Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Windows 7: Alle Programme einer Partition verschwunden, auch die Verzeichnisse

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 02.01.2016, 17:41   #1
Roshimitsu
 
Windows 7: Alle Programme einer Partition verschwunden, auch die Verzeichnisse - Standard

Windows 7: Alle Programme einer Partition verschwunden, auch die Verzeichnisse



Liebes Forum und liebe Helfer,

das Symptom habe ich zum ersten Mal vor etwa einer Stunde bemerkt. Wie lange die Ursache existiert kann ich nicht sagen. Das Problem ist, dass (nahezu) alle Programme auf der Partition "D:" "verschwunden" sind. Einige Ordner sind noch vorhanden. Die Verknüpfungen zu den Programmen im Startmenü und auf dem Desktop existieren noch. Jedoch sind die Dateipfade nicht mehr vorhanden (nicht mehr sichtbar).

Beim ersten Überfliegen der Addition sehe ich unter "Installierte Programme" die betroffenen Programme noch. Einige sind mit "Hidden" versehen.

Meine letztes Vorgehen war, dass ich das Programm "VIEW NX 2" von Nikon installiert habe. Außerdem habe ich gestern das Programm "MediathekVIEW" verwendet. Ob eines der Programme der Auslöser für mein Problem ist, kann ich nicht sagen, da ich im Urlaub war. Vor dem Urlaub hat alles funktioniert, jetzt nicht mehr.

Haben Sie eine Lösung um mein Problem zu beseitigen, ohne eine Formatierung durchführen zu müssen?

Ich habe die Log-Dateien unten hinzugefügt.

Edit: Bei einigen Programmen, die ich versuche zu öffnen (unter anderem Firefox) kommt die Meldung "Couldnt load XPCOM".

Vielen Dank für Ihre Mühen.

Viele Grüße

Anhang:

FRST.txt

Roshi
FRST Logfile:
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:31-12-2015
durchgeführt von Robson (Administrator) auf ROBSONS (02-01-2016 17:04:49)
Gestartet von C:\Users\Robson\Desktop
Geladene Profile: Robson (Verfügbare Profile: Robson)
Platform: Windows 7 Professional N Service Pack 1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Sophos Limited) D:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
(Sophos Limited) D:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFManager.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Sophos Limited) D:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFService.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cnext.exe
() C:\Users\Robson\AppData\Local\Amazon Music\Amazon Music Helper.exe
(Sigmatel) C:\Windows\system\w98eject.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
(Dropbox, Inc.) C:\Users\Robson\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Elaborate Bytes AG) D:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
() D:\Program Files (x86)\Drakonia Configurator\hid.exe
(Sophos Limited) D:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
(Advanced Micro Devices) C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
() C:\Windows\SysWOW64\ASGT.exe
(Geek Software GmbH) D:\Program Files (x86)\PDF24\pdf24.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
(Sophos Limited) D:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe
() D:\Program Files (x86)\Drakonia Configurator\trayicon.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
(SMART Technologies) D:\Program Files (x86)\SMART Technologies\Education Software\SMARTHelperService.exe
(Sophos Limited) D:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe
(Sophos Limited) D:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe
(DEVGURU Co., LTD.) D:\Program Files (x86)\USB Drivers\25_escape\conn\ss_conn_service.exe
(Sophos Limited) D:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Mozilla Corporation) D:\Program Files (x86)\Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\DeviceDisplayObjectProvider.exe
(Microsoft Corporation) C:\Windows\System32\Dxpserver.exe
(Microsoft Corporation) C:\Windows\HelpPane.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672664 2014-06-30] (Realtek Semiconductor)
HKLM\...\Run: [IntelliPoint] => c:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4859592 2015-11-18] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [VirtualCloneDrive] => D:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [GamingMouse] => D:\Program Files (x86)\Drakonia Configurator\hid.exe [248832 2013-10-29] ()
HKLM-x32\...\Run: [Sophos AutoUpdate Monitor] => D:\Program Files (x86)\Sophos\AutoUpdate\almon.exe [1592104 2015-08-11] (Sophos Limited)
HKLM-x32\...\Run: [PDFPrint] => D:\Program Files (x86)\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-10-01] (Raptr, Inc)
HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [708496 2015-09-23] (Cisco Systems, Inc.)
HKLM-x32\...\Run: [Nikon Message Center 2] => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [570880 2013-12-27] (Nikon Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-09] (Oracle Corporation)
HKU\S-1-5-21-3349271881-3163170594-1915629682-1001\...\Run: [Dropbox Update] => C:\Users\Robson\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-19] (Dropbox, Inc.)
HKU\S-1-5-21-3349271881-3163170594-1915629682-1001\...\Run: [Amazon Music] => C:\Users\Robson\AppData\Local\Amazon Music\Amazon Music Helper.exe [5887808 2015-07-21] ()
HKU\S-1-5-21-3349271881-3163170594-1915629682-1001\...\MountPoints2: {39c2fcad-87d1-11e4-a7d4-00125a5d1ffd} - G:\Autorun.exe
HKU\S-1-5-21-3349271881-3163170594-1915629682-1001\...\MountPoints2: {39c2fcbb-87d1-11e4-a7d4-00125a5d1ffd} - J:\setup.exe
HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
AppInit_DLLs: D:\PROGRA~1\Sophos\SOPHOS~1\SOPHOS~2.DLL => D:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured_x64.dll [217672 2015-02-01] (Sophos Limited)
AppInit_DLLs-x32: D:\PROGRA~1\Sophos\SOPHOS~1\SOPHOS~1.DLL => D:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured.dll [275352 2015-02-01] (Sophos Limited)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-12-15] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-12-15] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-12-15] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\w98Eject.lnk [2015-07-24]
ShortcutTarget: w98Eject.lnk -> C:\Windows\system\w98eject.exe (Sigmatel)
Startup: C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2015-05-16]
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation)
Startup: C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-12-13]
ShortcutTarget: Dropbox.lnk -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Winsock: Catalog9 01 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760 2015-08-11] (Sophos Limited)
Winsock: Catalog9 02 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760 2015-08-11] (Sophos Limited)
Winsock: Catalog9 03 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760 2015-08-11] (Sophos Limited)
Winsock: Catalog9 04 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760 2015-08-11] (Sophos Limited)
Winsock: Catalog9 05 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760 2015-08-11] (Sophos Limited)
Winsock: Catalog9 06 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760 2015-08-11] (Sophos Limited)
Winsock: Catalog9 07 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760 2015-08-11] (Sophos Limited)
Winsock: Catalog9 08 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760 2015-08-11] (Sophos Limited)
Winsock: Catalog9 19 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp.dll [126760 2015-08-11] (Sophos Limited)
Winsock: Catalog9-x64 01 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864 2015-08-11] (Sophos Limited)
Winsock: Catalog9-x64 02 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864 2015-08-11] (Sophos Limited)
Winsock: Catalog9-x64 03 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864 2015-08-11] (Sophos Limited)
Winsock: Catalog9-x64 04 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864 2015-08-11] (Sophos Limited)
Winsock: Catalog9-x64 05 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864 2015-08-11] (Sophos Limited)
Winsock: Catalog9-x64 06 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864 2015-08-11] (Sophos Limited)
Winsock: Catalog9-x64 07 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864 2015-08-11] (Sophos Limited)
Winsock: Catalog9-x64 08 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864 2015-08-11] (Sophos Limited)
Winsock: Catalog9-x64 19 C:\ProgramData\Sophos\Web Intelligence\swi_ifslsp_64.dll [173864 2015-08-11] (Sophos Limited)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{409AAC3D-5B5F-4B71-8F66-40F5CF6A39F3}: [DhcpNameServer] 7.254.254.254
Tcpip\..\Interfaces\{649BE7EC-22B5-49E9-8744-468ADD1EEFAB}: [DhcpNameServer] 192.168.178.1

Internet Explorer:
==================
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-12-15] (Microsoft Corporation)
BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2015-12-15] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-12-15] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2015-12-15] (Microsoft Corporation)
BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2016-01-02] (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2015-12-15] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-12-15] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2016-01-02] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-04-04] (Microsoft Corporation)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)

FireFox:
========
FF ProfilePath: C:\Users\Robson\AppData\Roaming\Mozilla\Firefox\Profiles\cgugvxci.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll [2016-01-01] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll [2016-01-01] ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2016-01-02] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2016-01-02] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-03] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-04-04] (Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-09-27] (Adobe Systems Inc.)
FF Extension: Print Edit - C:\Users\Robson\AppData\Roaming\Mozilla\Firefox\Profiles\cgugvxci.default\extensions\printedit@DW-dev.xpi [2015-10-01]
FF Extension: Ghostery - C:\Users\Robson\AppData\Roaming\Mozilla\Firefox\Profiles\cgugvxci.default\Extensions\firefox@ghostery.com.xpi [2016-01-01]
FF Extension: Garmin Communicator - C:\Users\Robson\AppData\Roaming\Mozilla\Firefox\Profiles\cgugvxci.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} [2015-04-21] [ist nicht signiert]
FF Extension: Adblock Plus - C:\Users\Robson\AppData\Roaming\Mozilla\Firefox\Profiles\cgugvxci.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-12-15]
StartMenuInternet: FIREFOX.EXE - D:\Program Files (x86)\Firefox\firefox.exe

