|
Plagegeister aller Art und deren Bekämpfung: trojaner keine windows uodates mehrWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
07.03.2016, 15:18 | #1 |
| trojaner keine windows uodates mehr Hi mein virenschutz kaspersky hat bei mir einen Trojaner entdeckt. Obwohl gesagt wurde er ist gelöscht habe ich viele Probleme , mein Router stürzt immer ab, keine Windows updates Malwarebytes anti Malware bricht su'he ab usw. Bitte helft mir |
07.03.2016, 17:52 | #2 |
/// TB-Ausbilder | trojaner keine windows uodates mehrMein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen. Bitte beachte folgende Hinweise:
Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags: So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Danke für deine Mitarbeit! Zur ersten Analyse bitte FRST und TDSS-Killer ausführen: Schritt 1 Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Schritt 2 Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Bitte poste mit deiner nächsten Antwort
|
08.03.2016, 15:18 | #3 |
| log dateien 1Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01 durchgeführt von Lukas (Administrator) auf PC-LUKAS (08-03-2016 15:04:40) Gestartet von C:\Users\Lukas\Downloads Geladene Profile: PFrey & Michael & Lukas & Hannah & Maximilian (Verfügbare Profile: FAE & PFrey & Michael & Lukas & Hannah & Maximilian) Platform: Windows 7 Professional Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Enigma Software Group USA, LLC.) C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\System32\nvwmi64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\System32\nvwmi64.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe (Juniper Networks) C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe () C:\Windows\System32\PnkBstrA.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avpui.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Realtek Semiconductor Corp.) C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Hammer & Chisel, Inc.) C:\Users\Lukas\AppData\Local\Discord\app-0.0.286\Discord.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPoint\SetPoint.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe () C:\Program Files (x86)\Datacolor\Spyder5Pro\Utility\SpyderUtility.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe () C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\plugin-nm-server.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Hammer & Chisel, Inc.) C:\Users\Lukas\AppData\Local\Discord\app-0.0.286\Discord.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Hammer & Chisel, Inc.) C:\Users\Lukas\AppData\Local\Discord\app-0.0.286\Discord.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe [2907240 2010-10-04] (Realtek Semiconductor Corp.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [Kernel and Hardware Abstraction Layer] => C:\Windows\KHALMNPR.EXE [130576 2009-06-17] (Logitech, Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-27] (NVIDIA Corporation) HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2728736 2014-07-02] () HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [815512 2012-04-04] (Adobe Systems Inc.) HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated) HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [837640 2015-12-08] (DivX, LLC) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-05] (Intel Corporation) HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterAssemblyBonusTools.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\lcms.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Style Management Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterContentCenter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\plasma.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\depth-merge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\City Car Driving Home Edition\bin\win32\Starter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\EFLC\EFLC.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\CDDRV2\LDPInst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\DtDv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\procedure-browser.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Ink\TabTip.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-xbm.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\tools\genzip.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\uninstall\x64\Drv64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\map-object.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Photo Viewer\ImagingDevices.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\installer.{9E372A55-3163-4892-87E1-38E76B2DEC59}\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\AdSubAware.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\Installers\DirectX_MAR09\DXSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\smooth-palette.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Wajam\Chrome\nativeMessagingHost\NativeMessageHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\maze.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterDesignAccelerator.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\excelcnv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-csource.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_edit_part_names.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\TaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Style Library Manager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmplayer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterAssemblyBonusTools.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\WinRAR\Uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Dell\DBRM\WinRE\RestoreSystem.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmprph.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\TaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Security Client\msseoobe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\ApprenticeUtils.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\WizDynamic.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (64-bit)\Compatadmin.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Ink\ShapeCollector.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\VideoCore 12\VCGProxyFileManager12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\InvTxtStack.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\MSInfo\msinfo32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\CAD Manager Control\CmControl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\Download\{74AF07D8-FB8F-4D51-8AC7-927721D56EBB}\7.1.2.2041\GoogleEarth-Win-Bundle-7.1.2.2041.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\pc3exe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\PhotoShowExpress\RoxioExport.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\coregen.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\CMControl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\styexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\bin\bzip2.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\pack200.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\cubism.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\tools\poolmigr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\Launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\Setup_wm.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Sonic Shared\PX Drivers\drvins64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Mail\wab.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\AddInMgr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\styshwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\McxTask.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\AdLM\R4\LTU.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Dell Inc\Dell Edoc Viewer\EDocs.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\Python\Lib\distutils\command\wininst-7.1.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\IGSCOUNT.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\rmid.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\Installers\umdf.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Standard User Analyzer\SUAWizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\catview.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\DW\DW20.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSTORE.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\astragon\Bus-Simulator 2012\Bin_High_Win64\ScheduleWizzard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\chrome_frame_helper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\3Dconnexion\3Dconnexion 3DxSoftware\3DxCollage\3DxCollage.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSQRY32.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\TaskDBExe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateBroker.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\AdobeApplicationManager\AAMSetup\Set-up.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\antialias.