![]() | ![]() Problem: Win7 immer langsamer Hallo ihr Fachleute, ich möchte es erst mal hier versuchen, da ich vermute, Virenfrei zu sein. Kommen wir hier auf kein Ergebnis, muss ich halt einen Beitrag im Virenkillerbereich eröffnen. Nutze Win7 Home, 64 Sp1 In letzter Zeit wird mein Laptop immer langsamer. Während eines Kaspersky Komplettscans ist er kaum nutzbar. Auch beim Runterfahren kann ich manchmal 10 Minuten wartet, bis er endlich abschaltet. Habe Cookies, Temp und unnützes bereits gelöscht, kein Erfolg. Habe alle Samsung Programme (ist ein Samsung Lap mit Vorinstallation) derer ich habhaft werden konnte, bereits deinstalliert. Habe Festplatte defragmentiert. Habe einiges aus dem Autostart rausgeworfen. Vollscan mit Kaspersky ohne Funde Scan mit Malwarebytes ohne Funde Scan mit SAS ohne Funde Eset Online Scan ohne Funde RAM (4GB) bewegt sich stets zwischen 2-3 GB, also auch noch nicht am Ende. Habt ihr eine Idee, was ich noch versuchen kann? Ich befürchte, es wird wohl auf ein neu aufsetzen hinauslaufen, wobei ich dann allerdings Unterstützung brauche, dass das CD Laufwerk den Geist aufgegeben hat. Neu aufsetzen durch Recover von der Samsung Partition möchte ich auch nicht, denn dann habe ich den ganzen Samsung Mist ja wieder mitinstalliert. Wenn ihr also hier keine Idee mehr habt, dann eröffne ich erst mal im Malwarebereich einen Thread und wenn dort nicht gefunden wird, muss ich ja wohl neu aufsetzen. Anderes Problem: Ich habe durch Samsung auch die Office Starter bekommen. Aber bei den Unterlagen keine Serial dafür. Kann man die Serial der Starter legal auslesen, damit man es später wieder installieren kann?
/// Malwareteam
![]() Wie äußert sich das "langsamer" bei dir, startet es langsam, dauert es lange bis sich ein Programm öffnet,...? Ist der PC auch langsam, wenn du ihn paar Minuten nach dem Neustart stehen lässt und dann arbeitest? Für den Anfang mach mal bitte folgendes: Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Bitte poste dein Ergebnis zwischen Code-Tags Wenn ein Log zu lange ist, teile ihn bitte auf mehrere Antworten. ![]() Drücke einfach die # in Antwortfenster und füge den Log dazwischen ein ![]() Dann, schließe ALLE dir möglichen, offenen Programme und lasse den PC so noch ein paar Minuten laufen ohne etwas zu tun, mache dann:
![]() | ![]() Win7 immer langsamer Details Hallo burnigice
__________________Es ist eigentlich ein schleichendes "verfahren", wird aber aktuell langsam lästig Zitat:
FRST Logfile: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:31-08-2015 durchgeführt von Christine (Administrator) auf MAUSIIHRLAP (31-08-2015 23:11:26) Gestartet von C:\Users\Christine\Desktop Geladene Profile: Christine & UpdatusUser (Verfügbare Profile: Christine & UpdatusUser & Mausi) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wisptis.exe (SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE (Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ( ) C:\Windows\System32\lxczcoms.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Interactive Brands Inc.) C:\Program Files (x86)\PDF Suite 2010\ConversionService.exe (Sony Corporation) C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe () C:\Program Files\CyberLink\Shared files\RichVideo64.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation) C:\Windows\System32\wisptis.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avpui.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Lexmark International, Inc.) C:\Program Files (x86)\Lexmark 1200 Series\LXCZbmgr.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Lexmark International, Inc.) C:\Program Files (x86)\Lexmark 1200 Series\LXCZbmon.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe (Microsoft Corporation) C:\Windows\System32\StikyNot.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (cyberlink) C:\Program Files (x86)\CyberLink\Shared files\brs.exe (CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE (SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe (Acronis) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe () C:\Program Files\OpenVPN\bin\openvpn-gui.exe (SEC) C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe (Microsoft Corporation) C:\Windows\splwow64.exe (The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpn.exe (Samsung Electronics Co., Ltd.) C:\Program Files\SAMSUNG\SamsungFastStart\SmartRestarter.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.EXE (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_232.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_232.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11106408 2010-08-04] (Realtek Semiconductor) HKLM\...\Run: [IntelliPoint] => C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2817872 2012-04-25] (ELAN Microelectronics Corp.) HKLM\...\Run: [lxczbmgr.exe] => C:\Program Files (x86)\Lexmark 1200 Series\lxczbmgr.exe [74408 2009-04-27] (Lexmark International, Inc.) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [571192 2014-08-14] (Acronis) HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [75048 2011-01-28] (cyberlink) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452272 2012-08-31] (CANON INC.) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1282632 2013-07-23] (CANON INC.) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2109952 2014-10-07] (Dominik Reichl) HKLM-x32\...\Run: [AdobeCS4ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [37232 2008-06-12] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [640376 2008-06-11] (Adobe Systems Inc.) HKLM-x32\...\Run: [Adobe_ID0ENQBO] => C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe [378224 2008-08-15] (Adobe Systems Incorporated) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [5380368 2015-07-20] (Acronis) HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [693336 2015-07-20] (Acronis International GmbH) HKU\S-1-5-21-3833009200-3102309602-1345092619-1000\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [787592 2015-06-23] (Sandboxie Holdings, LLC) HKU\S-1-5-21-3833009200-3102309602-1345092619-1000\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation) HKU\S-1-5-21-3833009200-3102309602-1345092619-1000\...\Run: [FileHippo.com] => C:\Program Files (x86)\FileHippo.com\FileHippo.AppManager.exe [10574544 2015-05-12] () HKU\S-1-5-21-3833009200-3102309602-1345092619-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8455960 2015-08-20] (Piriform Ltd) ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk [2013-06-19] ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2013-01-07] ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SRS Premium Sound.lnk [2010-10-23] ShortcutTarget: SRS Premium Sound.lnk -> C:\Windows\Installer\{340BE65B-7621-4B0B-B0F9-DBCCD8D70887}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe (Acresso Software Inc.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) Tcpip\Parameters: [DhcpNameServer] Tcpip\..\Interfaces\{40B3B314-B03B-43B2-BEAA-52D06E7615AF}: [DhcpNameServer] Tcpip\..\Interfaces\{6C346A83-26D6-422D-B1ED-64D4B4052068}: [DhcpNameServer] Tcpip\..\Interfaces\{BBAA1C66-23F9-4818-9BD4-C93E612BD351}: [DhcpNameServer] Tcpip\..\Interfaces\{DF4281B4-3ED2-45F0-A2B3-E8791B68317C}: [NameServer], Internet Explorer: ================== SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3833009200-3102309602-1345092619-1000 -> {B3A0E9A2-B4F1-41EC-B20D-3B001D9F6759} URL = hxxp://www.bing.com/search?FORM=SMSTDF&PC=MASM&q={searchTerms}&src=IE-SearchBox BHO: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll [2013-11-28] (CANON INC.) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-07-15] (Google Inc.) BHO: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO-x32: ContributeBHO Class -> {074C1DC5-9320-4A9A-947D-C042949C6216} -> C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll [2008-09-10] (Adobe Systems Incorporated.) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2013-11-28] (CANON INC.) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-07-15] (Google Inc.) BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems Incorporated) BHO-x32: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO-x32: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems Incorporated) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2013-11-28] (CANON INC.) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-07-15] (Google Inc.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2013-11-28] (CANON INC.) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll [2008-09-10] (Adobe Systems Incorporated.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-07-15] (Google Inc.) Toolbar: HKU\S-1-5-21-3833009200-3102309602-1345092619-1000 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2013-11-28] (CANON INC.) Toolbar: HKU\S-1-5-21-3833009200-3102309602-1345092619-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-07-15] (Google Inc.) Toolbar: HKU\S-1-5-21-3833009200-3102309602-1345092619-1000 -> Kein Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Keine Datei DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab FireFox: ======== FF ProfilePath: C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default FF NetworkProxy: "socks_remote_dns", true FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-14] () FF Plugin: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin: @wacom.com/wtPlugin,version= -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-14] () FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.) FF Plugin-x32: @java.com/DTPlugin,version=10.13.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [Keine Datei] FF Plugin-x32: @kaspersky.com/content_blocker_6418E0D362104DADA084DC312DFA8ABC -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2015-06-20] () FF Plugin-x32: @kaspersky.com/online_banking_69A4E213815F42BD863D889007201D82 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2015-06-20] () FF Plugin-x32: @kaspersky.com/virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2015-06-20] () FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [Keine Datei] FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [Keine Datei] FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL [2015-04-10] (Nero AG) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2015-08-27] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2015-08-27] (Google Inc.) FF Plugin-x32: @wacom.com/wtPlugin,version= -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.) FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF user.js: detected! => C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\user.js [2015-06-20] FF Extension: FoxyProxy Standard - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\foxyproxy@eric.h.jung [2015-05-30] FF Extension: Google Toolbar for Firefox - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{3112ca9c-de6d-4884-a869-9855de68056c} [2011-12-06] FF Extension: anonymoX - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\client@anonymox.net.xpi [2013-07-19] FF Extension: Add-on Compatibility Reporter - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\compatibility@addons.mozilla.org.xpi [2011-12-06] FF Extension: Ghostery - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\firefox@ghostery.com.xpi [2015-02-09] FF Extension: FlashDisable - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\jid0-bbA9VAawX3LMWDu668aUDrpQVXU@jetpack.xpi [2015-02-06] FF Extension: Google Translator for Firefox - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\translator@zoli.bod.xpi [2013-11-29] FF Extension: Malware Search - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{27c60876-b5c9-4335-b4f3-52b26782220c}.xpi [2012-07-05] FF Extension: NoScript - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-04-12] FF Extension: Video DownloadHelper - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-03-14] FF Extension: Adblock Plus - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-01-31] FF Extension: User Agent Switcher - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{e968fc70-8f95-4ab9-9e79-304de2a71ee1}.xpi [2013-08-02] FF HKLM-x32\...\Firefox\Extensions: [{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension FF Extension: Default Manager - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension [2010-10-23] FF HKLM-x32\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon FF HKLM-x32\...\Firefox\Extensions: [FFPDFConverter@ib.com] - C:\Program Files (x86)\PDF Suite 2010\firefoxextension FF Extension: PDF Suite Converter For Firefox - C:\Program Files (x86)\PDF Suite 2010\firefoxextension [2015-03-22] FF HKLM-x32\...\Firefox\Extensions: [content_blocker_6418E0D362104DADA084DC312DFA8ABC@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2015-06-20] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2015-06-20] FF HKLM-x32\...\Firefox\Extensions: [online_banking_69A4E213815F42BD863D889007201D82@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2015-06-20] Chrome: ======= CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho Opera: ======= OPR Extension: (Download Chrome Extension) - C:\Users\Christine\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2015-02-06] OPR Extension: (WebRTC Block) - C:\Users\Christine\AppData\Roaming\Opera Software\Opera Stable\Extensions\nphkkbaidamjmhfanlpblblcadhfbkdm [2015-02-06] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-09-08] (SUPERAntiSpyware.com) S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-06-19] (Adobe Systems) [Datei ist nicht signiert] S3 Adobe Version Cue CS4; C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [284016 2008-08-15] (Adobe Systems Incorporated) R2 AVP15.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe [234520 2014-08-30] (Kaspersky Lab ZAO) S2 CLKMSVC10_9EC60124; C:\Program Files (x86)\CyberLink\PowerDVD9\NavFilter\kmsvc.exe [240112 2010-11-18] (CyberLink) R2 DirMngr; C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [224256 2011-03-02] () [Datei ist nicht signiert] R2 lxcz_device; C:\Windows\system32\lxczcoms.exe [566192 2007-04-19] ( ) R2 lxcz_device; C:\Windows\SysWOW64\lxczcoms.exe [537520 2007-04-19] ( ) S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [38200 2015-08-04] (The OpenVPN Project) R2 PDF Suite 2010 Service; C:\Program Files (x86)\PDF Suite 2010\ConversionService.exe [799552 2010-08-04] (Interactive Brands Inc.) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-09-03] () [Datei ist nicht signiert] R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [386344 2012-06-22] () R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [175752 2015-06-23] (Sandboxie Holdings, LLC) R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1225312 2012-11-26] (Secunia) R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [659040 2012-11-26] (Secunia) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5611280 2015-08-07] (TeamViewer GmbH) R2 VMCService; C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [9216 2009-07-03] (Vodafone) [Datei ist nicht signiert] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [671000 2014-11-04] (Wacom Technology, Corp.) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R0 cm_km_w; C:\Windows\System32\DRIVERS\cm_km_w.sys [238288 2013-01-14] (Kaspersky Lab UK Ltd) S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [419840 2010-12-31] (Huawei Technologies Co., Ltd.) R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [296736 2015-08-23] (Acronis International GmbH) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [468576 2014-03-31] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [46144 2014-07-02] (Kaspersky Lab ZAO) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [150536 2015-06-20] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [246456 2014-08-12] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [819896 2015-06-20] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [30304 2014-02-25] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [28768 2014-03-28] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-08-08] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55872 2014-06-05] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [77512 2015-06-20] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [179776 2014-07-09] (Kaspersky Lab ZAO) S3 rtport; C:\Windows\SysWOW64\drivers\rtport.sys [15144 2011-01-28] (Windows (R) 2003 DDK 3790 provider) R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [190088 2015-06-23] (Sandboxie Holdings, LLC) R2 tib; C:\Windows\System32\DRIVERS\tib.sys [1058632 2015-08-23] (Acronis International GmbH) R2 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [248648 2015-08-23] (Acronis International GmbH) R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-16] () R2 {B154377D-700F-42cc-9474-23858FBDF4BD}; C:\Program Files (x86)\CyberLink\PowerDVD9\000.fcl [146928 2010-02-24] (CyberLink Corp.) U4 klkbdflt2; system32\DRIVERS\klkbdflt2.