|
Log-Analyse und Auswertung: Chrome öffnet Tabs mit WerbungWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
09.12.2015, 15:01 | #1 |
| Chrome öffnet Tabs mit Werbung Hi, wie schon im Titel beschrieben öffnet sich manchmal einfach so ein neuer Tab in Chrome (oder Chrome selbst, wenn es davor nicht offen war), in dem Werbung für Ford gemacht wird. AdwCleaner findet nichts. FRST-Log: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:09-12-2015 durchgeführt von Philipp (Administrator) auf PHILIPP-LAPTOP (09-12-2015 14:54:37) Gestartet von C:\Users\Philipp\Downloads Geladene Profile: Philipp (Verfügbare Profile: Philipp) Platform: Windows 7 Professional Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Softex Inc.) C:\Program Files\Lenovo\Fingerprint Manager Pro\OmniServ.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe (DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkUserAgent.exe (Emsisoft Ltd) C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (%CFullName%) C:\Program Files\Lenovo\Fingerprint Manager Pro\opvapp.exe (Intel(R) Corporation) C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CamMute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe (Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe (Tablet Driver) C:\Windows\System32\drivers\WTSrv.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Realtek Semiconductor Corp.) C:\Windows\RtsCM64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Lenovo.) C:\Windows\System32\TpShocks.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Spotify Ltd) C:\Users\Philipp\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Emsisoft Ltd) C:\Program Files (x86)\Emsisoft Anti-Malware\a2guard.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe (Tablet Driver) C:\Windows\SysWOW64\WTClient.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControl.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Lenovo Group Limited) C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.EXE (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\ONENOTE.EXE (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Lenovo) C:\Program Files (x86)\Lenovo\Message Center Plus\MCPLaunch.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Peer Connect\LenovoDiscoverySvc.exe (Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Users\Philipp\Downloads\AdwCleaner_5.024.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtsCM] => C:\Windows\RTSCM64.EXE [168152 2014-09-11] (Realtek Semiconductor Corp.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2859688 2015-02-12] (Synaptics Incorporated) HKLM\...\Run: [TpShocks] => C:\Windows\system32\TpShocks.exe [555760 2014-12-08] (Lenovo.) HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [295664 2014-12-08] (Lenovo Group Limited) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe [1172256 2014-10-10] (Intel Corporation) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296208 2014-12-03] (Intel Corporation) HKLM-x32\...\Run: [PWMTRV] => rundll32 "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL",PwrMgrBkGndMonitor HKLM-x32\...\Run: [emsisoft anti-malware] => c:\program files (x86)\emsisoft anti-malware\a2guard.exe [9135984 2015-11-24] (Emsisoft Ltd) HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [708496 2015-09-23] (Cisco Systems, Inc.) HKLM-x32\...\Run: [WTClient] => C:\Windows\SysWOW64\WTClient.exe [32768 2009-10-30] (Tablet Driver) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2720144 2015-08-09] (Dominik Reichl) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-09] (Oracle Corporation) HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\Run: [GoogleChromeAutoLaunch_5760F31D5B4387C1CCD75B272A389EB7] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [870728 2015-11-07] (Google Inc.) HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3011152 2015-11-10] (Valve Corporation) HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [48138880 2015-10-14] (Skype Technologies S.A.) HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\Run: [Spotify Web Helper] => C:\Users\Philipp\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2030912 2015-10-19] (Spotify Ltd) HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4468056 2015-06-18] (Disc Soft Ltd) HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\Run: [KeePass Password Safe 2] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2720144 2015-08-09] (Dominik Reichl) HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\MountPoints2: {e331b73a-7821-11e5-9152-94659c227724} - F:\Setup.exe HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\MountPoints2: {e9ae6d93-4200-11e5-985a-806e6f6e6963} - Q:\LenovoQDrive.cmd HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\MountPoints2: {f5aca41b-7835-11e5-ab61-54e2779d6590} - G:\_aom.exe ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation) Startup: C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2015-12-09] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{C9BC3BF6-7BFB-42B6-B3A3-51BAB3F8D6F3}: [DhcpNameServer] 192.168.102.1 Tcpip\..\Interfaces\{DC0A55E4-1C5A-459B-920B-EBCF9C9D55FC}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-3842078887-4148898431-862222092-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo13-comm.msn.com/?pc=LNJB HKU\S-1-5-21-3842078887-4148898431-862222092-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com/?pc=LNJB HKU\S-1-5-21-3842078887-4148898431-862222092-1000\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad HKU\S-1-5-21-3842078887-4148898431-862222092-1000\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3842078887-4148898431-862222092-1000 -> DefaultScope {D295484F-CCE9-4CB6-8956-30CF77A8DE81} URL = SearchScopes: HKU\S-1-5-21-3842078887-4148898431-862222092-1000 -> {D295484F-CCE9-4CB6-8956-30CF77A8DE81} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2015-10-13] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll [2015-11-24] (Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2015-10-13] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-24] (Oracle Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll [2015-10-13] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-24] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\URLREDIR.DLL [2015-10-13] (Microsoft Corporation) BHO-x32: Microsoft Web Test Recorder 14.0 Helper -> {b924f0b4-0b3c-49c0-bab2-213fb9ebd1d3} -> C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2015-07-06] (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-24] (Oracle Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-10-06] (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL [2015-10-06] (Microsoft Corporation) FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-11-24] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-11-24] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-10-06] (Microsoft Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-10-10] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-10-10] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-11-24] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-11-24] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-10-06] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL [2015-10-06] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.) Chrome: ======= CHR DefaultSearchURL: Default -> hxxps://keep.google.com/#home CHR Profile: C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-18] CHR Extension: (Google Docs) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-18] CHR Extension: (Google Drive) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21] CHR Extension: (YouTube) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-26] CHR Extension: (Adblock Plus) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-11-25] CHR Extension: (Google-Suche) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27] CHR Extension: (Google Tabellen) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-18] CHR Extension: (Google Docs Offline) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-19] CHR Extension: (Tamper Chrome (extension)) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\hifhgpdkfodlpnlmlnmhchnkepplebkb [2015-09-18] CHR Extension: (Malware Search) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgleioieeffejophokeklefchfglgmnk [2015-09-18] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-18] CHR Extension: (Tamper Chrome (application)) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\odldmflbckacdofpepkdkmkccgdfaemb [2015-09-28] CHR Extension: (Google Mail) - C:\Users\Philipp\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-18] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 a2AntiMalware; C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe [10768560 2015-11-24] (Emsisoft Ltd) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2797752 2015-10-13] (Microsoft Corporation) R2 DirMngr; C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [216576 2015-09-09] () [Datei ist nicht signiert] R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd) R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe [9954096 2014-03-31] (DisplayLink Corp.) S3 DozeSvc; C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE [319536 2014-11-13] (Lenovo.) S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2014-02-19] (Microsoft Corporation) [Datei ist nicht signiert] S2 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [124520 2014-12-24] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [328296 2014-11-25] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) R2 Intel(R) TechnologyAccessService; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [95624 2015-01-23] (Intel(R) Corporation) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [158496 2014-10-10] (Intel Corporation) R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [197360 2014-12-08] (Lenovo Group Limited) R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [115184 2014-07-08] (Lenovo Group Limited) S3 LenovoProdRegManager; C:\Program Files (x86)\Lenovo Registration\EngageService.exe [293416 2015-01-09] (Aviata, Inc.) R2 lnvDiscoveryWinSvc; C:\Program Files\Lenovo\Lenovo Peer Connect\LenovoDiscoverySvc.exe [21552 2014-02-21] (Lenovo) S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272424 2015-08-17] (Lenovo) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2014-12-04] () R2 omniserv; C:\Program Files\Lenovo\Fingerprint Manager Pro\OmniServ.exe [103936 2015-04-02] (Softex Inc.) [Datei ist nicht signiert] S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [38200 2015-08-04] (The OpenVPN Project) S2 QuickControlMasterSvc; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe [61232 2014-12-05] (Lenovo Group Limited) R3 QuickControlService; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe [317224 2014-12-05] (Lenovo Group Limited) S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.) S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [22008 2015-09-10] () S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [Datei ist nicht signiert] R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [49968 2015-01-29] (Synaptics Incorporated) S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [52968 2015-07-06] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WinTabService; C:\Windows\System32\Drivers\WTSRV.EXE [73728 2010-06-01] (Tablet Driver) [Datei ist nicht signiert] R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3820960 2014-12-04] (Intel® Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 btmaux; C:\Windows\System32\DRIVERS\btmaux.sys [141624 2014-10-28] (Motorola Solutions, Inc.) R3 btmhsf; C:\Windows\System32\DRIVERS\btmhsf.sys [1447736 2014-11-24] (Motorola Solutions, Inc.) R3 CypressSerial; C:\Windows\System32\DRIVERS\CypressUsbConsoleWindowsDriver64.sys [98552 2015-10-18] (Cypress Semiconductor.) S3 CYUSB3; C:\Windows\System32\Drivers\CYUSB3.sys [73424 2015-09-08] (Cypress Semiconductor) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-10-21] (Disc Soft Ltd) R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [489752 2014-07-15] (Intel Corporation) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R1 epp; C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\epp.sys [123992 2015-11-12] (Emsisoft Ltd) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [30960 2014-12-08] (Intel Corporation) R3 ibtusb; C:\Windows\System32\DRIVERS\ibtusb.sys [231152 2014-12-24] (Intel Corporation) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [129312 2014-10-10] (Intel Corporation) R1 ndisrd; C:\Windows\System32\DRIVERS\ndisrfl.sys [41176 2014-10-30] (Intel Corporation) R3 NETwNs64; C:\Windows\System32\DRIVERS\Netwsw02.sys [3437848 2014-12-08] (Intel Corporation) R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.) R1 OMNISMI; C:\Windows\SysWOW64\drivers\omnismi.sys [14776 2014-09-26] () R1 OVDCUSBMon; C:\Windows\System32\DRIVERS\OVDCUSBMon.sys [129184 2013-01-15] (Oracle Corporation) R3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [466136 2014-01-14] (Realsil Semiconductor Corporation) R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [2599128 2014-09-11] (Realtek Semiconductor Corp.) S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [11376 2002-10-08] () [Datei ist nicht signiert] R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [32936 2015-02-12] (Synaptics Incorporated) S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation) R3 uvhid; C:\Windows\System32\DRIVERS\uvhid.sys [25592 2015-11-05] (Windows (R) Win 7 DDK provider) S1 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [117768 2015-09-08] (Oracle Corporation) R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [146072 2015-09-08] (Oracle Corporation) S3 vpnva; C:\Windows\System32\DRIVERS\vpnva64-6.sys [52592 2015-07-22] (Cisco Systems, Inc.) S3 Tablet2k; "%SystemRoot%\System32\Drivers\Tablet2k.sys" [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-12-09 14:54 - 2015-12-09 14:54 - 00027563 _____ C:\Users\Philipp\Downloads\FRST.txt 2015-12-09 14:54 - 2015-12-09 14:54 - 00000000 ____D C:\FRST 2015-12-09 14:53 - 2015-12-09 14:54 - 02369024 _____ (Farbar) C:\Users\Philipp\Downloads\FRST64.exe 2015-12-09 14:48 - 2015-12-09 14:48 - 01738240 _____ C:\Users\Philipp\Downloads\AdwCleaner_5.024.exe 2015-12-09 14:47 - 2015-12-09 14:47 - 02785665 _____ (PortableApps.com) C:\Users\Philipp\Downloads\RevoUninstallerPortable_1.95_Rev_2.paf.exe 2015-12-09 14:47 - 2015-12-09 14:47 - 00000000 ____D C:\Users\Philipp\Downloads\RevoUninstallerPortable 2015-12-09 14:30 - 2015-12-09 14:30 - 00000021 _____ C:\Windows\S.dirmngr 2015-12-08 14:46 - 2015-12-08 15:29 - 00000412 _____ C:\Users\Philipp\Desktop\Unbenannt.txt 2015-12-08 12:30 - 2015-12-08 12:30 - 00171014 _____ C:\Users\Philipp\Desktop\blatt07-loesung.zip 2015-12-08 12:30 - 2015-12-08 12:30 - 00000000 ____D C:\Users\Philipp\Desktop\blatt07-loesung 2015-12-07 13:24 - 2015-12-07 13:24 - 00000000 ____D C:\Users\Philipp\AppData\Local\TempTaskUpdateDetectionD9073AF9-8264-4CDB-8D33-16664E967EE6 2015-12-07 12:30 - 2015-12-07 12:34 - 00000000 ____D C:\Users\Philipp\Desktop\9443eccf26-gif-im 2015-12-02 11:10 - 2015-12-02 11:10 - 00000000 ____D C:\Users\Philipp\AppData\Local\TempTaskUpdateDetectionCE5FFBF5-B7DB-43DD-9E7D-F9202C70D605 2015-12-01 15:07 - 2015-12-02 11:47 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2015-11-30 13:22 - 2015-11-30 13:22 - 00000000 ____D C:\Users\Philipp\AppData\Local\TempTaskUpdateDetectionE6AE41A8-336A-4587-903F-5491FB55910C 2015-11-26 14:24 - 2015-11-26 14:24 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_CYUSB3_01011.Wdf 2015-11-26 10:35 - 2015-11-26 10:35 - 16183088 _____ (Microsoft Corporation) C:\Users\Philipp\Downloads\CY8CKIT04942xxSetupOnlyPackage_revSA.exe 2015-11-26 09:32 - 2015-11-26 09:32 - 07932345 _____ C:\Users\Philipp\Downloads\CY8CKIT-049-4xxx_PSoC4_Prototyping_Kit_Guide_001-90711_0G_V.pdf 2015-11-26 09:13 - 2015-11-28 21:27 - 00000000 ____D C:\Users\Philipp\AppData\Local\Cypress Semiconductor 2015-11-26 09:11 - 2015-11-26 09:11 - 00000000 ____D C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cypress 2015-11-26 09:08 - 2015-11-26 09:08 - 00000000 ____D C:\ProgramData\Cypress Semiconductor 2015-11-26 09:07 - 2015-11-26 10:49 - 00000416 _____ C:\Windows\Tasks\CypressUpdateManager.job 2015-11-26 09:07 - 2015-11-26 10:35 - 00000000 ____D C:\Program Files (x86)\Cypress 2015-11-26 09:07 - 2015-11-26 09:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cypress 2015-11-26 09:07 - 2015-11-26 09:07 - 00003272 _____ C:\Windows\System32\Tasks\CypressUpdateManager 2015-11-26 09:04 - 2015-11-26 09:09 - 613368112 _____ (Microsoft Corporation) C:\Users\Philipp\Downloads\PSoCCreatorSetup_3.3_cp1.exe 2015-11-26 09:04 - 2015-11-26 09:05 - 35656496 _____ (Microsoft Corporation) C:\Users\Philipp\Downloads\USBSerialSDKSetup.exe 2015-11-25 17:17 - 2015-11-25 17:18 - 00000000 ____D C:\ProgramData\Unified Remote 2015-11-25 17:17 - 2015-11-25 17:17 - 00000000 ____D C:\Users\Philipp\Documents\Unified Remote 2015-11-25 17:17 - 2015-11-25 17:17 - 00000000 ____D C:\Users\Philipp\AppData\Roaming\Unified Remote 2015-11-25 17:17 - 2015-11-25 17:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unified Remote 3 2015-11-25 17:17 - 2015-11-25 17:17 - 00000000 ____D C:\Program Files (x86)\Unified Remote 3 2015-11-25 17:17 - 2015-11-05 16:46 - 00025592 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\uvhid.sys 2015-11-25 17:17 - 2015-11-05 16:46 - 00007680 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\hidkmdf.sys 2015-11-25 17:15 - 2015-11-25 17:15 - 23553696 _____ (Unified Intents AB ) C:\Users\Philipp\Downloads\ServerSetup-3-3-4-888.exe 2015-11-24 14:19 - 2015-11-24 14:19 - 01733632 _____ C:\Users\Philipp\Downloads\adwcleaner_5.022.exe 2015-11-23 11:13 - 2015-11-23 11:13 - 00000000 ____D C:\Users\Philipp\AppData\Local\TempTaskUpdateDetectionF0A0721C-E45C-4E36-B095-232693FB0CCB 2015-11-18 10:42 - 2015-12-08 14:38 - 00000000 ____D C:\Users\Philipp\AppData\Roaming\.purple 2015-11-18 10:34 - 2015-11-18 10:34 - 00001002 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pidgin.lnk 2015-11-18 10:34 - 2015-11-18 10:34 - 00000000 ____D C:\Program Files (x86)\Pidgin 2015-11-18 10:30 - 2015-11-18 10:32 - 09670472 _____ C:\Users\Philipp\Downloads\pidgin-2.10.11.exe 2015-11-17 13:26 - 2015-11-17 13:26 - 00000000 ____D C:\Users\Philipp\AppData\Local\Tvsukernel 2015-11-17 13:25 - 2015-12-09 14:50 - 00000000 ____D C:\AdwCleaner 2015-11-16 09:34 - 2015-12-09 14:30 - 00000000 ____D C:\Users\Philipp\AppData\Roaming\KeePass 2015-11-16 09:27 - 2015-11-16 09:27 - 03058696 _____ (Dominik Reichl ) C:\Users\Philipp\Downloads\KeePass-2.30-Setup.exe 2015-11-16 09:27 - 2015-11-16 09:27 - 00001128 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk 2015-11-16 09:27 - 2015-11-16 09:27 - 00000000 ____D C:\Program Files (x86)\KeePass Password Safe 2 2015-11-15 10:58 - 2015-12-07 13:32 - 00004446 _____ C:\Users\Philipp\Documents\MyKeys.kdbx 2015-11-15 09:41 - 2015-11-26 16:16 - 00000000 ____D C:\Users\Philipp\AppData\Roaming\gnupg 2015-11-15 09:41 - 2015-11-15 09:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gpg4win 2015-11-15 09:41 - 2015-11-15 09:41 - 00000000 ____D C:\ProgramData\GNU 2015-11-15 09:41 - 2015-11-15 09:41 - 00000000 ____D C:\Program Files (x86)\GNU 2015-11-12 09:59 - 2015-11-12 09:59 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA 2015-11-12 09:59 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2015-11-12 09:59 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2015-11-12 09:59 - 2009-03-16 14:18 - 00069448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2015-11-12 09:59 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2015-11-12 09:59 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2015-11-12 09:59 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2015-11-12 09:59 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2015-11-12 09:59 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2015-11-12 09:59 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2015-11-12 09:59 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2015-11-12 09:59 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2015-11-12 09:59 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2015-11-12 09:59 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2015-11-12 09:59 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2015-11-12 09:59 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2015-11-12 09:59 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2015-11-12 09:59 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2015-11-12 09:59 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2015-11-12 09:59 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2015-11-12 09:59 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2015-11-12 09:59 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2015-11-12 09:59 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2015-11-12 09:59 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2015-11-12 09:59 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2015-11-12 09:59 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2015-11-12 09:59 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2015-11-12 09:59 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2015-11-12 09:59 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2015-11-12 09:59 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2015-11-12 09:59 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2015-11-12 09:59 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2015-11-12 09:59 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2015-11-12 09:59 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2015-11-12 09:59 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2015-11-12 09:59 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2015-11-12 09:59 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2015-11-12 09:59 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2015-11-12 09:59 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2015-11-12 09:59 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2015-11-12 09:59 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2015-11-12 09:59 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2015-11-12 09:59 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2015-11-12 09:59 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2015-11-12 09:59 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2015-11-12 09:59 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2015-11-12 09:59 