|
Plagegeister aller Art und deren Bekämpfung: Datensicherung auf womöglich verseuchten externen FestplatteWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
10.02.2016, 20:39 | #1 |
| Datensicherung auf womöglich verseuchten externen Festplatte Guten Abend Community von Trojaner-Board, ich habe viel in diesem Forums gelesen und mich nun dazu entschlossen bei euch um Rat zu fragen. Wenn ich irgendwas falsch mache tut es mir Leid, dies ist mein erster Beitrag. Ich schildere am besten was passiert ist. Ich bin nach einiger Zeit skeptisch geworden, da mein Windows beim updaten immer eine Fehlermeldung hatte. ÜBER Google fand ich heraus, dass diese Fehlermeldung gerne mit einem Trojaner im Zusammenhang steht. Über diesen Forums habe ich dann Spybot installiert und laufen lassen. Eine infizierte Toolbar, welche deaktiviert schlummerte wurde als starke Bedrohung erkannt und entfernt. Da das alles nun aber schon länger her ist habe ich leider keine Namen des Schädlings. Ich dachte mir das es eh Zeit wurde den PC mal wieder platt zu machen, ABER meine externe Festplatte mit wichtigen Daten (hauptsächlich Bilder), hang die gesamte Zeit über am System. Was mich auch stutzig macht ist das ich nicht mehr in meine E-Konten hineingezogen bin (erst nach Löschung des Problems) und das sich nach dem Löschen der Bedrohung nun immer ein Programm bis zu Zehn mal versucht zu starten, welches aber durch avast antivir blockiert wird. Auch dessen Pfad habe ich vergebens bei avast gesucht und nicht gefunden. Den PC mache ich auf jeden Fall platt, aber was mache ich mit meiner externen Festplatte? Und ja es war dumm die Backupdaten auf ihr zu lagern, obwohl sie immer am System hängt... Diesen Text habe ich mit meinem Tablet geschrieben, da ich den PC nicht mehr an das Internet lassen will. Mit freundlichen Grüßen Dexrano |
11.02.2016, 21:32 | #2 |
/// TB-Ausbilder /// Anleitungs-Guru | Datensicherung auf womöglich verseuchten externen Festplatte Bitte mit dem betroffenen PC die Anweisungen abarbeiten.
__________________Mein Name ist Jürgen und ich werde Dir bei Deinem Problem behilflich sein. Zusammen schaffen wir das...
Hinweis: Ich kann Dir niemals eine Garantie geben, dass wir alle schädlichen Dateien finden werden. Eine Formatierung ist meist der schnellere und immer der sicherste Weg, aber auch nur bei wirklicher Malware empfehlenswert. Adware & Co. können wir sehr gut entfernen. Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis Du mein clean bekommst. Los geht's: Schritt 1 Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff Posten in CODE-Tags: So gehts... Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert uns massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
21.03.2016, 17:58 | #3 |
| Datensicherung auf womöglich verseuchten externen FestplatteCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:05-03-2016 01 durchgeführt von Retard (ACHTUNG: der Benutzer ist kein Administrator) auf EDE-PC (21-03-2016 17:50:59) Gestartet von C:\Users\Retard\Downloads Geladene Profile: Retard (Verfügbare Profile: Ede & Retard) Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) Sprache: Deutsch (Deutschland) Internet Explorer Version 9 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) konnte nicht auf den Prozess zugreifen -> smss.exe konnte nicht auf den Prozess zugreifen -> csrss.exe konnte nicht auf den Prozess zugreifen -> wininit.exe konnte nicht auf den Prozess zugreifen -> csrss.exe konnte nicht auf den Prozess zugreifen -> services.exe konnte nicht auf den Prozess zugreifen -> winlogon.exe konnte nicht auf den Prozess zugreifen -> lsass.exe konnte nicht auf den Prozess zugreifen -> lsm.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> nvvsvc.exe konnte nicht auf den Prozess zugreifen -> nvSCPAPISvr.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> UMVPFSrv.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> AvastSvc.exe konnte nicht auf den Prozess zugreifen -> wlanext.exe konnte nicht auf den Prozess zugreifen -> conhost.exe konnte nicht auf den Prozess zugreifen -> nvxdsync.exe konnte nicht auf den Prozess zugreifen -> nvvsvc.exe konnte nicht auf den Prozess zugreifen -> taskeng.exe konnte nicht auf den Prozess zugreifen -> spoolsv.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> AcerSyncSystemService.exe konnte nicht auf den Prozess zugreifen -> armsvc.exe konnte nicht auf den Prozess zugreifen -> AppleMobileDeviceService.exe konnte nicht auf den Prozess zugreifen -> mDNSResponder.exe konnte nicht auf den Prozess zugreifen -> SkypeC2CAutoUpdateSvc.exe konnte nicht auf den Prozess zugreifen -> SkypeC2CPNRSvc.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> E_S40RP7.EXE konnte nicht auf den Prozess zugreifen -> nutsrv4.exe konnte nicht auf den Prozess zugreifen -> portmap.exe konnte nicht auf den Prozess zugreifen -> RzKLService.exe konnte nicht auf den Prozess zugreifen -> SDFSSvc.exe konnte nicht auf den Prozess zugreifen -> SDUpdSvc.exe konnte nicht auf den Prozess zugreifen -> WifiSvc.exe konnte nicht auf den Prozess zugreifen -> SDWSCSvc.exe konnte nicht auf den Prozess zugreifen -> WUDFHost.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\48.0.2564.97\Installer\chrmstp.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> svchost.exe konnte nicht auf den Prozess zugreifen -> wmpnetwk.exe konnte nicht auf den Prozess zugreifen -> officeclicktorun.exe konnte nicht auf den Prozess zugreifen -> msiexec.exe konnte nicht auf den Prozess zugreifen -> SearchIndexer.exe (Logitech(c)) C:\Program Files\Logitech\G35\G35.exe konnte nicht auf den Prozess zugreifen -> svchost.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe konnte nicht auf den Prozess zugreifen -> WmiPrvSE.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe konnte nicht auf den Prozess zugreifen -> SearchProtocolHost.exe konnte nicht auf den Prozess zugreifen -> SearchFilterHost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [Logitech G35] => C:\Program Files\Logitech\G35\G35.exe [1811800 2010-10-05] (Logitech(c)) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7139256 2016-03-21] (AVAST Software) HKLM\...\Run: [] => [X] HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [597040 2015-12-22] (Oracle Corporation) HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X] ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Keine Datei ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Keine Datei ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => Keine Datei ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2016-03-21] (AVAST Software) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2011-12-08] ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation) BootExecute: autocheck autochk * sdnclean.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.) Winsock: Catalog9 11 C:\Windows\system32\nutafun4.dll [164232 2012-10-12] (MKS Software Inc.) Winsock: Catalog9 12 C:\Windows\system32\nutafun4.dll [164232 2012-10-12] (MKS Software Inc.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 Tcpip\..\Interfaces\{4C4ACC83-C1F0-4446-AFC3-CDDBB9CCD9A0}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{526A63F6-35D3-4653-AFB9-69028E8AA039}: [DhcpNameServer] 192.168.2.1 192.168.2.1 Tcpip\..\Interfaces\{7346A3FB-B682-432B-8A4C-942F0336833A}: [DhcpNameServer] 192.168.2.1 192.168.2.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617912&ResetID=130896628347822265&GUID=0677C8D2-0B16-46C0-8380-315CCC97E4FA HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = SearchScopes: HKLM -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1 SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyB0AyBzytCzy0C0AtD0E0FtDyCtDtCtBtN0D0Tzu0SyByEyCtN1L2XzutBtFtBtFtCyDtFtCyDzytBtN1L1CzutDzytDtCtG1T&cr=903789483&ir= SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1436379094&z=55d8ffaf114c4f718754dc3gez0c5qfcbmatee1b7m&from=cvs5&uid=WDCXWD3201ABYS-01B9A0_WD-WCARW436360863608&q={searchTerms} SearchScopes: HKLM -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = hxxps://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms} SearchScopes: HKLM -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1 BHO: Kein Name -> {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} -> Keine Datei BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_72\bin\ssv.dll [2016-01-25] (Oracle Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-03-21] (AVAST Software) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2016-03-21] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_72\bin\jp2ssv.dll [2016-01-25] (Oracle Corporation) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_21-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL [2001-01-22] (Microsoft Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-05-22] (Microsoft Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Retard\AppData\Roaming\Mozilla\Firefox\Profiles\knpqxevq.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_20_0_0_267.dll [2016-01-08] () FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.) FF Plugin: @java.com/DTPlugin,version=11.72.2 -> C:\Program Files\Java\jre1.8.0_72\bin\dtplugin\npDeployJava1.dll [2016-01-25] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.72.2 -> C:\Program Files\Java\jre1.8.0_72\bin\plugin2\npjp2.dll [2016-01-25] (Oracle Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-05-22] (Microsoft Corporation) FF Plugin: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npnxgameEU.dll [2014-01-30] (Nexon) FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-08-07] (NVIDIA Corporation) FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-08-07] (NVIDIA Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.) FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2016-01-08] [ist nicht signiert] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2016-01-08] [ist nicht signiert] FF Extension: Skype - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2016-01-06] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-03-21] FF HKLM\...\Firefox\Extensions: [searchffv2@gmail.com] - C:\Users\Ede\AppData\Roaming\Mozilla\Firefox\Profiles\j843skls.default\extensions\searchffv2@gmail.com => nicht gefunden FF HKLM\...\Firefox\Extensions: [sweetsearch@gmail.com] - C:\Users\Ede\AppData\Roaming\Mozilla\Firefox\Profiles\j843skls.default\extensions\sweetsearch@gmail.com => nicht gefunden FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-03-21] Chrome: ======= CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-03-21] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AcerSyncSystemService; C:\Program Files\Acer\AcerSync\AcerSyncSystemService.exe [60312 2011-06-16] () R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [237096 2016-03-21] (AVAST Software) R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [1916656 2016-02-09] (Microsoft Corporation) R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION) R2 lmhosts; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation) R2 NlaSvc; C:\Windows\System32\svchost.exe [20992 2009-07-14] (Microsoft Corporation) R2 nsi; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation) R2 NuTCRACKERService; C:\Windows\system32\nutsrv4.exe [422280 2012-10-12] (MKS Software Inc.) R2 PortmapperService; C:\/PTC Portmapper/i486_nt/obj/portmap.exe [499712 2014-12-02] (PTC Inc.) [Datei ist nicht signiert] R2 RzKLService; C:\Program Files\Razer\Razer Game Booster\RzKLService.exe [106472 2013-09-18] (Razer Inc.) R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 UMVPFSrv; C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848 2012-01-18] (Logitech Inc.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation) R2 WSWNDA3100v2; C:\Program Files\NETGEAR\WNDA3100v2\WifiSvc.exe [316120 2014-08-18] () S3 AvastVBoxSvc; "C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X] S3 DAUpdaterSvc; F:\Games\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [32792 2016-03-21] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [91168 2016-03-21] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [91232 2016-03-21] (AVAST Software) R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [58776 2016-03-21] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [816304 2016-03-21] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [447848 2016-03-21] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [127432 2016-03-21] (AVAST Software) R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [221240 2016-03-21] (AVAST Software) S3 athr; C:\Windows\System32\DRIVERS\athr.sys [1882624 2011-02-08] (Atheros Communications, Inc.) [Datei ist nicht signiert] R3 BCMH43XX; C:\Windows\System32\DRIVERS\bcmwlhigh6.sys [1093368 2015-03-02] (Broadcom Corporation) R3 cmpci; C:\Windows\System32\drivers\cmaudio.sys [374094 2002-03-26] (C-Media Inc) S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.) S3 InputFilter_Hid_FlexDef2b; C:\Windows\System32\DRIVERS\InputFilter_FlexDef2b.sys [14848 2010-06-19] (Siliten) S3 LADF_DHP2; C:\Windows\System32\DRIVERS\ladfDHP2i386.sys [53976 2010-09-29] (Logitech) S3 LADF_SBVM; C:\Windows\System32\DRIVERS\ladfSBVMi386.sys [335064 2010-09-29] (Logitech) S3 MouFilter_Mou_FlexDef4; C:\Windows\System32\DRIVERS\MouFilter_FlexDef4.sys [11776 2010-10-20] (Siliten) S3 NPF; C:\Windows\System32\DRIVERS\npf.sys [50704 2010-02-03] (CACE Technologies, Inc.) S3 Ph6xIB32; C:\Windows\System32\DRIVERS\Ph6xIB32.sys [1277952 2009-07-13] (NXP Semiconductors GmbH) S3 qcusbser; C:\Windows\System32\DRIVERS\qcusbser.sys [105984 2009-08-14] (QUALCOMM Incorporated) S3 RTL8187B; C:\Windows\System32\DRIVERS\wg111v3.sys [376832 2009-11-18] (NETGEAR Inc. ) S3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [34856 2014-04-09] (Razer Inc) R3 rzudd; C:\Windows\System32\DRIVERS\rzudd.sys [175040 2015-09-03] (Razer Inc) R0 SCMNdisP; C:\Windows\System32\DRIVERS\scmndisp.sys [21472 2011-07-22] (Windows (R) Win 7 DDK provider) S3 SCREAMINGBDRIVER; C:\Windows\System32\drivers\ScreamingBAudio.sys [34896 2014-02-07] (Screaming Bee LLC) S3 cpuz134; \??\C:\Users\Ede\AppData\Local\Temp\cpuz134\cpuz134_x32.sys [X] S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X] S2 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] S3 XDva404; \??\C:\Windows\system32\XDva404.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-21 17:50 - 2016-03-21 17:51 - 00019055 _____ C:\Users\Retard\Downloads\FRST.txt 2016-03-21 17:50 - 2016-03-21 17:50 - 01725440 _____ (Farbar) C:\Users\Retard\Downloads\FRST.exe 2016-03-21 17:50 - 2016-03-21 17:50 - 00000000 ____D C:\FRST 2016-03-21 17:47 - 2016-03-21 17:47 - 00000000 ____D C:\Users\Retard\AppData\Roaming\Mozilla 2016-03-21 17:47 - 2016-03-21 17:47 - 00000000 ____D C:\Users\Retard\AppData\Roaming\AVAST Software 2016-03-21 17:47 - 2016-03-21 17:47 - 00000000 ____D C:\Users\Retard\AppData\Local\Mozilla 2016-03-21 17:46 - 2016-03-21 17:46 - 00001413 _____ C:\Users\Retard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-03-21 17:32 - 2016-03-21 17:46 - 00002197 _____ C:\Users\Retard\Desktop\Google Chrome.lnk 2016-03-21 17:32 - 2016-03-21 17:32 - 00000000 ____D C:\Users\Retard\AppData\Local\Google 2016-03-21 17:29 - 2016-03-21 17:32 - 00000000 ____D C:\Users\Retard 2016-03-21 17:29 - 2016-03-21 17:29 - 00000020 ___SH C:\Users\Retard\ntuser.ini 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\Vorlagen 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\Startmenü 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\Netzwerkumgebung 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\Lokale Einstellungen 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\Eigene Dateien 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\Druckumgebung 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\Documents\Eigene Videos 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\Documents\Eigene Musik 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\Documents\Eigene Bilder 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\AppData\Local\Verlauf 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\AppData\Local\Anwendungsdaten 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 _SHDL C:\Users\Retard\Anwendungsdaten 2016-03-21 17:29 - 2016-03-21 17:29 - 00000000 ____D C:\Users\Retard\AppData\Local\VirtualStore 2016-03-21 17:29 - 2015-10-18 18:08 - 00000000 ____D C:\Users\Retard\AppData\Local\Microsoft Help 2016-03-21 17:29 - 2015-05-20 20:04 - 00002082 _____ C:\Users\Retard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk 2016-03-21 17:29 - 2011-04-12 02:38 - 00000000 ____D C:\Users\Retard\AppData\Roaming\Media Center Programs 2016-03-21 17:27 - 2016-03-21 17:27 - 00334280 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2016-03-21 17:27 - 2016-03-21 17:27 - 00052184 _____ (AVAST Software) C:\Windows\avastSS.scr ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-21 17:44 - 2015-05-20 19:59 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-03-21 17:43 - 2015-05-20 19:58 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-03-21 17:39 - 2009-07-14 05:34 - 00023680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-03-21 17:39 - 2009-07-14 05:34 - 00023680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-03-21 17:35 - 2014-09-09 23:39 - 00001098 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-03-21 17:33 - 2014-12-30 15:03 - 00000542 _____ C:\Windows\Tasks\MATLAB R2014a Startup Accelerator.job 2016-03-21 17:32 - 2014-09-09 23:39 - 00001094 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-03-21 17:30 - 2011-10-28 16:07 - 00000000 ____D C:\ProgramData\NVIDIA 2016-03-21 17:30 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-03-21 17:28 - 2013-04-01 18:53 - 00221240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys 2016-03-21 17:28 - 2011-10-27 22:14 - 00816304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys 2016-03-21 17:28 - 2011-10-27 22:14 - 00447848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2016-03-21 17:28 - 2011-10-27 22:14 - 00091168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswmonflt.sys 2016-03-21 17:27 - 2014-05-05 20:29 - 00032792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2016-03-21 17:27 - 2014-02-11 22:17 - 00127432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2016-03-21 17:27 - 2013-04-01 18:53 - 00058776 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2016-03-21 17:27 - 2012-05-27 20:24 - 00091232 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2008-11-22 01:20 - 2008-11-22 01:20 - 0007725 _____ () C:\Program Files\Sims2 eXtreme uninstall.bat ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert ACHTUNG: ==> Auf den BCD konnte nicht zugegriffen werden. der Benutzer ist kein Administrator ==================== Ende vom FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x86) Version:05-03-2016 01 durchgeführt von Retard (2016-03-21 17:51:29) Gestartet von C:\Users\Retard\Downloads Microsoft Windows 7 Ultimate Service Pack 1 (X86) (2011-10-05 12:57:27) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3925520561-2683073460-2419899363-500 - Administrator - Disabled) Ede (S-1-5-21-3925520561-2683073460-2419899363-1000 - Administrator - Enabled) => C:\Users\Ede Gast (S-1-5-21-3925520561-2683073460-2419899363-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-3925520561-2683073460-2419899363-1002 - Limited - Enabled) Retard (S-1-5-21-3925520561-2683073460-2419899363-1005 - Limited - Enabled) => C:\Users\Retard ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Acer Sync (HKLM\...\{1FA08A70-6E60-4E06-90B6-7B96A741E9E0}) (Version: 1.06.3006 - Acer Incorporated) Adobe Acrobat Reader DC - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20056 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 20.0.0.267 - Adobe Systems Incorporated) Age of Empires II: HD Edition (HKLM\...\Steam App 221380) (Version: - Hidden Path Entertainment, Ensemble Studios) Amnesia: The Dark Descent (HKLM\...\Steam App 57300) (Version: - ) Antichamber (HKLM\...\Steam App 219890) (Version: - Alexander Bruce) Apple Application Support (HKLM\...\{CCE825DB-347A-4004-A186-5F4A6FDD8547}) (Version: 2.3.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{459699C3-9430-4381-964B-4248D87B49F9}) (Version: 6.0.1.3 - Apple Inc.) Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Avast Free Antivirus (HKLM\...\avast) (Version: 11.1.2253 - AVAST Software) Awesomenauts (HKLM\...\Steam App 204300) (Version: - ) Bastion (HKLM\...\Steam App 107100) (Version: - Supergiant Games) Beatbuddy: Tale of the Guardians (HKLM\...\Steam App 231040) (Version: - Threaks) Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.) Braid (HKLM\...\Steam App 26800) (Version: - Number None, Inc.) Canon IJ Network Scanner Selector EX (HKLM\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - Canon Inc.) Canon IJ Network Tool (HKLM\...\Canon_IJ_Network_UTILITY) (Version: 3.1.0 - Canon Inc.) Canon IJ Scan Utility (HKLM\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.) Canon MG4200 series Benutzerregistrierung (HKLM\...\Canon MG4200 series Benutzerregistrierung) (Version: - Canon Inc.) Canon MG4200 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG4200_series) (Version: 1.01 - Canon Inc.) Canon MG4200 series On-screen Manual (HKLM\...\Canon MG4200 series On-screen Manual) (Version: 7.5.0 - Canon Inc.) Canon My Image Garden (HKLM\...\Canon My Image Garden) (Version: 1.1.2 - Canon Inc.) Canon My Image Garden Design Files (HKLM\...\Canon My Image Garden Design Files) (Version: 1.0.1 - Canon Inc.) Canon My Printer (HKLM\...\CanonMyPrinter) (Version: 3.0.0 - Canon Inc.) Capsized (HKLM\...\Steam App 95300) (Version: - Alientrap Games Inc) Cry of Fear (HKLM\...\Steam App 223710) (Version: - Team Psykskallar) Dear Esther (HKLM\...\Steam App 203810) (Version: - thechineseroom & Robert Briscoe) Desperados 2 (HKLM\...\{37155929-A51F-4BAB-B141-50B341F3299C}) (Version: 1.01.0000 - Atari) Desperados 2 Update v1.01 (HKLM\...\Desperados 2 Update v1.01) (Version: 1.01 - Spellbound Studios GmbH) Die Siedler III Gold Edition (HKLM\...\S3) (Version: - ) Doom 3 (HKLM\...\InstallShield_{EEFB15EB-FE8B-47DF-A496-1C4D1420294A}) (Version: 1.00.0000 - Activision) Doom 3 (Version: 1.00.0000 - Activision) Hidden Doom 3 (Version: 1.2 - Activision) Hidden DOOM 3: Resurrection of Evil (HKLM\...\InstallShield_{04347DFD-87B6-4E30-B14D-5DF2888AD8F5}) (Version: 1.0 - Activision) DOOM 3: Resurrection of Evil (Version: 1.0 - Activision) Hidden Dragon Age: Origins - Ultimate Edition (HKLM\...\Steam App 47810) (Version: - BioWare) EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version: - SEIKO EPSON Corporation) Facebook Video Calling 3.1.0.521 (HKLM\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) Fallout: New Vegas (HKLM\...\Steam App 22380) (Version: - Bethesda Softworks) Fraps (remove only) (HKLM\...\Fraps) (Version: - ) Garry's Mod (HKLM\...\Steam App 4000) (Version: - Facepunch Studios) GIMP 2.6.12 (HKLM\...\WinGimp-2.0_is1) (Version: 2.6.12 - The GIMP Team) Google Chrome (HKLM\...\Google Chrome) (Version: 48.0.2564.97 - Google Inc.) Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (Version: 1.3.29.5 - Google Inc.) Hidden Grand Theft Auto III (HKLM\...\Steam App 12100) (Version: - Rockstar Games) Grand Theft Auto Vice City (HKLM\...\{4B35F00C-E63D-40DC-9839-DF15A33EAC46}) (Version: 1.00.000 - ) GTA2 (HKLM\...\GTA2) (Version: - ) Half-Life 2 (HKLM\...\Steam App 220) (Version: - Valve) Half-Life 2: Episode One (HKLM\...\Steam App 380) (Version: - Valve) Half-Life 2: Episode Two (HKLM\...\Steam App 420) (Version: - Valve) Half-Life 2: Lost Coast (HKLM\...\Steam App 340) (Version: - Valve) Hammerwatch (HKLM\...\Steam App 239070) (Version: - ) Heroes of Might and Magic V (HKLM\...\{20071984-5EB1-4881-8EDB-082532ACEC6D}) (Version: - ) Java 8 Update 40 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation) Java 8 Update 72 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218072F0}) (Version: 8.0.720.15 - Oracle Corporation) Java(TM) 6 Update 45 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216045FF}) (Version: 6.0.450 - Oracle) LIMBO (HKLM\...\Steam App 48000) (Version: - ) Little Inferno (HKLM\...\Steam App 221260) (Version: - Tomorrow Corporation) Logitech G35 (HKLM\...\{59279982-86E2-4C2A-8060-A3E77575CD8B}) (Version: 1.1.178 - Logitech) Lone Survivor (HKLM\...\Steam App 209830) (Version: - ) MATLAB R2014a (HKLM\...\Matlab R2014a) (Version: 8.3 - The MathWorks, Inc.) Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Age of Empires Gold (HKLM\...\Age of Empires Gold 1.0) (Version: - ) Microsoft Age of Empires II (HKLM\...\Age of Empires 2.0) (Version: - ) Microsoft Office Home and Student 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4805.1003 - Microsoft Corporation) Microsoft Office XP Professional mit FrontPage (HKLM\...\{90280407-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.2701.