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Log Processing Service\Agents\Queuer\queuer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steamapps\common\F1 2011\F1_2011.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\ServiceModule.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\curve-bend.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\sparkle.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\DWA\resources\libraries\Adobe_Helperx32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{A19D68CC-58D2-486C-A31E-636967771614}\NvCplSetupInt.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Setup\Setup\AcDelTree.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\help-browser.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\fix404.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\decompose.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\AddInMgr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-fits.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Demo Application\StockViewer\DWM Compositing Rendering Demo.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\rotate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\misc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\battrans.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\astragon\Bus-Simulator 2012\Bin_High_Win64\BusSimulator2012.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\symbbautoreg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\uninst\unins000.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\UACCE\envchange.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\ehmsas.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD Cox\PowerDVDCox.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Juniper Networks\Network Connect 7.4.0\nclauncher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\Virtual Drive 12\InstSrvc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\web-browser.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Log Processing Service\actdcsvc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\licensing_tool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\AcroBroker.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\AcSignApply.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-header.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\Compatibility\Bin\DBXBridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office10\SELFCERT.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Security Client\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\Gaming Software\LU\LogitechUpdate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Live\Mesh\WLRemoteClient.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Google Earth\client\earthflashsol.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\UCalcWrapper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Installer\wlarp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RemoveTSTasks.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\AddInMgr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\javaw.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\Adobe Application Manager (Updater).exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{C0B604DD-F105-41E3-B86E-D6F21048AC81}\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\DtDv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnscfg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\unit-editor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steamapps\common\F1 2011\vorbis.dll <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-psd-load.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\UpdateTitle.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterAssemblyBonusTools.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\Installers\wmpappcompat.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\nView\nvAppBar.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Application Compatibility Manager\ACM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\iCopy_OutProc_Service.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Vault 2011\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\WizStress.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\NAMECONTROLSERVER.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\AcDwgFilter\AcDwgFilterImp16.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\uninstall\x64\Drv64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\styexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Vault 2011\Setup\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\Compatibility\Bin\DWGOLEServerStub.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\alien-map.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Bin32\MSP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterAecExchange.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\cml-explorer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Bin32\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\City Car Driving Home Edition\tools\vcredist_2008_x86.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\InvTXTStack.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Bin32\InventorView.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\Installer\chrmstp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\DWGVIEWR.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\UACCE\gmeserv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\ApprenticeRegSvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\java-rmi.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\PDVDLaunchPolicy.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-faxg3.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: c:\users\maximilian\documents\omsi 2\omsi.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Analyzer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\3DxMwmViewer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGFLEXLM\ugslmd.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\styshwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\bin\x86launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\dataminer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\ehexthost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\diffraction.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\AFSetup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\ftpfind.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\tnameserv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\Installers\DirectX_Mar2009\DXSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\dataminer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\Installers\wmfdist11.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\EFLC\gtaEncoder.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\AdLM\R4\LMU.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\InstallShield Installation Information\{BAFCA6AC-8B37-405B-B57E-C1D45DE70ACC}\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Office Setup Controller\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\FanaLEDs\FanaLEDs.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterInventorVault.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\EAInstaller\Battlefield 3\Cleanup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\FIX212.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\ReaderUpdater.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\AdPM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\MAPCOLOR.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-tga.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Internet Explorer <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Log Processing Service\Agents\Listener\listener.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\FIX144ot.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\MediaCenterWebLauncher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\ehsched.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RemoveTSTasks.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterTaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\RegisterMCEApp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\D3D11Installer\D3D11Install.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\RegisterCentaur.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\unpack200.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-uri.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\VSTO\10.0\VSTOInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpsideshowgadget.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Connectivity.Resolve.ResolveService.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\Installer\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterESKDSupport.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Unifying\LU\LogitechUpdate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Sidebar <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Uninstall Tool\InvCleanup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\ApprenticeRegSvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\lens-apply.