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2015-11-12 09:59 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2015-11-12 09:59 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2015-11-12 09:59 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2015-11-12 09:59 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2015-11-12 09:59 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2015-11-12 09:59 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2015-11-12 09:59 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2015-11-12 09:59 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2015-11-12 09:59 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2015-11-12 09:59 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2015-11-12 09:49 - 2015-11-12 09:49 - 00000000 ____D C:\Users\Philipp\Desktop\codegolf 2015-11-12 08:57 - 2015-11-03 18:55 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-11-11 11:22 - 2015-11-11 11:22 - 00477676 _____ C:\Users\Philipp\Desktop\Dale-Carnegie-How-to-win-friends-and-influence-people.pdf 2015-11-11 10:39 - 2015-11-03 23:10 - 00390344 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-11-11 10:39 - 2015-11-03 22:51 - 00342728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-11-11 10:39 - 2015-10-31 00:46 - 25818624 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-11-11 10:39 - 2015-10-31 00:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-11-11 10:39 - 2015-10-31 00:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-11-11 10:39 - 2015-10-31 00:25 - 02886656 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-11-11 10:39 - 2015-10-31 00:25 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-11-11 10:39 - 2015-10-31 00:25 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-11-11 10:39 - 2015-10-31 00:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-11-11 10:39 - 2015-10-31 00:24 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-11-11 10:39 - 2015-10-31 00:24 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-11-11 10:39 - 2015-10-31 00:17 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-11-11 10:39 - 2015-10-31 00:16 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-11-11 10:39 - 2015-10-31 00:13 - 00616960 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-11-11 10:39 - 2015-10-31 00:12 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-11-11 10:39 - 2015-10-31 00:12 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-11-11 10:39 - 2015-10-31 00:11 - 05990912 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-11-11 10:39 - 2015-10-31 00:11 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-11-11 10:39 - 2015-10-31 00:11 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-11-11 10:39 - 2015-10-31 00:04 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-11-11 10:39 - 2015-10-31 00:01 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-11-11 10:39 - 2015-10-30 23:58 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-11-11 10:39 - 2015-10-30 23:53 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-11-11 10:39 - 2015-10-30 23:52 - 20331520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-11-11 10:39 - 2015-10-30 23:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-11-11 10:39 - 2015-10-30 23:49 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-11-11 10:39 - 2015-10-30 23:47 - 00504832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-11-11 10:39 - 2015-10-30 23:46 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-11-11 10:39 - 2015-10-30 23:46 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-11-11 10:39 - 2015-10-30 23:45 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-11-11 10:39 - 2015-10-30 23:45 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-11-11 10:39 - 2015-10-30 23:44 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-11-11 10:39 - 2015-10-30 23:44 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-11-11 10:39 - 2015-10-30 23:42 - 02279936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-11-11 10:39 - 2015-10-30 23:39 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-11-11 10:39 - 2015-10-30 23:39 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-11-11 10:39 - 2015-10-30 23:37 - 00480256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-11-11 10:39 - 2015-10-30 23:36 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-11-11 10:39 - 2015-10-30 23:36 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-11-11 10:39 - 2015-10-30 23:36 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-11-11 10:39 - 2015-10-30 23:34 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-11-11 10:39 - 2015-10-30 23:32 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-11-11 10:39 - 2015-10-30 23:31 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-11-11 10:39 - 2015-10-30 23:29 - 02126336 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-11-11 10:39 - 2015-10-30 23:29 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-11-11 10:39 - 2015-10-30 23:28 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-11-11 10:39 - 2015-10-30 23:23 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-11-11 10:39 - 2015-10-30 23:22 - 14457856 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-11-11 10:39 - 2015-10-30 23:21 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-11-11 10:39 - 2015-10-30 23:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-11-11 10:39 - 2015-10-30 23:18 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-11-11 10:39 - 2015-10-30 23:17 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-11-11 10:39 - 2015-10-30 23:17 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2015-11-11 10:39 - 2015-10-30 23:16 - 04527616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-11-11 10:39 - 2015-10-30 23:11 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-11-11 10:39 - 2015-10-30 23:10 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-11-11 10:39 - 2015-10-30 23:09 - 12854272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-11-11 10:39 - 2015-10-30 23:09 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-11-11 10:39 - 2015-10-30 23:09 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-11-11 10:39 - 2015-10-30 23:04 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-11-11 10:39 - 2015-10-30 22:53 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-11-11 10:39 - 2015-10-30 22:51 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-11-11 10:39 - 2015-10-30 22:48 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-11-11 10:39 - 2015-10-30 22:46 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-11-11 10:39 - 2015-10-20 19:42 - 03168768 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-11-11 10:39 - 2015-10-20 19:42 - 02608128 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-11-11 10:39 - 2015-10-20 19:42 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-11-11 10:39 - 2015-10-20 19:42 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-11-11 10:39 - 2015-10-20 19:42 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-11-11 10:39 - 2015-10-20 19:42 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-11-11 10:39 - 2015-10-20 19:42 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-11-11 10:39 - 2015-10-20 19:41 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-11-11 10:39 - 2015-10-20 19:41 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-11-11 10:39 - 2015-10-20 19:41 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-11-11 10:39 - 2015-10-20 19:41 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-11-11 10:39 - 2015-10-20 18:46 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-11-11 10:39 - 2015-10-20 18:46 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-11-11 10:39 - 2015-10-20 18:46 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-11-11 10:39 - 2015-10-20 18:46 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-11-11 10:39 - 2015-10-20 18:45 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-11-11 10:38 - 2015-10-29 18:50 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2015-11-11 10:38 - 2015-10-29 18:50 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll 2015-11-11 10:38 - 2015-10-29 18:50 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe 2015-11-11 10:38 - 2015-10-29 18:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll 2015-11-11 10:38 - 2015-10-29 18:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll 2015-11-11 10:38 - 2015-10-29 18:49 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll 2015-11-11 10:38 - 2015-10-29 18:49 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe 2015-11-11 10:38 - 2015-10-20 02:17 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-11-11 10:38 - 2015-10-20 02:17 - 00706496 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2015-11-11 10:38 - 2015-10-20 02:17 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-11-11 10:38 - 2015-10-20 02:17 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-11-11 10:38 - 2015-10-20 02:14 - 01729984 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-11-11 10:38 - 2015-10-20 02:14 - 00631384 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2015-11-11 10:38 - 2015-10-20 02:12 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2015-11-11 10:38 - 2015-10-20 02:12 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-11-11 10:38 - 2015-10-20 02:12 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-11-11 10:38 - 2015-10-20 02:12 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 01166336 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-11-11 10:38 - 2015-10-20 02:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2015-11-11 10:38 - 2015-10-20 02:11 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-11-11 10:38 - 2015-10-20 02:11 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-11-11 10:38 - 2015-10-20 02:10 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-11-11 10:38 - 2015-10-20 02:10 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2015-11-11 10:38 - 2015-10-20 02:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-11-11 10:38 - 2015-10-20 02:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-11-11 10:38 - 2015-10-20 02:10 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2015-11-11 10:38 - 2015-10-20 02:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-11-11 10:38 - 2015-10-20 02:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 02:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:54 - 03996608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2015-11-11 10:38 - 2015-10-20 01:54 - 03940800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2015-11-11 10:38 - 2015-10-20 01:50 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-11-11 10:38 - 2015-10-20 01:47 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-11-11 10:38 - 2015-10-20 01:46 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-11-11 10:38 - 2015-10-20 01:46 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-11-11 10:38 - 2015-10-20 01:45 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-11-11 10:38 - 2015-10-20 01:45 - 00665600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-11-11 10:38 - 2015-10-20 01:45 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-11-11 10:38 - 2015-10-20 