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP1 繁體中文 (HKLM\...\{0BE37B03-93EF-4B46-A4F3-30ED22569D1A}) (Version: 3.5.5692.0 - Microsoft Corporation) Microsoft Sync Framework Runtime v1.0 (x86) (HKLM\...\{A8BD5A60-E843-46DC-8271-ABF20756BE0F}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Sync Framework Services v1.0 (x86) (HKLM\...\{03CAB33F-D1C2-48C6-8766-DAE84DFC25FE}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x86) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Minecraft (HKLM\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) MKS Platform Components 9.x (HKLM\...\{10276636-0000-0905-9ABB-000BDB5CF35D}) (Version: 9.5.0000 - Mortice Kern Systems) Monaco (HKLM\...\Steam App 113020) (Version: - Pocketwatch Games) Mozilla Firefox 44.0 (x86 de) (HKLM\...\Mozilla Firefox 44.0 (x86 de)) (Version: 44.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 43.0.4.5848 - Mozilla) My Game Long Name (HKLM\...\UDK-aba5fb81-8518-4d2c-8f76-59cd1bea871c) (Version: - Epic Games, Inc.) Natural Selection 2 (HKLM\...\Steam App 4920) (Version: - Unknown Worlds Entertainment) NETGEAR WG111v3 wireless USB 2.0 adapter (HKLM\...\InstallShield_{5396FBD8-8BD7-47F9-92AE-F62F13D5A11D}) (Version: 1.00.0000 - NETGEAR) NETGEAR WG111v3 wireless USB 2.0 adapter (Version: 1.00.0000 - NETGEAR) Hidden NETGEAR WNDA3100v2 wireless USB 2.0 adapter (HKLM\...\{3C7839E7-21F4-49E0-B4D5-AC8ED818CCB0}) (Version: 2.2.0.5 - NETGEAR) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.33.1 - Black Tree Gaming) No More Room in Hell (HKLM\...\Steam App 224260) (Version: - No More Room in Hell Team) NVIDIA 3D Vision Controller-Treiber 285.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 285.62 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 353.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.82 - NVIDIA Corporation) NVIDIA Grafiktreiber 353.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.82 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.11.0621 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.11.0621 - NVIDIA Corporation) NVIDIA Update 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (Version: 15.0.4805.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4805.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (Version: 15.0.4805.1003 - Microsoft Corporation) Hidden OpenAL (HKLM\...\OpenAL) (Version: - ) Origin (HKLM\...\Origin) (Version: 9.1.10.2728 - Electronic Arts, Inc.) paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC41}) (Version: 4.0.5 - dotPDN LLC) Papers, Please (HKLM\...\GOGPACKPAPERSPLEASE_is1) (Version: 2.0.0.4 - GOG.com) PCI Audio Driver (HKLM\...\PCI Audio Driver) (Version: - ) PDF24 Creator 6.9.2 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) Pflanzen gegen Zombies™ (HKLM\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: 1.2.0.1093 - Electronic Arts, Inc.) Pivot Animator version 4.1.10 (HKLM\...\Pivot Animator_is1) (Version: 4.1.10 - Motus Software Ltd) Portal (HKLM\...\Steam App 400) (Version: - Valve) Portal 2 (HKLM\...\Postal 2_is1) (Version: - ) Portal 2 (HKLM\...\Steam App 620) (Version: - Valve) Portal 2 Publishing Tool (HKLM\...\Steam App 644) (Version: - ) Psychonauts (HKLM\...\Steam App 3830) (Version: - Double Fine Productions, Inc.) PTC Portmapper Version 2.0 Datecode [M120] (HKLM\...\PTC Portmapper Version 2.0 Datecode [M120]) (Version: 2.0 - PTC) PTC Quality Agent (HKLM\...\{CE7DF7C9-82FC-4E33-9E1E-D5C024A0EECE}) (Version: 2.0.0.0 - PTC) RAGE (HKLM\...\Steam App 9200) (Version: - ) Razer Game Booster (HKLM\...\Razer Game Booster_is1) (Version: 4.0.68.0 - Razer Inc.) Razer Synapse 2.0 (HKLM\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.02 - Razer Inc.) Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform) Rock of Ages (HKLM\...\Steam App 22230) (Version: - ) Rome - Total War - Gold Edition (HKLM\...\{2E97F7E8-ABDE-4E0D-B0AD-B6B4BAD89E24}) (Version: 1.6 - The Creative Assembly) Rust (HKLM\...\Steam App 252490) (Version: - Facepunch Studios) S4 League_EU (HKLM\...\{31C60819-C5EB-4886-9BF8-D2DE4CE3B90A}) (Version: 1.00.0000 - ) Serious Sam 3: BFE (HKLM\...\Steam App 41070) (Version: - Croteam) Serious Sam HD: The First Encounter (HKLM\...\Steam App 41000) (Version: - Croteam) Serious Sam HD: The Second Encounter (HKLM\...\Steam App 41010) (Version: - Croteam) Serious Sam: Der erste Kontakt (HKLM\...\{815050E5-F545-11D4-9569-004095812ACC}) (Version: - ) Serious Sam: The Second Encounter (HKLM\...\{5BDAA2F7-8E48-4AFF-AA92-B559D0CDF1AD}) (Version: - ) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Seven Kingdoms AA (HKLM\...\7kaa) (Version: - ) Seven Kingdoms II (HKLM\...\Seven Kingdoms II) (Version: - ) SF-Kalender 11.01 (HKLM\...\{170134E6-E7E2-47EE-ADF8-5099ED77A568}) (Version: 11.01.001 - Frank Stolzer) SilverCrest STMS 22.8 A1 Driver (HKLM\...\{1E494817-D81E-4B0E-B379-F34DF4DCDA58}) (Version: 1.0 - SilverCrest) SimCity 4 (HKLM\...\{01339AE5-04D4-43F8-008E-13AD788DC4F7}) (Version: - ) SimCity™ (HKLM\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 2.0.0.0 - Electronic Arts) Skype Click to Call (HKLM\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation) Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Sleeping Dogs™ (HKLM\...\Steam App 202170) (Version: - United Front Games) Source SDK (HKLM\...\Steam App 211) (Version: - Valve) Source SDK Base 2006 (HKLM\...\Steam App 215) (Version: - Valve) Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Starbound (HKLM\...\Steam App 211820) (Version: - ) Startup TOOLS - SE Creo 2.0 M030 (HKLM\...\Startup TOOLS - SE Creo 2.0) (Version: M030 - INNEO Solutions GmbH) Startup TOOLS WF5 Student Download (HKLM\...\Startup TOOLS WF5 Student Download) (Version: - ) Steam (HKLM\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Super Meat Boy (HKLM\...\Steam App 40800) (Version: - Team Meat) Super Meat Boy Editor (HKLM\...\Steam App 40810) (Version: - ) Superbrothers: Sword & Sworcery EP (HKLM\...\Steam App 204060) (Version: - ) Swarm Rampage© 1.00 (HKLM\...\Swarm Rampage© ) (Version: - ) Team Fortress 2 (HKLM\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) Terraria (HKLM\...\Steam App 105600) (Version: - ) The Binding of Isaac (HKLM\...\Steam App 113200) (Version: - Edmund McMillen and Florian Himsl) The Elder Scrolls V: Skyrim (HKLM\...\Steam App 72850) (Version: - Bethesda Game Studios) The Walking Dead (HKLM\...\Steam App 207610) (Version: - ) Thomas Was Alone (HKLM\...\Steam App 220780) (Version: - Mike Bithell) Transistor (HKLM\...\Steam App 237930) (Version: - Supergiant Games) Unturned (HKLM\...\Steam App 304930) (Version: - Nelson Sexton) Vindictus EU (HKLM\...\Vindictus EU) (Version: - ) VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN) Windows Driver Package - ACER Incorporated (qcusbser) Modem (08/16/2010 2.0.6.6) (HKLM\...\D149DB73BE02E748657C63CBB404510E56E08F63) (Version: 08/16/2010 2.0.6.6 - ACER Incorporated) Windows Driver Package - ACER Incorporated (qcusbser) Ports (08/16/2010 2.0.6.6) (HKLM\...\5D9817CE83DD092EB8923949297A94C53A0A27CF) (Version: 08/16/2010 2.0.6.6 - ACER Incorporated) Windows Driver Package - Acer, Inc (androidusb) USB (08/16/2010 1.0.0010.00000) (HKLM\...\83E7AE861B9BCCB05F7AA822F9EE26C0672E6888) (Version: 08/16/2010 1.0.0010.00000 - Acer, Inc) Windows Driver Package - Linux Developer Community Net (08/16/2010 5.1.2600.2781) (HKLM\...\637F4A11ADE9B1B3D8F4A37C0C4CA8EA924B739E) (Version: 08/16/2010 5.1.2600.2781 - Linux Developer Community) Windows-Treiberpaket - ACER Incorporated (qcusbser) Modem (05/06/2010 2.0.6.6) (HKLM\...\3A7384442C71FE1AD25BA46CADD1A093D01B997F) (Version: 05/06/2010 2.0.6.6 - ACER Incorporated) Windows-Treiberpaket - ACER Incorporated (qcusbser) Modem (10/12/2009 2.0.6.6) (HKLM\...\B2FCCBF3739130D032A0617CC6098523C6073B61) (Version: 10/12/2009 2.0.6.6 - ACER Incorporated) Windows-Treiberpaket - ACER Incorporated (qcusbser) Ports (05/06/2010 2.0.6.6) (HKLM\...\4F2FDBB6AB5E34443768E2239CF978CE96B4C55A) (Version: 05/06/2010 2.0.6.6 - ACER Incorporated) Windows-Treiberpaket - ACER Incorporated (qcusbser) Ports (10/12/2009 2.0.6.6) (HKLM\...\59972B5CC101974ED6E51C08E0CC89A01960039A) (Version: 10/12/2009 2.0.6.6 - ACER Incorporated) Windows-Treiberpaket - Acer, Inc (androidusb) USB (05/06/2010 1.0.0010.00000) (HKLM\...\FC2275033461049F835EAA0CBAF93F977BB84493) (Version: 05/06/2010 1.0.0010.00000 - Acer, Inc) Windows-Treiberpaket - Acer, Inc (androidusb) USB (10/12/2009 1.0.0010.00000) (HKLM\...\75397A2EC23E9AD977B09CAD2C2683A60DF981B5) (Version: 10/12/2009 1.0.0010.00000 - Acer, Inc) Windows-Treiberpaket - Linux Developer Community Net (05/06/2010 5.1.2600.2781) (HKLM\...\7D9DEFD96C34631441AB89B385EFD550B20304D5) (Version: 05/06/2010 5.1.2600.2781 - Linux Developer Community) WinRAR 5.30 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH) World of Warcraft (HKLM\...\World of Warcraft) (Version: - Blizzard Entertainment) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3925520561-2683073460-2419899363-1000Core.job => Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3925520561-2683073460-2419899363-1000UA.job => Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => <==== ACHTUNG Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => <==== ACHTUNG Task: C:\Windows\Tasks\MATLAB R2014a Startup Accelerator.job => ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-01-31 12:09 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2016-01-31 12:09 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl 2016-01-31 12:09 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2016-03-21 17:27 - 2016-03-21 17:27 - 00113496 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2016-03-21 17:27 - 2016-03-21 17:27 - 00133768 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com Da befinden sich 7870 mehr Seiten. ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:04 - 2016-01-31 12:55 - 00450902 ____R C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 127.0.0.1 www.0scan.com 127.0.0.1 0scan.com 127.0.0.1 1000gratisproben.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com 127.0.0.1 www.100sexlinks.com 127.0.0.1 100sexlinks.com 127.0.0.1 10sek.com 127.0.0.1 www.10sek.com 127.0.0.1 www.1-2005-search.com 127.0.0.1 1-2005-search.com 127.0.0.1 123fporn.info 127.0.0.1 www.123fporn.info 127.0.0.1 123haustiereundmehr.com 127.0.0.1 www.123haustiereundmehr.com 127.0.0.1 123moviedownload.com 127.0.0.1 www.123moviedownload.com Da befinden sich 15468 zusätzliche Einträge. ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3925520561-2683073460-2419899363-1005\Control Panel\Desktop\\Wallpaper -> C:\Users\Retard\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^NETGEAR WG111v3 Smart Wizard.lnk => C:\Windows\pss\NETGEAR WG111v3 Smart Wizard.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^NETGEAR WNDA3100v2 Genie.lnk => C:\Windows\pss\NETGEAR WNDA3100v2 Genie.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SolidWorks Hintergrund-Downloader.lnk => C:\Windows\pss\SolidWorks Hintergrund-Downloader.lnk.CommonStartup MSCONFIG\startupreg: AmazonMP3DownloaderHelper => C:\Users\Ede\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: C-Media Mixer => Mixer.exe /startup MSCONFIG\startupreg: Facebook Update => "C:\Users\Ede\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: IJNetworkScannerSelectorEX => C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Launch SilverCrest STMS 22.8 A1-K => C:\Program Files\SilverCrest STMS 22.8 A1 Driver\KbClient_FD2.exe MSCONFIG\startupreg: Launch SilverCrest STMS 22.8 A1-M => C:\Program Files\SilverCrest STMS 22.8 A1 Driver\MouClient_FD2.exe MSCONFIG\startupreg: NuTCSetupEnviron => C:\MKSTOO~1\bin\ncoeenv.exe MSCONFIG\startupreg: NvBackend => "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe" MSCONFIG\startupreg: PDFPrint => C:\Program Files\PDF24\pdf24.exe MSCONFIG\startupreg: Razer Synapse => "C:\Program Files\Razer\Synapse\RzSynapse.exe" MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: Steam => "F:\Games\Steam\steam.exe" -silent ==================== FirewallRules (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [TCP Query User{75E546DD-0493-4C7A-8736-73AD7FAE52ED}C:\program files\java\jre6\bin\javaw.exe] => (Allow) C:\program files\java\jre6\bin\javaw.exe FirewallRules: [UDP Query User{D569CF86-717E-4267-B61F-8B58715F4ACF}C:\program files\java\jre6\bin\javaw.exe] => (Allow) C:\program files\java\jre6\bin\javaw.exe FirewallRules: [{AECCAB8D-7F16-452F-A159-58DE66BEBABB}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{B3BE002E-3D3F-4F34-98EE-8B295E140C44}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{BA12A36D-9079-42B4-BC7F-A5F3B491E78A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{0E850217-BB4D-40F1-AD18-C2D353A12ACF}I:\games\doom 3\doom3ded.exe] => (Allow) I:\games\doom 3\doom3ded.exe FirewallRules: [UDP Query User{1BD5760D-6881-49D1-90E9-E69628E8148B}I:\games\doom 3\doom3ded.exe] => (Allow) I:\games\doom 3\doom3ded.exe FirewallRules: [TCP Query User{B25718D2-CB35-4AB5-B747-57043A0AF740}C:\program files\acer\acersync\acersync.exe] => (Allow) C:\program files\acer\acersync\acersync.exe FirewallRules: [UDP Query User{D8FCA804-2B8D-4750-89BB-3DD6B1B9B7A3}C:\program files\acer\acersync\acersync.exe] => (Allow) C:\program files\acer\acersync\acersync.exe FirewallRules: [TCP Query User{22E2F17F-CA40-4A8B-B0FC-8CE9BF6F7C85}C:\program files\microsoft games\age of empires\empiresx.exe] => (Block) C:\program files\microsoft games\age of empires\empiresx.exe FirewallRules: [UDP Query User{04CCCE7D-5339-4E29-A144-51568F8758AC}C:\program files\microsoft games\age of empires\empiresx.exe] => (Block) C:\program files\microsoft games\age of empires\empiresx.exe FirewallRules: [TCP Query User{E0E4D1FB-A205-41FA-9773-41E2F12115D9}C:\program files\microsoft games\age of empires ii\empires2.icd] => (Allow) C:\program files\microsoft games\age of empires ii\empires2.icd FirewallRules: [UDP Query User{32B9FF0C-0177-4894-AFA5-E9E0B17BAA73}C:\program files\microsoft games\age of empires ii\empires2.icd] => (Allow) C:\program files\microsoft games\age of empires ii\empires2.icd FirewallRules: [TCP Query User{164ED043-788A-49C5-BCD9-CE31D035132E}C:\program files\microsoft games\age of empires\empires.exe] => (Block) C:\program files\microsoft games\age of empires\empires.exe FirewallRules: [UDP Query User{0EAA0185-1851-49AE-8764-1CEE16755CD0}C:\program files\microsoft games\age of empires\empires.exe] => (Block) C:\program files\microsoft games\age of empires\empires.exe FirewallRules: [TCP Query User{CDA799E9-EE10-4737-935D-62E025197D67}C:\program files\valve\portal 2\portal2.exe] => (Allow) C:\program files\valve\portal 2\portal2.exe FirewallRules: [UDP Query User{DCF01DD0-C956-4C1B-9EB9-C8E6DC83ABF4}C:\program files\valve\portal 2\portal2.exe] => (Allow) C:\program files\valve\portal 2\portal2.exe FirewallRules: [TCP Query User{7A453C71-3E5B-4F72-8260-6025AB7E0EA2}C:\program files\steam\steamapps\kredig\team fortress 2\hl2.exe] => (Allow) C:\program files\steam\steamapps\kredig\team fortress 2\hl2.exe FirewallRules: [UDP Query User{C411BCEC-2AA9-412E-93FF-C3E525C2291D}C:\program files\steam\steamapps\kredig\team fortress 2\hl2.exe] => (Allow) C:\program files\steam\steamapps\kredig\team fortress 2\hl2.exe FirewallRules: [{278A795B-56AF-4B77-8E31-A78D4CDC19AE}] => (Allow) C:\Program Files\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{62ABDEEB-C3C6-4B74-BD2A-A43FC3D3FCDD}] => (Allow) C:\Program Files\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{A84F1A0B-38D8-466F-8979-BD5BCE8B3386}] => (Allow) C:\Program Files\Steam\SteamApps\common\bastion\Bastion.exe FirewallRules: [{395457F4-E7C8-47C8-98A3-7C0D532A1538}] => (Allow) C:\Program Files\Steam\SteamApps\common\bastion\Bastion.exe FirewallRules: [{C29DAB30-0BC6-46AF-BFA8-1406404C459D}] => (Allow) C:\Program Files\Steam\SteamApps\common\amnesia the dark descent\Launcher.exe FirewallRules: [{08942145-10E5-4DC3-B726-7811A4E7EBE6}] => (Allow) C:\Program Files\Steam\SteamApps\common\amnesia the dark descent\Launcher.exe FirewallRules: [{3E29BF37-2E63-4C72-9575-E62D1F02966B}] => (Allow) C:\Program Files\Steam\Steam.exe FirewallRules: [{63AED61C-FCFE-468E-8A8B-539510DF4E11}] => (Allow) C:\Program Files\Steam\Steam.exe FirewallRules: [{3CC8FBC7-42D3-452F-ADC4-904CAFB7340E}] => (Allow) C:\Program Files\Steam\SteamApps\common\fallout new vegas\FalloutNVLauncher.exe FirewallRules: [{A9E793B1-B8AE-4087-9F9C-44832F424B5B}] => (Allow) C:\Program Files\Steam\SteamApps\common\fallout new vegas\FalloutNVLauncher.exe FirewallRules: [{1B213027-23FC-4222-89C0-C05B680ECCC8}] => (Allow) C:\Program Files\Steam\SteamApps\common\rock of ages\Binaries\Win32\RoA.exe FirewallRules: [{528752DE-3023-4437-B80E-21B8D86EC7A4}] => (Allow) C:\Program Files\Steam\SteamApps\common\rock of ages\Binaries\Win32\RoA.exe FirewallRules: [{8E2F8EE0-09E7-408D-B40E-26C328815D15}] => (Allow) C:\Program Files\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{859DEDDA-7666-41DE-9895-3CBBF8920897}] => (Allow) C:\Program Files\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{B9C8AD99-6A85-4A69-879A-DB5A28FEE75F}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [TCP Query User{F7F58B64-EEA4-49FA-9973-F8AAB2E9CB5A}C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe] => (Allow) C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [UDP Query User{61E34483-222F-4A20-939B-FB08C326F84A}C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe] => (Allow) C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [{2B6D86C6-6B23-48EE-90FF-C8F9FCAF7B2D}] => (Block) C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [{E2F23C72-E42A-4885-B357-EA3C3B723E1F}] => (Block) C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [TCP Query User{9B43CA24-0284-4A95-97EA-6135139702AF}C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe] => (Allow) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [UDP Query User{71501A33-7670-4E76-986F-02E36208635D}C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe] => (Allow) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [{CFC61ACB-1FBE-48DD-AB9A-BB2B39FF6C11}] => (Block) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [{6CAF55D3-4C91-4198-88A3-0B08EA9038F9}] => (Block) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [TCP Query User{31DF599F-159A-45A4-A053-19A6F74036D1}C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe] => (Allow) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe FirewallRules: [UDP Query User{8802446F-F0AE-47C2-BD7E-73AF1E034AE3}C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe] => (Allow) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe FirewallRules: [{22C5877E-CA77-4840-BA98-45254B5930BE}] => (Block) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe FirewallRules: [{03C0ED69-9B66-4864-94E7-88A393B8EA22}] => (Block) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe FirewallRules: [{3107C61F-82EF-48CA-8DCD-765A9BB549F7}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{D23815EA-902A-49D3-9C7B-07DD09C4064A}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{8E137670-07EE-4AFB-982C-203C5C2862ED}] => (Allow) C:\Program Files\Steam\SteamApps\common\fallout new vegas\FalloutNVLauncher.exe FirewallRules: [{AEEAD657-B990-4E13-B5B7-F74231F570FD}] => (Allow) C:\Program Files\Steam\SteamApps\common\fallout new vegas\FalloutNVLauncher.exe FirewallRules: [{4F98FC2D-B179-4284-A0EC-B399E1983C74}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage.exe FirewallRules: [{98D85F02-AE31-474C-A703-3CE1806906AA}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage.exe FirewallRules: [{69610BF6-C947-40A5-B843-8D58FBD9CC1B}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage64.exe FirewallRules: [{05A221AC-E666-41C5-AAB2-E8EF53200AD2}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage64.exe FirewallRules: [{94D099E2-4074-4DD2-B39D-D75A1CE03F46}] => (Allow) C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{33AEFCF5-DA55-4DB3-B2A7-AA043729E74A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{A922B1B7-C4CE-4CBE-9C96-BFEBE83F2B06}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{EEE3B774-541A-4747-A001-03C95D9B056C}] => (Allow) C:\Program Files\Steam\SteamApps\common\bastion\Bastion.exe FirewallRules: [{C997ADAA-6601-4722-B155-98004A433388}] => (Allow) C:\Program Files\Steam\SteamApps\common\bastion\Bastion.exe FirewallRules: [{6342772A-22E0-421A-BD67-7D83236E6DC3}] => (Allow) F:\Games\SimCity\SimCity\SimCity.exe FirewallRules: [{CCA2069C-69F0-4A30-855E-33996B133935}] => (Allow) F:\Games\SimCity\SimCity\SimCity.exe FirewallRules: [{558BC569-FCC1-468B-B032-81599FB70BC6}] => (Allow) C:\Program Files\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{803F1BFD-D4E1-43B2-92E6-AA9666A3AC41}] => (Allow) C:\Program Files\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{43874954-D452-4B02-B05C-9F1EA8AD8BD5}] => (Allow) C:\Program Files\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{CE67E385-1DF3-4718-BD23-1F68D7AE4C52}] => (Allow) C:\Program Files\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{5E0D5051-ABA5-4BD7-92BC-0AC2027B6B4D}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{43B8CC01-D20D-49E2-9FB4-77BB0FA137F7}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{A5620C7F-F6D5-4176-884B-0A724E19F897}] => (Allow) C:\Program Files\Steam\SteamApps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{2EF94974-7623-46D7-ABF4-858D894B5D01}] => (Allow) C:\Program Files\Steam\SteamApps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{CE05732F-37D2-498F-B380-F3F676C892A9}] => (Allow) C:\Program Files\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{CB0B34B8-7170-4AC9-8496-8870E82C6584}] => (Allow) C:\Program Files\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{6FCF4B60-4EE1-491D-9DBE-81FFF58E80F9}] => (Allow) C:\Program Files\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{D17E31DB-BCA6-496D-9454-773238ACA76C}] => (Allow) C:\Program Files\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{EA9E1C96-CEE4-4922-96D6-84F893CD7C6C}] => (Allow) C:\Program Files\Steam\SteamApps\common\superbrothers sword & sworcery ep\swordandsworcery_pc.exe FirewallRules: [{0FA36C54-A0E6-437B-BB27-F83FCAA1E00D}] => (Allow) C:\Program Files\Steam\SteamApps\common\superbrothers sword & sworcery ep\swordandsworcery_pc.exe FirewallRules: [{60AEF41A-9130-4746-A3DF-A7C216016EAB}] => (Allow) C:\Program Files\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{35BDDC5C-0CFB-49BC-A975-F3D1E11EBAB9}] => (Allow) C:\Program Files\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{D6EF2C4C-F646-4804-9239-826C50ED05CF}] => (Allow) C:\Program Files\Steam\SteamApps\common\lone survivor\LoneSurvivor\LoneSurvivor.exe FirewallRules: [{4C35444A-9468-4D00-A106-EAF63A592906}] => (Allow) C:\Program Files\Steam\SteamApps\common\lone survivor\LoneSurvivor\LoneSurvivor.exe FirewallRules: [{5F95F406-6870-4CB4-A4FC-1B9DAA30620D}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{A7FC8AAC-E158-4FB9-A278-20CFDA5E7209}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{E61B3C63-BC9E-4349-8C1D-26269AD8BE60}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage.exe FirewallRules: [{C2391FB4-BC8A-4872-AAB1-D29B1734E217}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage.exe FirewallRules: [{AFF79293-04B9-447E-8C08-5739F4BA4B2A}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage64.exe FirewallRules: [{511303B7-5E7A-4493-A6E7-D8FB4DD35A8C}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage64.exe FirewallRules: [{81A0710A-161B-4897-8A68-3DDEE34CA4F1}] => (Allow) C:\Program Files\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{75061091-4C1E-441A-84F3-41BA65DD9609}] => (Allow) C:\Program Files\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{EB4621DE-9AC6-46C5-AD8E-320E602BE189}] => (Allow) C:\Program Files\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{D205DA97-3758-40CC-84BE-548489B1A217}] => (Allow) C:\Program Files\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{03E9A577-1EDC-49C7-818A-EBB8BBFF3A61}] => (Allow) F:\Games\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{48A81771-8AFA-4134-A795-4F74AA439C34}] => (Allow) F:\Games\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{4AD40DF2-9DE6-456B-9498-318C0B4C6D74}] => (Allow) F:\Games\Steam\SteamApps\common\SleepingDogs\HKShip.exe FirewallRules: [{2B22D756-E574-4F77-BB84-9B8E5FC1E615}] => (Allow) F:\Games\Steam\SteamApps\common\SleepingDogs\HKShip.exe FirewallRules: [{206AC414-2071-4D7C-8EE7-932B402E65B0}] => (Allow) F:\Games\Steam\SteamApps\common\Capsized\Capsized.exe FirewallRules: [{1B62F992-4F77-4D16-A06A-254BA274A1BF}] => (Allow) F:\Games\Steam\SteamApps\common\Capsized\Capsized.exe FirewallRules: [{9A9DB1A3-1C85-4545-859F-AB04103E438F}] => (Allow) F:\Games\Steam\SteamApps\common\Dear Esther\dearesther.exe FirewallRules: [{0519924D-DB23-4547-9FD9-1FA01241D138}] => (Allow) F:\Games\Steam\SteamApps\common\Dear Esther\dearesther.exe FirewallRules: [{AE657989-CEDF-4AFD-9F49-14861B82D9B8}] => (Allow) F:\Games\Steam\SteamApps\common\Little Inferno Beta\Little Inferno.exe FirewallRules: [{B2CC2AB8-FE29-4288-8AB8-95A75649041C}] => (Allow) F:\Games\Steam\SteamApps\common\Little Inferno Beta\Little Inferno.exe FirewallRules: [{E5C5831D-B8D4-44D8-BC66-F2055D2B8554}] => (Allow) F:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{C0BDBACA-BE4A-40A4-B0A6-EF16AA34874A}] => (Allow) F:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{CC9B96EF-05DA-418E-B092-649C10C547C6}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The First Encounter\Bin\SamHD.exe FirewallRules: [{52ABB4FF-7C82-4D73-B46C-7B5EB5DB27DC}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The First Encounter\Bin\SamHD.exe FirewallRules: [{DCCA189B-2124-43AA-9D1D-2878B46D7F8E}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe FirewallRules: [{5CDECFFA-5F59-4BF0-8945-DC99281C5D98}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe FirewallRules: [{429D97A6-0A42-439A-8A18-F9D7FC585ACA}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe FirewallRules: [{B0DE6DCB-1F4E-4CD2-9F11-E87D25FBFAD5}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe FirewallRules: [{8C2071FA-4DB5-4E84-811E-17B45CC709FD}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{F88AE45D-3130-4825-9B1D-55BBF9784607}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{1271463D-7D26-40E3-89FB-54A3C93A7216}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{EB45F0EF-3A73-43DA-9885-4A9502C2924A}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{E13237C2-51D4-41EB-8DB1-E382D6618A8E}] => (Allow) F:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{BC56011F-AA8F-4A5C-9546-2974DBE967E9}] => (Allow) F:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{19962E96-24CC-4E63-8CDC-2A2B1987372D}] => (Allow) F:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{2D73361F-3930-4FBD-97A7-345A5C944787}] => (Allow) F:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{C4CF1BD9-534F-4B96-ABDB-45509A55D98D}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{0E97F48C-BAC3-47D4-8736-86C83AFA79EF}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{D42162DF-2A74-4C47-8EB7-F8671A71FF31}] => (Allow) F:\Games\Steam\SteamApps\common\thomaswasalone\ThomasWasAlone.exe FirewallRules: [{89E8040C-2086-446F-9281-0B6D555D920C}] => (Allow) F:\Games\Steam\SteamApps\common\thomaswasalone\ThomasWasAlone.exe FirewallRules: [{EF0910A3-187C-40DB-9604-07E7D7D3C787}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{DEF41A8B-D366-463F-83E3-2A2918E36F64}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{58221567-F485-45F9-86DF-4524D1224AA5}] => (Allow) F:\Games\Steam\SteamApps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe FirewallRules: [{B855EB57-8B3F-47CB-B941-A686766A54EC}] => (Allow) F:\Games\Steam\SteamApps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe FirewallRules: [{9FB5A770-8E92-4A54-8692-6B4A35CA8A21}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{86E3DED0-913F-40A9-98B3-9BF12BBC86DE}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{BC0DE63E-43E2-4EF4-8720-B585D7BC5EDA}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{499EB11E-0983-47F5-99DA-AF177F8A9ED7}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{F9C66A9F-EA4D-49C6-8288-F42EF079F5BA}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{6A821804-7926-467C-9DB5-D42FC165ECA3}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{02A192D7-1DDF-4B54-9139-FF32E69B0201}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{850AA231-F944-4618-BD1E-418FF18B9F02}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{B06C07C0-3DE2-4B94-A240-73E9F04A6BE2}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{A17E15C6-8549-45D2-82CF-40F51E1FD8A9}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{C9BFC52C-250A-4017-B8A9-C32131937D6E}] => (Allow) F:\Games\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{09EF8C64-D4CF-4CF8-8940-8B3124B6BA52}] => (Allow) F:\Games\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{02C46D3F-EE0A-4F13-8D6B-EE8925EDB943}] => (Allow) F:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{E1273BFE-289B-4BAB-B096-1385BB028EBE}] => (Allow) F:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{E52785E6-8BB9-4FC0-B08A-BF231BE9369A}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{4EF57EB9-52AA-45E4-AD85-BA34F6EA9B9A}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{56692682-F03A-4AF0-B859-EA446B4C255C}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{F1083264-A9F8-4CE2-894A-29273A322B8A}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{B73394A4-4AEF-4C7F-995B-638CB9079144}] => (Allow) F:\Games\Steam\SteamApps\common\The Walking Dead\WalkingDead101.exe FirewallRules: [{A95492B6-87A9-4875-8D15-5B8831B0925F}] => (Allow) F:\Games\Steam\SteamApps\common\The Walking Dead\WalkingDead101.exe FirewallRules: [{F2EA5757-8CD4-4CD0-AA50-0B98B3A745D6}] => (Allow) F:\Games\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{33283EF9-286B-45CC-AF60-DAD0EF6A60C6}] => (Allow) F:\Games\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{37D139AA-A33E-4362-B6B5-AF3E8136D595}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{425DAA1E-9C9E-482A-BDE7-8BFE64E0BBDF}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{2A231147-7BB5-4B6B-831B-0EFC47D377F9}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{0B9657A4-CDD4-4193-B2D6-88C6752B9513}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{12E2AA11-E965-468F-A926-77CB4E6C5316}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{1A0DC0BC-582F-419B-BE03-D7B47059E7B7}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{7FC7AC5D-4EA7-4F14-8E0C-B81A647C1CD6}] => (Allow) F:\Games\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{28BE4B66-84DC-486B-BC9F-9AD3625EA1F7}] => (Allow) F:\Games\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{DD107E3F-C83A-4679-9AD3-36FA1277F559}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{0B0BA51E-234A-4820-9CF5-350CAD8EBE92}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{742AFD32-A291-4FFA-8AD9-3E21ADE888E3}] => (Allow) F:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{63C3ED1D-B4D3-4696-9DE2-A7A85840F045}] => (Allow) F:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{E456246C-A556-4D72-8F2E-16ACCDDE8D06}] => (Allow) F:\Games\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{EAB64009-23F1-4DCE-8E56-78AD0B10D6E5}] => (Allow) F:\Games\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{70EF927E-303D-4BD3-94CF-5FE9151ABF10}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{3831F2A0-BD96-4FA3-A962-87ED19542299}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{247533E4-485D-4551-8090-50D36CAA7AFF}] => (Allow) F:\Games\Steam\SteamApps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe FirewallRules: [{2F2CA465-0A44-46C1-B84C-1E6DB6F091C2}] => (Allow) F:\Games\Steam\SteamApps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe FirewallRules: [{E1350100-8BE2-4689-9EE2-05DE83A123D9}] => (Allow) F:\Games\Steam\Steam.exe FirewallRules: [{B6447892-4505-462E-81A9-26D1B1724B4D}] => (Allow) F:\Games\Steam\Steam.exe FirewallRules: [{D7F57370-683B-4ED8-83C6-C6B74CE0FE64}] => (Allow) F:\Games\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{FD8878ED-D0AF-4E72-AAFD-B3CD1B8EA546}] => (Allow) F:\Games\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{0A6CC9B4-3CA1-4B93-8BEA-14995D615A90}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{94619432-B578-43C4-AD75-E08E87954DB4}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{D19F81C0-50AD-4B71-92CD-BA8042DC57D3}] => (Allow) F:\Games\Vindictus EU\en-EU\NMService.exe FirewallRules: [{B9F36D5A-3748-4451-84E8-1C657B0D91EA}] => (Allow) F:\Games\Vindictus EU\en-EU\NMService.exe FirewallRules: [{080D7EFE-7DC0-456D-AD2B-DBB19C3695AF}] => (Allow) F:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{E74AE2F5-F180-4553-8C4A-8212C0D26931}] => (Allow) F:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{1B924730-8F92-4929-9E75-85B18E5AB6FB}] => (Allow) F:\Games\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{F0FC1EA3-A5F2-425A-8929-30976CE4297C}] => (Allow) F:\Games\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{4ED2E01C-00E2-4139-902F-7596209E3754}] => (Allow) F:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{EE7E47BF-A746-4396-B945-59CC49485689}] => (Allow) F:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{55664446-BAB1-4ECA-89D1-6ACB37C8E193}] => (Allow) F:\Games\Steam\SteamApps\common\rust\rust.exe FirewallRules: [{F0C7E2AD-49AC-4A96-B9A0-993DE6FD793E}] => (Allow) F:\Games\Steam\SteamApps\common\rust\rust.exe FirewallRules: [{A2DDC2E3-8CA5-4D82-95C7-FCB8F6244618}] => (Allow) F:\Games\Steam\SteamApps\common\Antichamber\Binaries\Win32\UDK.exe FirewallRules: [{82B814F3-D277-4CA5-804D-3C0B4902F3A7}] => (Allow) F:\Games\Steam\SteamApps\common\Antichamber\Binaries\Win32\UDK.exe FirewallRules: [{B707ECDB-BAFE-4215-BDD8-0EB28362212B}] => (Allow) F:\Games\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{3B4509FB-E1B0-4359-B6C3-47B520350D3C}] => (Allow) F:\Games\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{085E2731-68F9-4CB2-9506-6F1630412B1B}] => (Allow) F:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Launcher.exe FirewallRules: [{B11CD3E8-112D-4BB7-82C8-810ADB6ABC00}] => (Allow) F:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Launcher.exe FirewallRules: [{9CF7C74E-785B-4815-ACDE-7EE473E09F2B}] => (Allow) F:\Games\Steam\SteamApps\common\Beatbuddy\Beatbuddy.exe FirewallRules: [{B76DABDA-F486-4520-AA21-73ABD0774133}] => (Allow) F:\Games\Steam\SteamApps\common\Beatbuddy\Beatbuddy.exe FirewallRules: [{9654F1AE-D33E-48EF-B14A-4A27A60574FD}] => (Allow) F:\Games\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{5B6B88DF-BE4E-4956-B299-1A58D62E9AD9}] => (Allow) F:\Games\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{5E0A7F2A-5F39-4E19-99B8-ABC040ABBB39}] => (Allow) F:\Games\SimCity\SimCity\SimCity.exe FirewallRules: [{A4269748-6F46-4158-8B35-A9110CE40612}] => (Allow) F:\Games\SimCity\SimCity\SimCity.exe FirewallRules: [{7FE1E8B5-45C8-4210-A460-74900502D301}] => (Allow) F:\Games\Plants vs. Zombies\PlantsVsZombies.exe FirewallRules: [{638D7C58-7BD7-4844-BF50-0D519B282E07}] => (Allow) F:\Games\Plants vs. Zombies\PlantsVsZombies.exe FirewallRules: [{F7D480B5-D859-4E84-9819-66AD6E177B71}] => (Allow) F:\Games\Steam\SteamApps\common\Transistor\x86\Transistor.exe FirewallRules: [{98F39B60-F074-485F-AFCF-667397BF8834}] => (Allow) F:\Games\Steam\SteamApps\common\Transistor\x86\Transistor.exe FirewallRules: [{81E25D24-3EAA-4ACD-B9C6-7DD43C7CBBC7}] => (Allow) F:\Games\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{4B055E2F-3D39-41C1-BD03-634341CE07A9}] => (Allow) F:\Games\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{E7701F15-CB9B-4C71-AE89-4F1BF31E6ADD}] => (Allow) F:\Games\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{623468BE-6C4A-40FE-A280-58EFD078397F}] => (Allow) F:\Games\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{532892AD-3DCB-4D79-A59C-CE2EF4484EFD}] => (Allow) F:\Games\Steam\SteamApps\common\rust\legacy\rust.exe FirewallRules: [{8F1201A2-6AF7-40D0-8161-BD3409FCD218}] => (Allow) F:\Games\Steam\SteamApps\common\rust\legacy\rust.exe FirewallRules: [{8F7B765A-9E7C-4C99-AA92-27D50AFC7E17}] => (Allow) F:\Games\Steam\SteamApps\common\rust\experimental\Rust.exe FirewallRules: [{D1702FC1-87BB-48F2-830F-2D09923E0235}] => (Allow) F:\Games\Steam\SteamApps\common\rust\experimental\Rust.exe FirewallRules: [{1C1309CA-7453-46CB-A75F-DF2C392356D7}] => (Allow) C:\Users\Ede\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{2C2CF998-F62B-4A20-A340-4ACD7063B616}] => (Allow) L:\Games\Steam\Steam.exe FirewallRules: [{B7574918-F68C-4091-9BB8-9ED93928CA56}] => (Allow) L:\Games\Steam\Steam.exe FirewallRules: [{6ECBC142-5294-4105-B716-E29FDE2FC8B8}] => (Allow) L:\Games\Steam\bin\steamwebhelper.exe FirewallRules: [{C23B190A-12D3-48D1-9C7F-0801A5A14E86}] => (Allow) L:\Games\Steam\bin\steamwebhelper.exe FirewallRules: [{0F5E0FBF-F643-422E-B144-802AD7903015}] => (Allow) L:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{0A773AEA-BCA8-47D0-8C6F-271E78806865}] => (Allow) L:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{8F1DD8CD-AB3A-4811-BD0D-CB9C311B9B14}] => (Allow) L:\Games\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{208F084A-16DA-42AA-A333-BB48688922E4}] => (Allow) L:\Games\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{42EAB784-BE03-4729-891D-6C6A13F9ACFF}] => (Allow) L:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{81092BB0-F82F-46BE-B577-07797F773D7C}] => (Allow) L:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{FEA6A58D-EABA-412C-9D5E-2FC771E68CAE}] => (Allow) L:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{63E15C98-6815-4170-A496-D7461937A31A}] => (Allow) L:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{E080B730-4061-4650-AF09-2EEA2AAA7D62}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe FirewallRules: [{28EB4F09-0335-4FAA-A25B-04AFC42C09D6}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe FirewallRules: [{FE646FC6-2B74-4AE1-9586-E53FA347C71B}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe FirewallRules: [{83505081-6CE9-4FAC-9A9D-595083173E02}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe FirewallRules: [{556AA0C7-B75B-49AA-BD64-F5EEDCBC0789}] => (Allow) L:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{D75FCAE9-F4DE-4A2C-BD6D-2AE54A2A24BC}] => (Allow) L:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{FCB43BA2-94E6-45E9-BE56-2EB96094C136}] => (Allow) L:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{30503A85-9AAC-4FA1-AE69-2DB0240AC92D}] => (Allow) L:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{335D91F0-9D79-4260-AF9D-9C566E53AA7C}] => (Allow) L:\Games\Steam\SteamApps\common\Beatbuddy\Beatbuddy.exe FirewallRules: [{F9963F83-4BA7-4F17-A611-29DA39CFB4A3}] => (Allow) L:\Games\Steam\SteamApps\common\Beatbuddy\Beatbuddy.exe FirewallRules: [{86D3E7DB-5E2C-4676-988C-A96E1C19E41C}] => (Allow) L:\Games\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{30146421-0B87-44C6-9595-FFD9D3540143}] => (Allow) L:\Games\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{D611B56C-ADF5-4C7C-BFB2-D6C93858BDB5}] => (Allow) L:\Games\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{D8029988-501A-4A83-9ABF-01DCB0ACC61D}] => (Allow) L:\Games\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{B826070E-1F61-4E58-9A5C-38F3B6CE3331}] => (Allow) L:\Games\Steam\SteamApps\common\rust\experimental\Rust.exe FirewallRules: [{0C924221-AB80-41B9-B59C-C371A0057B50}] => (Allow) L:\Games\Steam\SteamApps\common\rust\experimental\Rust.exe FirewallRules: [{01811DCE-7D37-4785-9464-1AD12A6FBEA4}] => (Allow) L:\Games\Steam\SteamApps\common\rust\Rust.exe FirewallRules: [{289187FF-1E57-419B-B42D-B21E3C1DD6F5}] => (Allow) L:\Games\Steam\SteamApps\common\rust\Rust.exe FirewallRules: [{93BE2B1F-FC61-4090-9D7B-F813D8955C5D}] => (Allow) L:\Games\Steam\SteamApps\common\rust\legacy\rust.exe FirewallRules: [{3B69CBBD-D2A9-4CFA-B669-D5D61104B028}] => (Allow) L:\Games\Steam\SteamApps\common\rust\legacy\rust.exe FirewallRules: [{538C3EFC-BA7C-4F33-A415-202AF79371D7}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{6DFDE432-FB54-402F-81BB-121EEDA73ABB}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{40E2C69E-4469-4BB0-80FE-33DBE14EB01F}] => (Allow) C:\Users\Ede\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{A8F6DDEC-E1AF-4CCC-889C-106FE9D292FF}] => (Allow) L:\Games\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{C616751A-E189-459B-8660-8A9738379391}] => (Allow) L:\Games\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{3A70492B-D5A8-41FA-8052-424098E9C2F9}] => (Allow) L:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{FF5FCA01-B236-4034-BC7F-E0E1C540C51C}] => (Allow) L:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{6302CE91-8D72-4BE2-89CF-E60939B8BFC4}] => (Allow) L:\Games\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{ED84902F-C559-4388-9AF1-8634A2DDBA5A}] => (Allow) L:\Games\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{7EABF703-576F-4DA8-BEDE-AAF60A2C9E0C}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{F9BDF408-AFE4-459D-B541-B81E8C8AF5B9}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{D9CFDC3C-1E2C-4A92-B2C0-ED99F88F0ABB}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{3AB75062-B2D4-46B9-8FD7-E2C18BC8094F}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{AEC94AA9-981B-4F9E-B030-743984B4821C}] => (Allow) L:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Amnesia.exe FirewallRules: [{55FD26DF-A5F7-4027-BDEA-0436A5CE5C70}] => (Allow) L:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Amnesia.exe FirewallRules: [{289B402D-16F6-4C10-93F0-01C9A809AA14}] => (Allow) L:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Launcher.exe FirewallRules: [{1EAE8411-DF01-437C-A046-F34D3036DB96}] => (Allow) L:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Launcher.exe FirewallRules: [{B9182FE1-D1EE-498B-A6FA-8CFE1888F309}] => (Allow) L:\Games\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{D2955FC8-C30A-463E-B0FB-D27B090A6D25}] => (Allow) L:\Games\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{16A746EC-04C7-483A-8C23-EEADD0892ECB}] => (Allow) L:\Games\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{EBC72D51-41D4-4B0F-BAE5-01EDA8B20656}] => (Allow) L:\Games\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{62D0E810-347C-4242-AADB-D3240475571C}] => (Allow) L:\Games\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{A7B2BF5C-3023-42D0-A48D-7F5B052B7A92}] => (Allow) L:\Games\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{57A0FE47-B8EF-4C94-927A-FF8E403FE574}] => (Allow) L:\Games\Steam\SteamApps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{389FA469-7A63-478A-A411-92FACC4D2F3B}] => (Allow) L:\Games\Steam\SteamApps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{0E1BE39A-CA06-4265-B145-4CB79C168C75}] => (Allow) L:\Games\Steam\SteamApps\common\Grand Theft Auto 3\gta3.exe FirewallRules: [{AF5D2B38-39AC-4A0F-A676-0ED8E0D4F545}] => (Allow) L:\Games\Steam\SteamApps\common\Grand Theft Auto 3\gta3.exe FirewallRules: [{64335EF1-44C8-4944-8097-3F5557D9A88D}] => (Allow) L:\Games\Steam\SteamApps\common\Transistor\x86\Transistor.exe FirewallRules: [{455D9854-0239-4387-9DFB-6B5F37E27495}] => (Allow) L:\Games\Steam\SteamApps\common\Transistor\x86\Transistor.exe FirewallRules: [{3561DF4D-C6B0-4E03-88B9-B3F88CBB72CE}] => (Allow) L:\Games\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{941CE789-5466-4BC0-98FE-47A51D8554F7}] => (Allow) L:\Games\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{F5071DCD-98A8-4BDA-8D51-4DA52ED2EA7E}] => (Allow) L:\Games\Steam\SteamApps\common\Age2HD\Launcher.exe FirewallRules: [{EFB6737E-F09C-4D78-937D-ED8A83E74BF3}] => (Allow) L:\Games\Steam\SteamApps\common\Age2HD\Launcher.exe FirewallRules: [{0EAA5CA3-C7DC-4D4B-8848-6F33008C5920}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{2A9C77F4-CE8B-4C1C-B523-B64407FAE0C6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{8F3E129D-A2A0-46CF-945A-5D20564253D1}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{96C1FCA1-B32B-4A2E-94A0-FB6405618590}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{2BD27D77-9C83-4F5D-8D88-95C0D178D2C0}] => (Allow) L:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{72E18E67-6B1F-4AAF-A64F-6B790226CFF7}] => (Allow) L:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{8015BBF8-1512-4258-8EAE-839F63E746EB}] => (Allow) L:\Games\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{B683AFD0-A5C5-42AD-BBA8-CD8675447CA1}] => (Allow) L:\Games\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{31F887E7-48D6-4CDB-8F03-549AA8060D6F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{FC8DA8E1-69C8-4B55-B4A3-C1C9B920577F}C:\users\ede\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\ede\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{6FD19D67-AD62-4F17-ABDF-5A77779E030B}C:\users\ede\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\ede\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{1CC64259-1C44-4A9B-B587-D020F357B198}L:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe] => (Allow) L:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe FirewallRules: [UDP Query User{9DC75795-559D-4AF0-A5DF-8550A48CB860}L:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe] => (Allow) L:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert Überprüfen Sie den "winmgmt" Dienst oder reparieren Sie den WMI. ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (03/21/2016 05:46:38 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Explorer.EXE, Version 6.1.7601.17567 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: b8c Startzeit: 01d1838f3189e14e Endzeit: 16 Anwendungspfad: C:\Windows\Explorer.EXE Berichts-ID: Error: (03/21/2016 05:43:53 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/21/2016 05:31:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/21/2016 05:18:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2016 07:36:17 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm SDFiles.exe, Version 2.4.40.135 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 102c Startzeit: 01d1643193c380af Endzeit: 16 Anwendungspfad: C:\Program Files\Spybot - Search & Destroy 2\SDFiles.exe Berichts-ID: 2a6ccb92-d025-11e5-bade-0019db28d310 Error: (02/10/2016 07:32:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.1.7601.17567, Zeitstempel: 0x4d6727a7 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.19110, Zeitstempel: 0x5684255a Ausnahmecode: 0xc015000f Fehleroffset: 0x0008433e ID des fehlerhaften Prozesses: 0x1368 Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Error: (02/10/2016 07:32:40 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.1.7601.17567, Zeitstempel: 0x4d6727a7 Name des fehlerhaften Moduls: SHELL32.dll, Version: 6.1.7601.18952, Zeitstempel: 0x55c39c76 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0004b188 ID des fehlerhaften Prozesses: 0x1368 Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Error: (02/10/2016 07:31:36 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm SDFiles.exe, Version 2.4.40.135 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 13b0 Startzeit: 01d16430bd51fc57 Endzeit: 0 Anwendungspfad: C:\Program Files\Spybot - Search & Destroy 2\SDFiles.exe Berichts-ID: 81a4f0f0-d024-11e5-bade-0019db28d310 Error: (02/10/2016 07:22:30 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2016 11:27:35 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Systemfehler: ============= Error: (03/21/2016 05:47:20 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (03/21/2016 05:47:20 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (03/21/2016 05:47:20 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (03/21/2016 05:47:20 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (03/21/2016 05:47:20 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (03/21/2016 05:47:20 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (03/21/2016 05:47:09 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (03/21/2016 05:47:09 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (03/21/2016 05:47:09 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (03/21/2016 05:31:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "VBoxAsw Support Driver" wurde aufgrund folgenden Fehlers nicht gestartet: %%3 ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 CPU 6700 @ 2.66GHz Prozentuale Nutzung des RAM: 40% Installierter physikalischer RAM: 3198.46 MB Verfügbarer physikalischer RAM: 1902.51 MB Summe virtueller Speicher: 6395.25 MB Verfügbarer virtueller Speicher: 4891.19 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:298.09 GB) (Free:161.72 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] Drive l: (USB-HDD) (Fixed) (Total:1397.26 GB) (Free:709.77 GB) NTFS ==================== MBR & Partitionstabelle ================== ==================== Ende vom Addition.txt ============================ ich habe dir die Files reingestellt. Ich wollte mich für Deine Antwort danken, (wenn auch spät) und mich entschuldigen, dass ich mich erst jetzt melde. Ich hatte im Februar nämlich Klausurenphase und habe deswegen den PC einfach in ein Eck gestellt um ehrlich zu sein. Ich hoffe mal ich habe nicht mein recht auf Hilfe verwirkt. Und als Update, meine Passwörter sind safe. ich hatte nur einen zahlendreher im Kopf. Mit freundlichen Grüßen Dexrano |
22.03.2016, 19:36 | #4 |
/// TB-Ausbilder /// Anleitungs-Guru | Datensicherung auf womöglich verseuchten externen Festplatte Bitte Scan mit Admin-Rechten wiederholen...