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-31 23:11 - 2015-08-31 23:12 - 00029809 _____ C:\Users\Christine\Desktop\FRST.txt 2015-08-31 23:10 - 2015-08-31 23:11 - 00000000 ____D C:\FRST 2015-08-31 23:09 - 2015-08-31 23:09 - 02188800 _____ (Farbar) C:\Users\Christine\Desktop\FRST64.exe 2015-08-31 12:00 - 2015-08-31 12:00 - 00000022 _____ C:\Windows\S.dirmngr 2015-08-31 00:09 - 2015-08-31 00:09 - 00000000 ____D C:\Users\Christine\Desktop\doc+txt 2015-08-29 11:24 - 2015-08-29 11:25 - 07810553 _____ C:\Users\Christine\Desktop\getürkte Berichterstattung.mp4 2015-08-28 11:34 - 2015-08-30 11:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-28 00:33 - 2015-08-31 01:04 - 00000356 _____ C:\Users\Christine\Desktop\gemeinnützige vereine.txt 2015-08-27 22:30 - 2015-08-27 22:30 - 00438335 _____ C:\Users\Christine\Desktop\fb1.htm 2015-08-25 11:17 - 2015-08-25 11:17 - 06520208 _____ (Tim Kosse) C:\Users\Christine\Downloads\FileZilla_3.13.1_win64-setup.exe 2015-08-24 00:05 - 2015-08-24 00:06 - 00001065 _____ C:\Users\Public\Desktop\OpenVPN GUI.lnk 2015-08-24 00:03 - 2015-08-24 00:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenVPN 2015-08-24 00:03 - 2015-08-24 00:05 - 00000000 ____D C:\Program Files\TAP-Windows 2015-08-24 00:03 - 2015-08-24 00:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TAP-Windows 2015-08-23 23:56 - 2015-08-24 00:03 - 00000000 ____D C:\Users\Christine\Desktop\PP-VPN 2015-08-23 23:45 - 2015-08-31 12:00 - 00000392 _____ C:\Windows\setupact.log 2015-08-23 23:45 - 2015-08-30 11:17 - 00002390 _____ C:\Windows\PFRO.log 2015-08-23 23:45 - 2015-08-23 23:45 - 00000000 _____ C:\Windows\setuperr.log 2015-08-23 22:29 - 2015-08-23 22:29 - 00000985 _____ C:\Users\Public\Desktop\ISO to USB.lnk 2015-08-23 22:29 - 2015-08-23 22:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISO to USB 2015-08-23 22:29 - 2015-08-23 22:29 - 00000000 ____D C:\Program Files (x86)\ISO to USB 2015-08-23 18:04 - 2015-08-23 18:04 - 00248648 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\tib_mounter.sys 2015-08-23 18:03 - 2015-08-23 18:03 - 00000000 ____D C:\Users\Christine\AppData\Roaming\3DCFF191-9848-4F8D-904A-129E93FFD071 2015-08-23 17:27 - 2015-08-23 17:27 - 00000000 ____D C:\Users\Christine\AppData\Roaming\Acronis 2015-08-23 17:25 - 2015-08-23 17:25 - 00296736 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\file_tracker.sys 2015-08-23 17:24 - 2015-08-23 18:04 - 01058632 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\tib.sys 2015-08-23 17:24 - 2015-08-23 17:24 - 00304416 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\snapman.sys 2015-08-23 17:24 - 2015-08-23 17:24 - 00134432 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\fltsrv.sys 2015-08-23 17:22 - 2015-08-23 18:03 - 00001177 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image 2015.lnk 2015-08-23 17:22 - 2015-08-23 18:03 - 00001165 _____ C:\Users\Public\Desktop\Acronis True Image 2015.lnk 2015-08-23 17:22 - 2015-08-23 17:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis 2015-08-23 17:22 - 2015-08-23 17:22 - 00000000 ____D C:\Program Files (x86)\Acronis 2015-08-23 17:18 - 2015-08-23 20:58 - 00000000 ____D C:\ProgramData\Acronis 2015-08-20 11:14 - 2015-08-20 11:14 - 06505624 _____ (Tim Kosse) C:\Users\Christine\Downloads\FileZilla_3.13.0_win64-setup.exe 2015-08-20 00:48 - 2015-08-11 03:20 - 25191936 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-08-20 00:48 - 2015-08-11 03:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-08-20 00:48 - 2015-08-11 02:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-08-20 00:48 - 2015-08-11 02:20 - 19871232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-08-16 00:26 - 2015-08-16 12:26 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2015-08-13 01:22 - 2015-08-13 01:22 - 00000000 _____ C:\Windows\SysWOW64\shoE22.tmp 2015-08-13 01:15 - 2015-07-30 15:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 01:15 - 2015-07-30 15:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 13:44 - 2015-07-21 02:39 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-08-12 13:44 - 2015-07-21 02:12 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-08-12 13:44 - 2015-07-16 22:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-08-12 13:44 - 2015-07-16 22:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-08-12 13:44 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-08-12 13:44 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-08-12 13:44 - 2015-07-16 22:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-08-12 13:44 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-08-12 13:44 - 2015-07-16 22:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-08-12 13:44 - 2015-07-16 22:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-08-12 13:44 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-08-12 13:44 - 2015-07-16 22:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-08-12 13:44 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-08-12 13:44 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-08-12 13:44 - 2015-07-16 22:21 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-08-12 13:44 - 2015-07-16 22:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-08-12 13:44 - 2015-07-16 22:21 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-08-12 13:44 - 2015-07-16 22:12 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-08-12 13:44 - 2015-07-16 22:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-08-12 13:44 - 2015-07-16 22:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-08-12 13:44 - 2015-07-16 21:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-08-12 13:44 - 2015-07-16 21:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-08-12 13:44 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-08-12 13:44 - 2015-07-16 21:51 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-08-12 13:44 - 2015-07-16 21:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-08-12 13:44 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-08-12 13:44 - 2015-07-16 21:50 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-08-12 13:44 - 2015-07-16 21:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-08-12 13:44 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-08-12 13:44 - 2015-07-16 21:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-08-12 13:44 - 2015-07-16 21:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-08-12 13:44 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-08-12 13:44 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-08-12 13:44 - 2015-07-16 21:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-08-12 13:44 - 2015-07-16 21:38 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-08-12 13:44 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-08-12 13:44 - 2015-07-16 21:35 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-08-12 13:44 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-08-12 13:44 - 2015-07-16 21:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-08-12 13:44 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-08-12 13:44 - 2015-07-16 21:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-08-12 13:44 - 2015-07-16 21:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-08-12 13:44 - 2015-07-16 21:20 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-08-12 13:44 - 2015-07-16 21:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-08-12 13:44 - 2015-07-16 21:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-08-12 13:44 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-08-12 13:44 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-08-12 13:44 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-08-12 13:44 - 2015-07-16 21:06 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-08-12 13:44 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-08-12 13:44 - 2015-07-16 21:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-08-12 13:44 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-08-12 13:44 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-08-12 13:44 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-08-12 13:44 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-08-12 13:44 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-08-12 13:17 - 2015-07-16 21:12 - 06131200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-08-12 13:17 - 2015-07-16 21:12 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-08-12 13:17 - 2015-07-16 21:12 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-08-12 13:17 - 2015-07-16 21:11 - 07077376 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-08-12 13:17 - 2015-07-16 21:11 - 01057792 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-08-12 13:17 - 2015-07-16 21:11 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-08-12 13:17 - 2015-07-15 20:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-08-12 13:17 - 2015-07-15 20:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-08-12 13:17 - 2015-07-15 20:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-08-12 13:17 - 2015-07-15 20:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-08-12 13:17 - 2015-07-15 19:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2015-08-12 13:17 - 2015-07-15 19:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2015-08-12 13:17 - 2015-07-15 19:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-08-12 13:17 - 2015-07-15 19:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-08-12 13:17 - 2015-07-15 19:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-08-12 13:17 - 2015-07-15 05:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2015-08-12 13:17 - 2015-07-11 15:15 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2015-08-12 13:17 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2015-08-12 13:17 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2015-08-12 13:17 - 2015-07-09 19:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2015-08-12 13:16 - 2015-07-15 20:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-08-12 13:16 - 2015-07-15 20:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-08-12 13:16 - 2015-07-15 20:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2015-08-12 13:16 - 2015-07-15 20:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-08-12 13:16 - 2015-07-15 20:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-08-12 13:16 - 2015-07-15 20:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2015-08-12 13:16 - 2015-07-15 20:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-08-12 13:16 - 2015-07-15 20:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll 2015-08-12 13:16 - 2015-07-15 20:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-08-12 13:16 - 2015-07-15 20:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-08-12 13:16 - 2015-07-15 20:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-08-12 13:16 - 2015-07-15 20:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-08-12 13:16 - 2015-07-15 19:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-08-12 13:16 - 2015-07-15 19:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-08-12 13:16 - 2015-07-15 19:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-08-12 13:16 - 2015-07-15 19:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-08-12 13:16 - 2015-07-15 19:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-08-12 13:16 - 2015-07-15 19:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-08-12 13:16 - 2015-07-15 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-08-12 13:16 - 2015-07-15 19:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-08-12 13:16 - 2015-07-15 19:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-08-12 13:16 - 2015-07-15 19:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-08-12 13:16 - 2015-07-15 19:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-08-12 13:16 - 2015-07-15 19:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-08-12 13:16 - 2015-07-15 19:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-08-12 13:16 - 2015-07-15 19:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-08-12 13:16 - 2015-07-15 19:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-08-12 13:16 - 2015-07-15 19:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-08-12 13:16 - 2015-07-15 19:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 18:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-08-12 13:16 - 2015-07-15 18:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-08-12 13:16 - 2015-07-15 18:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-08-12 13:16 - 2015-07-15 18:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-08-12 13:16 - 2015-07-15 18:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-08-12 13:16 - 2015-07-15 18:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 18:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 18:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 18:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2015-08-12 13:10 - 2015-07-01 22:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-08-12 13:10 - 2015-07-01 22:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-08-12 13:10 - 2015-07-01 22:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-08-12 13:10 - 2015-07-01 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-08-12 13:09 - 2015-07-30 19:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-08-12 13:09 - 2015-07-30 19:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-08-12 13:09 - 2015-07-30 19:57 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-08-12 13:09 - 2015-07-30 19:57 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-08-12 13:09 - 2015-07-30 19:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-08-12 13:09 - 2015-07-30 19:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-08-12 13:09 - 2015-07-30 18:56 - 03208192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-08-12 13:09 - 2015-07-30 18:52 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-08-12 13:09 - 2015-07-30 18:49 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-08-12 13:09 - 2015-07-15 05:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-08-12 13:09 - 2015-07-15 05:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-08-12 13:09 - 2015-07-15 05:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2015-08-12 13:09 - 2015-07-15 05:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2015-08-12 13:09 - 2015-07-15 04:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-08-12 13:09 - 2015-07-15 04:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-08-12 13:09 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2015-08-12 13:09 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 02606080 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-08-12 13:08 - 2015-07-20 20:12 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-08-12 13:08 - 2015-07-20 20:12 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-08-12 13:08 - 2015-07-20 19:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-08-12 13:08 - 2015-07-20 19:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-08-12 13:08 - 2015-07-20 19:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-08-12 13:08 - 2015-07-20 19:56 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-08-12 13:08 - 2015-07-20 19:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-08-12 13:08 - 2015-07-10 19:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-08-12 13:08 - 2015-07-10 19:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-08-12 13:08 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2015-08-03 00:27 - 2015-08-03 00:27 - 00000000 _____ C:\Windows\SysWOW64\shoA773.tmp ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-31 22:30 - 2013-12-29 01:08 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-08-31 22:26 - 2012-06-22 19:11 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-08-31 22:23 - 2011-12-05 18:21 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2015-08-31 20:29 - 2013-12-29 01:08 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-08-31 18:12 - 2010-10-23 04:55 - 01871519 _____ C:\Windows\WindowsUpdate.log 2015-08-31 12:14 - 2009-07-14 06:45 - 00022976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-08-31 12:14 - 2009-07-14 06:45 - 00022976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-08-31 12:00 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-08-31 00:09 - 2015-05-18 11:19 - 00000000 ____D C:\Users\Christine\Desktop\PDF 2015-08-30 11:17 - 2013-01-07 19:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-30 00:04 - 2015-06-23 01:38 - 00032768 _____ C:\Windows\system32\persistent_q.db-shm 2015-08-30 00:04 - 2015-06-23 01:38 - 00030424 _____ C:\Windows\system32\persistent_q.db-wal 2015-08-30 00:02 - 2011-12-07 19:17 - 00000000 ____D C:\Users\Christine\AppData\Roaming\SoftGrid Client 2015-08-29 12:02 - 2013-04-26 23:35 - 00001940 _____ C:\Windows\Sandboxie.ini 2015-08-29 11:24 - 2013-10-26 21:56 - 00000000 ____D C:\Users\Christine\Webseite 2015-08-29 00:03 - 2015-04-13 11:56 - 00000000 ____D C:\Users\Christine\AppData\Local\CrashDumps 2015-08-27 20:24 - 2013-12-29 01:08 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-08-27 20:24 - 2013-12-29 01:08 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-08-27 12:46 - 2014-04-13 18:45 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-08-26 23:11 - 2015-03-22 23:30 - 00000000 ____D C:\Users\Christine\Desktop\Insolvenz 2015-08-26 22:01 - 2010-10-23 21:11 - 03251820 _____ C:\Windows\system32\perfh007.dat 2015-08-26 22:01 - 2010-10-23 21:11 - 00970666 _____ C:\Windows\system32\perfc007.dat 2015-08-26 22:01 - 2009-07-14 07:13 - 00006540 _____ C:\Windows\system32\PerfStringBackup.INI 2015-08-26 12:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2015-08-26 11:18 - 2011-12-06 19:27 - 00000000 ____D C:\Program Files\CCleaner 2015-08-26 11:17 - 2015-06-06 16:52 - 00000000 ____D C:\Users\Christine\AppData\Roaming\Notepad++ 2015-08-25 11:18 - 2013-10-26 17:13 - 00000000 ____D C:\Users\Christine\AppData\Roaming\FileZilla 2015-08-25 11:17 - 2013-10-26 17:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2015-08-25 11:17 - 2013-10-26 17:13 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client 2015-08-24 13:15 - 2015-05-18 12:08 - 00000000 ____D C:\Users\Christine\Desktop\Unterlagen Olivella 2015-08-23 23:58 - 2010-10-23 04:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2015-08-23 23:58 - 2010-10-23 04:55 - 00000000 ____D C:\Program Files (x86)\Samsung 2015-08-23 23:48 - 2013-10-26 11:55 - 00617984 ___SH C:\Users\Christine\Desktop\Thumbs.db 2015-08-23 23:35 - 2011-12-05 21:54 - 00000000 ____D C:\ProgramData\Rosetta Stone 2015-08-23 23:35 - 2011-12-05 21:54 - 00000000 ____D C:\ProgramData\FLEXnet 2015-08-23 23:28 - 2010-10-23 04:52 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-08-23 22:54 - 2015-05-09 22:26 - 00000000 ____D C:\ProgramData\Fighters 2015-08-23 22:52 - 2013-11-26 13:19 - 00000000 ____D C:\Program Files\CyberGhost 5 2015-08-23 22:00 - 2015-07-29 00:45 - 00000000 ____D C:\Windows\Minidump 2015-08-23 16:04 - 2011-12-06 19:24 - 00000000 ____D C:\Users\Christine\AppData\Local\Google 2015-08-21 11:17 - 2013-10-29 01:49 - 00000000 ____D C:\Program Files (x86)\Opera 2015-08-19 14:15 - 2014-06-05 01:06 - 00003858 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1383004141 2015-08-19 01:12 - 2015-05-05 21:52 - 00000444 _____ C:\lxcz.log 2015-08-15 14:26 - 2012-06-22 19:11 - 00778440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-08-15 14:26 - 2012-06-22 19:11 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-08-15 14:26 - 2012-06-22 19:11 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-08-14 13:39 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-08-13 12:20 - 2013-03-16 01:03 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-08-13 12:20 - 2013-03-16 01:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-08-13 12:20 - 2009-07-14 06:45 - 02885488 _____ C:\Windows\system32\FNTCACHE.DAT 2015-08-13 01:22 - 2014-02-22 23:02 - 00000000 ____D C:\Windows\SysWOW64\%Report% 2015-08-13 01:21 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2015-08-13 01:15 - 2013-03-16 01:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-08-13 01:09 - 2013-08-16 00:29 - 00000000 ____D C:\Windows\system32\MRT 2015-08-13 01:03 - 2011-12-06 16:35 - 132483416 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-08-11 11:26 - 2015-03-02 01:13 - 00000931 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk 2015-08-11 11:26 - 2012-09-25 13:22 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2015-08-05 11:16 - 2013-05-10 23:15 - 00000000 ____D C:\Program Files\SUPERAntiSpyware 2015-08-04 11:21 - 2015-06-06 16:52 - 00000000 ____D C:\Program Files (x86)\Notepad++ ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2013-08-02 21:41 - 2014-06-18 00:26 - 0000600 _____ () C:\Users\Christine\AppData\Local\PUTTY.RND 2013-04-10 22:40 - 2013-04-10 22:40 - 0007602 _____ () C:\Users\Christine\AppData\Local\Resmon.ResmonCfg 2011-12-05 18:42 - 2011-12-05 18:42 - 0017408 _____ () C:\Users\Christine\AppData\Local\WebpageIcons.db 2009-06-16 14:25 - 2009-06-16 14:25 - 0121512 ____R () C:\ProgramData\DeviceManager.xml.rc4 2011-12-05 23:36 - 2011-12-05 23:36 - 0000056 ____H () C:\ProgramData\ezsidmv.dat 2010-10-23 05:04 - 2010-10-23 05:05 - 0000109 _____ () C:\ProgramData\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log 2010-10-23 05:01 - 2010-10-23 05:01 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log 2010-10-23 04:58 - 2010-10-23 05:00 - 0000106 _____ () C:\ProgramData\{80E158EA-7181-40FE-A701-301CE6BE64AB}.log 2010-10-23 05:03 - 2010-10-23 05:04 - 0000106 _____ () C:\ProgramData\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}.log 2010-10-23 05:01 - 2010-10-23 05:03 - 0000110 _____ () C:\ProgramData\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}.log 2010-10-23 05:05 - 2010-10-23 05:05 - 0000105 _____ () C:\ProgramData\{d36dd326-7280-11d8-97c8-000129760cbe}.log Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Users\Christine\cjq1200Win7de.exe Einige Dateien in TEMP: ==================== C:\Users\Christine\AppData\Local\Temp\kernel32.dll C:\Users\Christine\AppData\Local\Temp\rtdrvmon.exe C:\Users\Mausi\AppData\Local\Temp\rtdrvmon.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-08-22 11:34 ==================== Ende von FRST.txt ============================ Addition folgt in nächsten Beitrag Zitat:
Da ich .html nicht anhängen kann, habe ich die Datei gezippt.