01:45 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-11-11 10:38 - 2015-10-20 01:45 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-11-11 10:38 - 2015-10-20 01:41 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-11-11 10:38 - 2015-10-20 01:41 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 01:05 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2015-11-11 10:38 - 2015-10-20 00:48 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-11-11 10:38 - 2015-10-20 00:47 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-11-11 10:38 - 2015-10-20 00:47 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-11-11 10:38 - 2015-10-20 00:32 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-11-11 10:38 - 2015-10-20 00:32 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-11-11 10:38 - 2015-10-20 00:29 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 00:29 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 00:29 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2015-11-11 10:38 - 2015-10-20 00:29 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2015-11-11 10:38 - 2015-10-13 17:41 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-11-11 10:38 - 2015-10-13 17:40 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2015-11-11 10:38 - 2015-10-13 05:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-11-11 10:38 - 2015-10-01 19:00 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2015-11-11 10:38 - 2015-10-01 19:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll 2015-11-11 10:38 - 2015-10-01 18:50 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2015-11-11 10:38 - 2015-09-23 14:18 - 00459344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-11-11 10:38 - 2015-09-23 14:18 - 00298192 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-11-11 10:38 - 2015-09-23 14:08 - 00251000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2015-11-10 16:00 - 2015-11-10 16:00 - 35675041 _____ C:\Users\Philipp\Desktop\t450s_hmm_en_sp40g54937.pdf ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-12-09 14:54 - 2015-09-19 22:31 - 00000000 ____D C:\Users\Philipp\AppData\Roaming\Skype 2015-12-09 14:54 - 2015-01-07 08:24 - 00000000 ____D C:\Windows 2015-12-09 14:51 - 2015-09-18 19:40 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-12-09 14:48 - 2015-09-18 19:50 - 00000000 ____D C:\Program Files (x86)\Emsisoft Anti-Malware 2015-12-09 14:38 - 2009-07-14 05:45 - 00032208 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-12-09 14:38 - 2009-07-14 05:45 - 00032208 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-12-09 14:36 - 2015-08-14 08:01 - 00699342 _____ C:\Windows\system32\perfh007.dat 2015-12-09 14:36 - 2015-08-14 08:01 - 00149450 _____ C:\Windows\system32\perfc007.dat 2015-12-09 14:36 - 2009-07-14 06:13 - 01619284 _____ C:\Windows\system32\PerfStringBackup.INI 2015-12-09 14:36 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2015-12-09 14:30 - 2015-09-19 22:29 - 00000000 ____D C:\Program Files (x86)\Steam 2015-12-09 14:30 - 2015-09-18 19:40 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-12-09 14:30 - 2015-08-13 22:46 - 00000000 ____D C:\ProgramData\Validity 2015-12-09 14:30 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-12-08 13:26 - 2015-09-19 23:03 - 00000000 ____D C:\Users\Philipp\AppData\Local\Battle.net 2015-12-08 12:36 - 2015-09-19 22:59 - 00000000 ____D C:\Program Files (x86)\Battle.net 2015-12-07 15:12 - 2015-11-06 21:47 - 00000000 ____D C:\Program Files (x86)\Diablo III 2015-12-07 14:44 - 2015-09-26 00:07 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2015-12-07 09:39 - 2015-09-28 11:03 - 00000000 ____D C:\Users\Philipp\Documents\Uni 2015-12-02 13:32 - 2015-09-28 12:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-12-02 12:46 - 2015-09-18 19:40 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-12-02 12:46 - 2015-09-18 19:40 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-11-30 17:14 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\spool 2015-11-26 18:15 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2015-11-26 15:05 - 2015-11-07 00:09 - 00000000 ____D C:\Program Files (x86)\StarCraft II 2015-11-26 14:27 - 2015-09-20 19:40 - 00000000 ____D C:\Users\Philipp\Documents\Scripts 2015-11-26 11:17 - 2015-09-30 14:53 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2015-11-26 10:35 - 2015-08-13 22:33 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-11-26 09:11 - 2015-08-13 22:24 - 00000000 ____D C:\Program Files\DIFX 2015-11-25 17:17 - 2015-08-13 22:29 - 00000000 ____D C:\ProgramData\Package Cache 2015-11-25 13:06 - 2015-08-13 22:53 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2015-11-25 13:05 - 2015-10-06 11:05 - 00000000 ____D C:\Program Files\Microsoft Office 15 2015-11-24 16:20 - 2015-09-20 20:25 - 00000000 ____D C:\ProgramData\Oracle 2015-11-24 16:08 - 2015-09-29 11:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2015-11-24 16:08 - 2015-09-29 11:12 - 00000000 ____D C:\Program Files\Java 2015-11-24 16:08 - 2015-09-20 20:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-11-24 16:08 - 2015-09-20 20:26 - 00000000 ____D C:\Program Files (x86)\Java 2015-11-24 16:07 - 2015-09-29 11:13 - 00110176 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2015-11-24 16:07 - 2015-09-20 20:26 - 00000000 ____D C:\Users\Philipp\.oracle_jre_usage 2015-11-24 14:03 - 2015-09-20 19:44 - 00000000 ____D C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GitHub, Inc 2015-11-24 14:03 - 2015-09-20 19:44 - 00000000 ____D C:\Users\Philipp\AppData\Local\atom 2015-11-24 14:02 - 2015-09-20 19:44 - 00000000 ____D C:\Users\Philipp\AppData\Local\SquirrelTemp 2015-11-19 13:54 - 2015-09-22 12:08 - 00000000 ____D C:\Users\Philipp\.VirtualBox 2015-11-17 14:01 - 2015-09-19 22:30 - 00000000 ____D C:\ProgramData\Skype 2015-11-12 21:20 - 2015-09-27 20:55 - 00000000 ____D C:\Users\Philipp\AppData\Roaming\texstudio 2015-11-12 13:37 - 2015-09-19 22:50 - 00000000 ____D C:\Users\Philipp\Desktop\Spiele 2015-11-12 13:35 - 2009-07-14 05:45 - 00464400 _____ C:\Windows\system32\FNTCACHE.DAT 2015-11-12 09:58 - 2015-10-01 06:46 - 00000000 ____D C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-11-12 09:48 - 2015-09-18 22:42 - 00000000 ____D C:\Users\Philipp\Documents\Visual Studio 2015 2015-11-12 06:30 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2015-11-12 03:27 - 2014-11-14 20:30 - 00000000 ____D C:\Program Files\Windows Journal 2015-11-12 03:12 - 2015-09-18 21:41 - 00000000 ____D C:\Windows\system32\MRT 2015-11-12 03:05 - 2015-09-18 21:41 - 145617392 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-11-12 03:04 - 2014-11-13 23:07 - 01593564 _____ C:\Windows\SysWOW64\PerfStringBackup.INI ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-08-13 22:40 - 2015-08-13 22:40 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Philipp\AppData\Local\Temp\gpg4win.exe C:\Users\Philipp\AppData\Local\Temp\jre-8u65-windows-au.exe C:\Users\Philipp\AppData\Local\Temp\jre-8u66-windows-au.exe C:\Users\Philipp\AppData\Local\Temp\SkypeSetup.exe C:\Users\Philipp\AppData\Local\Temp\sqlite3.dll Einige mit null Byte Größe Dateien/Ordner: ========================== C:\Windows\SysWOW64\dlumd10.dll C:\Windows\SysWOW64\dlumd11.dll C:\Windows\SysWOW64\dlumd9.dll C:\Windows\System32\dlumd10.dll C:\Windows\System32\dlumd11.dll C:\Windows\System32\dlumd9.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-11-30 17:49 ==================== Ende von FRST.txt ============================
__________________ Grüße, Philipp Computers are like air conditioners. They work fine until you start opening windows. |
09.12.2015, 15:02 | #2 |
| Chrome öffnet Tabs mit Werbung Addition:
__________________Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:09-12-2015 durchgeführt von Philipp (2015-12-09 14:55:13) Gestartet von C:\Users\Philipp\Downloads Windows 7 Professional Service Pack 1 (X64) (2015-09-18 07:25:47) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3842078887-4148898431-862222092-500 - Administrator - Disabled) Gast (S-1-5-21-3842078887-4148898431-862222092-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3842078887-4148898431-862222092-1002 - Limited - Enabled) Philipp (S-1-5-21-3842078887-4148898431-862222092-1000 - Administrator - Enabled) => C:\Users\Philipp ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Emsisoft Anti-Malware (Enabled - Up to date) {2F44E1F9-850B-1C7A-0E56-EB2E0A3E20C9} AS: Emsisoft Anti-Malware (Enabled - Up to date) {9425001D-A331-13F4-34E6-D05C71B96A74} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.009.20079 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 19.0.0.241 - Adobe Systems Incorporated) annotation_components_installer (x32 Version: 3.3.410 - Cypress) Hidden Application Insights Tools for Visual Studio 2015 (x32 Version: 3.3.1 - Microsoft Corporation) Hidden Atom (HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\atom) (Version: 1.2.4 - GitHub Inc.) Audacity 2.1.1 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.1 - Audacity Team) AutoIt v3.3.14.2 (HKLM-x32\...\AutoItv3) (Version: 3.3.14.2 - AutoIt Team) Azure AD Authentication Connected Service (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden AzureTools.Notifications (x32 Version: 2.7.30611.1601 - Microsoft Corporation) Hidden Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Behaviors SDK (Windows) for Visual Studio 2013 (x32 Version: 12.0.51210.80 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Build Tools for Windows 10 (x32 Version: 14.0.23309 - Microsoft Corporation) Hidden Buildtools für Windows 10 - DEU (x32 Version: 14.0.23309 - Microsoft Corporation) Hidden Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 3.1.11004 - Cisco Systems, Inc.) Cisco AnyConnect Secure Mobility Client (x32 Version: 3.1.11004 - Cisco Systems, Inc.) Hidden CodedUITestUAP (x32 Version: 14.0.23309 - Microsoft Corporation) Hidden Component Development Kit (x32 Version: 3.3.410 - Cypress) Hidden component_example_projects_installer (x32 Version: 3.3.5052 - Cypress) Hidden Coq Version 8.4pl6 (HKLM-x32\...\Coq) (Version: 8.4pl6 - ) Create Recovery Media (HKLM-x32\...\{50DC5136-21E8-48BC-97E5-1AD055F6B0B6}) (Version: 1.20.0.00 - Lenovo Group Limited) CrypTool 1.4.31 (HKLM-x32\...\CrypTool) (Version: 1.4.31 - ) CY8CKIT-049-42xx PSoC 4 Prototyping Kit (x32 Version: 1.0.7 - Cypress) Hidden CY8CKIT-049-42xx PSoC 4 Prototyping Kit 1.0 Rev.*A (HKLM-x32\...\{0969ACF5-B70D-44D0-B858-8F7ED1389F27}) (Version: 1.0.0.7 - Cypress) Cypress Bridge Control Panel 1.13.0 Production (x32 Version: 1.13.0 - Cypress Semiconductor) Hidden Cypress Clock Programmer 1.4.0 Production (x32 Version: 1.4.0 - Cypress Semiconductor) Hidden Cypress Document Manager (x32 Version: 1.0.769 - Cypress) Hidden Cypress Document Manager 1.0 SP1 (HKLM-x32\...\{534A2A5A-454D-4D31-BF6C-FA3CB281C46B}) (Version: 1.0.0.769 - Cypress) Cypress Programmer DeviceDatabase (x32 Version: 1.0 - Cypress Semiconductor) Hidden Cypress Programmer Example Code (x32 Version: 1.0 - Cypress Semiconductor) Hidden Cypress PSoC Programmer 3.23.1 Production (x32 Version: 3.23.1 - Cypress Semiconductor) Hidden Cypress Update Manager (x32 Version: 21.87.0 - cypress) Hidden Cypress USB Bootloader Application (x32 Version: 1.0 - Cypress Semiconductor) Hidden Cypress USB-Serial Driver Installer (remove only) (HKLM-x32\...