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
29.03.2016, 22:11 | #5 |
| Datensicherung auf womöglich verseuchten externen FestplatteCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:05-03-2016 01 durchgeführt von Ede (Administrator) auf EDE-PC (29-03-2016 22:55:55) Gestartet von C:\Users\Ede\Downloads Geladene Profile: Ede & Retard (Verfügbare Profile: Ede & Retard) Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) Sprache: Deutsch (Deutschland) Internet Explorer Version 9 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Logitech Inc.) C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe () C:\Program Files\Acer\AcerSync\AcerSyncSystemService.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX86\officeclicktorun.exe (SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE (MKS Software Inc.) C:\Windows\System32\nutsrv4.exe (PTC Inc.) C:\PTC Portmapper\i486_nt\obj\portmap.exe (Razer Inc.) C:\Program Files\Razer\Razer Game Booster\RzKLService.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe () C:\Program Files\NETGEAR\WNDA3100v2\WifiSvc.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe () C:\Program Files\MATLAB\R2014a\bin\win32\MATLABStartupAccelerator.exe (Logitech(c)) C:\Program Files\Logitech\G35\G35.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Logitech(c)) C:\Program Files\Logitech\G35\G35.exe (Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe (Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Akamai Technologies, Inc.) C:\Users\Ede\AppData\Local\Akamai\netsession_win.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Akamai Technologies, Inc.) C:\Users\Ede\AppData\Local\Akamai\netsession_win.exe (Microsoft Corporation) C:\Windows\Temp\A472958E-5E87-4546-9FDD-E0ABB8498669\DismHost.exe (Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [Logitech G35] => C:\Program Files\Logitech\G35\G35.exe [1811800 2010-10-05] (Logitech(c)) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7139256 2016-03-21] (AVAST Software) HKLM\...\Run: [] => [X] HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [597040 2015-12-22] (Oracle Corporation) HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X] HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Ede\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.) HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\CurrentVersion\Windows: [Run] <===== ACHTUNG ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2016-03-21] (AVAST Software) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2011-12-08] ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation) BootExecute: autocheck autochk * sdnclean.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc.) Winsock: Catalog9 11 C:\Windows\system32\nutafun4.dll [164232 2012-10-12] (MKS Software Inc.) Winsock: Catalog9 12 C:\Windows\system32\nutafun4.dll [164232 2012-10-12] (MKS Software Inc.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 Tcpip\..\Interfaces\{4C4ACC83-C1F0-4446-AFC3-CDDBB9CCD9A0}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{526A63F6-35D3-4653-AFB9-69028E8AA039}: [DhcpNameServer] 192.168.2.1 192.168.2.1 Tcpip\..\Interfaces\{7346A3FB-B682-432B-8A4C-942F0336833A}: [DhcpNameServer] 192.168.2.1 192.168.2.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617912&ResetID=130896628347822265&GUID=0677C8D2-0B16-46C0-8380-315CCC97E4FA HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617912&ResetID=130896628352509765&GUID=0677C8D2-0B16-46C0-8380-315CCC97E4FA HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxps://www.google.com/?trackid=sp-006 SearchScopes: HKLM -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1 SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyB0AyBzytCzy0C0AtD0E0FtDyCtDtCtBtN0D0Tzu0SyByEyCtN1L2XzutBtFtBtFtCyDtFtCyDzytBtN1L1CzutDzytDtCtG1T&cr=903789483&ir= SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1436379094&z=55d8ffaf114c4f718754dc3gez0c5qfcbmatee1b7m&from=cvs5&uid=WDCXWD3201ABYS-01B9A0_WD-WCARW436360863608&q={searchTerms} SearchScopes: HKLM -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = hxxps://de.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms} SearchScopes: HKLM -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1 SearchScopes: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1 SearchScopes: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs5&utm_campaign=install_ie&utm_content=ds&from=cvs5&uid=WDCXWD3201ABYS-01B9A0_WD-WCARW436360863608&ts=1436379155&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs5&utm_campaign=install_ie&utm_content=ds&from=cvs5&uid=WDCXWD3201ABYS-01B9A0_WD-WCARW436360863608&ts=1436379155&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000 -> {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs5&utm_campaign=install_ie&utm_content=ds&from=cvs5&uid=WDCXWD3201ABYS-01B9A0_WD-WCARW436360863608&ts=1436379155&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000 -> {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs5&utm_campaign=install_ie&utm_content=ds&from=cvs5&uid=WDCXWD3201ABYS-01B9A0_WD-WCARW436360863608&ts=1436379155&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000 -> {D4BBE6F1-1369-4AA7-860E-801784A0C195} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs5&utm_campaign=install_ie&utm_content=ds&from=cvs5&uid=WDCXWD3201ABYS-01B9A0_WD-WCARW436360863608&ts=1436379155&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs5&utm_campaign=install_ie&utm_content=ds&from=cvs5&uid=WDCXWD3201ABYS-01B9A0_WD-WCARW436360863608&ts=1436379155&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSERBM&pc=MSERT1 BHO: Kein Name -> {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} -> Keine Datei BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_72\bin\ssv.dll [2016-01-25] (Oracle Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-03-21] (AVAST Software) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2016-03-21] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_72\bin\jp2ssv.dll [2016-01-25] (Oracle Corporation) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_21-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL [2001-01-22] (Microsoft Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-05-22] (Microsoft Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Ede\AppData\Roaming\Mozilla\Firefox\Profiles\j843skls.default FF NewTab: chrome://quick_start/content/index.html FF SearchEngineOrder.1: Google FF SelectedSearchEngine: mystartsearch FF Homepage: about:home FF Keyword.URL: hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q= FF NetworkProxy: "autoconfig_url", "data:text/javascript,function FindProxyForURL(url, host) {if ((host == \"www.abc.net.au\") (host == \"iview.abc.net.au\") (host == \"iviewmetered-vh.akamaihd.net\") (url.indexOf(\"proxmate=au\") != -1) (host == \"livestream.com\") (host == \"www.livestream.com\") (host == \"api.new.livestream.com\") (host == \"player.ooyala.com\") (host == \"xnewsvidhd-vh.akamaihd.net\") (host == \"www.animelab.com\") (host == \"dcgm6i50yfgtk.cloudfront.net\")) { return 'PROXY au-node.proxmate.me:8008' } else if ((url.indexOf(\"proxmate=ca\") != -1) (host == \"ici.tou.tv\") (host == \"toutvuniver1-vh.akamaihd.net\") (host == \"geoip.radio-canada.ca\") (host == \"api.radio-canada.ca\") (host == \"images.tou.tv\") (host == \"player.siriusxm.ca\") (host == \"primary.hls-streaming.production.streaming.siriusxm.ca\") (host == \"now.sportsnet.ca\") (host == \"watch.sportsnet.ca\") (host == \"player.9c9media.com\") (host == \"metrics.ctv.ca\") (host == \"capi.9c9media.com\") (host == \"www.ctv.ca\")) { return 'PROXY ca-node.proxmate.me:8008' } else if ((host == \"arte.tv\") (host == \"www.arte.tv\") (host == \"geoftv-a.akamaihd.net\") (host == \"hdfauthftv-a.akamaihd.net\") (host == \"replayftv-vh.akamaihd.net\") (host == \"geoftv-a.akamaihd.net\") (host == \"hdfauthftv-a.akamaihd.net\") (host == \"replayftv-vh.akamaihd.net\") (host == \"ftvingest-vh.akamaihd.net\") (host == \"live.francetv.fr\") (host == \"d8.tv\") (host == \"www.d8.tv\") (host == \"us-cplus-aka.canal-plus.com\") (host == \"hds_live_d8_aka-lh.akamaihd.net\") (host == \"d17.tv\") (host == \"www.d17.tv\") (host == \"hds_live_d17_aka-lh.akamaihd.net\") (url.indexOf(\"proxmate=fr\") != -1) (host == \"www.6play.fr\") (host == \"geo.6cloud.fr\") (host == \"proxy-021.dc3.dailymotion.com\") (host == \"proxy-67.dailymotion.com\") (host == \"prof.estat.com\") (host == \"metrics.dailymotion.com\") (host == \"www.dailymotion.com\") (host == \"vmap.snappytv.com\")) { return 'PROXY fr-node.proxmate.me:8008' } else if ((host == \"vod-akamai-psd-hds.p7s1digital.de\") (host == \"vas.sim-technik.de\") (url.indexOf(\"proxmate=de\") != -1) (host == \"nightclub.de\") (host == \"zdf.de\") (host == \"www.zdf.de\") (host == \"zdf_hds_de-f.akamaihd.net\") (host == \"api.nowtv.de\") (host == \"delivestream-lh.akamaihd.net\") (host == \"cdnapi.kaltura.com\") (host == \"disneychannel.de\") (host == \"www.southpark.de\")) { return 'PROXY de-node.proxmate.me:8008' } else if ((host == \"www.tg4.ie\") (url.indexOf(\"proxmate=ie\") != -1)) { return 'PROXY ie-node.proxmate.me:8008' } else if ((host == \"rai.tv\") (host == \"www.rai.tv\") (host == \"mediapolis.rai.it\") (host == \"www.rai.it\") (host == \"stream5.rai.it\") (host == \"stream6.rai.it\") (host == \"stream7.rai.it\") (host == \"sspushrai1-s.akamaihd.net\") (host == \"sspushrai2-s.akamaihd.net\") (host == \"sspushraisport2-s.akamaihd.net\") (host == \"sspushrai3-s.akamaihd.net\") (host == \"secondary.adaptiveedge.rai.it\") (host == \"rai-italia01.wt-eu02.net\") (host == \"download.rai.tv\") (host == \"mediapolisvod.rai.it\") (host == \"ww.rai.tv\") (host == \".xuniplay.fdnames.com\") (url.indexOf(\"xuniplay.fdnames.com\") != -1) (host == \"se-to1-8.se.live3.msf.ticdn.it\") (host == \"live.shinystat.com\") (host == \"lic.mediaset.net\") (host == \"cssr.video.mediaset.it\") (url.indexOf(\"proxmate=it\") != -1) (host == \"www.vvvvid.it\")) { return 'PROXY it-node.proxmate.me:8008' } else if ((host == \"telecinco.es\") (host == \"telecinco1-vh.akamaihd.net\") (host == \"www.telecinco.es\") (url.indexOf(\"proxmate=es\") != -1) (host == \"antena3.com\") (host == \"www.antena3.com\") (host == \"geodesprogresiva.antena3.com\") (host == \"rtve.es\") (host == \"www.rtve.es\") (host == \"ztnr.rtve.es\") (host == \"mvodt.lvlt.rtve.es\") (host == \"swf.rtve.es\") (host == \"cuatro.com\") (host == \"www.cuatro.com\") (host == \"cuatro1-vh.akamaihd.net\") (host == \"peliculas-online.atresplayer.com\") (host == \"servicios.atresplayer.com\") (host == \"atresplayer.com\") (host == \"www.atresplayer.com\") (host == \"k.uecdn.es\") (host == \"v.uecdn.es\") (host == \"as.com\") (host == \"ep00.epimg.net\")) { return 'PROXY es-node.proxmate.me:8008' } else if ((host == \"prosieben.ch\") (host == \"www.prosieben.ch\") (host == \"vas.sim-technik.de\") (host == \"s1tv.ch\") (host == \"www.s1tv.ch\") (host == \"zba2-0-hds-live.zahs.tv\") (host == \"embed-zattoo.com\") (host == \"chtv.ch\") (host == \"www.chtv.ch\") (host == \"zba2-1-hds-live.zahs.tv\") (host == \"sat1.ch\") (host == \"www.sat1.ch\") (host == \"rsi.ch\") (host == \"www.rsi.ch\") (host == \"codch-vh.akamaihd.net\") (host == \"il.srgssr.ch\") (host == \"ch.viva.tv\") (host == \"intl.esperanto.mtvi.com\") (url.indexOf(\"proxmate=ch\") != -1) (host == \"zattoo.com\") (host == \"www.srf.ch\") (host == \"srgssruni1ch-lh.akamaihd.net\") (host == \"srgssruni2ch-lh.akamaihd.net\") (host == \"srgssruni3ch-lh.akamaihd.net\") (host == \"www.teleboy.ch\") (host == \"aka-cdn-ns.adtech.de\") (host == \"teleboy.customers.cdn.iptv.ch\")) { return 'PROXY ch-node.proxmate.me:8008' } else if ((host == \"www.bbc.co.uk\") (host == \"open.live.bbc.co.uk\") (host == \"fig.bbc.co.uk\") (host == \"vod-hds-uk-live.edgesuite.net\") (host == \"vod-hds-uk-live.bbcfmt.vo.llnwd.net\") (host == \"www.bbc.co.uk\") (host == \"fig.bbc.co.uk\") (host == \"open.live.bbc.co.uk\") (host == \"vs-hds-uk-live.bbcfmt.vo.llnwd.net\") (host == \"vod-hds-uk-live.edgesuite.net\") (host == \"www.bbc.co.uk\") (host == \"fig.bbc.co.uk\") (host == \"open.live.bbc.co.uk\") (host == \"vs-hds-uk-live.bbcfmt.vo.llnwd.net\") (host == \"vs-hds-uk-live.edgesuite.net\") (host == \"vod-hds-uk-live.bbcfmt.vo.llnwd.net\") (host == \"c.brightcove.com\") (host == \"secure.brightcove.com\") (host == \"metrics.brightcove.com\") (host == \"stv-ak.cds1.yospace.com\") (host == \"core.stvfiles.com\") (host == \"player.stv.tv\") (host == \"stv.brightcove.com.edgesuite.net\") (host == \"uk-dev-stv.cdn.videoplaza.tv\") (host == \"mercury.itv.com\") (host == \"www.itv.com\") (host == \"itv.com\") (host == \"llnw.live.btv.simplestream.com\") (host == \"players.simplestream.com\") (host == \"uapi.simplestream.com\") (host == \"channel5.com\") (host == \"wwwcdn.channel5.com\") (host == \"cassie.channel5.com\") (host == \"player.channel5.com\") (host == \"deliver-hls.channel5.com\") (host == \"akahls.channel5.com\") (host == \"llnwhls.channel5.com\") (host == \"milkshake.tv\") (host == \"www.milkshake.tv\") (host == \"trk-euwest.tidaltv.com\") (host == \"mp.adverts.itv.com\") (host == \"req.tidaltv.com\") (host == \"s1.2mdn.net\") (host == \"pes.itv.com\") (host == \"ned.itv.com\") (host == \"itvdotcom.2cnt.net\") (host == \"tom.itv.com\") (host == \"dave.uktv.co.uk\") (host == \"uktvplay.uktv.co.uk\") (host == \"uktvhdse.brightcove.com.edgesuite.net\") (host == \"admin.brightcove.com\") (host == \"really.uktv.co.uk\") (host == \"yesterday.uktv.co.uk\") (host == \"drama.uktv.co.uk\") (host == \"live.tvplayer.com\") (host == \"tvplayer.com\") (host == \"sapi.tvplayer.com\") (host == \"api.tvplayer.com\") (host == \"www.gamefront.com\") (url.indexOf(\"proxmate=uk\") != -1) (host == \"channel4.com\") (host == \"ais.channel4.com\") (host == \"pandr.my.channel4.com\") (host == \"all4nav.channel4.com\") (host == \"4id.channel4.com\")) { return 'PROXY uk-node.proxmate.me:8008' } else if ((host == \"link.theplatform.com\") (host == \"discidevflash-f.akamaihd.net\") (host == \"api.geoip.dp.discovery.com\") (host == \"vidtech.cbsinteractive.com\") (host == \"vidtech.cbsima.com\") (host == \"om.cbsi.com\") (host == \"media.mtvnservices.com\") (host == \"api-manga.crunchyroll.com\") (host == \"crunchyroll.com\") (host == \"www.crunchyroll.com\") (host == \"cdn.wwtv.warnerbros.com\") (host == \"hlsioscwtv.warnerbros.com\") (host == \"media.cwtv.com\") (host == \"servicesaetn-a.akamaihd.net\") (host == \"live.mlssoccer.com\") (host == \"tvewnbc-i.akamaihd.net\") (host == \"tvenbceast-i.akamaihd.net\") (host == \"nbcmpx-vh.akamaihd.net\") (host == \"www.pandora.com\") (host == \"video.pbs.org\") (host == \"ga.video.cdn.pbs.org\") (host == \"urs.pbs.org\") (host == \"play.spotify.com\") (host == \"www.spotify.com\") (host == \"play.spotify.edgekey.net\") (host == \"www.iheart.com\") (host == \"api2.iheart.com\") (host == \"api.iheart.com\") (host == \"iheart.com\") (host == \"nick.mtvnimages.com\") (host == \"sni-vh.akamaihd.net\") (host == \"api.segment.io\") (host == \"www.vevo.com\") (host == \"vevo.com\") (host == \"apiv2.vevo.com\") (host == \"songza.com\") (host == \"new.songza.com\") (host == \"www.daisuki.net\") (host == \"bngn-vh.akamaihd.net\") (host == \"bngnwww.b-ch.com\") (host == \"www.hbogo.com\") (host == \"catalog.lv3.hbogo.com\") (host == \"profile.lv3.hbogo.com\") (host == \"profile.hbogo.com\") (url.indexOf(\".lv3.hbogo.com\") != -1) (host == \"register.hbogo.com\") (host == \"play.hbogo.com\") (host == \"smetrics.hbogo.com\") (url.indexOf(\".lv3.cdn.hbo.com\") != -1) (host == \"comet.api.hbo.com\") (host == \"play.google.com\") (host == \"checkout.google.com\") (host == \"store.google.com\") (host == \"apis.google.com\") (host == \"amc350888def-vh.akamaihd.net\") (host == \"a564avoddashnsus-a.akamaihd.net\") (host == \"atv-ps.amazon.com\") (host == \"www.amazon.com\") (host == \"amazon.com\") (host == \"fls-na.amazon.com\") (host == \"secure.brightcove.com\") (host == \"metrics.brightcove.com\") (host == \"phds-vod.cdn.turner.com\") (host == \"token.vgtf.net\") (host == \"www.ondemandkorea.com\") (host == \"www.fxnetworks.com\") (host == \"fxvcms-f.akamaihd.net\") (host == \"tvetelemundo-vh.akamaihd.net\") (host == \"feed.theplatform.com\") (host == \"fsvideohds-vh.akamaihd.net\") (host == \"watchable.com\") (host == \"cilhlsvod-f.akamaihd.net\") (host == \"oxygenvod-vh.akamaihd.net\") (host == \"tvesyfy-vh.akamaihd.net\") (host == \"www.smithsonianchannel.com\") (host == \"metrics.brightcove.com\") (host == \"c.brightcove.com\") (host == \"brightcove01.brightcove.com\") (host == \"edge.api.brightcove.com\") (host == \"www.eonline.com\") (host == \"link.theplatform.com\") (host == \"api.listenlive.co\") (host == \"playerservices.streamtheworld.com\") (host == \"player.listenlive.co\") (url.indexOf(\"live.streamtheworld.com\") != -1) (host == \"www.cartoonnetwork.com\") (host == \"www.viki.com\") (host == \"\\\"www.viki.com\") (host == \"www.origin.com\") (host == \"ht.cdn.turner.com\") (host == \"aolvideoshd-vh.akamaihd.net\") (host == \"syn.5min.com\") (host == \"stvideos.5min.com\") (host == \"www.showtime.com\") (host == \"secure.showtime.com\") (url.indexOf(\".vgtf.net\") != -1) (host == \"phds-live.cdn.turner.com\")) { return 'PROXY us-node.proxmate.me:8008' } else if ((host == \"livestreams.omroep.nl\") (host == \".npostreaming.nl\") (host == \"ida.omroep.nl\") (host == \"npoplayer.omroep.nl\") (host == \"www.zapp.nl\") (host == \"tellerapi.omroep.nl\") (host == \"e.omroep.nl\") (url.indexOf(\"proxmate=nl\") != -1)) { return 'PROXY nl-node.proxmate.me:8008' } else if ((host == \"tvthek.orf.at\") (host == \"apasfiisl.apa.at\") (host == \"orf.oewabox.at\") (host == \"atvplus.oewabox.at\") (host == \"cdn.atv.at\") (url.indexOf(\"proxmate=at\") != -1) (host == \"hdsvodsportsman-vh.akamaihd.net\") (host == \"streamaccess.unas.tv\") (host == \"www.laola1.tv\") (host == \"www.livestation.com\") (host == \"livestation.com\") (url.indexOf(\".emigrantas.tv\") != -1)) { return 'PROXY at-node.proxmate.me:8008' } else if ((host == \"netflix.com\") (host == \"www.netflix.com\") (host == \"cbp-us.nccp.netflix.com\") (host == \"secure.netflix.com\") (host == \"api-global.netflix.com\") (host == \"ichnaea.netflix.com\") (host == \"customerevents.netflix.com\") (host == \"s.thebrighttag.com\") (url.indexOf(\"proxmate=us\") != -1) (url.indexOf(\"proxmate=us\") != -1)) { return 'PROXY usnet-node.proxmate.me:8008' } else if ((host == \"s.hulu.com\") (host == \"www.funimation.com\") (host == \"wpc.8c48.edgecastcdn.net\") (host == \"southpark.cc.com\") (host == \"api.utils.watchabc.go.com\") (host == \"www.dramafever.com\") (host == \"www.logotv.com\") (host == \"media.mtvnservices.com\") (host == \"api.watchabc.go.com\") (host == \"theanimenetwork.com\") (host == \"huluim.com\") (host == \"www.hulu.com\") (host == \"t2.hulu.com\") (host == \"urlcheck.hulu.com\") (host == \"t.hulu.com\") (host == \"s.hulu.com\") (host == \"play.hulu.com\") (host == \"t2.huluim.com\")) { return 'PROXY ush-node.proxmate.me:8008' } else if ((host == \"player.ooyala.com\") (host == \"l.ooyala.com\")) { return 'PROXY auv-node.proxmate.me:8008' } else if ((host == \"web-api-us.crackle.com\") (host == \"legacyweb-us.crackle.com\")) { return 'PROXY us2-node.proxmate.me:8000' } else if ((host == \"counter.yadro.ru\") (host == \"turbik.tv\") (host == \"player.rutv.ru\") (host == \"api.rutv.ru\") (host == \"cdnng.v.rtr-vesti.ru\") (host == \"player.vgtrk.com\") (url.indexOf(\"proxmate=ru\") != -1) (host == \"stream.1tv.ru\") (host == \"mobdrm.1tv.ru\")) { return 'PROXY ru-node.proxmate.me:8008' } else if ((host == \"security.video.globo.com\") (host == \"api.globovideos.com\") (host == \"s.videos.globo.com\") (host == \"gshow.globo.com\") (host == \"voddownload02.video.globo.com\") (host == \"secure.nuuvem.com\")) { return 'PROXY br-node.proxmate.me:8008' } else { return 'DIRECT'; }}" FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_20_0_0_267.dll [2016-01-08] () FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.) FF Plugin: @java.com/DTPlugin,version=11.72.2 -> C:\Program Files\Java\jre1.8.0_72\bin\dtplugin\npDeployJava1.dll [2016-01-25] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.72.2 -> C:\Program Files\Java\jre1.8.0_72\bin\plugin2\npjp2.dll [2016-01-25] (Oracle Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-05-22] (Microsoft Corporation) FF Plugin: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npnxgameEU.dll [2014-01-31] (Nexon) FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-08-07] (NVIDIA Corporation) FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-08-07] (NVIDIA Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-3925520561-2683073460-2419899363-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Ede\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [Keine Datei] FF Plugin HKU\S-1-5-21-3925520561-2683073460-2419899363-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Ede\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2013-07-20] (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-3925520561-2683073460-2419899363-1000: amazon.com/AmazonMP3DownloaderPlugin -> C:\Users\Ede\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll [2013-05-22] (Amazon.com, Inc.) FF user.js: detected! => C:\Users\Ede\AppData\Roaming\Mozilla\Firefox\Profiles\j843skls.default\user.js [2015-07-09] FF SearchPlugin: C:\Users\Ede\AppData\Roaming\Mozilla\Firefox\Profiles\j843skls.default\searchplugins\askcom.xml [2012-10-31] FF SearchPlugin: C:\Users\Ede\AppData\Roaming\Mozilla\Firefox\Profiles\j843skls.default\searchplugins\Mysearchdial.xml [2014-01-16] FF Extension: ProxMate - C:\Users\Ede\AppData\Roaming\Mozilla\Firefox\Profiles\j843skls.default\Extensions\jid1-QpHD8URtZWJC2A@jetpack.xpi [2016-02-02] FF Extension: Adblock Plus - C:\Users\Ede\AppData\Roaming\Mozilla\Firefox\Profiles\j843skls.