Lösung: Win7 immer langsamer
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:31-08-2015 durchgeführt von Christine (2015-08-31 23:13:16) Gestartet von C:\Users\Christine\Desktop Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3833009200-3102309602-1345092619-500 - Administrator - Disabled) Christine (S-1-5-21-3833009200-3102309602-1345092619-1000 - Administrator - Enabled) => C:\Users\Christine Gast (S-1-5-21-3833009200-3102309602-1345092619-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3833009200-3102309602-1345092619-1004 - Limited - Enabled) Mausi (S-1-5-21-3833009200-3102309602-1345092619-1005 - Limited - Enabled) => C:\Users\Mausi UpdatusUser (S-1-5-21-3833009200-3102309602-1345092619-1003 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.2.443 - Adobe Systems Incorporated) Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Acronis True Image 2015 (HKLM-x32\...\{2F70A6E6-2F71-4907-8441-BDC5D300310B}Visible) (Version: 18.0.6613 - Acronis) Acronis True Image 2015 (x32 Version: 18.0.6613 - Acronis) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: - Adobe Systems Incorporated) Adobe Anchor Service x64 CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe CMaps x64 CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Creative Suite 2 (HKLM-x32\...\{0134A1A1-C283-4A47-91A1-92F19F960372}) (Version: - ) Adobe Creative Suite 4 Web Premium (HKLM-x32\...\Adobe_6f2ce928cc3187358f216191905bbea) (Version: 4.0 - Adobe Systems Incorporated) Adobe CSI CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Drive CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: - Adobe Systems Incorporated) Adobe Fonts All x64 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Linguistics CS4 x64 (Version: 4.0.0 - Adobe Systems Incorporated) Hidden Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1 - Adobe Systems Incorporated) Adobe PDF Library Files x64 CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS4 (64 Bit) (Version: 11.0 - Adobe Systems Incorporated) Hidden Adobe Reader XI (11.0.12) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Adobe Type Support x64 CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe WinSoft Linguistics Plugin x64 (Version: 1.1 - Adobe Systems Incorporated) Hidden Alle meine Passworte 4.12 (HKLM\...\AllemeinePassworte) (Version: - Mirko Böer) Bing Rewards Client Installer (x32 Version: 16.0.345.0 - Microsoft Corporation) Hidden Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: - Broadcom Corporation) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: - Canon Inc.) Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - Canon Inc.) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.2.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.) Canon Kurzwahlprogramm (HKLM-x32\...\Speed Dial Utility) (Version: 1.3.0 - Canon Inc.) Canon MX920 series Benutzerregistrierung (HKLM-x32\...\Canon MX920 series Benutzerregistrierung) (Version: - *Canon Inc.) Canon MX920 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX920_series) (Version: 1.00 - Canon Inc.) Canon MX920 series On-screen Manual (HKLM-x32\...\Canon MX920 series On-screen Manual) (Version: 7.6.0 - Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 1.1.0 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 1.0.1 - Canon Inc.) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.1.0 - Canon Inc.) Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.3.0 - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.09 - Piriform) ChargeableUSB (HKLM-x32\...\{92D50865-FC60-4EA8-BA7A-5581B0D13EFB}) (Version: - SAMSUNG) Conexant Polaris Unused CIR Function (HKLM\...\Uninstaller50b74a22199) (Version: - Conexant Systems) Connect (x32 Version: - Adobe Systems Incorporated) Hidden CyberLink Blu-ray Disc Suite (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 7.0.3029 - CyberLink Corp.) CyberLink MediaShow (HKLM-x32\...\InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}) (Version: 5.0.0902fb - CyberLink Corp.) CyberLink PhotoNow (HKLM-x32\...\InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}) (Version: 1.1.6904 - CyberLink Corp.) CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3802 - CyberLink Corp.) CyberLink PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: - CyberLink Corp.) CyberLink PowerDirector (Version: - CyberLink Corp.) Hidden CyberLink PowerDVD 9 (HKLM-x32\...\InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}) (Version: 9.0.3815.52 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 2.0.3911 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DNS Leak Fix for OpenVPN version 1.2 (HKLM-x32\...\{8CFA1D01-AECD-4913-9FB8-1E8A82F47824}_is1) (Version: 1.2 - dnsleaktest.com) Easy Content Share (HKLM-x32\...\{2DDC70C1-C77A-4D08-89D2-9AB648504533}) (Version: 1.0 - Samsung Electronics Co., LTD) Easy Display Manager (HKLM-x32\...\{17283B95-21A8-4996-97DA-547A48DB266F}) (Version: 3.2 - Samsung Electronics Co., Ltd.) Easy Network Manager (HKLM-x32\...\{1127FA07-963E-479B-AE80-B99C571E52D8}) (Version: 4.4.4 - Samsung) Easy SpeedUp Manager (HKLM-x32\...\{EF367AA4-070B-493C-9575-85BE59D789C9}) (Version: - Samsung Electronics Co.,Ltd.) EasyBatteryManager (HKLM-x32\...\{4A331D24-A9E8-484F-835E-1BA7B139689C}) (Version: - Samsung) EasyFileShare (HKLM-x32\...\{C4582EED-A3FB-4358-8F3F-8C994460DF28}) (Version: 1.0.3 - Samsung) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) ETDWare PS/2-X64 (HKLM\...\Elantech) (Version: - ELAN Microelectronic Corp.) Fast Start (HKLM-x32\...\{77F45ECD-FAFC-45A8-8896-CFFB139DAAA3}) (Version: - SAMSUNG) FileHippo App Manager (HKLM-x32\...\FileHippo.com) (Version: - FileHippo.com) FileZilla Client 3.13.1 (HKLM-x32\...\FileZilla Client) (Version: 3.13.1 - Tim Kosse) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6710.2136 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: - Google Inc.) Hidden Google Update Helper (x32 Version: - Google Inc.) Hidden Gpg4win (2.1.0) (HKLM-x32\...\GPG4Win) (Version: 2.1.0 - The Gpg4win Project) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: - Intel Corporation) Intel(R) Turbo Boost Technology Driver (HKLM-x32\...\{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}) (Version: - Intel Corporation) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan) ISO to USB (HKLM-x32\...\{D08A30AC-A663-4EA8-8D81-B98E17F19F1C}_is1) (Version: - isotousb.com) Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{8ED07EBD-22AD-415A-B71E-C1AD86862C2E}) (Version: - Kaspersky Lab) Kaspersky Internet Security (x32 Version: - Kaspersky Lab) Hidden KeePass Password Safe 2.28 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.28 - Dominik Reichl) kuler (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Lexmark 1200 Series (HKLM\...\Lexmark 1200 Series) (Version: - Lexmark International, Inc.) Macromedia Dreamweaver 8 (HKLM-x32\...\{44025BD7-AD10-4769-99AE-6378FD0303D6}) (Version: - Macromedia) Macromedia Extension Manager (HKLM-x32\...\{0F022A2E-7022-497D-90A5-0F46746D8275}) (Version: 1.7.270 - Ihr Firmenname) Macromedia Fireworks 8 (HKLM-x32\...\{4C24A8C1-7CFA-4650-AF15-732F5BD7B46D}) (Version: - Macromedia) Malwarebytes Anti-Malware Version (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: - Malwarebytes Corporation) Marvell Miniport Driver (HKLM-x32\...\Marvell Miniport Driver) (Version: - Marvell) Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft IntelliPoint 8.2 (HKLM\...\Microsoft IntelliPoint 8.2) (Version: 8.20.468.0 - Microsoft Corporation) Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Movie Color Enhancer (HKLM-x32\...\{7F6F62F0-7884-4CFB-B86C-597A4A6D9C4D}) (Version: 1.0 - Samsung Electronics Co., Ltd.) MozBackup 1.5.1 (HKLM-x32\...\MozBackup) (Version: - Pavel Cvrcek) Mozilla Firefox 40.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 40.0.3 (x86 de)) (Version: 40.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: - Mozilla) Mozilla Thunderbird 38.2.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 38.2.0 (x86 de)) (Version: 38.2.0 - Mozilla) MS-Buchhalter Start 3.0 (HKLM-x32\...\MS-Buchhalter Start) (Version: 3.0 - Michael Schroeder) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MultimediaPOP (HKLM-x32\...\{331ECF61-69AF-4F57-AC35-AFED610231C3}) (Version: 1.1 - ) NAVIGON Fresh 3.5.1 (HKLM-x32\...\NAVIGON Fresh) (Version: 3.5.1 - NAVIGON) Nero 12 (HKLM-x32\...\{560FC78C-A4B2-461D-9B47-820C1EEF87B8}) (Version: 12.0.02000 - Nero AG) Nero 12 Content Pack (HKLM-x32\...\{4E7AC009-5212-499F-942F-A5AA42AE359E}) (Version: 12.0.00400 - Nero AG) Nero CoverDesigner (HKLM-x32\...\{12391E45-23F7-4DEA-ABAE-2CA69CA87D92}) (Version: 12.0.02300 - Nero AG) Nero Info (HKLM-x32\...\{F030BFE8-8476-4C08-A553-233DE80A2BE1}) (Version: 16.0.2000 - Nero AG) Nero MediaHome Free (HKLM-x32\...\{4C4E731B-FFBC-4CD4-967E-B468E61C89F4}) (Version: 16.0.03300 - Nero AG) Nero Prerequisite Installer 1.0 (HKLM-x32\...\{E4B86819-E9B8-4089-963B-DF5E70E7A05E}) (Version: 11.0.13100 - Nero AG) Nero Prerequisite Installer 2.0 (HKLM-x32\...\{F4C242B4-2973-43F3-93F2-ED1B47AE8848}) (Version: 12.0.02000 - Nero AG) Nero WaveEditor (HKLM-x32\...\{59C6E86A-14A9-47FD-9EE8-8D9DA864E0AF}) (Version: 12.5.01300 - Nero AG) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.2 - Notepad++ Team) NVIDIA Grafiktreiber 320.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 320.49 - NVIDIA Corporation) NVIDIA HD-Audiotreiber (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.13.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0604 - NVIDIA Corporation) OpenVPN 2.3.8-I601 (HKLM\...\OpenVPN) (Version: 2.3.8-I601 - ) Opera Stable 31.0.1889.174 (HKLM-x32\...\Opera 31.0.1889.174) (Version: 31.0.1889.174 - Opera Software) PDF Settings CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden PDF Suite 2010 (HKLM-x32\...\{31832C70-2FA4-4C99-BA99-94A5EF7A1184}) (Version: 9.0.50 - Interactive Brands Inc.) Photoshop Camera Raw (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden Photoshop Camera Raw_x64 (Version: 5.0 - Adobe Systems Incorporated) Hidden Pixel Bender Toolkit (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden PMB (HKLM-x32\...\{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}) (Version: - Sony Corporation) PP Tunnel Manager version 1.6 (HKLM-x32\...\{B6661DC2-DFEC-4D8A-B00D-CB6C104B7BF4}_is1) (Version: 1.6 - Perfect Privacy) Prerequisite installer (x32 Version: 12.0.0008 - Nero AG) Hidden Prerequisite installer (x32 Version: 16.0.0004 - Nero AG) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: - Renesas Electronics Corporation) Hidden Samsung AnyWeb Print (x32 Version: 1.0 - Samsung Electronics Co., Ltd.) Hidden Samsung Recovery Solution 5 (HKLM-x32\...\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}) (Version: - Samsung) Sandboxie 4.20 (64-bit) (HKLM\...\Sandboxie) (Version: 4.20 - Sandboxie Holdings, LLC) Secunia PSI ( (HKLM-x32\...\Secunia PSI) (Version: - Secunia) Speccy (HKLM\...\Speccy) (Version: 1.28 - Piriform) SRS Premium Sound Control Panel (HKLM\...\{340BE65B-7621-4B0B-B0F9-DBCCD8D70887}) (Version: 1.8.8100 - SRS Labs, Inc.) Suite Shared Configuration CS4 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.7.1012 - SUPERAntiSpyware.com) TAP-Windows 9.21.1 (HKLM\...\TAP-Windows) (Version: 9.21.1 - ) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.45862 - TeamViewer) TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation) Überwachungstool für die Intel® Turbo-Boost-Technik (HKLM\...\{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}) (Version: 1.0.400.4 - Intel) User Guide (HKLM-x32\...\{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}) (Version: 1.0 - ) Video Grabber (HKLM\...\Uninstaller50b74a2429f) (Version: - Conexant Systems) Vodafone Mobile Connect Lite (HKLM-x32\...\{79A64F98-1796-4FA2-B5FF-C90F83D8BACD}) (Version: - Vodafone) Wacom Tablett (HKLM\...\Wacom Tablet Driver) (Version: 6.3.10w2 - Wacom Technology Corp.) WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: - Wacom Technology Corp.) Welcome App (Start-up experience) (x32 Version: 12.0.15000 - Nero AG) Hidden WIDCOMM Bluetooth Software (HKLM\...\{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}) (Version: - Broadcom Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) XAMPP (HKLM-x32\...\xampp) (Version: 1.8.3-5 - Bitnami) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Wiederherstellungspunkte ========================= 23-08-2015 23:21:50 Entfernt Samsung AnyWeb Print 23-08-2015 23:23:15 Samsung Support Center 1.0 wird entfernt 23-08-2015 23:27:55 Removed Samsung Update Plus 23-08-2015 23:28:58 Removed Rosetta Stone Version 3 23-08-2015 23:57:43 BatteryLifeExtender wird entfernt 24-08-2015 00:04:07 Gerätetreiber-Paketinstallation: TAP-Windows Provider V9 Netzwerkadapter ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {06F126FD-0A7F-4B15-AFEE-7B42582C53F9} - System32\Tasks\MovieColorEnhancer => C:\Program Files (x86)\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe [2010-08-19] (Samsung Electronics Co., Ltd.) Task: {0D7B98E1-FA44-4D69-B9F6-217C9F7A8B95} - System32\Tasks\{DA961DF4-6A0B-45C0-B51C-6BF7E6FA3865} => pcalua.exe -a D:\Installlationen\Adobe\Air\AdobeAIRInstaller.exe -d D:\Installlationen\Adobe\Air Task: {148A8A91-8E8F-450B-A5AC-DB9314358574} - System32\Tasks\advSRS5 => C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe [2010-08-11] (SEC) Task: {188FE252-3CED-48A4-ACD4-63326B7C929E} - \EasySpeedUpManager -> Keine Datei <==== ACHTUNG Task: {2202FF62-8054-45E8-A518-8BF3C961BED2} - System32\Tasks\EasyDisplayMgr => C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe [2010-08-09] (Samsung Electronics Co., Ltd.) Task: {2333DD32-C17B-410A-BF46-1E2B4FDCB1DD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.) Task: {57C17ACE-2327-48AF-BE5E-CEBEB91D4FD7} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [2015-06-04] (Nero AG) Task: {6EEAFBF7-1A73-4F93-8595-0388717457DC} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation) Task: {757E5938-6309-4020-B91B-1F7A79A9A343} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-15] (Adobe Systems Incorporated) Task: {7E464697-5E5D-4B2C-8D5B-17FED34E0778} - System32\Tasks\Opera scheduled Autoupdate 1383004141 => C:\Program Files (x86)\Opera\launcher.exe [2015-08-17] (Opera Software) Task: {9230812B-1F3D-49CC-BE58-D46D4607C770} - System32\Tasks\{3287BA68-2CF6-4D05-A872-2362D0EA4EAB} => pcalua.exe -a "D:\Installlationen\Adobe\CS4 Web Premium\Adobe CS4\payloads\AdobeAIR1.0\AdobeAIRInstaller.exe" -d "C:\Program Files (x86)\Common Files\Adobe\Installers\6f2ce928cc3187358f216191905bbea" -c -silent Task: {9854EA97-CCC3-4229-9EB9-49FD31559D26} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {9E0EDE0F-D36B-421D-9E58-5CA0003D331B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.) Task: {A7E87E66-8BB6-4215-AB5F-DE34759B3784} - System32\Tasks\SmartRestarter => C:\Program Files\Samsung\SamsungFastStart\SmartRestarter.exe [2010-08-05] (Samsung Electronics Co., Ltd.) Task: {B8DEAC6F-22FF-4882-B6C2-DA1706061476} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-08-20] (Piriform Ltd) Task: {D1CB389C-105F-4620-85AE-68B9FD56110A} - System32\Tasks\EasyBatteryManager => C:\Program Files (x86)\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe [2010-07-20] (SAMSUNG Electronics co., LTD.) Task: {E9B0BD1D-BBE7-4B5C-8C03-33CD234949C7} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => C:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-08-01] (Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2013-09-15 00:58 - 2013-06-21 12:23 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2011-12-05 17:46 - 2008-06-05 01:53 - 00027648 _____ () C:\Windows\System32\spd__l.dll 2011-03-02 17:20 - 2011-03-02 17:20 - 00224256 _____ () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe 2010-10-23 05:00 - 2009-09-03 02:30 - 00244904 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2012-11-29 13:51 - 2012-06-22 10:31 - 00386344 ____R () C:\Program Files\CyberLink\Shared files\RichVideo64.exe 2015-08-24 15:56 - 2015-08-24 15:56 - 00043480 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2015-04-15 22:13 - 2015-04-15 22:13 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2015-08-24 20:28 - 2015-08-24 20:28 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll 2014-11-11 22:48 - 2014-11-04 20:49 - 01356568 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll 2015-08-04 15:14 - 2015-08-04 15:14 - 00424760 _____ () C:\Program Files\OpenVPN\bin\openvpn-gui.exe 2015-08-04 15:14 - 2015-08-04 15:14 - 00224856 _____ () C:\Program Files\OpenVPN\bin\liblzo2-2.dll 2015-08-04 15:14 - 2015-08-04 15:14 - 00122960 _____ () C:\Program Files\OpenVPN\bin\libpkcs11-helper-1.dll 2014-08-30 17:12 - 2014-08-30 17:12 - 01269952 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\kpcengine.2.3.dll 2011-03-02 17:16 - 2011-03-02 17:16 - 00208384 _____ () C:\Program Files (x86)\GNU\GnuPG\libksba-8.dll 2011-03-02 17:13 - 2011-03-02 17:13 - 00048640 _____ () C:\Program Files (x86)\GNU\GnuPG\libgpg-error-0.dll 2011-03-02 17:11 - 2011-03-02 17:11 - 00038400 _____ () C:\Program Files (x86)\GNU\GnuPG\libw32pth-0.dll 2011-03-02 17:16 - 2011-03-02 17:16 - 00073216 _____ () C:\Program Files (x86)\GNU\GnuPG\libassuan-0.dll 2011-03-02 17:17 - 2011-03-02 17:17 - 00603136 _____ () C:\Program Files (x86)\GNU\GnuPG\libgcrypt-11.dll 2010-10-23 05:09 - 2010-07-05 12:42 - 00203776 _____ () C:\Program Files (x86)\Samsung\Movie Color Enhancer\WinCRT.dll 2015-07-20 09:08 - 2015-07-20 09:08 - 00037696 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\qt_icontray_ex.dll 2015-07-20 09:08 - 2015-07-20 09:08 - 00034624 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\thread_pool.dll 2015-07-20 09:15 - 2015-07-20 09:15 - 00420160 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\ulxmlrpcpp.dll 2014-11-27 10:44 - 2014-11-27 10:44 - 00129344 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\EXPAT.dll 2010-10-23 05:12 - 2006-08-12 05:48 - 00049152 _____ () C:\Program Files (x86)\Samsung\Easy Display Manager\HookDllPS2.dll 2010-10-23 05:14 - 2010-05-07 16:22 - 01636864 _____ () C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\Resdll.dll 2015-08-16 00:27 - 2015-08-16 00:27 - 00153768 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll 2015-08-16 00:27 - 2015-08-16 00:27 - 00023208 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll 2014-08-30 17:12 - 2015-06-20 12:11 - 00459048 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com\npcontentblocker.dll 2014-08-30 17:12 - 2015-06-20 12:11 - 00587048 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com\npvkplugin.dll 2014-08-30 17:12 - 2015-06-20 12:11 - 00332584 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com\nponlinebanking.dll 2015-08-14 12:36 - 2015-08-14 12:36 - 17482952 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll 2014-09-09 10:00 - 2014-09-09 10:00 - 00023576 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers_proxy_stub.