\Cypress USB-Serial Driver Installer) (Version: 1.0.1.67 - Cypress Semiconductors) CyUSB-Serial_SDK (x32 Version: 1.00.0017 - Cypress) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd) Devenv-Ressourcen für Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden DisplayLink Core Software (HKLM\...\{58F4C39B-D946-4A45-A314-DEFC2AFDF397}) (Version: 7.5.54609.0 - DisplayLink Corp.) Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.17 - Dolby Laboratories Inc) Dotfuscator and Analytics Community Edition 5.18.1 (x32 Version: 5.18.1.2898 - PreEmptive Solutions) Hidden Dotfuscator and Analytics Community Edition Language Pack 5.18.1 de-DE (x32 Version: 5.18.1.2898 - PreEmptive Solutions) Hidden Emsisoft Anti-Malware (HKLM-x32\...\{5502032C-88C1-4303-99FE-B5CBD7684CEA}_is1) (Version: 10.0 - Emsisoft Ltd.) Energie-Manager (HKLM-x32\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}) (Version: 6.67.2 - Lenovo Group Limited) Entity Framework 6.1.3 Tools for Visual Studio 2015 (HKLM-x32\...\{1A8A9739-BAD7-491F-B5B9-A79A2B965422}) (Version: 14.0.40302.0 - Microsoft Corporation) Erforderliche Komponenten für SSDT (HKLM-x32\...\{2466E484-9D86-416B-9C88-AA533F15AF1C}) (Version: 12.0.2000.8 - Microsoft Corporation) Erforderliche Komponenten für SSDT (HKLM-x32\...\{3FF082A7-A5DE-4BDA-B56A-1D2BEFD617A3}) (Version: 11.1.3000.0 - Microsoft Corporation) Expat XML Parser 2.1.0 (HKLM-x32\...\expat_is1) (Version: 2.1.0 - The Expat Developers) Extended Asian Language font pack for Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-2530-0000-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated) Gemeinsam genutzte Microsoft Azure-Komponenten für Visual Studio 2015 Sprachpaket (DEU) - v1.5 (x32 Version: 1.5.30619.1602 - Microsoft Corporation) Hidden gnu_cs_arm_installer (x32 Version: 3.3.410 - Cypress) Hidden gnu_cs_c8051_1.0_installer (x32 Version: 3.3.410 - Cypress) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 46.0.2490.86 - Google Inc.) Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden Gpg4win (2.2.6) (HKLM-x32\...\GPG4Win) (Version: 2.2.6 - The Gpg4win Project) Haskell Platform 7.10.2-a (HKLM\...\HaskellPlatform-7.10.2-a) (Version: - Haskell.org) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Hex-Editor MX (HKLM-x32\...\{7FC7AD70-1DF3-4B84-9AA2-4FB680F45572}_is1) (Version: 6.0 - NEXT-Soft) IDE Tools for Windows 10 (x32 Version: 14.0.23309 - Microsoft Corporation) Hidden IDE-Tools für Windows 10 - DEU (x32 Version: 14.0.23309 - Microsoft Corporation) Hidden IIS 10.0 Express (HKLM\...\{5984D8DA-C1AF-4284-9C88-D7150425B315}) (Version: 10.0.1734 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version: - ) Inst5676 (Version: 8.01.42 - Softex Inc.) Hidden Integrated Camera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10291 - Realtek Semiconductor Corp.) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.30.1072 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4013 - Intel Corporation) Intel(R) Technology Access (HKLM-x32\...\{a3294ccc-6d01-43c2-9249-3f50bd113bb8}) (Version: 1.3.2.1030 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 3.0.3.60 - Intel Corporation) Intel(R) WiDi (HKLM\...\{3F5D407B-86F5-4CA5-8F83-7C00BBB69080}) (Version: 5.1.23.0 - Intel Corporation) Intel(R) Wireless Bluetooth(R)(patch version 17.1.1450.402) (HKLM\...\{302600C1-6BDF-4FD1-1411-148929CC1385}) (Version: 17.1.1411.0502 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.22 - Intel(R) Corporation) Hidden Intel® PROSet/Wireless Software (HKLM-x32\...\{a9888f41-68ae-43df-bd7d-d93405a44106}) (Version: 17.13.11 - Intel Corporation) IntelliJ IDEA 15.0 (HKLM-x32\...\IntelliJ IDEA 15.0) (Version: 143.381.42 - JetBrains s.r.o.) Java 8 Update 66 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418066F0}) (Version: 8.0.660.18 - Oracle Corporation) Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation) Java SE Development Kit 8 Update 60 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180600}) (Version: 8.0.600.27 - Oracle Corporation) KeePass Password Safe 2.30 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.30 - Dominik Reichl) keil_pk51_9.03_installer (x32 Version: 3.3.410 - Cypress) Hidden KVIrc (HKLM\...\KVIrc) (Version: - Szymon Stefanek and The KVIrc Development Team) Lenovo Anzeige am Bildschirm (HKLM\...\OnScreenDisplay) (Version: 8.72.10 - Lenovo) Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 2.12 - ) Lenovo Communications Utility (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 3.1.17.0 - Lenovo) Lenovo Fingerprint Manager Pro (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.42(x64) - Lenovo) Lenovo Fingerprint Manager Pro (Version: 8.01.42(x64) - Lenovo) Hidden Lenovo Peer Connect SDK (HKLM\...\{75C87855-9CBB-4892-B1A9-74C73A19CACA}_is1) (Version: 1.0.0.7 - Lenovo) Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.09.03 - ) Lenovo PowerENGAGE (HKLM-x32\...\{15B15395-FF53-44E1-ADAD-FCC279E3CA10}) (Version: 2.51.0040 - Lenovo Inc.) Lenovo QuickControl (HKLM-x32\...\{04128C8C-7812-4DCC-816E-9C8AB1D6EECE}) (Version: 2.40 - Lenovo Group Limited) Lenovo Solution Center (HKLM\...\{E92E1FF1-B188-43FE-BECA-2248E227E67D}) (Version: 2.8.005.00 - Lenovo Group Limited) Lenovo System Update (HKLM-x32\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.07.0008 - Lenovo) Lenovo USB Graphics (HKLM\...\{E6B1FE9A-CB1E-4096-A0AF-163419CB971C}) (Version: 7.5.54614.0 - Lenovo) Lenovo USB3.0 to DVI VGA Monitor Adapter (HKLM-x32\...\{454D32AD-C149-49BE-9F2E-8C089C3D6620}) (Version: 1.07.17 - Lenovo) Lenovo User Guide (HKLM-x32\...\{13F59938-C595-479C-B479-F171AB9AF64F}) (Version: 1.0.0009.00 - Lenovo Group Limited) Lenovo Warranty Information (HKLM-x32\...\{FD4EC278-C1B1-4496-99ED-C0BE1B0AA521}) (Version: 1.0.0011.00 - Lenovo) Magicka (HKLM-x32\...\Steam App 42910) (Version: - Arrowhead Game Studios) Message Center Plus (HKLM\...\{C2C2DB64-1BCE-4FA7-962D-457795ECCEC0}) (Version: 3.3.0004.00 - Lenovo Group Limited) Metric Collection SDK (x32 Version: 1.1.0012.00 - Lenovo Group Limited) Hidden Metric Collection SDK 35 (x32 Version: 1.2.0006.00 - Lenovo Group Limited) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{21B0F482-5EF9-45DA-8840-340AFE705A6C}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{B941AFB4-8851-33A1-9E72-0C33D463C41C}) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.6 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (Deutsch) (HKLM-x32\...\{EE8BD24B-75E1-4BBF-86B9-91FE16ADE71C}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Version Manager (x64) 1.0.0-beta5 (HKLM\...\{c5a4aba3-1aba-3ef8-b2d5-c3fa37f59738}) (Version: 1.0.10609.0 - Microsoft Corporation) Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.1 Sprachpaket - DEU) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.23107 - Microsoft Corporation) Microsoft Help Viewer 2.2 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.2 Sprachpaket - DEU) (Version: 2.2.23107 - Microsoft Corporation) Microsoft Office 365 ProPlus - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 15.0.4771.1004 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{F09DEB00-9F41-4BC9-BA81-9F131B12B3D5}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{D4E30517-FE6F-491E-942F-AE10E1B18F38}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x64) (HKLM\...\{B4EDAE03-DB34-4DD0-BA7E-2ED80DEA50B1}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{269A8DF6-BBDA-441F-932B-233F9B746D72}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{EC75BD20-F9CA-4E77-825F-ABD77E95BE91}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{0BF65908-D137-4A9E-B7C9-78F32F74F6FD}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{93945D16-4C3D-433E-B7E4-3D0D86B284C8}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{6F173435-3F19-4043-BA3D-A46AA8472859}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL-Sprachdienst (HKLM-x32\...\{1D812D86-D8EF-41AC-A518-BA12E1913747}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (12.0.41012.0) (HKLM-x32\...\{79AB8378-D661-4021-9941-FE5F4AEB57BB}) (Version: 12.0.41012.0 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (14.0.50616.0) (HKLM-x32\...\{FA604873-01A0-4834-AF87-418534E465BB}) (Version: 14.0.50616.0 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (12.0.30919.1) (HKLM-x32\...\{BCB8A870-2B3D-4CC0-87D6-F931E065AC0C}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server*2014 Express LocalDB (HKLM\...\{CA191120-4CB1-4E3D-89B8-79FDB9017A2E}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 Management Objects (HKLM-x32\...\{4F4CB3E2-9D2F-465A-854B-8276B02F4E7D}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 Management Objects (x64) (HKLM\...\{03CB711D-679E-46ED-851B-C568418CF914}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 Transact-SQL ScriptDom (HKLM\...\{F2A2DB39-2C5A-4764-AA0F-5AB112663FFA}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 T-SQL Language Service (HKLM-x32\...\{06BE8B71-46C6-434B-869E-85C58EF3120A}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft Sync Framework 2.0 Core Components (x64) ENU (HKLM\...\{8CCBEC22-D2DB-4DC9-A58A-E1A1F3A38C8A}) (Version: 2.0.1578.0 - Microsoft Corporation) Microsoft Sync Framework 2.0 Provider Services (x64) ENU (HKLM\...\{03AC245F-4C64-425C-89CF-7783C1D3AB2C}) (Version: 2.0.1578.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ Compiler Package for Python 2.7 (HKLM-x32\...\{692514A8-5484-45FC-B0AE-BE2DF7A75891}) (Version: 9.0.1.30729 - Microsoft Corporation) Microsoft Visual Studio Enterprise 2015 (HKLM-x32\...\{ba680ed4-870b-41c6-a7e6-6cb9676fcbfd}) (Version: 14.0.23107.10 - Microsoft Corporation) Microsoft Web Deploy 3.6 (HKLM\...\{ED4CC1E5-043E-4157-8452-B5E533FE2BA1}) (Version: 3.1238.1955 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{B3B750C0-8C22-439D-B7CE-67F3ED99CC2B}) (Version: 1.20.146.0 - Microsoft) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (HKLM-x32\...\{43341417-7882-4F34-8390-53DFD00F6C0F}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (HKLM\...\{24440413-490E-41CA-BD33-0B30FD3EBE3A}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM\...\{63967E7E-5D53-42FA-A7B2-DC50FB0F976F}) (Version: 12.0.2402.11 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM-x32\...\{2ADB6B9D-83C6-494E-B8AE-E815956A4670}) (Version: 12.0.2402.11 - Microsoft Corporation) Middle-earth: Shadow of Mordor (HKLM-x32\...\Steam App 241930) (Version: - Monolith Productions, Inc.) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mit C# erstellte geräteübergreifende Hybrid-Apps - Vorlagen - DEU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 38.2.0 - Mozilla) Mozilla Thunderbird 38.4.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 38.4.0 (x86 de)) (Version: 38.4.0 - Mozilla) MSBuild/NuGet Integration 14.0 (x86) (x32 Version: 14.0.23311 - Microsoft Corporation) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML4 Parser (HKLM-x32\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios) Mumble 1.2.10 (HKLM-x32\...\{2A8C1469-B7F5-4EE2-95E1-316895A211A7}) (Version: 1.2.10 - Thorvald Natvig) NetBeans IDE 8.0.2 (HKLM\...\nbi-nb-base-8.0.2.0.201411181905) (Version: 8.0.2 - NetBeans.org) Office 15 Click-to-Run Extensibility Component (Version: 15.0.4771.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4771.