|
Alles rund um Windows: CinePlus-meine Browser(Firefox, Chrome und Microsoft Edge) öffnen wenn sie geschlossen sind Pop-Up-FensterWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
05.12.2015, 01:03 | #46 |
| CinePlus-meine Browser(Firefox, Chrome und Microsoft Edge) öffnen wenn sie geschlossen sind Pop-Up-Fenster [gelöst] neu: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:01-12-2015 durchgeführt von Yannick (Administrator) auf YANNICK (05-12-2015 00:45:22) Gestartet von C:\Users\Yannick\Desktop Geladene Profile: Yannick (Verfügbare Profile: Yannick) Platform: Windows 10 Home (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Edge) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfemms.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (AVG Technologies) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\CSP\1.6.1180.0\McCSPServiceHost.exe (acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe (McAfee, Inc.) C:\Program Files\mcafee\virusscan\mcods.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel Corporation) C:\Windows\System32\igfxTray.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe (AVG Technologies) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe (Spotify Ltd) C:\Users\Yannick\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIIVE.EXE (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.226\SSScheduler.exe (FK2) C:\Windows\SysWOW64\svchospt.exe (Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.3.0.0\Lightshot.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.bin (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Microsoft Corporation) C:\Windows\splwow64.exe (Pokki) C:\Users\Yannick\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe () C:\Program Files (x86)\Steam\steamapps\common\Clicker Heroes\Clicker Heroes.exe (Valve Corporation) C:\Program Files (x86)\Steam\GameOverlayUI.exe () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Alexander Roshal) C:\Program Files (x86)\WinRAR\WinRAR.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16407296 2015-10-20] (Realtek Semiconductor) HKLM-x32\...\Run: [svchospt] => C:\WINDOWS\SysWOW64\svchospt.exe [913408 2014-05-03] (FK2) HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226560 2014-10-16] () HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [Advanced SystemCare 8] => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2429728 2015-04-08] (IObit) HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [Spotify Web Helper] => C:\Users\Yannick\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2344768 2015-11-23] (Spotify Ltd) HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [Spotify] => C:\Users\Yannick\AppData\Roaming\Spotify\Spotify.exe [8281920 2015-11-23] (Spotify Ltd) HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3011152 2015-11-10] (Valve Corporation) HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8551848 2015-10-19] (Piriform Ltd) HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIIVE.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\RunOnce: [Uninstall C:\Users\Yannick\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Yannick\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64" HKU\S-1-5-18\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIIVE.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION) ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-08-13] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-08-13] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-08-13] (Acer Incorporated) ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => Keine Datei ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => Keine Datei ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => Keine Datei Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2015-11-13] ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.226\SSScheduler.exe (McAfee, Inc.) Startup: C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LibreOffice 4.4.lnk [2015-11-05] ShortcutTarget: LibreOffice 4.4.lnk -> C:\Program Files (x86)\LibreOffice 4\program\quickstart.exe () ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{7e0bb9d6-1a43-41f9-824a-f02fdf8aa2a2}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKLM -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} SearchScopes: HKU\S-1-5-21-3730779119-3456577941-3398900789-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms} SearchScopes: HKU\S-1-5-21-3730779119-3456577941-3398900789-1001 -> {0253AFB1-2C35-49D5-93CC-5C76222F903E} URL = hxxps://de.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default SearchScopes: HKU\S-1-5-21-3730779119-3456577941-3398900789-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms} BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation) BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-10-28] (Oracle Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-10-28] (Oracle Corporation) Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-11-13] (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-11-13] (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-11-13] (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-11-13] (McAfee, Inc.) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2015-09-28] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2015-09-28] (McAfee, Inc.) FireFox: ======== FF ProfilePath: C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default FF SearchEngineOrder.3: Bing FF Keyword.URL: hxxp://www.bing.com/search?FORM=SK2MDF&PC=SK2M&q= FF SelectedSearchEngine: Google FF DefaultSearchEngine: Google FF Homepage: hxxp://homepage-web.com/?s=acer&m=start FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll [2015-10-22] () FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-09-28] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll [2015-10-22] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-10-28] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-10-28] (Oracle Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-09-28] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2015-08-13] () FF Plugin HKU\S-1-5-21-3730779119-3456577941-3398900789-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Yannick\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-28] (Unity Technologies ApS) FF SearchPlugin: C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\searchplugins\bing-.xml [2015-09-17] FF SearchPlugin: C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\searchplugins\McSiteAdvisor.xml [2015-09-17] FF Extension: Kein Name - C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\extensions\defsearchp@gmail.com [nicht gefunden] FF Extension: Kein Name - C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\extensions\deskCutv2@gmail.com [nicht gefunden] FF Extension: McAfee WebAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2015-12-01] FF Extension: Bing Search - C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\Extensions\bingsearch.full@microsoft.com [2015-09-05] [ist nicht signiert] FF Extension: sidebar - C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\Extensions\sidebarff@gmail.com [2015-11-06] [ist nicht signiert] FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-10-08] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF HKLM-x32\...\Firefox\Extensions: [sidebarff@gmail.com] - C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\extensions\sidebarff@gmail.com FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on FF Extension: E-Web Print - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2015-11-20] [ist nicht signiert] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2015-10-28] [ist nicht signiert] Chrome: ======= CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxps://www.google.de/","hxxps://www.google.de/" CHR Profile: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-05] CHR Extension: (Google Docs) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-05] CHR Extension: (Google Drive) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-28] CHR Extension: (YouTube) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-27] CHR Extension: (Google-Suche) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28] CHR Extension: (Google Tabellen) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-05] CHR Extension: (SiteAdvisor) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-09-05] CHR Extension: (Google Text & Tabellen Offline) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-05] CHR Extension: (Shortcuts for All Google™) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdiejbegdjikmehflknhkbieocmnogcf [2015-11-07] CHR Extension: (kcnhkahnjcbndmmehfkdnkjomaanaooo) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcnhkahnjcbndmmehfkdnkjomaanaooo [2015-11-07] CHR Extension: (Skype Click to Call) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-10-28] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-05] CHR Extension: (Google Mail) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-05] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-11-19] CHR HKLM\...\Chrome\Extension: [jdiejbegdjikmehflknhkbieocmnogcf] - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdiejbegdjikmehflknhkbieocmnogcf.crx [2015-11-06] CHR HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-11-19] CHR HKLM-x32\...