|
Alles rund um Windows: Windows 10 startet nicht mehr. Bad_system_config_infoWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
23.09.2015, 17:56 | #31 |
/// Malwareteam | Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter cmd: Bcdedit /set {bootmgr} path \boot\de-DE\bootmgr cmd: dir C:\Boot /s
Das Tool erstellt eine Fixlog.txt auf deinem USB Stick. Poste den Inhalt bitte hier. |
23.09.2015, 22:00 | #32 |
| Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] hier:
__________________Code:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x86) Version:15-09-2015 durchgeführt von SYSTEM (2015-09-23 22:49:58) Run:4 Gestartet von D:\ Start-Modus: Recovery ============================================== fixlist Inhalt: ***************** cmd: Bcdedit /set {bootmgr} path \boot\de-DE\bootmgr cmd: dir C:\Boot /s ***************** ========= Bcdedit /set {bootmgr} path \boot\de-DE\bootmgr ========= Der Vorgang wurde erfolgreich beendet. ========= Ende von CMD: ========= ========= dir C:\Boot /s ========= Datentr�ger in Laufwerk C: ist Festplatte Volumeseriennummer: FACA-434E Verzeichnis von C:\$Windows.~WS\Sources\Windows 10.07.2015 14:40 <DIR> boot 0 Datei(en), 0 Bytes Verzeichnis von C:\$Windows.~WS\Sources\Windows\efi 10.07.2015 14:40 <DIR> boot 0 Datei(en), 0 Bytes Verzeichnis von C:\$Windows.~WS\Sources\Windows\efi\microsoft 10.07.2015 14:40 <DIR> boot 0 Datei(en), 0 Bytes Verzeichnis von C:\Users\Marc\Documents\Eigene PaperPort-Dokumente\Handy\Picture 16.03.2011 01:57 <DIR> Boot 0 Datei(en), 0 Bytes Verzeichnis von C:\Users\Marc\Favorites\Sonstiges 01.08.2015 12:13 <DIR> Boot 0 Datei(en), 0 Bytes Verzeichnis von C:\Users\Marc\INTERNET\SERVER\ALTER SERVER WWW\marc.it\httpdocs 22.11.2014 17:48 <DIR> boot 0 Datei(en), 0 Bytes Verzeichnis von C:\Users\Marc\INTERNET\SERVER\ALTER SERVER WWW\var\www\vhosts\marc.it\httpdocs 22.11.2014 18:08 <DIR> boot 0 Datei(en), 0 Bytes Verzeichnis von C:\Windows 10.07.2015 09:28 <DIR> Boot 0 Datei(en), 0 Bytes Verzeichnis von C:\Windows\Panther\Rollback 01.08.2015 10:49 <DIR> Boot 0 Datei(en), 0 Bytes Verzeichnis von C:\Windows\System32 01.08.2015 12:23 <DIR> Boot 0 Datei(en), 0 Bytes Anzahl der angezeigten Dateien: 0 Datei(en), 0 Bytes 10 Verzeichnis(se), 677.113.618.432 Bytes frei ========= Ende von CMD: ========= ==== Ende vom Fixlog 22:55:01 ==== |
24.09.2015, 20:31 | #33 |
/// Malwareteam | Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] Also es geht wohl nicht? >:>
__________________Ich will noch eine Sache probieren nach den folgenden Logs - wenn die nicht gehen weiß ich echt nicht mehr wirklich weiter. 1. Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter cmd: dir C:\Boot\ /s cmd: dir Y:\ /s cmd: bootrec.exe /scanos
Das Tool erstellt eine Fixlog.txt auf deinem USB Stick. Poste den Inhalt bitte hier. 2. Bitte neuen Scan mit BCD |
24.09.2015, 23:15 | #34 |
| Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] hier die Dateien, letzter Versuch. Ich habe mir schon eine Samsung 2TB bestellt. Ich würde mich freuen, wenn du mir noch sagen würdest, wie ich die am besten formatiere und die Partitionen anlege. Welche Grössen wären sinnvoll? Und mit welchem Programm am besten? Schon mal vielen Dank vorab für deine Hilfe, das war super!!! Auch wenn wir am Ende nicht gegen Windows siegen konnten, zumindest habe ich viele Tricks gelernt. ;-)) also, die Fixlog.txt zuerst: Code:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x86) Version:15-09-2015 durchgeführt von SYSTEM (2015-09-24 23:20:50) Run:5 Gestartet von D:\ Start-Modus: Recovery ============================================== fixlist Inhalt: ***************** cmd: dir C:\Boot\ /s cmd: dir Y:\ /s cmd: bootrec.exe /scanos ***************** ========= dir C:\Boot\ /s ========= Das System kann die angegebene Datei nicht finden. ========= Ende von CMD: ========= ========= dir Y:\ /s ========= Volume in Laufwerk Y: hat keine Bezeichnung. Volumeseriennummer: 4AC8-B595 Verzeichnis von Y:\ 23.09.2015 17:08 <DIR> EFI 22.09.2015 15:32 0 Recovery.txt 20.09.2015 23:40 <DIR> Temp 1 Datei(en), 0 Bytes Verzeichnis von Y:\Boot 23.09.2015 17:08 <DIR> bg-BG 10.07.2015 09:25 97.120 bootvhd.dll 23.09.2015 17:08 <DIR> cs-CZ 23.09.2015 17:08 <DIR> da-DK 23.09.2015 17:08 <DIR> de-DE 23.09.2015 17:08 <DIR> el-GR 23.09.2015 17:08 <DIR> en-GB 23.09.2015 17:08 <DIR> en-US 23.09.2015 17:08 <DIR> es-ES 23.09.2015 17:08 <DIR> es-MX 23.09.2015 17:08 <DIR> et-EE 23.09.2015 17:08 <DIR> fi-FI 23.09.2015 17:08 <DIR> Fonts 23.09.2015 17:08 <DIR> fr-CA 23.09.2015 17:08 <DIR> fr-FR 23.09.2015 17:08 <DIR> hr-HR 23.09.2015 17:08 <DIR> hu-HU 23.09.2015 17:08 <DIR> it-IT 23.09.2015 17:08 <DIR> ja-JP 23.09.2015 17:08 <DIR> ko-KR 23.09.2015 17:08 <DIR> lt-LT 23.09.2015 17:08 <DIR> lv-LV 01.08.2015 12:23 780.640 memtest.exe 23.09.2015 17:08 <DIR> nb-NO 23.09.2015 17:08 <DIR> nl-NL 23.09.2015 17:08 <DIR> pl-PL 23.09.2015 17:08 <DIR> pt-BR 23.09.2015 17:08 <DIR> pt-PT 23.09.2015 17:08 <DIR> qps-ploc 23.09.2015 17:08 <DIR> Resources 23.09.2015 17:08 <DIR> ro-RO 23.09.2015 17:08 <DIR> ru-RU 23.09.2015 17:08 <DIR> sk-SK 23.09.2015 17:08 <DIR> sl-SI 23.09.2015 17:08 <DIR> sr-Latn-CS 23.09.2015 17:08 <DIR> sr-Latn-RS 23.09.2015 17:08 <DIR> sv-SE 23.09.2015 17:08 <DIR> tr-TR 23.09.2015 17:08 <DIR> uk-UA 23.09.2015 17:08 <DIR> zh-CN 23.09.2015 17:08 <DIR> zh-HK 23.09.2015 17:08 <DIR> zh-TW 2 Datei(en), 877.760 Bytes Verzeichnis von Y:\Boot\bg-BG 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.664 bootmgr.exe.mui 1 Datei(en), 77.664 Bytes Verzeichnis von Y:\Boot\cs-CZ 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgr.exe.mui 10.07.2015 09:25 45.408 memtest.exe.mui 2 Datei(en), 122.048 Bytes Verzeichnis von Y:\Boot\da-DK 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.128 bootmgr.exe.mui 10.07.2015 09:25 45.408 memtest.exe.mui 2 Datei(en), 121.536 Bytes Verzeichnis von Y:\Boot\de-DE 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 79.200 bootmgr.exe.mui 10.07.2015 09:25 45.920 memtest.exe.mui 2 Datei(en), 125.120 Bytes Verzeichnis von Y:\Boot\el-GR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 80.224 bootmgr.exe.mui 10.07.2015 09:25 46.432 memtest.exe.mui 2 Datei(en), 126.656 Bytes Verzeichnis von Y:\Boot\en-GB 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 74.080 bootmgr.exe.mui 1 Datei(en), 74.080 Bytes Verzeichnis von Y:\Boot\en-US 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 74.080 bootmgr.exe.mui 10.07.2015 09:25 44.896 memtest.exe.mui 2 Datei(en), 118.976 Bytes Verzeichnis von Y:\Boot\es-ES 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.664 bootmgr.exe.mui 10.07.2015 09:25 45.920 memtest.exe.mui 2 Datei(en), 123.584 Bytes Verzeichnis von Y:\Boot\es-MX 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.664 bootmgr.exe.mui 1 Datei(en), 77.664 Bytes Verzeichnis von Y:\Boot\et-EE 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 75.104 bootmgr.exe.mui 1 Datei(en), 75.104 Bytes Verzeichnis von Y:\Boot\fi-FI 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgr.exe.mui 10.07.2015 09:25 45.408 memtest.exe.mui 2 Datei(en), 122.048 Bytes Verzeichnis von Y:\Boot\Fonts 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 3.694.080 chs_boot.ttf 10.07.2015 09:25 3.876.772 cht_boot.ttf 10.07.2015 09:25 1.984.228 jpn_boot.ttf 10.07.2015 09:25 2.371.360 kor_boot.ttf 10.07.2015 09:25 165.764 malgunn_boot.ttf 10.07.2015 09:25 168.212 malgun_boot.ttf 10.07.2015 09:25 132.888 meiryon_boot.ttf 10.07.2015 09:25 134.508 meiryo_boot.ttf 10.07.2015 09:25 152.892 msjhn_boot.ttf 10.07.2015 09:25 154.896 msjh_boot.ttf 10.07.2015 09:25 142.124 msyhn_boot.ttf 10.07.2015 09:25 146.228 msyh_boot.ttf 10.07.2015 09:24 36.020 segmono_boot.ttf 10.07.2015 09:24 77.088 segoen_slboot.ttf 10.07.2015 09:24 77.404 segoe_slboot.ttf 10.07.2015 09:24 47.452 wgl4_boot.ttf 16 Datei(en), 13.361.916 Bytes Verzeichnis von Y:\Boot\fr-CA 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 79.200 bootmgr.exe.mui 1 Datei(en), 79.200 Bytes Verzeichnis von Y:\Boot\fr-FR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 79.200 bootmgr.exe.mui 10.07.2015 09:25 45.920 memtest.exe.mui 2 Datei(en), 125.120 Bytes Verzeichnis von Y:\Boot\hr-HR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgr.exe.mui 1 Datei(en), 76.640 Bytes Verzeichnis von Y:\Boot\hu-HU 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 78.688 bootmgr.exe.mui 10.07.2015 09:25 45.920 memtest.exe.mui 2 Datei(en), 124.608 Bytes Verzeichnis von Y:\Boot\it-IT 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgr.exe.mui 10.07.2015 09:25 45.408 memtest.exe.mui 2 Datei(en), 122.560 Bytes Verzeichnis von Y:\Boot\ja-JP 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 67.424 bootmgr.exe.mui 10.07.2015 09:25 42.848 memtest.exe.mui 2 Datei(en), 110.272 Bytes Verzeichnis von Y:\Boot\ko-KR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 66.912 bootmgr.exe.mui 10.07.2015 09:25 42.848 memtest.exe.mui 2 Datei(en), 109.760 Bytes Verzeichnis von Y:\Boot\lt-LT 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 75.616 bootmgr.exe.mui 1 Datei(en), 75.616 Bytes Verzeichnis von Y:\Boot\lv-LV 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 75.616 bootmgr.exe.mui 1 Datei(en), 75.616 Bytes Verzeichnis von Y:\Boot\nb-NO 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 75.616 bootmgr.exe.mui 10.07.2015 09:25 45.408 memtest.exe.mui 2 Datei(en), 121.024 Bytes Verzeichnis von Y:\Boot\nl-NL 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 78.176 bootmgr.exe.mui 10.07.2015 09:25 45.408 memtest.exe.mui 2 Datei(en), 123.584 Bytes Verzeichnis von Y:\Boot\pl-PL 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.664 bootmgr.exe.mui 10.07.2015 09:25 45.920 memtest.exe.mui 2 Datei(en), 123.584 Bytes Verzeichnis von Y:\Boot\pt-BR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgr.exe.mui 10.07.2015 09:25 45.408 memtest.exe.mui 2 Datei(en), 122.048 Bytes Verzeichnis von Y:\Boot\pt-PT 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgr.exe.mui 10.07.2015 09:25 45.920 memtest.exe.mui 2 Datei(en), 122.560 Bytes Verzeichnis von Y:\Boot\qps-ploc 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 74.080 bootmgr.exe.mui 10.07.2015 09:25 45.408 memtest.exe.mui 2 Datei(en), 119.488 Bytes Verzeichnis von Y:\Boot\Resources 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 19.296 bootres.dll 23.09.2015 17:08 <DIR> de-DE 1 Datei(en), 19.296 Bytes Verzeichnis von Y:\Boot\Resources\de-DE 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 14:11 12.640 bootres.dll.mui 1 Datei(en), 12.640 Bytes Verzeichnis von Y:\Boot\ro-RO 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.128 bootmgr.exe.mui 1 Datei(en), 76.128 Bytes Verzeichnis von Y:\Boot\ru-RU 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgr.exe.mui 10.07.2015 09:25 44.896 memtest.exe.mui 2 Datei(en), 122.048 Bytes Verzeichnis von Y:\Boot\sk-SK 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgr.exe.mui 1 Datei(en), 77.152 Bytes Verzeichnis von Y:\Boot\sl-SI 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgr.exe.mui 1 Datei(en), 76.640 Bytes Verzeichnis von Y:\Boot\sr-Latn-CS 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgr.exe.mui 10.07.2015 09:25 45.408 memtest.exe.mui 2 Datei(en), 122.560 Bytes Verzeichnis von Y:\Boot\sr-Latn-RS 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgr.exe.mui 1 Datei(en), 77.152 Bytes Verzeichnis von Y:\Boot\sv-SE 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.128 bootmgr.exe.mui 10.07.2015 09:25 44.896 memtest.exe.mui 2 Datei(en), 121.024 Bytes Verzeichnis von Y:\Boot\tr-TR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 75.104 bootmgr.exe.mui 10.07.2015 09:25 45.408 memtest.exe.mui 2 Datei(en), 120.512 Bytes Verzeichnis von Y:\Boot\uk-UA 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgr.exe.mui 1 Datei(en), 77.152 Bytes Verzeichnis von Y:\Boot\zh-CN 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 63.840 bootmgr.exe.mui 10.07.2015 09:25 42.336 memtest.exe.mui 2 Datei(en), 106.176 Bytes Verzeichnis von Y:\Boot\zh-HK 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 63.840 bootmgr.exe.mui 10.07.2015 09:25 42.336 memtest.exe.mui 2 Datei(en), 106.176 Bytes Verzeichnis von Y:\Boot\zh-TW 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 63.840 bootmgr.exe.mui 10.07.2015 09:25 42.336 memtest.exe.mui 2 Datei(en), 106.176 Bytes Verzeichnis von Y:\EFI 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 23.09.2015 17:08 <DIR> Boot 23.09.2015 17:08 <DIR> Microsoft 0 Datei(en), 0 Bytes Verzeichnis von Y:\EFI\Boot 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 01.08.2015 12:23 977.248 bootia32.efi 1 Datei(en), 977.248 Bytes Verzeichnis von Y:\EFI\Microsoft 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 23.09.2015 17:08 <DIR> Boot 23.09.2015 17:08 <DIR> Recovery 0 Datei(en), 0 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 23.09.2015 17:08 20.480 BCD 23.09.2015 17:08 <DIR> bg-BG 10.07.2015 09:25 4.247 boot.stl 01.08.2015 12:23 977.248 bootmgfw.efi 01.08.2015 12:23 973.664 bootmgr.efi 23.09.2015 17:08 <DIR> cs-CZ 23.09.2015 17:08 <DIR> da-DK 23.09.2015 17:08 <DIR> de-DE 23.09.2015 17:08 <DIR> el-GR 23.09.2015 17:08 <DIR> en-GB 23.09.2015 17:08 <DIR> en-US 23.09.2015 17:08 <DIR> es-ES 23.09.2015 17:08 <DIR> es-MX 23.09.2015 17:08 <DIR> et-EE 23.09.2015 17:08 <DIR> fi-FI 23.09.2015 17:08 <DIR> Fonts 23.09.2015 17:08 <DIR> fr-CA 23.09.2015 17:08 <DIR> fr-FR 23.09.2015 17:08 <DIR> hr-HR 23.09.2015 17:08 <DIR> hu-HU 23.09.2015 17:08 <DIR> it-IT 23.09.2015 17:08 <DIR> ja-JP 10.07.2015 09:24 14.176 kdstub.dll 10.07.2015 09:24 24.928 kd_02_10df.dll 10.07.2015 09:24 260.448 kd_02_10ec.dll 10.07.2015 09:24 178.528 kd_02_14e4.dll 10.07.2015 09:24 33.120 kd_02_1969.dll 10.07.2015 09:24 24.928 kd_02_19a2.dll 10.07.2015 09:24 162.656 kd_02_8086.dll 10.07.2015 09:24 15.712 kd_07_1415.dll 10.07.2015 09:24 31.584 kd_0C_8086.dll 23.09.2015 17:08 <DIR> ko-KR 23.09.2015 17:08 <DIR> lt-LT 23.09.2015 17:08 <DIR> lv-LV 01.08.2015 12:23 893.280 memtest.efi 23.09.2015 17:08 <DIR> nb-NO 23.09.2015 17:08 <DIR> nl-NL 23.09.2015 17:08 <DIR> pl-PL 23.09.2015 17:08 <DIR> pt-BR 23.09.2015 17:08 <DIR> pt-PT 23.09.2015 17:08 <DIR> qps-ploc 23.09.2015 17:08 <DIR> Resources 23.09.2015 17:08 <DIR> ro-RO 23.09.2015 17:08 <DIR> ru-RU 23.09.2015 17:08 <DIR> sk-SK 23.09.2015 17:08 <DIR> sl-SI 23.09.2015 17:08 <DIR> sr-Latn-CS 23.09.2015 17:08 <DIR> sr-Latn-RS 23.09.2015 17:08 <DIR> sv-SE 23.09.2015 17:08 <DIR> tr-TR 23.09.2015 17:08 <DIR> uk-UA 23.09.2015 17:08 <DIR> zh-CN 23.09.2015 17:08 <DIR> zh-HK 23.09.2015 17:08 <DIR> zh-TW 14 Datei(en), 3.614.999 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\bg-BG 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.664 bootmgfw.efi.mui 10.07.2015 09:25 77.664 bootmgr.efi.mui 2 Datei(en), 155.328 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\cs-CZ 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgfw.efi.mui 10.07.2015 09:25 76.640 bootmgr.efi.mui 10.07.2015 09:25 45.408 memtest.efi.mui 3 Datei(en), 198.688 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\da-DK 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.128 bootmgfw.efi.mui 10.07.2015 09:25 76.128 bootmgr.efi.mui 10.07.2015 09:25 45.408 memtest.efi.mui 3 Datei(en), 197.664 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\de-DE 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 79.200 bootmgfw.efi.mui 10.07.2015 09:25 79.200 bootmgr.efi.mui 10.07.2015 09:25 45.920 memtest.efi.mui 3 Datei(en), 204.320 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\el-GR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 79.712 bootmgfw.efi.mui 10.07.2015 09:25 80.224 bootmgr.efi.mui 10.07.2015 09:25 46.432 memtest.efi.mui 3 Datei(en), 206.368 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\en-GB 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 74.080 bootmgfw.efi.mui 10.07.2015 09:25 74.080 bootmgr.efi.mui 2 Datei(en), 148.160 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\en-US 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 74.080 bootmgfw.efi.mui 10.07.2015 09:25 74.080 bootmgr.efi.mui 10.07.2015 09:25 44.896 memtest.efi.mui 3 Datei(en), 193.056 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\es-ES 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.664 bootmgfw.efi.mui 10.07.2015 09:25 77.664 bootmgr.efi.mui 10.07.2015 09:25 45.920 memtest.efi.mui 3 Datei(en), 201.248 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\es-MX 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgfw.efi.mui 10.07.2015 09:25 77.664 bootmgr.efi.mui 2 Datei(en), 154.816 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\et-EE 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 75.104 bootmgfw.efi.mui 10.07.2015 09:25 75.104 bootmgr.efi.mui 2 Datei(en), 150.208 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\fi-FI 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgfw.efi.mui 10.07.2015 09:25 76.640 bootmgr.efi.mui 10.07.2015 09:25 45.408 memtest.efi.mui 3 Datei(en), 198.688 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\Fonts 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 3.694.080 chs_boot.ttf 10.07.2015 09:25 3.876.772 cht_boot.ttf 10.07.2015 09:25 1.984.228 jpn_boot.ttf 10.07.2015 09:25 2.371.360 kor_boot.ttf 10.07.2015 09:25 165.764 malgunn_boot.ttf 10.07.2015 09:25 168.212 malgun_boot.ttf 10.07.2015 09:25 132.888 meiryon_boot.ttf 10.07.2015 09:25 134.508 meiryo_boot.ttf 10.07.2015 09:25 152.892 msjhn_boot.ttf 10.07.2015 09:25 154.896 msjh_boot.ttf 10.07.2015 09:25 142.124 msyhn_boot.ttf 10.07.2015 09:25 146.228 msyh_boot.ttf 10.07.2015 09:24 36.020 segmono_boot.ttf 10.07.2015 09:24 77.088 segoen_slboot.ttf 10.07.2015 09:24 77.404 segoe_slboot.ttf 10.07.2015 09:24 47.452 wgl4_boot.ttf 16 Datei(en), 13.361.916 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\fr-CA 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 78.688 bootmgfw.efi.mui 10.07.2015 09:25 79.200 bootmgr.efi.mui 2 Datei(en), 157.888 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\fr-FR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 79.200 bootmgfw.efi.mui 10.07.2015 09:25 79.200 bootmgr.efi.mui 10.07.2015 09:25 45.920 memtest.efi.mui 3 Datei(en), 204.320 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\hr-HR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgfw.efi.mui 10.07.2015 09:25 76.640 bootmgr.efi.mui 2 Datei(en), 153.280 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\hu-HU 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 78.688 bootmgfw.efi.mui 10.07.2015 09:25 78.688 bootmgr.efi.mui 10.07.2015 09:25 45.920 memtest.efi.mui 3 Datei(en), 203.296 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\it-IT 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgfw.efi.mui 10.07.2015 09:25 77.152 bootmgr.efi.mui 10.07.2015 09:25 45.408 memtest.efi.mui 3 Datei(en), 199.712 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\ja-JP 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 67.936 bootmgfw.efi.mui 10.07.2015 09:25 67.424 bootmgr.efi.mui 10.07.2015 09:25 42.848 memtest.efi.mui 3 Datei(en), 178.208 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\ko-KR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 67.424 bootmgfw.efi.mui 10.07.2015 09:25 66.912 bootmgr.efi.mui 10.07.2015 09:25 42.848 memtest.efi.mui 3 Datei(en), 177.184 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\lt-LT 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 75.616 bootmgfw.efi.mui 10.07.2015 09:25 75.616 bootmgr.efi.mui 2 Datei(en), 151.232 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\lv-LV 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 75.616 bootmgfw.efi.mui 10.07.2015 09:25 75.616 bootmgr.efi.mui 2 Datei(en), 151.232 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\nb-NO 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 75.616 bootmgfw.efi.mui 10.07.2015 09:25 75.616 bootmgr.efi.mui 10.07.2015 09:25 45.408 memtest.efi.mui 3 Datei(en), 196.640 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\nl-NL 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.664 bootmgfw.efi.mui 10.07.2015 09:25 78.176 bootmgr.efi.mui 10.07.2015 09:25 45.408 memtest.efi.mui 3 Datei(en), 201.248 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\pl-PL 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.664 bootmgfw.efi.mui 10.07.2015 09:25 77.664 bootmgr.efi.mui 10.07.2015 09:25 45.920 memtest.efi.mui 3 Datei(en), 201.248 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\pt-BR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgfw.efi.mui 10.07.2015 09:25 76.640 bootmgr.efi.mui 10.07.2015 09:25 45.408 memtest.efi.mui 3 Datei(en), 198.688 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\pt-PT 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgfw.efi.mui 10.07.2015 09:25 76.640 bootmgr.efi.mui 10.07.2015 09:25 45.920 memtest.efi.mui 3 Datei(en), 199.200 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\qps-ploc 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 74.080 bootmgfw.efi.mui 10.07.2015 09:25 74.080 bootmgr.efi.mui 10.07.2015 09:25 45.408 memtest.efi.mui 3 Datei(en), 193.568 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\Resources 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 19.296 bootres.dll 23.09.2015 17:08 <DIR> de-DE 1 Datei(en), 19.296 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\Resources\de-DE 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 14:11 12.640 bootres.dll.mui 1 Datei(en), 12.640 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\ro-RO 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.128 bootmgfw.efi.mui 10.07.2015 09:25 76.128 bootmgr.efi.mui 2 Datei(en), 152.256 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\ru-RU 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgfw.efi.mui 10.07.2015 09:25 77.152 bootmgr.efi.mui 10.07.2015 09:25 44.896 memtest.efi.mui 3 Datei(en), 198.688 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\sk-SK 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgfw.efi.mui 10.07.2015 09:25 77.152 bootmgr.efi.mui 2 Datei(en), 154.304 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\sl-SI 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.640 bootmgfw.efi.mui 10.07.2015 09:25 76.640 bootmgr.efi.mui 2 Datei(en), 153.280 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\sr-Latn-CS 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgfw.efi.mui 10.07.2015 09:25 77.152 bootmgr.efi.mui 10.07.2015 09:25 45.408 memtest.efi.mui 3 Datei(en), 199.712 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\sr-Latn-RS 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgfw.efi.mui 10.07.2015 09:25 77.152 bootmgr.efi.mui 2 Datei(en), 154.304 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\sv-SE 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 76.128 bootmgfw.efi.mui 10.07.2015 09:25 76.128 bootmgr.efi.mui 10.07.2015 09:25 44.896 memtest.efi.mui 3 Datei(en), 197.152 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\tr-TR 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 75.104 bootmgfw.efi.mui 10.07.2015 09:25 75.104 bootmgr.efi.mui 10.07.2015 09:25 45.408 memtest.efi.mui 3 Datei(en), 195.616 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\uk-UA 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 77.152 bootmgfw.efi.mui 10.07.2015 09:25 77.152 bootmgr.efi.mui 2 Datei(en), 154.304 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\zh-CN 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 63.840 bootmgfw.efi.mui 10.07.2015 09:25 63.840 bootmgr.efi.mui 10.07.2015 09:25 42.336 memtest.efi.mui 3 Datei(en), 170.016 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\zh-HK 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 63.840 bootmgfw.efi.mui 10.07.2015 09:25 63.840 bootmgr.efi.mui 10.07.2015 09:25 42.336 memtest.efi.mui 3 Datei(en), 170.016 Bytes Verzeichnis von Y:\EFI\Microsoft\Boot\zh-TW 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 10.07.2015 09:25 63.840 bootmgfw.efi.mui 10.07.2015 09:25 63.840 bootmgr.efi.mui 10.07.2015 09:25 42.336 memtest.efi.mui 3 Datei(en), 170.016 Bytes Verzeichnis von Y:\EFI\Microsoft\Recovery 23.09.2015 17:08 <DIR> . 23.09.2015 17:08 <DIR> .. 23.09.2015 17:08 12.288 BCD 1 Datei(en), 12.288 Bytes Verzeichnis von Y:\Recovery\Logs 22.09.2015 15:30 72 BootUX (1).sqml 22.09.2015 15:30 120 BootUX (2).sqml 22.09.2015 15:31 120 BootUX (3).sqml 22.09.2015 15:31 72 BootUX (4).sqml 22.09.2015 15:30 1.216 Reload.xml 5 Datei(en), 1.600 Bytes Verzeichnis von Y:\Temp 20.09.2015 23:40 <DIR> . 20.09.2015 23:40 <DIR> .. 22.09.2015 15:31 2.128 bcdinfo.txt 20.09.2015 23:40 4 bootfailure.txt 22.09.2015 15:31 4.872 disklayout.txt 22.09.2015 15:31 7.024 SrtTrail.log 22.09.2015 15:31 2.820 SrtTrail.txt 5 Datei(en), 16.848 Bytes Anzahl der angezeigten Dateien: 229 Datei(en), 43.118.655 Bytes 264 Verzeichnis(se), 41.865.216 Bytes frei ========= Ende von CMD: ========= ========= bootrec.exe /scanos ========= ��A l l e D a t e n t r � g e r w e r d e n n a c h W i n d o w s - I n s t a l l a t i o n e n d u r c h s u c h t . B i t t e w a r t e n , d i e s k a n n e i n i g e Z e i t i n A n s p r u c h n e h m e n . . . D i e S u c h e n a c h W i n d o w s - I n s t a l l a t i o n e n w a r e r f o l g r e i c h . G e s a m t a n z a h l d e r i d e n t i f i z i e r t e n W i n d o w s - I n s t a l l a t i o n e n : 0 D e r V o r g a n g w u r d e a b g e s c h l o s s e n . ========= Ende von CMD: ========= = = = = E n d e v o m F i x l o g 2 3 : 2 1 : 2 3 = = = = Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:15-09-2015 durchgeführt von SYSTEM auf MININT-K7TVD48 (24-09-2015 23:22:33) Gestartet von D:\ Platform: Windows 10 Home (X86) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 Start-Modus: Recovery Standard: ControlSet001 ACHTUNG!:=====> Wenn das System startfähig ist sollte FRST im normalen oder abgesicherten Modus ausgeführt werden, um ein vollständiges Ergebnis zu erhalten. Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12214528 2015-06-24] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2009-12-09] (Intel Corporation) HKLM\...\Run: [PaperPort PTD] => C:\Program Files\Nuance\PaperPort\pptd40nt.exe [30568 2011-08-13] (Nuance Communications, Inc.) HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [981688 2015-04-29] (Microsoft Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-05-23] (NVIDIA Corporation) HKLM\...\Run: [PDFPrint] => C:\Program Files\pdf24\pdf24.exe [193568 2014-10-13] (Geek Software GmbH) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCui.exe [984064 2015-07-10] (Microsoft Corporation) HKLM\...\Run: [LifeCam] => "C:\Program Files\Microsoft LifeCam\LifeExp.exe" HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) HKU\Marc\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [22344224 2015-07-29] (Google) HKU\Marc\...\Run: [HP Officejet 6500 E710n-z (NET)] => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\ScanToPCActivationApp.exe [1837672 2012-10-17] (Hewlett-Packard Co.) HKU\Marc\...\Run: [GoogleChromeAutoLaunch_DEC2D89A3B6F06ADCC4F89EA2A899238] => C:\Program Files\Google\Chrome\Application\chrome.exe [815944 2015-09-12] (Google Inc.) HKU\Marc\...\Run: [C26DEC9345A6A39B217C381C04EA556C2DE11981._service_run] => C:\Program Files\Google\Chrome\Application\chrome.exe [815944 2015-09-12] (Google Inc.) HKU\Marc\...\Run: [RoboForm] => C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110160 2015-06-19] (Siber Systems) HKU\Marc\...\Run: [Dropbox Update] => C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.) HKU\Marc\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [53737488 2015-08-07] (Skype Technologies S.A.) HKU\Marc\...