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Bin32\TaskDBExe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\value-invert.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Display\nvsmartmaxapp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\WriteRedirectInfo.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\Speech\Common\sapisvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\DWFBridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\JobMonitor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\tile-small.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-raw.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\Print Driver\PCC.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterESKDSupport.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Silverlight\5.1.30214.0\coregen.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Bin32\MSP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Setup\Setup\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\addplwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\OceProxyDoctor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\InstallShield Installation Information\{AD88355B-A4E0-4DA1-BAC3-EA4FEA930691}\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Bin32\InventorView.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\nacl64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\legacyPM\EAProxyInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\AdSubAware.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\cmm_native_batch.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\InventorViewCompute.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DWG TrueView 2010\HPSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Battlefield 3\core\activation.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Bin32\Ipj.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\tile-seamless.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.24.7\GoogleUpdateSetup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\illusion.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\TextConv\WksConv\Wkconv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Ipj.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\dwgviewr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\FanaLEDs\uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel Control Center\IntelControlCenter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\color-to-alpha.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steamerrorreporter64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnetwk.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Compatadmin.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\TOSHIBA Viewer V2\GDI&TWAIN\Network_TWAINuninst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\Retrieve 12\Launch_Retrieve.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\CATVIEW.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Intel\DMIX\CL\PROSetCL.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\Activate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\blur-gauss.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\igesstrt.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\GRAPH.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\plug_ins\Scan\AcroScanBroker.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\Shell\AdpWPreview.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\legacyPM\EACoreServer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\streaming_client.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{C0B604DD-F105-41E3-B86E-D6F21048AC81}\nvvsvc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\nView\nvTaskbar.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-pat.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-html-table.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\RunNE.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steamapps\common\F1 2011\rldata.dll <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\java.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Bin32\Inventor32bitHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Skype\Updater\Updater.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\fwsced.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\CCleaner\CCleaner64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Journal\Journal.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\HPSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\Smart Tag\SmartTagInstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_clone.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\AcroTextExtractor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\Installer\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-pix.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Ipj.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\javaws.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\unpack200.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\ORD_32To64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterDesignSensors.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Bin32\Inventor32bitHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\pc3exe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Connectivity.InventorAddin.EdmAddinRegistration.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-pdf-save.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\igesquickview.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\colormap-remap.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-gif-load.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Windows Live\.cache\139c90d1cc434101\Silverlight.4.0.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLED.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Log Processing Service\Agents\Decompressor\decompressor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-compressor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrodist.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_spacefinder.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVideoAcquireWizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\EQUATION\EQNEDT32.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\jbroker.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.NView.{527540AB-F16D-4799-B324-94FBDED9EDC5}\nwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.NVWMI.{45374EC8-BE2E-41B9-9107-952007EE52B6}\nvWmi64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\Roxio Central 5\PlugIns\Launch.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\javacpl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logitech\WMDrivers\WMWizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvsttest.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\Ipj.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\servertool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\servertool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\3dxsrv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\CLDrvChk.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\from100to97.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\chrome_frame_helper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ugpc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\DbViewer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\selection-to-path.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\PhotoShowExpress\video\adpcm2wav.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\Inventor32bitHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\nova.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterDesignAccelerator.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Internet Explorer Compatibility Test Tool\Agent Framework\Agents\Bucketizer\bucketizer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD Cinema\PowerDVDCinema.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steam\games\appid_17300.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\WTVConverter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterContentCenter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Windows Live\.cache\21bebc71cc434104\MeshBetaRemover.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\styexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\ftpscrpt.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARMHelper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\engrave.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Drs\dbInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\gen\genmsked.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\fix304.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_find_prev16_aligns.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\adxbatch.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\AdMigrator.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ugraf.