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-01-19] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2016-01-08] [ist nicht signiert] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2016-01-08] [ist nicht signiert] FF Extension: Skype - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2016-01-06] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-03-21] FF HKLM\...\Firefox\Extensions: [searchffv2@gmail.com] - C:\Users\Ede\AppData\Roaming\Mozilla\Firefox\Profiles\j843skls.default\extensions\searchffv2@gmail.com => nicht gefunden FF HKLM\...\Firefox\Extensions: [sweetsearch@gmail.com] - C:\Users\Ede\AppData\Roaming\Mozilla\Firefox\Profiles\j843skls.default\extensions\sweetsearch@gmail.com => nicht gefunden FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-03-21] Chrome: ======= CHR HomePage: Default -> hxxps://www.google.com/?trackid=sp-006 CHR StartupUrls: Default -> "hxxps://www.google.com/?trackid=sp-006" CHR DefaultSearchURL: Default -> hxxps://www.google.de/search?q={searchTerms}?trackid=sp-006 CHR DefaultSuggestURL: Default -> hxxps://www.google.com/complete/search?client=chrome&q={searchTerms} CHR Profile: C:\Users\Ede\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\Ede\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-23] CHR Extension: (Avast Online Security) - C:\Users\Ede\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-03-23] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Ede\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-21] CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-03-21] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AcerSyncSystemService; C:\Program Files\Acer\AcerSync\AcerSyncSystemService.exe [60312 2011-06-16] () R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [237096 2016-03-21] (AVAST Software) R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [1916656 2016-02-09] (Microsoft Corporation) R2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664 2007-01-11] (SEIKO EPSON CORPORATION) R2 NuTCRACKERService; C:\Windows\system32\nutsrv4.exe [422280 2012-10-12] (MKS Software Inc.) R2 PortmapperService; C:\/PTC Portmapper/i486_nt/obj/portmap.exe [499712 2014-12-02] (PTC Inc.) [Datei ist nicht signiert] R2 RzKLService; C:\Program Files\Razer\Razer Game Booster\RzKLService.exe [106472 2013-09-18] (Razer Inc.) R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 UMVPFSrv; C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848 2012-01-18] (Logitech Inc.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation) R2 WSWNDA3100v2; C:\Program Files\NETGEAR\WNDA3100v2\WifiSvc.exe [316120 2014-08-18] () S3 AvastVBoxSvc; "C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X] S3 DAUpdaterSvc; F:\Games\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [32792 2016-03-21] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [91168 2016-03-21] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [91232 2016-03-21] (AVAST Software) R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [58776 2016-03-21] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [816304 2016-03-21] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [447848 2016-03-21] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [127432 2016-03-21] (AVAST Software) R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [221240 2016-03-21] (AVAST Software) S3 athr; C:\Windows\System32\DRIVERS\athr.sys [1882624 2011-02-08] (Atheros Communications, Inc.) [Datei ist nicht signiert] R3 BCMH43XX; C:\Windows\System32\DRIVERS\bcmwlhigh6.sys [1093368 2015-03-02] (Broadcom Corporation) R3 cmpci; C:\Windows\System32\drivers\cmaudio.sys [374094 2002-03-26] (C-Media Inc) S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.) S3 InputFilter_Hid_FlexDef2b; C:\Windows\System32\DRIVERS\InputFilter_FlexDef2b.sys [14848 2010-06-19] (Siliten) S3 LADF_DHP2; C:\Windows\System32\DRIVERS\ladfDHP2i386.sys [53976 2010-09-29] (Logitech) S3 LADF_SBVM; C:\Windows\System32\DRIVERS\ladfSBVMi386.sys [335064 2010-09-29] (Logitech) S3 MouFilter_Mou_FlexDef4; C:\Windows\System32\DRIVERS\MouFilter_FlexDef4.sys [11776 2010-10-20] (Siliten) S3 NPF; C:\Windows\System32\DRIVERS\npf.sys [50704 2010-02-03] (CACE Technologies, Inc.) S3 Ph6xIB32; C:\Windows\System32\DRIVERS\Ph6xIB32.sys [1277952 2009-07-14] (NXP Semiconductors GmbH) S3 qcusbser; C:\Windows\System32\DRIVERS\qcusbser.sys [105984 2009-08-14] (QUALCOMM Incorporated) S3 RTL8187B; C:\Windows\System32\DRIVERS\wg111v3.sys [376832 2009-11-18] (NETGEAR Inc. ) S3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [34856 2014-04-09] (Razer Inc) R3 rzudd; C:\Windows\System32\DRIVERS\rzudd.sys [175040 2015-09-03] (Razer Inc) R0 SCMNdisP; C:\Windows\System32\DRIVERS\scmndisp.sys [21472 2011-07-22] (Windows (R) Win 7 DDK provider) S3 SCREAMINGBDRIVER; C:\Windows\System32\drivers\ScreamingBAudio.sys [34896 2014-02-07] (Screaming Bee LLC) S3 cpuz134; \??\C:\Users\Ede\AppData\Local\Temp\cpuz134\cpuz134_x32.sys [X] S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X] S2 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] S3 XDva404; \??\C:\Windows\system32\XDva404.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-29 22:55 - 2016-03-29 22:56 - 00038956 _____ C:\Users\Ede\Downloads\FRST.txt 2016-03-29 22:55 - 2016-03-29 22:55 - 01725440 _____ (Farbar) C:\Users\Ede\Downloads\FRST.exe 2016-03-21 18:51 - 2016-03-21 18:52 - 00074638 _____ C:\Users\Retard\Downloads\Addition.txt 2016-03-21 18:50 - 2016-03-29 22:55 - 00000000 ____D C:\FRST 2016-03-21 18:50 - 2016-03-21 18:52 - 00025243 _____ C:\Users\Retard\Downloads\FRST.txt 2016-03-21 18:50 - 2016-03-21 18:50 - 01725440 _____ (Farbar) C:\Users\Retard\Downloads\FRST.exe 2016-03-21 18:47 - 2016-03-21 18:54 - 00000000 ____D C:\Users\Retard\AppData\Local\Mozilla 2016-03-21 18:47 - 2016-03-21 18:47 - 00000000 ____D C:\Users\Retard\AppData\Roaming\Mozilla 2016-03-21 18:47 - 2016-03-21 18:47 - 00000000 ____D C:\Users\Retard\AppData\Roaming\AVAST Software 2016-03-21 18:46 - 2016-03-21 18:46 - 00001413 _____ C:\Users\Retard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-03-21 18:32 - 2016-03-29 22:53 - 00002197 _____ C:\Users\Retard\Desktop\Google Chrome.lnk 2016-03-21 18:32 - 2016-03-21 18:32 - 00000000 ____D C:\Users\Retard\AppData\Local\Google 2016-03-21 18:29 - 2016-03-29 22:52 - 00000000 ____D C:\Users\Retard\AppData\Local\VirtualStore 2016-03-21 18:29 - 2016-03-21 18:32 - 00000000 ____D C:\Users\Retard 2016-03-21 18:29 - 2016-03-21 18:29 - 00000020 ___SH C:\Users\Retard\ntuser.ini 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\Vorlagen 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\Startmenü 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\Netzwerkumgebung 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\Lokale Einstellungen 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\Eigene Dateien 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\Druckumgebung 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\Documents\Eigene Videos 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\Documents\Eigene Musik 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\Documents\Eigene Bilder 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\AppData\Local\Verlauf 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\AppData\Local\Anwendungsdaten 2016-03-21 18:29 - 2016-03-21 18:29 - 00000000 _SHDL C:\Users\Retard\Anwendungsdaten 2016-03-21 18:29 - 2015-10-18 19:08 - 00000000 ____D C:\Users\Retard\AppData\Local\Microsoft Help 2016-03-21 18:29 - 2015-05-20 21:04 - 00002082 _____ C:\Users\Retard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk 2016-03-21 18:29 - 2011-04-12 03:38 - 00000000 ____D C:\Users\Retard\AppData\Roaming\Media Center Programs 2016-03-21 18:27 - 2016-03-21 18:27 - 00334280 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2016-03-21 18:27 - 2016-03-21 18:27 - 00052184 _____ (AVAST Software) C:\Windows\avastSS.scr ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-29 22:53 - 2014-12-30 16:03 - 00000542 _____ C:\Windows\Tasks\MATLAB R2014a Startup Accelerator.job 2016-03-29 22:53 - 2014-09-10 00:39 - 00001094 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-03-29 22:50 - 2011-10-28 17:07 - 00000000 ____D C:\ProgramData\NVIDIA 2016-03-29 22:50 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-03-21 18:44 - 2015-05-20 20:59 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-03-21 18:43 - 2015-05-20 20:58 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-03-21 18:39 - 2009-07-14 06:34 - 00023680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-03-21 18:39 - 2009-07-14 06:34 - 00023680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-03-21 18:35 - 2014-09-10 00:39 - 00001098 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-03-21 18:28 - 2013-04-01 19:53 - 00221240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys 2016-03-21 18:28 - 2011-10-27 23:14 - 00816304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys 2016-03-21 18:28 - 2011-10-27 23:14 - 00447848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2016-03-21 18:28 - 2011-10-27 23:14 - 00091168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswmonflt.sys 2016-03-21 18:27 - 2014-05-05 21:29 - 00032792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2016-03-21 18:27 - 2014-02-11 23:17 - 00127432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2016-03-21 18:27 - 2013-04-01 19:53 - 00058776 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2016-03-21 18:27 - 2012-05-27 21:24 - 00091232 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2008-11-22 02:20 - 2008-11-22 02:20 - 0007725 _____ () C:\Program Files\Sims2 eXtreme uninstall.bat Einige Dateien in TEMP: ==================== C:\Users\Ede\AppData\Local\Temp\First15.exe C:\Users\Ede\AppData\Local\Temp\msvcr100.dll C:\Users\Ede\AppData\Local\Temp\OfficeSetup.exe C:\Users\Ede\AppData\Local\Temp\Tsu45ACF2DB.dll C:\Users\Ede\AppData\Local\Temp\uninstall.exe C:\Users\Ede\AppData\Local\Temp\VP6Install.exe C:\Users\Ede\AppData\Local\Temp\VP6VFW.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-01-29 21:29 ==================== Ende vom FRST.txt ============================ |
29.03.2016, 22:14 | #6 |
| Datensicherung auf womöglich verseuchten externen FestplatteCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x86) Version:05-03-2016 01 durchgeführt von Ede (2016-03-29 22:56:47) Gestartet von C:\Users\Ede\Downloads Microsoft Windows 7 Ultimate Service Pack 1 (X86) (2011-10-05 12:57:27) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3925520561-2683073460-2419899363-500 - Administrator - Disabled) Ede (S-1-5-21-3925520561-2683073460-2419899363-1000 - Administrator - Enabled) => C:\Users\Ede Gast (S-1-5-21-3925520561-2683073460-2419899363-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-3925520561-2683073460-2419899363-1002 - Limited - Enabled) Retard (S-1-5-21-3925520561-2683073460-2419899363-1005 - Limited - Enabled) => C:\Users\Retard ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Acer Sync (HKLM\...\{1FA08A70-6E60-4E06-90B6-7B96A741E9E0}) (Version: 1.06.3006 - Acer Incorporated) Adobe Acrobat Reader DC - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20056 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 20.0.0.267 - Adobe Systems Incorporated) Age of Empires II: HD Edition (HKLM\...\Steam App 221380) (Version: - Hidden Path Entertainment, Ensemble Studios) Akamai NetSession Interface (HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Amazon MP3-Downloader 1.0.18 (HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\Amazon MP3-Downloader) (Version: 1.0.18 - Amazon Services LLC) Amnesia: The Dark Descent (HKLM\...\Steam App 57300) (Version: - ) Antichamber (HKLM\...\Steam App 219890) (Version: - Alexander Bruce) Apple Application Support (HKLM\...\{CCE825DB-347A-4004-A186-5F4A6FDD8547}) (Version: 2.3.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{459699C3-9430-4381-964B-4248D87B49F9}) (Version: 6.0.1.3 - Apple Inc.) Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Avast Free Antivirus (HKLM\...\avast) (Version: 11.1.2253 - AVAST Software) Awesomenauts (HKLM\...\Steam App 204300) (Version: - ) Bastion (HKLM\...\Steam App 107100) (Version: - Supergiant Games) Beatbuddy: Tale of the Guardians (HKLM\...\Steam App 231040) (Version: - Threaks) Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.) Braid (HKLM\...\Steam App 26800) (Version: - Number None, Inc.) Canon IJ Network Scanner Selector EX (HKLM\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - Canon Inc.) Canon IJ Network Tool (HKLM\...\Canon_IJ_Network_UTILITY) (Version: 3.1.0 - Canon Inc.) Canon IJ Scan Utility (HKLM\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.) Canon MG4200 series Benutzerregistrierung (HKLM\...\Canon MG4200 series Benutzerregistrierung) (Version: - Canon Inc.) Canon MG4200 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG4200_series) (Version: 1.01 - Canon Inc.) Canon MG4200 series On-screen Manual (HKLM\...\Canon MG4200 series On-screen Manual) (Version: 7.5.0 - Canon Inc.) Canon My Image Garden (HKLM\...\Canon My Image Garden) (Version: 1.1.2 - Canon Inc.) Canon My Image Garden Design Files (HKLM\...\Canon My Image Garden Design Files) (Version: 1.0.1 - Canon Inc.) Canon My Printer (HKLM\...\CanonMyPrinter) (Version: 3.0.0 - Canon Inc.) Capsized (HKLM\...\Steam App 95300) (Version: - Alientrap Games Inc) Cry of Fear (HKLM\...\Steam App 223710) (Version: - Team Psykskallar) Dear Esther (HKLM\...\Steam App 203810) (Version: - thechineseroom & Robert Briscoe) Desperados 2 (HKLM\...\{37155929-A51F-4BAB-B141-50B341F3299C}) (Version: 1.01.0000 - Atari) Desperados 2 Update v1.01 (HKLM\...\Desperados 2 Update v1.01) (Version: 1.01 - Spellbound Studios GmbH) Die Siedler III Gold Edition (HKLM\...\S3) (Version: - ) Doom 3 (HKLM\...\InstallShield_{EEFB15EB-FE8B-47DF-A496-1C4D1420294A}) (Version: 1.00.0000 - Activision) Doom 3 (Version: 1.00.0000 - Activision) Hidden Doom 3 (Version: 1.2 - Activision) Hidden DOOM 3: Resurrection of Evil (HKLM\...\InstallShield_{04347DFD-87B6-4E30-B14D-5DF2888AD8F5}) (Version: 1.0 - Activision) DOOM 3: Resurrection of Evil (Version: 1.0 - Activision) Hidden Dragon Age: Origins - Ultimate Edition (HKLM\...\Steam App 47810) (Version: - BioWare) Emosewa (HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\Emosewa) (Version: - ) EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version: - SEIKO EPSON Corporation) Facebook Video Calling 3.1.0.521 (HKLM\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) Fallout: New Vegas (HKLM\...\Steam App 22380) (Version: - Bethesda Softworks) Fraps (remove only) (HKLM\...\Fraps) (Version: - ) Garry's Mod (HKLM\...\Steam App 4000) (Version: - Facepunch Studios) GIMP 2.6.12 (HKLM\...\WinGimp-2.0_is1) (Version: 2.6.12 - The GIMP Team) Google Chrome (HKLM\...\Google Chrome) (Version: 48.0.2564.97 - Google Inc.) Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (Version: 1.3.29.5 - Google Inc.) Hidden Grand Theft Auto III (HKLM\...\Steam App 12100) (Version: - Rockstar Games) Grand Theft Auto Vice City (HKLM\...\{4B35F00C-E63D-40DC-9839-DF15A33EAC46}) (Version: 1.00.000 - ) GTA2 (HKLM\...\GTA2) (Version: - ) Half-Life 2 (HKLM\...\Steam App 220) (Version: - Valve) Half-Life 2: Episode One (HKLM\...\Steam App 380) (Version: - Valve) Half-Life 2: Episode Two (HKLM\...\Steam App 420) (Version: - Valve) Half-Life 2: Lost Coast (HKLM\...\Steam App 340) (Version: - Valve) Hammerwatch (HKLM\...\Steam App 239070) (Version: - ) Heroes of Might and Magic V (HKLM\...\{20071984-5EB1-4881-8EDB-082532ACEC6D}) (Version: - ) Java 8 Update 40 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation) Java 8 Update 72 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218072F0}) (Version: 8.0.720.15 - Oracle Corporation) Java(TM) 6 Update 45 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216045FF}) (Version: 6.0.450 - Oracle) LIMBO (HKLM\...\Steam App 48000) (Version: - ) Little Inferno (HKLM\...\Steam App 221260) (Version: - Tomorrow Corporation) Logitech G35 (HKLM\...\{59279982-86E2-4C2A-8060-A3E77575CD8B}) (Version: 1.1.178 - Logitech) Lone Survivor (HKLM\...\Steam App 209830) (Version: - ) MATLAB R2014a (HKLM\...\Matlab R2014a) (Version: 8.3 - The MathWorks, Inc.) Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Age of Empires Gold (HKLM\...\Age of Empires Gold 1.0) (Version: - ) Microsoft Age of Empires II (HKLM\...\Age of Empires 2.0) (Version: - ) Microsoft Office Home and Student 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4805.1003 - Microsoft Corporation) Microsoft Office XP Professional mit FrontPage (HKLM\...\{90280407-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.2701.0 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\SkyDriveSetup.exe) (Version: 16.4.6012.0828 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP1 繁體中文 (HKLM\...\{0BE37B03-93EF-4B46-A4F3-30ED22569D1A}) (Version: 3.5.5692.0 - Microsoft Corporation) Microsoft Sync Framework Runtime v1.0 (x86) (HKLM\...\{A8BD5A60-E843-46DC-8271-ABF20756BE0F}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Sync Framework Services v1.0 (x86) (HKLM\...\{03CAB33F-D1C2-48C6-8766-DAE84DFC25FE}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x86) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Minecraft (HKLM\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) MKS Platform Components 9.x (HKLM\...\{10276636-0000-0905-9ABB-000BDB5CF35D}) (Version: 9.5.0000 - Mortice Kern Systems) Monaco (HKLM\...\Steam App 113020) (Version: - Pocketwatch Games) Mozilla Firefox 44.0 (x86 de) (HKLM\...\Mozilla Firefox 44.0 (x86 de)) (Version: 44.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 43.0.4.5848 - Mozilla) My Game Long Name (HKLM\...\UDK-aba5fb81-8518-4d2c-8f76-59cd1bea871c) (Version: - Epic Games, Inc.) Natural Selection 2 (HKLM\...\Steam App 4920) (Version: - Unknown Worlds Entertainment) NETGEAR WG111v3 wireless USB 2.0 adapter (HKLM\...\InstallShield_{5396FBD8-8BD7-47F9-92AE-F62F13D5A11D}) (Version: 1.00.0000 - NETGEAR) NETGEAR WG111v3 wireless USB 2.0 adapter (Version: 1.00.0000 - NETGEAR) Hidden NETGEAR WNDA3100v2 wireless USB 2.0 adapter (HKLM\...\{3C7839E7-21F4-49E0-B4D5-AC8ED818CCB0}) (Version: 2.2.0.5 - NETGEAR) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.33.1 - Black Tree Gaming) No More Room in Hell (HKLM\...\Steam App 224260) (Version: - No More Room in Hell Team) NVIDIA 3D Vision Controller-Treiber 285.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 285.62 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 353.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.82 - NVIDIA Corporation) NVIDIA Grafiktreiber 353.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.82 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.11.0621 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.11.0621 - NVIDIA Corporation) NVIDIA Update 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (Version: 15.0.4805.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4805.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (Version: 15.0.4805.1003 - Microsoft Corporation) Hidden OpenAL (HKLM\...\OpenAL) (Version: - ) Origin (HKLM\...\Origin) (Version: 9.1.10.2728 - Electronic Arts, Inc.) paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC41}) (Version: 4.0.5 - dotPDN LLC) Papers, Please (HKLM\...\GOGPACKPAPERSPLEASE_is1) (Version: 2.0.0.4 - GOG.com) PCI Audio Driver (HKLM\...\PCI Audio Driver) (Version: - ) PDF24 Creator 6.9.2 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) Pflanzen gegen Zombies™ (HKLM\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: 1.2.0.1093 - Electronic Arts, Inc.) Pivot Animator version 4.1.10 (HKLM\...\Pivot Animator_is1) (Version: 4.1.10 - Motus Software Ltd) Portal (HKLM\...\Steam App 400) (Version: - Valve) Portal 2 (HKLM\...\Postal 2_is1) (Version: - ) Portal 2 (HKLM\...\Steam App 620) (Version: - Valve) Portal 2 Publishing Tool (HKLM\...\Steam App 644) (Version: - ) Psychonauts (HKLM\...\Steam App 3830) (Version: - Double Fine Productions, Inc.) PTC Portmapper Version 2.0 Datecode [M120] (HKLM\...\PTC Portmapper Version 2.0 Datecode [M120]) (Version: 2.0 - PTC) PTC Quality Agent (HKLM\...\{CE7DF7C9-82FC-4E33-9E1E-D5C024A0EECE}) (Version: 2.0.0.0 - PTC) RAGE (HKLM\...\Steam App 9200) (Version: - ) Razer Game Booster (HKLM\...