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (Version: 15.0.4771.1004 - Microsoft Corporation) Hidden OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) OpenVPN 2.3.8-I601 (HKLM\...\OpenVPN) (Version: 2.3.8-I601 - ) Oracle Virtual Desktop Client (HKLM\...\{12C2BF22-366F-4FC1-BB69-A438BB5EBDBD}) (Version: 3.2.0.27 - Oracle) Oracle VM VirtualBox 5.0.4 (HKLM\...\{FC191F32-1A67-4231-91D0-0059A57C99A8}) (Version: 5.0.4 - Oracle Corporation) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 RC für Windows Store-Apps (Deutsch) (x32 Version: 4.5.21005 - Microsoft Corporation) Hidden Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM-x32\...\{3F514FDC-F0F2-3B99-86D6-F7B3A2679B39}) (Version: 4.5.51209 - Microsoft Corporation) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6 (Deutsch) (HKLM-x32\...\{7227EFF8-BC26-44D4-B91D-969A82DBDF4A}) (Version: 4.6.00081 - Microsoft Corporation) Pidgin (HKLM-x32\...\Pidgin) (Version: 2.10.11 - ) PreEmptive Analytics Client German Language Pack (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden Projekt- und Elementvorlagen für Visual Studio Express 2015 für Windows 10 – DEU (x32 Version: 14.0.23309 - Microsoft Corporation) Hidden Projekt- und Elementvorlagen für Visual Studio Professional 2015 – DEU (x32 Version: 14.0.23309 - Microsoft Corporation) Hidden PSoC Creator (x32 Version: 3.3.410 - Cypress) Hidden PSoC Creator 3.3 CP1 (HKLM-x32\...\{65E644F2-9190-446C-AD1F-FDBE93885564}) (Version: 3.3.0.410 - Cypress) PSoC Programmer 3.23.1 (HKLM-x32\...\{DA516B86-CA87-42D0-8959-D8CE5D088E8C}) (Version: 3.23.1.2145 - Cypress) psoccreator_component_library_installer (x32 Version: 3.3.410 - Cypress) Hidden psoccreator_component_library_updates_installer (x32 Version: 3.3.5052 - Cypress) Hidden psoccreator_datafiles_installer (x32 Version: 3.3.410 - Cypress) Hidden psoccreator_documentation_installer (x32 Version: 3.3.410 - Cypress) Hidden Python 2.7.10 (HKLM-x32\...\{E2B51919-207A-43EB-AE78-733F9C6797C2}) (Version: 2.7.10150 - Python Software Foundation) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.21247 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7368 - Realtek Semiconductor Corp.) reference_components_installer (x32 Version: 3.3.410 - Cypress) Hidden release_notes_installer (x32 Version: 3.3.5052 - Cypress) Hidden Roslyn Language Services - x86 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden Skype™ 7.13 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.13.101 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\Spotify) (Version: 1.0.16.104.g3b776c9e - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.1.27.25 - Synaptics Incorporated) Synaptics WBF DDK 5011 (HKLM\...\{4D70781C-36A9-4335-9568-565C6F61B5EB}) (Version: 4.5.285.0 - ) Synaptics WBF DDK 5011 (HKLM\...\{D6FED322-4EA0-48AE-A5AC-BC381D7048CF}) (Version: 4.5.285.0 - Synaptics) SyncToy 2.1 (x64) (HKLM\...\{88DAAF05-5A72-46D2-A7C5-C3759697E943}) (Version: 2.1.0 - Microsoft) Tablet Driver V5.02 (HKLM-x32\...\TabletDriver) (Version: - ) TAP-Windows 9.21.1 (HKLM\...\TAP-Windows) (Version: 9.21.1 - ) Team Explorer for Microsoft Visual Studio 2015 (x32 Version: 14.0.23102 - Microsoft Corporation) Hidden TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) template_projects_installer (x32 Version: 3.3.410 - Cypress) Hidden Test Tools for Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden TeX Live 2015 (HKU\S-1-5-21-3842078887-4148898431-862222092-1000\...\TeXLive2015) (Version: 2015 - ) TeXstudio 2.10.2 (HKLM-x32\...\TeXstudio_is1) (Version: 2.10.2 - Benito van der Zander) The Binding of Isaac: Rebirth (HKLM-x32\...\Steam App 250900) (Version: - Nicalis, Inc.) Thinkpad USB Ethernet Adapter Driver (HKLM-x32\...\{D8102684-7BA1-4948-88B9-535F84E6E588}) (Version: 7.14.1114.2014 - Lenovo) ThinkVantage Active Protection System (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.80.03.00 - Lenovo) TypeScript Power Tool (x32 Version: 1.6.3.0 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2015 (x32 Version: 1.6.3.0 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2015 1.6.3.0 (HKLM-x32\...\{da31aa25-410a-4c1b-9ec0-114dd8dff786}) (Version: 1.6.23313.0 - Microsoft Corporation) Unified Remote (HKLM-x32\...\{415B4714-4F8C-49C6-B310-881EAF892CFB}_is1) (Version: 3.3.4 - Unified Intents AB) Universal CRT Extension SDK (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden Universal CRT Headers Libraries and Sources (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden Universal CRT Redistributable (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden Universal CRT Tools x64 (Version: 10.0.10150 - Microsoft Corporation) Hidden Universal CRT Tools x86 (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) USB-Serial SDK 2.0 (HKLM-x32\...\{954DBD94-ACD8-4D2E-AFAB-49FF7CBD102B}) (Version: 1.0.0.17 - Cypress) WCF Data Services 5.6.4 DEU Language Pack (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden WCF Data Services 5.6.4 Runtime (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2015 (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2015 DEU Language Pack (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden Windows-Treiberpaket - Cypress (usbser) Ports (07/19/2009 2.0.0000.0) (HKLM\...\4E7D1035C1F89C16F49899F61CEA4616097CF70D) (Version: 07/19/2009 2.0.0000.0 - Cypress) Windows-Treiberpaket - Cypress (usbser) Ports (07/19/2009 2.0.0000.0) (HKLM\...\63D3B20A710CDAEC448A770E0E299E66267E5F89) (Version: 07/19/2009 2.0.0000.0 - Cypress) Windows-Treiberpaket - Cypress (usbser) Ports (07/19/2009 2.0.0000.0) (HKLM\...\6B3DA762E4535AB2AC831F61B7993BD960417403) (Version: 07/19/2009 2.0.0000.0 - Cypress) Windows-Treiberpaket - Cypress USB Driver for CY8CKIT-030 DVK (06/05/2009 3.4.1.20) (HKLM\...\0F4C6831B655A34BCA3F07D73A9EEFF3EF5C738B) (Version: 06/05/2009 3.4.1.20 - Cypress) Windows-Treiberpaket - Cypress USB Driver for CY8CKIT-050 DVK (06/05/2009 3.4.1.20) (HKLM\...\D631B55C85DB3A635F9B6316C3F1FF0ABA3DD6E9) (Version: 06/05/2009 3.4.1.20 - Cypress) Windows-Treiberpaket - Cypress USB Driver for CY8CKIT-100 DVK (06/05/2009 3.4.1.20) (HKLM\...\D26FB804AAFCBE51B2DB85940FEF85F9B670352C) (Version: 06/05/2009 3.4.1.20 - Cypress) Windows-Treiberpaket - Cypress USB Driver for FirstTouch Kit (06/05/2009 3.4.1.20) (HKLM\...\88B48D9C0A5035120D8AF3108A566752178FAC16) (Version: 06/05/2009 3.4.1.20 - Cypress) Windows-Treiberpaket - Cypress USB Driver for FirstTouchRF Kit (06/05/2009 3.4.1.20) (HKLM\...\19C70B6959594E5F60DF9DDBEAC67AADB9EA4B0A) (Version: 06/05/2009 3.4.1.20 - Cypress) Windows-Treiberpaket - Cypress USB Driver for Generic FX2LP device (06/05/2009 3.4.1.20) (HKLM\...\C6BBD94972ADECAAD54DDA957FFBCAF87D326160) (Version: 06/05/2009 3.4.1.20 - Cypress) Windows-Treiberpaket - Cypress USB Driver for ICE cube (06/05/2009 3.4.1.20) (HKLM\...\1DC60ABD03349F69A05B3CCD7CE6EF850D1ABD58) (Version: 06/05/2009 3.4.1.20 - Cypress) Windows-Treiberpaket - Cypress USB Driver for MiniProg1 (06/05/2009 3.4.1.20) (HKLM\...\7621C53597A9A2576088916DEE4D7580D00D4CA5) (Version: 06/05/2009 3.4.1.20 - Cypress) Windows-Treiberpaket - Cypress USB Driver for MiniProg3 (06/05/2009 3.4.1.20) (HKLM\...\51E754F637C3C0552E03DECDA6EEC86A77108ED8) (Version: 06/05/2009 3.4.1.20 - Cypress) Windows-Treiberpaket - Cypress USB Driver for PSoC3 FirstTouch Kit (06/05/2009 3.4.1.20) (HKLM\...\FEC585C984ABB3DE89EA0F2E0FEDABD5129C57CF) (Version: 06/05/2009 3.4.1.20 - Cypress) Windows-Treiberpaket - Cypress USB Driver for PSoC5 FirstTouch Kit (06/05/2009 3.4.1.20) (HKLM\...\4B7320972047B6E86C203F8E87E2DE450C326B62) (Version: 06/05/2009 3.4.1.20 - Cypress) Windows-Treiberpaket - Cypress USB3 Driver for KitProg (05/02/2013 1.2.3.3) (HKLM\...\8CAB77F82135E6A16AFCFC7B6E4EA84B157E869B) (Version: 05/02/2013 1.2.3.3 - Cypress) Windows-Treiberpaket - Cypress USB3 Driver for TrueTouch Bridge (05/02/2013 1.2.3.3) (HKLM\...\EFFBE9FEFC3B4C02EA7970FCA68FD60BFCF1DD22) (Version: 05/02/2013 1.2.3.3 - Cypress) Windows-Treiberpaket - Intel (e1dexpress) Net (07/15/2014 12.12.50.7202) (HKLM\...\9831220A78BC6CDB16870D8F80FF2AB41814019A) (Version: 07/15/2014 12.12.50.7202 - Intel) Windows-Treiberpaket - Intel Corporation (iaStorA) HDC (11/06/2014 13.6.0.1002) (HKLM\...\55320B67E6FF26D5CF6A352973677B5A68BD028B) (Version: 11/06/2014 13.6.0.1002 - Intel Corporation) Windows-Treiberpaket - Lenovo 1.67.09.03 (11/07/2014 1.67.09.03) (HKLM\...\FA3F6F3D6E8958FDDEE1E09CC77DFA71B0D7835A) (Version: 11/07/2014 1.67.09.03 - Lenovo) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) Wireshark 1.12.8 (64-bit) (HKLM-x32\...\Wireshark) (Version: 1.12.8 - The Wireshark developer community, hxxp://www.wireshark.org) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Wiederherstellungspunkte ========================= 23-11-2015 09:22:00 Windows Update 25-11-2015 17:17:25 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 25-11-2015 17:17:34 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 25-11-2015 17:17:42 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 25-11-2015 17:17:52 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 25-11-2015 17:18:05 Gerätetreiber-Paketinstallation: Unified Intents AB Eingabegeräte (Human Interface Devices) 26-11-2015 09:07:07 Installed USB-Serial SDK 26-11-2015 09:09:56 Installed PSoC Creator 26-11-2015 10:35:29 Installed CY8CKIT-049-42xx 28-11-2015 15:45:21 Windows Update 02-12-2015 16:18:20 Windows Update 07-12-2015 09:39:42 Windows Update ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0509D470-728C-4BEA-9502-C3043035F049} - System32\Tasks\TVT\LaunchFR => C:\Program Files (x86)\Lenovo\Factory Recovery\FRReminder.exe [2014-08-21] (TODO: <Company name>) Task: {0F4C700D-B27C-4A42-8475-BF8A618BB4C6} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-10-13] (Microsoft Corporation) Task: {1F5F582A-196A-42CF-9D3C-E41F53CFC0F9} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2015-09-10] () Task: {32867CE3-9E6E-448F-9E65-C6FD5AB3EE9B} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-10-07] (Realtek Semiconductor) Task: {3696C0A0-07E3-48EC-9832-1F10CCD75E3F} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-09-01] (Realtek Semiconductor) Task: {3B8934DF-0CC9-4D5C-A644-FD009A2140F8} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo) Task: {3D479232-CDC5-43D7-A929-4C560FBE91F5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-28] (Microsoft Corporation) Task: {4D56967D-FA97-4194-8C60-142F1B6BE59A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-18] (Google Inc.) Task: {51521DD3-6042-42CE-82E3-D7266491C941} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-08-17] () Task: {51EC092D-3C3C-4C9D-A2ED-8CC13F03AD7D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {5CADD186-6F3F-48DF-B750-DD5D459F91BF} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe Task: {65CF6A48-81A1-4DAE-AACE-DCE6E263E8AD} - System32\Tasks\PMTask => C:\Program Files (x86)\ThinkPad\Utilities\PwmIdTsv.exe [2014-11-13] (Lenovo Group Limited) Task: {7A748911-1B2E-4D3C-BAE7-FF8B5DC67D76} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2015-08-17] (Lenovo) Task: {7A85DE1F-55FB-4B37-B5D1-5714CB0FC89A} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {7F9C7EED-6EBC-4CD6-86F0-52CF92706AD9} - System32\Tasks\RtHDVBg_LENOVO_MICPKEY => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-09-01] (Realtek