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\softglow.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\DwgCheckStandards.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\Retrieve 12\Retrieve12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Standard User Analyzer\SUAnalyzerSrv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logitech\WMDrivers\WmDrvWiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\GSZ\ginasession0.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\wow_helper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterTaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DWG TrueView 2010\styexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPREARM.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Inventor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\film.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Juniper Networks\Network Connect 7.4.0\dsNCInst64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\ADLM\R1\LTU.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\delegate_execute.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Autodesk Design Review 2012\Setup\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel Control Center\Uninstaller\SetupICC.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\wsftppro.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\BackOnTrack\File Backup\TrayProtect.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-psd-save.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\dwfBridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Silverlight\sllauncher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_check_part.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\symbbautoreg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterInventorStudio.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\EAInstaller\Need for Speed(TM) Most Wanted\Cleanup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\AudioCore\DVDMusicAssistant12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\DWA\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\Installers\gfwlivesetup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\DwgEdit.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\DwgCheckStandards.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Autodesk Shared\Aec32BitAppServer57.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\sharpen.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-sunras.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Steam\SteamService.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat Elements\Acrobat Elements.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Autodesk Shared\VBAServer\x64VBAServer18.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Autodesk Shared\DWF Common\ExpressViewer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\imagemap.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\emboss.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\bin\cgc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\javacpl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\nView\nwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\sys\ge_zipDCL32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\acmpmdb32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\jqsnotify.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Setup\AcDelTree.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\refile_part.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-gif-save.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\NVSMI\MCU.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorUI.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\ktab.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\AddInMgr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Bin32\TaskDBExe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\contrast-retinex.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmlaunch.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\Virtual Drive 12\DiscImageLoader12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\memprobe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\certimport.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\UpWiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\HPSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\nacl64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\Compatibility\Bin\Mechanical\MDTLink.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\Installers\wmfdist11.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\bin\gimp-2.8.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGFLEXLM\lmgrd.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\noise-randomize.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\gtaEncoder.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\AdSubAware.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Register_iCopy.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\DWA\TokenGenerator64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\kinit.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\ink\mip.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\LaunchGTAIV.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.NView.{527540AB-F16D-4799-B324-94FBDED9EDC5}\nvAppBar.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\DwgEdit.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\Migration\amdwgmigr15.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\color-exchange.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Security Client\MsMpEng.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\protocolhandler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterMarkupManager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steamapps\common\F1 2011\binkw32.dll <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD Cinema\PDVDCinService.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Live\Mesh\wlcrdpuser.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-jpeg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\bin\gspawn-win64-helper-console.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\HPSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\KHAL2\RunNE.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steam\games\appid_6510.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Drawing Resource Transfer Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\nx_geolusopenclient.exe <====== ACHTUNG |
08.03.2016, 15:21 | #4 |
| Log dateien 2Code:
ATTFilter licy restriction on software: C:\Program Files (x86)\InstallShield Installation Information\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Bin32\ApprenticeRegSvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\legacyPM\MessageDlg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\nl-filter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\dataminer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Bin32\ApprenticeRegSvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\nx_machinery_library_install_utilities.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steamerrorreporter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\AdRefMan.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Style Library Manager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\InventorView.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\dwfBridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Dell Inc\Dell Edoc Viewer\SweepDocs.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\igscount.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\WSCommCntr1.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_assy_hlr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\TaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Windows Live\.cache\17088b31cc434102\DXSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\InventorView.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\javaws.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterInventorVault.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\Publisher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\IvServerHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterAecExchange.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\WinRAR\Formats\ace32loader.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Mozilla Firefox\updater.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\OIS.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\ApprenticeRegSvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\ehrec.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\acad.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\Wordconv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DWG TrueView 2010\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\legacyPM\PatchProgress.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Mail\WinMail.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\javaws.