\Razer Game Booster_is1) (Version: 4.0.68.0 - Razer Inc.) Razer Synapse 2.0 (HKLM\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.02 - Razer Inc.) Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform) Rock of Ages (HKLM\...\Steam App 22230) (Version: - ) Rome - Total War - Gold Edition (HKLM\...\{2E97F7E8-ABDE-4E0D-B0AD-B6B4BAD89E24}) (Version: 1.6 - The Creative Assembly) Rust (HKLM\...\Steam App 252490) (Version: - Facepunch Studios) S4 League_EU (HKLM\...\{31C60819-C5EB-4886-9BF8-D2DE4CE3B90A}) (Version: 1.00.0000 - ) Serious Sam 3: BFE (HKLM\...\Steam App 41070) (Version: - Croteam) Serious Sam HD: The First Encounter (HKLM\...\Steam App 41000) (Version: - Croteam) Serious Sam HD: The Second Encounter (HKLM\...\Steam App 41010) (Version: - Croteam) Serious Sam: Der erste Kontakt (HKLM\...\{815050E5-F545-11D4-9569-004095812ACC}) (Version: - ) Serious Sam: The Second Encounter (HKLM\...\{5BDAA2F7-8E48-4AFF-AA92-B559D0CDF1AD}) (Version: - ) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Seven Kingdoms AA (HKLM\...\7kaa) (Version: - ) Seven Kingdoms II (HKLM\...\Seven Kingdoms II) (Version: - ) SF-Kalender 11.01 (HKLM\...\{170134E6-E7E2-47EE-ADF8-5099ED77A568}) (Version: 11.01.001 - Frank Stolzer) SilverCrest STMS 22.8 A1 Driver (HKLM\...\{1E494817-D81E-4B0E-B379-F34DF4DCDA58}) (Version: 1.0 - SilverCrest) SimCity 4 (HKLM\...\{01339AE5-04D4-43F8-008E-13AD788DC4F7}) (Version: - ) SimCity™ (HKLM\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 2.0.0.0 - Electronic Arts) Skype Click to Call (HKLM\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation) Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Sleeping Dogs™ (HKLM\...\Steam App 202170) (Version: - United Front Games) Source SDK (HKLM\...\Steam App 211) (Version: - Valve) Source SDK Base 2006 (HKLM\...\Steam App 215) (Version: - Valve) Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Starbound (HKLM\...\Steam App 211820) (Version: - ) Startup TOOLS - SE Creo 2.0 M030 (HKLM\...\Startup TOOLS - SE Creo 2.0) (Version: M030 - INNEO Solutions GmbH) Startup TOOLS WF5 Student Download (HKLM\...\Startup TOOLS WF5 Student Download) (Version: - ) Steam (HKLM\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Super Meat Boy (HKLM\...\Steam App 40800) (Version: - Team Meat) Super Meat Boy Editor (HKLM\...\Steam App 40810) (Version: - ) Superbrothers: Sword & Sworcery EP (HKLM\...\Steam App 204060) (Version: - ) Swarm Rampage© 1.00 (HKLM\...\Swarm Rampage© ) (Version: - ) Team Fortress 2 (HKLM\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) Terraria (HKLM\...\Steam App 105600) (Version: - ) The Binding of Isaac (HKLM\...\Steam App 113200) (Version: - Edmund McMillen and Florian Himsl) The Elder Scrolls V: Skyrim (HKLM\...\Steam App 72850) (Version: - Bethesda Game Studios) The Walking Dead (HKLM\...\Steam App 207610) (Version: - ) Thomas Was Alone (HKLM\...\Steam App 220780) (Version: - Mike Bithell) Transistor (HKLM\...\Steam App 237930) (Version: - Supergiant Games) Unity Web Player (HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Unturned (HKLM\...\Steam App 304930) (Version: - Nelson Sexton) Vindictus EU (HKLM\...\Vindictus EU) (Version: - ) VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN) Windows Driver Package - ACER Incorporated (qcusbser) Modem (08/16/2010 2.0.6.6) (HKLM\...\D149DB73BE02E748657C63CBB404510E56E08F63) (Version: 08/16/2010 2.0.6.6 - ACER Incorporated) Windows Driver Package - ACER Incorporated (qcusbser) Ports (08/16/2010 2.0.6.6) (HKLM\...\5D9817CE83DD092EB8923949297A94C53A0A27CF) (Version: 08/16/2010 2.0.6.6 - ACER Incorporated) Windows Driver Package - Acer, Inc (androidusb) USB (08/16/2010 1.0.0010.00000) (HKLM\...\83E7AE861B9BCCB05F7AA822F9EE26C0672E6888) (Version: 08/16/2010 1.0.0010.00000 - Acer, Inc) Windows Driver Package - Linux Developer Community Net (08/16/2010 5.1.2600.2781) (HKLM\...\637F4A11ADE9B1B3D8F4A37C0C4CA8EA924B739E) (Version: 08/16/2010 5.1.2600.2781 - Linux Developer Community) Windows-Treiberpaket - ACER Incorporated (qcusbser) Modem (05/06/2010 2.0.6.6) (HKLM\...\3A7384442C71FE1AD25BA46CADD1A093D01B997F) (Version: 05/06/2010 2.0.6.6 - ACER Incorporated) Windows-Treiberpaket - ACER Incorporated (qcusbser) Modem (10/12/2009 2.0.6.6) (HKLM\...\B2FCCBF3739130D032A0617CC6098523C6073B61) (Version: 10/12/2009 2.0.6.6 - ACER Incorporated) Windows-Treiberpaket - ACER Incorporated (qcusbser) Ports (05/06/2010 2.0.6.6) (HKLM\...\4F2FDBB6AB5E34443768E2239CF978CE96B4C55A) (Version: 05/06/2010 2.0.6.6 - ACER Incorporated) Windows-Treiberpaket - ACER Incorporated (qcusbser) Ports (10/12/2009 2.0.6.6) (HKLM\...\59972B5CC101974ED6E51C08E0CC89A01960039A) (Version: 10/12/2009 2.0.6.6 - ACER Incorporated) Windows-Treiberpaket - Acer, Inc (androidusb) USB (05/06/2010 1.0.0010.00000) (HKLM\...\FC2275033461049F835EAA0CBAF93F977BB84493) (Version: 05/06/2010 1.0.0010.00000 - Acer, Inc) Windows-Treiberpaket - Acer, Inc (androidusb) USB (10/12/2009 1.0.0010.00000) (HKLM\...\75397A2EC23E9AD977B09CAD2C2683A60DF981B5) (Version: 10/12/2009 1.0.0010.00000 - Acer, Inc) Windows-Treiberpaket - Linux Developer Community Net (05/06/2010 5.1.2600.2781) (HKLM\...\7D9DEFD96C34631441AB89B385EFD550B20304D5) (Version: 05/06/2010 5.1.2600.2781 - Linux Developer Community) WinRAR 5.30 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH) World of Warcraft (HKLM\...\World of Warcraft) (Version: - Blizzard Entertainment) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000_Classes\CLSID\{3f04dadf-6ea4-44d1-a507-03cad176f443}\InprocServer32 -> C:\Users\Ede\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll (Amazon.com, Inc.) CustomCLSID: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\Ede\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS) CustomCLSID: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000_Classes\CLSID\{8B9F5BF4-0407-4BB2-9FED-4C0372DABD00}\localserver32 -> C:\Users\Ede\AppData\Local\Facebook\Video\Skype\FacebookVideoCallingProxy.exe => Keine Datei CustomCLSID: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000_Classes\CLSID\{CBE9C57E-FFA9-4123-8354-AD360D6DD3CC}\InprocServer32 -> C:\Users\Ede\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll => Keine Datei ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {2B142B2C-329B-4F7E-955E-C010D8D514AB} - System32\Tasks\{4FE673E3-3064-4DE8-ADD7-010DAC3B383D} => pcalua.exe -a D:\SETUP.EXE -d D:\ Task: {2DF3A005-2958-464E-8687-05B6FC60DAAC} - System32\Tasks\{9E379828-578A-413C-8C0B-C6E5FB04E35C} => pcalua.exe -a "F:\64 bit\setup.exe" -d "F:\64 bit" Task: {32EC146F-4AE3-4D66-9283-63FB6CB2352D} - System32\Tasks\AcerSync => C:\Program Files\Acer\AcerSync\AcerSyncLiveUpdate.exe [2011-06-16] (acer) Task: {3E4C51AD-EAFE-4F77-9917-8F1EAC0383E4} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3925520561-2683073460-2419899363-1000Core => C:\Users\Ede\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: {48D3AAE9-FA33-43C9-BCA8-5B920488A6FD} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.) Task: {4D6467F2-777C-4F0C-AC0F-75A50B3D9078} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX86\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation) Task: {5456ACEE-D323-4C9F-BE54-C8BF058C7719} - System32\Tasks\{528D2BE5-46B3-44EA-AE3B-23A663B02A4C} => pcalua.exe -a "C:\Program Files\EA GAMES\Die Sims 2 H&M®-Fashion-Accessoires\eauninstall.exe" -d "C:\Program Files\EA GAMES\Die Sims 2 H&M®-Fashion-Accessoires" Task: {5B0C8790-7A59-43FD-A413-BB79178DD671} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3925520561-2683073460-2419899363-1000UA => C:\Users\Ede\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: {663E9B84-5B9F-4773-8647-E1D29322FB5A} - System32\Tasks\{FF002FED-C52E-45AF-B79E-FDE861903E0C} => pcalua.exe -a C:\BlueByte\Siedler3\s3new160.exe -d C:\BlueByte\Siedler3 Task: {74514283-30F9-46C1-BA77-59314126A3DD} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-03-21] (AVAST Software) Task: {787B7580-0E25-4977-B318-61CCDCA98338} - System32\Tasks\MATLAB R2014a Startup Accelerator => C:\Program Files\MATLAB\R2014a\bin\win32\MATLABStartupAccelerator.exe [2014-01-29] () Task: {890B58C4-6552-47B9-A41E-E517D0170CE7} - System32\Tasks\{7A10CBDC-670F-44D7-A7A7-C7D3249880E6} => pcalua.exe -a C:\Users\Ede\Downloads\jre-6u31-windows-i586-iftw.exe -d "C:\Program Files\Mozilla Firefox" Task: {8E64BFDF-D00C-4034-AA4B-17A7B638644F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated) Task: {98F61DF8-D240-408C-9771-AE4CE77B5788} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-03-21] (AVAST Software) Task: {A4CF1405-1B2C-471E-9AB1-C5BE6340A34C} - System32\Tasks\{DD53AAB2-6267-419B-A8C2-32CDC8399F5E} => pcalua.exe -a C:\Users\Ede\Downloads\epson324559eu.exe -d C:\Users\Ede\Downloads Task: {B22C385A-0AAC-4BBC-8C6F-E385D9649B41} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) Task: {B4AD5151-D2B7-4956-AA40-53457F0DB86F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.) Task: {B52032D5-6F9A-4BB2-AD0F-50954CF50726} - System32\Tasks\{BA7EC031-5048-470E-A95D-74D1D8CB11A1} => pcalua.exe -a C:\Users\Ede\Downloads\TagesSetup.exe -d C:\Users\Ede\Downloads Task: {BA0EE404-EF18-49EE-AA72-0459906132D3} - System32\Tasks\{B88441FC-1017-4FAB-900D-82130635B618} => I:\Games\Desperados2.exe Task: {BD71C27C-9696-4942-AECE-5A6F921EA524} - System32\Tasks\{0F00B0BF-0BF9-4E9E-91A1-A3CF95A803B9} => C:\CRIME\CRIME.EXE [2002-10-22] () Task: {BDFE3B2D-ED43-4DE4-ACC3-7450466B1088} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.) Task: {CB302EA5-A31F-4AA3-BE4D-9317D208E314} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX86\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation) Task: {D8F7A08E-DB1C-462E-BF00-7BCDE775B572} - System32\Tasks\{7AB0473E-0EA8-464C-8CDD-97E01CB43B48} => C:\CRIME\CRIME.EXE [2002-10-22] () Task: {ECB67861-B018-4D55-A34B-602230F22740} - System32\Tasks\FOTA => C:\Program Files\Acer\AcerSync\FOTA.exe [2011-06-16] (Microsoft) Task: {EE3DA58F-7162-4646-896A-3EFC62E4DA3B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3925520561-2683073460-2419899363-1000Core.job => C:\Users\Ede\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3925520561-2683073460-2419899363-1000UA.job => C:\Users\Ede\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\MATLAB R2014a Startup Accelerator.job => C:\Program Files\MATLAB\R2014a\bin\win32\MATLABStartupAccelerator.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2011-10-30 13:38 - 2015-08-07 02:05 - 00106288 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll 2016-03-21 18:27 - 2016-03-21 18:27 - 00113496 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2016-03-21 18:27 - 2016-03-21 18:27 - 00133768 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-03-21 18:26 - 2016-03-21 18:26 - 02856960 _____ () C:\Program Files\AVAST Software\Avast\defs\16032101\algo.dll 2016-03-21 18:27 - 2016-03-21 18:27 - 00480760 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2016-03-29 22:50 - 2016-03-29 22:50 - 02846208 _____ () C:\Program Files\AVAST Software\Avast\defs\16032901\algo.dll 2011-12-12 21:55 - 2011-06-16 18:59 - 00060312 _____ () C:\Program Files\Acer\AcerSync\AcerSyncSystemService.exe 2012-11-28 15:13 - 2012-11-28 15:13 - 00087952 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2012-11-28 15:13 - 2012-11-28 15:13 - 01242512 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2015-05-21 21:46 - 2015-10-13 03:43 - 00080040 _____ () C:\Program Files\Microsoft Office 15\ClientX86\ApiClient.dll 2016-01-31 13:09 - 2014-05-13 13:04 - 00109400 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2016-01-31 13:09 - 2014-05-13 13:04 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl 2016-01-31 13:09 - 2014-05-13 13:04 - 00167768 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2013-11-27 20:04 - 2014-08-18 17:50 - 00316120 _____ () C:\Program Files\NETGEAR\WNDA3100v2\WifiSvc.exe 2013-11-27 20:04 - 2015-03-05 18:22 - 00380928 _____ () C:\Program Files\NETGEAR\WNDA3100v2\WifiLib.dll 2016-01-31 13:09 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll 2016-01-31 13:09 - 2012-04-03 18:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2014-12-30 15:43 - 2014-01-29 12:42 - 00032768 _____ () C:\Program Files\MATLAB\R2014a\bin\win32\MATLABStartupAccelerator.exe 2015-12-16 20:29 - 2015-12-16 20:29 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2016-01-29 10:36 - 2016-01-27 19:39 - 01632584 _____ () C:\Program Files\Google\Chrome\Application\48.0.2564.97\libglesv2.dll 2016-01-29 10:36 - 2016-01-27 19:39 - 00087880 _____ () C:\Program Files\Google\Chrome\Application\48.0.2564.97\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com Da befinden sich 7870 mehr Seiten. IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\...\123simsen.com -> www.123simsen.com Da befinden sich 7870 mehr Seiten. ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:04 - 2016-01-31 13:55 - 00450902 ____R C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 127.0.0.1 www.0scan.com 127.0.0.1 0scan.com 127.0.0.1 1000gratisproben.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com 127.0.0.1 www.100sexlinks.com 127.0.0.1 100sexlinks.com 127.0.0.1 10sek.com 127.0.0.1 www.10sek.com 127.0.0.1 www.1-2005-search.com 127.0.0.1 1-2005-search.com 127.0.0.1 123fporn.info 127.0.0.1 www.123fporn.info 127.0.0.1 123haustiereundmehr.com 127.0.0.1 www.123haustiereundmehr.com 127.0.0.1 123moviedownload.com 127.0.0.1 www.123moviedownload.com Da befinden sich 15468 zusätzliche Einträge. ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3925520561-2683073460-2419899363-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Ede\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg HKU\S-1-5-21-3925520561-2683073460-2419899363-1005\Control Panel\Desktop\\Wallpaper -> C:\Users\Retard\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^NETGEAR WG111v3 Smart Wizard.lnk => C:\Windows\pss\NETGEAR WG111v3 Smart Wizard.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^NETGEAR WNDA3100v2 Genie.lnk => C:\Windows\pss\NETGEAR WNDA3100v2 Genie.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SolidWorks Hintergrund-Downloader.lnk => C:\Windows\pss\SolidWorks Hintergrund-Downloader.lnk.CommonStartup MSCONFIG\startupreg: AmazonMP3DownloaderHelper => C:\Users\Ede\AppData\Local\Program Files\Amazon\MP3 Downloader\AmazonMP3DownloaderHelper.exe MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: C-Media Mixer => Mixer.exe /startup MSCONFIG\startupreg: Facebook Update => "C:\Users\Ede\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: IJNetworkScannerSelectorEX => C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Launch SilverCrest STMS 22.8 A1-K => C:\Program Files\SilverCrest STMS 22.8 A1 Driver\KbClient_FD2.exe MSCONFIG\startupreg: Launch SilverCrest STMS 22.8 A1-M => C:\Program Files\SilverCrest STMS 22.8 A1 Driver\MouClient_FD2.exe MSCONFIG\startupreg: NuTCSetupEnviron => C:\MKSTOO~1\bin\ncoeenv.exe MSCONFIG\startupreg: NvBackend => "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe" MSCONFIG\startupreg: PDFPrint => C:\Program Files\PDF24\pdf24.exe MSCONFIG\startupreg: Razer Synapse => "C:\Program Files\Razer\Synapse\RzSynapse.exe" MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: Steam => "F:\Games\Steam\steam.exe" -silent ==================== FirewallRules (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [TCP Query User{75E546DD-0493-4C7A-8736-73AD7FAE52ED}C:\program files\java\jre6\bin\javaw.exe] => (Allow) C:\program files\java\jre6\bin\javaw.exe FirewallRules: [UDP Query User{D569CF86-717E-4267-B61F-8B58715F4ACF}C:\program files\java\jre6\bin\javaw.exe] => (Allow) C:\program files\java\jre6\bin\javaw.exe FirewallRules: [{AECCAB8D-7F16-452F-A159-58DE66BEBABB}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{B3BE002E-3D3F-4F34-98EE-8B295E140C44}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{BA12A36D-9079-42B4-BC7F-A5F3B491E78A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{0E850217-BB4D-40F1-AD18-C2D353A12ACF}I:\games\doom 3\doom3ded.exe] => (Allow) I:\games\doom 3\doom3ded.exe FirewallRules: [UDP Query User{1BD5760D-6881-49D1-90E9-E69628E8148B}I:\games\doom 3\doom3ded.exe] => (Allow) I:\games\doom 3\doom3ded.exe FirewallRules: [TCP Query User{B25718D2-CB35-4AB5-B747-57043A0AF740}C:\program files\acer\acersync\acersync.exe] => (Allow) C:\program files\acer\acersync\acersync.exe FirewallRules: [UDP Query User{D8FCA804-2B8D-4750-89BB-3DD6B1B9B7A3}C:\program files\acer\acersync\acersync.exe] => (Allow) C:\program files\acer\acersync\acersync.exe FirewallRules: [TCP Query User{22E2F17F-CA40-4A8B-B0FC-8CE9BF6F7C85}C:\program files\microsoft games\age of empires\empiresx.exe] => (Block) C:\program files\microsoft games\age of empires\empiresx.exe FirewallRules: [UDP Query User{04CCCE7D-5339-4E29-A144-51568F8758AC}C:\program files\microsoft games\age of empires\empiresx.exe] => (Block) C:\program files\microsoft games\age of empires\empiresx.exe FirewallRules: [TCP Query User{E0E4D1FB-A205-41FA-9773-41E2F12115D9}C:\program files\microsoft games\age of empires ii\empires2.icd] => (Allow) C:\program files\microsoft games\age of empires ii\empires2.icd FirewallRules: [UDP Query User{32B9FF0C-0177-4894-AFA5-E9E0B17BAA73}C:\program files\microsoft games\age of empires ii\empires2.icd] => (Allow) C:\program files\microsoft games\age of empires ii\empires2.icd FirewallRules: [TCP Query User{164ED043-788A-49C5-BCD9-CE31D035132E}C:\program files\microsoft games\age of empires\empires.exe] => (Block) C:\program files\microsoft games\age of empires\empires.exe FirewallRules: [UDP Query User{0EAA0185-1851-49AE-8764-1CEE16755CD0}C:\program files\microsoft games\age of empires\empires.exe] => (Block) C:\program files\microsoft games\age of empires\empires.exe FirewallRules: [TCP Query User{CDA799E9-EE10-4737-935D-62E025197D67}C:\program files\valve\portal 2\portal2.exe] => (Allow) C:\program files\valve\portal 2\portal2.exe FirewallRules: [UDP Query User{DCF01DD0-C956-4C1B-9EB9-C8E6DC83ABF4}C:\program files\valve\portal 2\portal2.exe] => (Allow) C:\program files\valve\portal 2\portal2.exe FirewallRules: [TCP Query User{7A453C71-3E5B-4F72-8260-6025AB7E0EA2}C:\program files\steam\steamapps\kredig\team fortress 2\hl2.exe] => (Allow) C:\program files\steam\steamapps\kredig\team fortress 2\hl2.exe FirewallRules: [UDP Query User{C411BCEC-2AA9-412E-93FF-C3E525C2291D}C:\program files\steam\steamapps\kredig\team fortress 2\hl2.exe] => (Allow) C:\program files\steam\steamapps\kredig\team fortress 2\hl2.exe FirewallRules: [{278A795B-56AF-4B77-8E31-A78D4CDC19AE}] => (Allow) C:\Program Files\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{62ABDEEB-C3C6-4B74-BD2A-A43FC3D3FCDD}] => (Allow) C:\Program Files\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{A84F1A0B-38D8-466F-8979-BD5BCE8B3386}] => (Allow) C:\Program Files\Steam\SteamApps\common\bastion\Bastion.exe FirewallRules: [{395457F4-E7C8-47C8-98A3-7C0D532A1538}] => (Allow) C:\Program Files\Steam\SteamApps\common\bastion\Bastion.exe FirewallRules: [{C29DAB30-0BC6-46AF-BFA8-1406404C459D}] => (Allow) C:\Program Files\Steam\SteamApps\common\amnesia the dark descent\Launcher.exe FirewallRules: [{08942145-10E5-4DC3-B726-7811A4E7EBE6}] => (Allow) C:\Program Files\Steam\SteamApps\common\amnesia the dark descent\Launcher.exe FirewallRules: [{3E29BF37-2E63-4C72-9575-E62D1F02966B}] => (Allow) C:\Program Files\Steam\Steam.exe FirewallRules: [{63AED61C-FCFE-468E-8A8B-539510DF4E11}] => (Allow) C:\Program Files\Steam\Steam.exe FirewallRules: [{3CC8FBC7-42D3-452F-ADC4-904CAFB7340E}] => (Allow) C:\Program Files\Steam\SteamApps\common\fallout new vegas\FalloutNVLauncher.exe FirewallRules: [{A9E793B1-B8AE-4087-9F9C-44832F424B5B}] => (Allow) C:\Program Files\Steam\SteamApps\common\fallout new vegas\FalloutNVLauncher.exe FirewallRules: [{1B213027-23FC-4222-89C0-C05B680ECCC8}] => (Allow) C:\Program Files\Steam\SteamApps\common\rock of ages\Binaries\Win32\RoA.exe FirewallRules: [{528752DE-3023-4437-B80E-21B8D86EC7A4}] => (Allow) C:\Program Files\Steam\SteamApps\common\rock of ages\Binaries\Win32\RoA.exe FirewallRules: [{8E2F8EE0-09E7-408D-B40E-26C328815D15}] => (Allow) C:\Program Files\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{859DEDDA-7666-41DE-9895-3CBBF8920897}] => (Allow) C:\Program Files\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{B9C8AD99-6A85-4A69-879A-DB5A28FEE75F}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [TCP Query User{F7F58B64-EEA4-49FA-9973-F8AAB2E9CB5A}C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe] => (Allow) C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [UDP Query User{61E34483-222F-4A20-939B-FB08C326F84A}C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe] => (Allow) C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [{2B6D86C6-6B23-48EE-90FF-C8F9FCAF7B2D}] => (Block) C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [{E2F23C72-E42A-4885-B357-EA3C3B723E1F}] => (Block) C:\users\ede\appdata\local\temp\rar$ex89.448\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [TCP Query User{9B43CA24-0284-4A95-97EA-6135139702AF}C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe] => (Allow) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [UDP