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-03] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
R2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856 2015-11-17] (Advanced Micro Devices) [Datei ist nicht signiert]
R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [Datei ist nicht signiert]
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2802360 2015-11-24] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2015-05-01] ()
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [107832 2015-05-01] ()
R2 SAVAdminService; D:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe [288552 2014-04-30] (Sophos Limited)
R2 SAVService; D:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe [208168 2015-02-01] (Sophos Limited)
R2 SMARTHelperService; D:\Program Files (x86)\SMART Technologies\Education Software\SMARTHelperService.exe [538416 2014-02-12] (SMART Technologies)
R2 Sophos AutoUpdate Service; D:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe [340264 2015-08-11] (Sophos Limited)
R2 Sophos Client Firewall; D:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFService.exe [64808 2013-12-02] (Sophos Limited)
R2 Sophos Client Firewall Manager; D:\Program Files (x86)\Sophos\Sophos Client Firewall\SCFManager.exe [158504 2013-12-02] (Sophos Limited)
R2 Sophos Web Control Service; D:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe [341800 2015-02-01] (Sophos Limited)
R2 ss_conn_service; D:\Program Files (x86)\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-10-13] (DEVGURU Co., LTD.)
R2 swi_service; D:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe [3274536 2015-02-01] (Sophos Limited)
S2 swi_update_64; C:\ProgramData\Sophos\Web Intelligence\swi_update_64.exe [2065704 2015-02-01] (Sophos Limited)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S3 Origin Client Service; "D:\Program Files (x86)\Origin\OriginClientService.exe" [X]
S3 TunngleService; D:\Program Files (x86)\Tunngle\TnglCtrl.exe [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [296648 2015-11-18] (Advanced Micro Devices)
R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 IOMap; C:\Windows\system32\drivers\IOMap64.sys [24824 2013-07-02] (ASUSTeK Computer Inc.)
R1 SAVOnAccess; C:\Windows\System32\DRIVERS\savonaccess.sys [158976 2014-04-30] (Sophos Limited)
R1 scfdriver; C:\Windows\system32\Drivers\scfdriver.sys [102688 2013-12-02] (Sophos Limited)
R1 scfndis; C:\Windows\System32\DRIVERS\scfndis.sys [55072 2013-12-02] (Sophos Limited)
S3 sdcfilter; C:\Windows\System32\DRIVERS\sdcfilter.sys [38144 2015-02-01] (Sophos Limited)
S3 SMARTMouseFilterx64; C:\Windows\System32\DRIVERS\SMARTMouseFilterx64.sys [10240 2014-02-12] (SMART Technologies) [Datei ist nicht signiert]
S3 SMARTVHidMiniVistaAmd64; C:\Windows\System32\DRIVERS\SMARTVHidMiniVistaAmd64.sys [9216 2014-02-12] (SMART Technologies) [Datei ist nicht signiert]
S3 SMARTVTabletPCx64; C:\Windows\System32\DRIVERS\SMARTVTabletPCx64.sys [22184 2014-02-12] (SMART Technologies ULC) [Datei ist nicht signiert]
S4 SophosBootDriver; C:\Windows\System32\DRIVERS\SophosBootDriver.sys [27904 2014-04-30] (Sophos Limited)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
S3 vpnva; C:\Windows\System32\DRIVERS\vpnva64-6.sys [52592 2015-04-20] (Cisco Systems, Inc.)
S2 AODDriver4.1; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [X]
S2 AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [X]