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3833009200-3102309602-1345092619-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Christine\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => C:\Windows\pss\Bluetooth.lnk.CommonStartup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: CommonToolkitTray => C:\Program Files (x86)\Fighters\Tray\FightersTray.exe MSCONFIG\startupreg: CyberGhost => "C:\Program Files\CyberGhost 5\CyberGhost.EXE" /autostart /min MSCONFIG\startupreg: KeePass 2 PreLoad => "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload MSCONFIG\startupreg: Malwarebytes' Anti-Malware => "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray MSCONFIG\startupreg: MobileConnect => %programfiles%\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe /silent MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background MSCONFIG\startupreg: NBAgent => "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart MSCONFIG\startupreg: PMBVolumeWatcher => C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe MSCONFIG\startupreg: sfagent => C:\Program Files (x86)\Fighters\SPAMfighter\sfagent.exe MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: SUPERAntiSpyware => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe MSCONFIG\startupreg: swg => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{223AA350-4290-4994-82DA-56C621B900DB}] => (Allow) C:\Windows\System32\SUPDSvc.exe FirewallRules: [{F2ED101A-4939-4320-93FD-EFD81F42EFB3}] => (Allow) C:\Windows\System32\SUPDSvc.exe FirewallRules: [{818BBE13-F7A9-430C-A865-F1280F04F4A8}] => (Allow) C:\Program Files\CyberLink\PowerDirector\PDR9.EXE FirewallRules: [{D3748FC7-4457-40D0-B1AE-989849FA7D8B}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{0FD191E7-5160-4E7B-AEFA-EFDBE90FC742}] => (Allow) LPort=2869 FirewallRules: [{6CC1CF3D-8CBC-4FD4-8B46-048307EEC163}] => (Allow) LPort=1900 FirewallRules: [{0D05BD22-0694-4CDE-AAB1-3191A6765374}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{4C7BB7C9-6E6D-469A-A0B7-07A243A9BA52}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{5F4B4896-EEA7-41DB-A059-A2089A2F1C61}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{9560AA9D-0FF0-4758-95AE-9D37F1FF5DA5}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD Cinema\PowerDVDCinema.exe FirewallRules: [{2E2C6C20-840B-4ADC-92F1-E5C357780373}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD9.EXE FirewallRules: [{C7210A3A-CF59-4BF4-A11A-AE7561C7C24F}] => (Allow) C:\Windows\SysWOW64\lxczcoms.exe FirewallRules: [{82A02DB9-859C-4688-AFE3-F414C1A374C1}] => (Allow) C:\Windows\SysWOW64\lxczcoms.exe FirewallRules: [{4A6F43A1-9E08-40A3-B0CA-9A52D1839196}] => (Allow) LPort=135 FirewallRules: [{6FED3371-F26D-4F44-A9C5-8D6B35092776}] => (Allow) LPort=5000 FirewallRules: [{137FD53E-EDB0-4A9C-9E04-7A9EE554BD86}] => (Allow) LPort=5001 FirewallRules: [{DE562340-3768-4291-A8BC-D4A169C379F2}] => (Allow) LPort=5002 FirewallRules: [{E3325384-AFCF-4096-B945-B91EBCBDB380}] => (Allow) LPort=5003 FirewallRules: [{90CF5433-B878-4308-88BE-7520E410FB6E}] => (Allow) LPort=5004 FirewallRules: [{F668A3C7-01E5-4AFE-B809-A24AED7B9B62}] => (Allow) LPort=5005 FirewallRules: [{E87B306C-22E5-4548-BC52-0267C3EE0C3B}] => (Allow) LPort=5006 FirewallRules: [{277E3989-93A4-471D-A646-45347D830796}] => (Allow) LPort=5007 FirewallRules: [{101EC962-1DF6-47D1-8D04-69A571CC0EA2}] => (Allow) LPort=5008 FirewallRules: [{CF6E1429-C564-4AE5-9FBD-DFAF7A4E0CAC}] => (Allow) LPort=5009 FirewallRules: [{335BFF25-0565-4997-97D4-D977AA0A8BE0}] => (Allow) LPort=5010 FirewallRules: [{260C526A-791D-45DB-9132-57DE08701FDE}] => (Allow) LPort=5011 FirewallRules: [{EDE5C243-57B9-45BA-B727-4AA8854FCB26}] => (Allow) LPort=5012 FirewallRules: [{F9313B50-ECC6-432F-8C47-F4A392CA5DC4}] => (Allow) LPort=5013 FirewallRules: [{DB4CEE79-D1F1-4073-926E-CD6FCD05767D}] => (Allow) LPort=5014 FirewallRules: [{8D5FC762-4DA8-431E-A175-65C2BE958888}] => (Allow) LPort=5015 FirewallRules: [{48EE3A09-6FF4-4165-A76F-EAA3E3B1B1F7}] => (Allow) LPort=5016 FirewallRules: [{E881BA73-9AA8-4E30-9A52-8C32FD06E20C}] => (Allow) LPort=5017 FirewallRules: [{61DC6410-25D5-4B39-9DB5-F8963375B44E}] => (Allow) LPort=5018 FirewallRules: [{96FBBEF2-DD29-4190-ABD0-63DFE1D7FBE5}] => (Allow) LPort=5019 FirewallRules: [{ABD2F284-F397-4014-814B-51BA7DA0F7DF}] => (Allow) LPort=5020 FirewallRules: [{AAC5D7C1-7E39-45F8-9E97-A7F8A192E762}] => (Allow) C:\Windows\System32\lxczcoms.exe FirewallRules: [{45A40BE0-CC4C-4827-AC58-147A9F4FE912}] => (Allow) C:\Windows\System32\lxczcoms.exe FirewallRules: [{1D7F5B74-BB8A-4D10-9E68-46053069C0CD}] => (Allow) C:\Windows\System32\spool\drivers\x64\3\lxczpswx.exe FirewallRules: [{B43E55DB-31F7-4290-852C-4A8D27424BCE}] => (Allow) C:\Windows\System32\spool\drivers\x64\3\lxczpswx.exe FirewallRules: [{8FD71A0D-587C-4A8B-82EF-28F23DBADEB6}] => (Allow) C:\Program Files (x86)\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe FirewallRules: [{D4B53803-26BD-4514-A6EA-25B4FB9D6B0D}] => (Allow) C:\Program Files (x86)\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe FirewallRules: [{1A52DEDB-EADD-4BAF-9119-19678891F585}] => (Allow) C:\Program Files (x86)\Nero\KM\NMDllHost.exe FirewallRules: [{BB6C86C8-F1EB-4AAB-B53F-725823FF49CD}] => (Allow) C:\Program Files (x86)\Nero\KM\NMDllHost.exe FirewallRules: [{B2DC1ABB-23EA-472B-8C94-8AA61BC77978}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe FirewallRules: [{CAD1474A-8445-46F2-B0C4-943E14C684EB}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe FirewallRules: [{4A789E99-39E0-409E-B825-09EA8852F18F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{FD6845A1-F456-4921-884C-661E236A1D5B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E31A4343-B6B9-495F-8E74-56D504397D16}] => (Allow) LPort=5353 FirewallRules: [{26CCC2C1-DF6C-4DED-826F-B3783C913666}] => (Allow) C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe FirewallRules: [{63068705-268D-43C1-8C7D-BC0690616004}] => (Allow) C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe FirewallRules: [{34ECFD36-21F4-4C78-A4F8-0474F4B1AD4E}] => (Allow) LPort=3703 FirewallRules: [{07F1002A-81FE-4FF7-A456-EAD6B65006E7}] => (Allow) LPort=3704 FirewallRules: [{BF3B57AE-8928-458B-AF17-CFA7D3A4CD42}] => (Allow) LPort=51000 FirewallRules: [{F7B29A0D-2ABA-4F32-8016-2AFB73A62131}] => (Allow) LPort=51001 FirewallRules: [{D87AC91B-0D2B-4349-AB5A-86C526CC3035}] => (Allow) C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe FirewallRules: [{3CB622B5-33A9-41D6-8419-52B3347A813A}] => (Allow) C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe FirewallRules: [{28D7B3E8-A3FC-4AB3-A7BD-32BDC77026F5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{90E4D850-F24E-42D3-ACC2-34B364511EA1}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{78300998-EC8A-4718-AA95-18010EA39D17}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{57E95DDC-DFD2-4F46-B341-B60F6F3C730F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{3555CD8E-76FE-4248-8AAA-68DABB7CC9B9}] => (Allow) C:\Program Files (x86)\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe FirewallRules: [{89D8930E-CD52-4419-ACCB-49C5A5C4E30A}] => (Allow) C:\Program Files (x86)\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe FirewallRules: [{62B5E9EC-E218-44A8-9612-A79514B11C87}] => (Allow) C:\Program Files (x86)\Nero\KM\NMDllHost.exe FirewallRules: [{19EB394C-7377-4711-BAD4-E7DB0BC13D5D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{0BCCCE8C-060E-4044-ABBE-CB14BA1189AF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{A2B6EFD8-28BE-46D9-947A-44DA0A7416E0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{37E62014-3D5D-420B-A586-C2C91D044415}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{B5E96396-43BB-42E6-B9D1-9C175C6A9C0F}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{7C7BA25C-6007-4113-BEBF-898373600CAB}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{1B91CCD5-A1C9-4EAF-B659-1166ED75A74F}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{2EFB2DD2-EF7F-46E0-A036-DEEAABBEDBA0}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{66711401-267D-4003-8C26-0D3091311DB8}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{BD26838F-70AE-4289-BCD5-28A45A80BEE2}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/31/2015 07:00:08 PM) (Source: Windows Backup) (EventID: 4103) (User: ) Description: Die Sicherung wurde aufgrund eines Fehlers beim Schreiben am Sicherungsspeicherort "I:\" nicht abgeschlossen. Fehler: "Der Sicherungsort wurde nicht gefunden oder ist ungültig. Überprüfen Sie die Sicherungseinstellungen und den Sicherungsort. (0x81000006)" Error: (08/31/2015 01:11:12 PM) (Source: System Restore) (EventID: 8211) (User: ) Description: Der geplante Wiederherstellungspunkt konnte nicht erstellt werden. Zusätzliche Informationen: (0x81000101). Error: (08/31/2015 01:11:12 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; Beschreibung = Geplanter Prüfpunkt; Fehler = 0x81000101). Error: (08/31/2015 12:53:57 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (08/31/2015 12:52:56 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error: (08/31/2015 12:52:27 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "ACME,processorArchitecture="x86",type="win32",version=""1". Die abhängige Assemblierung "ACME,processorArchitecture="x86",type="win32",version=""" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/31/2015 12:00:48 PM) (Source: VMCService) (EventID: 0) (User: ) Description: conflictManagerTypeValue Error: (08/30/2015 06:20:05 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (08/30/2015 06:15:05 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error: (08/30/2015 06:13:44 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "ACME,processorArchitecture="x86",type="win32",version=""1". Die abhängige Assemblierung "ACME,processorArchitecture="x86",type="win32",version=""" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Systemfehler: ============= Error: (08/31/2015 12:06:47 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Acronis Sync Agent Service" wurde nicht richtig gestartet. Error: (08/31/2015 01:06:43 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (08/29/2015 03:05:36 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (08/29/2015 03:05:36 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\CHRIST~1\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (08/29/2015 03:05:35 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\CHRIST~1\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (08/29/2015 03:05:35 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (08/29/2015 03:05:35 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (08/29/2015 03:05:35 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\CHRIST~1\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Error: (08/29/2015 03:05:35 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "eapihdrv" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (08/29/2015 03:05:35 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\Users\CHRIST~1\AppData\Local\Temp\ehdrv.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten. Microsoft Office: ========================= Error: (08/31/2015 07:00:08 PM) (Source: Windows Backup) (EventID: 4103) (User: ) Description: I:\Der Sicherungsort wurde nicht gefunden oder ist ungültig. Überprüfen Sie die Sicherungseinstellungen und den Sicherungsort. (0x81000006) Error: (08/31/2015 01:11:12 PM) (Source: System Restore) (EventID: 8211) (User: ) Description: 0x81000101 Error: (08/31/2015 01:11:12 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreationGeplanter Prüfpunkt0x81000101 Error: (08/31/2015 12:53:57 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe Error: (08/31/2015 12:52:56 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORC:\Program Files (x86)\Adobe\Adobe Flash CS4\AIK1.1\runtimes\air\win\Adobe AIR\Versions\1.0\Adobe AIR.dllC:\Program Files (x86)\Adobe\Adobe Flash CS4\AIK1.1\runtimes\air\win\Adobe AIR\Versions\1.0\Adobe AIR.dll3 Error: (08/31/2015 12:52:27 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: ACME,processorArchitecture="x86",type="win32",version=""c:\program files (x86)\Nero\Nero 12\nero recode\NeroBRServer.exe.Manifest Error: (08/31/2015 12:00:48 PM) (Source: VMCService) (EventID: 0) (User: ) Description: conflictManagerTypeValue Error: (08/30/2015 06:20:05 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe Error: (08/30/2015 06:15:05 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORC:\Program Files (x86)\Adobe\Adobe Flash CS4\AIK1.1\runtimes\air\win\Adobe AIR\Versions\1.0\Adobe AIR.dllC:\Program Files (x86)\Adobe\Adobe Flash CS4\AIK1.1\runtimes\air\win\Adobe AIR\Versions\1.0\Adobe AIR.dll3 Error: (08/30/2015 06:13:44 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: ACME,processorArchitecture="x86",type="win32",version=""c:\program files (x86)\Nero\Nero 12\nero recode\NeroBRServer.exe.Manifest CodeIntegrity: =================================== Date: 2014-09-17 22:48:31.334 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-09-17 22:48:31.312 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-09-17 22:48:31.256 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-09-17 22:48:31.242 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-09-17 22:03:34.424 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-09-17 22:03:34.411 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-08-17 12:02:03.588 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-08-17 12:02:03.537 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-08-17 12:02:03.517 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-08-17 12:02:03.440 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5 CPU M 480 @ 2.67GHz Prozentuale Nutzung des RAM: 78% Installierter physikalischer RAM: 3956.41 MB Verfügbarer physikalischer RAM: 832.48 MB Summe virtueller Speicher: 7911.02 MB Verfügbarer virtueller Speicher: 3300.79 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:231 GB) (Free:164.5 GB) NTFS Drive d: () (Fixed) (Total:344.27 GB) (Free:271.2 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 596.2 GB) (Disk ID: 9054A324) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=231 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=344.3 GB) - (Type=OF Extended) Partition 4: (Not Active) - (Size=20.8 GB) - (Type=27) ==================== Ende von Addition.txt ============================
__________________ Con saludos Uwe |
/// Malwareteam
/// Malwareteam ![]() ![]() ![]() | ![]() Wie Win7 immer langsamer Hast du den Frst Scan gemacht, als du mehrere Programme offen hattest? Erstens mach bitte eine Datenträgerbereinigung: Gehe dazu auf Start, tippe "Datenträgerbereinigung" und wähle alle Optionen zum löschen aus, die es gibt. Dann mach mal bitte einen "Sauberen Neustart", eine Anleitung findest du dazu hier: https://support.microsoft.com/de-de/kb/929135 Ist das System immer noch "verlangsamt"? Dann: Überprüfung der Festplatten
Systemupdate-Vorbereitungstool (SURT)
Überprüfung der Systemintegrität
![]() | #6 | |||
![]() | ![]() Wo Win7 immer langsamer Lösung! Ja, es mag sein, dass noch Programme offen waren. Wenn untiges alles erledigt ist, bekommste ein neues FRST-Log, wobei alles geschlossen ist. Zitat:
Datenträgerbereinigung 8 MB entfernt Systemdateien 5,4 KB entfernt Zitat:
ATTFilter Dateisystem auf C: wird überprüft. Der Typ des Dateisystems ist NTFS. Eine Datenträgerüberprüfung ist geplant. Die Datenträgerüberprüfung wird jetzt ausgeführt. CHKDSK überprüft Dateien (Phase 1 von 5)... Instanzkennung für Datei 0x19821 wird aufgeräumt. 487680 Datensätze verarbeitet. Dateiüberprüfung beendet. 1503 große Datensätze verarbeitet. 0 ungültige Datensätze verarbeitet. 0 E/A-Datensätze verarbeitet. 79 Analysedatensätze verarbeitet. CHKDSK überprüft Indizes (Phase 2 von 5)... 582088 Indexeinträge verarbeitet. Indexüberprüfung beendet. 0 nicht indizierte Dateien überprüft. 0 nicht indizierte Dateien wiederhergestellt. CHKDSK überprüft Sicherheitsbeschreibungen (Phase 3 von 5)... 487680 SDs/SIDs verarbeitet. 1692 nicht verwendete Indexeinträge aus Index $SII der Datei 0x9 werden aufgeräumt. 1692 nicht verwendete Indexeinträge aus Index $SDH der Datei 0x9 werden aufgeräumt. 1692 nicht verwendete Sicherheitsbeschreibungen werden aufgeräumt. CHKDSK komprimiert den Datenstrom für die Sicherheitsbeschreibung 47205 Datendateien verarbeitet. CHKDSK überprüft USN-Journal... 33834216 USN-Bytes verarbeitet. Die Überprüfung von USN-Journal ist abgeschlossen. CHKDSK überprüft Dateidaten (Phase 4 von 5)... 487664 Dateien wurden verarbeitet. Dateidatenüberprüfung beendet. CHKDSK überprüft freien Speicherplatz (Phase 5 von 5)... 43109585 freie Cluster verarbeitet. Verifizierung freien Speicherplatzes ist beendet. CHKDSK hat freien Speicher gefunden, der in der MFT-Bitmap (Master File Table) als zugeordnet gekennzeichnet ist. Fehler in Volumebitmap werden berichtigt. Windows hat Probleme im Dateisystem behoben. 242221055 KB Speicherplatz auf dem Datenträger insgesamt 68972672 KB in 280954 Dateien 214204 KB in 47208 Indizes 0 KB in fehlerhaften Sektoren 595835 KB vom System benutzt 65536 KB von der Protokolldatei belegt 172438344 KB auf dem Datenträger verfügbar 4096 Bytes in jeder Zuordnungseinheit 60555263 Zuordnungseinheiten auf dem Datenträger insgesamt 43109586 Zuordnungseinheiten auf dem Datenträger verfügbar Interne Informationen: 00 71 07 00 eb 01 05 00 d2 fc 08 00 00 00 00 00 .q.............. 55 04 00 00 4f 00 00 00 00 00 00 00 00 00 00 00 U...O........... 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ Die Überprüfung des Datenträgers wurde abgeschlossen. Bitte warten Sie bis der Computer neu gestartet wurde. Da du ja schon sagtest, es könnte länger dauern, weiß ich also nicht, ob es heute noch durchläuft, wird daher morgen nachgeliefert. Deep clean Log Code:
ATTFilter 2015-09-01 13:59:29, Info DISM Service Pack Cleanup UI: PID=7664 Superseded Service Packs 0 - CScavengeCleanup::GetSpaceUsed 2015-09-01 13:59:34, Info CBS DC: Ensuring the online components hive is loaded to load maps... 2015-09-01 13:59:50, Info CBS DC: Clearing cache... 2015-09-01 13:59:50, Info CBS DC: Finding superseded packages... 2015-09-01 13:59:50, Info CBS Skipping: Microsoft-Windows-CodecPack-Basic-Package~31bf3856ad364e35~amd64~~6.1.7601.17514 due to applicability 2015-09-01 13:59:50, Info CBS Skipping: Microsoft-Windows-IE-Hyphenation-Parent-Package-English~31bf3856ad364e35~~~11.2.9412.0 due to applicability 2015-09-01 13:59:50, Info CBS Skipping: Microsoft-Windows-IE-Hyphenation-Parent-Package-German~31bf3856ad364e35~~~11.2.9412.0 due to applicability 2015-09-01 13:59:50, Info CBS Skipping: Microsoft-Windows-IE-Spelling-Parent-Package-English~31bf3856ad364e35~~~11.2.9412.0 due to applicability 2015-09-01 13:59:51, Info CBS Skipping: Microsoft-Windows-IE-Spelling-Parent-Package-German~31bf3856ad364e35~~~11.2.9412.0 due to applicability 2015-09-01 13:59:51, Info CBS Skipping: Microsoft-Windows-InternetExplorer-LanguagePack~31bf3856ad364e35~amd64~de-DE~11.2.9600.16428 due to applicability 2015-09-01 13:59:51, Info CBS Skipping: Microsoft-Windows-InternetExplorer-Package-TopLevel~31bf3856ad364e35~amd64~~11.2.9600.16428 due to applicability 2015-09-01 13:59:51, Info CBS Skipping: Microsoft-Windows-LocalPack-AU-Package~31bf3856ad364e35~amd64~~6.1.7600.16385 due to applicability 2015-09-01 13:59:51, Info CBS Skipping: Microsoft-Windows-LocalPack-CA-Package~31bf3856ad364e35~amd64~~6.1.7600.16385 due to applicability 2015-09-01 13:59:51, Info CBS Skipping: Microsoft-Windows-LocalPack-DE-Package~31bf3856ad364e35~amd64~~6.1.7600.16385 due to applicability 2015-09-01 13:59:51, Info CBS Skipping: Microsoft-Windows-LocalPack-FR-Package~31bf3856ad364e35~amd64~~6.1.7600.16385 due to applicability 2015-09-01 13:59:51, Info CBS Skipping: Microsoft-Windows-LocalPack-GB-Package~31bf3856ad364e35~amd64~~6.1.7600.16385 due to applicability 2015-09-01 13:59:51, Info CBS Skipping: Microsoft-Windows-LocalPack-IT-Package~31bf3856ad364e35~amd64~~6.1.7600.16385 due to applicability 2015-09-01 13:59:51, Info CBS Skipping: Microsoft-Windows-LocalPack-US-Package~31bf3856ad364e35~amd64~~6.1.7600.16385 due to applicability 2015-09-01 13:59:51, Info CBS Skipping: Microsoft-Windows-LocalPack-ZA-Package~31bf3856ad364e35~amd64~~6.1.7600.16385 due to applicability 2015-09-01 13:59:55, Info CBS Skipping: Microsoft-Windows-PlatformUpdate-Win7-SRV08R2-Package-TopLevel~31bf3856ad364e35~amd64~~7.1.7601.16492 due to applicability 2015-09-01 13:59:55, Info CBS Skipping: Microsoft-Windows-RDP-BlueIP-Package-TopLevel~31bf3856ad364e35~amd64~~7.2.7601.16415 due to applicability 2015-09-01 13:59:55, Info CBS Skipping: Microsoft-Windows-RDP-WinIP-Package-TopLevel~31bf3856ad364e35~amd64~~7.1.7601.16398 due to applicability 2015-09-01 13:59:55, Info CBS Skipping: Microsoft-Windows-Security-WindowsActivationTechnologies-Package~31bf3856ad364e35~amd64~~7.1.7600.16395 due to applicability 2015-09-01 13:59:55, Info CBS Skipping: Package_for_KB2305420~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:55, Info CBS Skipping: Package_for_KB2393802~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:55, Info CBS Skipping: Package_for_KB2479943~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:55, Info CBS Skipping: Package_for_KB2491683~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:55, Info CBS Skipping: Package_for_KB2492386~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2506014~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2506212~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2506928~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2509553~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2511455~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2515325~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2536275~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2544893~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2545698~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2547666~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2552343~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2556532~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2560656~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2563227~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2564958~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:56, Info CBS Skipping: Package_for_KB2570947~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:57, Info CBS Skipping: Package_for_KB2574819~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:57, Info CBS Skipping: Package_for_KB2579686~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:57, Info CBS Skipping: Package_for_KB2585542~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:57, Info CBS Skipping: Package_for_KB2603229~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:57, Info CBS Skipping: Package_for_KB2604115~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:57, Info CBS Skipping: Package_for_KB2619339~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:57, Info CBS Skipping: Package_for_KB2620704~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:57, Info CBS Skipping: Package_for_KB2621440~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:57, Info CBS Skipping: Package_for_KB2631813~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:57, Info CBS Skipping: Package_for_KB2639308~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:58, Info CBS Skipping: Package_for_KB2640148~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:58, Info CBS Skipping: Package_for_KB2644615~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:58, Info CBS Skipping: Package_for_KB2647753~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:58, Info CBS Skipping: Package_for_KB2654428~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:58, Info CBS Skipping: Package_for_KB2660075~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2661254~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2667402~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2676562~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2679255~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2685811~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2685813~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2690533~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2698365~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2705219~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2709715~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2712808~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2719857~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 13:59:59, Info CBS Skipping: Package_for_KB2724197~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:00, Info CBS Skipping: Package_for_KB2726535~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:00, Info CBS Skipping: Package_for_KB2727528~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:00, Info CBS Skipping: Package_for_KB2729094~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:00, Info CBS Skipping: Package_for_KB2732059~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:00, Info CBS Skipping: Package_for_KB2732487~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:00, Info CBS Skipping: Package_for_KB2736422~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:00, Info CBS Skipping: Package_for_KB2742599~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:01, Info CBS Skipping: Package_for_KB2750841~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:01, Info CBS Skipping: Package_for_KB2761217~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:01, Info CBS Skipping: Package_for_KB2763523~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:01, Info CBS Skipping: Package_for_KB2770660~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:01, Info CBS Skipping: Package_for_KB2773072~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:01, Info CBS Skipping: Package_for_KB2786081~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:01, Info CBS Skipping: Package_for_KB2791765~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:01, Info CBS Skipping: Package_for_KB2799494~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:01, Info CBS Skipping: Package_for_KB2799926~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:01, Info CBS Skipping: Package_for_KB2800095~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:01, Info CBS Skipping: Package_for_KB2803821~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:02, Info CBS Skipping: Package_for_KB2807986~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:02, Info CBS Skipping: Package_for_KB2808679~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:02, Info CBS Skipping: Package_for_KB2813170~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:03, Info CBS Skipping: Package_for_KB2813347~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:04, Info CBS Skipping: Package_for_KB2813430~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:04, Info CBS Skipping: Package_for_KB2820331~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:04, Info CBS Skipping: Package_for_KB2834140~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:04, Info CBS Skipping: Package_for_KB2839894~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:04, Info CBS Skipping: Package_for_KB2840631~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:05, Info CBS Skipping: Package_for_KB2843630~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:05, Info CBS Skipping: Package_for_KB2847927~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:05, Info CBS Skipping: Package_for_KB2852386~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:05, Info CBS Skipping: Package_for_KB2853952~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:05, Info CBS Skipping: Package_for_KB2857650~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:05, Info CBS Skipping: Package_for_KB2861698~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:05, Info CBS Skipping: Package_for_KB2862152~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:06, Info CBS Skipping: Package_for_KB2862330~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:06, Info CBS Skipping: Package_for_KB2862335~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:06, Info CBS Skipping: Package_for_KB2862973~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:06, Info CBS Skipping: Package_for_KB2864202~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:06, Info CBS Skipping: Package_for_KB2868038~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:06, Info CBS Skipping: Package_for_KB2868116~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:08, Info CBS Skipping: Package_for_KB2871997~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:08, Info CBS Skipping: Package_for_KB2887069~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:08, Info CBS Skipping: Package_for_KB2888049~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:08, Info CBS Skipping: Package_for_KB2891804~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:08, Info CBS Skipping: Package_for_KB2892074~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:09, Info CBS Skipping: Package_for_KB2893294~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:09, Info CBS Skipping: Package_for_KB2893519~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:09, Info CBS Skipping: Package_for_KB2894844~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:09, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:09, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:09, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:09, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:09, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:09, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:09, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:09, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:09, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:09, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:09, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:09, Info CBS Skipping package due to branch elevating: Package_for_KB2898785~31bf3856ad364e35~amd64~~ 2015-09-01 14:00:09, Info CBS Skipping: Package_for_KB2898785~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:09, Info CBS Skipping: Package_for_KB2900986~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:10, Info CBS Skipping: Package_for_KB2908783~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:10, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:10, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:10, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:10, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:10, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:10, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:10, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:10, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:10, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:10, Info CBS Expecting attribute name [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Failed to get next element [HRESULT = 0x800f080d - CBS_E_MANIFEST_INVALID_ITEM] 2015-09-01 14:00:10, Info CBS Warning: Unrecognized packageExtended attribute. 2015-09-01 14:00:10, Info CBS Skipping package due to branch elevating: Package_for_KB2909210~31bf3856ad364e35~amd64~~ 2015-09-01 14:00:10, Info CBS Skipping: Package_for_KB2909210~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:10, Info CBS Skipping package due to branch elevating: Package_for_KB2909921~31bf3856ad364e35~amd64~~ 2015-09-01 14:00:10, Info CBS Skipping: Package_for_KB2909921~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:10, Info CBS Skipping: Package_for_KB2911501~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:10, Info CBS Skipping: Package_for_KB2912390~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:10, Info CBS Skipping: Package_for_KB2913431~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:10, Info CBS Skipping: Package_for_KB2918077~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:10, Info CBS Skipping: Package_for_KB2919469~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:10, Info CBS Skipping: Package_for_KB2923545~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:10, Info CBS Skipping: Package_for_KB2925418~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:11, Info CBS Skipping: Package_for_KB2928562~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:11, Info CBS Skipping: Package_for_KB2929437~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:11, Info CBS Skipping: Package_for_KB2929733~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:11, Info CBS Skipping: Package_for_KB2931356~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:11, Info CBS Skipping package due to branch elevating: Package_for_KB2936068~31bf3856ad364e35~amd64~~ 2015-09-01 14:00:11, Info CBS Skipping: Package_for_KB2936068~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:12, Info CBS Skipping: Package_for_KB2937610~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2943357~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2952664~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping package due to branch elevating: Package_for_KB2953522~31bf3856ad364e35~amd64~~ 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2953522~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2957189~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2957509~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2957689~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2961072~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2962872~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping package due to branch elevating: Package_for_KB2964358~31bf3856ad364e35~amd64~~ 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2964358~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2966583~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2968294~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2970228~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2972100~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2972211~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:13, Info CBS Skipping: Package_for_KB2972280~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:14, Info CBS Skipping: Package_for_KB2973112~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:14, Info CBS Skipping: Package_for_KB2973201~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:14, Info CBS Skipping: Package_for_KB2976627~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:14, Info CBS Skipping: Package_for_KB2976897~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:14, Info CBS Skipping: Package_for_KB2977292~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:14, Info CBS Skipping: Package_for_KB2977629~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:14, Info CBS Skipping: Package_for_KB2977728~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:14, Info CBS Skipping: Package_for_KB2978120~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:14, Info CBS Skipping: Package_for_KB2978742~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:14, Info CBS Skipping: Package_for_KB2979570~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:16, Info CBS Skipping: Package_for_KB2984972~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:16, Info CBS Skipping: Package_for_KB2985461~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:17, Info CBS Skipping: Package_for_KB2987107~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:17, Info CBS Skipping: Package_for_KB2990214~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:17, Info CBS Skipping: Package_for_KB2991963~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:19, Info CBS Skipping: Package_for_KB2992611~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:19, Info CBS Skipping: Package_for_KB3003057~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:21, Info CBS Skipping: Package_for_KB3003743~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:21, Info