Query User{71501A33-7670-4E76-986F-02E36208635D}C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe] => (Allow) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [{CFC61ACB-1FBE-48DD-AB9A-BB2B39FF6C11}] => (Block) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [{6CAF55D3-4C91-4198-88A3-0B08EA9038F9}] => (Block) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\age2_x1\age2_x1.exe FirewallRules: [TCP Query User{31DF599F-159A-45A4-A053-19A6F74036D1}C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe] => (Allow) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe FirewallRules: [UDP Query User{8802446F-F0AE-47C2-BD7E-73AF1E034AE3}C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe] => (Allow) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe FirewallRules: [{22C5877E-CA77-4840-BA98-45254B5930BE}] => (Block) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe FirewallRules: [{03C0ED69-9B66-4864-94E7-88A393B8EA22}] => (Block) C:\users\ede\desktop\games\aoc\age of empires 2 & the conquerors\game\myth-age2_x1.exe FirewallRules: [{3107C61F-82EF-48CA-8DCD-765A9BB549F7}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{D23815EA-902A-49D3-9C7B-07DD09C4064A}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{8E137670-07EE-4AFB-982C-203C5C2862ED}] => (Allow) C:\Program Files\Steam\SteamApps\common\fallout new vegas\FalloutNVLauncher.exe FirewallRules: [{AEEAD657-B990-4E13-B5B7-F74231F570FD}] => (Allow) C:\Program Files\Steam\SteamApps\common\fallout new vegas\FalloutNVLauncher.exe FirewallRules: [{4F98FC2D-B179-4284-A0EC-B399E1983C74}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage.exe FirewallRules: [{98D85F02-AE31-474C-A703-3CE1806906AA}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage.exe FirewallRules: [{69610BF6-C947-40A5-B843-8D58FBD9CC1B}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage64.exe FirewallRules: [{05A221AC-E666-41C5-AAB2-E8EF53200AD2}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage64.exe FirewallRules: [{94D099E2-4074-4DD2-B39D-D75A1CE03F46}] => (Allow) C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{33AEFCF5-DA55-4DB3-B2A7-AA043729E74A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{A922B1B7-C4CE-4CBE-9C96-BFEBE83F2B06}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{EEE3B774-541A-4747-A001-03C95D9B056C}] => (Allow) C:\Program Files\Steam\SteamApps\common\bastion\Bastion.exe FirewallRules: [{C997ADAA-6601-4722-B155-98004A433388}] => (Allow) C:\Program Files\Steam\SteamApps\common\bastion\Bastion.exe FirewallRules: [{6342772A-22E0-421A-BD67-7D83236E6DC3}] => (Allow) F:\Games\SimCity\SimCity\SimCity.exe FirewallRules: [{CCA2069C-69F0-4A30-855E-33996B133935}] => (Allow) F:\Games\SimCity\SimCity\SimCity.exe FirewallRules: [{558BC569-FCC1-468B-B032-81599FB70BC6}] => (Allow) C:\Program Files\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{803F1BFD-D4E1-43B2-92E6-AA9666A3AC41}] => (Allow) C:\Program Files\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{43874954-D452-4B02-B05C-9F1EA8AD8BD5}] => (Allow) C:\Program Files\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{CE67E385-1DF3-4718-BD23-1F68D7AE4C52}] => (Allow) C:\Program Files\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{5E0D5051-ABA5-4BD7-92BC-0AC2027B6B4D}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{43B8CC01-D20D-49E2-9FB4-77BB0FA137F7}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{A5620C7F-F6D5-4176-884B-0A724E19F897}] => (Allow) C:\Program Files\Steam\SteamApps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{2EF94974-7623-46D7-ABF4-858D894B5D01}] => (Allow) C:\Program Files\Steam\SteamApps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{CE05732F-37D2-498F-B380-F3F676C892A9}] => (Allow) C:\Program Files\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{CB0B34B8-7170-4AC9-8496-8870E82C6584}] => (Allow) C:\Program Files\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{6FCF4B60-4EE1-491D-9DBE-81FFF58E80F9}] => (Allow) C:\Program Files\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{D17E31DB-BCA6-496D-9454-773238ACA76C}] => (Allow) C:\Program Files\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{EA9E1C96-CEE4-4922-96D6-84F893CD7C6C}] => (Allow) C:\Program Files\Steam\SteamApps\common\superbrothers sword & sworcery ep\swordandsworcery_pc.exe FirewallRules: [{0FA36C54-A0E6-437B-BB27-F83FCAA1E00D}] => (Allow) C:\Program Files\Steam\SteamApps\common\superbrothers sword & sworcery ep\swordandsworcery_pc.exe FirewallRules: [{60AEF41A-9130-4746-A3DF-A7C216016EAB}] => (Allow) C:\Program Files\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{35BDDC5C-0CFB-49BC-A975-F3D1E11EBAB9}] => (Allow) C:\Program Files\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{D6EF2C4C-F646-4804-9239-826C50ED05CF}] => (Allow) C:\Program Files\Steam\SteamApps\common\lone survivor\LoneSurvivor\LoneSurvivor.exe FirewallRules: [{4C35444A-9468-4D00-A106-EAF63A592906}] => (Allow) C:\Program Files\Steam\SteamApps\common\lone survivor\LoneSurvivor\LoneSurvivor.exe FirewallRules: [{5F95F406-6870-4CB4-A4FC-1B9DAA30620D}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{A7FC8AAC-E158-4FB9-A278-20CFDA5E7209}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{E61B3C63-BC9E-4349-8C1D-26269AD8BE60}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage.exe FirewallRules: [{C2391FB4-BC8A-4872-AAB1-D29B1734E217}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage.exe FirewallRules: [{AFF79293-04B9-447E-8C08-5739F4BA4B2A}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage64.exe FirewallRules: [{511303B7-5E7A-4493-A6E7-D8FB4DD35A8C}] => (Allow) C:\Program Files\Steam\SteamApps\common\rage\Rage64.exe FirewallRules: [{81A0710A-161B-4897-8A68-3DDEE34CA4F1}] => (Allow) C:\Program Files\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{75061091-4C1E-441A-84F3-41BA65DD9609}] => (Allow) C:\Program Files\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{EB4621DE-9AC6-46C5-AD8E-320E602BE189}] => (Allow) C:\Program Files\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{D205DA97-3758-40CC-84BE-548489B1A217}] => (Allow) C:\Program Files\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{03E9A577-1EDC-49C7-818A-EBB8BBFF3A61}] => (Allow) F:\Games\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{48A81771-8AFA-4134-A795-4F74AA439C34}] => (Allow) F:\Games\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{4AD40DF2-9DE6-456B-9498-318C0B4C6D74}] => (Allow) F:\Games\Steam\SteamApps\common\SleepingDogs\HKShip.exe FirewallRules: [{2B22D756-E574-4F77-BB84-9B8E5FC1E615}] => (Allow) F:\Games\Steam\SteamApps\common\SleepingDogs\HKShip.exe FirewallRules: [{206AC414-2071-4D7C-8EE7-932B402E65B0}] => (Allow) F:\Games\Steam\SteamApps\common\Capsized\Capsized.exe FirewallRules: [{1B62F992-4F77-4D16-A06A-254BA274A1BF}] => (Allow) F:\Games\Steam\SteamApps\common\Capsized\Capsized.exe FirewallRules: [{9A9DB1A3-1C85-4545-859F-AB04103E438F}] => (Allow) F:\Games\Steam\SteamApps\common\Dear Esther\dearesther.exe FirewallRules: [{0519924D-DB23-4547-9FD9-1FA01241D138}] => (Allow) F:\Games\Steam\SteamApps\common\Dear Esther\dearesther.exe FirewallRules: [{AE657989-CEDF-4AFD-9F49-14861B82D9B8}] => (Allow) F:\Games\Steam\SteamApps\common\Little Inferno Beta\Little Inferno.exe FirewallRules: [{B2CC2AB8-FE29-4288-8AB8-95A75649041C}] => (Allow) F:\Games\Steam\SteamApps\common\Little Inferno Beta\Little Inferno.exe FirewallRules: [{E5C5831D-B8D4-44D8-BC66-F2055D2B8554}] => (Allow) F:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{C0BDBACA-BE4A-40A4-B0A6-EF16AA34874A}] => (Allow) F:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{CC9B96EF-05DA-418E-B092-649C10C547C6}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The First Encounter\Bin\SamHD.exe FirewallRules: [{52ABB4FF-7C82-4D73-B46C-7B5EB5DB27DC}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The First Encounter\Bin\SamHD.exe FirewallRules: [{DCCA189B-2124-43AA-9D1D-2878B46D7F8E}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe FirewallRules: [{5CDECFFA-5F59-4BF0-8945-DC99281C5D98}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe FirewallRules: [{429D97A6-0A42-439A-8A18-F9D7FC585ACA}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe FirewallRules: [{B0DE6DCB-1F4E-4CD2-9F11-E87D25FBFAD5}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe FirewallRules: [{8C2071FA-4DB5-4E84-811E-17B45CC709FD}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{F88AE45D-3130-4825-9B1D-55BBF9784607}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{1271463D-7D26-40E3-89FB-54A3C93A7216}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{EB45F0EF-3A73-43DA-9885-4A9502C2924A}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{E13237C2-51D4-41EB-8DB1-E382D6618A8E}] => (Allow) F:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{BC56011F-AA8F-4A5C-9546-2974DBE967E9}] => (Allow) F:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{19962E96-24CC-4E63-8CDC-2A2B1987372D}] => (Allow) F:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{2D73361F-3930-4FBD-97A7-345A5C944787}] => (Allow) F:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{C4CF1BD9-534F-4B96-ABDB-45509A55D98D}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{0E97F48C-BAC3-47D4-8736-86C83AFA79EF}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{D42162DF-2A74-4C47-8EB7-F8671A71FF31}] => (Allow) F:\Games\Steam\SteamApps\common\thomaswasalone\ThomasWasAlone.exe FirewallRules: [{89E8040C-2086-446F-9281-0B6D555D920C}] => (Allow) F:\Games\Steam\SteamApps\common\thomaswasalone\ThomasWasAlone.exe FirewallRules: [{EF0910A3-187C-40DB-9604-07E7D7D3C787}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{DEF41A8B-D366-463F-83E3-2A2918E36F64}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{58221567-F485-45F9-86DF-4524D1224AA5}] => (Allow) F:\Games\Steam\SteamApps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe FirewallRules: [{B855EB57-8B3F-47CB-B941-A686766A54EC}] => (Allow) F:\Games\Steam\SteamApps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe FirewallRules: [{9FB5A770-8E92-4A54-8692-6B4A35CA8A21}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{86E3DED0-913F-40A9-98B3-9BF12BBC86DE}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{BC0DE63E-43E2-4EF4-8720-B585D7BC5EDA}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{499EB11E-0983-47F5-99DA-AF177F8A9ED7}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{F9C66A9F-EA4D-49C6-8288-F42EF079F5BA}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{6A821804-7926-467C-9DB5-D42FC165ECA3}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{02A192D7-1DDF-4B54-9139-FF32E69B0201}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{850AA231-F944-4618-BD1E-418FF18B9F02}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{B06C07C0-3DE2-4B94-A240-73E9F04A6BE2}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{A17E15C6-8549-45D2-82CF-40F51E1FD8A9}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{C9BFC52C-250A-4017-B8A9-C32131937D6E}] => (Allow) F:\Games\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{09EF8C64-D4CF-4CF8-8940-8B3124B6BA52}] => (Allow) F:\Games\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{02C46D3F-EE0A-4F13-8D6B-EE8925EDB943}] => (Allow) F:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{E1273BFE-289B-4BAB-B096-1385BB028EBE}] => (Allow) F:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{E52785E6-8BB9-4FC0-B08A-BF231BE9369A}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{4EF57EB9-52AA-45E4-AD85-BA34F6EA9B9A}] => (Allow) F:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{56692682-F03A-4AF0-B859-EA446B4C255C}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{F1083264-A9F8-4CE2-894A-29273A322B8A}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{B73394A4-4AEF-4C7F-995B-638CB9079144}] => (Allow) F:\Games\Steam\SteamApps\common\The Walking Dead\WalkingDead101.exe FirewallRules: [{A95492B6-87A9-4875-8D15-5B8831B0925F}] => (Allow) F:\Games\Steam\SteamApps\common\The Walking Dead\WalkingDead101.exe FirewallRules: [{F2EA5757-8CD4-4CD0-AA50-0B98B3A745D6}] => (Allow) F:\Games\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{33283EF9-286B-45CC-AF60-DAD0EF6A60C6}] => (Allow) F:\Games\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{37D139AA-A33E-4362-B6B5-AF3E8136D595}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{425DAA1E-9C9E-482A-BDE7-8BFE64E0BBDF}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{2A231147-7BB5-4B6B-831B-0EFC47D377F9}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{0B9657A4-CDD4-4193-B2D6-88C6752B9513}] => (Allow) F:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{12E2AA11-E965-468F-A926-77CB4E6C5316}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{1A0DC0BC-582F-419B-BE03-D7B47059E7B7}] => (Allow) F:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{7FC7AC5D-4EA7-4F14-8E0C-B81A647C1CD6}] => (Allow) F:\Games\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{28BE4B66-84DC-486B-BC9F-9AD3625EA1F7}] => (Allow) F:\Games\Steam\SteamApps\common\braid\braid.exe FirewallRules: [{DD107E3F-C83A-4679-9AD3-36FA1277F559}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{0B0BA51E-234A-4820-9CF5-350CAD8EBE92}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{742AFD32-A291-4FFA-8AD9-3E21ADE888E3}] => (Allow) F:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{63C3ED1D-B4D3-4696-9DE2-A7A85840F045}] => (Allow) F:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{E456246C-A556-4D72-8F2E-16ACCDDE8D06}] => (Allow) F:\Games\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{EAB64009-23F1-4DCE-8E56-78AD0B10D6E5}] => (Allow) F:\Games\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{70EF927E-303D-4BD3-94CF-5FE9151ABF10}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{3831F2A0-BD96-4FA3-A962-87ED19542299}] => (Allow) F:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{247533E4-485D-4551-8090-50D36CAA7AFF}] => (Allow) F:\Games\Steam\SteamApps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe FirewallRules: [{2F2CA465-0A44-46C1-B84C-1E6DB6F091C2}] => (Allow) F:\Games\Steam\SteamApps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe FirewallRules: [{E1350100-8BE2-4689-9EE2-05DE83A123D9}] => (Allow) F:\Games\Steam\Steam.exe FirewallRules: [{B6447892-4505-462E-81A9-26D1B1724B4D}] => (Allow) F:\Games\Steam\Steam.exe FirewallRules: [{D7F57370-683B-4ED8-83C6-C6B74CE0FE64}] => (Allow) F:\Games\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{FD8878ED-D0AF-4E72-AAFD-B3CD1B8EA546}] => (Allow) F:\Games\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{0A6CC9B4-3CA1-4B93-8BEA-14995D615A90}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{94619432-B578-43C4-AD75-E08E87954DB4}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{D19F81C0-50AD-4B71-92CD-BA8042DC57D3}] => (Allow) F:\Games\Vindictus EU\en-EU\NMService.exe FirewallRules: [{B9F36D5A-3748-4451-84E8-1C657B0D91EA}] => (Allow) F:\Games\Vindictus EU\en-EU\NMService.exe FirewallRules: [{080D7EFE-7DC0-456D-AD2B-DBB19C3695AF}] => (Allow) F:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{E74AE2F5-F180-4553-8C4A-8212C0D26931}] => (Allow) F:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{1B924730-8F92-4929-9E75-85B18E5AB6FB}] => (Allow) F:\Games\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{F0FC1EA3-A5F2-425A-8929-30976CE4297C}] => (Allow) F:\Games\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{4ED2E01C-00E2-4139-902F-7596209E3754}] => (Allow) F:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{EE7E47BF-A746-4396-B945-59CC49485689}] => (Allow) F:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{55664446-BAB1-4ECA-89D1-6ACB37C8E193}] => (Allow) F:\Games\Steam\SteamApps\common\rust\rust.exe FirewallRules: [{F0C7E2AD-49AC-4A96-B9A0-993DE6FD793E}] => (Allow) F:\Games\Steam\SteamApps\common\rust\rust.exe FirewallRules: [{A2DDC2E3-8CA5-4D82-95C7-FCB8F6244618}] => (Allow) F:\Games\Steam\SteamApps\common\Antichamber\Binaries\Win32\UDK.exe FirewallRules: [{82B814F3-D277-4CA5-804D-3C0B4902F3A7}] => (Allow) F:\Games\Steam\SteamApps\common\Antichamber\Binaries\Win32\UDK.exe FirewallRules: [{B707ECDB-BAFE-4215-BDD8-0EB28362212B}] => (Allow) F:\Games\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{3B4509FB-E1B0-4359-B6C3-47B520350D3C}] => (Allow) F:\Games\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{085E2731-68F9-4CB2-9506-6F1630412B1B}] => (Allow) F:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Launcher.exe FirewallRules: [{B11CD3E8-112D-4BB7-82C8-810ADB6ABC00}] => (Allow) F:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Launcher.exe FirewallRules: [{9CF7C74E-785B-4815-ACDE-7EE473E09F2B}] => (Allow) F:\Games\Steam\SteamApps\common\Beatbuddy\Beatbuddy.exe FirewallRules: [{B76DABDA-F486-4520-AA21-73ABD0774133}] => (Allow) F:\Games\Steam\SteamApps\common\Beatbuddy\Beatbuddy.exe FirewallRules: [{9654F1AE-D33E-48EF-B14A-4A27A60574FD}] => (Allow) F:\Games\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{5B6B88DF-BE4E-4956-B299-1A58D62E9AD9}] => (Allow) F:\Games\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{5E0A7F2A-5F39-4E19-99B8-ABC040ABBB39}] => (Allow) F:\Games\SimCity\SimCity\SimCity.exe FirewallRules: [{A4269748-6F46-4158-8B35-A9110CE40612}] => (Allow) F:\Games\SimCity\SimCity\SimCity.exe FirewallRules: [{7FE1E8B5-45C8-4210-A460-74900502D301}] => (Allow) F:\Games\Plants vs. Zombies\PlantsVsZombies.exe FirewallRules: [{638D7C58-7BD7-4844-BF50-0D519B282E07}] => (Allow) F:\Games\Plants vs. Zombies\PlantsVsZombies.exe FirewallRules: [{F7D480B5-D859-4E84-9819-66AD6E177B71}] => (Allow) F:\Games\Steam\SteamApps\common\Transistor\x86\Transistor.exe FirewallRules: [{98F39B60-F074-485F-AFCF-667397BF8834}] => (Allow) F:\Games\Steam\SteamApps\common\Transistor\x86\Transistor.exe FirewallRules: [{81E25D24-3EAA-4ACD-B9C6-7DD43C7CBBC7}] => (Allow) F:\Games\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{4B055E2F-3D39-41C1-BD03-634341CE07A9}] => (Allow) F:\Games\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{E7701F15-CB9B-4C71-AE89-4F1BF31E6ADD}] => (Allow) F:\Games\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{623468BE-6C4A-40FE-A280-58EFD078397F}] => (Allow) F:\Games\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{532892AD-3DCB-4D79-A59C-CE2EF4484EFD}] => (Allow) F:\Games\Steam\SteamApps\common\rust\legacy\rust.exe FirewallRules: [{8F1201A2-6AF7-40D0-8161-BD3409FCD218}] => (Allow) F:\Games\Steam\SteamApps\common\rust\legacy\rust.exe FirewallRules: [{8F7B765A-9E7C-4C99-AA92-27D50AFC7E17}] => (Allow) F:\Games\Steam\SteamApps\common\rust\experimental\Rust.exe FirewallRules: [{D1702FC1-87BB-48F2-830F-2D09923E0235}] => (Allow) F:\Games\Steam\SteamApps\common\rust\experimental\Rust.exe FirewallRules: [{1C1309CA-7453-46CB-A75F-DF2C392356D7}] => (Allow) C:\Users\Ede\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{2C2CF998-F62B-4A20-A340-4ACD7063B616}] => (Allow) L:\Games\Steam\Steam.exe FirewallRules: [{B7574918-F68C-4091-9BB8-9ED93928CA56}] => (Allow) L:\Games\Steam\Steam.exe FirewallRules: [{6ECBC142-5294-4105-B716-E29FDE2FC8B8}] => (Allow) L:\Games\Steam\bin\steamwebhelper.exe FirewallRules: [{C23B190A-12D3-48D1-9C7F-0801A5A14E86}] => (Allow) L:\Games\Steam\bin\steamwebhelper.exe FirewallRules: [{0F5E0FBF-F643-422E-B144-802AD7903015}] => (Allow) L:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{0A773AEA-BCA8-47D0-8C6F-271E78806865}] => (Allow) L:\Games\Steam\SteamApps\common\Half-Life 2\hl2.exe FirewallRules: [{8F1DD8CD-AB3A-4811-BD0D-CB9C311B9B14}] => (Allow) L:\Games\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{208F084A-16DA-42AA-A333-BB48688922E4}] => (Allow) L:\Games\Steam\SteamApps\common\nmrih\sdk\hl2.exe FirewallRules: [{42EAB784-BE03-4729-891D-6C6A13F9ACFF}] => (Allow) L:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{81092BB0-F82F-46BE-B577-07797F773D7C}] => (Allow) L:\Games\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{FEA6A58D-EABA-412C-9D5E-2FC771E68CAE}] => (Allow) L:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{63E15C98-6815-4170-A496-D7461937A31A}] => (Allow) L:\Games\Steam\SteamApps\common\Natural Selection 2\NS2.exe FirewallRules: [{E080B730-4061-4650-AF09-2EEA2AAA7D62}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe FirewallRules: [{28EB4F09-0335-4FAA-A25B-04AFC42C09D6}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe FirewallRules: [{FE646FC6-2B74-4AE1-9586-E53FA347C71B}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe FirewallRules: [{83505081-6CE9-4FAC-9A9D-595083173E02}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe FirewallRules: [{556AA0C7-B75B-49AA-BD64-F5EEDCBC0789}] => (Allow) L:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{D75FCAE9-F4DE-4A2C-BD6D-2AE54A2A24BC}] => (Allow) L:\Games\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{FCB43BA2-94E6-45E9-BE56-2EB96094C136}] => (Allow) L:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{30503A85-9AAC-4FA1-AE69-2DB0240AC92D}] => (Allow) L:\Games\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{335D91F0-9D79-4260-AF9D-9C566E53AA7C}] => (Allow) L:\Games\Steam\SteamApps\common\Beatbuddy\Beatbuddy.exe