\Chrome\Extension: [jdiejbegdjikmehflknhkbieocmnogcf] - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdiejbegdjikmehflknhkbieocmnogcf.crx [2015-11-06] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12] CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 0188301449097894mcinstcleanup; C:\WINDOWS\TEMP\018830~1.EXE [883024 2015-05-04] (McAfee, Inc.) R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [821024 2015-08-05] (IObit) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation) S3 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2858336 2015-07-23] (Acer Incorporated) S3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-07-22] (Acer Incorporated) S3 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [349728 2015-08-13] (WildTangent) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [328624 2015-10-20] (Intel Corporation) S3 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel(R) Corporation) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-07-29] (IObit) S3 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [455912 2014-12-30] (Acer Incorporate) R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [157928 2015-11-13] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [783120 2015-09-28] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-29] (McAfee, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.226\McCHSvc.exe [289256 2015-10-30] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.6.1180.0\McCSPServiceHost.exe [1694152 2015-09-01] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) R3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [639456 2015-08-11] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232656 2015-07-31] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [376264 2015-08-10] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [254792 2015-07-31] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1006320 2015-08-19] (Overwolf LTD) S3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-10-17] (Acer Incorporate) S3 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] () S3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-10-17] (Acer Incorporate) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2973400 2015-08-04] (AVG Technologies) R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [234240 2014-07-15] (acer) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 athr; C:\Windows\System32\drivers\athw10x.sys [4322440 2015-11-06] (Qualcomm Atheros Communications, Inc.) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [80768 2015-08-10] (McAfee, Inc.) R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [51128 2015-10-02] (Intel Corporation) S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2015-08-06] (LogMeIn Inc.) R3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [207208 2015-05-19] (McAfee, Inc.) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-09-25] (REALiX(tm)) S3 iaioi2c; C:\Windows\System32\drivers\iaioi2ce.sys [69632 2014-06-09] (Intel Corporation) R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated) S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2015-11-22] (Malwarebytes) R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [413432 2015-08-10] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [349096 2015-08-10] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [82072 2015-08-10] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [495856 2015-08-10] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [839376 2015-08-10] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [537408 2015-08-12] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [111256 2015-08-12] (McAfee, Inc.) R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [37960 2015-11-13] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [244024 2015-08-10] (McAfee, Inc.) R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [888064 2015-10-02] (Realtek ) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [752856 2015-09-25] (Realsil Semiconductor Corporation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33960 2015-10-20] (Synaptics Incorporated) S3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [56520 2015-09-09] (Synaptics Incorporated) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [31144 2015-07-23] (TuneUp Software) R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [146232 2015-10-02] (Intel Corporation) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) R3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-12-04 23:06 - 2015-12-04 23:06 - 00000000 ____D C:\Users\Yannick\Desktop\Pokemon Omicron 1.4 (Win) 2015-12-04 23:00 - 2015-12-04 23:00 - 00016148 _____ C:\WINDOWS\system32\YANNICK_Yannick_HistoryPrediction.bin 2015-12-04 22:51 - 2015-12-04 22:52 - 122133072 _____ C:\Users\Yannick\Desktop\Pokemon Zeta 1.4 (Win).zip 2015-12-04 22:26 - 2004-05-25 18:47 - 01757264 _____ (None) C:\Users\Yannick\Desktop\VisualBoyAdvance.exe 2015-12-04 22:26 - 2004-05-25 18:16 - 00025223 _____ C:\Users\Yannick\Desktop\NEWS 2015-12-04 22:26 - 2004-05-25 18:16 - 00008178 _____ C:\Users\Yannick\Desktop\README-win.txt 2015-12-04 22:26 - 2002-10-19 07:38 - 00018349 _____ C:\Users\Yannick\Desktop\COPYING 2015-12-04 22:25 - 2015-12-04 22:25 - 00611913 _____ C:\Users\Yannick\Desktop\VisualBoyAdvance-1.7.2.zip 2015-12-04 22:22 - 2015-12-04 22:24 - 01466656 _____ C:\Users\Yannick\Downloads\VisualBoyAdvance - CHIP-Installer.exe 2015-12-04 22:21 - 2015-12-04 22:23 - 122283772 _____ C:\Users\Yannick\Desktop\Pokemon Omicron 1.4 (Win).zip 2015-12-04 22:19 - 2015-12-04 22:19 - 52697557 _____ C:\Users\Yannick\Desktop\1.4.10 Omicron.zip 2015-12-04 21:03 - 2015-12-04 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2015-12-04 01:04 - 2015-12-04 01:04 - 00009398 _____ C:\Users\Yannick\Documents\Unbenannt 1.odt 2015-12-04 01:04 - 2015-12-04 01:04 - 00002678 _____ C:\Users\Yannick\Documents\Mein Film.wlmp 2015-12-02 22:05 - 2015-12-02 22:05 - 02037952 _____ C:\Users\Yannick\Desktop\Plattentektonik.mp4 2015-12-02 21:15 - 2015-12-02 21:15 - 00001382 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk 2015-12-02 21:15 - 2015-12-02 21:15 - 00000000 ____D C:\WINDOWS\de 2015-12-02 21:14 - 2015-12-02 21:14 - 00001451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk 2015-12-02 21:14 - 2015-12-02 21:14 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2015-12-02 21:12 - 2015-12-02 21:12 - 00000000 ____D C:\WINDOWS\PCHEALTH 2015-12-02 21:11 - 2015-12-02 21:14 - 00000000 ____D C:\Program Files (x86)\Windows Live 2015-12-02 21:00 - 2015-12-02 21:17 - 00000000 ____D C:\Users\Yannick\AppData\Local\Windows Live 2015-12-02 20:59 - 2015-12-02 21:00 - 01245384 _____ (Microsoft Corporation) C:\Users\Yannick\Downloads\wlsetup-web.exe 2015-12-01 18:20 - 2015-12-01 18:30 - 00000000 ____D C:\Users\Yannick\Desktop\Rechnungen 2015-11-29 21:52 - 2015-11-29 21:52 - 00394754 _____ C:\Users\Yannick\Downloads\soundboard-1.0b5-win64.ts3_plugin 2015-11-29 21:35 - 2015-12-03 22:50 - 00000167 _____ C:\Users\Yannick\Documents\ClownfishForTeamspeak.ini 2015-11-29 21:33 - 2015-11-29 21:33 - 00237268 _____ C:\Users\Yannick\Downloads\ClownfishVoiceChanger-v1.50.ts3_plugin 2015-11-29 21:30 - 2015-11-29 21:30 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Rapid Solution Software AG 2015-11-29 21:29 - 2015-11-29 21:29 - 01466656 _____ C:\Users\Yannick\Downloads\Scramby - CHIP-Installer.exe 2015-11-29 21:25 - 2015-11-29 21:25 - 00042496 _____ C:\Users\Yannick\Desktop\FUNNY VOICE.EXE 2015-11-29 21:24 - 2015-11-29 21:24 - 01466656 _____ C:\Users\Yannick\Downloads\FunnyVoice - CHIP-Installer.exe 2015-11-24 22:29 - 2015-11-24 22:29 - 00000144 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-11-23 22:44 - 2015-11-23 22:44 - 00001599 _____ C:\Users\Yannick\Desktop\MouseRecorder.exe - Shortcut.lnk 2015-11-23 22:39 - 2015-11-24 06:11 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Mouse Recorder 2015-11-23 22:39 - 2015-11-23 22:39 - 00000000 ____D C:\ProgramData\MouseRecorder 2015-11-23 22:39 - 2015-11-23 22:39 - 00000000 ____D C:\ProgramData\Mouse Recorder 2015-11-23 22:39 - 2015-11-23 22:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MouseRecorder 2015-11-23 22:39 - 2015-11-23 22:39 - 00000000 ____D C:\Program Files (x86)\MouseRecorder 2015-11-23 22:37 - 2015-11-23 22:37 - 01466656 _____ C:\Users\Yannick\Downloads\Mouse Recorder Premium - CHIP-Installer.exe 2015-11-20 23:18 - 2015-11-20 23:18 - 00001347 _____ C:\Users\Public\Desktop\Free Mouse and Keyboard Recorder.lnk 2015-11-20 23:18 - 2015-11-20 23:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Mouse and Keyboard Recorder 2015-11-20 23:18 - 2015-11-20 23:18 - 00000000 ____D C:\Program Files (x86)\RobotSoft 2015-11-20 23:16 - 2015-11-20 23:16 - 01466656 _____ C:\Users\Yannick\Downloads\Free Mouse and Keyboard Recorder - CHIP-Installer.exe 2015-11-20 21:57 - 2015-11-20 21:57 - 00001167 _____ C:\Users\Public\Desktop\ReMouse Standard.lnk 2015-11-20 21:57 - 2015-11-20 21:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReMouse Standard 2015-11-20 21:57 - 2015-11-20 21:57 - 00000000 ____D C:\Program Files (x86)\ReMouse Standard 2015-11-20 21:56 - 2015-11-20 21:56 - 01162728 _____ (AutomaticSolution Software ) C:\Users\Yannick\Downloads\ReMouseStandard-Setup.exe 2015-11-20 21:33 - 2015-11-20 21:57 - 00000000 ____D C:\Users\Yannick\Documents\AutomaticSolution Software 2015-11-20 21:33 - 2015-11-20 21:33 - 00001140 _____ C:\Users\Public\Desktop\GhostMouse Free.lnk 2015-11-20 21:33 - 2015-11-20 21:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GhostMouse 2015-11-20 21:33 - 2015-11-20 21:33 - 00000000 ____D C:\Program Files (x86)\GhostMouse 2015-11-20 21:32 - 2015-11-20 21:33 - 00842440 _____ (ghost-mouse.com ) C:\Users\Yannick\Downloads\GhostMouse-Setup.exe 2015-11-20 19:57 - 2015-11-20 21:36 - 00000000 ____D C:\Program Files (x86)\EPSON Software 2015-11-20 19:57 - 2015-11-20 19:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software 2015-11-17 16:28 - 2015-12-05 00:45 - 00000000 ____D C:\Users\Yannick\Desktop\FRST-OlderVersion 2015-11-17 16:28 - 2015-11-17 16:29 - 00006388 _____ C:\Users\Yannick\Desktop\Fixlog.txt 2015-11-15 21:30 - 2015-11-15 21:30 - 00000000 ____D C:\Users\Yannick\Desktop\runtime 2015-11-15 21:13 - 2015-12-04 21:29 - 00001085 _____ C:\Users\Yannick\Desktop\nativelog.txt 2015-11-15 21:13 - 2015-11-15 22:27 - 00000000 ____D C:\Users\Yannick\Desktop\game 2015-11-15 20:46 - 2015-11-15 20:46 - 00332835 _____ C:\Users\Yannick\Desktop\Unbenannt 1.odt 2015-11-15 20:36 - 2015-11-15 22:20 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2015-11-15 20:34 - 2015-11-15 22:20 - 00000000 ____D C:\Users\Yannick\Desktop\mbar 2015-11-15 20:33 - 2015-11-15 20:33 - 16563352 _____ (Malwarebytes Corp.) C:\Users\Yannick\Desktop\mbar-1.09.3.1001.exe 2015-11-15 15:08 - 2015-11-15 15:08 - 00002922 _____ C:\WINDOWS\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 2015-11-15 14:49 - 2015-11-15 14:49 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\ProductData 2015-11-15 14:49 - 2015-11-15 14:49 - 00000000 ____D C:\ProgramData\ProductData 2015-11-15 04:55 - 2015-11-15 04:55 - 00000000 ___HD C:\$WINDOWS.