CBS Skipping: Package_for_KB3004361~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:21, Info CBS Skipping: Package_for_KB3006121~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:21, Info CBS Skipping: Package_for_KB3006137~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:21, Info CBS Skipping: Package_for_KB3006625~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:21, Info CBS Skipping: Package_for_KB3008923~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:21, Info CBS Skipping: Package_for_KB3010788~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:22, Info CBS Skipping: Package_for_KB3011780~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:23, Info CBS Skipping: Package_for_KB3013410~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:23, Info CBS Skipping: Package_for_KB3013531~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:23, Info CBS Skipping: Package_for_KB3014406~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:23, Info CBS Skipping: Package_for_KB3019215~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:23, Info CBS Skipping: Package_for_KB3020338~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:23, Info CBS Skipping: Package_for_KB3020388~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:23, Info CBS Skipping: Package_for_KB3021674~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:23, Info CBS Skipping: Package_for_KB3021917~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:24, Info CBS Skipping: Package_for_KB3021952~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:27, Info CBS Skipping: Package_for_KB3022345~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:27, Info CBS Skipping: Package_for_KB3022777~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:27, Info CBS Skipping: Package_for_KB3023215~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:27, Info CBS Skipping package due to branch elevating: Package_for_KB3025390~31bf3856ad364e35~amd64~~ 2015-09-01 14:00:27, Info CBS Skipping: Package_for_KB3025390~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:27, Info CBS Skipping: Package_for_KB3030377~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:28, Info CBS Skipping: Package_for_KB3032359~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:28, Info CBS Skipping: Package_for_KB3032655~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:28, Info CBS Skipping: Package_for_KB3033889~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:28, Info CBS Skipping: Package_for_KB3033890~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:31, Info CBS Skipping: Package_for_KB3033929~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:31, Info CBS Skipping package due to branch elevating: Package_for_KB3034196~31bf3856ad364e35~amd64~~ 2015-09-01 14:00:31, Info CBS Skipping: Package_for_KB3034196~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:31, Info CBS Skipping: Package_for_KB3035126~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3035132~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3037574~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3038314~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3042553~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3045645~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3045685~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3046002~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3046017~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3046269~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3048761~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3049563~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3055642~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3058515~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:32, Info CBS Skipping: Package_for_KB3059317~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:36, Info CBS Skipping: Package_for_KB3060716~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:38, Info CBS Skipping: Package_for_KB3061518~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:38, Info CBS Skipping: Package_for_KB3064209~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:38, Info CBS Skipping: Package_for_KB3065822~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:38, Info CBS Skipping: Package_for_KB3067903~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:38, Info CBS Skipping: Package_for_KB3069392~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:38, Info CBS Skipping: Package_for_KB3069762~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:42, Info CBS Skipping: Package_for_KB3071756~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:42, Info CBS Skipping: Package_for_KB3072305~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3072630~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3072633~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping package due to branch elevating: Package_for_KB3074886~31bf3856ad364e35~amd64~~ 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3074886~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3075226~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping package due to branch elevating: Package_for_KB3075516~31bf3856ad364e35~amd64~~ 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3075516~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3075851~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3076895~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3076949~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3078071~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3078601~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3079757~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB3087985~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB958488~31bf3856ad364e35~amd64~~6.2.7600.16513 due to applicability 2015-09-01 14:00:43, Info CBS Skipping: Package_for_KB982018~31bf3856ad364e35~amd64~~ due to applicability 2015-09-01 14:00:43, Info CBS Skipping package due to branch elevating: WUClient-SelfUpdate-ActiveX~31bf3856ad364e35~amd64~~7.6.7600.320 2015-09-01 14:00:43, Info CBS Skipping: WUClient-SelfUpdate-ActiveX~31bf3856ad364e35~amd64~~7.6.7600.320 due to applicability 2015-09-01 14:00:43, Info CBS Skipping package due to branch elevating: WUClient-SelfUpdate-Aux-TopLevel~31bf3856ad364e35~amd64~~7.6.7600.320 2015-09-01 14:00:43, Info CBS Skipping: WUClient-SelfUpdate-Aux-TopLevel~31bf3856ad364e35~amd64~~7.6.7600.320 due to applicability 2015-09-01 14:00:44, Info CBS Skipping package due to branch elevating: WUClient-SelfUpdate-Core-TopLevel~31bf3856ad364e35~amd64~~7.6.7600.320 2015-09-01 14:00:44, Info CBS Skipping: WUClient-SelfUpdate-Core-TopLevel~31bf3856ad364e35~amd64~~7.6.7600.320 due to applicability Zitat:
So, SURT brauchte ja garnicht so lange. Und hier das Log von SFCFix Code:
ATTFilter SFCFix version by niemiro. Start time: 2015-09-01 23:44:39.172 Microsoft Windows 7 Service Pack 1 - amd64 Not using a script file. AutoAnalysis:: FIXED: Corruption at C:\Windows\winsxs\amd64_microsoft-windows-u..ed-telemetry-client_31bf3856ad364e35_6.1.7601.18839_none_fe0845bb1d97efda\utc.app.json has been successfully repaired from C:\Windows\winsxs\amd64_microsoft-windows-u..ed-telemetry-client_31bf3856ad364e35_6.1.7601.23040_none_fe7de82236c5fac8\utc.app.json. FIXED: Corruption at C:\Windows\winsxs\amd64_microsoft-windows-u..ed-telemetry-client_31bf3856ad364e35_6.1.7601.18839_none_fe0845bb1d97efda\telemetry.ASM-WindowsDefault.json has been successfully repaired from C:\Windows\winsxs\amd64_microsoft-windows-u..ed-telemetry-client_31bf3856ad364e35_6.1.7601.23040_none_fe7de82236c5fac8\telemetry.ASM-WindowsDefault.json. SUMMARY: All detected corruptions were successfully repaired. AutoAnalysis:: directive completed successfully. Successfully processed all directives. SFCFix version by niemiro has completed. Currently storing 2 datablocks. Finish time: 2015-09-01 23:46:32.753 ----------------------EOF----------------------- Wenn du Addition auch noch mal brauchst, bitte Bescheid sagen. Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:31-08-2015 durchgeführt von Christine (Administrator) auf MAUSIIHRLAP (01-09-2015 23:48:52) Gestartet von C:\Users\Christine\Desktop Geladene Profile: Christine & UpdatusUser (Verfügbare Profile: Christine & UpdatusUser & Mausi) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE (Microsoft Corporation) C:\Windows\System32\wisptis.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ( ) C:\Windows\System32\lxczcoms.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Interactive Brands Inc.) C:\Program Files (x86)\PDF Suite 2010\ConversionService.exe (Sony Corporation) C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe () C:\Program Files\CyberLink\Shared files\RichVideo64.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avpui.exe (Microsoft Corporation) C:\Windows\System32\wisptis.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Lexmark International, Inc.) C:\Program Files (x86)\Lexmark 1200 Series\LXCZbmgr.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Lexmark International, Inc.) C:\Program Files (x86)\Lexmark 1200 Series\LXCZbmon.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe () C:\Program Files (x86)\FileHippo.com\FileHippo.AppManager.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (cyberlink) C:\Program Files (x86)\CyberLink\Shared files\brs.exe (SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe (CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe (Acronis) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe (Microsoft Corporation) C:\Windows\splwow64.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.EXE (SEC) C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe (Samsung Electronics Co., Ltd.) C:\Program Files\SAMSUNG\SamsungFastStart\SmartRestarter.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11106408 2010-08-04] (Realtek Semiconductor) HKLM\...\Run: [IntelliPoint] => C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2817872 2012-04-25] (ELAN Microelectronics Corp.) HKLM\...\Run: [lxczbmgr.exe] => C:\Program Files (x86)\Lexmark 1200 Series\lxczbmgr.exe [74408 2009-04-27] (Lexmark International, Inc.) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [571192 2014-08-14] (Acronis) HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [75048 2011-01-28] (cyberlink) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452272 2012-08-31] (CANON INC.) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1282632 2013-07-23] (CANON INC.) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2109952 2014-10-07] (Dominik Reichl) HKLM-x32\...\Run: [AdobeCS4ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [37232 2008-06-12] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [640376 2008-06-11] (Adobe Systems Inc.) HKLM-x32\...\Run: [Adobe_ID0ENQBO] => C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe [378224 2008-08-15] (Adobe Systems Incorporated) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [5380368 2015-07-20] (Acronis) HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [693336 2015-07-20] (Acronis International GmbH) HKU\S-1-5-21-3833009200-3102309602-1345092619-1000\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [787592 2015-06-23] (Sandboxie Holdings, LLC) HKU\S-1-5-21-3833009200-3102309602-1345092619-1000\...\Run: [FileHippo.com] => C:\Program Files (x86)\FileHippo.com\FileHippo.AppManager.exe [10574544 2015-05-12] () HKU\S-1-5-21-3833009200-3102309602-1345092619-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8455960 2015-08-20] (Piriform Ltd) ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2014-09-09] (Acronis) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk [2013-06-19] ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2013-01-07] ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SRS Premium Sound.lnk [2010-10-23] ShortcutTarget: SRS Premium Sound.lnk -> C:\Windows\Installer\{340BE65B-7621-4B0B-B0F9-DBCCD8D70887}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe (Acresso Software Inc.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) Tcpip\..\Interfaces\{40B3B314-B03B-43B2-BEAA-52D06E7615AF}: [DhcpNameServer] Tcpip\..\Interfaces\{6C346A83-26D6-422D-B1ED-64D4B4052068}: [DhcpNameServer] Tcpip\..\Interfaces\{BBAA1C66-23F9-4818-9BD4-C93E612BD351}: [DhcpNameServer] Tcpip\..\Interfaces\{DF4281B4-3ED2-45F0-A2B3-E8791B68317C}: [NameServer], Internet Explorer: ================== SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3833009200-3102309602-1345092619-1000 -> {B3A0E9A2-B4F1-41EC-B20D-3B001D9F6759} URL = hxxp://www.bing.com/search?FORM=SMSTDF&PC=MASM&q={searchTerms}&src=IE-SearchBox BHO: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll [2013-11-28] (CANON INC.) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-07-15] (Google Inc.) BHO: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO-x32: ContributeBHO Class -> {074C1DC5-9320-4A9A-947D-C042949C6216} -> C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll [2008-09-10] (Adobe Systems Incorporated.) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2013-11-28] (CANON INC.) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-07-15] (Google Inc.) BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems Incorporated) BHO-x32: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO-x32: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2015-06-20] (Kaspersky Lab ZAO) BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems Incorporated) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2013-11-28] (CANON INC.) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-07-15] (Google Inc.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2013-11-28] (CANON INC.) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll [2008-09-10] (Adobe Systems Incorporated.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-07-15] (Google Inc.) Toolbar: HKU\S-1-5-21-3833009200-3102309602-1345092619-1000 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2013-11-28] (CANON INC.) Toolbar: HKU\S-1-5-21-3833009200-3102309602-1345092619-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-07-15] (Google Inc.) Toolbar: HKU\S-1-5-21-3833009200-3102309602-1345092619-1000 -> Kein Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Keine Datei DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab FireFox: ======== FF ProfilePath: C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default FF NetworkProxy: "socks_remote_dns", true FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-14] () FF Plugin: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin: @wacom.com/wtPlugin,version= -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-14] () FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.) FF Plugin-x32: @java.com/DTPlugin,version=10.13.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [Keine Datei] FF Plugin-x32: @kaspersky.com/content_blocker_6418E0D362104DADA084DC312DFA8ABC -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2015-06-20] () FF Plugin-x32: @kaspersky.com/online_banking_69A4E213815F42BD863D889007201D82 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2015-06-20] () FF Plugin-x32: @kaspersky.com/virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2015-06-20] () FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [Keine Datei] FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [Keine Datei] FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL [2015-04-10] (Nero AG) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2015-08-27] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2015-08-27] (Google Inc.) FF Plugin-x32: @wacom.com/wtPlugin,version= -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.) FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF user.js: detected! => C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\user.js [2015-06-20] FF Extension: FoxyProxy Standard - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\foxyproxy@eric.h.jung [2015-05-30] FF Extension: Google Toolbar for Firefox - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{3112ca9c-de6d-4884-a869-9855de68056c} [2011-12-06] FF Extension: anonymoX - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\client@anonymox.net.xpi [2013-07-19] FF Extension: Add-on Compatibility Reporter - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\compatibility@addons.mozilla.org.xpi [2011-12-06] FF Extension: Ghostery - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\firefox@ghostery.com.xpi [2015-02-09] FF Extension: FlashDisable - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\jid0-bbA9VAawX3LMWDu668aUDrpQVXU@jetpack.xpi [2015-02-06] FF Extension: Google Translator for Firefox - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\translator@zoli.bod.xpi [2013-11-29] FF Extension: Malware Search - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{27c60876-b5c9-4335-b4f3-52b26782220c}.xpi [2012-07-05] FF Extension: NoScript - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-04-12] FF Extension: Video DownloadHelper - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-03-14] FF Extension: Adblock Plus - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-01-31] FF Extension: User Agent Switcher - C:\Users\Christine\AppData\Roaming\Mozilla\Firefox\Profiles\ciq28ghf.default\Extensions\{e968fc70-8f95-4ab9-9e79-304de2a71ee1}.xpi [2013-08-02] FF HKLM-x32\...\Firefox\Extensions: [{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension FF Extension: Default Manager - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension [2010-10-23] FF HKLM-x32\...\Firefox\Extensions: [ff-bmboc@bytemobile.com] - C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Optimization Client\addon FF HKLM-x32\...\Firefox\Extensions: [FFPDFConverter@ib.com] - C:\Program Files (x86)\PDF Suite 2010\firefoxextension FF Extension: PDF Suite Converter For Firefox - C:\Program Files (x86)\PDF Suite 2010\firefoxextension [2015-03-22] FF HKLM-x32\...\Firefox\Extensions: [content_blocker_6418E0D362104DADA084DC312DFA8ABC@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2015-06-20] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2015-06-20] FF HKLM-x32\...