FirewallRules: [{F9963F83-4BA7-4F17-A611-29DA39CFB4A3}] => (Allow) L:\Games\Steam\SteamApps\common\Beatbuddy\Beatbuddy.exe FirewallRules: [{86D3E7DB-5E2C-4676-988C-A96E1C19E41C}] => (Allow) L:\Games\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{30146421-0B87-44C6-9595-FFD9D3540143}] => (Allow) L:\Games\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{D611B56C-ADF5-4C7C-BFB2-D6C93858BDB5}] => (Allow) L:\Games\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{D8029988-501A-4A83-9ABF-01DCB0ACC61D}] => (Allow) L:\Games\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{B826070E-1F61-4E58-9A5C-38F3B6CE3331}] => (Allow) L:\Games\Steam\SteamApps\common\rust\experimental\Rust.exe FirewallRules: [{0C924221-AB80-41B9-B59C-C371A0057B50}] => (Allow) L:\Games\Steam\SteamApps\common\rust\experimental\Rust.exe FirewallRules: [{01811DCE-7D37-4785-9464-1AD12A6FBEA4}] => (Allow) L:\Games\Steam\SteamApps\common\rust\Rust.exe FirewallRules: [{289187FF-1E57-419B-B42D-B21E3C1DD6F5}] => (Allow) L:\Games\Steam\SteamApps\common\rust\Rust.exe FirewallRules: [{93BE2B1F-FC61-4090-9D7B-F813D8955C5D}] => (Allow) L:\Games\Steam\SteamApps\common\rust\legacy\rust.exe FirewallRules: [{3B69CBBD-D2A9-4CFA-B669-D5D61104B028}] => (Allow) L:\Games\Steam\SteamApps\common\rust\legacy\rust.exe FirewallRules: [{538C3EFC-BA7C-4F33-A415-202AF79371D7}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{6DFDE432-FB54-402F-81BB-121EEDA73ABB}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{40E2C69E-4469-4BB0-80FE-33DBE14EB01F}] => (Allow) C:\Users\Ede\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{A8F6DDEC-E1AF-4CCC-889C-106FE9D292FF}] => (Allow) L:\Games\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{C616751A-E189-459B-8660-8A9738379391}] => (Allow) L:\Games\Steam\SteamApps\common\Portal\hl2.exe FirewallRules: [{3A70492B-D5A8-41FA-8052-424098E9C2F9}] => (Allow) L:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{FF5FCA01-B236-4034-BC7F-E0E1C540C51C}] => (Allow) L:\Games\Steam\SteamApps\common\left 4 dead 2\left4dead2.exe FirewallRules: [{6302CE91-8D72-4BE2-89CF-E60939B8BFC4}] => (Allow) L:\Games\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{ED84902F-C559-4388-9AF1-8634A2DDBA5A}] => (Allow) L:\Games\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{7EABF703-576F-4DA8-BEDE-AAF60A2C9E0C}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{F9BDF408-AFE4-459D-B541-B81E8C8AF5B9}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3.exe FirewallRules: [{D9CFDC3C-1E2C-4A92-B2C0-ED99F88F0ABB}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{3AB75062-B2D4-46B9-8FD7-E2C18BC8094F}] => (Allow) L:\Games\Steam\SteamApps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe FirewallRules: [{AEC94AA9-981B-4F9E-B030-743984B4821C}] => (Allow) L:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Amnesia.exe FirewallRules: [{55FD26DF-A5F7-4027-BDEA-0436A5CE5C70}] => (Allow) L:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Amnesia.exe FirewallRules: [{289B402D-16F6-4C10-93F0-01C9A809AA14}] => (Allow) L:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Launcher.exe FirewallRules: [{1EAE8411-DF01-437C-A046-F34D3036DB96}] => (Allow) L:\Games\Steam\SteamApps\common\Amnesia The Dark Descent\Launcher.exe FirewallRules: [{B9182FE1-D1EE-498B-A6FA-8CFE1888F309}] => (Allow) L:\Games\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{D2955FC8-C30A-463E-B0FB-D27B090A6D25}] => (Allow) L:\Games\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{16A746EC-04C7-483A-8C23-EEADD0892ECB}] => (Allow) L:\Games\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{EBC72D51-41D4-4B0F-BAE5-01EDA8B20656}] => (Allow) L:\Games\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{62D0E810-347C-4242-AADB-D3240475571C}] => (Allow) L:\Games\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{A7B2BF5C-3023-42D0-A48D-7F5B052B7A92}] => (Allow) L:\Games\Steam\SteamApps\common\Monaco\MONACO.exe FirewallRules: [{57A0FE47-B8EF-4C94-927A-FF8E403FE574}] => (Allow) L:\Games\Steam\SteamApps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{389FA469-7A63-478A-A411-92FACC4D2F3B}] => (Allow) L:\Games\Steam\SteamApps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{0E1BE39A-CA06-4265-B145-4CB79C168C75}] => (Allow) L:\Games\Steam\SteamApps\common\Grand Theft Auto 3\gta3.exe FirewallRules: [{AF5D2B38-39AC-4A0F-A676-0ED8E0D4F545}] => (Allow) L:\Games\Steam\SteamApps\common\Grand Theft Auto 3\gta3.exe FirewallRules: [{64335EF1-44C8-4944-8097-3F5557D9A88D}] => (Allow) L:\Games\Steam\SteamApps\common\Transistor\x86\Transistor.exe FirewallRules: [{455D9854-0239-4387-9DFB-6B5F37E27495}] => (Allow) L:\Games\Steam\SteamApps\common\Transistor\x86\Transistor.exe FirewallRules: [{3561DF4D-C6B0-4E03-88B9-B3F88CBB72CE}] => (Allow) L:\Games\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{941CE789-5466-4BC0-98FE-47A51D8554F7}] => (Allow) L:\Games\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{F5071DCD-98A8-4BDA-8D51-4DA52ED2EA7E}] => (Allow) L:\Games\Steam\SteamApps\common\Age2HD\Launcher.exe FirewallRules: [{EFB6737E-F09C-4D78-937D-ED8A83E74BF3}] => (Allow) L:\Games\Steam\SteamApps\common\Age2HD\Launcher.exe FirewallRules: [{0EAA5CA3-C7DC-4D4B-8848-6F33008C5920}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{2A9C77F4-CE8B-4C1C-B523-B64407FAE0C6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{8F3E129D-A2A0-46CF-945A-5D20564253D1}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{96C1FCA1-B32B-4A2E-94A0-FB6405618590}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{2BD27D77-9C83-4F5D-8D88-95C0D178D2C0}] => (Allow) L:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{72E18E67-6B1F-4AAF-A64F-6B790226CFF7}] => (Allow) L:\Games\Steam\SteamApps\common\Starbound\win32\launcher\launcher.exe FirewallRules: [{8015BBF8-1512-4258-8EAE-839F63E746EB}] => (Allow) L:\Games\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{B683AFD0-A5C5-42AD-BBA8-CD8675447CA1}] => (Allow) L:\Games\Steam\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{31F887E7-48D6-4CDB-8F03-549AA8060D6F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{FC8DA8E1-69C8-4B55-B4A3-C1C9B920577F}C:\users\ede\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\ede\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{6FD19D67-AD62-4F17-ABDF-5A77779E030B}C:\users\ede\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\ede\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{1CC64259-1C44-4A9B-B587-D020F357B198}L:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe] => (Allow) L:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe FirewallRules: [UDP Query User{9DC75795-559D-4AF0-A5DF-8550A48CB860}L:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe] => (Allow) L:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Wiederherstellungspunkte ========================= 18-01-2016 14:32:52 Geplanter Prüfpunkt 25-01-2016 17:04:05 Geplanter Prüfpunkt 31-01-2016 18:08:28 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (03/29/2016 10:50:51 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/21/2016 06:46:38 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Explorer.EXE, Version 6.1.7601.17567 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: b8c Startzeit: 01d1838f3189e14e Endzeit: 16 Anwendungspfad: C:\Windows\Explorer.EXE Berichts-ID: Error: (03/21/2016 06:43:53 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/21/2016 06:31:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/21/2016 06:18:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2016 08:36:17 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm SDFiles.exe, Version 2.4.40.135 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 102c Startzeit: 01d1643193c380af Endzeit: 16 Anwendungspfad: C:\Program Files\Spybot - Search & Destroy 2\SDFiles.exe Berichts-ID: 2a6ccb92-d025-11e5-bade-0019db28d310 Error: (02/10/2016 08:32:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.1.7601.17567, Zeitstempel: 0x4d6727a7 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.19110, Zeitstempel: 0x5684255a Ausnahmecode: 0xc015000f Fehleroffset: 0x0008433e ID des fehlerhaften Prozesses: 0x1368 Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Error: (02/10/2016 08:32:40 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.1.7601.17567, Zeitstempel: 0x4d6727a7 Name des fehlerhaften Moduls: SHELL32.dll, Version: 6.1.7601.18952, Zeitstempel: 0x55c39c76 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0004b188 ID des fehlerhaften Prozesses: 0x1368 Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Error: (02/10/2016 08:31:36 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm SDFiles.exe, Version 2.4.40.135 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 13b0 Startzeit: 01d16430bd51fc57 Endzeit: 0 Anwendungspfad: C:\Program Files\Spybot - Search & Destroy 2\SDFiles.exe Berichts-ID: 81a4f0f0-d024-11e5-bade-0019db28d310 Error: (02/10/2016 08:22:30 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Systemfehler: ============= Error: (03/29/2016 10:53:33 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (03/29/2016 10:53:33 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (03/29/2016 10:53:33 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (03/29/2016 10:53:33 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (03/29/2016 10:53:33 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (03/29/2016 10:53:33 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (03/29/2016 10:53:25 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (03/29/2016 10:53:25 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (03/29/2016 10:53:25 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (03/29/2016 10:53:08 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 CPU 6700 @ 2.66GHz Prozentuale Nutzung des RAM: 51% Installierter physikalischer RAM: 3198.46 MB Verfügbarer physikalischer RAM: 1535.42 MB Summe virtueller Speicher: 6395.25 MB Verfügbarer virtueller Speicher: 4389.41 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:298.09 GB) (Free:161.47 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)] Drive l: (USB-HDD) (Fixed) (Total:1397.26 GB) (Free:709.77 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 6F32FED7) Partition 1: (Active) - (Size=298.1 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 1397.3 GB) (Disk ID: 48686A76) Partition 1: (Not Active) - (Size=1397.3 GB) - (Type=07 NTFS) ==================== Ende vom Addition.txt ============================ |
30.03.2016, 15:12 | #7 |
/// TB-Ausbilder /// Anleitungs-Guru | Datensicherung auf womöglich verseuchten externen Festplatte Also wenn ich es richtig verstanden habe, willst Du die Platten überprüfen und den PC platt machen? Schritt 1 Alle "infizierten" Sticks an den PC anstecken und einen ESET-Scan durchführen. Wichtig: Bitte unter "ESET-Prüfeinstellungen/...zu prüfende Objekte" die checkbox bei Computer setzen. ESET Online Scanner
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
05.04.2016, 20:42 | #8 |
| Datensicherung auf womöglich verseuchten externen Festplatte Ich gehe zwar nicht mehr von einem Trojaner aus, aber es wird Zeit den alten Herrn mal wieder platt zu machen. Und hier habe ich das ESET log: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=init # utc_time=2016-04-02 08:49:10 # local_time=2016-04-02 10:49:10 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=init # utc_time=2016-04-02 08:50:38 # local_time=2016-04-02 10:50:38 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 Update Init Update Download ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=init # utc_time=2016-04-03 06:12:48 # local_time=2016-04-03 08:12:48 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 Update Init Update Download Update Finalize Updated modules version: 28890 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=updated # utc_time=2016-04-03 06:16:09 # local_time=2016-04-03 08:16:09 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=init # utc_time=2016-04-05 03:36:16 # local_time=2016-04-05 05:36:16 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 Update Init Update Download Update Finalize Updated modules version: 28920 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=updated # utc_time=2016-04-05 03:37:22 # local_time=2016-04-05 05:37:22 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # engine=28920 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2016-04-05 05:26:23 # local_time=2016-04-05 07:26:23 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='avast! Antivirus' # compatibility_mode=788 16777213 100 98 170296 224301273 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 5620107 211508374 0 0 # scanned=414313 # found=6 # cleaned=0 # scan_time=6540 sh=F5CEADE5C31A58FDA7B0BCAE9FCD5033EB1F07BC ft=1 fh=c71c001198f425ea vn="Win32/InstalleRex.M evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\AppData\Local\Temp\{E778BC03-00FB-49CB-AB20-48D93C9B9EF5}\Custom.dll" sh=457335C7D7CF3B76BDA5156BDFC9D2E55F5EB26E ft=1 fh=733834ea60493ef0 vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Documents\Downloads\Integrated_CT2325506.exe" sh=C1B2815C612ADE07C09301E199A7890D1C664019 ft=1 fh=a4380b09b8f19ab7 vn="Win32/Somoto.G evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Downloads\AVVoiceChangerSoftwareDiamondEdition_downloader-Qccjca19H.exe" sh=E59AC9D724841FADC607FF178ACF4C92B227430E ft=1 fh=1dbe64bfb773a470 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Downloads\Paint NET - CHIP-Installer.exe" sh=464537AFBEA7628CD440E75550E945DB4259CB16 ft=1 fh=c04be224758a94dc vn="Variante von Win32/InstallCore.BX evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Downloads\Altes\Pivot_hrdc_ns.exe" sh=0D9E359E85314383B649EFAAD05D496472F71A4B ft=0 fh=0000000000000000 vn="Mehrere Bedrohungen" ac=I fn="C:\Users\Ede\Downloads\Altes\[Revelation] [[S4] Trainer].zip.part" |
06.04.2016, 08:42 | #9 |
/// TB-Ausbilder /// Anleitungs-Guru | Datensicherung auf womöglich verseuchten externen Festplatte Der ESET Scan ist aber nicht vollständig gewesen sondern wurde abgebrochen.
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
06.04.2016, 21:05 | #10 |
| Datensicherung auf womöglich verseuchten externen Festplatte So nach dem dritten Mal habe ich es hoffentlich auch mal hinbekommen. Danke das du so Gedudig mit mir bist. Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=init # utc_time=2016-04-02 08:49:10 # local_time=2016-04-02 10:49:10 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=init # utc_time=2016-04-02 08:50:38 # local_time=2016-04-02 10:50:38 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 Update Init Update Download ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=init # utc_time=2016-04-03 06:12:48 # local_time=2016-04-03 08:12:48 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 Update Init Update Download Update Finalize Updated modules version: 28890 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=updated # utc_time=2016-04-03 06:16:09 # local_time=2016-04-03 08:16:09 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=init # utc_time=2016-04-05 03:36:16 # local_time=2016-04-05 05:36:16 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 Update Init Update Download Update Finalize Updated modules version: 28920 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=updated # utc_time=2016-04-05 03:37:22 # local_time=2016-04-05 05:37:22 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # engine=28920 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2016-04-05 05:26:23 # local_time=2016-04-05 07:26:23 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='avast! Antivirus' # compatibility_mode=788 16777213 100 98 170296 224301273 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 5620107 211508374 0 0 # scanned=414313 # found=6 # cleaned=0 # scan_time=6540 sh=F5CEADE5C31A58FDA7B0BCAE9FCD5033EB1F07BC ft=1 fh=c71c001198f425ea vn="Win32/InstalleRex.M evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\AppData\Local\Temp\{E778BC03-00FB-49CB-AB20-48D93C9B9EF5}\Custom.dll" sh=457335C7D7CF3B76BDA5156BDFC9D2E55F5EB26E ft=1 fh=733834ea60493ef0 vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Documents\Downloads\Integrated_CT2325506.exe" sh=C1B2815C612ADE07C09301E199A7890D1C664019 ft=1 fh=a4380b09b8f19ab7 vn="Win32/Somoto.G evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Downloads\AVVoiceChangerSoftwareDiamondEdition_downloader-Qccjca19H.exe" sh=E59AC9D724841FADC607FF178ACF4C92B227430E ft=1 fh=1dbe64bfb773a470 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Downloads\Paint NET - CHIP-Installer.exe" sh=464537AFBEA7628CD440E75550E945DB4259CB16 ft=1 fh=c04be224758a94dc vn="Variante von Win32/InstallCore.BX evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Downloads\Altes\Pivot_hrdc_ns.exe" sh=0D9E359E85314383B649EFAAD05D496472F71A4B ft=0 fh=0000000000000000 vn="Mehrere Bedrohungen" ac=I fn="C:\Users\Ede\Downloads\Altes\[Revelation] [[S4] Trainer].zip.part" ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=init # utc_time=2016-04-06 03:10:56 # local_time=2016-04-06 05:10:56 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 Update Init Update Download Update Finalize Updated modules version: 28938 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # end=updated # utc_time=2016-04-06 03:12:18 # local_time=2016-04-06 05:12:18 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=d234a8556f290c4d98e8dcd7ca1e9de5 # engine=28938 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2016-04-06 07:53:29 # local_time=2016-04-06 09:53:29 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='avast! Antivirus' # compatibility_mode=788 16777213 100 98 265521 224396498 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 5715332 211603599 0 0 # scanned=856228 # found=8 # cleaned=0 # scan_time=16870 sh=F5CEADE5C31A58FDA7B0BCAE9FCD5033EB1F07BC ft=1 fh=c71c001198f425ea vn="Win32/InstalleRex.M evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\AppData\Local\Temp\{E778BC03-00FB-49CB-AB20-48D93C9B9EF5}\Custom.dll" sh=457335C7D7CF3B76BDA5156BDFC9D2E55F5EB26E ft=1 fh=733834ea60493ef0 vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Documents\Downloads\Integrated_CT2325506.exe" sh=C1B2815C612ADE07C09301E199A7890D1C664019 ft=1 fh=a4380b09b8f19ab7 vn="Win32/Somoto.G evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Downloads\AVVoiceChangerSoftwareDiamondEdition_downloader-Qccjca19H.exe" sh=E59AC9D724841FADC607FF178ACF4C92B227430E ft=1 fh=1dbe64bfb773a470 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Downloads\Paint NET - CHIP-Installer.exe" sh=464537AFBEA7628CD440E75550E945DB4259CB16 ft=1 fh=c04be224758a94dc vn="Variante von Win32/InstallCore.BX evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ede\Downloads\Altes\Pivot_hrdc_ns.exe" sh=0D9E359E85314383B649EFAAD05D496472F71A4B ft=0 fh=0000000000000000 vn="Mehrere Bedrohungen" ac=I fn="C:\Users\Ede\Downloads\Altes\[Revelation] [[S4] Trainer].zip.part" sh=35987E8A8AA932982D9CF0EA6DF502087644448E ft=1 fh=d82ceaa6d24562da vn="Win32/Toolbar.Conduit.S evtl. unerwünschte Anwendung" ac=I fn="L:\$RECYCLE.BIN\S-1-5-21-1297701215-297145775-4242925645-1000\$REJD5ST\FreeYouTubeDownload_3.1.37.918.exe" sh=846D95D63EDE9508EFC7CEEE1D145D7CE62988C3 ft=1 fh=ec23a4ae3310ce50 vn="Win32/Toolbar.Conduit.S evtl. unerwünschte Anwendung" ac=I fn="L:\$RECYCLE.BIN\S-1-5-21-1297701215-297145775-4242925645-1000\$REJD5ST\FreeYouTubeToMP3Converter_3.11.32.918.exe" |
07.04.2016, 08:54 | #11 |
/// TB-Ausbilder /// Anleitungs-Guru | Datensicherung auf womöglich verseuchten externen Festplatte Also wenn Du alles richtig gemacht hast...auf der Platte is nix..
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
07.04.2016, 16:15 | #12 |
| Datensicherung auf womöglich verseuchten externen Festplatte Das heist ich kann den PC neu auflegen. DANKE! Kannst du mir vielleicht ein Programm empfehlen mit dem ich die Festplatte des PC'S richtig nuken kann? Grüße Dex |
07.04.2016, 17:30 | #13 |
/// TB-Ausbilder /// Anleitungs-Guru | Datensicherung auf womöglich verseuchten externen Festplatte
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
07.04.2016, 17:53 | #14 |
| Datensicherung auf womöglich verseuchten externen Festplatte @ deeprybka der meint damit richtig löschen/formatieren(mehrfach Überschreiben) usw. Sowas ist m. Meinung nach nur nötig wenn Du die Platte verkaufst. Normal Formatieren und gut ist.. |
08.04.2016, 07:00 | #15 |
| Datensicherung auf womöglich verseuchten externen Festplatte Ich dachte eher daran, weil Bedrohungen auf der Festplatte gefunden wurden und das die dann zu 100% weg sind. Aber wenn normales formatieren reicht, dann mache ich das natürlich auch nur. In diesem Sinne bedanke ich mich herzlich bei euch beiden. |
Themen zu Datensicherung auf womöglich verseuchten externen Festplatte |
antivir, avast, besten, blockiert, datensicherung, deaktiviert, erkannt, externe festplatte, falsch, fehlermeldung, festplatte, frage, gesucht, google, infizierte, internet, löschen, namen, nicht mehr, programm, spybot, starten, update, updaten, windows |