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-01-02 17:04 - 2016-01-02 17:05 - 00022193 _____ C:\Users\Robson\Desktop\FRST.txt
2016-01-02 17:04 - 2016-01-02 17:04 - 00000000 ____D C:\FRST
2016-01-02 17:03 - 2016-01-02 17:03 - 02370560 _____ (Farbar) C:\Users\Robson\Desktop\FRST64.exe
2016-01-02 15:39 - 2016-01-02 15:39 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Nikon
2016-01-02 15:39 - 2016-01-02 15:39 - 00000000 ____D C:\Users\Robson\AppData\Local\Nikon
2016-01-02 15:33 - 2016-01-02 15:33 - 00000000 ____D C:\Program Files (x86)\Java
2016-01-02 15:31 - 2016-01-02 15:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picture Control Utility 2
2016-01-02 15:31 - 2016-01-02 15:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Message Center 2
2016-01-02 15:30 - 2016-01-02 16:30 - 00000020 ____H C:\ProgramData\PKP_DLes.DAT
2016-01-02 15:30 - 2016-01-02 15:30 - 00000268 ___RH C:\Users\Robson\AppData\Roaming\Commands
2016-01-02 15:30 - 2016-01-02 15:30 - 00000268 ___RH C:\ProgramData\Conditionals
2016-01-02 15:30 - 2016-01-02 15:30 - 00000000 ____D C:\ProgramData\URLs
2016-01-02 15:29 - 2016-01-02 15:42 - 00000020 ____H C:\ProgramData\PKP_DLev.DAT
2016-01-02 15:29 - 2016-01-02 15:39 - 00000020 ____H C:\ProgramData\PKP_DLet.DAT
2016-01-02 15:29 - 2016-01-02 15:31 - 00000000 ____D C:\ProgramData\54F3DE4E-B7BA-4EBD-8B3B-385D272CC583
2016-01-02 15:29 - 2016-01-02 15:31 - 00000000 ____D C:\Program Files\Nikon
2016-01-02 15:29 - 2016-01-02 15:31 - 00000000 ____D C:\Program Files\Common Files\Nikon
2016-01-02 15:29 - 2016-01-02 15:31 - 00000000 ____D C:\Program Files (x86)\Nikon
2016-01-02 15:29 - 2016-01-02 15:30 - 00000000 ____D C:\ProgramData\Ultima_T15
2016-01-02 15:29 - 2016-01-02 15:30 - 00000000 ____D C:\ProgramData\EnterNHelp
2016-01-02 15:29 - 2016-01-02 15:29 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ATL71.DLL
2016-01-02 15:29 - 2016-01-02 15:29 - 00000268 ___RH C:\Users\Robson\AppData\Roaming\Common
2016-01-02 15:29 - 2016-01-02 15:29 - 00000268 ___RH C:\Users\Robson\AppData\Roaming\Command Line Utility
2016-01-02 15:29 - 2016-01-02 15:29 - 00000268 ___RH C:\ProgramData\Configure Folder Actions
2016-01-02 15:29 - 2016-01-02 15:29 - 00000268 ___RH C:\ProgramData\Compressor
2016-01-02 15:29 - 2016-01-02 15:29 - 00000000 ____D C:\ProgramData\Widgets
2016-01-02 15:29 - 2016-01-02 15:29 - 00000000 ____D C:\ProgramData\Trance Pad
2016-01-02 15:29 - 2016-01-02 15:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX 2
2016-01-02 15:28 - 2016-01-02 15:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon
2016-01-01 17:55 - 2016-01-01 17:56 - 00000000 ____D C:\Users\Robson\.mediathek3
2016-01-01 17:54 - 2016-01-01 17:55 - 00000000 ____D C:\Users\Robson\Downloads\MediathekView_10
2016-01-01 17:54 - 2016-01-01 17:54 - 31918217 _____ C:\Users\Robson\Downloads\MediathekView_10.zip
2015-12-18 16:11 - 2015-12-18 16:11 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-12-18 16:11 - 2015-12-18 16:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-12-18 15:58 - 2015-12-18 15:58 - 00095655 _____ C:\Users\Robson\Desktop\5eurosteam.pdf
2015-12-18 09:26 - 2015-12-18 09:26 - 00000222 _____ C:\Users\Robson\Desktop\DiRT Rally.url
2015-12-18 09:24 - 2015-12-18 09:24 - 00084975 _____ C:\Users\Robson\Desktop\STEAM - receipt for your key subscription diirt.pdf
2015-12-13 18:01 - 2015-12-13 18:01 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-12-09 23:00 - 2015-11-20 19:54 - 03170304 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-12-09 23:00 - 2015-11-20 19:54 - 02609152 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-12-09 23:00 - 2015-11-20 19:54 - 00709632 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-12-09 23:00 - 2015-11-20 19:54 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-12-09 23:00 - 2015-11-20 19:54 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-12-09 23:00 - 2015-11-20 19:54 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-12-09 23:00 - 2015-11-20 19:54 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-12-09 23:00 - 2015-11-20 19:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-12-09 23:00 - 2015-11-20 19:54 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-12-09 23:00 - 2015-11-20 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-12-09 23:00 - 2015-11-20 19:54 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-12-09 23:00 - 2015-11-20 19:34 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-12-09 23:00 - 2015-11-20 19:34 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-12-09 23:00 - 2015-11-20 19:34 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-12-09 23:00 - 2015-11-20 19:34 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-12-09 23:00 - 2015-11-20 19:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-12-09 23:00 - 2015-11-11 22:12 - 00387792 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-12-09 23:00 - 2015-11-11 21:52 - 00341192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-12-09 23:00 - 2015-11-11 19:53 - 01735680 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2015-12-09 23:00 - 2015-11-11 19:53 - 00525312 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2015-12-09 23:00 - 2015-11-11 19:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2015-12-09 23:00 - 2015-11-11 19:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2015-12-09 23:00 - 2015-11-11 17:21 - 25837568 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-12-09 23:00 - 2015-11-11 17:00 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-12-09 23:00 - 2015-11-11 16:44 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-12-09 23:00 - 2015-11-11 16:44 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-12-09 23:00 - 2015-11-11 16:41 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-12-09 23:00 - 2015-11-11 16:12 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-12-09 23:00 - 2015-11-11 15:57 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-12-09 23:00 - 2015-11-10 19:55 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-12-09 23:00 - 2015-11-10 19:55 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-12-09 23:00 - 2015-11-10 19:55 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-12-09 23:00 - 2015-11-10 19:39 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-12-09 23:00 - 2015-11-10 19:37 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-12-09 23:00 - 2015-11-10 18:47 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-12-09 23:00 - 2015-11-10 01:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-12-09 23:00 - 2015-11-10 01:13 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-12-09 23:00 - 2015-11-10 01:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-12-09 23:00 - 2015-11-10 01:12 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-12-09 23:00 - 2015-11-10 01:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-12-09 23:00 - 2015-11-10 01:11 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-12-09 23:00 - 2015-11-10 01:08 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-12-09 23:00 - 2015-11-10 01:06 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-12-09 23:00 - 2015-11-10 01:06 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-12-09 23:00 - 2015-11-10 01:04 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-12-09 23:00 - 2015-11-10 01:03 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-12-09 23:00 - 2015-11-10 01:02 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-12-09 23:00 - 2015-11-10 01:02 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-12-09 23:00 - 2015-11-10 00:50 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-12-09 23:00 - 2015-11-10 00:47 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-12-09 23:00 - 2015-11-10 00:46 - 04514816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-12-09 23:00 - 2015-11-10 00:44 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-12-09 23:00 - 2015-11-10 00:37 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-12-09 23:00 - 2015-11-10 00:36 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-12-09 23:00 - 2015-11-10 00:36 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-12-09 23:00 - 2015-11-10 00:35 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-12-09 23:00 - 2015-11-10 00:17 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-12-09 23:00 - 2015-11-10 00:14 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-12-09 23:00 - 2015-11-10 00:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-12-09 23:00 - 2015-11-08 23:33 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-12-09 23:00 - 2015-11-08 23:32 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-12-09 23:00 - 2015-11-08 23:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-12-09 23:00 - 2015-11-08 23:15 - 02887168 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-12-09 23:00 - 2015-11-08 23:15 - 00571392 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-12-09 23:00 - 2015-11-08 23:15 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-12-09 23:00 - 2015-11-08 23:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-12-09 23:00 - 2015-11-08 23:14 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-12-09 23:00 - 2015-11-08 23:07 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-12-09 23:00 - 2015-11-08 23:06 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-12-09 23:00 - 2015-11-08 23:04 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-12-09 23:00 - 2015-11-08 23:02 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-12-09 23:00 - 2015-11-08 23:01 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-12-09 23:00 - 2015-11-08 23:01 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-12-09 23:00 - 2015-11-08 23:01 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-12-09 23:00 - 2015-11-08 23:01 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-12-09 23:00 - 2015-11-08 22:52 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-12-09 23:00 - 2015-11-08 22:48 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-12-09 23:00 - 2015-11-08 22:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-12-09 23:00 - 2015-11-08 22:35 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-12-09 23:00 - 2015-11-08 22:32 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-12-09 23:00 - 2015-11-08 22:29 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-12-09 23:00 - 2015-11-08 22:18 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-12-09 23:00 - 2015-11-08 22:15 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-12-09 23:00 - 2015-11-08 22:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-12-09 23:00 - 2015-11-08 22:14 - 14456832 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-12-09 23:00 - 2015-11-08 22:14 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-12-09 23:00 - 2015-11-08 22:13 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-12-09 23:00 - 2015-11-08 21:53 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-12-09 23:00 - 2015-11-08 21:41 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-12-09 23:00 - 2015-11-08 21:30 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-12-09 23:00 - 2015-11-05 20:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2015-12-09 23:00 - 2015-11-05 20:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll
2015-12-09 23:00 - 2015-11-05 10:53 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2015-12-09 23:00 - 2015-11-03 20:04 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-12-09 23:00 - 2015-11-03 19:56 - 00627712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2015-12-09 22:59 - 2015-11-03 20:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2015-12-09 22:59 - 2015-11-03 19:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll
2015-12-07 17:23 - 2015-12-07 17:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-01-02 17:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows
2016-01-02 16:58 - 2015-06-19 15:47 - 00001228 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3349271881-3163170594-1915629682-1001UA.job
2016-01-02 16:44 - 2015-01-12 18:32 - 00000000 ____D C:\Users\Robson\Desktop\Anwendungen
2016-01-02 16:13 - 2014-12-20 11:29 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-01-02 15:50 - 2015-09-23 10:50 - 00000000 ____D C:\ProgramData\Oracle
2016-01-02 15:34 - 2015-09-23 10:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-01-02 15:33 - 2015-09-23 10:51 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2016-01-02 15:33 - 2015-09-23 10:51 - 00000000 ____D C:\Users\Robson\.oracle_jre_usage
2016-01-02 15:31 - 2015-03-14 09:28 - 00000000 ____D C:\Users\Robson\AppData\Local\Downloaded Installations
2016-01-02 15:31 - 2014-12-19 19:18 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-01-02 15:30 - 2014-12-20 08:19 - 00000000 ____D C:\Windows\Downloaded Installations
2016-01-02 12:31 - 2011-04-12 09:14 - 00699092 _____ C:\Windows\system32\perfh007.dat
2016-01-02 12:31 - 2011-04-12 09:14 - 00149232 _____ C:\Windows\system32\perfc007.dat
2016-01-02 12:31 - 2009-07-14 06:12 - 01619284 _____ C:\Windows\system32\PerfStringBackup.INI
2016-01-02 12:31 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2016-01-02 11:03 - 2009-07-14 05:50 - 00019936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-01-02 11:03 - 2009-07-14 05:50 - 00019936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-01-02 10:56 - 2015-03-04 15:01 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Dropbox
2016-01-02 10:55 - 2015-02-01 22:54 - 00000142 _____ C:\Windows\ODBC.INI
2016-01-02 10:55 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-01-01 22:36 - 2014-12-19 23:49 - 00065536 _____ C:\Windows\system32\spu_storage.bin
2016-01-01 19:28 - 2014-12-21 11:09 - 00000000 ____D C:\Users\Robson\AppData\Roaming\vlc
2016-01-01 19:13 - 2014-12-20 11:29 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-01-01 19:13 - 2014-12-20 11:29 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-01-01 19:13 - 2014-12-20 11:29 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-01-01 17:58 - 2015-06-19 15:47 - 00001176 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3349271881-3163170594-1915629682-1001Core.job
2016-01-01 17:55 - 2014-12-19 19:00 - 00000000 ____D C:\Users\Robson
2015-12-23 09:21 - 2015-03-22 12:31 - 00000000 ____D C:\Users\Robson\Documents\Outlook-Dateien
2015-12-22 16:28 - 2015-01-04 16:48 - 00000000 ____D C:\ProgramData\Origin
2015-12-22 09:32 - 2014-12-21 10:29 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Audacity
2015-12-21 18:04 - 2015-01-27 19:11 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Skype
2015-12-21 12:08 - 2015-04-25 17:07 - 00000000 ____D C:\Users\Robson\AppData\Roaming\dvdcss
2015-12-18 17:08 - 2014-12-19 23:50 - 00000000 ____D C:\Users\Robson\AppData\Local\AMD
2015-12-18 16:11 - 2015-01-27 19:10 - 00000000 ____D C:\ProgramData\Skype
2015-12-18 15:47 - 2015-01-26 20:42 - 00000000 ____D C:\ProgramData\Codemasters
2015-12-18 15:47 - 2014-12-20 11:46 - 00000000 ____D C:\Users\Robson\Documents\My Games
2015-12-18 09:26 - 2015-01-26 20:30 - 00000000 ____D C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-12-15 18:44 - 2015-04-04 12:13 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2015-12-15 18:42 - 2015-04-04 12:08 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-12-12 19:18 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2015-12-11 10:22 - 2015-10-04 16:34 - 00000832 _____ C:\Users\Public\Desktop\FIFA 16.lnk
2015-12-10 09:04 - 2009-07-14 05:50 - 00479392 _____ C:\Windows\system32\FNTCACHE.DAT
2015-12-07 17:23 - 2015-10-12 20:10 - 00000000 ____D C:\Program Files\AMD
2015-12-07 17:22 - 2015-10-12 20:10 - 00000000 ____D C:\Program Files (x86)\AMD
2015-12-07 17:17 - 2014-12-19 23:33 - 00000000 ____D C:\AMD