\Firefox\Extensions: [online_banking_69A4E213815F42BD863D889007201D82@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2015-06-20] Chrome: ======= CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho Opera: ======= OPR Extension: (Download Chrome Extension) - C:\Users\Christine\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2015-02-06] OPR Extension: (WebRTC Block) - C:\Users\Christine\AppData\Roaming\Opera Software\Opera Stable\Extensions\nphkkbaidamjmhfanlpblblcadhfbkdm [2015-02-06] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-09-08] (SUPERAntiSpyware.com) S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-06-19] (Adobe Systems) [Datei ist nicht signiert] S3 Adobe Version Cue CS4; C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [284016 2008-08-15] (Adobe Systems Incorporated) R2 AVP15.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe [234520 2014-08-30] (Kaspersky Lab ZAO) S2 CLKMSVC10_9EC60124; C:\Program Files (x86)\CyberLink\PowerDVD9\NavFilter\kmsvc.exe [240112 2010-11-18] (CyberLink) R2 DirMngr; C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [224256 2011-03-02] () [Datei ist nicht signiert] R2 lxcz_device; C:\Windows\system32\lxczcoms.exe [566192 2007-04-19] ( ) R2 lxcz_device; C:\Windows\SysWOW64\lxczcoms.exe [537520 2007-04-19] ( ) S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [38200 2015-08-04] (The OpenVPN Project) R2 PDF Suite 2010 Service; C:\Program Files (x86)\PDF Suite 2010\ConversionService.exe [799552 2010-08-04] (Interactive Brands Inc.) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-09-03] () [Datei ist nicht signiert] R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [386344 2012-06-22] () R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [175752 2015-06-23] (Sandboxie Holdings, LLC) R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1225312 2012-11-26] (Secunia) R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [659040 2012-11-26] (Secunia) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5611280 2015-08-07] (TeamViewer GmbH) R2 VMCService; C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [9216 2009-07-03] (Vodafone) [Datei ist nicht signiert] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [671000 2014-11-04] (Wacom Technology, Corp.) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R0 cm_km_w; C:\Windows\System32\DRIVERS\cm_km_w.sys [238288 2013-01-14] (Kaspersky Lab UK Ltd) S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [419840 2010-12-31] (Huawei Technologies Co., Ltd.) R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [296736 2015-08-23] (Acronis International GmbH) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [468576 2014-03-31] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [46144 2014-07-02] (Kaspersky Lab ZAO) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [150536 2015-06-20] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [246456 2014-08-12] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [819896 2015-06-20] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [30304 2014-02-25] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [28768 2014-03-28] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-08-08] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55872 2014-06-05] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [77512 2015-06-20] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [179776 2014-07-09] (Kaspersky Lab ZAO) S3 rtport; C:\Windows\SysWOW64\drivers\rtport.sys [15144 2011-01-28] (Windows (R) 2003 DDK 3790 provider) R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [190088 2015-06-23] (Sandboxie Holdings, LLC) R2 tib; C:\Windows\System32\DRIVERS\tib.sys [1058632 2015-08-23] (Acronis International GmbH) R2 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [248648 2015-08-23] (Acronis International GmbH) R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-16] () R2 {B154377D-700F-42cc-9474-23858FBDF4BD}; C:\Program Files (x86)\CyberLink\PowerDVD9\000.fcl [146928 2010-02-24] (CyberLink Corp.) U4 klkbdflt2; system32\DRIVERS\klkbdflt2.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-09-01 23:46 - 2015-09-01 23:46 - 00002388 _____ C:\Users\Christine\Desktop\SFCFix.txt 2015-09-01 23:45 - 2015-09-01 23:46 - 00000000 ____D C:\SFCFix 2015-09-01 23:44 - 2015-09-01 23:46 - 00000000 ____D C:\Users\Christine\AppData\Local\niemiro 2015-09-01 23:42 - 2015-09-01 23:42 - 01319424 _____ (niemiro) C:\Users\Christine\Desktop\SFCFix.exe 2015-09-01 23:09 - 2015-09-01 23:15 - 564744309 _____ C:\Users\Christine\Desktop\Windows6.1-KB947821-v34-x64.msu 2015-09-01 22:32 - 2015-09-01 22:32 - 00002369 _____ C:\Users\Christine\Desktop\chkdsk-prot.txt 2015-09-01 22:11 - 2015-09-01 22:11 - 00000022 _____ C:\Windows\S.dirmngr 2015-09-01 16:54 - 2015-09-01 16:54 - 00003728 ____N C:\bootsqm.dat 2015-09-01 14:09 - 2015-09-01 14:09 - 00000000 _____ C:\Windows\SysWOW64\shoDFE6.tmp 2015-09-01 12:12 - 2015-09-01 12:12 - 00004119 _____ C:\Users\Christine\Desktop\energy-report.zip 2015-09-01 12:11 - 2015-09-01 12:11 - 00011121 _____ C:\Users\Christine\Desktop\energy-report.txt 2015-09-01 11:50 - 2015-09-01 11:50 - 00030256 _____ C:\Users\Christine\Desktop\energy-report.html 2015-08-31 23:13 - 2015-08-31 23:14 - 00053179 _____ C:\Users\Christine\Desktop\Addition-alt.txt 2015-08-31 23:11 - 2015-09-01 23:48 - 00029145 _____ C:\Users\Christine\Desktop\FRST.txt 2015-08-31 23:11 - 2015-08-31 23:14 - 00070947 _____ C:\Users\Christine\Desktop\FRST-alt.txt 2015-08-31 23:10 - 2015-09-01 23:49 - 00000000 ____D C:\FRST 2015-08-31 23:09 - 2015-08-31 23:09 - 02188800 _____ (Farbar) C:\Users\Christine\Desktop\FRST64.exe 2015-08-31 00:09 - 2015-08-31 00:09 - 00000000 ____D C:\Users\Christine\Desktop\doc+txt 2015-08-29 11:24 - 2015-08-29 11:25 - 07810553 _____ C:\Users\Christine\Desktop\getürkte Berichterstattung.mp4 2015-08-28 11:34 - 2015-08-30 11:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-28 00:33 - 2015-08-31 01:04 - 00000356 _____ C:\Users\Christine\Desktop\gemeinnützige vereine.txt 2015-08-27 22:30 - 2015-08-27 22:30 - 00438335 _____ C:\Users\Christine\Desktop\fb1.htm 2015-08-25 11:17 - 2015-08-25 11:17 - 06520208 _____ (Tim Kosse) C:\Users\Christine\Downloads\FileZilla_3.13.1_win64-setup.exe 2015-08-24 00:05 - 2015-08-24 00:06 - 00001065 _____ C:\Users\Public\Desktop\OpenVPN GUI.lnk 2015-08-24 00:03 - 2015-08-24 00:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenVPN 2015-08-24 00:03 - 2015-08-24 00:05 - 00000000 ____D C:\Program Files\TAP-Windows 2015-08-24 00:03 - 2015-08-24 00:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TAP-Windows 2015-08-23 23:56 - 2015-08-24 00:03 - 00000000 ____D C:\Users\Christine\Desktop\PP-VPN 2015-08-23 23:45 - 2015-09-01 22:11 - 00000504 _____ C:\Windows\setupact.log 2015-08-23 23:45 - 2015-08-30 11:17 - 00002390 _____ C:\Windows\PFRO.log 2015-08-23 23:45 - 2015-08-23 23:45 - 00000000 _____ C:\Windows\setuperr.log 2015-08-23 22:29 - 2015-08-23 22:29 - 00000985 _____ C:\Users\Public\Desktop\ISO to USB.lnk 2015-08-23 22:29 - 2015-08-23 22:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISO to USB 2015-08-23 22:29 - 2015-08-23 22:29 - 00000000 ____D C:\Program Files (x86)\ISO to USB 2015-08-23 18:04 - 2015-08-23 18:04 - 00248648 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\tib_mounter.sys 2015-08-23 18:03 - 2015-08-23 18:03 - 00000000 ____D C:\Users\Christine\AppData\Roaming\3DCFF191-9848-4F8D-904A-129E93FFD071 2015-08-23 17:27 - 2015-08-23 17:27 - 00000000 ____D C:\Users\Christine\AppData\Roaming\Acronis 2015-08-23 17:25 - 2015-08-23 17:25 - 00296736 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\file_tracker.sys 2015-08-23 17:24 - 2015-08-23 18:04 - 01058632 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\tib.sys 2015-08-23 17:24 - 2015-08-23 17:24 - 00304416 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\snapman.sys 2015-08-23 17:24 - 2015-08-23 17:24 - 00134432 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\fltsrv.sys 2015-08-23 17:22 - 2015-08-23 18:03 - 00001177 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image 2015.lnk 2015-08-23 17:22 - 2015-08-23 18:03 - 00001165 _____ C:\Users\Public\Desktop\Acronis True Image 2015.lnk 2015-08-23 17:22 - 2015-08-23 17:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis 2015-08-23 17:22 - 2015-08-23 17:22 - 00000000 ____D C:\Program Files (x86)\Acronis 2015-08-23 17:18 - 2015-08-23 20:58 - 00000000 ____D C:\ProgramData\Acronis 2015-08-20 11:14 - 2015-08-20 11:14 - 06505624 _____ (Tim Kosse) C:\Users\Christine\Downloads\FileZilla_3.13.0_win64-setup.exe 2015-08-20 00:48 - 2015-08-11 03:20 - 25191936 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-08-20 00:48 - 2015-08-11 03:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-08-20 00:48 - 2015-08-11 02:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-08-20 00:48 - 2015-08-11 02:20 - 19871232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-08-16 00:26 - 2015-08-16 12:26 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2015-08-13 01:22 - 2015-08-13 01:22 - 00000000 _____ C:\Windows\SysWOW64\shoE22.tmp 2015-08-13 01:15 - 2015-07-30 15:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 01:15 - 2015-07-30 15:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 13:44 - 2015-07-21 02:39 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-08-12 13:44 - 2015-07-21 02:12 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-08-12 13:44 - 2015-07-16 22:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-08-12 13:44 - 2015-07-16 22:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-08-12 13:44 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-08-12 13:44 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-08-12 13:44 - 2015-07-16 22:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-08-12 13:44 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-08-12 13:44 - 2015-07-16 22:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-08-12 13:44 - 2015-07-16 22:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-08-12 13:44 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-08-12 13:44 - 2015-07-16 22:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-08-12 13:44 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-08-12 13:44 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-08-12 13:44 - 2015-07-16 22:21 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-08-12 13:44 - 2015-07-16 22:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-08-12 13:44 - 2015-07-16 22:21 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-08-12 13:44 - 2015-07-16 22:12 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-08-12 13:44 - 2015-07-16 22:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-08-12 13:44 - 2015-07-16 22:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-08-12 13:44 - 2015-07-16 21:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-08-12 13:44 - 2015-07-16 21:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-08-12 13:44 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-08-12 13:44 - 2015-07-16 21:51 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-08-12 13:44 - 2015-07-16 21:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-08-12 13:44 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-08-12 13:44 - 2015-07-16 21:50 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-08-12 13:44 - 2015-07-16 21:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-08-12 13:44 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-08-12 13:44 - 2015-07-16 21:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-08-12 13:44 - 2015-07-16 21:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-08-12 13:44 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-08-12 13:44 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-08-12 13:44 - 2015-07-16 21:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-08-12 13:44 - 2015-07-16 21:38 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-08-12 13:44 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-08-12 13:44 - 2015-07-16 21:35 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-08-12 13:44 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-08-12 13:44 - 2015-07-16 21:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-08-12 13:44 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-08-12 13:44 - 2015-07-16 21:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-08-12 13:44 - 2015-07-16 21:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-08-12 13:44 - 2015-07-16 21:20 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-08-12 13:44 - 2015-07-16 21:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-08-12 13:44 - 2015-07-16 21:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-08-12 13:44 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-08-12 13:44 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-08-12 13:44 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-08-12 13:44 - 2015-07-16 21:06 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-08-12 13:44 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-08-12 13:44 - 2015-07-16 21:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-08-12 13:44 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-08-12 13:44 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-08-12 13:44 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-08-12 13:44 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-08-12 13:44 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-08-12 13:17 - 2015-07-16 21:12 - 06131200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-08-12 13:17 - 2015-07-16 21:12 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-08-12 13:17 - 2015-07-16 21:12 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-08-12 13:17 - 2015-07-16 21:11 - 07077376 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-08-12 13:17 - 2015-07-16 21:11 - 01057792 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-08-12 13:17 - 2015-07-16 21:11 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-08-12 13:17 - 2015-07-15 20:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-08-12 13:17 - 2015-07-15 20:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-08-12 13:17 - 2015-07-15 20:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-08-12 13:17 - 2015-07-15 20:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-08-12 13:17 - 2015-07-15 20:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-08-12 13:17 - 2015-07-15 19:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2015-08-12 13:17 - 2015-07-15 19:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2015-08-12 13:17 - 2015-07-15 19:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-08-12 13:17 - 2015-07-15 19:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-08-12 13:17 - 2015-07-15 19:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-08-12 13:17 - 2015-07-15 05:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2015-08-12 13:17 - 2015-07-11 15:15 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2015-08-12 13:17 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2015-08-12 13:17 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2015-08-12 13:17 - 2015-07-09 19:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2015-08-12 13:16 - 2015-07-15 20:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-08-12 13:16 - 2015-07-15 20:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-08-12 13:16 - 2015-07-15 20:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2015-08-12 13:16 - 2015-07-15 20:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-08-12 13:16 - 2015-07-15 20:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-08-12 13:16 - 2015-07-15 20:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2015-08-12 13:16 - 2015-07-15 20:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-08-12 13:16 - 2015-07-15 20:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-08-12 13:16 - 2015-07-15 20:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll 2015-08-12 13:16 - 2015-07-15 20:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-08-12 13:16 - 2015-07-15 20:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-08-12 13:16 - 2015-07-15 20:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-08-12 13:16 - 2015-07-15 20:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-08-12 13:16 - 2015-07-15 19:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-08-12 13:16 - 2015-07-15 19:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-08-12 13:16 - 2015-07-15 19:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-08-12 13:16 - 2015-07-15 19:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-08-12 13:16 - 2015-07-15 19:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-08-12 13:16 - 2015-07-15 19:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-08-12 13:16 - 2015-07-15 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-08-12 13:16 - 2015-07-15 19:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-08-12 13:16 - 2015-07-15 19:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-08-12 13:16 - 2015-07-15 19:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-08-12 13:16 - 2015-07-15 19:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-08-12 13:16 - 2015-07-15 19:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-08-12 13:16 - 2015-07-15 19:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-08-12 13:16 - 2015-07-15 19:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-08-12 13:16 - 2015-07-15 19:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-08-12 13:16 - 2015-07-15 19:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-08-12 13:16 - 2015-07-15 19:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 18:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-08-12 13:16 - 2015-07-15 18:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-08-12 13:16 - 2015-07-15 18:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-08-12 13:16 - 2015-07-15 18:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-08-12 13:16 - 2015-07-15 18:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-08-12 13:16 - 2015-07-15 18:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 18:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 18:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2015-08-12 13:16 - 2015-07-15 18:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2015-08-12 13:10 - 2015-07-01 22:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-08-12 