\RunOnce: [Uninstall C:\Users\Marc\AppData\Local\Microsoft\OneDrive\17.3.5930.0814] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Marc\AppData\Local\Microsoft\OneDrive\17.3.5930.0814" HKU\_pixelx_backup_\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun HKU\_pixelx_backup_\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [515072 2015-07-10] (Microsoft Corporation) Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2015-02-16] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation) Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2010-12-12] ShortcutTarget: Dropbox.lnk -> C:\windows\system32\config\systemprofile\AppData\Roaming\Dropbox\bin\Dropbox.exe (Keine Datei) Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PhraseExpress.lnk [2011-11-16] ShortcutTarget: PhraseExpress.lnk -> C:\Program Files\PhraseExpress\phraseexpress.exe (Bartels Media GmbH) Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tintenwarnungen überwachen - HP Officejet 6500 E710n-z (WLAN).lnk [2015-08-03] ShortcutTarget: Tintenwarnungen überwachen - HP Officejet 6500 E710n-z (WLAN).lnk -> C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPStatusBL.dll (Hewlett-Packard Co.) ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S4 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [660576 2011-02-12] (Acronis) S2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [1875544 2015-08-11] (Microsoft Corporation) S4 EPSON_EB_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE [153600 2009-09-14] (SEIKO EPSON CORPORATION) S4 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [121856 2009-09-14] (SEIKO EPSON CORPORATION) S3 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) S2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [919184 2015-05-23] (NVIDIA Corporation) S4 GladFileMonSvc; C:\Program Files\Nuance\Nuance Cloud Connector\GladFileMonSvc.exe [29552 2011-08-02] (Gladinet, INC) S4 GsServer; C:\Program Files\Siber Systems\GoodSync\Gs-Server.exe [5651600 2014-04-18] () S2 HTCMonitorService; C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-08-04] (Nero AG) S2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22216 2015-04-30] (Microsoft Corporation) S2 MSSQL$DAVID; c:\Program Files\Microsoft SQL Server\MSSQL10_50.DAVID\MSSQL\Binn\sqlservr.exe [42884448 2010-04-03] (Microsoft Corporation) S3 MSSQLFDLauncher$DAVID; c:\Program Files\Microsoft SQL Server\MSSQL10_50.DAVID\MSSQL\Binn\fdlauncher.exe [28512 2010-04-03] (Microsoft Corporation) S4 NalServ; C:\Windows\system32\nalserv.exe [135168 2012-06-29] (Nalpeiron Ltd.) S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [284504 2015-04-30] (Microsoft Corporation) S4 NMSAccess; C:\Program Files\CDBurnerXP\NMSAccessU.exe [71096 2010-03-04] () S2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1893008 2015-05-23] (NVIDIA Corporation) S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [20694160 2015-05-23] (NVIDIA Corporation) S4 Ozeki Phone System XE; C:\Program Files\Ozeki\Ozeki Phone System XE\OzPhoneSystemService.exe [440320 2014-01-15] (Ozeki Ltd.) S4 PCSUITEINSPECTORSVC; C:\Program Files\MARKEMENT\PCSUITE INSPECTOR\inspectorsvc.exe [5108624 2011-02-10] (Markement) S2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1335344 2014-01-23] (pdfforge GmbH) S2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [856112 2014-01-23] (pdfforge GmbH) S3 PDFProFiltSrvPP; C:\Program Files\Nuance\PaperPort\PDFProFiltSrvPP.exe [138600 2011-08-13] (Nuance Communications, Inc.) S4 pixelx_backup; c:\Program Files\PixelX\Backup\bin\backupService-pixx.exe [18536 2012-06-13] () S3 rpcapd; C:\Program Files\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.) S4 SQLAgent$DAVID; c:\Program Files\Microsoft SQL Server\MSSQL10_50.DAVID\MSSQL\Binn\SQLAGENT.EXE [367456 2010-04-03] (Microsoft Corporation) S2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5611280 2015-08-07] (TeamViewer GmbH) S2 Unchecky; C:\Program Files\Unchecky\bin\unchecky_svc.exe [163576 2015-08-04] (RaMMicHaeL) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [277760 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23264 2015-07-10] (Microsoft Corporation) S3 wxpSvc; C:\Program Files\webcamXP 5\wService.exe [5023744 2011-07-27] (Moonware Studios) S4 WysePocketCloud; C:\Program Files\Wyse\PocketCloud Windows Companion\PocketCloudService.exe [191488 2012-11-05] () S4 WyseRemoteAccess; C:\Program Files\Wyse\PocketCloud Windows Companion\WyseRemoteAccess.exe [1436160 2012-11-05] (Wyse Technology.) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 acedrv11; C:\Windows\system32\drivers\acedrv11.sys [295432 2010-01-20] (Protect Software GmbH) S1 CbFs; C:\Windows\system32\drivers\cbfs.sys [147416 2010-12-18] (EldoS Corporation) S3 cpudrv; C:\Program Files\SystemRequirementsLab\cpudrv.sys [11336 2011-06-02] () S3 FreshIO; C:\Program Files\PC-TOOLS\FreshDiagnose\FreshIO.sys [2410 2004-10-26] () S0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () S3 LcUvcUpper; C:\Windows\system32\DRIVERS\LcUvcUpper.sys [30840 2015-02-09] (Microsoft Corporation) S0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [245096 2015-03-04] (Microsoft Corporation) S2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18576 2015-05-23] (NVIDIA Corporation) S3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad32v.sys [32912 2015-04-03] (NVIDIA Corporation) S4 RsFx0150; C:\Windows\System32\DRIVERS\RsFx0150.sys [240608 2010-04-03] (Microsoft Corporation) S3 rt640x86; C:\Windows\System32\drivers\rt640x86.sys [492032 2015-07-10] (Realtek ) S3 StarOpen; C:\Windows\System32\Drivers\StarOpen.sys [7168 2009-11-12] () S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [25984 2010-12-03] (The OpenVPN Project) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [31744 2015-07-10] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [37400 2015-07-10] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [245600 2015-07-10] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [97632 2015-07-10] (Microsoft Corporation) S3 WUDFWpdMtp; C:\Windows\System32\drivers\WUDFRd.sys [161792 2015-07-10] (Microsoft Corporation) S4 idsvc; kein ImagePath S5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [30208 2015-07-10] (Microsoft Corporation) S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] S4 wpcsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-09-23 16:53 - 2015-09-23 16:53 - 00003072 _____ C:\Windows\System32\umstartup.etl 2015-09-21 15:30 - 2015-09-24 23:21 - 00000000 ____D C:\FRST 2015-09-20 22:30 - 2015-09-20 22:31 - 00000000 ___HD C:\$SysReset 2015-09-19 11:26 - 2015-09-23 22:04 - 257207003 _____ C:\Windows\MEMORY.DMP 2015-09-18 13:57 - 2015-09-23 17:59 - 00000000 _____ C:\Recovery.txt 2015-09-17 23:03 - 2015-09-17 23:03 - 00016148 _____ C:\Windows\System32\MARC-OFFICE_Marc_HistoryPrediction.bin 2015-09-15 22:43 - 2015-09-15 22:43 - 00000000 ____D C:\Program Files\StickRoot 2015-09-15 22:34 - 2015-09-15 22:38 - 88173384 _____ (Buhl Data Service GmbH) C:\Users\Marc\Downloads\WISOFinanz365.exe 2015-09-14 14:03 - 2015-09-17 11:30 - 05961160 _____ (AVAST Software) C:\Users\Marc\Desktop\avastclear.exe 2015-09-14 14:02 - 2015-09-14 14:02 - 00000000 ____D C:\Program Files\Simple Photo Editor 2015-09-14 13:55 - 2015-09-14 13:56 - 00000000 ____D C:\Users\Marc\Downloads\SimplePhotoEditor13-n6jw2a 2015-09-14 13:43 - 2015-09-14 13:43 - 10474363 _____ C:\Users\Marc\Downloads\SimplePhotoEditor13-n6jw2a.zip 2015-09-14 03:22 - 2015-09-14 03:22 - 00000000 ___RD C:\Program Files\Skype 2015-09-14 03:22 - 2015-09-14 03:22 - 00000000 ____D C:\Program Files\Common Files\Skype 2015-09-14 03:07 - 2015-09-14 03:07 - 00016148 _____ C:\Windows\System32\MARC_Marc_HistoryPrediction.bin 2015-09-10 13:00 - 2015-09-02 03:04 - 00069208 _____ (Microsoft Corporation) C:\Windows\System32\acmigration.dll 2015-09-10 13:00 - 2015-09-02 01:31 - 02985984 _____ (Microsoft Corporation) C:\Windows\System32\win32kfull.sys 2015-09-10 13:00 - 2015-09-02 01:30 - 01134080 _____ (Microsoft Corporation) C:\Windows\System32\win32kbase.sys 2015-09-10 13:00 - 2015-08-27 06:59 - 02880032 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2015-09-10 13:00 - 2015-08-27 06:54 - 00541248 _____ (Microsoft Corporation) C:\Windows\System32\fontdrvhost.exe 2015-09-10 13:00 - 2015-08-27 06:23 - 19324416 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2015-09-10 13:00 - 2015-08-27 06:23 - 00303104 _____ (Adobe Systems Incorporated) C:\Windows\System32\atmfd.dll 2015-09-10 13:00 - 2015-08-27 06:19 - 00822272 _____ (Microsoft Corporation) C:\Windows\System32\schedsvc.dll 2015-09-10 13:00 - 2015-08-27 06:16 - 18806272 _____ (Microsoft Corporation) C:\Windows\System32\edgehtml.dll 2015-09-10 13:00 - 2015-08-27 06:16 - 02153472 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll 2015-09-10 13:00 - 2015-08-27 06:16 - 01612288 _____ (Microsoft Corporation) C:\Windows\System32\Windows.UI.Immersive.dll 2015-09-10 13:00 - 2015-08-27 06:12 - 00650752 _____ (Microsoft Corporation) C:\Windows\System32\jscript.dll 2015-09-10 13:00 - 2015-08-27 06:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2015-09-10 13:00 - 2015-08-27 06:11 - 00484352 _____ (Microsoft Corporation) C:\Windows\System32\SettingSync.dll 2015-09-10 13:00 - 2015-08-27 06:11 - 00157696 _____ (Microsoft Corporation) C:\Windows\System32\Windows.UI.PicturePassword.dll 2015-09-10 13:00 - 2015-08-27 06:11 - 00139776 _____ (Microsoft Corporation) C:\Windows\System32\shacct.dll 2015-09-10 13:00 - 2015-08-27 06:10 - 00490496 _____ (Microsoft Corporation) C:\Windows\System32\winlogon.exe 2015-09-10 13:00 - 2015-08-27 06:09 - 11262464 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2015-09-10 13:00 - 2015-08-27 06:08 - 00037376 _____ (Adobe Systems) C:\Windows\System32\atmlib.dll 2015-08-31 13:05 - 2015-08-20 06:25 - 06265168 _____ (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe 2015-08-31 13:05 - 2015-08-20 06:22 - 00549160 _____ (Microsoft Corporation) C:\Windows\System32\ci.dll 2015-08-31 13:05 - 2015-08-20 06:16 - 20857848 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll 2015-08-31 13:05 - 2015-08-20 05:46 - 00135680 _____ (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe 2015-08-31 13:05 - 2015-08-20 05:41 - 00165888 _____ (Microsoft Corporation) C:\Windows\System32\EnterpriseModernAppMgmtCSP.dll 2015-08-31 13:05 - 2015-08-20 05:35 - 01829376 _____ (Microsoft Corporation) C:\Windows\System32\wuaueng.dll 2015-08-31 13:05 - 2015-08-18 08:27 - 01771592 _____ C:\Windows\System32\CoreUIComponents.dll 2015-08-31 13:05 - 2015-08-18 08:26 - 00284000 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\USBXHCI.SYS 2015-08-31 13:05 - 2015-08-18 08:24 - 00963920 _____ (Microsoft Corporation) C:\Windows\System32\LicenseManager.dll 2015-08-31 13:05 - 2015-08-18 08:14 - 00192864 _____ (Microsoft Corporation) C:\Windows\System32\ActionQueue.dll 2015-08-31 13:05 - 2015-08-18 07:49 - 00274432 _____ (Microsoft Corporation) C:\Windows\System32\NetSetupShim.dll 2015-08-31 13:05 - 2015-08-18 07:48 - 00387584 _____ (Microsoft Corporation) C:\Windows\System32\WlanMediaManager.dll 2015-08-31 13:05 - 2015-08-18 07:47 - 01507840 _____ (Microsoft Corporation) C:\Windows\System32\NetworkMobileSettings.dll 2015-08-31 13:05 - 2015-08-18 07:41 - 01161216 _____ (Microsoft Corporation) C:\Windows\System32\aitstatic.exe 2015-08-31 13:05 - 2015-08-18 07:40 - 00675328 _____ (Microsoft Corporation) C:\Windows\System32\modernexecserver.dll 2015-08-31 13:05 - 2015-08-18 07:38 - 01875968 _____ (Microsoft Corporation) C:\Windows\System32\wlansvc.dll 2015-08-31 13:05 - 2015-08-18 07:36 - 01226752 _____ (Microsoft Corporation) C:\Windows\System32\wcnwiz.dll 2015-08-31 13:05 - 2015-08-18 07:35 - 00100864 _____ (Microsoft Corporation) C:\Windows\System32\dafWCN.dll 2015-08-31 13:05 - 2015-08-18 07:35 - 00100352 _____ (Microsoft Corporation) C:\Windows\System32\WcnApi.dll 2015-08-31 13:05 - 2015-08-18 07:35 - 00095744 _____ (Microsoft Corporation) C:\Windows\System32\fdWCN.dll 2015-08-31 13:05 - 2015-08-18 07:35 - 00041984 _____ (Microsoft Corporation) C:\Windows\System32\WcnNetsh.dll 2015-08-31 13:05 - 2015-08-18 07:34 - 00129024 _____ (Microsoft Corporation) C:\Windows\System32\NetSetupSvc.dll 2015-08-31 13:05 - 2015-08-18 07:34 - 00037376 _____ (Microsoft Corporation) C:\Windows\System32\wfdprov.dll 2015-08-31 13:05 - 2015-08-18 07:33 - 00063488 _____ (Microsoft Corporation) C:\Windows\System32\BthRadioMedia.dll 2015-08-31 13:05 - 2015-08-18 07:31 - 01917440 _____ (Microsoft Corporation) C:\Windows\System32\AppXDeploymentServer.dll 2015-08-31 13:05 - 2015-08-18 07:30 - 00251904 _____ (Microsoft Corporation) C:\Windows\System32\vaultsvc.dll 2015-08-31 13:05 - 2015-08-18 07:29 - 01593344 _____ (Microsoft Corporation) C:\Windows\System32\dwmcore.dll 2015-08-31 13:05 - 2015-08-18 07:26 - 01499136 _____ (Microsoft Corporation) C:\Windows\System32\AppXDeploymentExtensions.dll 2015-08-31 13:05 - 2015-08-18 07:26 - 00921088 _____ (Microsoft Corporation) C:\Windows\System32\reseteng.dll 2015-08-31 13:05 - 2015-08-18 07:26 - 00195584 _____ (Microsoft Corporation) C:\Windows\System32\PackageStateRoaming.dll 2015-08-31 13:05 - 2015-08-18 05:42 - 00006631 _____ C:\Windows\System32\ResPriHMImageList 2015-08-31 13:05 - 2015-08-18 05:42 - 00006313 _____ C:\Windows\System32\ResPriImageList 2015-08-28 15:51 - 2015-08-31 12:52 - 00000000 ____D C:\Program Files\Mozilla Firefox4 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\Program Files\StarMoney Business 6.0 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\fd475986ba69459cf58af3cafe7f 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\f3e618f48a956588f339b9cb 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\f30cdda5e2f96065d81513e4 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\dcc9864042f7035380ba96d87e 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\d6d61df0030aecf35dc977d7365fba 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\d676c1c9f47d3bfded378f3a3ba0fb 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\cdcff45c5cb1dd0bc1b723f93d8a 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\c53e3aa6024017885aedaffdc099 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\c3a510b96a13ad09dcb155ea 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\aae0fb9e97b1bddcdd0f0c 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\aa930393358054721c7ccf 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\a41d91fab70384bd9c1ce7009b 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\9b6de4c1acca1def9b1b7570 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\8a92888d5791210d239ace 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\74a62a4e311802a86dbfc29096 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\70813f22ebb699848a 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\5b01a7830f33e4bad2e1b97a 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\5a56b3996769250763fac1 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\3603861004cea182b51f107359a369 2015-08-27 12:33 - 2015-08-27 12:33 - 00000000 _____ C:\32d32f2fe5dc28c15a6763 2015-08-27 09:26 - 2015-08-27 09:26 - 00000000 ____D C:\Users\Marc\AppData\Roaming\FireShot ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-09-23 17:08 - 2015-07-10 09:28 - 00028672 _____ C:\Windows\System32\config\BCD-Template 2015-09-20 22:31 - 2015-08-01 12:27 - 00000000 ___DC C:\Windows\Panther 2015-09-18 13:57 - 2015-08-01 12:27 - 00000000 __SHD C:\Recovery 2015-09-18 13:57 - 2015-07-10 09:28 - 00000000 ____D C:\Windows\System32\LogFiles 2015-09-18 12:53 - 2015-08-01 11:34 - 00000000 ____D C:\ProgramData\NVIDIA 2015-09-18 12:44 - 2015-07-10 09:28 - 00000000 ____D C:\Windows\System32\sru 2015-09-17 23:04 - 2015-07-10 07:59 - 00524288 ___SH C:\Windows\System32\config\BBI 2015-09-17 23:03 - 2014-11-21 14:12 - 00000000 ____D C:\Users\Marc\OneDrive 2015-09-17 23:03 - 2010-06-07 10:07 - 00000000 ____D C:\Users\Marc\Documents\PhraseExpress 2015-09-17 22:51 - 2010-05-30 14:11 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Skype 2015-09-17 22:33 - 2010-05-03 18:04 - 00000275 _____ C:\Windows\WindowsUpdate.log 2015-09-17 17:37 - 2014-10-16 09:24 - 00000000 ____D C:\Users\Marc\Documents\WISO Mein Geld 2015-09-17 17:04 - 2015-07-10 09:28 - 00000000 ____D C:\Windows\Microsoft.NET 2015-09-17 16:36 - 2014-09-11 09:35 - 00824832 ___SH C:\Users\Marc\Desktop\Thumbs.db 2015-09-17 16:23 - 2010-05-27 07:04 - 00000000 ____D C:\Fewo24 2015-09-17 15:32 - 2013-11-27 23:07 - 00002259 _____ C:\Windows\epplauncher.mif 2015-09-17 13:33 - 2015-07-10 09:28 - 00000000 ____D C:\Windows\AppReadiness 2015-09-17 11:51 - 2010-12-12 00:39 - 00000000 ___RD C:\Users\Marc\Documents\My Dropbox 2015-09-17 11:50 - 2010-12-12 00:38 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Dropbox 2015-09-17 11:33 - 2015-08-01 11:29 - 00472160 _____ C:\Windows\PFRO.log 2015-09-15 23:23 - 2015-08-01 11:36 - 02212484 _____ C:\Windows\System32\PerfStringBackup.INI 2015-09-15 22:49 - 2014-10-16 09:23 - 00000000 ____D C:\Users\Marc\AppData\Local\Buhl Data Service GmbH 2015-09-15 22:49 - 2010-08-23 14:53 - 00000000 ____D C:\ProgramData\Buhl Data Service GmbH 2015-09-15 22:48 - 2010-05-30 14:11 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Buhl Data Service GmbH 2015-09-15 22:42 - 2010-12-01 20:26 - 00000000 ____D C:\Program Files\Buhl 2015-09-15 16:20 - 2015-07-10 09:28 - 00000000 ____D C:\Windows\rescache 2015-09-15 02:40 - 2014-11-19 17:44 - 00000000 ____D C:\Program Files\Microsoft Office 15 2015-09-14 16:18 - 2010-07-31 10:31 - 00000000 ____D C:\Users\Marc\Documents\Fax 2015-09-14 14:53 - 2015-07-10 09:20 - 00000000 ____D C:\Windows\CbsTemp 2015-09-14 13:28 - 2015-08-01 11:36 - 00021692 _____ C:\Windows\iis.log 2015-09-14 03:22 - 2010-05-26 20:49 - 00000000 ____D C:\ProgramData\Skype 2015-09-14 03:02 - 2015-07-10 10:53 - 00396264 _____ C:\Windows\System32\FNTCACHE.DAT 2015-09-14 03:00 - 2015-07-10 14:16 - 00000000 ____D C:\Program Files\Windows Journal 2015-09-14 03:00 - 2015-07-10 09:28 - 00000000 ____D C:\Windows\System32\appraiser 2015-09-13 13:51 - 2013-12-02 15:16 - 00000000 ____D C:\Users\Marc\Documents\Papa 2015-09-13 01:08 - 2013-07-14 11:12 - 00000000 ____D C:\Windows\System32\MRT 2015-09-13 00:15 - 2010-05-30 14:10 - 00000000 ____D C:\Users\Marc\AppData\Local\Google 2015-09-07 10:19 - 2013-06-25 15:03 - 00000000 ____D C:\Users\Marc\Google Drive cramsmreh 2015-09-07 10:13 - 2014-11-03 13:55 - 00000000 ____D C:\TourCalculator 2015-08-31 12:53 - 2011-01-14 15:15 - 00000000 ____D C:\Program Files\TeamViewer 2015-08-31 12:52 - 2012-05-02 14:08 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2015-08-29 12:39 - 2010-05-31 10:41 - 00000000 ____D C:\Users\Marc\Documents\My PSP Files 2015-08-27 13:08 - 2015-07-10 10:53 - 00039566 _____ C:\Windows\setupact.log 2015-08-27 12:33 - 2012-12-02 18:47 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-27 12:33 - 2010-05-28 18:39 - 00000000 ____D C:\temp 2015-08-26 17:36 - 2010-02-11 13:48 - 132039072 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe Einige Dateien in TEMP: ==================== C:\Users\Marc\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp3p9zan.dll C:\Users\Marc\AppData\Local\Temp\unrar.dll ==================== Known DLLs (Nicht auf der Ausnahmeliste) ========================= [2015-07-10 09:24] - [2015-07-10 09:24] - 0339968 ____A (Microsoft Corporation) C:\Windows\System32\coml2.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\explorer.exe [2015-08-19 11:13] - [2015-08-11 10:40] - 4048808 ____A (Microsoft Corporation) B3F90790F991A5A21113B58EE50FA696 C:\Windows\System32\winlogon.exe [2015-09-10 13:00] - [2015-08-27 06:10] - 0490496 ____A (Microsoft Corporation) 10AF578C46EF469B3C2DDC0E4267D9E4 C:\Windows\System32\wininit.exe [2015-08-01 12:23] - [2015-08-01 12:23] - 0191144 ____A (Microsoft Corporation) 43A465F658A66CF051C443947420B3E8 C:\Windows\System32\svchost.exe [2015-07-10 09:24] - [2015-07-10 09:24] - 0035176 ____A (Microsoft Corporation) A412DEDAC6A1FF7BA06FEB3B6725495E C:\Windows\System32\services.exe [2015-07-10 09:24] - [2015-07-10 09:24] - 0365200 ____A (Microsoft Corporation) 48A5107E71E1F6581D739003191B4610 C:\Windows\System32\User32.dll [2015-07-10 09:24] - [2015-07-10 09:24] - 1263344 ____A (Microsoft Corporation) 07015CC43E9CFBF144807EC17E679053 C:\Windows\System32\userinit.exe [2015-07-10 09:24] - [2015-07-10 09:24] - 0026112 ____A (Microsoft Corporation) A89C18F5E6D8981D5E937B325290915A C:\Windows\System32\rpcss.dll [2015-07-10 09:24] - [2015-07-10 09:24] - 0725504 ____A (Microsoft Corporation) 34E26E472DB5C01FAD58809285DBC0A4 C:\Windows\System32\dnsapi.dll [2015-07-10 09:24] - [2015-07-10 09:24] - 0534064 ____A (Microsoft Corporation) BB5BBD0E4D04047585E4ED0F07AA51E7 C:\Windows\System32\Drivers\volsnap.sys [2015-07-10 09:24] - [2015-07-10 09:24] - 0342368 ____A (Microsoft Corporation) 12999D4773D8034431795440A3DF910A ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ============= ==================== Wiederherstellungspunkte ========================= ==================== BCD ================================ Windows-Start-Manager --------------------- Bezeichner {bootmgr} device partition=Y: path \boot\de-DE\bootmgr description Windows Boot Manager locale de-DE inherit {globalsettings} default {default} resumeobject {4c055d14-620d-11e5-b70c-e2ebebf48c03} displayorder {default} toolsdisplayorder {memdiag} timeout 30 Windows-Startladeprogramm ------------------------- Bezeichner {0888c55c-1748-11df-b055-eff9cb93f53d} Windows-Startladeprogramm ------------------------- Bezeichner {1b43167e-617f-11e5-b8aa-f812ffff1404} device ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{1b43167f-617f-11e5-b8aa-f812ffff1404} path \windows\system32\winload.exe description Windows Recovery Environment locale de-DE inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{1b43167f-617f-11e5-b8aa-f812ffff1404} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows-Startladeprogramm ------------------------- Bezeichner {default} device partition=C: path \Windows\system32\winload.exe description Windows 10 locale de-DE inherit {bootloadersettings} allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \Windows resumeobject {4c055d14-620d-11e5-b70c-e2ebebf48c03} nx OptIn bootmenupolicy Standard Wiederaufnahme aus dem Ruhezustand ---------------------------------- Bezeichner {4c055d14-620d-11e5-b70c-e2ebebf48c03} device partition=C: path \Windows\system32\winresume.exe description Windows Resume Application locale de-DE inherit {resumeloadersettings} allowedinmemorysettings 0x15000075 filepath \hiberfil.sys bootmenupolicy Standard Windows-Speichertestprogramm ---------------------------- Bezeichner {memdiag} device partition=Y: path \boot\memtest.exe description Windows-Speicherdiagnose locale de-DE inherit {globalsettings} badmemoryaccess Yes EMS-Einstellungen ----------------- Bezeichner {emssettings} bootems No Debuggereinstellungen --------------------- Bezeichner {dbgsettings} debugtype Serial debugport 1 baudrate 115200 RAM-Defekte ----------- Bezeichner {badmemory} Globale Einstellungen --------------------- Bezeichner {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Startladeprogramm-Einstellungen ------------------------------- Bezeichner {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisoreinstellungen ----------------------- Bezeichner {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Einstellungen zur Ladeprogrammfortsetzung ----------------------------------------- Bezeichner {resumeloadersettings} inherit {globalsettings} Ger„teoptionen -------------- Bezeichner {1b43167f-617f-11e5-b8aa-f812ffff1404} description Windows Recovery ramdisksdidevice partition=C: ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Memory info =========================== Prozentuale Nutzung des RAM: 21% Installierter physikalischer RAM: 4087.11 MB Verfügbarer physikalischer RAM: 3213.45 MB Summe virtueller Speicher: 4087.11 MB Verfügbarer virtueller Speicher: 3257.8 MB ==================== Laufwerke ================================ Drive c: (Festplatte) (Fixed) (Total:905.41 GB) (Free:630.61 GB) NTFS Drive d: (PARAGON) (Removable) (Total:7.35 GB) (Free:6.83 GB) FAT32 Drive f: (Recover) (Fixed) (Total:25 GB) (Free:17.01 GB) NTFS Drive x: (Boot) (Fixed) (Total:0.5 GB) (Free:0.49 GB) NTFS Drive y: () (Fixed) (Total:0.1 GB) (Free:0.04 GB) NTFS ==>[System mit Startkomponenten (eingeholt von lesen Laufwerk)] ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 2BD2C32A) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=905.4 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=25 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=1 GB) - (Type=12) ======================================================== Disk: 1 (MBR Code: Windows 7 or Vista) (Size: 7.5 GB) (Disk ID: 438CA2E6) Partition 1: (Active) - (Size=7.5 GB) - (Type=07 NTFS) LastRegBack: 2015-09-11 13:05 ==================== Ende vom FRST.txt ============================ |
25.09.2015, 19:18 | #35 |
| Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] Bin ja kein Helfer oder so, aber mische mich dennoch kurz ein: Weshalb probiert ihr das Problem unterhalb seiner Wurzel anzupacken? 0x74 BAD_SYSTEM_CONFIG_INFO deutet darauf hin, dass wohl die Datei \systemroot\System32\config\SYSTEM beschädigt ist. Sache vom Kernel (Konfigurationsmanager, CmXxx) und nicht vom Bootloader. Dass der funktioniert, sieht man ja. Ansonsten würde kaum der Kernel geladen werden, und nur der Kernel (bzw. OS-Loader) kann Bluescreens erzeugen. Daher: Im oben erwähnten Verzeichnis befindet sich (sollte) ein Ordner \regback, mit den wichtigsten Dateien darin. Benenne die aktuelle "SYSTEM" mal um in "SYSTEM_CORRUPT" und kopiere die hoffentlich funktionierende "SYSTEM" aus dem \RegBack-Verezichnis in das Config-Verzeichnis. Viel Erfolg! Grüsse - Microwave |
25.09.2015, 21:08 | #36 |
/// Malwareteam | Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] Hi, danke für deinen Input Microwave Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter cmd: bcdboot C:\Windows /l de-DE /s Y: /f ALL cmd: dir Y:\ /s LastRegBack: 2015-09-11 13:05
Das Tool erstellt eine Fixlog.txt auf deinem USB Stick. Poste den Inhalt bitte hier. Danach bitte mehrfach neustarten und ggf. die automatische Reparatur laufen lassen. Wenn Microwave recht hat, sollte es dann behoben sein. @microwave: Wenn das funktoniert... Kriegst nen Lastwagen Kekse Geändert von burningice (25.09.2015 um 21:17 Uhr) |
25.09.2015, 23:59 | #37 |
| Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] Ihr werdet's nicht glauben.... ich poste von meinem PC !!! Ja, von dem Windows10 PC der die Probleme hatte!!!! ;-) Also, es war wohl in der Tat so wie Microwave gesagt hatte!! Trotzdem einen RIESEN Dank an burningice, der mir tagelang geholfen hat!!! Das ist wirklich aussergewöhnlich, in anderen Foren haben die nach 20 Minuten aufgegeben!! Und burningice hat sich SEHR bemüht, alles versucht!! Toll !!! Also, ich habe gemacht wie befohlen mit der neuen fixlist. Der PC hat dann erst mal wieder den Fehler gegeben. Dann neu gestartet, da hat er unendlich lange gebraucht. Für mich schon ein gutes Zeichen. Dann, nach ca. 1-2 Minuten kam der Login-Screen (nach viel Rattern auf der HDD). Der Login Screen hat leider immer meinen "lokalen" username, so daß dieser irgendwie nicht das richtige password findet. Nach langem Warten kam dann die Auswahl der logins und ich konnte mich mit meinem Microsoft login anmelden. Das Hochbooten dauerte dann nochmal mindestens 3-4 Minuten, wenn nicht sogar länger. aber dann war alles da!!! So, erst mal VIELEN VIELEN Dank an burningice und microwave!! Toll hier. Hier im Forum fühle ich mich wohl und werde noch ein paar mehr posts abgeben! ;-)) Was nun? Kann ich den PC ausmachen? Bootet er wieder hoch? Heute Nacht lasse ich ihn erst mal an. Was ist mit der neuen Festplatte, die in ein paar Tagen da ist. Erst mal liegen lassen? Wieso kann ich meinen lokalen username nicht löschen, so daß der PC nie mit meinem Microsoft username hochfährt? Ok, das ist ein neuer Post... werde ich machen. :-) Ich bin erst mal überglücklich. Brauchst du noch die fixlog ?? Was muss ich sonst noch tun? Danke und schönes Wochenende euch allen!!! Ihr habt mir SEHR geholfen!! |