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2015-05-31 15:54 - 2015-05-31 15:54 - 5082084 _____ (The Public) C:\Users\Robson\AppData\Roaming\Avisynth.exe
2015-05-31 15:45 - 2015-05-31 15:54 - 5243208 _____ (                                                            ) C:\Users\Robson\AppData\Roaming\AvsP.exe
2016-01-02 15:29 - 2016-01-02 15:29 - 0000268 ___RH () C:\Users\Robson\AppData\Roaming\Command Line Utility
2016-01-02 15:30 - 2016-01-02 15:30 - 0000268 ___RH () C:\Users\Robson\AppData\Roaming\Commands
2016-01-02 15:29 - 2016-01-02 15:29 - 0000268 ___RH () C:\Users\Robson\AppData\Roaming\Common
2015-05-31 15:45 - 2015-05-31 15:54 - 2169915 _____ (LIGHTNING UK!) C:\Users\Robson\AppData\Roaming\Imgburn.exe
2015-05-31 15:45 - 2015-05-31 15:54 - 1357348 _____ () C:\Users\Robson\AppData\Roaming\MatroskaSplitter.exe
2015-05-31 15:45 - 2015-05-31 15:54 - 7760687 _____ (Boraxsoft) C:\Users\Robson\AppData\Roaming\SetupGFD.exe
2015-05-31 15:54 - 2015-05-31 15:54 - 0117723 _____ () C:\Users\Robson\AppData\Roaming\yuvcodecs-1.3.exe
2015-11-18 12:31 - 2015-11-18 12:31 - 0061011 _____ () C:\Users\Robson\AppData\Local\recently-used.xbel
2016-01-02 15:29 - 2016-01-02 15:29 - 0000268 ___RH () C:\ProgramData\Compressor
2016-01-02 15:30 - 2016-01-02 15:30 - 0000268 ___RH () C:\ProgramData\Conditionals
2016-01-02 15:29 - 2016-01-02 15:29 - 0000268 ___RH () C:\ProgramData\Configure Folder Actions
2014-12-19 19:21 - 2014-12-19 19:21 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2016-01-02 15:30 - 2016-01-02 16:30 - 0000020 ____H () C:\ProgramData\PKP_DLes.DAT
2016-01-02 15:29 - 2016-01-02 15:39 - 0000020 ____H () C:\ProgramData\PKP_DLet.DAT
2016-01-02 15:29 - 2016-01-02 15:42 - 0000020 ____H () C:\ProgramData\PKP_DLev.DAT

Einige Dateien in TEMP:
====================
C:\Users\Robson\AppData\Local\Temp\7z.dll
C:\Users\Robson\AppData\Local\Temp\amd-catalyst-15.7.1-without-dotnet45-win7-64bit.exe
C:\Users\Robson\AppData\Local\Temp\amd-catalyst-omega-14.12-with-dotnet45-win7-64bit.exe
C:\Users\Robson\AppData\Local\Temp\amd-catalyst-omega-14.12-without-dotnet45-win7-64bit.exe
C:\Users\Robson\AppData\Local\Temp\AutoDetectUtilApp.exe
C:\Users\Robson\AppData\Local\Temp\devcon.exe
C:\Users\Robson\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmps0_giv.dll
C:\Users\Robson\AppData\Local\Temp\GTA_V_Patch_1_0_463_1.exe
C:\Users\Robson\AppData\Local\Temp\jre-8u66-windows-au.exe
C:\Users\Robson\AppData\Local\Temp\ose00000.exe
C:\Users\Robson\AppData\Local\Temp\raptrpatch.exe
C:\Users\Robson\AppData\Local\Temp\raptr_stub.exe
C:\Users\Robson\AppData\Local\Temp\sevnz.exe
C:\Users\Robson\AppData\Local\Temp\sonarinst.exe
C:\Users\Robson\AppData\Local\Temp\tmp32B5.exe
C:\Users\Robson\AppData\Local\Temp\tmpA3FC.exe
C:\Users\Robson\AppData\Local\Temp\tmpBB81.exe
C:\Users\Robson\AppData\Local\Temp\Uninstall.exe
C:\Users\Robson\AppData\Local\Temp\_is6DC4.exe
C:\Users\Robson\AppData\Local\Temp\_isA49B.exe


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-01-02 11:56

==================== Ende von FRST.txt ============================
         
--- --- ---

[/CODE]

