E11CF3B7}E:\games\planetside 2 psg\planetside2.exe] => (Allow) E:\games\planetside 2 psg\planetside2.exe FirewallRules: [UDP Query User{8F31E291-049E-4DF6-A27D-E688A78A5FDB}E:\games\planetside 2 psg\planetside2.exe] => (Allow) E:\games\planetside 2 psg\planetside2.exe FirewallRules: [{115A15D9-B4B1-47F3-B058-73B8C392B6FE}] => (Allow) E:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{41B8614B-EDDD-485E-BDD7-B47DD3EA5BA5}] => (Allow) E:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{78DB224D-6F0F-4722-9FE3-5135694FC244}] => (Allow) C:\Users\Spadino\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{E2D92445-5BDA-4EF7-80A7-29FB4F381F68}] => (Allow) C:\Users\Spadino\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{461073B5-FCE3-430A-AC2B-9BAA7E7DD353}] => (Allow) E:\Programme\Microsoft Office\Office14\ONENOTE.EXE FirewallRules: [{E34F25FE-50AA-4CB1-B7BD-27D673E69A38}] => (Allow) E:\Programme\Microsoft Office\Office14\ONENOTE.EXE FirewallRules: [TCP Query User{5233F9C7-4C9A-4D64-BD1C-D1B980D52943}E:\games\wing commander saga\wcsaga_sse2.exe] => (Allow) E:\games\wing commander saga\wcsaga_sse2.exe FirewallRules: [UDP Query User{7DA200AB-9B15-40CD-92B1-54DCAFC45150}E:\games\wing commander saga\wcsaga_sse2.exe] => (Allow) E:\games\wing commander saga\wcsaga_sse2.exe FirewallRules: [{1E92ABCE-0607-420D-916C-59EBBDFE7DF4}] => (Allow) E:\Programme\Teamview\TeamViewer.exe FirewallRules: [{D569EEF4-C5DF-405F-95DD-85D150674A15}] => (Allow) E:\Programme\Teamview\TeamViewer.exe FirewallRules: [{462B177D-CFA6-4395-B18C-A44672E10904}] => (Allow) E:\Programme\Teamview\TeamViewer_Service.exe FirewallRules: [{CD8E8955-9FD8-47F7-BE44-561ED5D2A93B}] => (Allow) E:\Programme\Teamview\TeamViewer_Service.exe FirewallRules: [{DD7A7E4D-A51D-4A8D-8DE7-36705A40456B}] => (Allow) E:\Games\Steam\SteamApps\common\DayZ\DayZ.exe FirewallRules: [{70065FAA-FB41-4649-98EC-62EC002F8567}] => (Allow) E:\Games\Steam\SteamApps\common\DayZ\DayZ.exe FirewallRules: [{9445054B-4111-4FE7-99C1-4E424CF02168}] => (Allow) E:\Games\Steam\Steam.exe FirewallRules: [{9CD9184F-1D15-4013-86E9-2804C1B5D62A}] => (Allow) E:\Games\Steam\Steam.exe FirewallRules: [{2C26E0DC-11FB-480F-9AA2-56CB91A88824}] => (Allow) E:\Games\Steam\SteamApps\common\Arma 3\arma3.exe FirewallRules: [{B921C6DF-25B9-4901-B584-559F1DD624B5}] => (Allow) E:\Games\Steam\SteamApps\common\Arma 3\arma3.exe FirewallRules: [{3A0285AB-53F9-4BCC-9BF5-C5ABFA38541E}] => (Allow) C:\Users\Spadino\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{68A0E43D-F101-4B58-A26F-F5FE9C7C1A8F}] => (Allow) C:\Users\Spadino\AppData\Roaming\Spotify\spotify.exe FirewallRules: [TCP Query User{04D5B886-9EBC-493F-9575-078E0EAD23C5}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{CAA8C6BA-07D1-4F15-8801-0F1676FC1B27}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [{866E6309-D04A-47B5-AB94-C223A1B30270}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [{DE71DF52-0A69-4ADE-B469-C7D671876F20}] => (Allow) E:\Games\Steam\bin\steamwebhelper.exe FirewallRules: [{812C61F8-08BF-41A1-9F54-368AF240E4F1}] => (Allow) E:\Games\Steam\bin\steamwebhelper.exe FirewallRules: [{4AF6C65B-1330-47BF-86DA-06329C4587DC}] => (Allow) E:\Games\Steam\SteamApps\common\DayZ\DayZ_BE.exe FirewallRules: [{5B8B98C6-C1E5-4D1D-9EB9-4C01E0A76868}] => (Allow) E:\Games\Steam\SteamApps\common\DayZ\DayZ_BE.exe FirewallRules: [{9490970E-C6EC-4E66-8663-6B90134D15C3}] => (Allow) E:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{679DA084-5563-4784-B567-63A3DA9DB64E}] => (Allow) E:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{A0D567D4-7A99-435F-87D7-D17CAEC334E7}] => (Allow) E:\Games\Steam\SteamApps\common\Arma 3\arma3launcher.exe FirewallRules: [{A7368941-9D0D-4D89-AADD-7ECF67090DEE}] => (Allow) E:\Games\Steam\SteamApps\common\Arma 3\arma3launcher.exe FirewallRules: [{6B304A4F-06DE-4033-BD33-5C7C9A4CE25D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{4BA38DC4-1A65-439E-8681-819CBF7858C3}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{57C2FA0C-9402-49C1-8FD7-C934F036D25E}E:\games\planetside2\planetside2_x64.exe] => (Allow) E:\games\planetside2\planetside2_x64.exe FirewallRules: [UDP Query User{C7F88A64-C8EA-42C7-B52E-0F3629DC7BD6}E:\games\planetside2\planetside2_x64.exe] => (Allow) E:\games\planetside2\planetside2_x64.exe FirewallRules: [TCP Query User{5120CA89-234F-4D60-8934-E9EA8D117FB1}E:\games\starcitizen\citizenclient\bin64\starcitizen.exe] => (Allow) E:\games\starcitizen\citizenclient\bin64\starcitizen.exe FirewallRules: [UDP Query