26.09.2015, 11:02 | #38 |
/// Malwareteam | Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] wow super das freut mich Ja mich würde interessieren, wie deine bootpartiton jetzt aussieht Und es ärgert mich, dass ich da nicht (selber) bzw.früher drauf kam, weil die Idee hatte ich schon vor dem ersten Post aber irgendwas hatte mir an dem bootloader missfallen, obwohl das Argument dass nur der Kernel einen solchen Bluescreen bringen kann, natürlich stimmt Danke dass du so lange mitgemacht hast ich habe während dem Thread hier viel gelernt Zu deinen Fragen: ja normal sollte er wieder booten. Bitte erstelle mal als erstes jetzt einen Systemwiederherstellungspunkt Den PC mal länger stehen zu lassen, ist im Prinzip nicht schlecht, da können die magischen Selbstheilungskräfte von Windows wirken haha (Windows frührt wenn der PC nicht benutzt wird diverse Wartungsarbeiten an sich durch) Wenn deine Installation so passt, kannst du mit einem Image bequem dann die Festplatte wechseln Okay bevor wir mit den anderen Problemchen schauen, gucken wir mal, ob es sich lohnt auf deiner momentanen Platte weiter zu arbeiten. 1. Schritt Systemwiederherstellungspunkt erstellen 2. Schritt Bitte mal dieser Anleitung folgen: Zustand der Festplatte herausfinden - so gehts - Anleitungen 3. Schritt Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
|
26.09.2015, 14:54 | #39 |
| Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] So, dann wollen wir mal. Zunächst Zustand der Festplatte. 27000 Betriebsstunden ist doch schon mal was, ne?! Code:
ATTFilter ---------------------------------------------------------------------------- CrystalDiskInfo 6.5.2 (C) 2008-2015 hiyohiyo Crystal Dew World : hxxp://crystalmark.info/ ---------------------------------------------------------------------------- OS : Windows 10 [10.0 Build 10240] (x86) Date : 2015/09/26 15:46:47 -- Controller Map ---------------------------------------------------------- + Intel(R) 5 Series/3400 Series SATA AHCI Controller [ATA] - WDC WD10EADS-00M2B0 - HL-DT-ST DVDRAM GH22NS40 - Microsoft-Controller für Speicherplätze [SCSI] -- Disk List --------------------------------------------------------------- (1) WDC WD10EADS-00M2B0 : 1000,2 GB [0/X/X, pd1] - wd ---------------------------------------------------------------------------- (1) WDC WD10EADS-00M2B0 ---------------------------------------------------------------------------- Model : WDC WD10EADS-00M2B0 Firmware : 01.00A01 Serial Number : WD-WCAV53707576 Disk Size : 1000,2 GB (8,4/137,4/1000,2/----) Buffer Size : 32767 KB Queue Depth : 32 # of Sectors : 1953525168 Rotation Rate : Unbekannt Interface : Serial ATA Major Version : ATA8-ACS Minor Version : ---- Transfer Mode : ---- | SATA/300 Power On Hours : 26810 Std. Power On Count : 2038 mal Temperature : 34 C (93 F) Health Status : Vorsicht Features : S.M.A.R.T., AAM, 48bit LBA, NCQ APM Level : ---- AAM Level : 80FEh [OFF] -- S.M.A.R.T. -------------------------------------------------------------- ID Cur Wor Thr RawValues(6) Attribute Name 01 200 200 _51 000000000000 Lesefehlerrate 03 112 108 _21 000000001CC6 Mittlere Anlaufzeit 04 _98 _98 __0 0000000007FE Start/Stopp-Zyklen der Spindel 05 200 200 140 000000000000 Wiederzugewiesene Sektoren 07 100 253 __0 000000000000 Suchfehler 09 _64 _64 __0 0000000068BA Betriebsstunden 0A 100 100 __0 000000000000 Misslungene Spindelanläufe 0B 100 100 __0 000000000000 Nnotwendige Rekalibrierungen 0C _98 _98 __0 0000000007F6 Geräte-Einschaltvorgänge C0 200 200 __0 000000000062 Ausschaltungsabbrüche C1 116 116 __0 00000003E23C Laden/Entladen-Zyklen C2 113 103 __0 000000000022 Temperatur C4 200 200 __0 000000000000 Wiederzuweisungsereignisse C5 200 200 __0 000000000004 Aktuell ausstehende Sektoren C6 200 200 __0 000000000003 Nicht korrigierbare Sektoren C7 200 200 __0 000000000000 UltraDMA-CRC-Fehler C8 200 200 __0 000000000004 Schreibfehlerrate -- IDENTIFY_DEVICE --------------------------------------------------------- 0 1 2 3 4 5 6 7 8 9 000: 427A 3FFF C837 0010 0000 0000 003F 0000 0000 0000 010: 2020 2020 2057 442D 5743 4156 3533 3730 3735 3736 020: 0000 FFFF 0032 3031 2E30 3041 3031 5744 4320 5744 030: 3130 4541 4453 2D30 304D 3242 3020 2020 2020 2020 040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00 050: 4001 0000 0000 0007 3FFF 0010 003F FC10 00FB 0110 060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000 070: 0000 0000 0000 0000 0000 001F 1706 0000 0044 0040 080: 01FE 0000 746B 7F61 4123 7469 BC41 4123 407F 0068 090: 0068 0000 FFFE 0000 80FE 0000 0000 0000 0000 0000 100: 6DB0 7470 0000 0000 0000 0000 0000 0000 5001 4EE2 110: 58E8 051C 0000 0000 0000 0000 0000 0000 0000 401C 120: 401C 0000 0000 0000 0000 0000 0000 0000 0021 0000 130: 0000 0000 0000 16CE 0000 0000 0000 0000 0000 0000 140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000 150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 200: 0000 0000 0000 0000 0000 0000 3037 0000 0000 0000 210: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 220: 0000 0000 101E 0000 0000 0000 0000 0000 0000 0000 230: 0000 0000 0000 0000 0001 1000 0000 0000 0000 0000 240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000 250: 0000 0000 0000 0000 0000 C6A5 -- SMART_READ_DATA --------------------------------------------------------- +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F 000: 10 00 01 2F 00 C8 C8 00 00 00 00 00 00 00 03 27 010: 00 70 6C C6 1C 00 00 00 00 00 04 32 00 62 62 FE 020: 07 00 00 00 00 00 05 33 00 C8 C8 00 00 00 00 00 030: 00 00 07 2E 00 64 FD 00 00 00 00 00 00 00 09 32 040: 00 40 40 BA 68 00 00 00 00 00 0A 32 00 64 64 00 050: 00 00 00 00 00 00 0B 32 00 64 64 00 00 00 00 00 060: 00 00 0C 32 00 62 62 F6 07 00 00 00 00 00 C0 32 070: 00 C8 C8 62 00 00 00 00 00 00 C1 32 00 74 74 3C 080: E2 03 00 00 00 00 C2 22 00 71 67 22 00 00 00 00 090: 00 00 C4 32 00 C8 C8 00 00 00 00 00 00 00 C5 32 0A0: 00 C8 C8 04 00 00 00 00 00 00 C6 30 00 C8 C8 03 0B0: 00 00 00 00 00 00 C7 32 00 C8 C8 00 00 00 00 00 0C0: 00 00 C8 08 00 C8 C8 04 00 00 00 00 00 00 00 00 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 160: 00 00 00 00 00 00 00 00 00 00 82 00 B0 4F 01 7B 170: 03 00 01 00 02 EB 05 00 00 00 00 00 00 00 00 00 180: 00 00 01 04 00 00 00 00 00 00 00 00 00 00 00 00 190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 C9 -- SMART_READ_THRESHOLD ---------------------------------------------------- +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F 000: 10 00 01 33 C8 C8 C8 C8 00 00 00 00 00 00 03 15 010: 00 00 00 00 00 00 00 00 00 00 04 00 00 00 00 00 020: 00 00 00 00 00 00 05 8C 00 00 00 00 00 00 00 00 030: 00 00 07 00 64 64 64 64 00 00 00 00 00 00 09 00 040: 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 00 00 050: 00 00 00 00 00 00 0B 00 00 00 00 00 00 00 00 00 060: 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 C0 00 070: 00 00 00 00 00 00 00 00 00 00 C1 00 00 00 00 00 080: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00 090: 00 00 C4 00 00 00 00 00 00 00 00 00 00 00 C5 00 0A0: 00 00 00 00 00 00 00 00 00 00 C6 00 02 01 00 00 0B0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00 0C0: 00 00 C8 00 C8 C8 C8 C8 00 00 00 00 00 00 00 00 0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 EA dann kommt hier die neue FRST.txt (nach Update des Programms) Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:23-09-2015 durchgeführt von Marc (Administrator) auf MARC (26-09-2015 15:39:18) Gestartet von L:\ Geladene Profile: Marc (Verfügbare Profile: Marc & DefaultAppPool) Platform: Microsoft Windows 10 Home (X86) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Nero AG) C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Nalpeiron Ltd.) C:\Windows\System32\nlssrv32.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (pdfforge GmbH) C:\Program Files\PDF Architect\HelperService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (RaMMicHaeL) C:\Program Files\Unchecky\bin\unchecky_svc.exe (TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer.exe (RaMMicHaeL) C:\Program Files\Unchecky\bin\unchecky_bg.exe (TeamViewer GmbH) C:\Program Files\TeamViewer\tv_w32.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Google) C:\Program Files\Google\Drive\googledrivesync.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Siber Systems) C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe (Dropbox, Inc.) C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe (Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe (Google) C:\Program Files\Google\Drive\googledrivesync.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Dropbox, Inc.) C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe (Bartels Media GmbH) C:\Program Files\PhraseExpress\phraseexpress.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicatorCom.exe (Microsoft Corporation) C:\Windows\System32\cmd.exe (Siber Systems Inc.) C:\Program Files\Siber Systems\AI RoboForm\Chrome\rf-chrome-nm-host.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX86\officeclicktorun.exe (Geek Software GmbH) C:\Program Files\pdf24\pdf24.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.13251.0_x86__8wekyb3d8bbwe\Video.UI.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox4\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox4\plugin-container.exe (Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe (Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12214528 2015-06-24] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2009-12-09] (Intel Corporation) HKLM\...\Run: [PaperPort PTD] => C:\Program Files\Nuance\PaperPort\pptd40nt.exe [30568 2011-08-13] (Nuance Communications, Inc.) HKLM\...\Run: [AvastUI.exe] => "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [981688 2015-04-30] (Microsoft Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-05-23] (NVIDIA Corporation) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCui.exe [984064 2015-07-10] (Microsoft Corporation) HKLM\...\Run: [LifeCam] => "C:\Program Files\Microsoft LifeCam\LifeExp.exe" HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) HKLM\...\Run: [PDFPrint] => C:\Program Files\pdf24\pdf24.exe [220704 2015-09-14] (Geek Software GmbH) HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [22344224 2015-07-29] (Google) HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Run: [HP Officejet 6500 E710n-z (NET)] => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\ScanToPCActivationApp.exe [1837672 2012-10-17] (Hewlett-Packard Co.) HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Run: [GoogleChromeAutoLaunch_DEC2D89A3B6F06ADCC4F89EA2A899238] => C:\Program Files\Google\Chrome\Application\chrome.exe [815944 2015-09-12] (Google Inc.) HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Run: [C26DEC9345A6A39B217C381C04EA556C2DE11981._service_run] => C:\Program Files\Google\Chrome\Application\chrome.exe [815944 2015-09-12] (Google Inc.) HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Run: [RoboForm] => C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110160 2015-06-19] (Siber Systems) HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Run: [Dropbox Update] => C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.) HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [53737488 2015-08-07] (Skype Technologies S.A.) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-07-29] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-07-29] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-07-29] (Google) ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Marc\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll [2015-09-17] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Marc\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll [2015-09-17] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Marc\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll [2015-09-17] (Microsoft Corporation) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShell.dll Keine Datei ShellIconOverlayIdentifiers: [00Zecter] -> {D25B32FE-CB96-491A-98FF-AD59DA382D69} => C:\Program Files\Zecter\ZumoDrive\ShellExt.dll [2010-12-18] (Versionate Inc.) ShellIconOverlayIdentifiers: [01Zecter] -> {EB24CA6D-F315-4A81-AC1A-C79CFD77F3F5} => C:\Program Files\Zecter\ZumoDrive\ShellExt.dll [2010-12-18] (Versionate Inc.) ShellIconOverlayIdentifiers: [02Zecter] -> {B3C78E40-6B64-47C3-AE34-60B770881EB8} => C:\Program Files\Zecter\ZumoDrive\ShellExt.dll [2010-12-18] (Versionate Inc.) ShellIconOverlayIdentifiers: [03Zecter] -> {622AFE52-33F6-4D9F-9966-E0BC52D7D69D} => C:\Program Files\Zecter\ZumoDrive\ShellExt.dll [2010-12-18] (Versionate Inc.) ShellIconOverlayIdentifiers: [04Zecter] -> {855156F0-2A0F-11DE-8C30-0800200C9A66} => C:\Program Files\Zecter\ZumoDrive\ShellExt.dll [2010-12-18] (Versionate Inc.) ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => Keine Datei ShellIconOverlayIdentifiers: [GladinetIconOverlay] -> {3C3DC57A-7535-48AF-BB9E-C3576A4F34D0} => C:\Program Files\Nuance\Nuance Cloud Connector\GlOverlayIcon.dll [2011-08-02] (Gladinet, INC) ShellIconOverlayIdentifiers: [GladinetUploading] -> {959A18D3-9CC9-41e8-B76F-34ED9A89D4EA} => C:\Program Files\Nuance\Nuance Cloud Connector\GlOverlayIconU.dll [2011-08-02] (Gladinet, INC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PhraseExpress.lnk [2011-12-15] ShortcutTarget: PhraseExpress.lnk -> C:\Program Files\PhraseExpress\phraseexpress.exe (Bartels Media GmbH) Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2015-02-16] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2010-12-12] ShortcutTarget: Dropbox.lnk -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PhraseExpress.lnk [2011-11-16] ShortcutTarget: PhraseExpress.lnk -> C:\Program Files\PhraseExpress\phraseexpress.exe (Bartels Media GmbH) Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tintenwarnungen überwachen - HP Officejet 6500 E710n-z (WLAN).lnk [2015-08-03] ShortcutTarget: Tintenwarnungen überwachen - HP Officejet 6500 E710n-z (WLAN).lnk -> C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPStatusBL.dll (Hewlett-Packard Co.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{4ff2778b-9ed9-44c4-beb5-03f8f6425f9d}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{5bc26718-b470-4079-b238-331a195d0dde}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{f7e886d2-5827-4cf9-8cf6-8d1e773b9922}: [DhcpNameServer] 192.168.42.129 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-895905325-2879171232-1046163952-1008\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.de/ SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.myheritage.com?orig=ds&q={searchTerms} SearchScopes: HKLM -> {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = SearchScopes: HKU\S-1-5-21-895905325-2879171232-1046163952-1008 -> DefaultScope {BB8859F3-D31F-40DD-BE44-12CA5054A62B} URL = hxxps://it.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=523482&p={searchTerms} SearchScopes: HKU\S-1-5-21-895905325-2879171232-1046163952-1008 -> {3E311AE5-F9B1-45A9-BB04-7E0BF56CB2E3} URL = hxxp://www.google.de/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-895905325-2879171232-1046163952-1008 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = SearchScopes: HKU\S-1-5-21-895905325-2879171232-1046163952-1008 -> {BB8859F3-D31F-40DD-BE44-12CA5054A62B} URL = hxxps://it.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=523482&p={searchTerms} SearchScopes: HKU\S-1-5-21-895905325-2879171232-1046163952-1008 -> {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = hxxp://search.myheritage.com?orig=ds&q={searchTerms} BHO: Kein Name -> {0C37B053-FD68-456a-82E1-D788EE342E6F} -> Keine Datei BHO: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files\PDF Architect\PDFIEHelper.dll [2014-01-23] (pdfforge GmbH) BHO: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll [2011-06-30] (Zeon Corporation) BHO: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22] (Microsoft Corporation) BHO: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2015-06-19] (Siber Systems Inc.) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-08-12] (Oracle Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll Keine Datei BHO: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files\Evernote\Evernote\EvernoteIE.dll [2014-12-17] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files\Windows Live\Companion\companioncore.dll [2012-03-08] (Microsoft Corporation) BHO: ZeonIEEventHelper Class -> {DA986D7D-CCAF-47B2-84FE-BFA1549BEBF9} -> C:\Program Files\Nuance\PDFCreate\Bin\ZeonIEFavClient.dll [2011-03-26] (Zeon Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-12] (Oracle Corporation) BHO: Google Gears Helper -> {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} -> C:\Program Files\Google\Google Gears\Internet Explorer\0.5.36.0\gears.dll [2010-02-23] (Google Inc.) Toolbar: HKLM - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2015-06-19] (Siber Systems Inc.) Toolbar: HKLM - DocuCom PDF - {E3286BF1-E654-42FF-B4A6-5E111731DF6B} - C:\Program Files\Nuance\PDFCreate\Bin\ZeonIEFavClient.dll [2011-03-26] (Zeon Corporation) Toolbar: HKU\S-1-5-21-895905325-2879171232-1046163952-1008 -> &RoboForm Toolbar - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2015-06-19] (Siber Systems Inc.) Toolbar: HKU\S-1-5-21-895905325-2879171232-1046163952-1008 -> Kein Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Keine Datei Toolbar: HKU\S-1-5-21-895905325-2879171232-1046163952-1008 -> Kein Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - Keine Datei DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-06-08] (Microsoft Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\v0kwvltv.default-1385112210038 FF DefaultSearchUrl: hxxp://www.bing.com/search FF SearchEngineOrder.1: Microsoft (Bing) FF SelectedSearchEngine: Microsoft (Bing) FF Homepage: hxxp://www.bild.de/ FF Keyword.URL: hxxp://www.bing.com/search FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-09-26] () FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google) FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [Keine Datei] FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-12] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-12] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.3 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [Keine Datei] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-11-19] (Microsoft Corporation) FF Plugin: @microsoft.com/VirtualEarth3D,version=4.0 -> C:\Program Files\Virtual Earth 3D\ [2014-11-19] () FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-10-23] (NVIDIA Corporation) FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-10-23] (NVIDIA Corporation) FF Plugin: @protectdisc.com/NPPDLicenseHelper -> C:\Program Files\ProtectDisc\License Helper\NPPDLicenseHelper.dll [2008-02-22] () FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.28.13\npGoogleUpdate3.dll [Keine Datei] FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.28.13\npGoogleUpdate3.dll [Keine Datei] FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.) FF Plugin: ZEON/PDF,version=2.0 -> C:\Program Files\Nuance\PDF Viewer Plus\bin\nppdf.dll [Keine Datei] FF Plugin HKU\S-1-5-21-895905325-2879171232-1046163952-1008: @facebook.com/FBPlugin,version=1.0.3 -> C:\Users\Marc\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll Keine Datei FF Plugin HKU\S-1-5-21-895905325-2879171232-1046163952-1008: @tools.google.com/Google Update;version=3 -> C:\Users\Marc\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll [2011-08-08] (Google Inc.) FF Plugin HKU\S-1-5-21-895905325-2879171232-1046163952-1008: @tools.google.com/Google Update;version=9 -> C:\Users\Marc\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll [2011-08-08] (Google Inc.) FF Plugin HKU\S-1-5-21-895905325-2879171232-1046163952-1008: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Marc\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll Keine Datei FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2011-02-02] (Sun Microsystems, Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2008-06-11] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPPDLicenseHelper.dll [2008-02-22] () FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2010-05-31] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2010-05-31] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2010-05-31] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2010-05-31] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2010-05-31] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2010-05-31] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2010-05-31] (Apple Inc.) FF SearchPlugin: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\v0kwvltv.default-1385112210038\searchplugins\googlede.xml [2012-04-27] FF SearchPlugin: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\v0kwvltv.default-1385112210038\searchplugins\googleit.xml [2013-11-22] FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\MyHeritage.xml [2010-07-24] FF Extension: goo.gl lite - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\v0kwvltv.default-1385112210038\Extensions\goo.gl_lite@matthew.flaschen.gatech.edu [2015-05-30] FF Extension: FireShot - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\v0kwvltv.default-1385112210038\Extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba} [2015-06-07] FF Extension: FireFTP - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\v0kwvltv.default-1385112210038\Extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f} [2015-05-30] FF Extension: All-in-One Sidebar - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\v0kwvltv.default-1385112210038\Extensions\{097d3191-e6fa-4728-9826-b533d755359d}.xpi [2014-11-14] FF Extension: X-notifier - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\v0kwvltv.default-1385112210038\Extensions\{37fa1426-b82d-11db-8314-0800200c9a66}.xpi [2014-11-14] FF Extension: Evernote Web Clipper - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\v0kwvltv.default-1385112210038\Extensions\{E0B8C461-F8FB-49b4-8373-FE32E9252800}.xpi [2015-04-18] FF Extension: Print - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\v0kwvltv.default-1385112210038\Extensions\{f199da35-0a9a-4ce9-8f59-c68524deba93}.xpi [2015-05-30] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} [2010-05-26] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-05-26] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010-08-23] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2010-11-03] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} [2011-02-19] FF HKLM\...\Firefox\Extensions: [{000a9d1c-beef-4f90-9363-039d445309b8}] - C:\Program Files\Google\Google Gears\Firefox FF Extension: Google Gears - C:\Program Files\Google\Google Gears\Firefox [2010-05-28] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\Alwil Software\Avast5\WebRep\FF FF HKLM\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files\Siber Systems\AI RoboForm\Firefox FF Extension: RoboForm Toolbar for Firefox - C:\Program Files\Siber Systems\AI RoboForm\Firefox [2010-05-26] FF HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - C:\Program Files\Siber Systems\AI RoboForm\Firefox StartMenuInternet: FIREFOX.EXE - C:\Program Files\Mozilla Firefox4\firefox.exe Chrome: ======= CHR StartupUrls: Default -> "hxxp://search.conduit.com/?ctid=CT3321902&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SP84F4509E-8DA5-45FB-94AC-E1A6819EEDA4&SSPV=" CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\45.0.2454.93\PepperFlash\pepflashplayer.dll () CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\45.0.2454.93\ppGoogleNaClPluginChrome.dll => Keine Datei CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\45.0.2454.93\pdf.dll => Keine Datei CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll => Keine Datei CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin6.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.2) - C:\Program Files\QuickTime\plugins\npqtplugin7.dll (Apple Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL => Keine Datei CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL => Keine Datei CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll => Keine Datei CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll => Keine Datei CHR Plugin: (Java(TM) Platform SE 6 U35) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll => Keine Datei CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files\Microsoft\Office Live\npOLW.dll => Keine Datei CHR Plugin: (Protect Disc License Acquisition Plugin) - C:\Program Files\ProtectDisc\License Helper\NPPDLicenseHelper.dll () CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Unity Player) - C:\Users\Marc\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll => Keine Datei CHR Plugin: (Facebook Plugin) - C:\Users\Marc\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll => Keine Datei CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_110.dll => Keine Datei CHR Plugin: (Java Deployment Toolkit 6.0.350.10) - C:\Windows\system32\npdeployJava1.dll => Keine Datei CHR Profile: C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Drive) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-28] CHR Extension: (Jotform Notifier) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpdcoccpkmfifppefclifememfhakacb [2015-08-07] CHR Extension: (Quick Search for Google Drive™) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddebdlfmldojeofgkeocjdkloocegmae [2014-11-17] CHR Extension: (Firmao - CRM) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnplonnceaiimadpacehncoihhjbfmlo [2014-08-31] CHR Extension: (Chrome Web Developer Tools) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbmlldeibipeppiabbdjajcneipfbocm [2013-02-19] CHR Extension: (PageRank Status) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\fihfdmaoopkfhaemjfdlbcagbjgmmhgo [2015-02-07] CHR Extension: (Google Text & Tabellen Offline) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-04] CHR Extension: (In Google Drive speichern) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2014-11-17] CHR Extension: (Chrome to Mobile) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\idknbmbdnapjicclomlijcgfpikmndhd [2014-10-30] CHR Extension: (Zoho Vault) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\igkpcodhieompeloncfnbekccinhapdb [2015-02-02] CHR Extension: (Zoho CRM) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\kigppphkaknhndejgcmckacpipcioacn [2014-08-31] CHR Extension: (My Inventory Plus) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\kklcjaeiocglopikpglomokblcndlflj [2014-08-31] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-13] CHR Extension: (WhatsApp Web) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljmljimhhghliifeamgjolinmbikehbe [2015-02-21] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2014-11-06] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-28] CHR Extension: (SEO for Chrome) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\oangcciaeihlfmhppegpdceadpfaoclj [2014-08-31] CHR Extension: (Checker Plus for Gmail™) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2015-02-11] CHR Extension: (Sidekick by HubSpot) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiiaigjnkhngdbnoookogelabohpglmd [2014-08-30] CHR Extension: (Google Mail) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-08-31] CHR Extension: (RoboForm Password Manager) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob [2014-04-01] CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx <nicht gefunden> CHR HKLM\...