Addition.txt
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:31-12-2015
durchgeführt von Robson (2016-01-02 17:06:01)
Gestartet von C:\Users\Robson\Desktop
Windows 7 Professional N Service Pack 1 (X64) (2014-12-19 18:00:11)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-3349271881-3163170594-1915629682-500 - Administrator - Disabled)
Gast (S-1-5-21-3349271881-3163170594-1915629682-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3349271881-3163170594-1915629682-1002 - Limited - Enabled)
Robson (S-1-5-21-3349271881-3163170594-1915629682-1001 - Administrator - Enabled) => C:\Users\Robson
SophosSAUROBSONS0 (S-1-5-21-3349271881-3163170594-1915629682-1010 - Limited - Enabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Sophos Anti-Virus (Disabled - Out of date) {6BABF8F7-3EB6-BD1D-9167-8C5ECA060A29}
AS: Sophos Anti-Virus (Disabled - Out of date) {D0CA1913-188C-B293-ABD7-B72CB1814094}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Sophos Client Firewall (Disabled) {539079D2-74D9-BC45-BA38-256B34D54D52}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
ACP Application (Version: 2015.1117.2341.12 - Advanced Micro Devices, Inc.) Hidden
Adobe Flash Player 20 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 20.0.0.267 - Adobe Systems Incorporated)
Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.267 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.13) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated)
Amazon Music (HKU\S-1-5-21-3349271881-3163170594-1915629682-1001\...\Amazon Amazon Music) (Version: 3.10.0.928 - Amazon Services LLC)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.)
Arma 3 Complete (HKLM-x32\...\QXJtYTM=_is1) (Version: 1 - )
ASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.5.2.3 - ASUSTek COMPUTER INC.)
ASUS GPU Tweak (x32 Version: 2.5.2.3 - ASUSTek COMPUTER INC.) Hidden
ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.025 - ASUSTek Computer Inc.)
Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
Ballad Heroes - Neutral Gwent Card Set (HKLM-x32\...\Ballad Heroes - Neutral Gwent Card Set_is1) (Version: 1.0.0.0 - GOG.com)
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB)
Call of Duty: Black Ops III (HKLM\...\Q2FsbG9mRHV0eUJsYWNrT3BzSUlJ_is1) (Version: 1 - )
Catalyst Control Center Next Localization BR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
CDex - Open Source Digital Audio CD Extractor (HKLM-x32\...\CDex) (Version: 1.78.0.2015 - Georgy Berdyshev)
Cisco AnyConnect Secure Mobility Client  (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 3.1.11004 - Cisco Systems, Inc.)
Cisco AnyConnect Secure Mobility Client (x32 Version: 3.1.11004 - Cisco Systems, Inc.) Hidden
Counter-Strike Global Offensive MULTI-2 1.32.6.0 (HKLM-x32\...\Counter-Strike Global Offensive MULTI-2 1.32.6.0) (Version:  - )
DiRT 3 (HKLM-x32\...\GFWL_{434D0FA0-1558-4D8E-AC3D-BD1000008200}) (Version: 1.0.0000.130 - Codemasters)
DiRT 3 (x32 Version: 1.0.0000.130 - Codemasters) Hidden
DiRT Rally (HKLM-x32\...\Steam App 310560) (Version:  - Codemasters Racing Studio)
Drakonia Black (HKLM-x32\...\{2EAD3327-2F92-455F-A675-E5CC4980B67A}}_is1) (Version:  - )
Dropbox (HKU\S-1-5-21-3349271881-3163170594-1915629682-1001\...\Dropbox) (Version: 3.12.5 - Dropbox, Inc.)
ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB)
F1 2011 (HKLM-x32\...\GFWL_{434D0FA1-3E0C-4D03-A5D4-5E1000008100}) (Version: 1.0.0000.129 - Codemasters)
F1 2011 (x32 Version: 1.0.0000.129 - Codemasters) Hidden
F1 2014 (HKLM-x32\...\Steam App 226580) (Version:  - Codemasters)
FIFA 14 (HKLM-x32\...\{AA7A2800-1E75-4240-855B-03AFF8E5171E}) (Version: 1.0.0.7 - Electronic Arts)
FIFA 16 (HKLM-x32\...\{28FA2805-7992-4A28-844B-040C57204718}) (Version: 1.4.64673.4 - Electronic Arts)
Garmin USB Drivers (HKLM-x32\...\{3D5D6CFC-3097-425A-8D8F-7EAF5D57641D}) (Version: 2.3.1.0 - Garmin Ltd or its subsidiaries)
Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games)
GUI for dvdauthor 1.07 (HKLM-x32\...\GUI for dvdauthor) (Version: 1.07 - Boraxsoft)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Inkscape 0.48.5 (HKLM-x32\...\Inkscape) (Version: 0.48.5 - )
JabRef 2.10 (HKLM-x32\...\JabRef 2.10) (Version: 2.10 - JabRef Team)
Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation)
KLatexFormula 3.3.0beta (HKLM-x32\...\klatexformula) (Version: 3.3.0beta - KLatexFormula Project)
Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft IntelliPoint 8.2 (HKLM\...\Microsoft IntelliPoint 8.2) (Version: 8.20.468.0 - Microsoft Corporation)
Microsoft Office 365 ProPlus - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 15.0.4779.1002 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{B3B750C0-8C22-439D-B7CE-67F3ED99CC2B}) (Version: 1.20.146.0 - Microsoft)
MiKTeX 2.9 (HKLM\...\MiKTeX 2.9) (Version: 2.9 - MiKTeX.org)
Mozilla Firefox 34.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla)
Mozilla Firefox 43.0.2 (x86 de) (HKU\S-1-5-21-3349271881-3163170594-1915629682-1001\...\Mozilla Firefox 43.0.2 (x86 de)) (Version: 43.0.2 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
New Quest - Fool's Gold (HKLM-x32\...\New Quest - Fool's Gold_is1) (Version: 1.0.0.0 - GOG.com)
Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.1.1 - Nikon)
Nikon Movie Editor (HKLM-x32\...\{5CAD3393-EEC0-44CE-9F93-BCAA365B77FB}) (Version: 2.9.2 - Nikon)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4779.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4779.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4779.1002 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation)
Origin (HKLM-x32\...\Origin) (Version: 9.5.3.636 - Electronic Arts, Inc.)
PDF24 Creator 6.9.2 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
PDFtk - The PDF Toolkit version 2.02 (HKLM-x32\...\{C65EA7B8-FC21-4896-AD44-9CE952BB1255}_is1) (Version: 2.02 - PDF Labs)
Picture Control Utility 2 (HKLM\...\{D4893C47-704F-4B84-8486-9DE4974ACA6F}) (Version: 2.0.2 - Nikon)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
Raptr (HKLM-x32\...\Raptr) (Version:  - )
Rapture3D 2.4.9 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version:  - Blue Ripple Sound)
Rayman Origins (HKLM-x32\...\{DE491AB9-1D47-4FED-A8F5-4D4325B2EB4B}) (Version: 1.00 - Ubisoft)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.89.716.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7293 - Realtek Semiconductor Corp.)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.8 - Rockstar Games)
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.3.15013.18 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.6.3.15013.18 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.49.0 - SAMSUNG Electronics Co., Ltd.)
Sid Meier's Civilization V (HKLM-x32\...\Sid Meier's Civilization V_is1) (Version:  - )
Skype™ 7.15 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.15.103 - Skype Technologies S.A.)
SMART Produkttreiber (HKLM-x32\...\{53330A17-78DE-458E-9997-292A2D6D3ADD}) (Version: 11.4.872.1 - SMART Technologies ULC)
Sophos Anti-Virus (HKLM-x32\...\{D929B3B5-56C6-46CC-B3A3-A1A784CBB8E4}) (Version: 10.3.15 - Sophos Limited)
Sophos AutoUpdate (HKLM-x32\...\{7CD26A0C-9B59-4E84-B5EE-B386B2F7AA16}) (Version: 4.3.10.27 - Sophos Limited)
Sophos Client Firewall (HKLM-x32\...\{A805FB2A-A844-4cba-8088-CA64087D59E1}) (Version: 2.9.5 - Sophos Limited)
SpeechRedist (HKLM-x32\...\{8795CBED-55E2-4693-9F14-84EC446935BE}) (Version: 1.0.0 - Epic Games Inc.)
Startfenster (HKLM-x32\...\Startfenster) (Version:  - Startfenster)
Steam (HKLM-x32\...\Steam) (Version:  - Valve Corporation)
TeXstudio 2.6.6 (HKLM-x32\...\TeXstudio_is1) (Version: 2.6.6 - Benito van der Zander)
TeXworks 0.4.5 (HKLM-x32\...\{41DA4817-4D2A-4D83-AD02-6A2D95DC8DCB}_is1) (Version:  - TeX Users Group)
The Witcher 3 - Wild Hunt (HKLM-x32\...\The Witcher 3 - Wild Hunt_is1) (Version:  - )
TmNationsForever (HKLM-x32\...\TmNationsForever_is1) (Version:  - Nadeo)
Total War: ROME II - Emperor Edition German (HKLM-x32\...\VG90YWxXYXJST01FSUlFbXBlcm9yRWRpdGlvbg==_is1) (Version: 1 - )
Tunngle (HKLM-x32\...\Tunngle_is1) (Version: 5.2 - Tunngle.net GmbH)
Unreal Tournament 2004 (HKLM-x32\...\UT2004) (Version:  - )
Uplay (HKLM-x32\...\Uplay) (Version: 4.9 - Ubisoft)
ViewNX 2 (HKLM\...\{635BE602-BB9C-4C59-8CC5-93F9366E8A21}) (Version: 2.10.3 - Nikon)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
Windows Driver Package - Garmin (grmnusb) GARMIN Devices  (04/19/2012 2.3.1.0) (HKLM\...\98157A226B40B173301B0F53C8E98C47805D5152) (Version: 04/19/2012 2.3.1.0 - Garmin)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WORLD IN CONFLICT (HKLM-x32\...\{F11ADC64-C89E-47F4-A0B3-3665FF859397}) (Version: 1.0.0.0 - Massive Entertainment AB)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Robson\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {0DF4AC38-A3E8-4F18-890B-26B5C34BA6BB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated)
Task: {2681E2D3-7356-458E-AE92-200C485D50F9} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2013-08-27] (ASUSTek Computer Inc.)
Task: {302FA500-FDB9-403C-9C84-15C6778D8FDF} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation)
Task: {40F67F62-378F-43B0-B756-74437A8A7F94} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-12-15] (Microsoft Corporation)
Task: {7C52A08B-6C5D-4D7F-A1CC-D3224E6ED463} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-28] (Microsoft Corporation)
Task: {7DBAA15A-A69F-4B56-A08E-E87D5CBC0476} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {8C99465C-E08C-4CC5-A4FA-8A25C0867DD2} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation)
Task: {986D8A71-1EE1-4640-9B33-7D0806BB1608} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-28] (Microsoft Corporation)
Task: {AC42710F-5F9A-489F-8835-C8EB414A432F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-01] (Adobe Systems Incorporated)
Task: {BF462ACB-7A14-4E5A-B3DA-0B7C4EA803B8} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask => start sppsvc
Task: {C52043A7-5BE7-4F4E-9E41-0D7E500C21DE} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3349271881-3163170594-1915629682-1001Core => C:\Users\Robson\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19] (Dropbox, Inc.)
Task: {CDA6541D-CE94-4076-8684-DF0B5F7FA5BB} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => c:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-08-01] (Microsoft Corporation)
Task: {DF573579-9C49-4E59-B4EE-E6862F4BBD11} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3349271881-3163170594-1915629682-1001UA => C:\Users\Robson\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19] (Dropbox, Inc.)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3349271881-3163170594-1915629682-1001Core.job => C:\Users\Robson\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-3349271881-3163170594-1915629682-1001UA.job => C:\Users\Robson\AppData\Local\Dropbox\Update\DropboxUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2015-06-25 16:34 - 2015-06-25 16:34 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2015-06-25 16:37 - 2015-06-25 16:37 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-06-25 16:35 - 2015-06-25 16:35 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2015-06-25 16:38 - 2015-06-25 16:38 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-06-25 15:53 - 2015-06-25 15:53 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll
2015-06-25 15:51 - 2015-06-25 15:51 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2015-08-05 18:19 - 2015-07-21 06:02 - 05887808 _____ () C:\Users\Robson\AppData\Local\Amazon Music\Amazon Music Helper.exe
2015-01-27 13:46 - 2013-10-29 14:49 - 00248832 _____ () D:\Program Files (x86)\Drakonia Configurator\hid.exe
2012-01-17 11:24 - 2012-01-17 11:24 - 00055296 _____ () C:\Windows\SysWOW64\ASGT.exe
2015-04-04 12:08 - 2015-10-13 04:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2015-01-08 13:28 - 2015-05-01 15:51 - 00066872 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2015-01-08 13:28 - 2015-05-01 15:51 - 00107832 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2015-01-27 13:46 - 2013-06-26 17:01 - 00240640 _____ () D:\Program Files (x86)\Drakonia Configurator\trayicon.exe
2015-09-23 18:43 - 2015-09-23 18:43 - 00063376 _____ () C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\zlib1.dll
2015-04-04 12:09 - 2015-04-04 12:09 - 00316576 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll
2015-12-13 18:01 - 2015-10-31 01:59 - 00034768 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\faulthandler.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00022848 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\Crypto.Random.OSRNG.winrandom.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00023352 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\Crypto.Util._counter.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00042296 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\Crypto.Cipher._AES.pyd
2015-12-13 18:01 - 2015-10-31 01:59 - 00116688 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\pywintypes27.dll
2015-12-13 18:01 - 2015-10-31 01:59 - 00093640 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\_ctypes.pyd
2015-12-13 18:01 - 2015-10-31 01:59 - 00018376 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\select.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00019760 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00105928 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32api.pyd
2015-12-13 18:01 - 2015-10-31 01:59 - 00392144 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\pythoncom27.dll
2015-12-13 18:01 - 2015-12-08 22:36 - 00381752 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd
2015-12-13 18:01 - 2015-10-31 01:59 - 00692688 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\unicodedata.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00020816 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00109520 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 01737032 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00020808 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00020800 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\_cffi_python_x66cf7a7cx17a72769.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00021840 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00038696 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\fastpath.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00024528 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32event.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00020936 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\mmapfile.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00114640 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32security.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00021320 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_xde9e4433x360333f0.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00124880 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32file.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00030160 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32pipe.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00043472 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32process.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00175560 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32gui.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00028616 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32ts.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32clipboard.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00048592 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32service.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00024392 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00036296 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\librsync.dll
2015-12-13 18:01 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\win32profile.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00117056 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00023376 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd
2015-12-13 18:01 - 2015-10-31 01:59 - 00134608 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\_elementtree.pyd
2015-12-13 18:01 - 2015-10-31 01:59 - 00134088 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\pyexpat.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00240584 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\jpegtran.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00020280 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00052024 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00021304 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\Crypto.Util.strxor.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00350152 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\winxpgui.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00084792 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL
2015-12-13 18:01 - 2015-12-08 22:36 - 01826608 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd
2015-12-13 18:01 - 2015-10-31 02:00 - 00083912 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\sip.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 03891504 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 01950000 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00519984 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00133936 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00225080 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00207672 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00024904 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00486704 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd
2015-12-13 18:01 - 2015-12-08 22:36 - 00357680 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd
2015-03-04 22:45 - 2015-10-31 02:01 - 00019920 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll
2015-03-04 22:45 - 2015-10-31 02:00 - 00786904 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-07-31 14:01 - 2015-10-31 02:00 - 00063448 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-03-04 22:45 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\Robson\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll
2015-01-27 13:46 - 2013-01-15 17:06 - 00061952 _____ () D:\Program Files (x86)\Drakonia Configurator\HidDevice.dll
2015-01-27 13:46 - 2013-11-05 16:31 - 00249856 _____ () D:\Program Files (x86)\Drakonia Configurator\language.dll
2013-12-13 09:39 - 2013-12-13 09:39 - 00278528 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Vender.dll
2013-11-18 09:32 - 2013-11-18 09:32 - 00053248 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Exeio.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SAVService => ""="service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SAVService => ""="service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Sophos Client Firewall => ""="service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Sophos Client Firewall Manager => ""="service"