User{E29109D8-8DEA-480B-B5A1-0375E8F7216E}E:\games\starcitizen\citizenclient\bin64\starcitizen.exe] => (Allow) E:\games\starcitizen\citizenclient\bin64\starcitizen.exe FirewallRules: [{227F91A6-BE8B-4A7F-9847-A1DE69A0FE4C}] => (Allow) E:\Games\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [{F1F06205-D3B6-4ABE-BE0D-1DAADD432B54}] => (Allow) E:\Games\Steam\SteamApps\common\Ori\ori.exe FirewallRules: [{A3EC7FC7-48DD-4753-B958-3DC535C79E50}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/13/2015 05:41:10 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 04:59:26 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 04:23:44 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/12/2015 05:20:18 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/11/2015 05:56:25 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/10/2015 06:29:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/09/2015 08:28:50 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/09/2015 08:05:17 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/09/2015 07:14:37 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/06/2015 04:09:40 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Systemfehler: ============= Error: (08/13/2015 05:41:32 PM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Error: (08/13/2015 05:41:32 PM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Error: (08/13/2015 05:39:30 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: StarOpen Error: (08/13/2015 05:39:22 PM) (Source: aksfridge) (EventID: 0) (User: ) Description: error file fchkdsk.c line 1633 status 0 Error: (08/13/2015 05:39:15 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\StarOpen.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (08/13/2015 05:00:07 PM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Error: (08/13/2015 05:00:07 PM) (Source: WMPNetworkSvc) (EventID: 14338) (User: ) Description: 0x80070422 Error: (08/13/2015 04:58:05 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: StarOpen Error: (08/13/2015 04:57:56 PM) (Source: aksfridge) (EventID: 0) (User: ) Description: error file fchkdsk.c line 1633 status 0 Error: (08/13/2015 04:57:31 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\StarOpen.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Microsoft Office: ========================= Error: (08/13/2015 05:41:10 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 04:59:26 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 04:23:44 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/12/2015 05:20:18 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/11/2015 05:56:25 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/10/2015 06:29:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/09/2015 08:28:50 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/09/2015 08:05:17 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/09/2015 07:14:37 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/06/2015 04:09:40 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Speicherinformationen =========================== Processor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz Prozentuale Nutzung des RAM: 14% Installierter physikalischer RAM: 16296.81 MB Verfügbarer physikalischer RAM: 13874.59 MB Summe virtueller Speicher: 32591.83 MB Verfügbarer virtueller Speicher: 29959.15 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:111.69 GB) (Free:10.92 GB) NTFS Drive e: (Anwendungen) (Fixed) (Total:292.97 GB) (Free:185.76 GB) NTFS Drive f: (Dokumente) (Fixed) (Total:292.97 GB) (Free:71.21 GB) NTFS Drive h: (Sicherung) (Fixed) (Total:345.57 GB) (Free:318.28 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: DCD1016F) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.7 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 5DED4D3D) Partition 1: (Not Active) - (Size=293 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=293 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=345.6 GB) - (Type=07 NTFS) ==================== Ende von Ergebnis ============================ Gmer.txt Code:
ATTFilter GMER 2.1.19357 - hxxp://www.gmer.net Rootkit scan 2015-08-13 17:57:19 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 ADATA_SSD_S511_120GB rev.3.3.2 111,79GB Running: Gmer-19357.exe; Driver: C:\Users\Spadino\AppData\Local\Temp\pxtirfob.sys ---- User code sections - GMER 2.1 ---- .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetModuleFileNameExW + 17 00000000766d1401 2 bytes JMP 767bb20b C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!EnumProcessModules + 17 00000000766d1419 2 bytes JMP 767bb336 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 17 00000000766d1431 2 bytes JMP 76838f39 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 42 00000000766d144a 2 bytes CALL 76794885 C:\Windows\syswow64\kernel32.dll .text ... * 9 .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!EnumDeviceDrivers + 17 00000000766d14dd 2 bytes JMP 76838832 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetDeviceDriverBaseNameA + 17 00000000766d14f5 2 bytes JMP 76838a08 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!QueryWorkingSetEx + 17 00000000766d150d 2 bytes JMP 76838728 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetDeviceDriverBaseNameW + 17 00000000766d1525 2 bytes JMP 76838af2 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetModuleBaseNameW + 17 00000000766d153d 2 bytes JMP 767afc98 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!EnumProcesses + 17 00000000766d1555 2 bytes JMP 767b68df C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetProcessMemoryInfo + 17 00000000766d156d 2 bytes JMP 76838ff1 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetPerformanceInfo + 17 00000000766d1585 2 bytes JMP 76838b52 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!QueryWorkingSet + 17 00000000766d159d 2 bytes JMP 768386ec C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetModuleBaseNameA + 17 00000000766d15b5 2 bytes JMP 767afd31 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetModuleFileNameExA + 17 00000000766d15cd 2 bytes JMP 767bb2cc C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetProcessImageFileNameW + 20 00000000766d16b2 2 bytes JMP 76838eb4 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe[1692] C:\Windows\syswow64\psapi.dll!GetProcessImageFileNameW + 31 00000000766d16bd 2 bytes JMP 76838681 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetModuleFileNameExW + 17 00000000766d1401 2 bytes JMP 767bb20b C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!EnumProcessModules + 17 00000000766d1419 2 bytes JMP 767bb336 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 17 00000000766d1431 2 bytes JMP 76838f39 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 42 00000000766d144a 2 bytes CALL 76794885 C:\Windows\syswow64\kernel32.dll .text ... * 9 .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!EnumDeviceDrivers + 17 00000000766d14dd 2 bytes JMP 76838832 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetDeviceDriverBaseNameA + 17 00000000766d14f5 2 bytes JMP 76838a08 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!QueryWorkingSetEx + 17 00000000766d150d 2 bytes JMP 76838728 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetDeviceDriverBaseNameW + 17 00000000766d1525 2 bytes JMP 76838af2 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetModuleBaseNameW + 17 00000000766d153d 2 bytes JMP 767afc98 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!EnumProcesses + 17 00000000766d1555 2 bytes JMP 767b68df C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetProcessMemoryInfo + 17 00000000766d156d 2 bytes JMP 76838ff1 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetPerformanceInfo + 17 00000000766d1585 2 bytes JMP 76838b52 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!QueryWorkingSet + 17 00000000766d159d 2 bytes JMP 768386ec C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetModuleBaseNameA + 17 00000000766d15b5 2 bytes JMP 767afd31 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetModuleFileNameExA + 17 00000000766d15cd 2 bytes JMP 767bb2cc C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetProcessImageFileNameW + 20 00000000766d16b2 2 bytes JMP 76838eb4 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe[1820] C:\Windows\syswow64\PSAPI.DLL!GetProcessImageFileNameW + 31 00000000766d16bd 2 bytes JMP 76838681 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetModuleFileNameExW + 17 00000000766d1401 2 bytes JMP 767bb20b C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!EnumProcessModules + 17 00000000766d1419 2 bytes JMP 767bb336 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 17 00000000766d1431 2 bytes JMP 76838f39 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 42 00000000766d144a 2 bytes CALL 76794885 C:\Windows\syswow64\kernel32.dll .text ... * 9 .