\Chrome\Extension: [pnlccmojcmeohlpggmfnbbiapkmbliob] - C:\Program Files\Siber Systems\AI RoboForm\Chrome\rf-chrome.crx [2014-03-31] CHR HKU\S-1-5-21-895905325-2879171232-1046163952-1008\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Marc\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-05-01] CHR HKU\S-1-5-21-895905325-2879171232-1046163952-1008\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S4 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [660576 2011-02-12] (Acronis) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [1879640 2015-09-11] (Microsoft Corporation) S4 EPSON_EB_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE [153600 2009-09-14] (SEIKO EPSON CORPORATION) S4 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [121856 2009-09-14] (SEIKO EPSON CORPORATION) S3 FirebirdServerMAGIXInstance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®) [Datei ist nicht signiert] R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [919184 2015-05-23] (NVIDIA Corporation) S4 GladFileMonSvc; C:\Program Files\Nuance\Nuance Cloud Connector\GladFileMonSvc.exe [29552 2011-08-02] (Gladinet, INC) S4 GsServer; C:\Program Files\Siber Systems\GoodSync\Gs-Server.exe [5651600 2014-04-18] () R2 HTCMonitorService; C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-08-04] (Nero AG) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22216 2015-04-30] (Microsoft Corporation) S2 MSSQL$DAVID; c:\Program Files\Microsoft SQL Server\MSSQL10_50.DAVID\MSSQL\Binn\sqlservr.exe [42884448 2010-04-03] (Microsoft Corporation) S3 MSSQLFDLauncher$DAVID; c:\Program Files\Microsoft SQL Server\MSSQL10_50.DAVID\MSSQL\Binn\fdlauncher.exe [28512 2010-04-03] (Microsoft Corporation) S4 NalServ; C:\Windows\system32\nalserv.exe [135168 2012-06-29] (Nalpeiron Ltd.) [Datei ist nicht signiert] R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [284504 2015-04-30] (Microsoft Corporation) R2 nlsX86cc; C:\Windows\system32\nlssrv32.exe [66560 2012-06-29] (Nalpeiron Ltd.) [Datei ist nicht signiert] S4 NMSAccess; C:\Program Files\CDBurnerXP\NMSAccessU.exe [71096 2010-03-04] () R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1893008 2015-05-23] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [20694160 2015-05-23] (NVIDIA Corporation) S4 Ozeki Phone System XE; C:\Program Files\Ozeki\Ozeki Phone System XE\OzPhoneSystemService.exe [440320 2014-01-15] (Ozeki Ltd.) [Datei ist nicht signiert] S4 PCSUITEINSPECTORSVC; C:\Program Files\MARKEMENT\PCSUITE INSPECTOR\inspectorsvc.exe [5108624 2011-02-10] (Markement) R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1335344 2014-01-23] (pdfforge GmbH) S2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [856112 2014-01-23] (pdfforge GmbH) S3 PDFProFiltSrvPP; C:\Program Files\Nuance\PaperPort\PDFProFiltSrvPP.exe [138600 2011-08-13] (Nuance Communications, Inc.) S4 pixelx_backup; c:\Program Files\PixelX\Backup\bin\backupService-pixx.exe [18536 2012-06-13] () S3 rpcapd; C:\Program Files\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.) S4 SQLAgent$DAVID; c:\Program Files\Microsoft SQL Server\MSSQL10_50.DAVID\MSSQL\Binn\SQLAGENT.EXE [367456 2010-04-03] (Microsoft Corporation) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5611280 2015-08-07] (TeamViewer GmbH) R2 Unchecky; C:\Program Files\Unchecky\bin\unchecky_svc.exe [163576 2015-08-04] (RaMMicHaeL) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [277760 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23264 2015-07-10] (Microsoft Corporation) S3 wxpSvc; C:\Program Files\webcamXP 5\wService.exe [5023744 2011-07-27] (Moonware Studios) [Datei ist nicht signiert] S4 WysePocketCloud; C:\Program Files\Wyse\PocketCloud Windows Companion\PocketCloudService.exe [191488 2012-11-05] () [Datei ist nicht signiert] S4 WyseRemoteAccess; C:\Program Files\Wyse\PocketCloud Windows Companion\WyseRemoteAccess.exe [1436160 2012-11-05] (Wyse Technology.) [Datei ist nicht signiert] S2 avast! Antivirus; "C:\Program Files\Alwil Software\Avast5\AvastSvc.exe" [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 acedrv11; C:\Windows\system32\drivers\acedrv11.sys [295432 2010-01-20] (Protect Software GmbH) R1 CbFs; C:\Windows\system32\drivers\cbfs.sys [147416 2010-12-18] (EldoS Corporation) S3 cpudrv; C:\Program Files\SystemRequirementsLab\cpudrv.sys [11336 2011-06-02] () S3 FreshIO; C:\Program Files\PC-TOOLS\FreshDiagnose\FreshIO.sys [2410 2004-10-26] () [Datei ist nicht signiert] R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () [Datei ist nicht signiert] R3 LcUvcUpper; C:\Windows\system32\DRIVERS\LcUvcUpper.sys [30840 2015-02-09] (Microsoft Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [245096 2015-03-04] (Microsoft Corporation) R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18576 2015-05-23] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad32v.sys [32912 2015-04-03] (NVIDIA Corporation) S4 RsFx0150; C:\Windows\System32\DRIVERS\RsFx0150.sys [240608 2010-04-03] (Microsoft Corporation) R3 rt640x86; C:\Windows\System32\drivers\rt640x86.sys [492032 2015-07-10] (Realtek ) S3 StarOpen; C:\Windows\system32\Drivers\StarOpen.sys [7168 2009-11-12] () [Datei ist nicht signiert] S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [25984 2010-12-03] (The OpenVPN Project) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [31744 2015-07-10] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [37400 2015-07-10] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [245600 2015-07-10] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [97632 2015-07-10] (Microsoft Corporation) R3 WUDFWpdMtp; C:\Windows\System32\drivers\WUDFRd.sys [161792 2015-07-10] (Microsoft Corporation) S2 aswHwid; \SystemRoot\system32\drivers\aswHwid.sys [X] S2 aswMonFlt; \SystemRoot\system32\drivers\aswMonFlt.sys [X] S1 aswRdr; \SystemRoot\system32\drivers\aswRdr2.sys [X] S0 aswRvrt; kein ImagePath S1 aswSnx; \SystemRoot\system32\drivers\aswSnx.sys [X] S1 aswSP; \SystemRoot\system32\drivers\aswSP.sys [X] S2 aswStm; \SystemRoot\system32\drivers\aswStm.sys [X] S0 aswVmm; kein ImagePath U4 idsvc; kein ImagePath U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [30208 2015-07-10] (Microsoft Corporation) S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] U4 wpcsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-09-26 15:41 - 2015-09-26 15:41 - 03908184 _____ (Crystal Dew World ) C:\Users\Marc\Downloads\CrystalDiskInfo6_5_2-en.exe 2015-09-26 15:28 - 2015-09-26 15:28 - 00016148 _____ C:\Windows\system32\MARC_Marc_HistoryPrediction.bin 2015-09-26 01:07 - 2015-09-26 01:07 - 00001898 _____ C:\Users\Public\Desktop\PDF24 Creator.lnk 2015-09-26 01:07 - 2015-09-26 01:07 - 00001878 _____ C:\Users\Public\Desktop\PDF24 Fax.lnk 2015-09-26 01:07 - 2015-09-26 01:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\pdf24 2015-09-26 00:54 - 2015-09-26 00:54 - 00000000 ____D C:\Windows\system32\config\HiveBackup 2015-09-26 00:47 - 2015-09-26 00:47 - 18819272 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerInstaller.exe 2015-09-25 23:55 - 2015-09-26 00:00 - 00151656 _____ C:\Windows\Minidump\092515-27343-01.dmp 2015-09-25 23:55 - 2015-09-25 23:55 - 00000000 ____D C:\Windows\Minidump 2015-09-23 17:53 - 2015-09-23 17:53 - 00003072 _____ C:\Windows\system32\umstartup.etl 2015-09-21 16:30 - 2015-09-26 15:39 - 00000000 ____D C:\FRST 2015-09-20 23:30 - 2015-09-20 23:31 - 00000000 ___HD C:\$SysReset 2015-09-19 12:26 - 2015-09-25 23:55 - 256932571 _____ C:\Windows\MEMORY.DMP 2015-09-18 00:03 - 2015-09-18 00:03 - 00016148 _____ C:\Windows\system32\MARC-OFFICE_Marc_HistoryPrediction.bin 2015-09-17 12:24 - 2015-09-17 12:24 - 00000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job 2015-09-15 23:43 - 2015-09-15 23:43 - 00001375 _____ C:\Users\Public\Desktop\WISO Mein Geld 365 Belegschnellerfassung.lnk 2015-09-15 23:43 - 2015-09-15 23:43 - 00001189 _____ C:\Users\Public\Desktop\WISO Mein Geld 365 starten.lnk 2015-09-15 23:43 - 2015-09-15 23:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WISO Mein Geld 365 2015-09-15 23:43 - 2015-09-15 23:43 - 00000000 ____D C:\Program Files\StickRoot 2015-09-15 23:34 - 2015-09-15 23:38 - 88173384 _____ (Buhl Data Service GmbH) C:\Users\Marc\Downloads\WISOFinanz365.exe 2015-09-14 15:03 - 2015-09-17 12:30 - 05961160 _____ (AVAST Software) C:\Users\Marc\Desktop\avastclear.exe 2015-09-14 15:02 - 2015-09-14 15:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Simple Photo Editor 2015-09-14 15:02 - 2015-09-14 15:02 - 00000000 ____D C:\Program Files\Simple Photo Editor 2015-09-14 14:55 - 2015-09-14 14:56 - 00000000 ____D C:\Users\Marc\Downloads\SimplePhotoEditor13-n6jw2a 2015-09-14 14:43 - 2015-09-14 14:43 - 10474363 _____ C:\Users\Marc\Downloads\SimplePhotoEditor13-n6jw2a.zip 2015-09-14 04:22 - 2015-09-14 04:22 - 00000000 ___RD C:\Program Files\Skype 2015-09-14 04:22 - 2015-09-14 04:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-09-14 04:22 - 2015-09-14 04:22 - 00000000 ____D C:\Program Files\Common Files\Skype 2015-09-10 14:00 - 2015-09-02 04:04 - 00069208 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-09-10 14:00 - 2015-09-02 02:31 - 02985984 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys 2015-09-10 14:00 - 2015-09-02 02:30 - 01134080 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys 2015-09-10 14:00 - 2015-08-27 07:59 - 02880032 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-09-10 14:00 - 2015-08-27 07:54 - 00541248 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe 2015-09-10 14:00 - 2015-08-27 07:23 - 19324416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-09-10 14:00 - 2015-08-27 07:23 - 00303104 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-09-10 14:00 - 2015-08-27 07:19 - 00822272 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-09-10 14:00 - 2015-08-27 07:16 - 18806272 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll 2015-09-10 14:00 - 2015-08-27 07:16 - 02153472 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-09-10 14:00 - 2015-08-27 07:16 - 01612288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll 2015-09-10 14:00 - 2015-08-27 07:12 - 00650752 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-09-10 14:00 - 2015-08-27 07:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-09-10 14:00 - 2015-08-27 07:11 - 00484352 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2015-09-10 14:00 - 2015-08-27 07:11 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.PicturePassword.dll 2015-09-10 14:00 - 2015-08-27 07:11 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll 2015-09-10 14:00 - 2015-08-27 07:10 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2015-09-10 14:00 - 2015-08-27 07:09 - 11262464 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-09-10 14:00 - 2015-08-27 07:08 - 00037376 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-09-04 22:04 - 2015-09-04 22:04 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-08-31 14:05 - 2015-08-20 07:25 - 06265168 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-08-31 14:05 - 2015-08-20 07:22 - 00549160 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-08-31 14:05 - 2015-08-20 07:16 - 20857848 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-08-31 14:05 - 2015-08-20 06:46 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe 2015-08-31 14:05 - 2015-08-20 06:41 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseModernAppMgmtCSP.dll 2015-08-31 14:05 - 2015-08-20 06:35 - 01829376 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-08-31 14:05 - 2015-08-18 09:27 - 01771592 _____ C:\Windows\system32\CoreUIComponents.dll 2015-08-31 14:05 - 2015-08-18 09:26 - 00284000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2015-08-31 14:05 - 2015-08-18 09:24 - 00963920 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll 2015-08-31 14:05 - 2015-08-18 09:14 - 00192864 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll 2015-08-31 14:05 - 2015-08-18 08:49 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupShim.dll 2015-08-31 14:05 - 2015-08-18 08:48 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\WlanMediaManager.dll 2015-08-31 14:05 - 2015-08-18 08:47 - 01507840 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll 2015-08-31 14:05 - 2015-08-18 08:41 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe 2015-08-31 14:05 - 2015-08-18 08:40 - 00675328 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll 2015-08-31 14:05 - 2015-08-18 08:38 - 01875968 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2015-08-31 14:05 - 2015-08-18 08:36 - 01226752 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz.dll 2015-08-31 14:05 - 2015-08-18 08:35 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\dafWCN.dll 2015-08-31 14:05 - 2015-08-18 08:35 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll 2015-08-31 14:05 - 2015-08-18 08:35 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll 2015-08-31 14:05 - 2015-08-18 08:35 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll 2015-08-31 14:05 - 2015-08-18 08:34 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll 2015-08-31 14:05 - 2015-08-18 08:34 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll 2015-08-31 14:05 - 2015-08-18 08:33 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll 2015-08-31 14:05 - 2015-08-18 08:31 - 01917440 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2015-08-31 14:05 - 2015-08-18 08:30 - 00251904 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll 2015-08-31 14:05 - 2015-08-18 08:29 - 01593344 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-08-31 14:05 - 2015-08-18 08:26 - 01499136 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2015-08-31 14:05 - 2015-08-18 08:26 - 00921088 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2015-08-31 14:05 - 2015-08-18 08:26 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\PackageStateRoaming.dll 2015-08-31 14:05 - 2015-08-18 06:42 - 00006631 _____ C:\Windows\system32\ResPriHMImageList 2015-08-31 14:05 - 2015-08-18 06:42 - 00006313 _____ C:\Windows\system32\ResPriImageList 2015-08-28 16:51 - 2015-08-31 13:52 - 00000000 ____D C:\Program Files\Mozilla Firefox4 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\Program Files\StarMoney Business 6.0 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\fd475986ba69459cf58af3cafe7f 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\f3e618f48a956588f339b9cb 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\f30cdda5e2f96065d81513e4 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\dcc9864042f7035380ba96d87e 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\d6d61df0030aecf35dc977d7365fba 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\d676c1c9f47d3bfded378f3a3ba0fb 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\cdcff45c5cb1dd0bc1b723f93d8a 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\c53e3aa6024017885aedaffdc099 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\c3a510b96a13ad09dcb155ea 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\aae0fb9e97b1bddcdd0f0c 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\aa930393358054721c7ccf 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\a41d91fab70384bd9c1ce7009b 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\9b6de4c1acca1def9b1b7570 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\8a92888d5791210d239ace 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\74a62a4e311802a86dbfc29096 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\70813f22ebb699848a 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\5b01a7830f33e4bad2e1b97a 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\5a56b3996769250763fac1 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\3603861004cea182b51f107359a369 2015-08-27 13:33 - 2015-08-27 13:33 - 00000000 _____ C:\32d32f2fe5dc28c15a6763 2015-08-27 10:26 - 2015-08-27 10:26 - 00000000 ____D C:\Users\Marc\AppData\Roaming\FireShot ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-09-26 15:42 - 2010-05-30 15:11 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Skype 2015-09-26 15:41 - 2015-08-01 12:36 - 02212484 _____ C:\Windows\system32\PerfStringBackup.INI 2015-09-26 15:38 - 2015-07-10 11:53 - 00040361 _____ C:\Windows\setupact.log 2015-09-26 15:38 - 2014-09-11 10:35 - 00824832 ___SH C:\Users\Marc\Desktop\Thumbs.db 2015-09-26 15:18 - 2014-10-09 16:16 - 00000438 _____ C:\Windows\Tasks\FaxArchive_CN09F113K805JW.job 2015-09-26 15:18 - 2010-07-31 11:31 - 00000000 ____D C:\Users\Marc\Documents\Fax 2015-09-26 15:17 - 2010-05-28 09:36 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-09-26 15:08 - 2015-07-10 10:28 - 00000000 ____D C:\Windows\system32\sru 2015-09-26 15:08 - 2012-01-20 15:49 - 00000398 _____ C:\Windows\Tasks\FaxArchive_CN08I1316305JW.job 2015-09-26 14:47 - 2012-12-17 22:32 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-09-26 07:17 - 2010-05-28 09:36 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-09-26 01:44 - 2015-07-10 10:28 - 00000000 ____D C:\Windows\Microsoft.NET 2015-09-26 01:38 - 2010-05-03 19:04 - 00000275 _____ C:\Windows\WindowsUpdate.log 2015-09-26 01:07 - 2010-05-27 10:10 - 00000000 ____D C:\Program Files\pdf24 2015-09-26 00:53 - 2015-07-10 10:28 - 00028672 _____ C:\Windows\system32\config\BCD-Template 2015-09-26 00:43 - 2014-11-19 18:44 - 00000000 ____D C:\Program Files\Microsoft Office 15 2015-09-26 00:41 - 2015-07-10 10:28 - 00000000 ____D C:\Windows\AppReadiness 2015-09-26 00:22 - 2010-12-12 01:39 - 00000000 ___RD C:\Users\Marc\Documents\My Dropbox 2015-09-26 00:21 - 2010-12-12 01:38 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Dropbox 2015-09-25 23:56 - 2015-07-10 11:55 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-09-25 23:55 - 2015-08-01 12:34 - 00000000 ____D C:\ProgramData\NVIDIA 2015-09-20 23:31 - 2015-08-01 13:27 - 00000000 ___DC C:\Windows\Panther 2015-09-18 14:57 - 2015-08-01 13:27 - 00000000 __SHD C:\Recovery 2015-09-18 14:57 - 2015-07-10 10:28 - 00000000 ____D C:\Windows\system32\LogFiles 2015-09-18 00:04 - 2015-07-10 08:59 - 00524288 ___SH C:\Windows\system32\config\BBI 2015-09-18 00:03 - 2014-11-21 15:12 - 00000000 ____D C:\Users\Marc\OneDrive 2015-09-18 00:03 - 2010-06-07 11:07 - 00000000 ____D C:\Users\Marc\Documents\PhraseExpress 2015-09-17 18:37 - 2014-10-16 10:24 - 00000000 ____D C:\Users\Marc\Documents\WISO Mein Geld 2015-09-17 17:23 - 2010-05-27 08:04 - 00000000 ____D C:\Fewo24 2015-09-17 17:07 - 2015-08-01 14:23 - 00002404 _____ C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-09-17 16:32 - 2013-11-28 00:07 - 00002259 _____ C:\Windows\epplauncher.mif 2015-09-17 12:33 - 2015-08-01 12:29 - 00472160 _____ C:\Windows\PFRO.log 2015-09-15 23:49 - 2014-10-16 10:23 - 00000000 ____D C:\Users\Marc\AppData\Local\Buhl Data Service GmbH 2015-09-15 23:49 - 2010-08-23 15:53 - 00000000 ____D C:\ProgramData\Buhl Data Service GmbH 2015-09-15 23:48 - 2010-05-30 15:11 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Buhl Data Service GmbH 2015-09-15 23:42 - 2010-12-01 21:26 - 00000000 ____D C:\Program Files\Buhl 2015-09-15 17:20 - 2015-07-10 10:28 - 00000000 ____D C:\Windows\rescache 2015-09-14 15:53 - 2015-07-10 10:20 - 00000000 ____D C:\Windows\CbsTemp 2015-09-14 14:28 - 2015-08-01 12:36 - 00021692 _____ C:\Windows\iis.log 2015-09-14 04:22 - 2010-05-26 21:49 - 00000000 ____D C:\ProgramData\Skype 2015-09-14 04:02 - 2015-07-10 11:53 - 00396264 _____ C:\Windows\system32\FNTCACHE.DAT 2015-09-14 04:00 - 2015-07-10 15:16 - 00000000 ____D C:\Program Files\Windows Journal 2015-09-14 04:00 - 2015-07-10 10:28 - 00000000 ____D C:\Windows\system32\appraiser 2015-09-13 14:51 - 2013-12-02 16:16 - 00000000 ____D C:\Users\Marc\Documents\Papa 2015-09-13 02:08 - 2013-07-14 12:12 - 00000000 ____D C:\Windows\system32\MRT 2015-09-13 01:15 - 2010-05-30 15:10 - 00000000 ____D C:\Users\Marc\AppData\Local\Google 2015-09-07 11:19 - 2013-06-25 16:03 - 00000000 ____D C:\Users\Marc\Google Drive cramsmreh 2015-09-07 11:13 - 2014-11-03 14:55 - 00000000 ____D C:\TourCalculator 2015-08-31 13:53 - 2011-01-14 16:15 - 00000000 ____D C:\Program Files\TeamViewer 2015-08-31 13:52 - 2012-05-02 15:08 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2015-08-29 13:39 - 2010-05-31 11:41 - 00000000 ____D C:\Users\Marc\Documents\My PSP Files 2015-08-27 13:33 - 2012-12-02 19:47 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-27 13:33 - 2010-05-28 19:39 - 00000000 ____D C:\temp ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2007-07-07 08:07 - 2013-01-14 14:30 - 0812544 _____ (Big Bang enterprises) C:\Program Files\DoubleKiller.exe 2010-07-19 22:35 - 2010-07-19 22:35 - 7947285 _____ (Regione Autonoma della Sardegna) C:\Program Files\navigatore3D.exe 2010-07-19 22:33 - 2010-07-19 22:33 - 0000367 _____ () C:\Program Files\QuartuSElena.s3d 2015-08-27 13:33 - 2015-08-27 13:33 - 0000000 _____ () C:\Program Files\StarMoney Business 6.0 2010-07-19 16:03 - 2010-07-19 17:33 - 2095034120 _____ (DATA BECKER ) C:\Program Files\thd10premium_r1.exe 2015-02-23 16:00 - 2015-02-23 16:00 - 0009600 _____ () C:\Users\Marc\AppData\Roaming\OneCal.emf 2015-02-23 16:00 - 2015-02-23 16:00 - 0000584 _____ () C:\Users\Marc\AppData\Roaming\onecal.xml 2013-01-01 19:59 - 2013-01-01 20:09 - 0000048 _____ () C:\Users\Marc\AppData\Roaming\prio.ini 2014-03-20 00:13 - 2014-03-21 00:26 - 0000600 _____ () C:\Users\Marc\AppData\Roaming\winscp.rnd 2011-02-02 00:58 - 2011-02-02 00:58 - 0001164 _____ () C:\Users\Marc\AppData\Local\crc32list11.txt 2013-04-25 16:50 - 2013-04-25 17:05 - 0014336 _____ () C:\Users\Marc\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-01-19 12:20 - 2015-01-19 12:20 - 0000600 _____ () C:\Users\Marc\AppData\Local\PUTTY.RND 2015-03-16 17:48 - 2015-03-16 17:48 - 0007173 _____ () C:\Users\Marc\AppData\Local\recently-used.xbel 2010-09-03 17:51 - 2013-01-01 20:19 - 0007598 _____ () C:\Users\Marc\AppData\Local\resmon.resmoncfg 2013-09-21 23:46 - 2013-09-21 23:47 - 0002100 _____ () C:\Users\Marc\AppData\Local\WiDiSetupLog.20130921.234655.txt 2013-09-21 23:52 - 2013-09-21 23:56 - 0002100 _____ () C:\Users\Marc\AppData\Local\WiDiSetupLog.20130921.235205.txt 2013-10-02 14:44 - 2013-10-02 14:44 - 0002100 _____ () C:\Users\Marc\AppData\Local\WiDiSetupLog.20131002.144400.txt 2013-10-02 14:47 - 2013-10-02 14:47 - 0002098 _____ () C:\Users\Marc\AppData\Local\WiDiSetupLog.20131002.144708.txt 2013-10-02 15:03 - 2013-10-02 15:04 - 0005450 _____ () C:\Users\Marc\AppData\Local\WiDiSetupLog.20131002.150354.txt 2013-10-02 23:51 - 2013-10-02 23:51 - 0013426 _____ () C:\Users\Marc\AppData\Local\WiDiSetupLog.20131002.235112.wdl 2013-10-02 23:52 - 2013-10-02 23:53 - 0014104 _____ () C:\Users\Marc\AppData\Local\WiDiSetupLog.20131002.235256.wdl 2013-05-02 12:36 - 2015-08-09 13:19 - 0000084 _____ () C:\Users\Marc\AppData\Local\{C916D440-D489-4A79-B306-5FDC1E7932C0}.list 2010-05-31 11:49 - 2010-07-01 13:15 - 0000088 __RSH () C:\ProgramData\8947AB9C2A.sys 2014-04-29 11:39 - 2014-04-29 11:39 - 0000057 _____ () C:\ProgramData\Ament.ini 2015-08-01 12:34 - 2015-08-01 12:34 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2013-04-23 15:19 - 2013-04-23 15:19 - 0053450 _____ () C:\ProgramData\IMGAF5BD8-001.jpg 2013-04-23 15:19 - 2013-04-23 15:19 - 0019829 _____ () C:\ProgramData\IMGAF5BD8-002.jpg 2010-05-31 11:49 - 2010-07-01 13:15 - 0002828 ___SH () C:\ProgramData\KGyGaAvL.sys 2014-10-16 10:24 - 2015-06-30 15:11 - 0000356 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc Einige Dateien in TEMP: ==================== C:\Users\Marc\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmprlofnr.dll C:\Users\Marc\AppData\Local\Temp\pdf24-creator-update.exe C:\Users\Marc\AppData\Local\Temp\unrar.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert ==================== BCD ================================ Windows-Start-Manager --------------------- Bezeichner {bootmgr} device partition=\Device\HarddiskVolume1 description Windows Boot Manager locale de-DE inherit {globalsettings} default {current} resumeobject {495fba30-63d8-11e5-b926-c1d68ee9a100} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Windows-Startladeprogramm ------------------------- Bezeichner {0888c55c-1748-11df-b055-eff9cb93f53d} Windows-Startladeprogramm ------------------------- Bezeichner {1b43167e-617f-11e5-b8aa-f812ffff1404} device ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{1b43167f-617f-11e5-b8aa-f812ffff1404} path \windows\system32\winload.exe description Windows Recovery Environment locale de-DE inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{1b43167f-617f-11e5-b8aa-f812ffff1404} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows-Startladeprogramm ------------------------- Bezeichner {current} device partition=C: path \Windows\system32\winload.exe description Windows 10 locale de-DE inherit {bootloadersettings} allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \Windows resumeobject {495fba30-63d8-11e5-b926-c1d68ee9a100} nx OptIn bootmenupolicy Standard Wiederaufnahme aus dem Ruhezustand ---------------------------------- Bezeichner {495fba30-63d8-11e5-b926-c1d68ee9a100} device partition=C: path \Windows\system32\winresume.exe description Windows Resume Application locale de-DE inherit {resumeloadersettings} allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard pae Yes debugoptionenabled No Windows-Speichertestprogramm ---------------------------- Bezeichner {memdiag} device partition=\Device\HarddiskVolume1 path \boot\memtest.exe description Windows-Speicherdiagnose locale de-DE inherit {globalsettings} badmemoryaccess Yes EMS-Einstellungen ----------------- Bezeichner {emssettings} bootems No Debuggereinstellungen --------------------- Bezeichner {dbgsettings} debugtype Serial debugport 1 baudrate 115200 RAM-Defekte ----------- Bezeichner {badmemory} Globale Einstellungen --------------------- Bezeichner {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Startladeprogramm-Einstellungen ------------------------------- Bezeichner {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisoreinstellungen ----------------------- Bezeichner {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Einstellungen zur Ladeprogrammfortsetzung ----------------------------------------- Bezeichner {resumeloadersettings} inherit {globalsettings} Ger„teoptionen -------------- Bezeichner {1b43167f-617f-11e5-b8aa-f812ffff1404} description Windows Recovery ramdisksdidevice partition=C: ramdisksdipath \Recovery\WindowsRE\boot.sdi LastRegBack: 2015-09-26 01:42 ==================== Ende vom FRST.txt ============================ (zweiter Teil folgt...) |
26.09.2015, 14:57 | #40 |
| Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] und hier die Addition.txt Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x86) Version:23-09-2015 durchgeführt von Marc (2015-09-26 15:42:45) Gestartet von L:\ Microsoft Windows 10 Home (X86) (2015-08-01 11:46:53) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-895905325-2879171232-1046163952-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-895905325-2879171232-1046163952-503 - Limited - Disabled) Gast (S-1-5-21-895905325-2879171232-1046163952-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-895905325-2879171232-1046163952-1026 - Limited - Enabled) Marc (S-1-5-21-895905325-2879171232-1046163952-1008 - Administrator - Enabled) => C:\Users\Marc ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 1&1 EasyLogin (HKLM\...\1&1 EasyLogin) (Version: - ) Acronis Drive Monitor (HKLM\...\{706AE61D-40A4-4F50-8359-FE8F6F7FA461}) (Version: 1.0.566 - Acronis) Adobe AIR (HKLM\...\Adobe AIR) (Version: 18.0.0.199 - Adobe Systems Incorporated) Adobe Flash Player 19 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Advanced IP Scanner (HKLM\...\{A0E125E4-19BF-4240-A483-943085EA520C}) (Version: 2.1.200 - Famatech) Advanced IP Scanner v1.5 (HKLM\...\Advanced IP Scanner v1.5) (Version: - ) AdvancedRemoteInfo (HKLM\...\AdvancedRemoteInfo_is1) (Version: 1000 - MasterBootRecord.de / Matthias Zirngibl) AllDup 3.3.14 (HKLM\...\AllDup_is1) (Version: 3.3.14 - Michael Thummerer Software Design) Allmyapps (HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Allmyapps) (Version: 2.0.0.30 - Allmyapps SAS) AllMySongs Database (HKLM\...\AllMySongs Database2.2) (Version: 2.2 - OptWin Software) Angry IP Scanner (HKLM\...\Angry IP Scanner) (Version: 3.3.2 - Angry IP Scanner) Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Ashampoo Burning Studio 2010 Advanced (HKLM\...\Ashampoo Burning Studio 2010 Advanced_is1) (Version: 9.2.4 - ashampoo GmbH & Co. KG) ASUS Wireless Router Device Discovery Utility (HKLM\...\{09CDCA35-23FF-4ED6-AFDA-BBD55235CE4B}) (Version: 1.4.7.1 - ASUS) AudibleManager (HKLM\...\AudibleManager) (Version: 2009543994.48.56.28124114 - Audible, Inc.) Avast Free Antivirus (HKLM\...\avast) (Version: 10.3.2225 - AVAST Software) Biet-O-Matic v2.14.10 (HKLM\...\Biet-O-Matic v2.14.10) (Version: 2.14.10 - BOM Development Team) Bing Maps 3D (HKLM\...\{2D87E961-577B-492B-AD54-1368680FB9A7}) (Version: 4.0.903.16005 - Microsoft Corporation) Bulk Rename Utility 2.7.1.2 (HKLM\...\Bulk Rename Utility_is1) (Version: - TGRMN Software) CamSpy V.4.2.2 (HKLM\...\CamSpy_is1) (Version: - (c.) André Münsterberg) CCleaner (HKLM\...\CCleaner) (Version: 3.26 - Piriform) CDBurnerXP (HKLM\...\{3867AA1B-BF01-4492-9E3A-DA032C94F424}) (Version: 4.5.1.3868 - Canneverbe Limited) CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.3.7.2356 - CDBurnerXP) Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) CloneSpy 2.63 (HKLM\...\CloneSpy) (Version: - CloneSpy) Combined Community Codec Pack 2011-11-11 (HKLM\...\Combined Community Codec Pack_is1) (Version: 2011.11.11.0 - CCCP Project) Compatibility Pack für 2007 Office System (HKLM\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Creative WebCam NX Pro Driver (1.03.03.0326) (HKLM\...\Creative PD1131) (Version: - ) CuteFTP 8 Home (HKLM\...\{949DBB22-2FB7-4de1-804C-23D495A988D8}) (Version: 8.3.4 - GlobalSCAPE) CyberLink LabelPrint (HKLM\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1916 - CyberLink Corp.) CyberLink Power2Go (HKLM\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3213 - CyberLink Corp.) CyberLink PowerDVD Copy (HKLM\...\{E3D04529-6EDB-11D8-A372-0050BAE317E1}) (Version: 1.0.6720 - CyberLink Corp.) D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden Daminion 2.0.0.911 (HKLM\...\{EFD0A11E-2F0B-40A9-A4BA-DD63C779E4D5}_is1) (Version: 2.0.0.911 - Daminion Software) DATA BECKER 3D Traumhaus Designer 10 Premium (HKLM\...\3D Traumhaus Designer 10 Premium_is1) (Version: 1.3.495.0 - DATA BECKER GmbH & Co. KG) Data Lifeguard Diagnostic for Windows 1.24 (HKLM\...\{519C4DB6-B53B-4F5C-8297-89B2BE949FA5}_is1) (Version: - Western Digital Corporation) DHTML Editing Component (HKLM\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation) Dropbox (HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Dropbox) (Version: 3.8.8 - Dropbox, Inc.) DupeRAZOR 4.0 (HKLM\...\DupeRAZOR - Duplicate Files Removal Kit_is1) (Version: - Urban Twilight Studios) Easy GIF Animator 5.1 (HKLM\...\Easy GIF Animator_is1) (Version: Easy GIF Animator 5.0 - Karlis Blumentals) Energiekosten-Schnellrechner 1.3.3 (HKLM\...\Energiekosten-Schnellrechner_is1) (Version: 1.3.3 - AB-Tools.com) EPSON SX218 Series Printer Uninstall (HKLM\...\EPSON SX218 Series) (Version: - SEIKO EPSON Corporation) EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version: - ) ESO Site Map Maker 1.5 (HKLM\...\ESO Site Map Maker 1.5) (Version: - ) EssentialPIM (HKLM\...\EssentialPIM) (Version: 6.0 - Astonsoft Ltd) Evernote v. 5.8.1 (HKLM\...\{4FD2D1C8-8636-11E4-9D21-00163E98E7D6}) (Version: 5.8.1.6061 - Evernote Corp.) Facebook Plug-In (HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Facebook Plug-In) (Version: - Facebook, Inc.) FaceGen Modeller 3.5 Free (HKLM\...\{86BDD105-114A-4B20-BF8B-E46C7159A641}) (Version: 3.5.3 - Singular Inversions Inc.) FeWo24 2.3.1 (HKLM\...\FeWo24) (Version: 2.3.1 - ezSoftware e.K.) FileZilla Client 3.9.0.6 (HKLM\...\FileZilla Client) (Version: 3.9.0.6 - Tim Kosse) Firebird SQL Server - MAGIX Edition (HKLM\...\Firebird SQL Server D) (Version: 2.0.1.13 - MAGIX AG) FormatFactory 2.96 (HKLM\...\FormatFactory) (Version: 2.96 - Free Time) Free MOV to AVI Converter 1.2 (HKLM\...\Free MOV to AVI Converter_is1) (Version: - ) Free Studio version 4.8 (HKLM\...\Free Studio_is1) (Version: - DVDVideoSoft Limited.) Free YouTube Uploader version 3.3.21.908 (HKLM\...\Free YouTube Uploader_is1) (Version: - DVDVideoSoft Ltd.) FreshDiagnose (HKLM\...\FreshDevices - FreshDiagnose_is1) (Version: - ) Geeks3D FurMark 1.12.0 (HKLM\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D) Gesundheits-Master 3.25 (HKLM\...\Gesundheits-Master) (Version: 3.25 - EWS <> Eberhard Werner Software) Gigaset QuickSync (HKLM\...\{b49e8cfb-f094-4467-925a-97c23972cb50}) (Version: 8.3.0868.3 - Gigaset Communications GmbH) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) GoodSync (HKLM\...\{B26B00DA-2E5D-4CF2-83C5-911198C0F009}) (Version: 9.8.4.4 - Siber Systems) Google AdWords Editor (HKLM\...\{01738803-6F1B-4596-9B11-7870917029A4}) (Version: 9.9.0 - Google) Google Chrome (HKLM\...\Google Chrome) (Version: 45.0.2454.85 - Google Inc.) Google Chrome Canary (HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Google Chrome SxS) (Version: 15.0.861.0 - Google Inc.) Google Drive (HKLM\...\{12ADFB82-D5A3-43E4-B2F4-FCD9B690315B}) (Version: 1.24.9931.5480 - Google, Inc.) Google Earth (HKLM\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google) Google Gears (HKLM\...\{2FA41EBB-3F5A-35C3-85D6-51EC72A11FBD}) (Version: 0.5.3600 - Google) Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (Version: 1.3.28.13 - Google Inc.) Hidden Grundstücksfläche 1 (HKLM\...\Grundstücksfläche 1) (Version: - ) Haushaltsbuch DEMO (HKLM\...\{8B3D750F-908E-467C-808C-9E8F5DCC139E}) (Version: 8.9.110 - Reiners-Software) Hausrat- & Inventar-Master 6.05 (HKLM\...\Hausrat- & Inventar-Master) (Version: 6.05 - EWS <> Eberhard Werner Software) Hausratverwaltung 4.0 Demo (HKLM\...\{88352D66-FE26-4A2D-9669-F3556165E311}) (Version: 4.0 - VR-Software) Hausratverwaltung DEMO (HKLM\...\{1475D565-311E-4B08-A0F6-09107200935B}) (Version: 7.1.17 - VR-Software) HDD Health v3.3 Beta (HKLM\...\HDD Health_is1) (Version: - ) HP Officejet 6500 E710n-z - Grundlegende Software für das Gerät (HKLM\...\{E5360B00-4DEF-4F6E-8ED9-B2C31875D813}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Officejet 6500 E710n-z Hilfe (HKLM\...\{EFBC0CB1-AFFD-4E74-ACEF-42099F1D49C3}) (Version: 140.0.2.2 - Hewlett Packard) HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (Version: 1.00.0001 - Microsoft) Hidden HTC BMP USB Driver (HKLM\...\{31A559C1-9E4D-423B-9DD3-34A6C5398752}) (Version: 1.0.5375 - HTC) HTC Driver Installer (HKLM\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.13.0.003 - HTC Corporation) HTC Sync (HKLM\...\{1F9E5C64-165D-4679-BBB3-498D216D017B}) (Version: 3.3.7 - HTC Corporation) HTC Sync Manager (HKLM\...\{231D0C79-98A6-4693-A366-36DE7D7346EC}) (Version: 3.1.24.5 - HTC) I.R.I.S. OCR (HKLM\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4 - HP) IAcademyLite (HKLM\...\NIMDFDeployment.{8B53BCCD-5F6E-4191-8B4B-3DF0814F125B}) (Version: 1.0.83 - Insight Limited) IAcademyLite (Version: 1.0.83 - Insight Limited) Hidden Intel(R) Control Center (HKLM\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.5.5.1003 - Intel Corporation) Intel® WiDi Media Share (HKLM\...\{9686682c-a893-42cb-9602-3923c14f1a86}) (Version: 1.0 - Intel Corporation) IPTInstaller (HKLM\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC) iSpy (HKLM\...\{F0511D2C-245D-4AC7-AFFE-6B6BB27DBD70}) (Version: 3.8.7 - iSpy) jAlbum (HKLM\...\{3D7FEEBD-60CB-4617-A803-58543F296062}) (Version: 9.0.2 - Jalbum AB) jAlbum (HKLM\...\{781EA9DB-4072-4EB9-A84A-A3F9F4E0C6FA}) (Version: 10.2 - Jalbum AB) Jalbum (HKLM\...\{A4970F2B-17E4-486E-9D4A-05EB996812AE}) (Version: 8.13 - Jalbum AB) Jasc Paint Shop Pro 9 (HKLM\...\{F843C6A3-224D-4615-94F8-3C461BD9AEA0}) (Version: 9.00.0000 - Jasc Software Inc) Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Java 8 Update 51 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) JDs Auto Speed Tester (HKLM\...\JDs Auto Speed Tester) (Version: - ) Jing (HKLM\...\{22800204-9E53-45C7-B6F3-5BB0F1C1A147}) (Version: 2.8.13007.1 - TechSmith Corporation) Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden K-Lite Codec Pack 6.8.0 (Standard) (HKLM\...\KLiteCodecPack_is1) (Version: 6.8.0 - ) LC2.NET (HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\e941ec549d2b3b39) (Version: 1.0.7.3 - LiveClinet2) Magical Jelly Bean PasswdFinder (HKLM\...\PasswdFinder_is1) (Version: 1.0.0.25 - PasswdFinder) MAGIX Filme auf DVD 7 7.0.3.0 (D) (HKLM\...\MAGIX Filme auf DVD 7 D) (Version: 7.0.3.0 - MAGIX AG) MAGIX Foto & Grafik Designer 6 Download-Version (HKLM\...\MAGIX_MSI_Foto_Grafik_Designer_6) (Version: 6.1.0.13074 - MAGIX AG) MAGIX Foto & Grafik Designer 6 Download-Version (Version: 6.1.0.13074 - MAGIX AG) Hidden MAGIX Foto Manager 2008 5.0.0.255 (D) (HKLM\...\MAGIX Foto Manager 2008 D) (Version: 5.0.0.255 - MAGIX AG) MAGIX Foto Manager 9 (HKLM\...\MAGIX Foto Manager 9 D) (Version: 7.0.4.131 - MAGIX AG) MAGIX Goya burnR 1.3.1.3 (D) (HKLM\...\MAGIX Goya burnR D) (Version: 1.3.1.3 - MAGIX AG) MAGIX Online Druck Service (HKLM\...\MAGIX Online Druck Service D) (Version: 3.4.3.0 - MAGIX AG) MAGIX Screenshare (HKLM\...\MAGIX Screenshare D) (Version: 4.3.6.1987 - MAGIX AG) Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) Marketsplash Schnellzugriffe (HKLM\...\{FB0C267C-8B4F-4867-8161-A6A3B66D42C1}) (Version: 1.0.0.9 - Hewlett-Packard) MemoMaster (HKLM\...\{74DE2878-ED7F-4D44-B249-3ADDADAC7998}) (Version: 5.6.0.10 - JBSoftware) MemoMaster 4 (HKLM\...\{5CF1F472-846B-44E8-9750-A2112DA32CB6}) (Version: 4 - JBSoftware) Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Messenger Companion (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Meteo (HKLM\...\Meteo) (Version: - ) Microsoft ASP.NET MVC 4 Runtime (HKLM\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Fix it Center (HKLM\...\{B7588D45-AFDC-4C93-9E2E-A100F3554B64}) (Version: 1.0.0100 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft LifeCam (HKLM\...\{412669E8-86CE-4B15-A2D2-F5B0BA9939EF}) (Version: 4.25.512.0 - Microsoft Corporation) Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 15.0.4753.1003 - Microsoft Corporation) Microsoft Office Access database engine 2007 (English) (HKLM\...\{90120000-00D1-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Primary Interoperability Assemblies 2005 (HKLM\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [DEU] (HKLM\...\{BAC80EF3-E106-4AEA-8C57-F217F9BC7358}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2008 R2 (HKLM\...\Microsoft SQL Server 2008 R2) (Version: - Microsoft Corporation) Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{4AB6A079-178B-4144-B21F-4D1AE71666A2}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Setup (English) (HKLM\...\{72DE3C67-FB48-450E-8BEA-4EB1B3B5355D}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server 2008 Setup Support Files (HKLM\...\{D441BD04-E548-4F8E-97A4-1B66135BAAA8}) (Version: 10.1.2731.0 - Microsoft Corporation) Microsoft SQL Server Browser (HKLM\...\{BF9BF038-FE03-429D-9B26-2FA0FD756052}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{47BE41E6-2F0F-4D17-9C2D-3850FFD9D405}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{09298F26-A95C-31E2-9D95-2C60F586F075}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4048 (HKLM\...\{5B1F2843-B379-3FF2-B0D3-64DD143ED53A}) (Version: 9.0.30729.4048 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x86) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Works (HKLM\...\{39D0E034-1042-4905-BECB-5502909FCB7C}) (Version: 9.7.0621 - Microsoft Corporation) Microsoft WSE 2.0 SP3 Runtime (HKLM\...\{F3CA9611-CD42-4562-ADAB-A554CF8E17F1}) (Version: 2.0.5050.0 - Microsoft Corp.) Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation) MIKSOFT Mobile AMR converter (HKLM\...\MIKSOFT Mobile AMR converter_is1) (Version: - MIKSOFT) Miro (HKLM\...\Miro) (Version: 5.0.4 - Participatory Culture Foundation) Mozilla Firefox 40.0.3 (x86 de) (HKLM\...\Mozilla Firefox 40.0.3 (x86 de)) (Version: 40.0.3 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 40.0.3.5716 - Mozilla) Mozilla Thunderbird 17.0.2 (x86 en-US) (HKLM\...\Mozilla Thunderbird 17.0.2 (x86 en-US)) (Version: 17.0.2 - Mozilla) MSI to redistribute MS VS2005 CRT libraries (HKLM\...\{A8D93648-9F7F-407D-915C-62044644C3DA}) (Version: 8.0.50727.42 - The Firebird Project) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (HKLM\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (HKLM\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation) MyDefrag v4.3.1 (HKLM\...\MyDefrag v4.3.1_is1) (Version: 4.0.0.0 - J.C. Kessels) MyHeritage Family Tree Builder (HKLM\...\Family Tree Builder) (Version: 5.0.0.1149 - MyHeritage.com) MyPhoneExplorer (HKLM\...\MPE) (Version: 1.8.0 - F.J. Wechselberger) NetObjects Fusion 11.0 (HKLM\...\{32794BAE-5A1D-42B9-89A3-B77A94DD4EA2}) (Version: 11 German - ) NetObjects Fusion 12.0 (HKLM\...\{4EF999AA-68C0-4E0D-A2DA-D3A80D1F784F}) (Version: 12 German - NetObjects) NetObjects Fusion 12.0 (Version: 12.00.5000.5041 - NetObjects) Hidden Nuance Cloud Connector (HKLM\...\{B45FFE60-054A-40FC-A7F9-74382C6DA514}) (Version: 3.2.717 - Nuance Communications, Inc.) Nuance PaperPort 14 (HKLM\...\{7884A50C-47D3-4F51-B187-CD6DE873B2F0}) (Version: 14.0.0000 - Nuance Communications, Inc.) Nuance PDF Create 7 (HKLM\...\{9F66A3CC-F4D6-4808-9391-4B5D06A26C61}) (Version: 7.10.2332 - Nuance Communications, Inc) Nuance PDF Viewer Plus (HKLM\...\{042A6F10-F770-4886-A502-B795DCF2D3B5}) (Version: 7.10.3211 - Nuance Communications, Inc) NVIDIA 3D Vision Controller-Treiber 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.65 - NVIDIA Corporation) NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.11.9745 - NVIDIA Corporation) NVIDIA GeForce Experience 2.4.5.28 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.5.28 - NVIDIA Corporation) NVIDIA Grafiktreiber 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.65 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) Octoshape add-in for Adobe Flash Player (HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\Octoshape add-in for Adobe Flash Player) (Version: - ) oDesk Team (HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\oDVT) (Version: - oDesk Corporation) Office 15 Click-to-Run Extensibility Component (Version: 15.0.4745.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4745.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (Version: 15.0.4745.1002 - Microsoft Corporation) Hidden OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden OneNote 2010 Sort Utility 0.9 (HKLM\...\{0DC325E1-4594-4B21-B3B8-CA775E75207E}_is1) (Version: - JR Software) OnlineFotoservice (HKLM\...\OnlineFotoservice) (Version: - ) Open Workbench (HKLM\...\{1E9A9E08-0366-45EE-9B66-51852F8D9812}) (Version: 1.1.6 - CA) Open XML SDK 2.0 for Microsoft Office (HKLM\...\{171D8D76-3F05-455A-A8AF-C561C2679905}) (Version: 2.0.5022 - Microsoft Corporation) Ozeki Phone System XE 4.8.0.1446 (HKLM\...\Ozeki Phone System XE) (Version: 4.8.0.1446 - Ozeki Ltd.) Paint.NET v3.5.10 (HKLM\...\{529125EF-E3AC-4B74-97E6-F688A7C0F1BF}) (Version: 3.60.0 - dotPDN LLC) PaperPort Anywhere 1.1.4241.14593 powered by OfficeDrop (HKLM\...\{52357C6C-FE7F-4E8C-B045-EDE5146A1F9C}) (Version: 1.1.4241.14593 - OfficeDrop) PaperPort Image Printer (HKLM\...\{6EF2FDAB-7FBF-4AB9-92CD-594BDDB6A56B}) (Version: 14.00.0000 - Nuance Communications, Inc.) PCSUITE INSPECTOR (HKLM\...\PCSUITE_INSPECTOR_PRO_is1) (Version: - Markement GmbH) PDF Architect (HKLM\...\{86D8A96B-1911-4C3F-AA16-0B47E053E492}) (Version: 1.2.97.14551 - pdfforge GmbH) PDF Creator Pilot 4.3 (HKLM\...\{467D4F46-B75D-4E9F-B710-D933D687B9BD}) (Version: 4.3 - Two Pilots) PDF24 Creator 7.3.1 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) PFConfig 1.0.296 (HKLM\...\PFConfig) (Version: 1.0.296 - Portforward.com) PhraseExpress (HKLM\...\{E362DF6F-6750-4208-8349-C645637E592A}) (Version: 7.0.167 - Bartels Media GmbH) PhraseExpress SQL Client Manager v10.0.26 (HKLM\...\PhraseExpress SQL Client Manager_is1) (Version: 10.0.26 - Bartels Media GmbH) PhraseExpress v10.1.24 (HKLM\...\PhraseExpress_is1) (Version: 10.1.24 - Bartels Media GmbH) PicaJet FX 2.6.5.696 (HKLM\...\PicaJet FX_is1) (Version: PicaJet FX 2.6.5.696 - PicaJet.Com) Picasa 3 (HKLM\...\Picasa 3) (Version: 3.8 - Google, Inc.) Pixel X Backup Pro (HKLM\...\Pixel X Backup) (Version: 1.30 - Pixel X e.K.) PocketCloud Windows Companion (HKLM\...\{8C8C169B-D493-42C7-A975-7C1E0E4C5847}) (Version: 2.5.13 - Wyse Technology) Poedit (HKLM\...\{68EB2C37-083A-4303-B5D8-41FA67E50B8F}_is1) (Version: 1.6.10 - Vaclav Slavik) Prism Video File Converter (HKLM\...\Prism) (Version: - NCH Software) Protect Disc License Helper 1.0.118 (HKLM\...\Protect Disc License Helper) (Version: 1.0.118 - Protect Disc) ProtectDisc Driver, Version 11 (HKLM\...\ProtectDisc Driver 11) (Version: 11.0.0.13 - ProtectDisc Software GmbH) PureSync (Version: 3.7.0 - Jumping Bytes) Hidden PureSync 3.7.0 (HKLM\...\PureSync) (Version: 3.7.0 - Jumping Bytes) PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden QuickTime (HKLM\...\{0E64B098-8018-4256-BA23-C316A43AD9B0}) (Version: 7.72.80.56 - Apple Inc.) realify Software (HKLM\...\realify Software) (Version: - ) Realtek Ethernet Controller Driver For Windows Vista and Later (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0011 - Realtek) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM\...\{B20F9D1C-A0A5-4cd8-8306-DE95842311B1}) (Version: 1.00.0129 - REALTEK Semiconductor Corp.) Registry CleanUP 5 (HKLM\...\247C9365-9617-43EE-934F-84A8ADCB89D7_is1) (Version: 5.0 - Marx Softwareentwicklung (Germany)) Registry CleanUp 5 Installation & Registrierung (HKLM\...\{E83BD122-F7F1-4AA3-8140-DAE1F54E7B4F}_is1) (Version: - Software 4U, dadagoo GmbH) RoboForm 7-9-14-4 (All Users) (HKLM\...\AI RoboForm) (Version: 7-9-14-4 - Siber Systems) Sardegna 3D (HKLM\...\{ABDB277A-C524-43BF-9A79-1BFBAF42D1A4}) (Version: 1.1.1 - Regione Autonoma della Sardegna) Scansoft PDF Create (Version: - ) Hidden SendBlaster 3 (HKLM\...\{486575DF-CC13-4F89-8636-C2CC5BDA7246}) (Version: 003.001.00006 - eDisplay srl) SEO PowerSuite (HKLM\...\seopowersuite) (Version: - ) SHIELD Streaming (Version: 4.1.2000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.4.5.28 - NVIDIA Corporation) Hidden Skype™ 7.7 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.103 - Skype Technologies S.A.) SmarterNotify (HKLM\...\InstallShield_{0005B1B8-1620-4DF6-8109-448C7D0DDF68}) (Version: 1.0.3393.18285 - SmarterTools Inc.) SmarterNotify (Version: 1.0.3393.18285 - SmarterTools Inc.) Hidden SmarterTrack Communicator (HKLM\...\{F9AC3F84-8D44-4A9A-BAB7-F7D5FAEBBC0B}) (Version: 1.1.4653.27836 - SmarterTools Inc.) SQL Server 2008 R2 Common Files (Version: 10.50.1600.1 - Microsoft Corporation) Hidden SQL Server 2008 R2 Database Engine Services (Version: 10.50.1600.1 - Microsoft Corporation) Hidden SQL Server 2008 R2 Database Engine Shared (Version: 10.50.1600.1 - Microsoft Corporation) Hidden SQL Server 2008 R2 Full text search (Version: 10.50.1600.1 - Microsoft Corporation) Hidden Sql Server Customer Experience Improvement Program (Version: 10.50.1600.1 - Microsoft Corporation) Hidden StarMoney (Version: 4.0.2.34 - StarFinanz) Hidden Start Menu X Version 4.66 (HKLM\...\{3E494002-985C-4908-B72C-5B4DD15BE090}_is1) (Version: 4.66 - OrdinarySoft) Studie zur Verbesserung von HP Officejet 6500 E710n-z Produkten (HKLM\...\{195F5712-5E23-4DBB-8413-0EC6F0D60ABA}) (Version: 22.0.334.0 - Hewlett-Packard Co.) SurfDays (HKLM\...\SurfDays) (Version: 1.1.70 - ) System Requirements Lab for Intel (HKLM\...\{53C63F43-B827-42D9-8886-4698D91EA33B}) (Version: 4.5.15.0 - Husdawg, LLC) TeamViewer 10 (HKLM\...\TeamViewer) (Version: 10.0.45862 - TeamViewer) ToshibaEdit (remove only) (HKLM\...\ToshibaEdit) (Version: - ) Turbo Lister 2 (HKLM\...\{8927E07C-97F7-4A54-88FB-D976F50DD46E}) (Version: 2.00.0000 - eBay Inc.) UltraView ver.1.2.0.6 (HKLM\...\{A5918A75-2A44-4DA5-81FB-0B9349524BBF}) (Version: 1.2.6 - UltraView) Unchecky v0.3.9 (HKLM\...\Unchecky) (Version: 0.3.9 - RaMMicHaeL) Uninstall 1.0.0.1 (HKLM\...\Uninstall_is1) (Version: - ) Unity Web Player (HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\UnityWebPlayer) (Version: 2.6.1f3_31223 - Unity Technologies ApS) UpdateStar (HKLM\...\{C6E56D8C-C820-4A8A-8BCD-75D752098309}) (Version: 9.0.1169 - UpdateStar GmbH) USB Wireless Keyboard Driver (HKLM\...\{EDC66A92-4603-4D72-B28C-570075B55DF0}) (Version: V1.1 - My Company Name) V1 Home 2.0 (HKLM\...\InstallShield_{E75594A0-B088-4635-B4F6-99654B5DDF96}) (Version: 2.02.20 - Interactive Frontiers) V1 Home 2.0 (Version: 2.02.20 - Interactive Frontiers) Hidden VanDyke Software SecureCRT 5.0 (HKLM\...\SecureCRT) (Version: 5.0 - VanDyke Software, Inc.) Veox Shine 7.86 (HKLM\...\{AE2CEF8F-EF13-4BB7-B96B-5CD17141711D}}_is1) (Version: - Design und Develop) VideoPad Video Editor (HKLM\...\VideoPad) (Version: - NCH Software) VillaCalculator (HKLM\...\{DA23C7CB-474D-4DEB-96F3-EA4C40542B4B}) (Version: 1.0.0 - Microsoft) VisualLightBox (HKLM\...\VisualLightBox_is1) (Version: - ) Vokabel Trainer 5 (HKLM\...\{5E0D2061-86AB-4B83-A671-A0BF3FF1537B}_is1) (Version: - Manuel Wäschle) WavePad Sound Editor (HKLM\...\WavePad) (Version: - NCH Software) WebCallDirect (HKLM\...\WebCallDirect_is1) (Version: 4.07 build 629 - Finarea S.A. Switzerland) Windows 7 USB/DVD Download Tool (HKLM\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Sync (HKLM\...\{B10914FD-8812-47A4-85A1-50FCDE7F1F33}) (Version: 14.0.8117.416 - Microsoft Corporation) WinMerge 2.14.0 (HKLM\...\WinMerge_is1) (Version: 2.14.0 - Thingamahoochie Software) WinPcap 4.1.3 (HKLM\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) WinRAR archiver (HKLM\...\WinRAR archiver) (Version: - ) WinSCP 5.5.1 (HKLM\...\winscp3_is1) (Version: 5.5.1 - Martin Prikryl) Wireshark 1.12.3 (32-bit) (HKLM\...\Wireshark) (Version: 1.12.3 - The Wireshark developer community, hxxp://www.wireshark.org) Wondershare MobileGo for Android ( Version 5.3.2 ) (HKLM\...\{1E04C795-7359-4E05-8A0E-5644F777AA08}_is1) (Version: 5.3.2 - Wondershare) Wondershare PDF to Word (Build 4.0.1) (HKLM\...\{90599D63-1879-4B90-BE4F-051CE70FA576}_is1) (Version: 4.0.1 - Wondershare Software) Zoner Photo Studio 16 (HKLM\...\ZonerPhotoStudio16_DE_is1) (Version: 16.0.1.8 - ZONER software) ZumoDrive (HKLM\...\ZumoDrive) (Version: - Zecter Inc.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{0000002F-0000-0000-C000-000000000046}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{0002E005-0000-0000-C000-000000000046}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{004B49B7-11B9-5058-FF22-08DD093ADC4B}\InprocServer32 -> {1F47BB44-9468-D082-122B-36EE85889A47} Keine Datei CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> C:\Users\Marc\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}\InprocServer32 -> C:\Users\Marc\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{0BE35200-8F91-11CE-9DE3-00AA004BB851}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{0BE35201-8F91-11CE-9DE3-00AA004BB851}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{0BE35202-8F91-11CE-9DE3-00AA004BB851}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{0BE35203-8F91-11CE-9DE3-00AA004BB851}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{0BE35204-8F91-11CE-9DE3-00AA004BB851}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635021-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635022-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635023-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635024-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635025-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635026-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635029-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B63502A-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B63502D-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B63502E-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635031-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635032-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635035-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635037-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B635039-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B63503B-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{1B63503D-8269-11D8-9E2B-004005A9ABD2}\InprocServer32 -> C:\Program Files\Hausratverwaltung70\tx4ole11.ocx (The Imaging Source Europe GmbH) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> C:\Users\Marc\AppData\Local\Google\Update\1.3.21.65\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> C:\Users\Marc\AppData\Local\Google\Update\1.3.21.65\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{3059C9E6-9EDC-4C89-933E-C65623F8FD60}\localserver32 -> C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\Marc\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{46763EE0-CAB2-11CE-8C20-00AA0051E5D4}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> C:\Users\Marc\AppData\Local\Google\Update\1.3.21.65\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{87DC457B-B35D-48AC-BD42-BDF35EF623CE}\localserver32 -> C:\Users\Marc\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{994B47B9-7DB9-5058-EE22-08DD039ADC4B}\InprocServer32 -> {1F522F38-9468-D082-6EBF-23EE85889A47} Keine Datei CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{9FAA38ED-5635-44F7-9BE0-8CAFE29B3783}\localserver32 -> C:\Users\Marc\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocServer32 -> kein Dateipfad CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{C0DD324D-A74F-4533-84AD-030F76771C77}\localserver32 -> C:\Users\Marc\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\InprocServer32 -> C:\Users\Marc\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{C32E3EEC-3C10-426E-95F3-38C7F139FADD}\localserver32 -> C:\Users\Marc\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\InprocServer32 -> C:\Users\Marc\AppData\Local\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{C98FE784-B96E-41e1-8399-1337AE3E539F}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll Keine Datei CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 -> C:\Users\Marc\AppData\Local\Dropbox\Update\1.3.27.29\psuser.dll Keine Datei CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{DB25D157-76D4-41C1-97B5-359E4A4CECEB}\InprocServer32 -> C:\Users\Marc\AppData\Local\Google\Update\1.3.21.65\psuser.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{DD0822EE-9A03-4BDC-B947-4B99B97D5850}\InprocServer32 -> {47C261EF-9468-D082-B9F1-B3B685889A47} Keine Datei CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{DD0822FF-3A09-4BDC-B749-4B00B9115850}\InprocServer32 -> {5F539A15-9468-D082-430A-22AE85889A47} Keine Datei CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> C:\Users\Marc\AppData\Local\Google\Update\1.3.21.65\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Marc\AppData\Local\Google\Update\1.3.21.65\psuser.