==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE trusted site: HKU\S-1-5-21-3349271881-3163170594-1915629682-1001\...\sharepoint.com -> hxxps://rwthaachende.sharepoint.com

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-3349271881-3163170594-1915629682-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Robson\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist deaktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

MSCONFIG\startupfolder: C:^Users^Robson^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneDrive for Business.lnk => C:\Windows\pss\OneDrive for Business.lnk.Startup
MSCONFIG\startupreg: Cisco AnyConnect Secure Mobility Agent for Windows => "C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe" -minimized
MSCONFIG\startupreg: GarminExpressTrayApp => "C:\Program Files (x86)\Garmin\Express Tray\tray.exe"
MSCONFIG\startupreg: KiesTrayAgent => D:\Program Files (x86)\Kies\KiesTrayAgent.exe
MSCONFIG\startupreg: sbsdk-server => "D:\Program Files (x86)\SMART Technologies\Education Software\sbsdk-server\NodeLauncher.exe"
MSCONFIG\startupreg: SMART Board Service => "D:\Program Files (x86)\SMART Technologies\Education Software\SMARTBoardService.exe" -d
MSCONFIG\startupreg: SMARTNotification => "D:\Program Files (x86)\SMART Technologies\Education Software\SMARTNotification.exe"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{AABA4B75-3836-4E1C-95C8-2CDFCFCA1938}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe
FirewallRules: [{36DF1AFD-FB28-4711-957C-1F48F2F4EB6A}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe
FirewallRules: [{FC227C49-993D-485E-AF38-F01544597044}] => (Allow) D:\Program Files (x86)\Battlefield 4\bf4_x86.exe
FirewallRules: [{C02FF58B-CB8B-48B5-BE11-714C62DB8405}] => (Allow) D:\Program Files (x86)\Battlefield 4\bf4_x86.exe
FirewallRules: [{91C9373D-0269-47E4-A7E5-9E6CB85A769B}] => (Allow) D:\Program Files (x86)\Battlefield 4\bf4.exe
FirewallRules: [{46DC70FC-6AEE-4D3A-8A31-295D0BF42ABD}] => (Allow) D:\Program Files (x86)\Battlefield 4\bf4.exe
FirewallRules: [{4A65BFCC-E3E7-46A0-BE79-4D75F329C75B}] => (Block) D:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{964180EF-EDEC-4AE0-B830-1C3CE52B65F2}] => (Block) D:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher64.exe
FirewallRules: [{0246CC3E-757B-46D1-BD51-CDD45B2943EA}] => (Block) D:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe
FirewallRules: [{2D7062AC-76AA-4859-AE42-8C270DDBC6CF}] => (Block) D:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{76A170AA-8A6F-46AF-85C4-8AA40CAD445C}] => (Block) D:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher64.exe
FirewallRules: [{925337E0-1230-44FF-9215-7F9A1F326F0D}] => (Block) D:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe
FirewallRules: [{E326A254-A952-4A4C-8052-D03734480887}] => (Block) D:\Program Files (x86)\Battlefield 4\bf4.exe
FirewallRules: [{23962086-8AAC-4AA0-80AD-3C85B85EBCFA}] => (Block) D:\Program Files (x86)\Battlefield 4\bf4.exe
FirewallRules: [TCP Query User{8DC1BB1E-BE8F-421F-8E5B-D8DED7BB0820}D:\program files (x86)\far cry 4\bin\farcry4.exe] => (Block) D:\program files (x86)\far cry 4\bin\farcry4.exe
FirewallRules: [UDP Query User{11582970-BC22-4E14-857E-0C6750D79DE7}D:\program files (x86)\far cry 4\bin\farcry4.exe] => (Block) D:\program files (x86)\far cry 4\bin\farcry4.exe
FirewallRules: [{63F1B903-B12E-4153-BAB0-419C35FCAA7D}] => (Allow) D:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{79C6B51F-0B05-482F-A26C-F633CFEEE761}] => (Allow) D:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{0EA89AB4-E5DA-4907-8422-C0EF82DA476A}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{CB37AC81-3748-4222-9268-ADAB7240BBB2}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{F005756D-EDD5-4B11-9292-4D3342AB6832}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{C10DF180-CDE7-4FAA-8E48-AB8329302B70}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{AA875074-7D08-4CC1-8ED8-50B0BEBA8223}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{8413336B-7B3C-4723-B3F1-CC44199452F7}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{E2B30597-EFFF-4ADE-BEF2-2DCD936F6DD3}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 14\Game\fifa14.exe
FirewallRules: [{C2BBDF4E-0982-433A-9F07-82F414B341C9}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 14\Game\fifa14.exe
FirewallRules: [{E4C71F9A-2289-487A-B7F6-D86031069BFC}] => (Block) D:\Program Files (x86)\Assassin's Creed Unity\ACU.exe
FirewallRules: [{20E4E6CF-D48E-4846-BE33-EE61CEBDCFFD}] => (Block) D:\Program Files (x86)\Assassin's Creed Unity\ACU.exe
FirewallRules: [{2211BE94-4A8B-4EB4-97C2-929AA2630DD2}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{2D2AF73B-3F05-404D-BF70-122A49952DCD}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{CC7A487E-7E03-45F8-B03E-AFE102C96935}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{DD738178-7D0A-450D-9FA7-05D52A12E32E}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{2DA1BE6D-8391-4F2E-8900-2A9E04FDE5DC}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\F1 2014\F1_2014.exe
FirewallRules: [{3B653902-42F7-41D9-ACAE-6341E99A2610}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\F1 2014\F1_2014.exe
FirewallRules: [{C5F2B93E-9ADE-43DA-9588-39BF020604D9}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{F6B13FC6-E858-41B9-8562-708A0FEF8FBD}D:\program files (x86)\arma 3\arma3.exe] => (Allow) D:\program files (x86)\arma 3\arma3.exe
FirewallRules: [UDP Query User{2CC2C3C5-8AA7-4B6F-8C6E-AB518BFD1E98}D:\program files (x86)\arma 3\arma3.exe] => (Allow) D:\program files (x86)\arma 3\arma3.exe
FirewallRules: [TCP Query User{A11A1E2F-24E5-4138-9CCF-B815CB1EF3C0}D:\program files (x86)\tmnationsforever\tmforever.exe] => (Allow) D:\program files (x86)\tmnationsforever\tmforever.exe
FirewallRules: [UDP Query User{70E7A146-83C5-4BBC-AD5C-A001A0ACCBD6}D:\program files (x86)\tmnationsforever\tmforever.exe] => (Allow) D:\program files (x86)\tmnationsforever\tmforever.exe
FirewallRules: [{97B64FBC-9FAF-4699-95B0-1CFEEF22559A}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{6F9C55DD-142B-420A-A959-FB61E74257B1}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{FBA12DF5-AAC2-49CF-97F6-E37CD6CBC9E9}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{6F5A2263-B1BF-4A84-82F5-986377F538AA}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [TCP Query User{B9C11351-0329-41D9-B3EE-51309C95B82D}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{0CD37E19-EE56-4DD0-9B33-DB0E4E03C134}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [{8C2FC1A3-21FA-4C13-BD81-59E4B4E02E5B}] => (Block) D:\Program Files (x86)\Dragon Age Inquisition\DragonAgeInquisition.exe
FirewallRules: [{0F4ED125-5143-4158-A88F-9D5C1F0ECFF4}] => (Block) D:\Program Files (x86)\Dragon Age Inquisition\DragonAgeInquisition.exe
FirewallRules: [{3721A468-97DA-4AE0-AD98-2DCF0301AF38}] => (Allow) C:\Users\Robson\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{9C7F619A-F906-437E-A922-ECAE57BA5BA1}] => (Allow) C:\Users\Robson\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{C53DDDEB-15A7-4487-8F44-914C9743694B}] => (Allow) D:\Program Files (x86)\Codemasters\DiRT 3\dirt3_game.exe
FirewallRules: [{0B4CB484-5E0C-452A-9293-7C50A535E516}] => (Allow) D:\Program Files (x86)\Codemasters\DiRT 3\dirt3_game.exe