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!EnumDeviceDrivers + 17 00000000766d14dd 2 bytes JMP 76838832 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetDeviceDriverBaseNameA + 17 00000000766d14f5 2 bytes JMP 76838a08 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!QueryWorkingSetEx + 17 00000000766d150d 2 bytes JMP 76838728 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetDeviceDriverBaseNameW + 17 00000000766d1525 2 bytes JMP 76838af2 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetModuleBaseNameW + 17 00000000766d153d 2 bytes JMP 767afc98 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!EnumProcesses + 17 00000000766d1555 2 bytes JMP 767b68df C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetProcessMemoryInfo + 17 00000000766d156d 2 bytes JMP 76838ff1 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetPerformanceInfo + 17 00000000766d1585 2 bytes JMP 76838b52 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!QueryWorkingSet + 17 00000000766d159d 2 bytes JMP 768386ec C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetModuleBaseNameA + 17 00000000766d15b5 2 bytes JMP 767afd31 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetModuleFileNameExA + 17 00000000766d15cd 2 bytes JMP 767bb2cc C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetProcessImageFileNameW + 20 00000000766d16b2 2 bytes JMP 76838eb4 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Local\FluxSoftware\Flux\flux.exe[4532] C:\Windows\syswow64\PSAPI.DLL!GetProcessImageFileNameW + 31 00000000766d16bd 2 bytes JMP 76838681 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetModuleFileNameExW + 17 00000000766d1401 2 bytes JMP 767bb20b C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!EnumProcessModules + 17 00000000766d1419 2 bytes JMP 767bb336 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetModuleInformation + 17 00000000766d1431 2 bytes JMP 76838f39 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetModuleInformation + 42 00000000766d144a 2 bytes CALL 76794885 C:\Windows\syswow64\kernel32.dll .text ... * 9 .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!EnumDeviceDrivers + 17 00000000766d14dd 2 bytes JMP 76838832 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetDeviceDriverBaseNameA + 17 00000000766d14f5 2 bytes JMP 76838a08 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!QueryWorkingSetEx + 17 00000000766d150d 2 bytes JMP 76838728 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetDeviceDriverBaseNameW + 17 00000000766d1525 2 bytes JMP 76838af2 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetModuleBaseNameW + 17 00000000766d153d 2 bytes JMP 767afc98 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!EnumProcesses + 17 00000000766d1555 2 bytes JMP 767b68df C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetProcessMemoryInfo + 17 00000000766d156d 2 bytes JMP 76838ff1 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetPerformanceInfo + 17 00000000766d1585 2 bytes JMP 76838b52 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!QueryWorkingSet + 17 00000000766d159d 2 bytes JMP 768386ec C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetModuleBaseNameA + 17 00000000766d15b5 2 bytes JMP 767afd31 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetModuleFileNameExA + 17 00000000766d15cd 2 bytes JMP 767bb2cc C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetProcessImageFileNameW + 20 00000000766d16b2 2 bytes JMP 76838eb4 C:\Windows\syswow64\kernel32.dll .text C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe[4776] C:\Windows\syswow64\Psapi.dll!GetProcessImageFileNameW + 31 00000000766d16bd 2 bytes JMP 76838681 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetModuleFileNameExW + 17 00000000766d1401 2 bytes JMP 767bb20b C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!EnumProcessModules + 17 00000000766d1419 2 bytes JMP 767bb336 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 17 00000000766d1431 2 bytes JMP 76838f39 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 42 00000000766d144a 2 bytes CALL 76794885 C:\Windows\syswow64\kernel32.dll .text ... * 9 .