~BT 2015-11-15 00:16 - 2015-10-05 23:26 - 01801288 _____ (Malwarebytes) C:\Users\Yannick\Desktop\JRT.exe 2015-11-15 00:15 - 2015-11-15 00:16 - 01798976 _____ (Malwarebytes) C:\Users\Yannick\Desktop\JRT (1).exe 2015-11-15 00:03 - 2015-11-15 00:04 - 01798976 _____ (Malwarebytes) C:\Users\Yannick\Downloads\JRT.exe 2015-11-13 06:38 - 2015-11-13 06:38 - 00001983 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2015-11-13 06:38 - 2015-11-13 06:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus 2015-11-13 06:38 - 2015-11-13 06:38 - 00000000 ____D C:\Program Files\McAfee Security Scan 2015-11-12 16:05 - 2015-11-27 00:33 - 00000000 ____D C:\Users\Yannick\Desktop\data 2015-11-12 16:04 - 2015-11-12 16:04 - 00889478 _____ C:\Users\Yannick\Downloads\Golem.exe.zip 2015-11-10 22:52 - 2015-11-10 22:53 - 07942416 _____ (IObit ) C:\Users\Yannick\Downloads\smart-defrag-setup (1).exe 2015-11-10 22:33 - 2015-11-05 06:15 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-11-10 22:33 - 2015-11-05 06:15 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll 2015-11-10 22:33 - 2015-11-05 06:14 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2015-11-10 22:33 - 2015-11-05 06:13 - 00577888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2015-11-10 22:33 - 2015-11-05 06:11 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-11-10 22:33 - 2015-11-05 06:06 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-11-10 22:33 - 2015-11-05 06:06 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2015-11-10 22:33 - 2015-11-05 06:01 - 00607408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2015-11-10 22:33 - 2015-11-05 05:56 - 01083072 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2015-11-10 22:33 - 2015-11-05 05:56 - 00116064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys 2015-11-10 22:33 - 2015-11-05 05:56 - 00025280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2015-11-10 22:33 - 2015-11-05 05:30 - 00961376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-11-10 22:33 - 2015-11-05 05:24 - 02878512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-11-10 22:33 - 2015-11-05 05:23 - 00762888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2015-11-10 22:33 - 2015-11-05 05:23 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2015-11-10 22:33 - 2015-11-05 05:20 - 21873664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-11-10 22:33 - 2015-11-05 05:18 - 24597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-11-10 22:33 - 2015-11-05 05:18 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2015-11-10 22:33 - 2015-11-05 05:18 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-11-10 22:33 - 2015-11-05 05:17 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-11-10 22:33 - 2015-11-05 05:12 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll 2015-11-10 22:33 - 2015-11-05 05:11 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2015-11-10 22:33 - 2015-11-05 05:10 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-11-10 22:33 - 2015-11-05 05:10 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2015-11-10 22:33 - 2015-11-05 05:07 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-11-10 22:33 - 2015-11-05 05:06 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2015-11-10 22:33 - 2015-11-05 05:05 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-11-10 22:33 - 2015-11-05 05:05 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-11-10 22:33 - 2015-11-05 05:03 - 02180608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-11-10 22:33 - 2015-11-05 05:03 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2015-11-10 22:33 - 2015-11-05 05:01 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2015-11-10 22:33 - 2015-11-05 05:01 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2015-11-10 22:33 - 2015-11-05 05:01 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2015-11-10 22:33 - 2015-11-05 04:59 - 03587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-11-10 22:33 - 2015-11-05 04:59 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2015-11-10 22:33 - 2015-11-05 04:58 - 01383936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-11-10 22:33 - 2015-11-05 04:58 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2015-11-10 22:33 - 2015-11-05 04:56 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-11-10 22:33 - 2015-11-05 04:55 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2015-11-10 22:33 - 2015-11-05 04:54 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll 2015-11-10 22:33 - 2015-11-05 04:47 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-11-10 22:33 - 2015-11-05 04:42 - 02647040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2015-11-10 22:33 - 2015-11-05 04:40 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-11-10 22:33 - 2015-11-05 04:35 - 18803712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-11-10 22:33 - 2015-11-05 04:35 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2015-11-10 22:33 - 2015-11-05 04:34 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2015-11-10 22:33 - 2015-11-05 04:33 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-11-10 22:33 - 2015-11-05 04:33 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-11-10 22:33 - 2015-11-05 04:30 - 00767488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2015-11-10 22:33 - 2015-11-05 04:28 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-11-10 22:33 - 2015-11-05 04:27 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2015-11-10 22:33 - 2015-11-05 04:27 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2015-11-10 22:33 - 2015-11-05 04:23 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll 2015-11-10 18:14 - 2015-11-10 18:14 - 00001299 _____ C:\Users\Yannick\Desktop\mbam1.txt 2015-11-09 21:35 - 2015-11-24 13:05 - 00000000 ____D C:\Users\Yannick\Desktop\DO krieg 2015-11-09 21:34 - 2015-11-09 21:34 - 00001762 _____ C:\Users\Yannick\Desktop\Lightshot.lnk 2015-11-08 23:24 - 2015-11-08 23:24 - 00001939 _____ C:\Users\Yannick\Desktop\Battle for Wesnoth.lnk 2015-11-08 23:23 - 2015-11-08 23:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle for Wesnoth 1.12.4 2015-11-08 23:19 - 2015-11-08 23:22 - 00000000 ____D C:\Program Files (x86)\Battle for Wesnoth 1.12.4 2015-11-08 23:07 - 2015-11-08 23:18 - 357105928 _____ C:\Users\Yannick\Downloads\wesnoth-1.12.4a-win32.exe 2015-11-08 20:43 - 2015-11-08 20:43 - 00042213 _____ C:\Users\Yannick\Desktop\AdwCleaner[C1].txt 2015-11-08 20:27 - 2015-11-08 20:30 - 00000000 ____D C:\AdwCleaner 2015-11-08 20:24 - 2015-11-08 20:25 - 01712128 _____ C:\Users\Yannick\Desktop\adwcleaner_5.019.exe 2015-11-08 20:22 - 2015-11-12 15:54 - 00025232 _____ C:\Users\Yannick\Desktop\mbam.txt 2015-11-08 18:54 - 2015-11-08 18:54 - 00001224 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-11-08 18:49 - 2015-11-22 18:37 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-11-08 18:27 - 2015-11-15 20:35 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-11-08 18:27 - 2015-11-08 18:27 - 00001179 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-11-08 18:27 - 2015-11-08 18:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-11-08 18:27 - 2015-11-08 18:27 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-11-08 18:27 - 2015-11-08 18:27 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-11-08 18:27 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-11-08 18:27 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2015-11-08 18:25 - 2015-11-08 18:53 - 42996768 _____ C:\Users\Yannick\Downloads\Firefox Setup 42.0.exe 2015-11-08 18:23 - 2015-11-08 18:27 - 22908888 _____ (Malwarebytes ) C:\Users\Yannick\Downloads\mbam-setup-2.2.0.1024.exe 2015-11-08 18:04 - 2015-11-08 18:05 - 07942416 _____ (IObit ) C:\Users\Yannick\Downloads\smart-defrag-setup.exe 2015-11-08 17:27 - 2015-11-08 17:27 - 00001345 _____ C:\Users\Yannick\Desktop\Revo Uninstaller.lnk 2015-11-08 17:27 - 2015-11-08 17:27 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2015-11-08 17:27 - 2015-11-08 17:27 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2015-11-08 17:24 - 2015-11-08 17:26 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Yannick\Downloads\revosetup95.exe 2015-11-08 10:31 - 2015-11-17 22:28 - 00047228 _____ C:\Users\Yannick\Desktop\Addition.txt 2015-11-08 10:28 - 2015-12-05 00:48 - 00028563 _____ C:\Users\Yannick\Desktop\FRST.txt 2015-11-08 10:27 - 2015-12-05 00:45 - 02350080 _____ (Farbar) C:\Users\Yannick\Desktop\FRST64.exe 2015-11-08 10:27 - 2015-12-05 00:45 - 00000000 ____D C:\FRST 2015-11-08 10:26 - 2015-11-08 10:26 - 02198528 _____ (Farbar) C:\Users\Yannick\Downloads\FRST64.exe 2015-11-07 22:45 - 2015-11-07 22:45 - 00000000 ____D C:\Program Files (x86)\55688db6-684b-430d-9112-c6e18ce39df6 2015-11-07 22:17 - 2015-11-15 17:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3 2015-11-07 22:15 - 2015-11-07 22:15 - 00000000 ____D C:\Users\Yannick\AppData\Local\Total Extension 2015-11-07 18:57 - 2015-11-07 18:57 - 01674929 _____ (TeamExtreme) C:\Users\Yannick\Downloads\Minecraft Cracked Launcher (1).jar 2015-11-07 18:08 - 2015-11-07 18:08 - 00772016 _____ (Reimage®) C:\Users\Yannick\Downloads\ReimageRepair (1).exe 2015-11-06 15:57 - 2015-11-06 15:57 - 00003360 _____ C:\WINDOWS\System32\Tasks\{13DCFC6A-D935-423C-90A8-3EE378220E6A} 2015-11-06 15:52 - 2015-11-08 17:48 - 00000000 ____D C:\Users\Yannick\AppData\Local\Mart Download 2015-11-05 23:19 - 2015-11-05 23:19 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\LibreOffice 2015-11-05 23:11 - 2015-11-05 23:11 - 00001219 _____ C:\Users\Public\Desktop\LibreOffice 4.4.lnk 2015-11-05 23:11 - 2015-11-05 23:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.4 2015-11-05 23:09 - 2015-11-05 23:11 - 00000000 ____D C:\Program Files (x86)\LibreOffice 4 2015-11-05 23:07 - 2015-11-05 23:07 - 00000000 ____D C:\Users\Yannick\Desktop\Schule 2015-11-05 23:00 - 2015-11-05 23:06 - 223985664 _____ C:\Users\Yannick\Downloads\LibreOffice_4.4.6_Win_x86.msi 