FirewallRules: [{EACFA2AE-485C-47CB-86D2-FBFF313DEA8D}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{AB67B04D-F89D-401F-A9A1-62F28EA0F37B}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{79419C8B-C11D-4B18-A33F-66AA4D5E0165}] => (Allow) D:\Program Files (x86)\Codemasters\F1 2011\F1_2011.exe
FirewallRules: [{FAB61C2E-EEAA-4601-9A51-6204D2E46BE8}] => (Allow) D:\Program Files (x86)\Codemasters\F1 2011\F1_2011.exe
FirewallRules: [{FEB6383B-D3CF-4D22-957F-A20C4D4F5781}] => (Allow) D:\Program Files (x86)\SMART Technologies\Education Software\UCGui.exe
FirewallRules: [{EE98204A-0A77-4E91-AFFB-B73AE1F2ED23}] => (Allow) D:\Program Files (x86)\SMART Technologies\Education Software\UCGui.exe
FirewallRules: [{A1A077DD-29FB-4D7E-8FCB-55F9A0FE720E}] => (Allow) D:\Program Files (x86)\SMART Technologies\Education Software\UCService.exe
FirewallRules: [{4499F7D1-D151-4512-89A0-9471A2D80BF4}] => (Allow) D:\Program Files (x86)\SMART Technologies\Education Software\UCService.exe
FirewallRules: [{F621A752-CB18-433E-9E43-88B4B50F6408}] => (Allow) D:\Program Files (x86)\Tunngle\TnglCtrl.exe
FirewallRules: [{09C8C602-92F0-4694-BEB7-47DABCAC5ACF}] => (Allow) D:\Program Files (x86)\Tunngle\TnglCtrl.exe
FirewallRules: [{B0A7609A-AD90-47AE-B3AD-CAACB4B30C83}] => (Allow) D:\Program Files (x86)\Tunngle\Tunngle.exe
FirewallRules: [{C0BDE7B8-D7C2-4F3C-ADF6-26345C323D6C}] => (Allow) D:\Program Files (x86)\Tunngle\Tunngle.exe
FirewallRules: [{E55ACFDF-994A-41AA-9866-BF96FAA9BAA7}] => (Allow) I:\PAYDAY 2\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{D121D22C-6B9B-440F-BDF2-A598CDCFDAA2}] => (Allow) I:\PAYDAY 2\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{C430288E-1683-4104-83ED-13C10452F49D}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{61A165F2-A7B3-4DD8-8174-3219FFA560F6}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 15\fifasetup\fifaconfig.exe
FirewallRules: [{5B92C1F9-2B71-4C50-9052-D6F389328706}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 15\fifasetup\fifaconfig.exe
FirewallRules: [{D5FD6EA7-848C-4CF5-8B50-306BB4AAD66E}] => (Allow) \crime.exe
FirewallRules: [{735DAD17-258C-4A64-B88E-CFAF82F4941B}] => (Allow) \crime.exe
FirewallRules: [{1E3A2473-76C6-40A6-82EB-788E6A8445C1}] => (Allow) D:\Program Files (x86)\PAYDAY 2\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{CF7187EC-3E4B-42E8-B7CF-724E9A302A24}] => (Allow) D:\Program Files (x86)\PAYDAY 2\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{9D8070B6-5E2D-4D2E-9031-1785C740D048}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{91C71D60-7488-417C-85A3-AFB26B7D6F21}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{ADA647D6-8FCC-45B3-B4A3-F6605146B084}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{8963BD8D-3989-47D4-AD73-4F43364EC440}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{2519F603-10FF-4179-84F2-AD97BB135757}] => (Allow) D:\Program Files (x86)\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Game.exe
FirewallRules: [{A4D3E04A-E4F2-4ED6-BF60-59E4A8A658FE}] => (Allow) D:\Program Files (x86)\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Game.exe
FirewallRules: [{D1B40AB7-3B48-430A-AB29-BB217BD5E8D9}] => (Allow) D:\Program Files (x86)\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Launcher.exe
FirewallRules: [{D1F5EFF0-6546-4AB0-B9DA-2B48DFDCBD25}] => (Allow) D:\Program Files (x86)\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Launcher.exe
FirewallRules: [{C5D5DD34-E806-41FD-9B7C-3A8386E5E148}] => (Allow) D:\Program Files (x86)\Sierra Entertainment\WORLD IN CONFLICT\wic.exe
FirewallRules: [{DFDA760F-F6C5-4359-9E81-DAD9A13EA70C}] => (Allow) D:\Program Files (x86)\Sierra Entertainment\WORLD IN CONFLICT\wic.exe
FirewallRules: [{A341BFB1-7D7A-4B6C-8DD9-D135E553BE28}] => (Allow) D:\Program Files (x86)\Sierra Entertainment\WORLD IN CONFLICT\wic_online.exe
FirewallRules: [{4B464B4E-A804-4EF1-9626-E060D0177A9C}] => (Allow) D:\Program Files (x86)\Sierra Entertainment\WORLD IN CONFLICT\wic_online.exe
FirewallRules: [{591066D6-7A70-472C-BD31-0CE4E7575A33}] => (Allow) D:\Program Files (x86)\Sierra Entertainment\WORLD IN CONFLICT\wic_ds.exe
FirewallRules: [{AC9D2DDE-9170-47FD-AA17-4B4989D1E886}] => (Allow) D:\Program Files (x86)\Sierra Entertainment\WORLD IN CONFLICT\wic_ds.exe
FirewallRules: [{FBF17904-65C6-4DE4-B303-DF9D5B7E1072}] => (Block) D:\Program Files (x86)\The Witcher 3 Wild Hunt\bin\x64\witcher3.exe
FirewallRules: [{C8B08833-6580-4927-A8D2-1CCB34D1F9EF}] => (Block) D:\Program Files (x86)\The Witcher 3 Wild Hunt\bin\x64\witcher3.exe
FirewallRules: [{5F4F9D25-7C16-4C0B-AE38-5C6E4BACE8C8}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{EAC0A32A-8A11-45AB-B859-83C6A9CBC590}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{2DE54F82-C110-4EDE-9E0B-EB81FFDCA99C}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{DB6A5654-F520-4041-9CCE-CACD6B02CFC1}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{4B9ACD62-5FF5-4C6A-8128-AB77163F9DA4}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{1390D4DD-4488-4E0A-BC99-DD1597819E95}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{47C9F398-67C7-4BD3-B3F5-54522336D492}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{72459D3E-D065-4C64-803A-0C2EBA594369}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{E76912D5-BBCD-4B42-A607-6328738BFC21}] => (Block) D:\Program Files\Call of Duty Black Ops III\BlackOps3.exe
FirewallRules: [{1045C205-7FD9-47C2-BEFA-FE6A501BF811}] => (Block) D:\Program Files\Call of Duty Black Ops III\BlackOps3.exe
FirewallRules: [{5936F866-2F5A-41C3-B012-5B0CA8E77BFA}] => (Block) D:\ProgramFiles\RockstarGames\L.A.Noire\LANoire.exe
FirewallRules: [{E39984EE-84E5-414A-B949-B254953C0FBA}] => (Block) D:\ProgramFiles\RockstarGames\L.A.Noire\LANoire.exe
FirewallRules: [{4529BBAD-4B16-48CE-91E3-2558FC7450D6}] => (Block) D:\ProgramFiles\RockstarGames\L.A.Noire\LANLauncher.exe
FirewallRules: [{212006F2-7607-4156-B5AC-3CB31F462C3D}] => (Block) D:\ProgramFiles\RockstarGames\L.A.Noire\LANLauncher.exe
FirewallRules: [{63122799-736C-478E-A002-A86CFDD02A60}] => (Block) D:\ProgramFiles\RockstarGames\L.A.Noire\LANPatcher.exe
FirewallRules: [{17CE7C72-D407-44D1-BFBA-7FC465CFA9B9}] => (Block) D:\ProgramFiles\RockstarGames\L.A.Noire\LANPatcher.exe
FirewallRules: [{4086F9ED-518E-48F9-9BE5-92D07036A2B8}] => (Block) D:\ProgramFiles\RockstarGames\L.A.Noire\LANPatcher.exe
FirewallRules: [{3517164E-DBC0-4AE0-9DC1-9452D60FCC53}] => (Block) D:\ProgramFiles\RockstarGames\L.A.Noire\LANPatcher.exe
FirewallRules: [{7AE12D94-7264-42A9-A80F-00AFE793880B}] => (Allow) D:\Program Files (x86)\Ubisoft\Rayman Origins\Rayman Origins.exe
FirewallRules: [{C68BB94D-784F-45FF-B453-5D48BB8A6BAF}] => (Allow) D:\Program Files (x86)\Ubisoft\Rayman Origins\Rayman Origins.exe
FirewallRules: [{B2C5099A-5800-4A97-B7D8-6C4B6257524E}] => (Allow) D:\Program Files (x86)\Ubisoft\Rayman Origins\gu.exe
FirewallRules: [{99B1C54E-776B-4B3B-AA01-267286F5ABAA}] => (Allow) D:\Program Files (x86)\Ubisoft\Rayman Origins\gu.exe
FirewallRules: [{14DE53C4-390D-41CF-ACC9-B05462E8186A}] => (Block) D:\Program Files (x86)\Ubisoft\Rayman Origins\Rayman Origins.exe
FirewallRules: [{9626C481-800E-407D-9E8C-0B8DD8FEDCD4}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 16\fifasetup\fifaconfig.exe
FirewallRules: [{C20CBE09-1C36-4259-80CB-235D886D65B8}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 16\fifasetup\fifaconfig.exe
FirewallRules: [{9BAC59B2-A4CA-49EA-B00B-F421C6F99C51}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe
FirewallRules: [{7BDF1B6D-70D5-486F-9392-81FDEC0CC89B}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe

==================== Wiederherstellungspunkte =========================

20-12-2015 19:00:41 Windows-Sicherung
22-12-2015 09:17:11 Windows Update
26-12-2015 17:37:30 Windows Update
01-01-2016 02:02:42 Windows Update
01-01-2016 17:59:28 Windows-Sicherung
02-01-2016 15:29:05 Installiert "ViewNX 2"

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Cisco Systems
Service: vpnva
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: AODDriver4.1
Description: AODDriver4.1
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: AODDriver4.1
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: AODDriver4.2.0
Description: AODDriver4.2.0
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: AODDriver4.2.0
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (01/02/2016 04:45:23 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "ALMsg,type="win32",version="1.0.0.0"1".
Die abhängige Assemblierung "ALMsg,type="win32",version="1.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (01/02/2016 11:58:27 AM) (Source: SideBySide) (EventID: 75) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Mehrere requestedPrivileges-Elemente sind nicht im Manifest zulässig.

Error: (01/02/2016 11:57:56 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"1". Fehler in Manifest- oder Richtliniendatei "UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"2" in Zeile  UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.

Error: (01/02/2016 10:57:05 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2016 07:28:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: vlc.exe, Version: 2.1.5.0, Zeitstempel: 0x00000000
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.19045, Zeitstempel: 0x56259295
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000004ac04
ID des fehlerhaften Prozesses: 0x488
Startzeit der fehlerhaften Anwendung: 0xvlc.exe0
Pfad der fehlerhaften Anwendung: vlc.exe1
Pfad des fehlerhaften Moduls: vlc.exe2
Berichtskennung: vlc.exe3

Error: (01/01/2016 05:50:17 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/01/2016 02:02:37 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: jucheck.exe, Version: 2.8.60.27, Zeitstempel: 0x55c116b1
Name des fehlerhaften Moduls: jucheck.exe, Version: 2.8.60.27, Zeitstempel: 0x55c116b1
Ausnahmecode: 0x40000015
Fehleroffset: 0x00052d24
ID des fehlerhaften Prozesses: 0x1718
Startzeit der fehlerhaften Anwendung: 0xjucheck.exe0
Pfad der fehlerhaften Anwendung: jucheck.exe1
Pfad des fehlerhaften Moduls: jucheck.exe2
Berichtskennung: jucheck.exe3

Error: (01/01/2016 01:58:53 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/26/2015 06:49:59 PM) (Source: SideBySide) (EventID: 75) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Mehrere requestedPrivileges-Elemente sind nicht im Manifest zulässig.

Error: (12/26/2015 06:49:25 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"1". Fehler in Manifest- oder Richtliniendatei "UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"2" in Zeile  UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.


Systemfehler:
=============
Error: (01/02/2016 12:27:56 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR4 gefunden.

Error: (01/02/2016 12:27:56 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR4 gefunden.

Error: (01/02/2016 12:27:55 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR4 gefunden.

Error: (01/02/2016 12:27:55 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR4 gefunden.

Error: (01/02/2016 12:27:54 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR4 gefunden.

Error: (01/02/2016 12:27:49 PM) (Source: volsnap) (EventID: 27) (User: )
Description: Die Schattenkopien von Volume "H:" wurden während der Ermittlung abgebrochen, weil eine kritische Steuerungsdatei nicht geöffnet werden konnte.

Error: (01/02/2016 12:27:49 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR3 gefunden.

Error: (01/02/2016 12:27:48 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR3 gefunden.

Error: (01/02/2016 12:27:48 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR3 gefunden.

Error: (01/02/2016 12:27:47 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR3 gefunden.


==================== Speicherinformationen =========================== 

Prozessor: AMD Athlon(tm) II X4 640 Processor
Prozentuale Nutzung des RAM: 34%
Installierter physikalischer RAM: 8191.18 MB
Verfügbarer physikalischer RAM: 5338.41 MB
Summe virtueller Speicher: 16380.57 MB
Verfügbarer virtueller Speicher: 13274.64 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:97.56 GB) (Free:35.84 GB) NTFS
Drive d: () (Fixed) (Total:368.1 GB) (Free:217.94 GB) NTFS
Drive f: (INTENSO) (Fixed) (Total:2794.25 GB) (Free:2544.43 GB) FAT32
Drive h: (TOSHIBA EXT) (Fixed) (Total:1863.01 GB) (Free:43.65 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 50580741)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=97.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=368.1 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 6725E595)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
Attempted reading MBR returned 0 bytes.
 Could not read MBR for disk 2.

==================== Ende von Addition.txt ============================
         

Geändert von Roshimitsu (02.01.2016 um 18:34 Uhr) Grund: Neue Fehlermeldung

Antwort

Themen zu Windows 7: Alle Programme einer Partition verschwunden, auch die Verzeichnisse
.dll, adobe, computer, defender, desktop, dnsapi.dll, explorer, firefox, firewall, flash player, launch, mozilla, mp3, office 365, problem, prozesse, realtek, registry, scan, services.exe, sierra, software, svchost.exe, system, temp, udp, usb, windows, winlogon.exe




Ähnliche Themen: Windows 7: Alle Programme einer Partition verschwunden, auch die Verzeichnisse


  1. Alle Dateien vom Desktop verschwunden - bis auf 4 Verknüpfungen (Windows 7 Pro)
    Log-Analyse und Auswertung - 05.09.2015 (26)
  2. Alle Dateien vom Desktop verschwunden - bis auf 4 Verknüpfungen (Windows 7 Pro)
    Alles rund um Windows - 03.09.2015 (8)
  3. Windows 7 . alle windows programme weden auf den MediaPlayr umgeleitet
    Log-Analyse und Auswertung - 25.08.2015 (1)
  4. Programme auf einer Partition deinstallieren / löschen sich selbstständig
    Plagegeister aller Art und deren Bekämpfung - 08.03.2015 (5)
  5. MyPC Backup - Partition verschwunden
    Log-Analyse und Auswertung - 05.11.2013 (1)
  6. Computer mit Trojanern voll, Partition verschwunden, dunkler Bildschirm
    Plagegeister aller Art und deren Bekämpfung - 11.03.2013 (103)
  7. Partition verschwunden
    Alles rund um Windows - 21.10.2012 (6)
  8. schwarzer desktop und alle datein + programme verschwunden
    Log-Analyse und Auswertung - 07.10.2012 (26)
  9. Desktop schwarz und alle Programme im Startmenü verschwunden
    Plagegeister aller Art und deren Bekämpfung - 07.10.2012 (3)
  10. XP: Trojaner HDD Rescue und Win32/Kryptic.YSQ - Desktop und Partition verschwunden
    Plagegeister aller Art und deren Bekämpfung - 27.02.2012 (35)
  11. "Windows Fix Disk"-Problem und alle Daten und Programme scheinbar verschwunden
    Plagegeister aller Art und deren Bekämpfung - 15.04.2011 (4)
  12. rücksicherung einer partition nicht erkannt ....
    Alles rund um Windows - 20.07.2009 (4)
  13. Trojaner blockt alle Programme Antivir auch!
    Plagegeister aller Art und deren Bekämpfung - 07.05.2009 (6)
  14. Es funktionieren keine dateien mehr auf einer Partition
    Plagegeister aller Art und deren Bekämpfung - 25.02.2007 (5)
  15. Partition verschwunden
    Alles rund um Windows - 21.06.2006 (4)
  16. Formatieren einer einzelnen Partition?
    Alles rund um Windows - 19.06.2005 (2)
  17. Partition verschwunden
    Alles rund um Windows - 19.06.2005 (2)

Zum Thema Windows 7: Alle Programme einer Partition verschwunden, auch die Verzeichnisse - Liebes Forum und liebe Helfer, das Symptom habe ich zum ersten Mal vor etwa einer Stunde bemerkt. Wie lange die Ursache existiert kann ich nicht sagen. Das Problem ist, dass - Windows 7: Alle Programme einer Partition verschwunden, auch die Verzeichnisse...
Archiv
Du betrachtest: Windows 7: Alle Programme einer Partition verschwunden, auch die Verzeichnisse auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.