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-895905325-2879171232-1046163952-1008_Classes\CLSID\{FE819BE5-BADF-4370-9913-6FB84ABA6FB1}\InprocServer32 -> C:\Users\Marc\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll (Dropbox, Inc.) ==================== Wiederherstellungspunkte ========================= 26-09-2015 02:42:57 Geplanter Prüfpunkt ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:04 - 2015-09-25 23:56 - 00001993 ____A C:\Windows\system32\Drivers\etc\hosts 0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com 0.0.0.0 media.opencandy.com 0.0.0.0 cdn.opencandy.com 0.0.0.0 tracking.opencandy.com 0.0.0.0 api.opencandy.com 0.0.0.0 installer.betterinstaller.com 0.0.0.0 installer.filebulldog.com 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net 0.0.0.0 inno.bisrv.com 0.0.0.0 nsis.bisrv.com 0.0.0.0 cdn.file2desktop.com 0.0.0.0 cdn.goateastcach.us 0.0.0.0 cdn.guttastatdk.us 0.0.0.0 cdn.inskinmedia.com 0.0.0.0 cdn.insta.oibundles2.com 0.0.0.0 cdn.insta.playbryte.com 0.0.0.0 cdn.llogetfastcach.us 0.0.0.0 cdn.montiera.com 0.0.0.0 cdn.msdwnld.com 0.0.0.0 cdn.mypcbackup.com 0.0.0.0 cdn.ppdownload.com 0.0.0.0 cdn.riceateastcach.us 0.0.0.0 cdn.shyapotato.us 0.0.0.0 cdn.solimba.com 0.0.0.0 cdn.tuto4pc.com 0.0.0.0 cdn.appround.biz 0.0.0.0 cdn.bigspeedpro.com 0.0.0.0 cdn.bispd.com Da befinden sich 4 zusätzliche Einträge. ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0668EA2B-B103-44E5-917E-E34222ED013A} - System32\Tasks\FaxArchive_CN09F113K805JW => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\FaxApplications.exe [2012-10-17] (Hewlett-Packard Co.) Task: {0AB5D50C-3290-4AF1-9D05-4B90BAEFC565} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-895905325-2879171232-1046163952-1008UA => C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-20] (Dropbox, Inc.) Task: {0B70829D-3E7E-4C21-880B-0390AF0D7106} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {12546C6E-2509-4F56-9EBD-91835C81D31D} - System32\Tasks\Microsoft\Support\Microsoft Fix it Center\OSUpgrade => Rundll32.exe "C:\Program Files\Microsoft Fix it Center\MatsApi.dll",RunHandleOSUpgrade Task: {13E5C937-1520-4827-9F81-FB64879A6543} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [2015-06-19] (Siber Systems) Task: {268BF531-5C4A-424E-A5BE-4D4D9FB4F981} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {276308C5-9E35-4019-BC6F-B228E85F3547} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {279C1139-0CCD-485E-87BD-1E078B521C64} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {29B887D9-2225-4625-A74B-4D3BDD87D1C7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-895905325-2879171232-1046163952-1008Core => C:\Users\Marc\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-16] (Google Inc.) Task: {2B2C77AD-B7B3-461B-9163-A68B197EB1E8} - System32\Tasks\avast! Emergency Update => C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe Task: {2F8E6F8F-CB05-492B-9F70-1E814AC74462} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation) Task: {34ECE2ED-DE8D-4B5E-ADBC-1183168EEB9D} - System32\Tasks\Launch HTC Sync Loader => C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe [2012-05-29] () Task: {35CC2246-0696-4947-BF37-258D9DD2F2B6} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation) Task: {3F9E2D30-D74D-4E84-B8B5-82493104AD0B} - System32\Tasks\HP Officejet 6500 E710n-z.exe => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HP Officejet 6500 E710n-z.exe [2012-10-17] (Hewlett-Packard Co.) Task: {450E37CE-86F4-488C-AB74-EA82172AFB10} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {46EADEAF-9848-4B60-B99E-7BC720BFCE04} - System32\Tasks\FaxSetupWizard.exe => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\FaxSetupWizard.exe Task: {4BD951C3-8234-464F-A23C-A34817D1B5C9} - System32\Tasks\HPCustParticipation HP Officejet 6500 E710n-z => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPCustPartic.exe [2010-06-14] (Hewlett-Packard Co.) Task: {5189633D-E47D-427A-AF32-3C8869F98F7D} - System32\Tasks\Amigabit Disk Defrag => C:\Program Files\Amigabit\Disk Defrag\DiskDefrag.exe Task: {5273E078-03C9-45E9-92EB-F95022A8A5B8} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation) Task: {5500C1EF-536F-4176-9191-ECECB87D02B3} - System32\Tasks\Go to RoboForm Install page => Rundll32.exe url.dll,FileProtocolHandler "hxxp://www.roboform.com/test-pass.html?aaa=KICMIMLJKJKJPMNJLMMJCNMJOJOMMMCNLMGMOMLMCNNJGMJJMMCNGMJJOJHMPMKJMMHMMJOJJJMMJNJICMJMCNGMCNGMGMFMHMCNPMCNIMJMPMPMFMJMCNOMCNIMJMPMPMCNNMJNPICMLMFMEKMICNJJCKFMPMJNHICMEKMICNJJCKJNBJCMAJNILIDJKJNIJNKJCMJNNICMJNDJCMLJKJ" Task: {586B6EFB-B88A-46C0-A8B6-8AA07091F634} - System32\Tasks\Microsoft_Hardware_Launch_devicecenter_exe => c:\Program Files\Microsoft Device Center\devicecenter.exe Task: {5C134199-135A-4BBE-BCE7-56886D8E8AFC} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {5F3AFE02-D819-4F14-9950-22EDD6A1750D} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {5F5B7D6E-80C6-4D00-A7E7-954736DF79EE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-09-26] (Adobe Systems Incorporated) Task: {61266B1E-F178-4D7A-A3C8-BA0143FD4A63} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {69000200-D240-4CFA-8086-3A80A769F44F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {6CC82796-90ED-4B39-A7AF-C20B367DCC82} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {7063123D-2F0D-405C-9D9A-CC181B72A09C} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {74CE155C-6510-41AA-A788-7B0B3FE21C7A} - System32\Tasks\FaxArchive_CN08I1316305JW => C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\FaxArchive.exe Task: {78F0A985-07F1-4489-9D84-5888C4936D50} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {7F994749-0E15-4637-B839-E08099AC3234} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {8439F7D4-4321-4767-86D7-860A5DFE4E74} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-09-26] (Microsoft Corporation) Task: {934D17B5-3295-439C-A3BD-9805496A6FED} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {94C6FA4C-07FA-4A3C-8F3F-3D6EB5EF0245} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {95685976-6FC4-40D8-856B-2E941B9BA6EB} - System32\Tasks\Microsoft\Support\Microsoft Fix it Center\ConfigExec => Rundll32.exe "C:\Program Files\Microsoft Fix it Center\MatsApi.dll",RunCollectConfigurationInfo Task: {9B58CF7A-4BE4-49E9-BD0C-027A99D28739} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {9BD2D4AD-3551-467F-B895-30C4765718C0} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {A03231D2-A04E-45CC-9D52-27EF8518F153} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-895905325-2879171232-1046163952-1008Core => C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-20] (Dropbox, Inc.) Task: {A6058719-56DC-4C4B-BF99-FFBF628A656C} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {A7DA4310-EA0B-4FD8-862F-0746469F48FA} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {ADFACD1D-117C-4FA7-AB3A-3B97494C9BEA} - System32\Tasks\HpWebReg.exe => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HpWebReg.exe Task: {B66E9E57-6BFE-40E3-B807-AB9A2A0A4A2C} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {BD7C8692-BB44-4BF9-BDA5-C57AC8BDA3F2} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX86\OfficeC2RClient.exe [2015-09-11] (Microsoft Corporation) Task: {BD964EB6-0A10-46D2-AD2C-EBD1CA2EF9A8} - System32\Tasks\hpUrlLauncher.exe => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\utils\hpUrlLauncher.exe [2012-10-17] (Hewlett-Packard Co.) Task: {C17063FC-68C3-41B0-8C16-C17288AE380A} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe Task: {C55665E5-F2F9-4DEB-8D4D-FAFD0D6FB636} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {CCCDF5BB-8FCE-4741-BBAF-D95F5477E9E5} - System32\Tasks\{6D0B449B-3616-43C1-B87B-06B4F7FD92C9} => C:\Program Files\Skype\Phone\Skype.exe [2015-08-07] (Skype Technologies S.A.) Task: {CD35081F-DD81-4A62-A85F-682E9B92F57A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {CE705BCD-B1F6-49BF-A77C-DF21A73B19A6} - System32\Tasks\Microsoft\Support\Microsoft Fix it Center\ReportUpload => Rundll32.exe "C:\Program Files\Microsoft Fix it Center\MatsApi.dll",RunUploadWinReports Task: {D131BEE6-9F10-416B-A630-817C2035C875} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {D3C85A74-FBC5-42DF-8A08-719E9B9D363A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {D441766E-C68F-49F3-9277-98BB1F9EDBB6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-895905325-2879171232-1046163952-1008UA => C:\Users\Marc\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-16] (Google Inc.) Task: {D94BE9A4-0298-492D-BDF2-02341A38E4FF} - System32\Tasks\AllmyappsUpdateTask => C:\Users\Marc\AppData\Roaming\Allmyapps\AllmyappsUpdater.exe Task: {D95557C0-BFDF-41C1-A123-EFEB5BA4F686} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX86\OfficeC2RClient.exe [2015-09-11] (Microsoft Corporation) Task: {DCF43DD0-55AB-4E92-B3C9-DD46FC90F855} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {DFCC481A-3B91-4DE1-B41D-8297CCF1C8AA} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {E17108DF-2BDE-4D02-BB7A-1159795F0DFC} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {E3EED758-1FD2-4B89-BB4D-6AC88BA6511B} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {ED80852A-9D49-4214-BA4F-EE805BEBD432} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {F46927F1-7D2E-44EC-BD0F-F022775ACB3D} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {F72E7303-2B3A-48FD-B8F1-E10491368ADE} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft) Task: {F9D8A81D-F6FA-4384-BADD-E9DBEE9C7DAA} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation) Task: {FB1130A4-42CD-4FA9-80D2-D287EC74C3F9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-12-19] (Piriform Ltd) Task: {FB6D3846-96BA-4FEC-B1F5-95BEB49E3BE5} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\AllmyappsUpdateTask.job => C:\Users\Marc\AppData\Roaming\Allmyapps\AllmyappsUpdater.exe Task: C:\Windows\Tasks\Amigabit Disk Defrag.job => C:\Program Files\Amigabit\Disk Defrag\DiskDefrag.exe Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-895905325-2879171232-1046163952-1008Core.job => C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-895905325-2879171232-1046163952-1008UA.job => C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\FaxArchive_CN08I1316305JW.job => C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\FaxArchive.exe Task: C:\Windows\Tasks\FaxArchive_CN09F113K805JW.job => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\FaxApplications.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-895905325-2879171232-1046163952-1008Core.job => C:\Users\Marc\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-895905325-2879171232-1046163952-1008UA.job => C:\Users\Marc\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-08-01 13:23 - 2015-08-01 13:23 - 00025088 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll 2015-08-01 12:33 - 2013-10-23 09:19 - 00092448 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll 2014-08-06 13:40 - 2014-08-06 13:40 - 00031080 _____ () C:\Program Files\HTC\HTC Sync Manager\DbAccess.dll 2014-08-06 13:41 - 2014-08-06 13:41 - 00607376 _____ () C:\Program Files\HTC\HTC Sync Manager\sqlite3.dll 2014-08-06 13:41 - 2014-08-06 13:41 - 00059752 _____ () C:\Program Files\HTC\HTC Sync Manager\NAdvLog.dll 2014-08-06 13:41 - 2014-08-06 13:41 - 00036216 _____ () C:\Program Files\HTC\HTC Sync Manager\NFileCacheDBAccess.dll 2014-08-06 13:42 - 2014-08-06 13:42 - 00080248 _____ () C:\Program Files\HTC\HTC Sync Manager\ninstallerhelper.dll 2015-08-31 14:05 - 2015-08-18 09:27 - 01771592 _____ () C:\Windows\system32\CoreUIComponents.dll 2015-05-30 22:46 - 2015-05-23 03:48 - 00011920 _____ () C:\Program Files\NVIDIA Corporation\Update Core\detoured.dll 2011-08-06 19:28 - 2011-08-06 19:28 - 02078208 _____ () C:\Program Files\webcamXP 5\IPCameraRTSP.ax 2014-10-16 11:15 - 2014-10-16 11:15 - 00035328 _____ () C:\Program Files\FileZilla FTP Client\fzshellext.dll 2014-05-24 18:41 - 2014-05-24 18:41 - 00091648 _____ () C:\Program Files\FileZilla FTP Client\libgcc_s_sjlj-1.dll 2014-05-24 18:41 - 2014-05-24 18:41 - 00892416 _____ () C:\Program Files\FileZilla FTP Client\libstdc++-6.dll 2015-09-26 00:10 - 2015-09-26 00:10 - 00098816 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32api.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00110080 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\pywintypes27.dll 2015-09-26 00:10 - 2015-09-26 00:10 - 00364544 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\pythoncom27.dll 2015-09-26 00:10 - 2015-09-26 00:10 - 00045568 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\_socket.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 01161216 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\_ssl.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00320512 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32com.shell.shell.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00713216 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\_hashlib.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 01176576 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\wx._core_.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00806400 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\wx._gdi_.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00816128 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\wx._windows_.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 01067008 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\wx._controls_.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00733184 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\wx._misc_.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00682496 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\pysqlite2._sqlite.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00087552 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\_ctypes.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00119808 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32file.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00108544 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32security.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00007168 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\hashobjs_ext.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00068096 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\usb_ext.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00167936 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32gui.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00018432 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32event.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00128512 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\_elementtree.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00127488 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\pyexpat.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00013824 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\common.time34.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00036864 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\_psutil_windows.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00038912 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32inet.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00011264 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32crypt.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00077312 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\wx._html2.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00027136 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\_multiprocessing.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00020480 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\_yappi.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00035840 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32process.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00686080 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\unicodedata.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00123392 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\wx._wizard.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00024064 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32pipe.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00010240 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\select.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00025600 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32pdh.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00525640 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\windows._lib_cacheinvalidation.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00017408 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32profile.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00022528 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\win32ts.pyd 2015-09-26 00:10 - 2015-09-26 00:10 - 00078848 _____ () C:\Users\Marc\AppData\Local\Temp\_MEI41642\wx._animate.pyd 2015-09-17 01:24 - 2015-09-12 02:22 - 01501512 _____ () C:\Program Files\Google\Chrome\Application\45.0.2454.93\libglesv2.dll 2015-09-17 01:24 - 2015-09-12 02:22 - 00081224 _____ () C:\Program Files\Google\Chrome\Application\45.0.2454.93\libegl.dll 2015-09-26 00:11 - 2015-09-26 00:11 - 00071168 _____ () c:\users\marc\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmprlofnr.dll 2015-09-04 22:04 - 2015-08-05 07:26 - 00012800 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll 2015-09-04 22:04 - 2015-08-05 07:26 - 00779776 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-09-04 22:04 - 2015-08-05 07:26 - 00056320 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-09-04 22:04 - 2015-08-05 07:26 - 00012288 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll 2010-09-21 14:27 - 2014-03-10 18:41 - 00457000 _____ () C:\Program Files\PhraseExpress\pexlang.dll 2014-11-19 18:44 - 2014-05-20 03:11 - 00080040 _____ () C:\Program Files\Microsoft Office 15\ClientX86\ApiClient.dll 2013-01-21 00:46 - 2015-09-14 15:56 - 00074272 _____ () C:\Program Files\pdf24\zlib.dll 2011-03-02 17:59 - 2015-09-14 15:56 - 00051744 _____ () C:\Program Files\pdf24\OperationUI.dll 2015-08-31 14:05 - 2015-08-18 09:27 - 01771592 _____ () C:\Windows\System32\CoreUIComponents.dll 2015-07-10 10:24 - 2015-07-10 10:24 - 00288768 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2015-07-10 10:24 - 2015-07-10 10:24 - 00111104 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll 2015-08-12 12:16 - 2015-08-03 02:57 - 04317696 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2015-07-10 10:25 - 2015-07-10 15:16 - 00377856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2015-08-19 12:13 - 2015-08-11 10:35 - 01183232 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2015-08-12 12:16 - 2015-08-03 02:55 - 01425920 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-07-10 10:25 - 2015-07-10 15:16 - 00107520 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll 2015-07-10 10:25 - 2015-07-10 15:16 - 01386496 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RulesService.dll 2015-08-01 13:23 - 2015-08-01 13:23 - 00500736 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SignalsManager.dll 2015-08-12 12:16 - 2015-08-03 02:55 - 00707072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RulesBackgroundTasks.dll 2015-09-26 00:47 - 2015-09-26 00:47 - 17592008 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_19_0_0_185.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\32d32f2fe5dc28c15a6763:Win32App AlternateDataStreams: C:\3603861004cea182b51f107359a369:Win32App AlternateDataStreams: C:\5a56b3996769250763fac1:Win32App AlternateDataStreams: C:\5b01a7830f33e4bad2e1b97a:Win32App AlternateDataStreams: C:\70813f22ebb699848a:Win32App AlternateDataStreams: C:\74a62a4e311802a86dbfc29096:Win32App AlternateDataStreams: C:\8a92888d5791210d239ace:Win32App AlternateDataStreams: C:\9b6de4c1acca1def9b1b7570:Win32App AlternateDataStreams: C:\a41d91fab70384bd9c1ce7009b:Win32App AlternateDataStreams: C:\aa930393358054721c7ccf:Win32App AlternateDataStreams: C:\aae0fb9e97b1bddcdd0f0c:Win32App AlternateDataStreams: C:\c3a510b96a13ad09dcb155ea:Win32App AlternateDataStreams: C:\c53e3aa6024017885aedaffdc099:Win32App AlternateDataStreams: C:\cdcff45c5cb1dd0bc1b723f93d8a:Win32App AlternateDataStreams: C:\d676c1c9f47d3bfded378f3a3ba0fb:Win32App AlternateDataStreams: C:\d6d61df0030aecf35dc977d7365fba:Win32App AlternateDataStreams: C:\dcc9864042f7035380ba96d87e:Win32App AlternateDataStreams: C:\f30cdda5e2f96065d81513e4:Win32App AlternateDataStreams: C:\f3e618f48a956588f339b9cb:Win32App AlternateDataStreams: C:\fd475986ba69459cf58af3cafe7f:Win32App AlternateDataStreams: C:\iTrainer:Win32App AlternateDataStreams: C:\MyHeritage:Win32App AlternateDataStreams: C:\ProgramData:BDSDRMHK AlternateDataStreams: C:\Windows:nlsPreferences AlternateDataStreams: C:\Program Files\Advanced IP Scanner v2:Win32App AlternateDataStreams: C:\Program Files\AdvancedRemoteInfo:Win32App AlternateDataStreams: C:\Program Files\AllDup:Win32App AlternateDataStreams: C:\Program Files\Apple Software Update:Win32App AlternateDataStreams: C:\Program Files\Bulk Rename Utility:Win32App AlternateDataStreams: C:\Program Files\Business Objects:Win32App AlternateDataStreams: C:\Program Files\CamSpy:Win32App AlternateDataStreams: C:\Program Files\CCleaner:Win32App AlternateDataStreams: C:\Program Files\CDBurnerXP:Win32App AlternateDataStreams: C:\Program Files\Combined Community Codec Pack:Win32App AlternateDataStreams: C:\Program Files\Easy GIF Animator:Win32App AlternateDataStreams: C:\Program Files\EssentialPIM:Win32App AlternateDataStreams: C:\Program Files\FileZilla FTP Client:Win32App AlternateDataStreams: C:\Program Files\Foto_Grafik_Designer_6:Win32App AlternateDataStreams: C:\Program Files\Free MOV to AVI Converter:Win32App AlternateDataStreams: C:\Program Files\Gigaset QuickSync:Win32App AlternateDataStreams: C:\Program Files\GIMP 2:Win32App AlternateDataStreams: C:\Program Files\Haushaltsbuch80:Win32App AlternateDataStreams: C:\Program Files\Hausratverwaltung40:Win32App AlternateDataStreams: C:\Program Files\Hausratverwaltung70:Win32App AlternateDataStreams: C:\Program Files\HDD Health:Win32App AlternateDataStreams: C:\Program Files\HP:Win32App AlternateDataStreams: C:\Program Files\IAcademy:Win32App AlternateDataStreams: C:\Program Files\Jalbum:Win32App AlternateDataStreams: C:\Program Files\jAlbum10:Win32App AlternateDataStreams: C:\Program Files\K-Lite Codec Pack:Win32App AlternateDataStreams: C:\Program Files\ Malwarebytes Anti-Malware :Win32App AlternateDataStreams: C:\Program Files\MemoMaster:Win32App AlternateDataStreams: C:\Program Files\Microsoft Fix it Center:Win32App AlternateDataStreams: C:\Program Files\Microsoft LifeCam:Win32App AlternateDataStreams: C:\Program Files\Microsoft Mouse and Keyboard Center:Win32App AlternateDataStreams: C:\Program Files\Microsoft Office 15:Win32App AlternateDataStreams: C:\Program Files\Microsoft Security Client:Win32App AlternateDataStreams: C:\Program Files\Microsoft Silverlight:Win32App AlternateDataStreams: C:\Program Files\Microsoft SQL Server:Win32App AlternateDataStreams: C:\Program Files\Microsoft SQL Server Compact Edition:Win32App AlternateDataStreams: C:\Program Files\Microsoft Works:Win32App AlternateDataStreams: C:\Program Files\Mozilla Thunderbird:Win32App AlternateDataStreams: C:\Program Files\MSXML 4.0:Win32App AlternateDataStreams: C:\Program Files\MyDefrag v4.3.1:Win32App AlternateDataStreams: C:\Program Files\National Instruments:Win32App AlternateDataStreams: C:\Program Files\Nuance:Win32App AlternateDataStreams: C:\Program Files\NVIDIA Corporation:Win32App AlternateDataStreams: C:\Program Files\OneNote:Win32App AlternateDataStreams: C:\Program Files\Open Workbench:Win32App AlternateDataStreams: C:\Program Files\Paint.NET:Win32App AlternateDataStreams: C:\Program Files\PasswdFinder:Win32App AlternateDataStreams: C:\Program Files\PDF Architect:Win32App AlternateDataStreams: C:\Program Files\pdf24:Win32App AlternateDataStreams: C:\Program Files\PhraseExpress:Win32App AlternateDataStreams: C:\Program Files\PhraseExpress SQL Client Manager:Win32App AlternateDataStreams: C:\Program Files\PicaJet:Win32App AlternateDataStreams: C:\Program Files\Poedit:Win32App AlternateDataStreams: C:\Program Files\PureSync:Win32App AlternateDataStreams: C:\Program Files\QuickTime:Win32App AlternateDataStreams: C:\Program Files\REALTEK 11n USB Wireless LAN Driver:Win32App AlternateDataStreams: C:\Program Files\Sardegna 3D:Win32App AlternateDataStreams: C:\Program Files\SendBlaster3:Win32App AlternateDataStreams: C:\Program Files\StarMoney Business 6.0:Win32App AlternateDataStreams: C:\Program Files\Start Menu X:Win32App AlternateDataStreams: C:\Program Files\SystemRequirementsLab:Win32App AlternateDataStreams: C:\Program Files\TeamViewer:Win32App AlternateDataStreams: C:\Program Files\Unchecky:Win32App AlternateDataStreams: C:\Program Files\USB Wireless Keyboard Driver:Win32App AlternateDataStreams: C:\Program Files\Virtual Earth 3D:Win32App AlternateDataStreams: C:\Program Files\VisualLightBox:Win32App AlternateDataStreams: C:\Program Files\Vokabel Trainer:Win32App AlternateDataStreams: C:\Program Files\Windows Live:Win32App AlternateDataStreams: C:\Program Files\WinMerge:Win32App AlternateDataStreams: C:\Program Files\WinSCP:Win32App AlternateDataStreams: C:\Program Files\Wireshark:Win32App AlternateDataStreams: C:\Windows\System32:Win32App AlternateDataStreams: C:\Users\All Users:BDSDRMHK AlternateDataStreams: C:\Program Files\Common Files\Acronis:Win32App AlternateDataStreams: C:\Program Files\Common Files\Adobe:Win32App AlternateDataStreams: C:\Program Files\Common Files\Adobe AIR:Win32App AlternateDataStreams: C:\Program Files\Common Files\DESIGNER:Win32App AlternateDataStreams: C:\Program Files\Common Files\DVDVideoSoft:Win32App AlternateDataStreams: C:\Program Files\Common Files\Jasc Software Inc:Win32App AlternateDataStreams: C:\Program Files\Common Files\microsoft shared:Win32App AlternateDataStreams: C:\Program Files\Common Files\ScanSoft Shared:Win32App AlternateDataStreams: C:\ProgramData\Anwendungsdaten:BDSDRMHK AlternateDataStreams: C:\ProgramData\Application Data:BDSDRMHK AlternateDataStreams: C:\ProgramData\HP:Win32App AlternateDataStreams: C:\ProgramData\regid.1991-06.com.microsoft:Win32App AlternateDataStreams: C:\ProgramData\Temp:FD9CE1F3 AlternateDataStreams: C:\Users\Marc\Downloads\iSpy_3_8_7_0:Win32App AlternateDataStreams: C:\Users\Marc\Downloads\NetObjects-Fusion-XII.exe:Win32App AlternateDataStreams: C:\Users\Marc\AppData\Roaming\UpdateStar:Win32App AlternateDataStreams: C:\Users\Marc\AppData\Local\Temp:Win32App ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\j2kip.com -> hxxp://www.j2kip.com IE trusted site: HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\j2kip.com -> hxxps://www.j2kip.com IE trusted site: HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\mercator.net -> hxxps://mercator.net IE trusted site: HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\onlinehome-server.info -> hxxps://s15846059.onlinehome-server.info ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-895905325-2879171232-1046163952-1008\Control Panel\Desktop\\Wallpaper -> C:\Users\Marc\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\transcodedwallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. (nächster Teil folgt) |
26.09.2015, 14:58 | #41 |
| Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] man kann hier nur 1200000 Zeilen posten, deshalb so viele Teile... Code:
ATTFilter ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\Services: AcrSch2Svc => 2 MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AmagnoUpdateService.exe => 2 MSCONFIG\Services: aspnet_state => 3 MSCONFIG\Services: bthserv => 3 MSCONFIG\Services: DavidDiscussionServer => 3 MSCONFIG\Services: DavidGrabbingServer => 2 MSCONFIG\Services: DavidHost => 3 MSCONFIG\Services: DavidMailAccessServer => 2 MSCONFIG\Services: DavidPBXpense => 3 MSCONFIG\Services: DavidPostMan => 2 MSCONFIG\Services: DavidReplica => 2 MSCONFIG\Services: DavidServiceLayer => 2 MSCONFIG\Services: DavidShowInterfaceServices => 3 MSCONFIG\Services: DavidTVIndex => 3 MSCONFIG\Services: DavidVideoCapture => 3 MSCONFIG\Services: DavidWebBox => 3 MSCONFIG\Services: Fax => 3 MSCONFIG\Services: FirebirdServerMAGIXInstance => 3 MSCONFIG\Services: FLEXnet Licensing Service => 3 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: gusvc => 3 MSCONFIG\Services: NMSAccess => 2 MSCONFIG\Services: PCSUITEINSPECTORSVC => 2 MSCONFIG\Services: PDF Architect Helper Service => 3 MSCONFIG\Services: pixelx_backup => 2 MSCONFIG\Services: TeamViewer6 => 2 MSCONFIG\Services: wlidsvc => 2 MSCONFIG\Services: WMPNetworkSvc => 2 MSCONFIG\Services: WPCSvc => 3 MSCONFIG\Services: WPDBusEnum => 3 MSCONFIG\Services: WysePocketCloud => 2 MSCONFIG\Services: WyseRemoteAccess => 2 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^eTeL4.1.lnk => C:\Windows\pss\eTeL4.1.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Nuance Cloud Connector.lnk => C:\Windows\pss\Nuance Cloud Connector.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Marc^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^EvernoteClipper.lnk => C:\Windows\pss\EvernoteClipper.lnk.Startup MSCONFIG\startupfolder: C:^Users^Marc^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Gesundheits-Termin.lnk => C:\Windows\pss\Gesundheits-Termin.lnk.Startup MSCONFIG\startupreg: Acrobat Assistant 8.0 => "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" MSCONFIG\startupreg: Acronis Scheduler2 Service => "C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe" MSCONFIG\startupreg: adm_tray.exe => C:\Program Files\PC-TOOLS\AcronisDriveMonitor\DriveMonitor\adm_tray.exe MSCONFIG\startupreg: Allmyapps => "C:\Users\Marc\AppData\Roaming\Allmyapps\Allmyapps.exe" startup MSCONFIG\startupreg: Allmyapps Update => "C:\Users\Marc\AppData\Roaming\Allmyapps\AllmyappsUpdater.exe" check startup MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: CRM-Plus => C:\Program Files\CRM-Plus 2014\CRMTray.exe MSCONFIG\startupreg: FileTransferForMobileGo => C:\Program Files\Wondershare\MobileGo f¨¹r Android\FileTransfer.exe MSCONFIG\startupreg: Google Update => "C:\Users\Marc\AppData\Local\Google\Update\GoogleUpdate.exe" /c MSCONFIG\startupreg: HP Software Update => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: HTC Sync Loader => "C:\Program Files\HTC\HTC Sync 3.0\htcUPCTLoader.exe" -startup MSCONFIG\startupreg: IndexSearch => "C:\Program Files\Nuance\PaperPort\IndexSearch.exe" MSCONFIG\startupreg: ISUSPM => C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe -scheduler MSCONFIG\startupreg: Jing => C:\Program Files\TechSmith\Jing\Jing.exe MSCONFIG\startupreg: ledpointer => CNYHKey.exe MSCONFIG\startupreg: LifeCam => "C:\Program Files\Microsoft LifeCam\LifeExp.exe" MSCONFIG\startupreg: MoLed => ModLEDKey.exe MSCONFIG\startupreg: Nvtmru => "C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" MSCONFIG\startupreg: Ozeki Phone System XE Service monitor => "C:\Program Files\Ozeki\Ozeki Phone System XE\ServiceMonitor.exe" MSCONFIG\startupreg: PDF7 Registry Controller => C:\Program Files\Nuance\PDFCreate\RegistryController.exe MSCONFIG\startupreg: PDFCreHook => C:\Program Files\Nuance\PDFCreate\pdfcreate7hook.exe MSCONFIG\startupreg: PDFProHook => C:\Program Files\Nuance\PDF Viewer Plus\pdfpro7hook.exe MSCONFIG\startupreg: Pixel X Backup => "C:\Program Files\PixelX\Backup\bin\backupClient-pixx.exe" --hidden MSCONFIG\startupreg: PocketCloud Location => C:\Program Files\Wyse\PocketCloud Windows Companion\WyseBrowser.exe MSCONFIG\startupreg: PPort14reminder => "C:\Program Files\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\14\Config\Ereg\Ereg.ini" MSCONFIG\startupreg: PureSync => "C:\Program Files\PureSync\PureSyncTray.exe" MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s MSCONFIG\startupreg: SMB60StarMoneyRunEntry => "C:\Program Files\StarMoney Business 6.0\app\oflagent.exe" MSCONFIG\startupreg: Softonic for Windows => "C:\Users\Marc\AppData\Local\Softonic\Softonic.exe" -minimize MSCONFIG\startupreg: SteganosBankingFree => "C:\Program Files\Steganos Online-Banking Free\SteganosBanking.exe" -Autostart 1 MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: TrayServer => C:\Program Files\MAGIX\Filme_auf_DVD_7\TrayServer.exe MSCONFIG\startupreg: UpdateStar => "C:\Users\Marc\AppData\Roaming\UpdateStar\UpdateStar.exe" -A MSCONFIG\startupreg: WISO Mein Geld 2015 Professional .NET => "C:\Program Files\Buhl\WISO Mein Geld 2015\mg.exe" /Systemstart MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe MSCONFIG\startupreg: Zoner Photo Studio Autoupdate => "C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE" MSCONFIG\startupreg: Zoner Photo Studio Service 16 => "C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXEC:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe" MSCONFIG\startupreg: ZumoDrive => C:\Program Files\Zecter\ZumoDrive\ZumoLauncher.lnk HKLM\...\StartupApproved\Run: => "IAStorIcon" HKLM\...\StartupApproved\Run: => "PaperPort PTD" HKLM\...\StartupApproved\Run: => "WindowsDefender" HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk" HKU\S-1-5-21-895905325-2879171232-1046163952-1008\...\StartupApproved\Run: => "HP Officejet 6500 E710n-z (NET)" ==================== FirewallRules (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-32bit] => (Allow) LPort=808 FirewallRules: [UDP Query User{87F21C26-9B18-4D96-A985-CDC64763277F}C:\users\marc\downloads\netscan-602\32-bit\netscan.exe] => (Allow) C:\users\marc\downloads\netscan-602\32-bit\netscan.exe FirewallRules: [TCP Query User{4DD50395-8FA9-41DA-BBFD-8F67891966C6}C:\users\marc\downloads\netscan-602\32-bit\netscan.exe] => (Allow) C:\users\marc\downloads\netscan-602\32-bit\netscan.exe FirewallRules: [UDP Query User{C4D3EF4B-10D8-4BF8-8819-2B3B4B16172C}C:\program files\filezilla ftp client\filezilla.exe] => (Allow) C:\program files\filezilla ftp client\filezilla.exe FirewallRules: [TCP Query User{FCE64A92-5954-4CBD-A9BD-062A4D291344}C:\program files\filezilla ftp client\filezilla.exe] => (Allow) C:\program files\filezilla ftp client\filezilla.exe FirewallRules: [UDP Query User{37BB9B37-1DFD-4278-89D9-E7CB42E81CD0}C:\program files\nimbusnotes\nimbus.exe] => (Allow) C:\program files\nimbusnotes\nimbus.exe FirewallRules: [TCP Query User{7CCAF1C3-B3D2-4751-A503-065313CBD0F1}C:\program files\nimbusnotes\nimbus.exe] => (Allow) C:\program files\nimbusnotes\nimbus.exe FirewallRules: [UDP Query User{DA59F2E0-2CBC-4D7A-950D-3383019D9F15}C:\program files\nimbusnotes\nimbus.exe] => (Allow) C:\program files\nimbusnotes\nimbus.exe FirewallRules: [TCP Query User{3251FB9E-9525-41D4-A737-05BD7242970C}C:\program files\nimbusnotes\nimbus.exe] => (Allow) C:\program files\nimbusnotes\nimbus.exe FirewallRules: [{C031590B-7717-4655-A8CB-F0DDB98D5459}] => (Allow) C:\Program Files\Mozilla Firefox4\firefox.exe FirewallRules: [{2F767704-413A-48BF-9C2F-70E941601646}] => (Allow) C:\Program Files\Mozilla Firefox4\firefox.exe FirewallRules: [UDP Query User{6FFBC1D2-C1C1-4677-8C13-6BDF4EB1A31D}C:\program files\nimbus note\nimbus.exe] => (Allow) C:\program files\nimbus note\nimbus.exe FirewallRules: [TCP Query User{0BCD899C-64DF-46E9-8DC9-28C83E960E72}C:\program files\nimbus note\nimbus.exe] => (Allow) C:\program files\nimbus note\nimbus.exe FirewallRules: [UDP Query User{EF99E42F-C30C-4E17-B2F1-D5BAF0012B57}C:\program files\nimbus note\nimbus.exe] => (Allow) C:\program files\nimbus note\nimbus.exe FirewallRules: [TCP Query User{EB837E58-4F94-48AA-B700-AD55504D2DD8}C:\program files\nimbus note\nimbus.exe] => (Allow) C:\program files\nimbus note\nimbus.exe FirewallRules: [{AA34AC78-12B5-4F9D-A831-5E940520F0F2}] => (Allow) C:\Program Files\ASUS\Wireless Router\Device Discovery\Discovery.exe FirewallRules: [{E41059BA-CB3E-4044-AA71-CA8A08BDDC65}] => (Allow) C:\Program Files\ASUS\Wireless Router\Device Discovery\Discovery.exe FirewallRules: [{5C35D1C5-FEC3-4576-AC37-AE617940333B}] => (Allow) C:\Users\Marc\AppData\Local\Temp\nszD193.tmp\CnetInstaller-10704291.exe FirewallRules: [{842230B8-9D46-47A9-A429-1A8FEE17C597}] => (Allow) C:\Users\Marc\AppData\Local\Temp\nszD193.tmp\CnetInstaller-10704291.exe FirewallRules: [{EC084DB8-856E-4653-92FC-D7D82392D3E9}] => (Allow) C:\Users\Marc\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{6396EA1D-8177-4687-9146-71FF4D10AD80}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [UDP Query User{607DAEAC-EE5B-454D-847C-4B0BCFD4AF11}C:\program files\essentialpim\essentialpim.exe] => (Allow) C:\program files\essentialpim\essentialpim.exe FirewallRules: [TCP Query User{0557F183-781F-4A63-9661-D43E6D0BA293}C:\program files\essentialpim\essentialpim.exe] => (Allow) C:\program files\essentialpim\essentialpim.exe FirewallRules: [UDP Query User{8BBC20D3-85C8-4449-91CD-DE02B43F7B08}C:\program files\essentialpim\essentialpim.exe] => (Allow) C:\program files\essentialpim\essentialpim.exe FirewallRules: [TCP Query User{FC978CDE-D72B-4E6D-8B74-07E885769CDC}C:\program files\essentialpim\essentialpim.exe] => (Allow) C:\program files\essentialpim\essentialpim.exe FirewallRules: [{B5F73E3F-C335-4066-A7FF-CC8FEFCA3D9A}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS05C0\HPDiagnosticCoreUI.exe FirewallRules: [{15B1E3D0-2BD6-495D-A22F-4AD6F8DB6202}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS05C0\HPDiagnosticCoreUI.exe FirewallRules: [{3D978339-C465-4F38-B42D-6FA6A3272DD8}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS052A\HPDiagnosticCoreUI.exe FirewallRules: [{DAC4F6C8-2400-4E7E-A81B-64E55DCD5750}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS052A\HPDiagnosticCoreUI.exe FirewallRules: [{19B5607D-1A1D-4F75-B5A9-A716825A4A8D}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS1496\HPDiagnosticCoreUI.exe FirewallRules: [{05748B0A-9C5F-4DA9-A7E1-E3D37736E2E0}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS1496\HPDiagnosticCoreUI.exe FirewallRules: [{8BE9A74A-2D47-4DD0-94FF-E4D179B5B721}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS59A1\HPDiagnosticCoreUI.exe FirewallRules: [{7A451AE9-CA24-4E80-BFC5-FFD75FE9E009}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS59A1\HPDiagnosticCoreUI.exe FirewallRules: [{0DA64ADA-477F-4E60-AAF3-8231824B3270}] => (Allow) C:\Program Files\HTC\HTC Sync Manager\HTCSyncManager.exe FirewallRules: [UDP Query User{E53383A0-8798-40E4-AC9B-508F6A860841}C:\program files\manageengine\appmanager11\working\jre\bin\javaw.exe] => (Block) C:\program files\manageengine\appmanager11\working\jre\bin\javaw.exe FirewallRules: [TCP Query User{9B30A868-2409-4A66-88CB-9522D66D98A0}C:\program files\manageengine\appmanager11\working\jre\bin\javaw.exe] => (Block) C:\program files\manageengine\appmanager11\working\jre\bin\javaw.exe FirewallRules: [UDP Query User{F65F221F-27C6-4757-B40A-7235F5410E50}C:\program files\manageengine\appmanager11\working\jre\bin\java.exe] => (Allow) C:\program files\manageengine\appmanager11\working\jre\bin\java.exe FirewallRules: [TCP Query User{D9A2AD0C-D1AE-474B-9768-F3913CB215E9}C:\program files\manageengine\appmanager11\working\jre\bin\java.exe] => (Allow) C:\program files\manageengine\appmanager11\working\jre\bin\java.exe FirewallRules: [{D27A142B-3643-4F47-B63D-3D45A7B5D0AD}] => (Allow) LPort=33338 FirewallRules: [{F85A2EFD-AD7C-4AD5-A5EF-B24A1BD8283F}] => (Allow) LPort=33333 FirewallRules: [{4BFB5E12-A077-43EA-8F8B-C1D54FBA8DA4}] => (Allow) C:\Program Files\Siber Systems\GoodSync\Gs-Server.exe FirewallRules: [{E0B3AFCC-9891-4979-A167-6863A5638EDC}] => (Allow) C:\Program Files\Siber Systems\GoodSync\Gs-Server.exe FirewallRules: [{3F62417E-39B1-4CCB-AA26-734AE739597D}] => (Allow) C:\Program Files\Siber Systems\GoodSync\GsExplorer.exe FirewallRules: [{E47E177F-015B-49D7-8C7F-CC4B61350291}] => (Allow) C:\Program Files\Siber Systems\GoodSync\GsExplorer.exe FirewallRules: [{85F7E7E5-6EEA-474D-A9BC-7D0FF0B0F8E4}] => (Allow) C:\Program Files\Siber Systems\GoodSync\GoodSync.exe FirewallRules: [{CB13078C-431E-4A1C-B8B2-DE25DB1ECB0A}] => (Allow) C:\Program Files\Siber Systems\GoodSync\GoodSync.exe FirewallRules: [{A5D8D979-CDA7-4CEC-910D-83D5F64CC254}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{20325DF6-6423-4149-BCD4-644D09AB2779}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicator.exe FirewallRules: [{6DFF07E1-CFB0-4C48-AE76-8467108F8875}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\DeviceSetup.exe FirewallRules: [{0E9B4D44-491B-487D-9DC9-040AD1EF52E9}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\SendAFax.exe FirewallRules: [{FBC13FDE-8DB5-41A1-8560-4B2FE9B80E61}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\DigitalWizards.exe FirewallRules: [{57ADAA94-992C-4639-9458-272EF811E556}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\bin\FaxApplications.exe FirewallRules: [{165C8902-AACE-45DE-B851-7E61D1BFAA11}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS1ECA\hppiw.exe FirewallRules: [{05C5141C-3036-4B04-A651-57C49FED3D3D}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS1ECA\hppiw.exe FirewallRules: [{64F274F2-C54E-4EF1-B241-660BC8976807}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS1C9C\HPDiagnosticCoreUI.exe FirewallRules: [{F0FD163B-6363-4E0C-A16A-A68E55195F9E}] => (Allow) C:\Users\Marc\AppData\Local\Temp\7zS1C9C\HPDiagnosticCoreUI.exe FirewallRules: [{D416B9C0-9F45-42CD-B2F5-A0076D775B96}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [{92B1162F-E44B-424C-9025-E0823AE8A149}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [{AF226177-BED7-4D1B-AE29-B3C28444E932}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [{733AB69F-15E1-423B-8529-BA7E637FA846}] => (Allow) LPort=5060 FirewallRules: [{F793E728-2006-44F0-9DB6-3A0AACCC76E5}] => (Allow) LPort=5060 FirewallRules: [{B3859332-5647-4D44-B1F0-9CD5238F77E0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{0F8A6AE9-1061-4F0E-986F-C06FB36BB3F1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{2BF8B570-775B-4B05-B2B5-929C7163CF9D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{C1F1EBC0-1EA1-45D3-B434-2BAA878B691A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{C12684F6-0696-48A6-B90E-F3F143A4537C}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{B6665688-1EFC-478B-B53C-B7367ED7D47A}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{9D584FF2-412E-4BC0-8DD2-895C81C71A61}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{D6E9E8AF-9040-451E-94D8-FA3A71D2A8DF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E11A8DA7-FE95-4E01-8D26-7EB996BF4F85}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{6CB9CA71-A55F-41D8-A636-2F111C99D53B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{944F8927-97D7-444F-9FD6-E1DECC3AC760}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [{79A3D60A-CCBE-4209-894B-FB6D9F23BA57}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [UDP Query User{E9BC83CA-1775-4880-9922-0CE6D26460BE}C:\program files\nuance\nuance cloud connector\gladinetclient.exe] => (Allow) C:\program files\nuance\nuance cloud connector\gladinetclient.exe FirewallRules: [TCP Query User{7CB6DFEC-91BE-4F58-A486-877C15512F21}C:\program files\nuance\nuance cloud connector\gladinetclient.exe] => (Allow) C:\program files\nuance\nuance cloud connector\gladinetclient.exe FirewallRules: [{34986680-E351-4670-ADAC-DF0BDBF52CA2}] => (Allow) C:\Program Files\Nuance\Nuance Cloud Connector\WOSVSSSvrXP32.exe FirewallRules: [{29941D46-F37C-4021-929A-65839D894178}] => (Allow) C:\Program Files\Nuance\Nuance Cloud Connector\WOSVSSSvrXP32.exe FirewallRules: [{E034B372-632C-4D6B-BA77-9426483943CF}] => (Allow) C:\Program Files\Nuance\Nuance Cloud Connector\WOSVSSSvr2003.exe FirewallRules: [{1A43AA56-E824-475B-A5ED-EF4D7B52D5F5}] => (Allow) C:\Program Files\Nuance\Nuance Cloud Connector\WOSVSSSvr2003.exe FirewallRules: [{50EC4DE4-A750-4EAC-8D22-7B26340E6EF9}] => (Allow) C:\Program Files\Nuance\Nuance Cloud Connector\WOSVSSSvr.exe FirewallRules: [{B83A7B4E-479B-4248-BF0B-1BEE113E7EAB}] => (Allow) C:\Program Files\Nuance\Nuance Cloud Connector\WOSVSSSvr.exe FirewallRules: [{FCBEE4B5-9F5B-4412-81D3-62E481B1D0C2}] => (Allow) C:\Program Files\Nuance\Nuance Cloud Connector\GladinetClient.exe FirewallRules: [{D90839AD-FE27-4589-9D71-29B36568B580}] => (Allow) C:\Program Files\Nuance\Nuance Cloud Connector\GladinetClient.exe FirewallRules: [{5982D28C-5395-41B5-9070-21DD79DD8C84}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [{437A7B75-C26A-47B2-A5F1-989E3A1AC6B6}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [{69407172-0153-4E66-ADBC-C5850AAF4897}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [{740187B7-99AA-4463-987F-ED63757108DE}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [{95923A56-AC73-4769-B59C-55C9A56FE4C4}] => (Allow) C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{977C0394-5412-4EA1-B78F-C5896019BCAD}] => (Allow) C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{930F9A1F-F5FB-4F9B-A912-C39FCC4D260A}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [{9164E85F-7915-4B05-9920-23037872F5ED}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B55454E3-49C0-4EC0-9708-FEBFFC4805F4}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3172EF8D-FC5C-458B-8D2B-C1CA9A68123A}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CE62D17A-9BBA-4104-A4F1-238224A12749}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1BB1F719-1480-4735-90C2-F1D58C4BB89D}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{620DA835-CD9C-4602-8379-381D25E663C9}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{85B9134C-A4AC-4897-835C-B6BF460DBA48}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E61CBA69-86AC-4CB3-8555-C4C88E11A45A}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C9C58401-0490-40B3-9FCB-9DE4FE62EDCE}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0CF3CD7E-68C3-452D-8300-E682AB7AF130}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CB6E6E43-AF0D-4F1D-BD2E-4DBFB03957DE}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B1DC2219-C84E-4FD5-BA41-2C7D82E898B7}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FFDD5C76-E71A-4310-9421-9C0B8A088E2F}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9339A4B2-0EFC-49B6-81B7-FAE187E84DD4}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{49107906-8DB5-4900-9E75-EE76F4506BAC}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E38505F4-2150-4D8E-A046-386A59D2E4ED}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EBEC3A93-A17A-47D5-B369-CBC9DE30E308}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{26C10FA6-1033-4886-BD8C-F39314FCD960}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{99E3676B-D4D0-4E87-A397-1B20B12A482A}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1F0EE896-DAC5-4D1E-B512-474587B99960}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C75E299C-2C5C-44BB-BE48-76E6E3C070D6}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2A29000D-C92D-44EC-B124-73E325E21288}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{87D28DD6-10A2-49F4-A055-1CD22ECA4B92}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AB7D9AF5-8A97-4838-9D8A-C55590904B54}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{42BFBB8D-076C-4F93-B20C-EE341B0B68C8}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4806E631-BE58-4748-8FE6-0D0BBAF84460}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{431AB97E-2174-4305-9E60-3551DF23DD17}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DFC202CE-4A27-4B21-A75B-7656BCF35827}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D06E53E0-FD64-46F5-AFBC-1B8D4FEE268C}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{576A022E-632C-4A46-A03B-938981B440BB}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{24200442-F8C2-40F7-851E-AEB1FF73487D}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CBB2355C-701B-4836-B549-A4D27DFE25FD}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{81887036-7B6B-46F3-BC59-0960DCD9F09F}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3F019994-C7A8-410D-89F7-CA07742A6B04}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3920704E-FE53-4F4F-BFBB-B4E247497F3B}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6FA298B4-E0DA-4B19-AAB4-6C47E0824B8C}] => (Allow) C:\Program Files\David\Code\sl.exe FirewallRules: [{F23BCA36-7A93-405D-951A-6B6B74EFAE4E}] => (Allow) C:\Program Files\David\Code\sl.exe FirewallRules: [{9EDC144C-B9AE-4121-9D3C-1BE18257CCA1}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8C19D1BB-94C0-4FD2-9E3C-65010714BF80}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C2C41AE9-26C9-4E81-A6FE-114B72DE06EA}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A74AC4CA-286C-4028-9690-2F6EE2A55CB1}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [UDP Query User{405ED6FB-60CF-4A02-BA2B-DBA04E6E26BB}C:\users\marc\appdata\roaming\allmyapps\allmyapps.exe] => (Allow) C:\users\marc\appdata\roaming\allmyapps\allmyapps.exe FirewallRules: [TCP Query User{05E6CAEE-9075-418B-8D5F-C965B2A409CA}C:\users\marc\appdata\roaming\allmyapps\allmyapps.exe] => (Allow) C:\users\marc\appdata\roaming\allmyapps\allmyapps.exe FirewallRules: [{803B012D-4FCC-4138-9F6F-78FA30099233}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [UDP Query User{A6CD5497-7A6F-4D28-9DF1-F8EB654D37E4}C:\users\marc\appdata\roaming\allmyapps\allmyapps.exe] => (Allow) C:\users\marc\appdata\roaming\allmyapps\allmyapps.exe FirewallRules: [TCP Query User{1C57AFBE-2031-4D6D-A08F-E05F405EDC58}C:\users\marc\appdata\roaming\allmyapps\allmyapps.exe] => (Allow) C:\users\marc\appdata\roaming\allmyapps\allmyapps.exe FirewallRules: [{157A438B-315C-42B5-8E7E-45EBB04BB89F}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D4184225-20F0-4720-A80D-57600E94A031}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CF907121-DF1C-4D53-92F1-354695FD6A8D}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{40944CA7-6400-48E0-855E-2FE958439C31}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A9AB0889-56D6-4C32-9B2D-DB96C61C2761}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E01FBBD1-5231-4335-87A7-4E8EA68AD265}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CBD4DD0B-A4FD-4A50-9423-703F592D52AA}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0AD5F37D-50B2-471B-862A-4D550B886B35}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{01A6230D-4667-4353-BE68-76F8377EF0E0}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{484AE771-3D3A-4913-A410-D1F1D6D8F654}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{90D2FB06-6A5E-4FE5-83AC-DAE62F81622A}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0BC04C8C-F4A8-429C-B464-056C026B4653}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3BA10F92-BBB1-419B-B8D9-6A02947DC0D5}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2F91009C-CC00-4873-B224-3CDD9BBC115E}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{29176D54-94D0-48D5-AE82-BE531935A1B9}] => (Allow) C:\Program Files\Wyse\PocketCloud Windows Companion\WyseRemoteAccess.exe FirewallRules: [{89E3D6EB-A010-47C3-A8E9-2DB14F8C60F8}] => (Allow) C:\Program Files\Wyse\PocketCloud Windows Companion\PocketCloudService.exe FirewallRules: [{92307AF4-A3FA-40C4-B96B-924DB5D3587D}] => (Allow) C:\Program Files\Wyse\PocketCloud Windows Companion\WyseBrowser.exe FirewallRules: [{8DDF39F9-FA46-405E-A69C-A85B1724C9C8}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DEF1C8AA-6C69-47C3-837E-E9D94B0B707E}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E4A328F5-9E70-4B8C-9681-52427CA849B3}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{032E8308-FFF3-4B04-A986-C6AE4D506734}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [UDP Query User{B7B52F4D-796B-4B12-9709-A7DA2E28C571}C:\program files\java\jre6\bin\java.exe] => (Allow) C:\program files\java\jre6\bin\java.exe FirewallRules: [TCP Query User{DFA9E27C-EE76-431F-8111-4C5E2E60079A}C:\program files\java\jre6\bin\java.exe] => (Allow) C:\program files\java\jre6\bin\java.exe FirewallRules: [UDP Query User{D852AD85-743C-46F4-AF3F-5CC042F9E027}C:\program files\participatory culture foundation\miro\miro_downloader.exe] => (Block) C:\program files\participatory culture foundation\miro\miro_downloader.exe FirewallRules: [TCP Query User{C74701D9-579D-475C-BDE6-075975CEC137}C:\program files\participatory culture foundation\miro\miro_downloader.exe] => (Block) C:\program files\participatory culture foundation\miro\miro_downloader.exe FirewallRules: [UDP Query User{1F0A4064-A362-4596-9CC6-CA2A25F3F265}C:\program files\mozilla firefox4\plugin-container.exe] => (Allow) C:\program files\mozilla firefox4\plugin-container.exe FirewallRules: [TCP Query User{6D919B82-F71F-48E5-B525-E99CD87FC465}C:\program files\mozilla firefox4\plugin-container.exe] => (Allow) C:\program files\mozilla firefox4\plugin-container.exe FirewallRules: [UDP Query User{BD5F4142-A1F4-49EF-A3D6-8AC38F9B76C0}C:\program files\ispy\ispy\ispy.exe] => (Allow) C:\program files\ispy\ispy\ispy.exe FirewallRules: [TCP Query User{5BB3D5AA-0221-41F9-A701-DC684871E611}C:\program files\ispy\ispy\ispy.exe] => (Allow) C:\program files\ispy\ispy\ispy.exe FirewallRules: [{3A578350-301F-44B4-BD04-2E860AF978B6}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [UDP Query User{F1A80703-5F7D-4B99-AD56-2B2C22BE0905}C:\program files\ispy\ispy\ispy.exe] => (Allow) C:\program files\ispy\ispy\ispy.exe FirewallRules: [TCP Query User{0D90CC49-0C72-46AE-995A-9E8DD7172CC7}C:\program files\ispy\ispy\ispy.exe] => (Allow) C:\program files\ispy\ispy\ispy.exe FirewallRules: [UDP Query User{37F2E316-1160-439F-BDA6-12B6CD6C9FE8}C:\program files\pfportchecker\pfportchecker.exe] => (Allow) C:\program files\pfportchecker\pfportchecker.exe FirewallRules: [TCP Query User{7B08BF98-8300-4BBF-9908-121B5543F371}C:\program files\pfportchecker\pfportchecker.exe] => (Allow) C:\program files\pfportchecker\pfportchecker.exe FirewallRules: [{4691B42A-6B3F-4BE4-B9D6-AAEC6C2A198C}] => (Allow) C:\Program Files\PhraseExpress\PhraseExpress.exe FirewallRules: [{8734D492-B627-489A-98C6-BBE70062A9C3}] => (Allow) C:\Program Files\webcamXP 5\wService.exe FirewallRules: [{2CE4A831-931E-4D6A-A5F7-0D35C02CEFAC}] => (Allow) C:\Program Files\webcamXP 5\wService.exe FirewallRules: [{0E974FB0-6A23-4436-B418-C0D42C411B4C}] => (Allow) C:\Program Files\webcamXP 5\wLite.exe FirewallRules: [{D2E318A2-234E-4B71-9228-2562A301B5C3}] => (Allow) C:\Program Files\webcamXP 5\wLite.exe FirewallRules: [UDP Query User{B25B7ED8-4618-4104-8819-D9372DCCD67E}C:\users\marc\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\marc\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{EE919003-94B7-48E7-993E-1521362EFDD2}C:\users\marc\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\marc\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{826A1C6F-685A-45CC-8263-69553D68EC42}C:\users\marc\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe] => (Allow) C:\users\marc\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe FirewallRules: [TCP Query User{5B2CCA3D-8BEE-4D44-AB85-CD75E33980A3}C:\users\marc\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe] => (Allow) C:\users\marc\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe FirewallRules: [UDP Query User{0C5CB6C1-BA45-4524-B85D-540F239D8526}C:\program files\mozilla firefox4\plugin-container.exe] => (Allow) C:\program files\mozilla firefox4\plugin-container.exe FirewallRules: [TCP Query User{D9A4DA58-6135-4C06-8A1C-C33BCD4E5984}C:\program files\mozilla firefox4\plugin-container.exe] => (Allow) C:\program files\mozilla firefox4\plugin-container.exe FirewallRules: [{0B7925FF-C9F9-464D-A7D5-DB62D8528B2D}] => (Allow) C:\Program Files\Zecter\ZumoDrive\zumodrive.exe FirewallRules: [{DE9FF7AE-E6DF-4DC4-9B9D-FCFF1F973BA5}] => (Allow) C:\Program Files\Zecter\ZumoDrive\zumodrive.exe FirewallRules: [UDP Query User{91D42D5F-FD14-4897-A1E6-E9E859545A9B}C:\program files\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files\myphoneexplorer\myphoneexplorer.exe FirewallRules: [TCP Query User{A6C14A6A-26F4-40D5-998F-051B6DF286D8}C:\program files\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files\myphoneexplorer\myphoneexplorer.exe FirewallRules: [{66602A77-9E9C-4943-A376-5F787499A70F}] => (Allow) C:\Program Files\WebCallDirect.com\WebCallDirect\WebCallDirect.exe FirewallRules: [{44750064-D43F-4BF2-B15A-E6DE60E139B8}] => (Allow) C:\Program Files\WebCallDirect.com\WebCallDirect\WebCallDirect.exe FirewallRules: [{63EC36AB-00D5-45C3-8EB9-0CEC7B719A9C}] => (Allow) C:\Program Files\WebCallDirect.com\WebCallDirect\WebCallDirect.exe FirewallRules: [{A21A3EA9-D6FC-495B-92EA-88DEF27B8B6D}] => (Allow) C:\Program Files\WebCallDirect.com\WebCallDirect\WebCallDirect.exe FirewallRules: [{52BF323D-8571-4899-B91E-EF6726A48FB1}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{B6CD7F0B-0DAF-4078-98EC-040B7A19E7DA}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{9141E373-6918-449D-8C50-9619F5B3126E}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{74E33703-8EA2-40F1-9AB8-DD2714834690}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicator.exe FirewallRules: [{CB4C01C0-4F09-485A-84C0-2C220B398D62}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPNetworkCommunicator.exe FirewallRules: [{3F09BBD7-FD22-4AC1-9CFE-CE5926616EFE}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\DeviceSetup.exe FirewallRules: [{10E85A94-BA33-44F8-BBA4-61BE9C18A7B2}] => (Allow) C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\DeviceSetup.exe FirewallRules: [{884221FB-4C54-4D2A-ABD0-87219871C6F3}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{9E498DE0-FD97-4D44-AC6E-207C6919AFD0}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{6813F537-9D6C-4007-931D-C625DDC2A286}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{2F759273-142B-42A5-886F-3A2F808507EB}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{BE30E3ED-C998-4ABB-9031-706CB7C4C8B0}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{FE0EA702-15A0-44F0-A3CC-BF9EDFDED756}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{4D8CC154-58A5-4DCB-A51C-90CE7863E7B7}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{F9E16506-B708-4996-B44A-00AEDD68724D}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{F1C90F54-BA35-47EA-9D3B-B097B295DB08}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{EEDADF5F-30E3-4D4B-8825-FA35969D3DCA}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{9677EC31-3CB3-4BF3-B80C-D6CE5E1DD8AF}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{D2F77910-273B-4DBE-957F-941C54A270A9}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{84AB865C-B176-4083-9B5A-833905C9D7D1}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{ED3625B6-FCE6-4A0D-83B0-2B0B65FB8B06}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{EF083AEE-5B9F-4A05-9705-11B5CE85071C}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{883693D6-3FC9-40D2-91CD-079380F08CBB}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{B20972A0-7900-4FC9-BB2C-F2E98D5EC5D8}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{62CAC950-5CF3-4FC4-A167-E44FC4D588EC}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{11C7B00B-ACDC-47B2-BEB0-1B15D763E7F2}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{BC301A88-5015-458A-84BA-C9C3CE02A685}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{34C2238C-C146-4DD1-B821-A42FED7C7754}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{CD2FE16D-899A-430A-930B-FE130E313E18}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{D3FF920E-7C11-456E-87EA-1DF9A03A77C3}] => (Allow) C:\Program Files\Windows Live\Mesh\MOE.exe FirewallRules: [{1B160569-9E42-4C03-A49F-A1D7A9A2B4F0}] => (Allow) LPort=1900 FirewallRules: [{9EDDFEA0-90CA-467B-8747-32D8A987ABF4}] => (Allow) LPort=2869 FirewallRules: [{D9747D45-F888-44A8-BDDD-AC60E1655F60}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe FirewallRules: [{ACA20F9E-5361-4D2F-8CCE-5607DEF29A81}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{5665DAEE-BD2A-4823-8BEB-8681E5561644}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{3977632B-A72A-4F20-AF34-340DDFB5F369}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{4727F40C-8C5C-4E7D-AB69-309475B1BC45}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{E0273F78-7015-4515-8AE4-C0AB38CD305B}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{984F0161-4746-436F-BDB7-3A5CA2C142AB}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{F5F7C076-FED2-40B3-B65B-10B3929E745A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{D41D656E-E94D-4655-9D7A-93F9B6C28476}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{409DC9AA-34B9-4BD8-B7B3-E9D81A8E6449}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{9D0782BF-5CDE-4AFE-BBC2-DFDB3CE203AB}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{9EB45CC1-D479-4326-AF56-E48CEEF75715}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{95929F1D-FBEB-4573-ABE8-242451B489CF}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{651B0800-EC00-4AAC-BDB6-5843D0D331AC}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{7DAC5E84-EBD4-45D2-9420-2923C8B4FF01}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{9FB1F05C-FD16-4865-BEA4-D8D5ADB7CC75}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{2E1AEC38-35CC-426C-B983-E9F971CF1B35}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{F71B5567-AC35-4442-969E-31C58065E549}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{E84A0B24-AF88-43D2-97E6-B84AA9D7E5DC}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{DF68F56D-B3DF-401F-B6BC-BBBCCC358A34}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{57DA2D7C-46DA-449F-942D-43EF0F92A70B}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{003F352A-6861-4B1E-B2FB-519F63F6677C}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{00E19063-3F7D-41E2-BA4D-0A883064664A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{3AB22040-0592-4DA2-A8B2-03D8E965ED7A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{AC33FD8E-419E-4B00-B3D8-30FAA0D7C75C}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{A55F6989-BE80-4F30-9FEB-889261B7CF06}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{521AE96F-8549-45B6-9059-999308AB2838}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{5CA9EA5C-8F84-4E1A-9913-E4EFEAA85295}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{B237DA0F-17D8-4EC5-A278-51732B09A27E}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{AAF1EA97-F913-4B93-9FE0-961F3C9BF0AF}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{34540216-F66A-4611-90FF-CCA3DA5BD674}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{C60700E2-7B35-4DB0-ACE4-5241FF2F2F6C}] => (Allow) C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe FirewallRules: [{7D5564A7-6BC9-4D88-95D1-EC6D33CE929D}] => (Allow) svchost.exe FirewallRules: [{D45E515D-E516-469B-920C-D8E51E30D4F6}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{DE1E3FD3-D7D3-466F-984B-E8FE0BA84755}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{B25CB093-4031-4841-A835-1D65074A426D}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{D8AE48DF-8F07-4FD9-84EF-6433614D5026}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{96DE7335-2D1F-459C-8EFD-FD7F98FBAF4B}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{AF248CA6-150A-4C89-A6ED-F3863877D6E8}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{F1274C29-1320-4F19-893B-B162AAB9CAB1}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{85818525-48C1-474A-8FD7-5B2FDDC22C8E}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{55E0DED3-83CE-44FD-9ED9-27E9F7F90BF5}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{61DC4264-30F8-4E8E-BB4F-B6B0EBD81A5A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{7F199086-68DF-436D-9BF8-87616F3CE012}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{43F31471-832E-462D-9461-27EB5F62B4D1}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{F6E5662E-141C-4F95-9DD6-EECD8C76A759}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{E01ADF57-5302-4FEC-B30C-C85556F339AD}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{3E40767B-D708-4805-8714-847F68AA66EE}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{AD021BBE-F01B-4091-A25E-146317A28255}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{548C65CB-3928-4DE7-A97B-59C4665E907A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [UDP Query User{3C044FC0-75E4-41A3-835B-0C3B58C019C5}C:\program files\google\google earth\plugin\geplugin.exe] => (Allow) C:\program files\google\google earth\plugin\geplugin.exe FirewallRules: [TCP Query User{48748597-C59E-46B1-82EE-435F667D88EE}C:\program files\google\google earth\plugin\geplugin.exe] => (Allow) C:\program files\google\google earth\plugin\geplugin.exe FirewallRules: [{7EBED01C-0BE8-4A45-A654-48B13DCAA1A5}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{8EEB7F0B-2E40-4957-A83C-48AB2927CC9C}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{F76B50B8-5B59-402C-9293-B1A621735495}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{34CF7333-D950-48B3-85AC-A732163D16A2}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{FDCEC861-6550-4ADF-BBD6-7DBCB101C860}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{8542598E-1DD5-4162-ABD5-9E4DFC857465}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{09A6569F-51A0-48AA-BED4-09DEC49AF219}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{FC0A0AF2-9C6C-45C0-9089-D1E2E4D05E56}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{4692D0B1-58F6-4684-AFDD-19ABA00DD164}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{0B57B0E6-332B-4EC0-A366-F970EAAF2DC9}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{5B4F68BE-DADD-4038-98D2-0F60C6AC5102}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{98D5E748-B9E3-4595-ABC8-52D909960F30}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{0B9D932A-A231-4718-8392-0F3285E012BC}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{F6278EE2-3CB9-4F5B-8A6F-8BB7E4E00139}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{879C2683-2E8E-45DD-A7B9-7B44AB8D1D37}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{51A29A9C-78AF-4AD5-9EA3-FF34C42F6803}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{49F28603-91DD-41C5-9AC7-ECB15953AAA9}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{B77D5A88-8E45-457E-8E4D-5D38ECC15E0B}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{470F138B-55F4-4D63-835F-2AE690A146DF}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{CEC05C42-D1F6-499B-ADDE-9822E9A91A2E}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{0C74CA60-18A3-4A34-A9F3-E6EDA6FFA5A1}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{C4DDDBE4-D482-48C7-AEFC-87B20E9B1FE2}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{AE28E5F8-BF32-4E32-B904-9A4988B3630F}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{51EC75C8-77F8-4C15-A470-F9B3E73E10F4}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{C4DBD955-EEB5-4C5E-8DC6-97D32D57220A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{91955C6A-C0F6-4C62-823F-2F7978950AE5}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{AB7ABDE0-D5C7-40C3-83CD-2DC8D0440D6B}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{758B9189-6092-4CA0-B76A-7407EA8D6AD9}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{ED0BF85B-0EC3-4F67-ACF5-E3B0C5CF2A3E}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{E5E8BFEA-72DA-47A0-ADCD-09D1BB731190}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{85C13011-EEA5-405B-9E7F-118B1E21BC17}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{3E24A45E-BCD0-41DE-BD5A-77BC66CEB729}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{194205E3-3C6B-4039-9FB4-16BC95A4EE02}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{019326A3-1C67-4DEF-B66C-FD10D6368A8E}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{E64483F0-7A51-4429-A6BF-9933D2E29BE7}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{71F55F1A-3A28-4A1C-A5BF-CDFF1601D6CD}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{FC5666A0-61BB-42C3-9564-0CEC70443149}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{BFC95953-8886-44D6-9C5B-6FD39851D724}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{C2047F0C-3B4C-401F-A6E5-737A4952A83F}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{FB75054C-3FE7-4A0E-9FC9-4D69D78B93A6}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{BDA15AFB-4510-4B14-AFED-BD1D710FC323}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{1AA04FB7-1D7E-449A-A574-D2957ECE4F38}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [UDP Query User{6FB57CF9-CE15-469D-8207-97F9BE7111A4}C:\program files\google\google earth\client\googleearth.exe] => (Allow) C:\program files\google\google earth\client\googleearth.exe FirewallRules: [TCP Query User{74EAAF3E-5B07-437D-9F17-45E9C364E2F6}C:\program files\google\google earth\client\googleearth.exe] => (Allow) C:\program files\google\google earth\client\googleearth.exe FirewallRules: [{3FDED7E6-E945-4F8D-A348-5548DCD1D3C8}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{C4F8FB9D-8DC0-4FD1-99CF-EFCF08AF520D}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{C1B906E8-2273-4B15-ADEA-8AF7379C4D03}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{2DCEFE3A-8155-4A59-97E2-1F7B3B3B0603}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{1C465D7B-EE04-42CB-8462-E497103E741F}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{0A71D592-C4C5-4978-A4CE-7A48A462CAAC}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{5D63525C-D291-4F26-B5C9-6D1D07665CF2}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{ACECBC95-A34A-452D-A77C-8A30018DF076}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{81824742-B300-48AB-9DCD-05D38AD244BF}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{9EF82329-0892-4DDF-B8EE-29F3A7438070}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{E088053D-95F8-43DB-B375-393E356C8FD0}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{38D6F17E-5C6A-4C91-A350-B66A4E2ED645}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{0C7C6587-4F25-4D59-B9ED-2D93180971A3}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{4BE0B65A-48D2-45FD-AA23-7C40320F5238}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{E9A1B372-BDDB-4041-AFBF-0FEB1FE31FE2}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{F4FBEE09-47F8-403E-94FD-40E929228A4B}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{872A756C-EA5D-4494-B83A-C197DFF5ACFA}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{6A4B1383-E346-4300-930C-B0AE2617FD31}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{6D56B4F8-C627-4430-9602-4EA1200124D6}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{89B5CABD-066A-4DA2-B1B8-5B2B08A861D4}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{7321D32E-482E-4910-9035-7281E4CD53CB}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{024DDCBA-954F-4E79-A72A-004243D9794A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{25B61198-6A75-4AA8-B13E-C9428E22B306}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{19AAEF9B-3F47-4CF2-8E91-795CAA2180F2}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{68240766-02AD-48D8-900B-7292A6492B68}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{AB69F6BE-AA7C-4B71-A5F3-19B17FA5A825}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{E0A87D8B-D7DB-4ADF-B26D-51C96CD39837}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{D434BDF5-06B6-4DA6-8104-14A5796DFF3A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{4F98C624-871A-4130-B2F4-003B9B4E1BC0}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{33BA7B18-55E5-4708-9753-2A63E3DDD1EA}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{9F5D23CA-1C3D-4D42-9C85-11A72348C85D}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{6C2E67AF-B1C6-4B03-9750-11C748862E30}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{B5E1F3C7-6899-477D-8F8A-3CB45787685A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{1B800BED-3A0D-40CB-A75E-47A1045DBC6F}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{8FD01BBB-3D1E-4B5E-84E1-61D3C54C0F75}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{104D274B-D02B-49D3-9575-D3F2D59CD126}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{6C06B049-466C-44E3-9C22-655143592C78}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{12130842-405B-408F-B624-2B84C9CC5AFB}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{2B48B016-EF8B-4E18-A042-6E0BE377516A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{35FF0870-5087-47CA-8BE9-654FF4A55C5D}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{B9BC7DA8-9D49-4D65-8BB0-09040C61B2FB}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{1B7F5A90-C1C0-46D0-AA90-D90C323C21BA}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{AB024566-6BBD-4E27-9F07-51991CB62974}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{E83BAC57-BC40-4C9B-93AB-FE63BAE82E44}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{06E3C5A5-E024-430C-B895-F386457F714F}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{6E42429A-F7DA-498A-A01B-5B3B7DC4AB41}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{C949BA4C-607E-4BF4-975D-1D4EE1C8CE04}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{CBC9BAB8-7777-44BF-B78D-29410F877C3F}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{F133A29A-CDE7-4B17-B2DF-87B6CBD4A21F}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{7A6F7161-A486-4F56-A54F-3A39A5425D50}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{734E79AA-74EA-4956-944D-621C370C3FE7}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{17574113-2AEC-4938-BCCD-370FD5DB65F5}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe FirewallRules: [{1B74F1C3-1E30-44F0-B0EB-B1D151F7D054}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe FirewallRules: [{8635AE69-0B32-46C0-A969-2E6AEC21C345}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe FirewallRules: [{D8119F96-B4F7-45C5-A81B-814577017AF5}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe FirewallRules: [{B08FF169-3FD8-4B62-B4BC-EB6FDCECC495}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Description: Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318} Manufacturer: Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (09/26/2015 03:43:21 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (09/26/2015 03:25:57 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARC) Description: Bei der Aktivierung der App „Microsoft.WindowsStore_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927139. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (09/26/2015 02:25:57 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARC) Description: Bei der Aktivierung der App „Microsoft.WindowsStore_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927139. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (09/26/2015 01:25:57 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARC) Description: Bei der Aktivierung der App „Microsoft.WindowsStore_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927139. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (09/26/2015 12:25:57 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARC) Description: Bei der Aktivierung der App „Microsoft.WindowsStore_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927139. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (09/26/2015 11:25:57 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARC) Description: Bei der Aktivierung der App „Microsoft.WindowsStore_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927139. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (09/26/2015 10:25:57 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARC) Description: Bei der Aktivierung der App „Microsoft.WindowsStore_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927139. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (09/26/2015 09:25:57 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARC) Description: Bei der Aktivierung der App „Microsoft.WindowsStore_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927139. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (09/26/2015 08:25:57 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARC) Description: Bei der Aktivierung der App „Microsoft.WindowsStore_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927139. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (09/26/2015 07:25:57 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARC) Description: Bei der Aktivierung der App „Microsoft.WindowsStore_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927139. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Systemfehler: ============= Error: (09/26/2015 02:21:07 AM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: %%1009 Error: (09/26/2015 01:40:01 AM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: %%1009 Error: (09/26/2015 12:44:55 AM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: %%1009 Error: (09/26/2015 12:44:54 AM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: %%1009 Error: (09/26/2015 12:43:14 AM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: %%1009 Error: (09/26/2015 12:39:55 AM) (Source: DCOM) (EventID: 10001) (User: MARC) Description: "C:\Windows\system32\backgroundTaskHost.exe" -ServerName:App.AppXwmnqm0nvq2b90pwvr42qmtdjp7cj3w82.mca15612App.AppXt6ekn1863a6d16mhnr4gnqp74qy58pfd.mcaNicht verfügbarNicht verfügbar Error: (09/26/2015 12:34:08 AM) (Source: DCOM) (EventID: 10001) (User: MARC) Description: "C:\Windows\system32\backgroundTaskHost.exe" -ServerName:Microsoft.XboxApp.AppXf74jmpwd42x7vxttda454sh29n0qpb8x.mca15612Microsoft.XboxApp.AppXmpz3fc76a2wbqs4dbgw91hn2jegnc6be.mcaNicht verfügbarNicht verfügbar Error: (09/26/2015 12:31:43 AM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: %%1009 Error: (09/26/2015 12:28:34 AM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: %%1009 Error: (09/26/2015 12:16:43 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar CodeIntegrity: =================================== Date: 2015-09-14 13:06:27.958 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2015-09-14 13:06:27.892 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2015-09-14 13:06:27.800 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2015-09-14 13:06:27.565 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2015-09-14 13:06:27.321 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2015-09-14 13:06:27.146 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2015-09-14 13:06:23.412 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. Date: 2015-09-14 13:06:18.919 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. Date: 2015-08-20 23:45:06.563 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2015-08-20 23:45:06.488 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5 CPU 750 @ 2.67GHz Prozentuale Nutzung des RAM: 75% Installierter physikalischer RAM: 3063.11 MB Verfügbarer physikalischer RAM: 760.11 MB Summe virtueller Speicher: 9207.11 MB Verfügbarer virtueller Speicher: 5426.15 MB ==================== Laufwerke ================================ Drive c: (Festplatte) (Fixed) (Total:905.41 GB) (Free:629.84 GB) NTFS Drive d: (Recover) (Fixed) (Total:25 GB) (Free:17.01 GB) NTFS Drive l: (PARAGON) (Removable) (Total:7.35 GB) (Free:6.83 GB) FAT32 ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 2BD2C32A) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=905.4 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=25 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=1 GB) - (Type=12) ======================================================== Disk: 5 (MBR Code: Windows 7 or Vista) (Size: 7.5 GB) (Disk ID: 438CA2E6) Partition 1: (Active) - (Size=7.5 GB) - (Type=07 NTFS) ==================== Ende vom Addition.txt ============================ Also, ich will auf JEDEN Fall die neue Festplatte nutzen, aber nicht sofort. Ideal wäre, wenn ich die neue Platte als slave einbauen könnte und dann Win10 drauf und nach und nach die Programme. Meine Fragen hierzu: - wie soll ich die Festplatte partitionieren? Mit welchem Programm? - Kann ich die Platte, wenn jetzt als Slave (z.B. als Laufwerk D später als Hauptfestplatte einsetzen? Oder sind dann die Programme in der Registry unter D:\ gespeichert und nicht unter C:\ (oder sollte ich hierfür einen neuen post eröffnen)? Danke!! |
27.09.2015, 04:47 | #42 | |
/// Malwareteam | Windows 10 startet nicht mehr. Bad_system_config_info [gelöst]Zitat:
@1: partitionieren würde ich, wenn du das Betriebssystem neu installiert, dort gibt es einen eigenen Dialog, der das ermöglicht. Einteilung belasse ich immer recht klassisch: System + Boot/EFI + Recovery wird automatisch erstellt, dabei etwa Hälfte der Platte manuell für meine Daten als Datenpartition. Bedeutet konkret: Hälfte der Platte belegen und formatieren und auf den restlichen nicht zugewiesenen Speicherplatz Windows installieren lassen. Die Datenpartition kannst aber genauso nachträglich machen, wenn du Windows schon installiert hast. @2: erübrigt sich dadurch, dass deine momentan Platte nicht mehr zum brauchen ist Mit einem entsprechenden Image Programm solltest du aber ohne Datenverlust von der jetzigen defekten Platte auf die neue umziehen können wenn du möchtest. Die Partitionen werden dabei übertragen und neu erstellt. |
27.09.2015, 09:19 | #43 |
| Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] ok, dann ist ja gut, daß ich eine neue Platte bestellt habe. Habe übrigens die SEAGATE ST2000DM001 SATA3 2TB gekauft. Hatte gutes darüber gelesen und vom Preis unschlagbar. Also, ich brauche trotzdem noch deine Hilfe. Habe schon herausgefunden, daß bei SATA Platten ja kein master/slave mehr ist, wie früher bei IDE. Ok, ich bin ja mit MS-DOS und Windows 3.1 aufgewachsen.. ;-) Also, wenn möglich bitte für einen nicht-sehr-hoch-qualifizierten Computer Spezi (oder für einen etwas versierteren Laien) ;-) Ich will natürlich die neue Platte einbauen, ABER... ich möchte nicht einfach das image draufschreiben. Habe viel Datenschrott und alte Programme. Die möchte ich eh loswerden. Die Registry ist ein einziger Schrottplatz! Am liebsten würde ich die neue Platte ZUSÄTZLICH einbauen (habe noch einen freien Stecker im PC, am gleichen Kabelstrang, wo die aktuelle Platte dran hängt) und würde gerne dort Win10 installieren und die Programme, aber nur die, die ich auch will. GEHT das? Wenn ja, WIE? Bitte trotzdem für Laien verständlich. ;-) Wenn ich die zweite Platte reinbauen könnte und da Win10 installiere, wie sage ich dem dem USB Stick, daß er Win10 auf der zweiten Platte installieren soll und mir nicht mein aktuelles Windows überschreibt? Ich hoffe, daß ich mich verständlich ausgedrückt habe. Natürlich will ich die Platte tauschen, aber nicht innerhalb von 1 Tag. Ich möchte gerne soweit es geht die neue Platte ganz neu aufsetzen, ohne Image und ohne Datenschrott von Vorgestern. Und das Stück für Stück. Bis ich dann die neue Platte als bootlaufwerk C:\ mache und die alte entsorge. Habe vorsichtshalber trotzdem ein image gemacht... danke! |
27.09.2015, 10:43 | #44 |
| Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] Am besten die alte Platte direkt ausbauen. Neue rein, Windows und Programme installieren. Alte Platte über einen Adapter (SATA=>USB) als externe Platte anschließen, Daten rüberkopieren. Ich würde die alte Platte möglichst wenig nutzen. Je länger sie eingebaut ist, desto größer die Gefahr eines Datenverlustes. |
27.09.2015, 16:36 | #45 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 10 startet nicht mehr. Bad_system_config_info [gelöst] Oder so schnell wie möglich ein Image der betroffenen Dateisysteme auf der Platte erstellen. Geht ganz schnell und einfach unter Windows mit Drive Snapshot - Download evaluation Software
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Windows 10 startet nicht mehr. Bad_system_config_info |
bildschirm, chkdsk, dateien, einstellungen, entfernen, explorer, fehler, festplatte, folge, gelöscht, kompatibel, nicht mehr, online, programme, seite, speicher, starten, startet, stick, system, tool, usb, usb stick, win10, windows, windows 10 startet nicht mehr. bad_system_config_info, zurücksetzen |