2015-11-05 22:55 - 2015-11-05 22:55 - 00001040 _____ C:\Users\Yannick\Desktop\Steam (2).lnk 2015-11-05 22:55 - 2015-11-05 22:55 - 00000983 _____ C:\Users\Yannick\Desktop\TeamSpeak 3 Client (2).lnk 2015-11-05 22:55 - 2015-11-05 22:55 - 00000222 _____ C:\Users\Yannick\Desktop\Clicker Heroes (2).url 2015-11-05 22:55 - 2015-11-05 22:55 - 00000220 _____ C:\Users\Yannick\Desktop\Sid Meier's Civilization V (2).url 2015-11-05 22:54 - 2015-11-05 22:54 - 00002262 _____ C:\Users\Yannick\Desktop\Advanced SystemCare 8 (2).lnk 2015-11-05 22:53 - 2015-11-05 22:53 - 00002715 _____ C:\Users\Yannick\Desktop\Skype (2).lnk 2015-11-05 22:51 - 2015-11-15 17:07 - 00000000 ____D C:\Users\Yannick\Desktop\Anderes 2015-11-05 22:50 - 2015-11-05 22:50 - 00000000 ____D C:\Users\Yannick\Desktop\Grafik 2015-11-05 22:49 - 2015-11-05 22:51 - 00000000 ____D C:\Users\Yannick\Desktop\Tools 2015-11-05 22:48 - 2015-11-09 21:37 - 00000000 ____D C:\Users\Yannick\Desktop\Spiele 2015-11-05 18:49 - 2015-11-05 21:54 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Opera Software 2015-11-05 18:49 - 2015-11-05 21:54 - 00000000 ____D C:\Users\Yannick\AppData\Local\Opera Software 2015-11-05 18:09 - 2015-08-24 00:01 - 00351149 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-12-05 00:47 - 2015-09-05 15:33 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-12-05 00:38 - 2015-10-02 20:56 - 00000000 ____D C:\Program Files (x86)\Steam 2015-12-04 22:38 - 2015-09-08 22:37 - 00000000 ____D C:\Users\Yannick 2015-12-04 21:06 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps 2015-12-04 21:06 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-12-04 21:03 - 2015-09-05 15:31 - 00004160 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{58127AFD-D2A0-495B-962C-C711DD258B8B} 2015-12-04 21:02 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2015-12-04 21:01 - 2015-09-05 15:29 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Spotify 2015-12-04 21:01 - 2015-09-05 15:29 - 00000000 ____D C:\Users\Yannick\AppData\Local\Spotify 2015-12-04 21:01 - 2015-07-10 10:05 - 00000000 ____D C:\Windows 2015-12-04 21:00 - 2015-09-05 15:16 - 00000000 __SHD C:\Users\Yannick\IntelGraphicsProfiles 2015-12-04 01:04 - 2015-09-05 15:46 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\TS3Client 2015-12-03 23:35 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-12-03 23:33 - 2015-09-10 18:03 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\vlc 2015-12-03 22:46 - 2015-09-10 18:10 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\dvdcss 2015-12-03 00:10 - 2014-08-29 13:48 - 00000000 ____D C:\Program Files (x86)\McAfee 2015-12-02 21:29 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF 2015-12-02 21:12 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-12-01 18:38 - 2015-09-08 22:55 - 01790124 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-12-01 18:38 - 2015-07-10 17:34 - 00772342 _____ C:\WINDOWS\system32\perfh007.dat 2015-12-01 18:38 - 2015-07-10 17:34 - 00154170 _____ C:\WINDOWS\system32\perfc007.dat 2015-12-01 18:21 - 2015-09-10 16:03 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Foxit Software 2015-12-01 15:51 - 2015-09-05 15:16 - 00000000 ____D C:\Users\Yannick\AppData\Local\VirtualStore 2015-11-27 18:43 - 2015-10-11 16:10 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\.technic 2015-11-27 15:48 - 2015-09-05 15:42 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\.minecraft 2015-11-24 22:28 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-11-24 22:28 - 2015-07-10 10:05 - 01048576 ___SH C:\WINDOWS\system32\config\BBI 2015-11-24 22:06 - 2015-09-05 15:46 - 00000000 ____D C:\Users\Yannick\AppData\Local\Overwolf 2015-11-20 21:35 - 2015-09-06 16:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2015-11-18 18:59 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache 2015-11-17 16:29 - 2015-09-10 21:15 - 00000000 ____D C:\Users\Yannick\AppData\LocalLow\Temp 2015-11-16 21:44 - 2015-09-25 17:14 - 00000000 ____D C:\Program Files (x86)\IObit 2015-11-15 05:16 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-11-15 05:03 - 2015-09-08 23:26 - 00000000 ___DC C:\WINDOWS\Panther 2015-11-15 04:59 - 2015-09-05 16:31 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Skype 2015-11-13 07:08 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-11-13 07:04 - 2015-09-05 20:15 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-11-10 22:46 - 2015-07-10 17:35 - 00000000 ____D C:\WINDOWS\SKB 2015-11-10 22:45 - 2015-10-06 17:31 - 00000000 ____D C:\Program Files (x86)\Audacity 2015-11-09 17:30 - 2015-09-05 15:16 - 00000000 ____D C:\Users\Yannick\AppData\Local\Packages 2015-11-08 23:24 - 2015-09-16 18:13 - 00000000 ____D C:\Users\Yannick\Documents\My Games 2015-11-08 22:59 - 2015-09-05 21:56 - 00000000 __RHD C:\Users\Public\AccountPictures 2015-11-08 21:15 - 2015-09-08 17:37 - 00000000 ____D C:\Users\Yannick\AppData\Local\ElevatedDiagnostics 2015-11-08 20:53 - 2015-09-25 17:14 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\IObit 2015-11-08 20:53 - 2015-09-25 17:14 - 00000000 ____D C:\ProgramData\IObit 2015-11-08 20:30 - 2015-09-05 15:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-11-08 20:10 - 2015-09-05 16:22 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-11-08 18:54 - 2015-09-18 20:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-11-08 18:54 - 2015-09-05 16:22 - 00001236 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-11-06 23:29 - 2015-07-10 13:20 - 00319616 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-11-06 16:13 - 2015-09-25 17:51 - 04322440 _____ (Qualcomm Atheros Communications, Inc.) C:\WINDOWS\system32\Drivers\athw10x.sys 2015-11-05 22:52 - 2015-09-10 15:37 - 00000000 ____D C:\Users\Yannick\Desktop\Schriftarten 2015-11-05 22:38 - 2015-10-05 15:46 - 00000000 ____D C:\Users\Yannick\AppData\Local\Sony 2015-11-05 21:18 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2015-11-05 19:59 - 2014-08-29 13:48 - 00000000 ____D C:\ProgramData\McAfee 2015-11-05 18:47 - 2015-09-05 15:31 - 00000000 __SHD C:\Users\Yannick\AppData\Local\EmieUserList 2015-11-05 18:46 - 2015-09-05 15:31 - 00000000 __SHD C:\Users\Yannick\AppData\Local\EmieSiteList 2015-11-05 17:52 - 2015-09-05 15:13 - 00000000 ____D C:\Users\Yannick\AppData\Local\SweetLabs App Platform ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-10-31 20:20 - 2015-10-31 20:20 - 0003420 _____ () C:\Users\Yannick\AppData\Local\recently-used.xbel 2015-10-17 21:57 - 2015-10-17 21:57 - 0000003 _____ () C:\Users\Yannick\AppData\Local\updater.log 2015-10-17 21:57 - 2015-10-17 21:57 - 0000424 _____ () C:\Users\Yannick\AppData\Local\UserProducts.xml 2015-09-08 22:32 - 2015-09-08 22:32 - 0000000 ____H () C:\ProgramData\DP45977C.lfl ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-11-15 04:55 ==================== Ende von FRST.txt ============================ |
05.12.2015, 01:35 | #47 |
/// Winkelfunktion /// TB-Süch-Tiger™ | CinePlus-meine Browser(Firefox, Chrome und Microsoft Edge) öffnen wenn sie geschlossen sind Pop-Up-Fenster [gelöst] FRST-Fix
__________________Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft! Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ACHTUNG Task: {780FB919-C1B4-4E56-9B9C-533BCA857C1C} - System32\Tasks\ASC8_SkipUac_Yannick => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [2015-08-13] (IObit) Task: {B9848DE3-6948-4043-92C9-F84379D18EB4} - System32\Tasks\ASC8_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe [2015-08-12] (IObit) ShortcutWithArgument: C:\Users\Yannick\Desktop\Anderes\Booking.com.lnk -> C:\Program Files\Booking.COM\StartURL.exe () -> hxxp://www.booking.com/index.html?aid=379334 <==== ACHTUNG ShortcutWithArgument: C:\Users\Yannick\Desktop\Anderes\Dropbox.lnk -> C:\Program Files\Dropbox\StartURL.exe () -> hxxps://www.dropbox.com/partners/acer2014/download <==== ACHTUNG ShortcutWithArgument: C:\Users\Yannick\Desktop\Anderes\Online kaufen.lnk -> C:\Program Files\Accessory Store\StartURL.exe () -> hxxp://go.acer.com/?id=13400&model=Aspire ES1-311 <==== ACHTUNG HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [Advanced SystemCare 8] => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2429728 2015-04-08] (IObit) ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => Keine Datei ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => Keine Datei ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => Keine Datei R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [821024 2015-08-05] (IObit) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-07-29] (IObit) S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] C:\Program Files\Enigma Software Group C:\Users\Yannick\Downloads\smart-defrag-setup (1).exe C:\Users\Yannick\AppData\Roaming\IObit C:\ProgramData\IObit C:\Program Files (x86)\IObit hosts: emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ |
05.12.2015, 04:41 | #48 |