Semiconductor) Task: {8388A8F7-E4B8-4D4E-8B2C-321A1A45526E} - System32\Tasks\Uni-Ordner Sync => C:\Program Files\SyncToy 2.1\SyncToyCmd.exe [2009-10-19] (Microsoft Corporation) Task: {8BC95ABE-B31C-4536-95D5-AB485EA801F2} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-08-17] () Task: {9CDB2813-9361-4C3A-9131-CAD1114A94B5} - System32\Tasks\Lenovo\Lenovo PowerENGAGE Update => C:\Program Files (x86)\Lenovo Registration\lenovoreg.exe [2015-01-09] (Aviata Inc) Task: {9CFF0412-D60F-48CD-AD1E-B564C6D13D3B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-28] (Microsoft Corporation) Task: {AFCE21A3-C7E1-47C5-97D2-E4C699DF3FBD} - System32\Tasks\Lenovo\Message Center Plus Launcher => C:\Program Files (x86)\Lenovo\message center plus\mcplaunch.exe [2014-09-13] (Lenovo) Task: {D4C8BCE8-28F6-4D2B-A212-E999EEB7BC29} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {D7704264-821E-4E9E-A23A-CFF95BD64A01} - System32\Tasks\Lenovo\Lenovo PowerENGAGE => C:\Program Files (x86)\Lenovo Registration\lenovoreg.exe [2015-01-09] (Aviata Inc) Task: {ECE0267D-3B97-401D-B677-9D6CC7155A27} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2015-08-17] (Lenovo) Task: {EDD73158-2CBE-4E34-BA28-D2A17C9C58A9} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation) Task: {F98BCDA5-B633-4CF8-B190-1DF71B4FE7CD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-18] (Google Inc.) Task: {FA790796-C4E5-4DA1-B591-090B76BA6B5F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation) Task: {FCD25C37-7BD9-43FE-8399-3B4C30C6A6E8} - System32\Tasks\CypressUpdateManager => C:\Program Files (x86)\Cypress\Cypress Update Manager\cyliveupdate.exe [2015-10-16] (Cypress Semiconductor) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\CypressUpdateManager.job => C:\Program Files (x86)\Cypress\Cypress Update Manager\cyliveupdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeX Live 2015\Uninstall TeX Live.lnk -> C:\texlive\2015\tlpkg\installer\uninst.bat () <==== ACHTUNG ShortcutWithArgument: C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual C++ Compiler Package for Python 2.7\Visual C++ 2008 32-bit Command Prompt.lnk -> C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) -> /k ""C:\Users\Philipp\AppData\Local\Programs\Common\Microsoft\Visual C++ for Python\9.0\vcvarsall.bat" x86" <==== ACHTUNG ShortcutWithArgument: C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual C++ Compiler Package for Python 2.7\Visual C++ 2008 64-bit Command Prompt.lnk -> C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) -> /k ""C:\Users\Philipp\AppData\Local\Programs\Common\Microsoft\Visual C++ for Python\9.0\vcvarsall.bat" amd64" <==== ACHTUNG ShortcutWithArgument: C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual C++ Compiler Package for Python 2.7\Visual C++ 2008 64-bit Cross Tools Command Prompt.lnk -> C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) -> /k ""C:\Users\Philipp\AppData\Local\Programs\Common\Microsoft\Visual C++ for Python\9.0\vcvarsall.bat" x86_amd64" <==== ACHTUNG ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-10-06 11:05 - 2015-10-13 04:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2015-09-09 11:52 - 2015-09-09 11:52 - 00216576 _____ () C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe 2015-01-23 15:58 - 2015-01-23 15:58 - 01795976 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\cpprest120_1_4.dll 2015-01-23 15:42 - 2015-01-23 15:42 - 00087552 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\libglog.dll 2015-01-23 15:58 - 2015-01-23 15:58 - 00357768 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\JsonCpp.dll 2015-08-13 22:43 - 2014-11-13 22:07 - 00117760 ____N () C:\Program Files (x86)\ThinkPad\Utilities\GR\PWMRT64V.DLL 2015-11-12 09:46 - 2015-11-07 05:46 - 01908040 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\libglesv2.dll 2015-11-12 09:46 - 2015-11-07 05:46 - 00093512 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\libegl.dll 2015-10-06 11:05 - 2015-10-06 11:05 - 00393376 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream64.dll 2015-12-09 14:48 - 2015-12-09 14:48 - 01738240 _____ () C:\Users\Philipp\Downloads\AdwCleaner_5.024.exe 2015-09-09 11:40 - 2015-09-09 11:40 - 00221696 _____ () C:\Program Files (x86)\GNU\GnuPG\libksba-8.dll 2015-09-09 11:34 - 2015-09-09 11:34 - 00087040 _____ () C:\Program Files (x86)\GNU\GnuPG\libgpg-error-0.dll 2015-09-09 11:28 - 2015-09-09 11:28 - 00050176 _____ () C:\Program Files (x86)\GNU\GnuPG\libw32pth-0.dll 2015-09-09 11:39 - 2015-09-09 11:39 - 00072192 _____ () C:\Program Files (x86)\GNU\GnuPG\libassuan-0.dll 2015-09-09 11:42 - 2015-09-09 11:42 - 00744448 _____ () C:\Program Files (x86)\GNU\GnuPG\libgcrypt-20.dll 2015-08-13 22:44 - 2011-08-02 19:58 - 02201088 _____ () C:\Program Files\Lenovo\Communications Utility\cxcore210.dll 2015-08-13 22:44 - 2011-08-02 19:58 - 02085888 _____ () C:\Program Files\Lenovo\Communications Utility\cv210.dll 2015-10-28 20:30 - 2010-09-28 12:00 - 00285696 _____ () C:\Windows\system32\WinTab32.DLL 2015-09-19 22:42 - 2015-10-05 17:18 - 00778752 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2015-09-19 22:42 - 2015-07-03 17:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll 2015-09-19 22:42 - 2015-07-03 17:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2015-09-19 22:42 - 2015-07-03 17:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2015-09-19 22:42 - 2015-11-10 03:44 - 02541648 _____ () C:\Program Files (x86)\Steam\video.dll 2015-09-19 22:42 - 2015-09-24 01:33 - 02549248 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2015-09-19 22:42 - 2015-09-24 01:33 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2015-09-19 22:42 - 2015-09-24 01:33 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2015-09-19 22:42 - 2015-09-24 01:33 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2015-09-19 22:42 - 2015-09-24 01:33 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2015-09-19 22:42 - 2015-11-10 03:44 - 00806992 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2015-09-19 22:42 - 2015-11-03 23:00 - 00201728 _____ () C:\Program Files (x86)\Steam\bin\openvr_api.dll 2015-10-28 20:30 - 2010-09-28 12:00 - 00217088 _____ () C:\Windows\SysWOW64\WinTab32.DLL 2015-10-28 20:30 - 2010-05-13 16:03 - 00232960 _____ () C:\Windows\SysWOW64\MyDrawLineWindowDll.dll 2015-09-19 22:42 - 2015-10-08 23:20 - 45010208 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2014-10-10 08:37 - 2014-10-10 08:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3842078887-4148898431-862222092-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{FB07E2DE-8519-492B-A4E3-47F7FA29AD3C}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{2DD62BF7-85C5-4F6D-B104-C4F4555DB01A}] => (Allow) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe FirewallRules: [{F4EBD4AA-9AEA-4013-A81B-3FF2064CC105}] => (Allow) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe FirewallRules: [{1F84A419-E045-4F7D-9FF2-922AD835E759}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe FirewallRules: [{A88530C2-6236-4CDD-9B96-A549B7EA2E41}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe FirewallRules: [{B9E6383B-C571-4C55-89FD-A24C42C13028}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe FirewallRules: [{D3382D05-FDD1-4EE8-9AD5-EDAC433E4F20}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe FirewallRules: [{59B9B898-DF54-42E0-ABAF-443689F44BBA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{1FC1A737-BE66-4643-86CC-8944B5204557}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{D71A7CF4-9EC6-4AD8-86E0-61564254A486}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{8B44B09E-E3E5-4DB2-B871-702F56FA5D08}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{2906E221-3A26-4E7C-B91C-5DE1C707088C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{993376FD-217B-4824-9478-9C7A4D5D7D8C}C:\users\philipp\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\philipp\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{DF35D3EE-C6AE-4974-BF7C-859E2B78858B}C:\users\philipp\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\philipp\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{69A16E46-8BE7-4147-A700-C9B7A24168E5}C:\users\philipp\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\philipp\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{F22D2A24-96BB-4140-85B8-3033E64684DF}C:\users\philipp\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\philipp\appdata\roaming\spotify\spotify.exe FirewallRules: [{70AA12F2-E003-49A3-B42E-63C0D8739EDF}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe FirewallRules: [{87DC982E-E608-4EAB-9784-7592D151F47A}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe FirewallRules: [TCP Query User{43E9A8EB-F151-4E6E-832C-F83E431F4922}C:\program files\java\jre1.8.0_60\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_60\bin\java.exe FirewallRules: [UDP Query User{446553C2-63AF-46D3-ACCA-708E1C75C325}C:\program files\java\jre1.8.0_60\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_60\bin\java.exe FirewallRules: [TCP Query User{CD5CFA24-0DF5-4A83-AEF8-F3A5CD3DE98C}C:\program files\kvirc\kvirc.exe] => (Allow) C:\program files\kvirc\kvirc.exe FirewallRules: [UDP Query User{131B76AD-1A4D-4E66-98E2-1D6791F1DC0E}C:\program files\kvirc\kvirc.exe] => (Allow) C:\program files\kvirc\kvirc.exe FirewallRules: [{6677A3F9-5C94-4C73-818C-4E1CC1DD4C71}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe FirewallRules: [{522C4ECD-0EBD-454E-B370-BAE7A28B1362}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe FirewallRules: [{D0ED725B-A43D-4B21-8718-E0EA62E78FC3}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe FirewallRules: [{94889F4A-71B0-48E2-B1FA-7D72E33A17AD}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe FirewallRules: [{FB0017F0-5128-42C7-B8D9-A5933B6D0731}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe FirewallRules: [{4D358A66-2D6A-4072-9097-AF0B7BB7A196}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe FirewallRules: [{D4A56ED4-6400-4928-9838-341C44F7C5DA}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [{31342D65-50EE-4906-A551-3B1B47CFAB51}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe FirewallRules: [{3B68FBAB-D440-4DDE-BBB1-3CBD84345E31}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe FirewallRules: [TCP Query User{26789250-8553-4936-9A8B-8E95B36FE0A6}C:\program files\kvirc\kvirc.exe] => (Allow) C:\program files\kvirc\kvirc.exe FirewallRules: [UDP Query User{E571E4C2-2DA9-4BF3-AEE7-17D82DB100D6}C:\program files\kvirc\kvirc.exe] => (Allow) C:\program files\kvirc\kvirc.exe FirewallRules: [TCP Query User{1BFA3813-7B76-4395-9FDC-86480DD435F0}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{BAC76C42-CF58-4FEF-937C-1FD9E94C78F9}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{5ACBC35B-0F4C-4509-B1B1-09E95EA881AD}C:\program files (x86)\jetbrains\intellij idea 14.1.5\bin\idea.exe] => (Allow) C:\program files (x86)\jetbrains\intellij idea 14.1.5\bin\idea.exe FirewallRules: [UDP Query User{C6891403-BE7E-4538-B9D9-B8E16FF4590E}C:\program files (x86)\jetbrains\intellij idea 14.1.5\bin\idea.exe] => (Allow) C:\program files (x86)\jetbrains\intellij idea 14.1.5\bin\idea.exe FirewallRules: [{C67F5DA4-058A-4793-85AF-BF27D301222A}] => (Allow) C:\Users\Philipp\AppData\Roaming\BitTorrent Sync\BTSync.exe