13:10 - 2015-07-01 22:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-08-12 13:10 - 2015-07-01 22:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-08-12 13:10 - 2015-07-01 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-08-12 13:09 - 2015-07-30 20:06 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-08-12 13:09 - 2015-07-30 19:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-08-12 13:09 - 2015-07-30 19:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-08-12 13:09 - 2015-07-30 19:57 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-08-12 13:09 - 2015-07-30 19:57 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-08-12 13:09 - 2015-07-30 19:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-08-12 13:09 - 2015-07-30 19:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-08-12 13:09 - 2015-07-30 18:56 - 03208192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-08-12 13:09 - 2015-07-30 18:52 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-08-12 13:09 - 2015-07-30 18:49 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-08-12 13:09 - 2015-07-15 05:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-08-12 13:09 - 2015-07-15 05:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-08-12 13:09 - 2015-07-15 05:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2015-08-12 13:09 - 2015-07-15 05:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2015-08-12 13:09 - 2015-07-15 04:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-08-12 13:09 - 2015-07-15 04:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-08-12 13:09 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2015-08-12 13:09 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 02606080 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-08-12 13:08 - 2015-07-20 20:12 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-08-12 13:08 - 2015-07-20 20:12 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-08-12 13:08 - 2015-07-20 20:12 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-08-12 13:08 - 2015-07-20 19:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-08-12 13:08 - 2015-07-20 19:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-08-12 13:08 - 2015-07-20 19:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-08-12 13:08 - 2015-07-20 19:56 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-08-12 13:08 - 2015-07-20 19:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-08-12 13:08 - 2015-07-10 19:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-08-12 13:08 - 2015-07-10 19:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-08-12 13:08 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2015-08-03 00:27 - 2015-08-03 00:27 - 00000000 _____ C:\Windows\SysWOW64\shoA773.tmp ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-09-01 23:41 - 2010-10-23 04:55 - 01933119 _____ C:\Windows\WindowsUpdate.log 2015-09-01 23:29 - 2013-12-29 01:08 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-09-01 23:26 - 2012-06-22 19:11 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-09-01 22:26 - 2011-12-05 18:21 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2015-09-01 22:20 - 2009-07-14 06:45 - 00022976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-09-01 22:20 - 2009-07-14 06:45 - 00022976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-09-01 22:19 - 2013-12-29 01:08 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-09-01 22:19 - 2013-10-26 11:55 - 00617984 ___SH C:\Users\Christine\Desktop\Thumbs.db 2015-09-01 22:11 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-08-31 23:20 - 2015-04-13 11:56 - 00000000 ____D C:\Users\Christine\AppData\Local\CrashDumps 2015-08-31 00:09 - 2015-05-18 11:19 - 00000000 ____D C:\Users\Christine\Desktop\PDF 2015-08-30 11:17 - 2013-01-07 19:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-30 00:04 - 2015-06-23 01:38 - 00032768 _____ C:\Windows\system32\persistent_q.db-shm 2015-08-30 00:04 - 2015-06-23 01:38 - 00030424 _____ C:\Windows\system32\persistent_q.db-wal 2015-08-30 00:02 - 2011-12-07 19:17 - 00000000 ____D C:\Users\Christine\AppData\Roaming\SoftGrid Client 2015-08-29 12:02 - 2013-04-26 23:35 - 00001940 _____ C:\Windows\Sandboxie.ini 2015-08-29 11:24 - 2013-10-26 21:56 - 00000000 ____D C:\Users\Christine\Webseite 2015-08-27 20:24 - 2013-12-29 01:08 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-08-27 20:24 - 2013-12-29 01:08 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-08-27 12:46 - 2014-04-13 18:45 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-08-26 23:11 - 2015-03-22 23:30 - 00000000 ____D C:\Users\Christine\Desktop\Insolvenz 2015-08-26 22:01 - 2010-10-23 21:11 - 03251820 _____ C:\Windows\system32\perfh007.dat 2015-08-26 22:01 - 2010-10-23 21:11 - 00970666 _____ C:\Windows\system32\perfc007.dat 2015-08-26 22:01 - 2009-07-14 07:13 - 00006540 _____ C:\Windows\system32\PerfStringBackup.INI 2015-08-26 12:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2015-08-26 11:18 - 2011-12-06 19:27 - 00000000 ____D C:\Program Files\CCleaner 2015-08-26 11:17 - 2015-06-06 16:52 - 00000000 ____D C:\Users\Christine\AppData\Roaming\Notepad++ 2015-08-25 11:18 - 2013-10-26 17:13 - 00000000 ____D C:\Users\Christine\AppData\Roaming\FileZilla 2015-08-25 11:17 - 2013-10-26 17:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2015-08-25 11:17 - 2013-10-26 17:13 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client 2015-08-24 13:15 - 2015-05-18 12:08 - 00000000 ____D C:\Users\Christine\Desktop\Unterlagen Olivella 2015-08-23 23:58 - 2010-10-23 04:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2015-08-23 23:58 - 2010-10-23 04:55 - 00000000 ____D C:\Program Files (x86)\Samsung 2015-08-23 23:35 - 2011-12-05 21:54 - 00000000 ____D C:\ProgramData\Rosetta Stone 2015-08-23 23:35 - 2011-12-05 21:54 - 00000000 ____D C:\ProgramData\FLEXnet 2015-08-23 23:28 - 2010-10-23 04:52 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-08-23 22:54 - 2015-05-09 22:26 - 00000000 ____D C:\ProgramData\Fighters 2015-08-23 22:52 - 2013-11-26 13:19 - 00000000 ____D C:\Program Files\CyberGhost 5 2015-08-23 22:00 - 2015-07-29 00:45 - 00000000 ____D C:\Windows\Minidump 2015-08-23 16:04 - 2011-12-06 19:24 - 00000000 ____D C:\Users\Christine\AppData\Local\Google 2015-08-21 11:17 - 2013-10-29 01:49 - 00000000 ____D C:\Program Files (x86)\Opera 2015-08-19 14:15 - 2014-06-05 01:06 - 00003858 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1383004141 2015-08-19 01:12 - 2015-05-05 21:52 - 00000444 _____ C:\lxcz.log 2015-08-15 14:26 - 2012-06-22 19:11 - 00778440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-08-15 14:26 - 2012-06-22 19:11 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-08-15 14:26 - 2012-06-22 19:11 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-08-14 13:39 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-08-13 12:20 - 2013-03-16 01:03 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-08-13 12:20 - 2013-03-16 01:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-08-13 12:20 - 2009-07-14 06:45 - 02885488 _____ C:\Windows\system32\FNTCACHE.DAT 2015-08-13 01:22 - 2014-02-22 23:02 - 00000000 ____D C:\Windows\SysWOW64\%Report% 2015-08-13 01:21 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2015-08-13 01:15 - 2013-03-16 01:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-08-13 01:09 - 2013-08-16 00:29 - 00000000 ____D C:\Windows\system32\MRT 2015-08-13 01:03 - 2011-12-06 16:35 - 132483416 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-08-11 11:26 - 2015-03-02 01:13 - 00000931 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk 2015-08-11 11:26 - 2012-09-25 13:22 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2015-08-05 11:16 - 2013-05-10 23:15 - 00000000 ____D C:\Program Files\SUPERAntiSpyware 2015-08-04 11:21 - 2015-06-06 16:52 - 00000000 ____D C:\Program Files (x86)\Notepad++ ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2013-08-02 21:41 - 2014-06-18 00:26 - 0000600 _____ () C:\Users\Christine\AppData\Local\PUTTY.RND 2013-04-10 22:40 - 2013-04-10 22:40 - 0007602 _____ () C:\Users\Christine\AppData\Local\Resmon.ResmonCfg 2011-12-05 18:42 - 2011-12-05 18:42 - 0017408 _____ () C:\Users\Christine\AppData\Local\WebpageIcons.db 2009-06-16 14:25 - 2009-06-16 14:25 - 0121512 ____R () C:\ProgramData\DeviceManager.xml.rc4 2011-12-05 23:36 - 2011-12-05 23:36 - 0000056 ____H () C:\ProgramData\ezsidmv.dat 2010-10-23 05:04 - 2010-10-23 05:05 - 0000109 _____ () C:\ProgramData\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log 2010-10-23 05:01 - 2010-10-23 05:01 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log 2010-10-23 04:58 - 2010-10-23 05:00 - 0000106 _____ () C:\ProgramData\{80E158EA-7181-40FE-A701-301CE6BE64AB}.log 2010-10-23 05:03 - 2010-10-23 05:04 - 0000106 _____ () C:\ProgramData\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}.log 2010-10-23 05:01 - 2010-10-23 05:03 - 0000110 _____ () C:\ProgramData\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}.log 2010-10-23 05:05 - 2010-10-23 05:05 - 0000105 _____ () C:\ProgramData\{d36dd326-7280-11d8-97c8-000129760cbe}.log Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Users\Christine\cjq1200Win7de.exe Einige Dateien in TEMP: ==================== C:\Users\Christine\AppData\Local\Temp\kernel32.dll C:\Users\Christine\AppData\Local\Temp\rtdrvmon.exe C:\Users\Mausi\AppData\Local\Temp\rtdrvmon.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-09-01 13:46 ==================== Ende von FRST.txt ============================
__________________ --> Win7 immer langsamer |
![]() | #7 |
![]() | ![]() Win7 immer langsamer So, nachdem ich dann heute frisch und ausgeruht die alte Tante Gugel befragt habe, habe ich es auch geschafft, dass CBS.log zu öffnen und zu speichern. AUfgrund der Größe nicht in Code Tags hier und auch nicht als .txt sondern nur als .zip möglich.
__________________ Con saludos Uwe |
![]() | #8 |
Danke wär nicht nötig gewesen, das anzuhängen, SFCFix macht das schon alles ![]() Deine Windowsinstallation ist gesund und munter ![]() Ich würde einfach mal alle nicht benötigten Programme deinstallieren oder deaktivieren, du hast eine ziemliche Anzahl an laufenden Prozessen. Die Tatsache, dass beim Clean Boot alles super lief, spricht auch dafür. Es wurden ein paar Fehler auf deiner Festplatte gefunden, darum mal bitte einen Log von CrystalDiskInfo - Software - Crystal Dew World
__________________ Mfg, Rafael ~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~ ![]() ![]() ......... Lob, Kritik oder Wünsche ......... .......... Folge uns auf Facebook .......... |
![]() | #9 |
Moin. Ist das das erwartete Log von Crystal Info?
ATTFilter ---------------------------------------------------------------------------- CrystalDiskInfo 6.5.2 (C) 2008-2015 hiyohiyo Crystal Dew World : http://crystalmark.info/ ---------------------------------------------------------------------------- OS : Windows 7 Home Premium SP1 [6.1 Build 7601] (x64) Date : 2015/09/02 15:34:52 -- Controller Map ---------------------------------------------------------- + Intel(R) 5 Series 4 Port SATA AHCI Controller [ATA] - SAMSUNG HM641JI - TSSTcorp DVDWBD TS-LB23A -- Disk List --------------------------------------------------------------- (1) SAMSUNG HM641JI : 640,1 GB [0/0/0, pd1] ---------------------------------------------------------------------------- (1) SAMSUNG HM641JI ---------------------------------------------------------------------------- Model : SAMSUNG HM641JI Firmware : 2AJ10002 Serial Number : **************** Disk Size : 640,1 GB (8,4/137,4/640,1/640,1) Buffer Size : 8192 KB Queue Depth : 32 # of Sectors : 1250263728 Rotation Rate : 5400 RPM Interface : Serial ATA Major Version : ATA8-ACS Minor Version : ATA8-ACS version 6 Transfer Mode : ---- | SATA/300 Power On Hours : 7512 Std. Power On Count : 1011 mal Temperature : 38 C (100 F) Health Status : Gut Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ APM Level : 0080h [OFF] AAM Level : FE80h [ON] -- S.M.A.R.T. -------------------------------------------------------------- ID Cur Wor Thr RawValues(6) Attribute Name 01 100 100 _51 00000000000F Lesefehlerrate 02 252 252 __0 000000000000 Datendurchsatz-Leistung 03 _89 _88 _25 000000000D54 Mittlere Anlaufzeit 04 _99 _99 __0 000000000695 Start/Stopp-Zyklen der Spindel 05 252 252 _10 000000000000 Wiederzugewiesene Sektoren 07 252 252 _51 000000000000 Suchfehler 08 252 252 _15 000000000000 Güte der Suchoperationen 09 100 100 __0 000000001D58 Betriebsstunden 0A 252 252 _51 000000000000 Misslungene Spindelanläufe 0B 100 100 __0 00000000002A Nnotwendige Rekalibrierungen 0C _99 _99 __0 0000000003F3 Geräte-Einschaltvorgänge BF 100 100 __0 000000000B3C Beschleunigungssensor-Fehlerrate C0 252 252 __0 000000000000 Ausschaltungsabbrüche C2 _62 _52 __0 003000120026 Temperatur C3 100 100 __0 000000000000 Hardware-ECC wiederhergestellt C4 252 252 __0 000000000000 Wiederzuweisungsereignisse C5 252 252 __0 000000000000 Aktuell ausstehende Sektoren C6 252 252 __0 000000000000 Nicht korrigierbare Sektoren C7 200 200 __0 000000000000 UltraDMA-CRC-Fehler C8 100 100 __0 000000000003 Schreibfehlerrate DF 100 100 __0 00000000002A Laden/Entladen-Wiederholungen E1 _99 _99 __0 000000004B1D Laden/Entladen-Zyklen -- IDENTIFY_DEVICE --------------------------------------------------------- 0 1 2 3 4 5 6 7 8 9 000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000 010: 5332 3658 4A39 455A 4330 3537 3034 2020 2020 2020 020: 0000 4000 0004 3241 4A31 3030 3032 5341 4D53 554E 030: 4720 484D 3634 314A 4920 2020 2020 2020 2020 2020 040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00 050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110 060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000 070: 0000 0000 0000 0000 0000 001F 1F06 0000 004C 004C 080: 01FF 0028 746B 7F69 6123 7469 BE41 6123 407F 0049 090: 0049 0080 FFFE 0000 FE80 0000 0000 0000 0000 0000 100: 82B0 4A85 0000 0000 0000 0000 4000 0000 5002 4E92 110: 0423 7896 0000 0000 0000 0000 0000 0000 0000 401C 120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 0000 130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000 170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 200: 0000 0000 0000 0000 0000 0000 003F 0000 0000 0000 210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000 220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000 230: 0000 0000 0000 0000 0001 0400 0000 0000 0000 0000 240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 250: 0000 0000 0000 0000 0000 36A5 -- SMART_READ_DATA --------------------------------------------------------- +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F 000: 10 00 01 2F 00 64 64 0F 00 00 00 00 00 00 02 26 010: 00 FC FC 00 00 00 00 00 00 00 03 23 00 59 58 54 020: 0D 00 00 00 00 00 04 32 00 63 63 95 06 00 00 00 030: 00 00 05 33 00 FC FC 00 00 00 00 00 00 00 07 2E 040: 00 FC FC 00 00 00 00 00 00 00 08 24 00 FC FC 00 050: 00 00 00 00 00 00 09 32 00 64 64 58 1D 00 00 00 060: 00 00 0A 32 00 FC FC 00 00 00 00 00 00 00 0B 32 070: 00 64 64 2A 00 00 00 00 00 00 0C 32 00 63 63 F3 080: 03 00 00 00 00 00 BF 22 00 64 64 3C 0B 00 00 00 090: 00 00 C0 22 00 FC FC 00 00 00 00 00 00 00 C2 02 0A0: 00 3E 34 26 00 12 00 30 00 00 C3 3A 00 64 64 00 0B0: 00 00 00 00 00 00 C4 32 00 FC FC 00 00 00 00 00 0C0: 00 00 C5 32 00 FC FC 00 00 00 00 00 00 00 C6 30 0D0: 00 FC FC 00 00 00 00 00 00 00 C7 36 00 C8 C8 00 0E0: 00 00 00 00 00 00 C8 2A 00 64 64 03 00 00 00 00 0F0: 00 00 DF 32 00 64 64 2A 00 00 00 00 00 00 E1 32 100: 00 63 63 1D 4B 00 00 00 00 00 00 00 00 00 00 00 110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 160: 00 00 00 00 00 00 00 00 00 00 00 00 A0 23 00 5B 170: 03 00 01 00 02 98 00 00 00 00 00 00 00 00 00 00 180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 62 -- SMART_READ_THRESHOLD ---------------------------------------------------- +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F 000: 10 00 01 33 00 00 00 00 00 00 00 00 00 00 02 00 010: 00 00 00 00 00 00 00 00 00 00 03 19 00 00 00 00 020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00 030: 00 00 05 0A 00 00 00 00 00 00 00 00 00 00 07 33 040: 00 00 00 00 00 00 00 00 00 00 08 0F 00 00 00 00 050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00 060: 00 00 0A 33 00 00 00 00 00 00 00 00 00 00 0B 00 070: 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 00 00 080: 00 00 00 00 00 00 BF 00 00 00 00 00 00 00 00 00 090: 00 00 C0 00 00 00 00 00 00 00 00 00 00 00 C2 00 0A0: 00 00 00 00 00 00 00 00 00 00 C3 00 00 00 00 00 0B0: 00 00 00 00 00 00 C4 00 00 00 00 00 00 00 00 00 0C0: 00 00 C5 00 00 00 00 00 00 00 00 00 00 00 C6 00 0D0: 00 00 00 00 00 00 00 00 00 00 C7 00 00 00 00 00 0E0: 00 00 00 00 00 00 C8 00 00 00 00 00 00 00 00 00 0F0: 00 00 DF 00 00 00 00 00 00 00 00 00 00 00 E1 00 100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 3B Verdacht auf Malware hast du auch keinen gefunden?!?!
__________________ Con saludos Uwe |
![]() | #10 | |
ja genau das Log meine ich ![]() Ich darf dir dazu keine konkreten Aussagen geben, weil ich noch in der Studentenstufe bin und da ist es uns nicht erlaubt, zu entscheiden ob ein Rechner sauber ist oder nicht ![]() Aber wegen der Tatsache, dass du ESET usw hast auch schon laufen lassen usw und so wie ich die Logs interpretiere... ![]() Als einziges, sind dir diese IP Adressen bekannst oder verwendest du mobiles Internet oder sowas? Oder bist in Spanien?
__________________ Mfg, Rafael ~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~ ![]() ![]() ......... Lob, Kritik oder Wünsche ......... .......... Folge uns auf Facebook .......... |
![]() | #11 |
Ich denke, wenn etwas gravierendes gewesen wäre, hätte dein TB-Prof schon eingegriffen. ![]() Das mit den IPs hat seine Ordnung. Sind von Vodafone.es und von Telefonica.es, da ich in Spanien bin. Telefonica ist Festnetz und Vodafone der Surfstick, für Ausfälle bei Telefonica. Das passt also. Dann werde ich mir mal die Dienste vornehmen. Auf jeden Fall schon mal vielen Dank für deine tolle Unterstützung. !()
__________________ Con saludos Uwe |
![]() |
Themen zu Win7 immer langsamer |
aufgegeben, aufsetzen, autostart, beitrag, brauche, cookies, ergebnis, festplatte, gelöscht, home, kaspersky, langsamer, laptop, laufwerk, malwarebytes, neu, office, online, platte, problem, programme, recover, runterfahren, temp, thread, win, win7 |