| CinePlus-meine Browser(Firefox, Chrome und Microsoft Edge) öffnen wenn sie geschlossen sind Pop-Up-Fenster [gelöst]Code:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:01-12-2015 durchgeführt von Yannick (2015-12-05 04:27:28) Run:3 Gestartet von C:\Users\Yannick\Desktop Geladene Profile: Yannick (Verfügbare Profile: Yannick) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ACHTUNG Task: {780FB919-C1B4-4E56-9B9C-533BCA857C1C} - System32\Tasks\ASC8_SkipUac_Yannick => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [2015-08-13] (IObit) Task: {B9848DE3-6948-4043-92C9-F84379D18EB4} - System32\Tasks\ASC8_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe [2015-08-12] (IObit) ShortcutWithArgument: C:\Users\Yannick\Desktop\Anderes\Booking.com.lnk -> C:\Program Files\Booking.COM\StartURL.exe () -> hxxp://www.booking.com/index.html?aid=379334 <==== ACHTUNG ShortcutWithArgument: C:\Users\Yannick\Desktop\Anderes\Dropbox.lnk -> C:\Program Files\Dropbox\StartURL.exe () -> hxxps://www.dropbox.com/partners/acer2014/download <==== ACHTUNG ShortcutWithArgument: C:\Users\Yannick\Desktop\Anderes\Online kaufen.lnk -> C:\Program Files\Accessory Store\StartURL.exe () -> hxxp://go.acer.com/?id=13400&model=Aspire ES1-311 <==== ACHTUNG HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [Advanced SystemCare 8] => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2429728 2015-04-08] (IObit) ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => Keine Datei ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => Keine Datei ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => Keine Datei R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [821024 2015-08-05] (IObit) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-07-29] (IObit) S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] C:\Program Files\Enigma Software Group C:\Users\Yannick\Downloads\smart-defrag-setup (1).exe C:\Users\Yannick\AppData\Roaming\IObit C:\ProgramData\IObit C:\Program Files (x86)\IObit hosts: emptytemp: ***************** HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}\\SystemComponent => Wert erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{780FB919-C1B4-4E56-9B9C-533BCA857C1C}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{780FB919-C1B4-4E56-9B9C-533BCA857C1C}" => Schlüssel erfolgreich entfernt C:\WINDOWS\System32\Tasks\ASC8_SkipUac_Yannick => erfolgreich verschoben "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASC8_SkipUac_Yannick" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B9848DE3-6948-4043-92C9-F84379D18EB4}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9848DE3-6948-4043-92C9-F84379D18EB4}" => Schlüssel erfolgreich entfernt C:\WINDOWS\System32\Tasks\ASC8_PerformanceMonitor => erfolgreich verschoben "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASC8_PerformanceMonitor" => Schlüssel erfolgreich entfernt C:\Users\Yannick\Desktop\Anderes\Booking.com.lnk => Verknüpfung Eigenschaft erfolgreich entfernt. C:\Users\Yannick\Desktop\Anderes\Dropbox.lnk => Verknüpfung Eigenschaft erfolgreich entfernt. C:\Users\Yannick\Desktop\Anderes\Online kaufen.lnk => Verknüpfung Eigenschaft erfolgreich entfernt. HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Advanced SystemCare 8 => Wert erfolgreich entfernt "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtPending" => Schlüssel erfolgreich entfernt HKCR\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C} => Schlüssel nicht gefunden. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSynced" => Schlüssel erfolgreich entfernt HKCR\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202} => Schlüssel nicht gefunden. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSyncing" => Schlüssel erfolgreich entfernt HKCR\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637} => Schlüssel nicht gefunden. "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtPending" => Schlüssel erfolgreich entfernt "HKCR\Wow6432Node\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C}" => Schlüssel erfolgreich entfernt "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSynced" => Schlüssel erfolgreich entfernt "HKCR\Wow6432Node\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202}" => Schlüssel erfolgreich entfernt "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSyncing" => Schlüssel erfolgreich entfernt "HKCR\Wow6432Node\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637}" => Schlüssel erfolgreich entfernt AdvancedSystemCareService8 => Dienst konnte nicht gestoppt werden. AdvancedSystemCareService8 => Dienst erfolgreich entfernt LiveUpdateSvc => Dienst konnte nicht gestoppt werden. LiveUpdateSvc => Dienst erfolgreich entfernt esgiguard => Dienst erfolgreich entfernt C:\Program Files\Enigma Software Group => erfolgreich verschoben C:\Users\Yannick\Downloads\smart-defrag-setup (1).exe => erfolgreich verschoben C:\Users\Yannick\AppData\Roaming\IObit => erfolgreich verschoben "C:\ProgramData\IObit" Ordner verschieben: Konnte nicht verschoben werden "C:\ProgramData\IObit" => ist geplant bei Neustart verschoben zu werden. C:\Program Files (x86)\IObit => erfolgreich verschoben C:\Windows\System32\Drivers\etc\hosts => erfolgreich verschoben Hosts erfolgreich wiederhergestellt. EmptyTemp: => 509.2 MB temporäre Dateien entfernt. Ergebnis der geplanten Datei-Verschiebungen (Start-Modus: Normal) (Datum&Uhrzeit: 2015-12-05 04:37:59) C:\ProgramData\IObit => ist erfolgreich verschoben ==== Ende von Fixlog 04:37:59 ==== |
05.12.2015, 22:21 | #49 |
/// Winkelfunktion /// TB-Süch-Tiger™ | CinePlus-meine Browser(Firefox, Chrome und Microsoft Edge) öffnen wenn sie geschlossen sind Pop-Up-Fenster [gelöst] Bitte neue FRST Logs erstellen und posten
__________________ Logfiles bitte immer in CODE-Tags posten |
06.12.2015, 14:27 | #50 |
| CinePlus-meine Browser(Firefox, Chrome und Microsoft Edge) öffnen wenn sie geschlossen sind Pop-Up-Fenster [gelöst] das ist ein neues |
06.12.2015, 14:37 | #51 |
/// Winkelfunktion /// TB-Süch-Tiger™ | CinePlus-meine Browser(Firefox, Chrome und Microsoft Edge) öffnen wenn sie geschlossen sind Pop-Up-Fenster [gelöst] Wo soll was neues sein? Da sind keine neuen Logs nach Fix.
__________________ --> CinePlus-meine Browser(Firefox, Chrome und Microsoft Edge) öffnen wenn sie geschlossen sind Pop-Up-Fenster |
06.12.2015, 17:38 | #52 |
| CinePlus-meine Browser(Firefox, Chrome und Microsoft Edge) öffnen wenn sie geschlossen sind Pop-Up-Fenster [gelöst]Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-12-2015 durchgeführt von Yannick (Administrator) auf YANNICK (06-12-2015 17:30:57) Gestartet von C:\Users\Yannick\Desktop Geladene Profile: Yannick (Verfügbare Profile: Yannick) Platform: Windows 10 Home (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Edge) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfemms.exe (McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (AVG Technologies) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (AVG Technologies) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel Corporation) C:\Windows\System32\igfxTray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Spotify Ltd) C:\Users\Yannick\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIIVE.EXE (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.226\SSScheduler.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe (FK2) C:\Windows\SysWOW64\svchospt.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.bin (Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.3.0.0\Lightshot.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\CSP\1.6.1180.0\McCSPServiceHost.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe () C:\Program Files (x86)\Steam\steamapps\common\Clicker Heroes\Clicker Heroes.exe (Valve Corporation) C:\Program Files (x86)\Steam\GameOverlayUI.exe () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe (Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe (Microsoft Corporation) C:\Windows\HelpPane.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16407296 2015-10-20] (Realtek Semiconductor) HKLM-x32\...\Run: [svchospt] => C:\WINDOWS\SysWOW64\svchospt.exe [913408 2014-05-03] (FK2) HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226560 2014-10-16] () HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [Spotify Web Helper] => C:\Users\Yannick\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2344768 2015-11-23] (Spotify Ltd) HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [Spotify] => C:\Users\Yannick\AppData\Roaming\Spotify\Spotify.exe [8281920 2015-11-23] (Spotify Ltd) HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3011152 2015-11-10] (Valve Corporation) HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8551848 2015-10-19] (Piriform Ltd) HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIIVE.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\...\RunOnce: [Uninstall C:\Users\Yannick\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Yannick\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64" HKU\S-1-5-18\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIIVE.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION) ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-08-13] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-08-13] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-08-13] (Acer Incorporated) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2015-11-13] ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.226\SSScheduler.exe (McAfee, Inc.) Startup: C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LibreOffice 4.4.lnk [2015-11-05] ShortcutTarget: LibreOffice 4.4.lnk -> C:\Program Files (x86)\LibreOffice 4\program\quickstart.exe () ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.123.1 192.168.123.1 Tcpip\..\Interfaces\{7e0bb9d6-1a43-41f9-824a-f02fdf8aa2a2}: [DhcpNameServer] 192.168.123.1 192.168.123.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKLM -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} SearchScopes: HKU\S-1-5-21-3730779119-3456577941-3398900789-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms} SearchScopes: HKU\S-1-5-21-3730779119-3456577941-3398900789-1001 -> {0253AFB1-2C35-49D5-93CC-5C76222F903E} URL = hxxps://de.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default SearchScopes: HKU\S-1-5-21-3730779119-3456577941-3398900789-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms} BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation) BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-10-28] (Oracle Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-10-28] (Oracle Corporation) Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-12-02] (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-12-02] (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-12-02] (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-12-02] (McAfee, Inc.) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2015-09-28] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2015-09-28] (McAfee, Inc.) FireFox: ======== FF ProfilePath: C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default FF SearchEngineOrder.3: Bing FF Keyword.URL: hxxp://www.bing.com/search?FORM=SK2MDF&PC=SK2M&q= FF SelectedSearchEngine: Google FF DefaultSearchEngine: Google FF Homepage: hxxp://homepage-web.com/?s=acer&m=start FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll [2015-10-22] () FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-09-28] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll [2015-10-22] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-10-28] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-10-28] (Oracle Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-09-28] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2015-08-13] () FF Plugin HKU\S-1-5-21-3730779119-3456577941-3398900789-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Yannick\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-28] (Unity Technologies ApS) FF SearchPlugin: C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\searchplugins\bing-.xml [2015-09-17] FF SearchPlugin: C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\searchplugins\McSiteAdvisor.xml [2015-09-17] FF Extension: Kein Name - C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\extensions\defsearchp@gmail.com [nicht gefunden] FF Extension: Kein Name - C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\extensions\deskCutv2@gmail.com [nicht gefunden] FF Extension: McAfee WebAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2015-11-23] FF Extension: Bing Search - C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\Extensions\bingsearch.full@microsoft.com [2015-09-05] [ist nicht signiert] FF Extension: sidebar - C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\Extensions\sidebarff@gmail.com [2015-11-06] [ist nicht signiert] FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-10-08] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF HKLM-x32\...\Firefox\Extensions: [sidebarff@gmail.com] - C:\Users\Yannick\AppData\Roaming\Mozilla\Firefox\Profiles\xgh6m75j.default\extensions\sidebarff@gmail.com FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on FF Extension: E-Web Print - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2015-11-20] [ist nicht signiert] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2015-10-28] [ist nicht signiert] Chrome: ======= CHR HomePage: Default -> hxxp://www.oursurfing.com/?type=hp&ts=1441987333&z=392d660112101f6c361c32eg5z2z1get7b6mbc6c1c&from=amt&uid=ST500LT012-1DG142_S3PJZE4YXXXXS3PJZE4Y CHR StartupUrls: Default -> "hxxp://www.oursurfing.com/?type=hp&ts=1441987333&z=392d660112101f6c361c32eg5z2z1get7b6mbc6c1c&from=amt&uid=ST500LT012-1DG142_S3PJZE4YXXXXS3PJZE4Y","hxxps://www.google.de/","hxxps://www.google.de/" CHR DefaultSearchURL: Default -> hxxp://www.mystartsearch.com/web/?type=ds&ts=1446756042&z=2d8d42aec49c3e23580076fgbz7zfqam7w7w9mdqbt&from=cmi&uid=ST500LT012-1DG142_S3PJZE4YXXXXS3PJZE4Y&q={searchTerms} CHR DefaultSearchKeyword: Default -> mystartsearch CHR Profile: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-05] CHR Extension: (Google Docs) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-05] CHR Extension: (Google Drive) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-28] CHR Extension: (YouTube) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-27] CHR Extension: (Google-Suche) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28] CHR Extension: (Google Tabellen) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-05] CHR Extension: (SiteAdvisor) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-09-05] CHR Extension: (Widthie) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\gegdfeiahlfolhcfioipjlkombmgbakh [2015-12-05] CHR Extension: (Google Text & Tabellen Offline) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-05] CHR Extension: (Shortcuts for All Google™) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdiejbegdjikmehflknhkbieocmnogcf [2015-11-07] CHR Extension: (kcnhkahnjcbndmmehfkdnkjomaanaooo) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcnhkahnjcbndmmehfkdnkjomaanaooo [2015-11-07] CHR Extension: (Skype Click to Call) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-10-28] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-05] CHR Extension: (Google Mail) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-05] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-12-03] CHR HKLM\...\Chrome\Extension: [jdiejbegdjikmehflknhkbieocmnogcf] - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdiejbegdjikmehflknhkbieocmnogcf.crx [2015-11-06] CHR HKU\S-1-5-21-3730779119-3456577941-3398900789-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-12-03] CHR HKLM-x32\...\Chrome\Extension: [jdiejbegdjikmehflknhkbieocmnogcf] - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdiejbegdjikmehflknhkbieocmnogcf.crx [2015-11-06] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12] CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation) S3 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2858336 2015-07-23] (Acer Incorporated) S3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-07-22] (Acer Incorporated) S3 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [349728 2015-08-13] (WildTangent) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [328624 2015-10-20] (Intel Corporation) S3 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel(R) Corporation) S3 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [455912 2014-12-30] (Acer Incorporate) R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [157928 2015-12-02] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [783120 2015-09-28] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-29] (McAfee, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.226\McCHSvc.exe [289256 2015-10-30] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.6.1180.0\McCSPServiceHost.exe [1694152 2015-09-01] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [639456 2015-08-11] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) S2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232656 2015-07-31] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [376264 2015-08-10] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [254792 2015-07-31] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368584 2015-09-01] (McAfee, Inc.) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1006320 2015-08-19] (Overwolf LTD) S3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-10-17] (Acer Incorporate) S3 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] () S3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-10-17] (Acer Incorporate) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2973400 2015-08-04] (AVG Technologies) R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [234240 2014-07-15] (acer) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) S2 0188301449097894mcinstcleanup; C:\WINDOWS\TEMP\018830~1.EXE -cleanup -nolog [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 athr; C:\Windows\System32\drivers\athw10x.sys [4322440 2015-11-06] (Qualcomm Atheros Communications, Inc.) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [80768 2015-08-10] (McAfee, Inc.) R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [51128 2015-10-02] (Intel Corporation) S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2015-08-06] (LogMeIn Inc.) R3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [207208 2015-05-19] (McAfee, Inc.) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-09-25] (REALiX(tm)) S3 iaioi2c; C:\Windows\System32\drivers\iaioi2ce.sys [69632 2014-06-09] (Intel Corporation) R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated) S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2015-11-22] (Malwarebytes) R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [413432 2015-08-10] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [349096 2015-08-10] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [82072 2015-08-10] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [495856 2015-08-10] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [839376 2015-08-10] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [537408 2015-08-12] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [111256 2015-08-12] (McAfee, Inc.) R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [37960 2015-12-02] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [244024 2015-08-10] (McAfee, Inc.) R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [888064 2015-10-02] (Realtek ) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [752856 2015-09-25] (Realsil Semiconductor Corporation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33960 2015-10-20] (Synaptics Incorporated) S3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [56520 2015-09-09] (Synaptics Incorporated) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [31144 2015-07-23] (TuneUp Software) R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [146232 2015-10-02] (Intel Corporation) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) R3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-12-06 16:21 - 2015-12-06 16:21 - 00016148 _____ C:\WINDOWS\system32\YANNICK_Yannick_HistoryPrediction.bin 2015-12-06 14:25 - 2015-12-06 14:25 - 00000000 _____ C:\Users\Yannick\Downloads\banner.txt 2015-12-05 21:14 - 2015-12-05 21:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2015-12-05 14:52 - 2015-12-05 14:52 - 00381720 _____ (COZGT) C:\Users\Yannick\Downloads\Pokemon Emerald.exe 2015-12-05 14:43 - 2015-12-05 14:43 - 00959992 _____ (Generic Internet Soft ) C:\Users\Yannick\Downloads\Java_Update.exe 2015-12-05 14:41 - 2015-12-05 14:41 - 00173810 _____ C:\Users\Yannick\Downloads\pokemon-emerald-ms.jse 2015-12-05 14:35 - 2015-12-05 14:37 - 00095603 _____ C:\Users\Yannick\Downloads\tsukuyomi_v01.zip 2015-12-05 14:04 - 2015-12-05 14:04 - 00381720 _____ (BLVOY) C:\Users\Yannick\Downloads\Pokemon Crystal.exe 2015-12-05 04:33 - 2015-12-05 04:33 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\IObit 2015-12-04 22:22 - 2015-12-04 22:24 - 01466656 _____ C:\Users\Yannick\Downloads\VisualBoyAdvance - CHIP-Installer.exe 2015-12-04 01:04 - 2015-12-04 01:04 - 00009398 _____ C:\Users\Yannick\Documents\Unbenannt 1.odt 2015-12-04 01:04 - 2015-12-04 01:04 - 00002678 _____ C:\Users\Yannick\Documents\Mein Film.wlmp 2015-12-02 22:05 - 2015-12-02 22:05 - 02037952 _____ C:\Users\Yannick\Desktop\Plattentektonik.mp4 