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!EnumDeviceDrivers + 17 00000000766d14dd 2 bytes JMP 76838832 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetDeviceDriverBaseNameA + 17 00000000766d14f5 2 bytes JMP 76838a08 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!QueryWorkingSetEx + 17 00000000766d150d 2 bytes JMP 76838728 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetDeviceDriverBaseNameW + 17 00000000766d1525 2 bytes JMP 76838af2 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetModuleBaseNameW + 17 00000000766d153d 2 bytes JMP 767afc98 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!EnumProcesses + 17 00000000766d1555 2 bytes JMP 767b68df C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetProcessMemoryInfo + 17 00000000766d156d 2 bytes JMP 76838ff1 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetPerformanceInfo + 17 00000000766d1585 2 bytes JMP 76838b52 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!QueryWorkingSet + 17 00000000766d159d 2 bytes JMP 768386ec C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetModuleBaseNameA + 17 00000000766d15b5 2 bytes JMP 767afd31 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetModuleFileNameExA + 17 00000000766d15cd 2 bytes JMP 767bb2cc C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetProcessImageFileNameW + 20 00000000766d16b2 2 bytes JMP 76838eb4 C:\Windows\syswow64\kernel32.dll .text C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe[5056] C:\Windows\syswow64\PSAPI.DLL!GetProcessImageFileNameW + 31 00000000766d16bd 2 bytes JMP 76838681 C:\Windows\syswow64\kernel32.dll ---- Processes - GMER 2.1 ---- Library c:\users\spadino\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpauwli1.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776](2015-08-13 15:39:39) 0000000073680000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5Core.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:24) 0000000073210000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\icuin55.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (ICU I18N DLL/The ICU Project)(2015-07-29 15:44:42) 000000004a900000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\icuuc55.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (ICU Common DLL/The ICU Project)(2015-07-29 15:44:42) 00000000060f0000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\icudt55.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (ICU Data DLL/The ICU Project)(2015-07-29 15:44:42) 0000000067850000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5Widgets.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:28) 0000000072d50000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5Gui.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:26) 0000000067410000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5Network.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:26) 0000000067270000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5WebKit.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:26) 0000000066250000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5Quick.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:26) 0000000066000000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5Qml.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:26) 0000000065d90000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5WebChannel.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-07-29 15:44:42) 00000000736a0000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5Sql.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:26) 0000000072d20000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5WebKitWidgets.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:28) 0000000072ce0000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5PrintSupport.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:26) 0000000072c90000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Qt5OpenGL.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:26) 0000000072c40000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:30) 0000000065ca0000 Library C:\Users\Spadino\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll (*** suspicious ***) @ C:\Users\Spadino\AppData\Roaming\Dropbox\bin\Dropbox.exe [4776] (C++ application development framework./Digia Plc and/or its subsidiary(-ies))(2015-03-04 21:45:30) 0000000072c00000 Process \\?\C:\Windows\system32\wbem\WMIADAP.EXE (*** suspicious ***) @ \\?\C:\Windows\system32\wbem\WMIADAP.EXE [1764] (WMI Reverse Performance Adapter Maintenance Utility/Microsoft Corporation)(2009-07-13 23:47:22) 00000000ff3c0000 ---- EOF - GMER 2.1 ---- Danke schonmal fürs helfen. :-) Geändert von Spad (13.08.2015 um 18:07 Uhr) |
Themen zu Windows 7: Fehlermeldung bei Systemstart und Avira lässt sich nicht mehr öffnen. |
administrator, adobe flash player, antivir, avira, defender, dnsapi.dll, explorer, fehlermeldung, flash player, mozilla, nvidia, opera, pdf, programm, programme, prozesse, registry, scan, secur, services.exe, software, suche, svchost.exe, temp, windows, winlogon.exe |