FirewallRules: [{FA5235E6-8916-4231-ACB8-3324F4984080}] => (Allow) C:\Users\Philipp\AppData\Roaming\BitTorrent Sync\BTSync.exe FirewallRules: [TCP Query User{9F221D81-610E-493A-8F9B-28FE24BE3CB0}C:\users\philipp\documents\scripts\tools\nmap-6.49beta5\nmap.exe] => (Allow) C:\users\philipp\documents\scripts\tools\nmap-6.49beta5\nmap.exe FirewallRules: [UDP Query User{0BF7AB6F-C3A1-47A5-B37C-1CF68AD317F8}C:\users\philipp\documents\scripts\tools\nmap-6.49beta5\nmap.exe] => (Allow) C:\users\philipp\documents\scripts\tools\nmap-6.49beta5\nmap.exe FirewallRules: [{D9974E43-3F39-44EC-AF7B-98154AC10FE9}] => (Block) C:\users\philipp\documents\scripts\tools\nmap-6.49beta5\nmap.exe FirewallRules: [{5181B403-47D3-4EE8-A440-933F74EB4239}] => (Block) C:\users\philipp\documents\scripts\tools\nmap-6.49beta5\nmap.exe FirewallRules: [TCP Query User{3A5BA379-8A7A-47EA-A9DE-EF39A49CAB97}E:\_files\age of mythology\aom.exe] => (Allow) E:\_files\age of mythology\aom.exe FirewallRules: [UDP Query User{48FD29C2-86DD-4078-A82F-8D72B3D5ED95}E:\_files\age of mythology\aom.exe] => (Allow) E:\_files\age of mythology\aom.exe FirewallRules: [TCP Query User{30824C47-D684-4052-86FF-0410C698B289}E:\_files\age of mythology\aom.exe] => (Allow) E:\_files\age of mythology\aom.exe FirewallRules: [UDP Query User{5BD0592D-5E0E-46AA-AAAA-075662D65712}E:\_files\age of mythology\aom.exe] => (Allow) E:\_files\age of mythology\aom.exe FirewallRules: [TCP Query User{F7868EEF-6583-4339-AD5F-FE9EE508A5A2}C:\program files (x86)\jetbrains\intellij idea 14.1.5\bin\idea.exe] => (Allow) C:\program files (x86)\jetbrains\intellij idea 14.1.5\bin\idea.exe FirewallRules: [UDP Query User{80DCE54A-09F1-49EF-B083-99826A8651D5}C:\program files (x86)\jetbrains\intellij idea 14.1.5\bin\idea.exe] => (Allow) C:\program files (x86)\jetbrains\intellij idea 14.1.5\bin\idea.exe FirewallRules: [TCP Query User{F5EF96CA-9D25-4E90-A00F-BD237853A510}C:\program files\java\jdk1.8.0_60\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_60\bin\java.exe FirewallRules: [UDP Query User{07415FDB-327C-4D62-9548-FAEF574065DB}C:\program files\java\jdk1.8.0_60\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_60\bin\java.exe FirewallRules: [{C762C521-E43E-4977-8B75-393613244C2D}] => (Block) C:\program files\java\jdk1.8.0_60\bin\java.exe FirewallRules: [{573400F8-BE9E-4178-98C0-C0DD77CF8D74}] => (Block) C:\program files\java\jdk1.8.0_60\bin\java.exe FirewallRules: [TCP Query User{05F27866-8653-4115-8009-26F988A21BEA}C:\program files (x86)\jetbrains\intellij idea 15.0\bin\idea.exe] => (Allow) C:\program files (x86)\jetbrains\intellij idea 15.0\bin\idea.exe FirewallRules: [UDP Query User{DB20D655-1B14-436A-B7F4-D59F768111DD}C:\program files (x86)\jetbrains\intellij idea 15.0\bin\idea.exe] => (Allow) C:\program files (x86)\jetbrains\intellij idea 15.0\bin\idea.exe FirewallRules: [TCP Query User{1C4A9E3F-18EA-4BD9-BB17-3676292C8EAD}E:\_files\blizzard\diablo iii\diablo iii.exe] => (Allow) E:\_files\blizzard\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{D70BE2D5-3509-44C8-997E-F9D205FD5EEA}E:\_files\blizzard\diablo iii\diablo iii.exe] => (Allow) E:\_files\blizzard\diablo iii\diablo iii.exe FirewallRules: [{BB0D36DA-E006-4160-8E48-E34199A61513}] => (Allow) E:\_Files\SteamLibrary\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe FirewallRules: [{6CD6AA6C-9AC2-42D2-8026-4F515D448DB8}] => (Allow) E:\_Files\SteamLibrary\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe FirewallRules: [TCP Query User{F90093B7-E89E-4E8F-BD80-ADF8FD752027}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{68E709EC-40E6-435B-9FA6-932AB08527D9}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{47F497D1-E777-4BC8-8162-B89B795478A2}E:\_files\blizzard\starcraft ii\versions\base38749\sc2_x64.exe] => (Allow) E:\_files\blizzard\starcraft ii\versions\base38749\sc2_x64.exe FirewallRules: [UDP Query User{F1AD7796-6348-4A5B-96E3-9CD39514152D}E:\_files\blizzard\starcraft ii\versions\base38749\sc2_x64.exe] => (Allow) E:\_files\blizzard\starcraft ii\versions\base38749\sc2_x64.exe FirewallRules: [TCP Query User{8240BED4-9104-4284-9109-11017D0C3874}C:\program files (x86)\starcraft ii\versions\base38749\sc2_x64.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base38749\sc2_x64.exe FirewallRules: [UDP Query User{B979A606-2217-4183-A3F8-F62438FB4DE1}C:\program files (x86)\starcraft ii\versions\base38749\sc2_x64.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base38749\sc2_x64.exe FirewallRules: [{5244647E-6400-4A21-BCBB-B8B8326656FE}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{A95E3B07-7BCF-4EC7-A14B-AD108FD175EF}] => (Allow) E:\_Files\SteamLibrary\steamapps\common\Magicka\Magicka.exe FirewallRules: [{83990269-2FFD-4AE7-AB9B-F8C6416072BD}] => (Allow) E:\_Files\SteamLibrary\steamapps\common\Magicka\Magicka.exe FirewallRules: [TCP Query User{A51C2834-01B9-4915-9703-5AD1F4F64D43}C:\program files (x86)\jetbrains\intellij idea 15.0\bin\idea.exe] => (Allow) C:\program files (x86)\jetbrains\intellij idea 15.0\bin\idea.exe FirewallRules: [UDP Query User{68A896B1-2160-4832-A337-84A7CB6D0E37}C:\program files (x86)\jetbrains\intellij idea 15.0\bin\idea.exe] => (Allow) C:\program files (x86)\jetbrains\intellij idea 15.0\bin\idea.exe FirewallRules: [{915480B7-ACE7-44AD-ACDC-180756F9FDFE}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe FirewallRules: [{87EA2F4F-45C7-411D-944A-A50E883AC1AF}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe FirewallRules: [{7680F809-AF3D-41EE-80D2-5EF4C284CA6B}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe FirewallRules: [{98471C1B-79C9-41D3-9B8C-EF4FCFB33574}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: VirtualBox Host-Only Ethernet Adapter Description: VirtualBox Host-Only Ethernet Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Oracle Corporation Service: VBoxNetAdp Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: vpnva Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Lenovo Connect Device 1.0 Description: Lenovo Connect Device 1.0 Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (12/09/2015 02:30:31 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/08/2015 01:49:08 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/08/2015 12:13:12 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/07/2015 02:13:40 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/07/2015 12:08:36 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/07/2015 11:20:58 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -2143485936 Error: (12/07/2015 11:20:58 AM) (Source: Microsoft Office 15) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {F6BAE057-E103-4205-8848-8D74A24135A6} Error: (12/07/2015 11:20:58 AM) (Source: Microsoft Office 15) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {F6BAE057-E103-4205-8848-8D74A24135A6} Error: (12/07/2015 11:10:41 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/07/2015 09:35:56 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Systemfehler: ============= Error: (12/09/2015 02:52:50 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung empfangen: 20. Error: (12/09/2015 02:49:42 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung empfangen: 20. Error: (12/09/2015 02:34:20 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung empfangen: 20. Error: (12/09/2015 02:30:32 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom VBoxNetAdp Error: (12/08/2015 10:56:00 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (12/08/2015 01:49:09 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom VBoxNetAdp Error: (12/08/2015 01:30:24 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (12/08/2015 12:13:13 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom VBoxNetAdp Error: (12/07/2015 03:32:20 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (12/07/2015 02:13:40 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom VBoxNetAdp CodeIntegrity: =================================== Date: 2015-11-07 01:49:01.906 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-07 01:49:01.602 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-07 00:07:01.828 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-07 00:07:01.510 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-10-19 23:20:58.957 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-10-19 22:24:11.864 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-09-25 23:38:19.044 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\dsound.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz Prozentuale Nutzung des RAM: 43% Installierter physikalischer RAM: 11984.38 MB Verfügbarer physikalischer RAM: 6813.7 MB Summe virtueller Speicher: 23966.94 MB Verfügbarer virtueller Speicher: 18077.82 MB ==================== Laufwerke ================================ Drive c: (Windows7_OS) (Fixed) (Total:449.12 GB) (Free:310.3 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] Drive q: (Lenovo_Recovery) (Fixed) (Total:15.17 GB) (Free:4.83 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 40A2089B) Partition 1: (Active) - (Size=1.5 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=449.1 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=15.2 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================
__________________ |
09.12.2015, 23:14 | #3 |
/// TB-Ausbilder /// Anleitungs-Guru | Chrome öffnet Tabs mit WerbungMein Name ist Jürgen und ich werde Dir bei Deinem Problem behilflich sein. Zusammen schaffen wir das...
Hinweis: Ich kann Dir niemals eine Garantie geben, dass wir alle schädlichen Dateien finden werden. Eine Formatierung ist meist der schnellere und immer der sicherste Weg, aber auch nur bei wirklicher Malware empfehlenswert. Adware & Co. können wir sehr gut entfernen. Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis Du mein clean bekommst. Los geht's: Na Du? Kommt das auch wenn Skype geschlossen ist?
__________________ |
10.12.2015, 13:02 | #4 |
| Chrome öffnet Tabs mit Werbung Gute Frage, werde ich testen. Seit wann macht Skype denn so einen Blödsinn??
__________________ Grüße, Philipp Computers are like air conditioners. They work fine until you start opening windows. |
10.12.2015, 14:38 | #5 |
/// TB-Ausbilder /// Anleitungs-Guru | Chrome öffnet Tabs mit Werbung Wer lebt denn schon von Luft und Liebe allein?
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
11.12.2015, 14:18 | #6 |
| Chrome öffnet Tabs mit Werbung Okay, ich glaube es liegt wirklich an Skype, hab das letzte Mal als das passiert ist einfach Skype beendet und das Phänomen war weg. Jetzt wird ein Teamspeak Server aufgesetzt... Danke für die Hilfe.
__________________ --> Chrome öffnet Tabs mit Werbung |
11.12.2015, 17:05 | #7 |
/// TB-Ausbilder /// Anleitungs-Guru | Chrome öffnet Tabs mit Werbung Das kannste auch machen: Schritt 1 Änderung der Privatsphäre-Einstellungen (Häkchen entfernen) Schritt 2 Bitte lade Dir von hier BlueLifeHosts editor herunter und entpacke die Datei auf Deinem Desktop.
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
Themen zu Chrome öffnet Tabs mit Werbung |
administrator, adobe, defender, desktop, dll, dnsapi.dll, explorer, google, installation, mozilla, ordner, prozesse, realtek, registry, rundll, scan, server, software, svchost.exe, system, temp, usb, werbung, windows, winlogon.exe, öffnet |