2015-12-02 21:15 - 2015-12-02 21:15 - 00001382 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk 2015-12-02 21:15 - 2015-12-02 21:15 - 00000000 ____D C:\WINDOWS\de 2015-12-02 21:14 - 2015-12-02 21:14 - 00001451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk 2015-12-02 21:14 - 2015-12-02 21:14 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2015-12-02 21:12 - 2015-12-02 21:12 - 00000000 ____D C:\WINDOWS\PCHEALTH 2015-12-02 21:11 - 2015-12-02 21:14 - 00000000 ____D C:\Program Files (x86)\Windows Live 2015-12-02 21:00 - 2015-12-02 21:17 - 00000000 ____D C:\Users\Yannick\AppData\Local\Windows Live 2015-12-02 20:59 - 2015-12-02 21:00 - 01245384 _____ (Microsoft Corporation) C:\Users\Yannick\Downloads\wlsetup-web.exe 2015-12-01 18:20 - 2015-12-01 18:30 - 00000000 ____D C:\Users\Yannick\Desktop\Rechnungen 2015-11-29 21:52 - 2015-11-29 21:52 - 00394754 _____ C:\Users\Yannick\Downloads\soundboard-1.0b5-win64.ts3_plugin 2015-11-29 21:35 - 2015-12-03 22:50 - 00000167 _____ C:\Users\Yannick\Documents\ClownfishForTeamspeak.ini 2015-11-29 21:33 - 2015-11-29 21:33 - 00237268 _____ C:\Users\Yannick\Downloads\ClownfishVoiceChanger-v1.50.ts3_plugin 2015-11-29 21:30 - 2015-11-29 21:30 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Rapid Solution Software AG 2015-11-29 21:29 - 2015-11-29 21:29 - 01466656 _____ C:\Users\Yannick\Downloads\Scramby - CHIP-Installer.exe 2015-11-29 21:24 - 2015-11-29 21:24 - 01466656 _____ C:\Users\Yannick\Downloads\FunnyVoice - CHIP-Installer.exe 2015-11-24 22:29 - 2015-11-24 22:29 - 00000144 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-11-23 22:44 - 2015-11-23 22:44 - 00001599 _____ C:\Users\Yannick\Desktop\MouseRecorder.exe - Shortcut.lnk 2015-11-23 22:39 - 2015-11-24 06:11 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Mouse Recorder 2015-11-23 22:39 - 2015-11-23 22:39 - 00000000 ____D C:\ProgramData\MouseRecorder 2015-11-23 22:39 - 2015-11-23 22:39 - 00000000 ____D C:\ProgramData\Mouse Recorder 2015-11-23 22:39 - 2015-11-23 22:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MouseRecorder 2015-11-23 22:39 - 2015-11-23 22:39 - 00000000 ____D C:\Program Files (x86)\MouseRecorder 2015-11-23 22:37 - 2015-11-23 22:37 - 01466656 _____ C:\Users\Yannick\Downloads\Mouse Recorder Premium - CHIP-Installer.exe 2015-11-20 23:18 - 2015-11-20 23:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Mouse and Keyboard Recorder 2015-11-20 23:18 - 2015-11-20 23:18 - 00000000 ____D C:\Program Files (x86)\RobotSoft 2015-11-20 23:16 - 2015-11-20 23:16 - 01466656 _____ C:\Users\Yannick\Downloads\Free Mouse and Keyboard Recorder - CHIP-Installer.exe 2015-11-20 21:57 - 2015-11-20 21:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReMouse Standard 2015-11-20 21:57 - 2015-11-20 21:57 - 00000000 ____D C:\Program Files (x86)\ReMouse Standard 2015-11-20 21:56 - 2015-11-20 21:56 - 01162728 _____ (AutomaticSolution Software ) C:\Users\Yannick\Downloads\ReMouseStandard-Setup.exe 2015-11-20 21:33 - 2015-11-20 21:57 - 00000000 ____D C:\Users\Yannick\Documents\AutomaticSolution Software 2015-11-20 21:33 - 2015-11-20 21:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GhostMouse 2015-11-20 21:33 - 2015-11-20 21:33 - 00000000 ____D C:\Program Files (x86)\GhostMouse 2015-11-20 21:32 - 2015-11-20 21:33 - 00842440 _____ (ghost-mouse.com ) C:\Users\Yannick\Downloads\GhostMouse-Setup.exe 2015-11-20 19:57 - 2015-11-20 21:36 - 00000000 ____D C:\Program Files (x86)\EPSON Software 2015-11-20 19:57 - 2015-11-20 19:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software 2015-11-17 16:28 - 2015-12-06 17:30 - 00000000 ____D C:\Users\Yannick\Desktop\FRST-OlderVersion 2015-11-17 16:28 - 2015-12-05 04:37 - 00006858 _____ C:\Users\Yannick\Desktop\Fixlog.txt 2015-11-15 21:30 - 2015-11-15 21:30 - 00000000 ____D C:\Users\Yannick\Desktop\runtime 2015-11-15 21:13 - 2015-12-05 19:03 - 00001085 _____ C:\Users\Yannick\Desktop\nativelog.txt 2015-11-15 21:13 - 2015-11-15 22:27 - 00000000 ____D C:\Users\Yannick\Desktop\game 2015-11-15 20:46 - 2015-11-15 20:46 - 00332835 _____ C:\Users\Yannick\Desktop\Unbenannt 1.odt 2015-11-15 20:36 - 2015-11-15 22:20 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2015-11-15 20:34 - 2015-11-15 22:20 - 00000000 ____D C:\Users\Yannick\Desktop\mbar 2015-11-15 20:33 - 2015-11-15 20:33 - 16563352 _____ (Malwarebytes Corp.) C:\Users\Yannick\Desktop\mbar-1.09.3.1001.exe 2015-11-15 15:08 - 2015-11-15 15:08 - 00002922 _____ C:\WINDOWS\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 2015-11-15 14:49 - 2015-11-15 14:49 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\ProductData 2015-11-15 14:49 - 2015-11-15 14:49 - 00000000 ____D C:\ProgramData\ProductData 2015-11-15 04:55 - 2015-11-15 04:55 - 00000000 ___HD C:\$WINDOWS.~BT 2015-11-15 00:16 - 2015-10-05 23:26 - 01801288 _____ (Malwarebytes) C:\Users\Yannick\Desktop\JRT.exe 2015-11-15 00:15 - 2015-11-15 00:16 - 01798976 _____ (Malwarebytes) C:\Users\Yannick\Desktop\JRT (1).exe 2015-11-15 00:03 - 2015-11-15 00:04 - 01798976 _____ (Malwarebytes) C:\Users\Yannick\Downloads\JRT.exe 2015-11-13 06:38 - 2015-11-13 06:38 - 00001983 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2015-11-13 06:38 - 2015-11-13 06:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus 2015-11-13 06:38 - 2015-11-13 06:38 - 00000000 ____D C:\Program Files\McAfee Security Scan 2015-11-12 16:05 - 2015-11-27 00:33 - 00000000 ____D C:\Users\Yannick\Desktop\data 2015-11-12 16:04 - 2015-11-12 16:04 - 00889478 _____ C:\Users\Yannick\Downloads\Golem.exe.zip 2015-11-10 22:33 - 2015-11-05 06:15 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-11-10 22:33 - 2015-11-05 06:15 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll 2015-11-10 22:33 - 2015-11-05 06:14 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2015-11-10 22:33 - 2015-11-05 06:13 - 00577888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2015-11-10 22:33 - 2015-11-05 06:11 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-11-10 22:33 - 2015-11-05 06:06 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-11-10 22:33 - 2015-11-05 06:06 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2015-11-10 22:33 - 2015-11-05 06:01 - 00607408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2015-11-10 22:33 - 2015-11-05 05:56 - 01083072 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2015-11-10 22:33 - 2015-11-05 05:56 - 00116064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys 2015-11-10 22:33 - 2015-11-05 05:56 - 00025280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2015-11-10 22:33 - 2015-11-05 05:30 - 00961376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-11-10 22:33 - 2015-11-05 05:24 - 02878512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-11-10 22:33 - 2015-11-05 05:23 - 00762888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2015-11-10 22:33 - 2015-11-05 05:23 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2015-11-10 22:33 - 2015-11-05 05:20 - 21873664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-11-10 22:33 - 2015-11-05 05:18 - 24597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-11-10 22:33 - 2015-11-05 05:18 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2015-11-10 22:33 - 2015-11-05 05:18 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-11-10 22:33 - 2015-11-05 05:17 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-11-10 22:33 - 2015-11-05 05:12 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll 2015-11-10 22:33 - 2015-11-05 05:11 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2015-11-10 22:33 - 2015-11-05 05:10 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-11-10 22:33 - 2015-11-05 05:10 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2015-11-10 22:33 - 2015-11-05 05:07 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-11-10 22:33 - 2015-11-05 05:06 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2015-11-10 22:33 - 2015-11-05 05:05 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-11-10 22:33 - 2015-11-05 05:05 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-11-10 22:33 - 2015-11-05 05:03 - 02180608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-11-10 22:33 - 2015-11-05 05:03 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2015-11-10 22:33 - 2015-11-05 05:01 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2015-11-10 22:33 - 2015-11-05 05:01 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2015-11-10 22:33 - 2015-11-05 05:01 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2015-11-10 22:33 - 2015-11-05 04:59 - 03587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-11-10 22:33 - 2015-11-05 04:59 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2015-11-10 22:33 - 2015-11-05 04:58 - 01383936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-11-10 22:33 - 2015-11-05 04:58 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2015-11-10 22:33 - 2015-11-05 04:56 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-11-10 22:33 - 2015-11-05 04:55 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2015-11-10 22:33 - 2015-11-05 04:54 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll 2015-11-10 22:33 - 2015-11-05 04:47 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-11-10 22:33 - 2015-11-05 04:42 - 02647040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2015-11-10 22:33 - 2015-11-05 04:40 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-11-10 22:33 - 2015-11-05 04:35 - 18803712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-11-10 22:33 - 2015-11-05 04:35 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2015-11-10 22:33 - 2015-11-05 04:34 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2015-11-10 22:33 - 2015-11-05 04:33 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-11-10 22:33 - 2015-11-05 04:33 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-11-10 22:33 - 2015-11-05 04:30 - 00767488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2015-11-10 22:33 - 2015-11-05 04:28 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-11-10 22:33 - 2015-11-05 04:27 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2015-11-10 22:33 - 2015-11-05 04:27 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2015-11-10 22:33 - 2015-11-05 04:23 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll 2015-11-10 18:14 - 2015-11-10 18:14 - 00001299 _____ C:\Users\Yannick\Desktop\mbam1.txt 2015-11-09 21:35 - 2015-11-24 13:05 - 00000000 ____D C:\Users\Yannick\Desktop\DO krieg 2015-11-09 21:34 - 2015-11-09 21:34 - 00001762 _____ C:\Users\Yannick\Desktop\Lightshot.lnk 2015-11-08 23:24 - 2015-11-08 23:24 - 00001939 _____ C:\Users\Yannick\Desktop\Battle for Wesnoth.lnk 2015-11-08 23:23 - 2015-11-08 23:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle for Wesnoth 1.12.4 2015-11-08 23:19 - 2015-11-08 23:22 - 00000000 ____D C:\Program Files (x86)\Battle for Wesnoth 1.12.4 2015-11-08 23:07 - 2015-11-08 23:18 - 357105928 _____ C:\Users\Yannick\Downloads\wesnoth-1.12.4a-win32.exe 2015-11-08 20:43 - 2015-11-08 20:43 - 00042213 _____ C:\Users\Yannick\Desktop\AdwCleaner[C1].txt 2015-11-08 20:27 - 2015-11-08 20:30 - 00000000 ____D C:\AdwCleaner 2015-11-08 20:24 - 2015-11-08 20:25 - 01712128 _____ C:\Users\Yannick\Desktop\adwcleaner_5.019.exe 2015-11-08 20:22 - 2015-11-12 15:54 - 00025232 _____ C:\Users\Yannick\Desktop\mbam.txt 2015-11-08 18:54 - 2015-11-08 18:54 - 00001224 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-11-08 18:49 - 2015-11-22 18:37 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-11-08 18:27 - 2015-11-15 20:35 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-11-08 18:27 - 2015-11-08 18:27 - 00001179 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-11-08 18:27 - 2015-11-08 18:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-11-08 18:27 - 2015-11-08 18:27 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-11-08 18:27 - 2015-11-08 18:27 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-11-08 18:27 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-11-08 18:27 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2015-11-08 18:25 - 2015-11-08 18:53 - 42996768 _____ C:\Users\Yannick\Downloads\Firefox Setup 42.0.exe 2015-11-08 18:23 - 2015-11-08 18:27 - 22908888 _____ (Malwarebytes ) C:\Users\Yannick\Downloads\mbam-setup-2.2.0.1024.exe 2015-11-08 18:04 - 2015-11-08 18:05 - 07942416 _____ (IObit ) C:\Users\Yannick\Downloads\smart-defrag-setup.exe 2015-11-08 17:27 - 2015-11-08 17:27 - 00001345 _____ C:\Users\Yannick\Desktop\Revo Uninstaller.lnk 2015-11-08 17:27 - 2015-11-08 17:27 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2015-11-08 17:27 - 2015-11-08 17:27 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2015-11-08 17:24 - 2015-11-08 17:26 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Yannick\Downloads\revosetup95.exe 2015-11-08 10:31 - 2015-12-05 00:55 - 00050059 _____ C:\Users\Yannick\Desktop\Addition.txt 2015-11-08 10:28 - 2015-12-06 17:30 - 00027943 _____ C:\Users\Yannick\Desktop\FRST.txt 2015-11-08 10:27 - 2015-12-06 17:30 - 02369024 _____ (Farbar) C:\Users\Yannick\Desktop\FRST64.exe 2015-11-08 10:27 - 2015-12-06 17:30 - 00000000 ____D C:\FRST 2015-11-08 10:26 - 2015-11-08 10:26 - 02198528 _____ (Farbar) C:\Users\Yannick\Downloads\FRST64.exe 2015-11-07 22:45 - 2015-11-07 22:45 - 00000000 ____D C:\Program Files (x86)\55688db6-684b-430d-9112-c6e18ce39df6 2015-11-07 22:17 - 2015-11-15 17:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3 2015-11-07 22:15 - 2015-11-07 22:15 - 00000000 ____D C:\Users\Yannick\AppData\Local\Total Extension 2015-11-07 18:57 - 2015-11-07 18:57 - 01674929 _____ (TeamExtreme) C:\Users\Yannick\Downloads\Minecraft Cracked Launcher (1).jar 2015-11-07 18:08 - 2015-11-07 18:08 - 00772016 _____ (Reimage®) C:\Users\Yannick\Downloads\ReimageRepair (1).exe 2015-11-06 15:57 - 2015-11-06 15:57 - 00003360 _____ C:\WINDOWS\System32\Tasks\{13DCFC6A-D935-423C-90A8-3EE378220E6A} 2015-11-06 15:52 - 2015-11-08 17:48 - 00000000 ____D C:\Users\Yannick\AppData\Local\Mart Download ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-12-06 17:21 - 2015-09-05 16:31 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Skype 2015-12-06 17:18 - 2015-09-05 15:46 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\TS3Client 2015-12-06 16:52 - 2015-09-05 15:33 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-12-06 13:21 - 2015-09-05 15:29 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Spotify 2015-12-06 13:21 - 2015-09-05 15:29 - 00000000 ____D C:\Users\Yannick\AppData\Local\Spotify 2015-12-06 13:19 - 2015-09-05 15:31 - 00004160 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{58127AFD-D2A0-495B-962C-C711DD258B8B} 2015-12-06 04:52 - 2015-09-05 15:33 - 00001130 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-12-06 00:06 - 2015-09-10 18:03 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\vlc 2015-12-05 21:10 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2015-12-05 20:57 - 2015-09-10 18:10 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\dvdcss 2015-12-05 19:03 - 2015-09-05 15:42 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\.minecraft 2015-12-05 04:47 - 2015-09-05 15:33 - 00004192 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-12-05 04:47 - 2015-09-05 15:33 - 00003960 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-12-05 04:41 - 2015-10-02 20:56 - 00000000 ____D C:\Program Files (x86)\Steam 2015-12-05 04:37 - 2015-09-05 15:16 - 00000000 __SHD C:\Users\Yannick\IntelGraphicsProfiles 2015-12-05 04:37 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-12-05 04:37 - 2015-07-10 10:05 - 00000000 ____D C:\Windows 2015-12-05 04:36 - 2015-09-08 22:37 - 00000000 ____D C:\Users\Yannick 2015-12-05 04:36 - 2015-07-10 10:05 - 01048576 ___SH C:\WINDOWS\system32\config\BBI 2015-12-05 04:27 - 2015-11-05 22:51 - 00000000 ____D C:\Users\Yannick\Desktop\Anderes 2015-12-04 21:06 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps 2015-12-04 21:06 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-12-03 23:35 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-12-03 00:10 - 2014-08-29 13:48 - 00000000 ____D C:\Program Files (x86)\McAfee 2015-12-02 21:29 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF 2015-12-02 21:12 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-12-01 18:38 - 2015-09-08 22:55 - 01790124 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-12-01 18:38 - 2015-07-10 17:34 - 00772342 _____ C:\WINDOWS\system32\perfh007.dat 2015-12-01 18:38 - 2015-07-10 17:34 - 00154170 _____ C:\WINDOWS\system32\perfc007.dat 2015-12-01 18:21 - 2015-09-10 16:03 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\Foxit Software 2015-12-01 15:51 - 2015-09-05 15:16 - 00000000 ____D C:\Users\Yannick\AppData\Local\VirtualStore 2015-11-27 18:43 - 2015-10-11 16:10 - 00000000 ____D C:\Users\Yannick\AppData\Roaming\.technic 2015-11-24 22:06 - 2015-09-05 15:46 - 00000000 ____D C:\Users\Yannick\AppData\Local\Overwolf 2015-11-20 21:35 - 2015-09-06 16:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2015-11-18 18:59 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache 2015-11-17 16:29 - 2015-09-10 21:15 - 00000000 ____D C:\Users\Yannick\AppData\LocalLow\Temp 2015-11-15 05:16 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-11-15 05:03 - 2015-09-08 23:26 - 00000000 ___DC C:\WINDOWS\Panther 2015-11-13 07:08 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-11-13 07:04 - 2015-09-05 20:15 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-11-10 22:46 - 2015-07-10 17:35 - 00000000 ____D C:\WINDOWS\SKB 2015-11-10 22:45 - 2015-10-06 17:31 - 00000000 ____D C:\Program Files (x86)\Audacity 2015-11-09 21:37 - 2015-11-05 22:48 - 00000000 ____D C:\Users\Yannick\Desktop\Spiele 2015-11-09 17:30 - 2015-09-05 15:16 - 00000000 ____D C:\Users\Yannick\AppData\Local\Packages 2015-11-08 23:24 - 2015-09-16 18:13 - 00000000 ____D C:\Users\Yannick\Documents\My Games 2015-11-08 22:59 - 2015-09-05 21:56 - 00000000 __RHD C:\Users\Public\AccountPictures 2015-11-08 21:15 - 2015-09-08 17:37 - 00000000 ____D C:\Users\Yannick\AppData\Local\ElevatedDiagnostics 2015-11-08 20:30 - 2015-09-05 15:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-11-08 20:10 - 2015-09-05 16:22 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-11-08 18:54 - 2015-09-18 20:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-11-08 18:54 - 2015-09-05 16:22 - 00001236 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-11-06 23:29 - 2015-07-10 13:20 - 00319616 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-11-06 16:13 - 2015-09-25 17:51 - 04322440 _____ (Qualcomm Atheros Communications, Inc.) C:\WINDOWS\system32\Drivers\athw10x.sys ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-10-31 20:20 - 2015-10-31 20:20 - 0003420 _____ () C:\Users\Yannick\AppData\Local\recently-used.xbel 2015-10-17 21:57 - 2015-10-17 21:57 - 0000003 _____ () C:\Users\Yannick\AppData\Local\updater.log 2015-10-17 21:57 - 2015-10-17 21:57 - 0000424 _____ () C:\Users\Yannick\AppData\Local\UserProducts.xml 2015-09-08 22:32 - 2015-09-08 22:32 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Yannick\AppData\Local\Temp\ICReinstall_Java_Update.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-11-15 04:55 ==================== Ende von FRST.txt ============================ |
06.12.2015, 23:49 | #53 |
/// Winkelfunktion /// TB-Süch-Tiger™ | CinePlus-meine Browser(Firefox, Chrome und Microsoft Edge) öffnen wenn sie geschlossen sind Pop-Up-Fenster [gelöst] Und die neue addition.txt?
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu CinePlus-meine Browser(Firefox, Chrome und Microsoft Edge) öffnen wenn sie geschlossen sind Pop-Up-Fenster |
folder, misleading.fakeav, pup.optional.baidu, pup.optional.checkoffer, pup.optional.chinad, pup.optional.cinemaplus, pup.optional.cineplus, pup.optional.convertad, pup.optional.crossbrowse, pup.optional.crossrider, pup.optional.downloader, pup.optional.eorezo, pup.optional.fastersearch, pup.optional.fastsearch, pup.optional.globalupdate, pup.optional.iqiyivideo, pup.optional.iwebar, pup.optional.maxdriverupdater, pup.optional.mybrowser, pup.optional.nova, pup.optional.objectbrowser, pup.optional.swiftsearch, pup.optional.tuto4pc, pup.optional.vitruvian, pup.optional.webbar |