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\color-enhance.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\mtstack16.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\legacyPM\Login.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Compatibility\Bin\DBXBridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcLauncher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\CMControl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\PX Storage Engine\drvins64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\tnameserv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\bin\LclzCompileXml.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\FIX404.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\contrast-stretch-hsv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Juniper Networks\Network Connect 7.4.0\dsNetworkConnect.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSPUB.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\Setup\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmprph.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\gimpressionist.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\jqs.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Drawing Resource Transfer Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\LU\LogitechUpdate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\Setup\AcDelTree.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\DWA\resources\libraries\CustomHook_Helperx64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\ehrecvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\ACCICONS.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\CLVIEW.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\fix304f2.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Security Client\msseces.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\jabswitch.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\help.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\igoproxy64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\wsftpurl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\kinit.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\Core\ActivationUI.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\java.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RemoveTSTasks.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DWG TrueView 2010\styshwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterDesignSensors.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\sweetpacks bundle uninstaller\uninstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Bin32\Inventor32bitHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Inventor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-mng.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\pack200.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\PPTICO.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\SweepNX.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\AdRefMan.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\animation-play.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Installer\LangSelector.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\policytool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\uninstall\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\DtDv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\memprobe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\WinRAR\UnRAR.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\InvTxtStack.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\run_journal.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\threshold-alpha.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Battlelog Web Plugins\uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DWG TrueView 2010\DWGVIEWR.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\plugin-browser.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Compatibility\Bin\Mechanical\MDTLink.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\run_managed.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\32\bin\gspawn-win32-helper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\rmiregistry.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\VPREVIEW.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DWG TrueView 2010\sfxfe32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\Installers\umdf.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Wajam\Updater\update.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Connectivity.InventorAddin.EdmAddinRegistration.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\31.0.1650.63\31.0.1650.63_chrome_installer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\Gaming Software\LU\LULnchr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\LogTransport2.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Office Setup Controller\promo.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\contrast-normalize.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSACCESS.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\destripe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Security Client\Backup\amd64\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpsideshowgadget.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\DWA\resources\libraries\Adobe_Helperx64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Unifying\DJCUHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\WinRAR\Rar.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\Python\Lib\distutils\command\wininst-9.0-amd64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Mail\wab.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\Installers\vcredist_x86.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterFrameGenerator.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{C0B604DD-F105-41E3-B86E-D6F21048AC81}\nvSmartMaxapp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Google Earth\client\gpsbabel.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-sgi.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\chrome_launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\EFLC\gta4Browser.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\__Installer\Touchup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Internet Explorer Compatibility Test Tool\Agent Framework\Agents\IECE\iece.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\fractal-explorer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\mcadautoreg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Battlelog Web Plugins\esnlauncher4.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\astragon\Bus-Simulator 2012\unins000.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Roxio Shared\OEM\RoxioSharedAPI\ShareLauncher12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\SELFCERT.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\Installers\vcredist_x86.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\Setup\Setup\AcDelTree.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\Python\Lib\distutils\command\wininst-9.0.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\Roxio Central 5\RCDownloadConfig.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\ftpsched.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Sonic Shared\PX Drivers\pxinsa64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\CCleaner\uninst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\Python\Lib\distutils\command\wininst-6.0.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\Setup_wm.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Inventor32bitHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\orbd.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\FEAComputeServer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\gfig.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\rmiregistry.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Mesh\WLSync.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterDesignSensors.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\Mcx2Prov.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-pnm.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\RemoveTSTasks.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\Roxio Burn\Roxio Burn.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-psp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\1031\ONELEV.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\MSCsrv32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\Origin.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\NvStereoUtilityOGL.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Xtras\AdobePDF\PrintInf64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGFLEXLM\ugs_composite.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\__Installer\directx\redist\DXSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\sys\g3vved.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Mail\wabmig.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpconfig.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\wow_helper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\javaw.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\sfxfe32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\mosaic.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\TOSHIBA Viewer V2\GDI&TWAIN\WILNSCAN.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\jp2launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOICONS.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\epson\escndv\setup\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\tools\PoolMigr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\script-fu.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DWG TrueView 2010\Setup\AcDelTree.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterAssemblyStressAnalysis.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\Creator Classic 12\Creator12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGFLEXLM\lmtools.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterFrameGenerator.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Vault 2011\Explorer\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\unsharp-mask.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Display\nvtray.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\win-snap.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Uninstall\nvudisp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Oarpmany.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnscfg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\IGESCOMP.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\mcupdate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\McrMgr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\noise-rgb.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\animation-optimize.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\InvTxtStack.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\rmiregistry.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Style Management Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\Installers\gfwlivesetup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\edge-dog.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\ehprivjob.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\flame.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSOHTMED.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Installer\wlstartup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Vault 2011\Setup\AcDelTree.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\DEP\dep.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Display\nvsmartmaxapp64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\acad.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\wind.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Standard User Analyzer\cabarc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steam\games\appid_17330.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\addplwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\lighting.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\32\bin\gspawn-win32-helper-console.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\WSCommCntr\lib\WSCommCntr2.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Internet Explorer Compatibility Test Tool\Agent Framework\Agents\Collector\collect.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-pdf-load.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\LWA\adobe_licutil.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\installer.{F6411614-2BF7-4F7E-89E9-2E2D2EA77B9E}\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\styshwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPTool64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\channel-mixer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\rmid.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Bin32\Ipj.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\warp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\CPSHelpRunner12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\AdSubAware.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\addplwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\tile-paper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWizardLauncher12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\sample-colorize.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\loadmxf.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\pc3exe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\DotNetInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\styexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGalleryRepair.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\WinRAR\WinRAR.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\border-average.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_assy_build.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steamapps\common\F1 2011\ogg.dll <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\LRFWiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\red-eye-removal.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSOUC.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\DwgEdit.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorHelp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\noise-spread.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\chicken.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\sfxfe32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\Setup\Setup\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\wsftpgui.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\NFS13.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\blur.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\UACCE\sdbinst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\UIA\uiaconvert.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\DWA\resources\libraries\TokenResolverx64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Inventor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Bin32\TaskDBExe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\legacyPM\OriginLegacyCLI.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\SCANPST.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\memprobe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-desktop-link.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\POWERPNT.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Setup\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpshare.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\sinus.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\kinit.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DWG TrueView 2010\addplwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\LICLUA.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-jp2-load.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXTranscode.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\jigsaw.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Bin32\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Photo Viewer\ImagingDevices.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Ipj.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVideoCameraAutoPlayManager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\astragon\Bus-Simulator 2012\Bin_Basic_Win32\BusSimulator2012.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\gta4Browser.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-ps.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Mozilla Firefox\firefox.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\colorify.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\edge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\cartoon.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ugnx_batchmesher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\mapcolor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\pc3exe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\FEAComputeServer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_inspect.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\InventorView.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterInventorStudio.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Autodesk Shared\DWF Common\RegCleaner.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Java\Java Update\jaucheck.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-png.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\web-page.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Autodesk Shared\VBAServer\Ac32BitAppServer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\EAProxyInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Ink\ConvertInkStore.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\tools\genzip.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Autodesk Design Review 2012\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\ApprenticeRegSvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\EFLC\LaunchEFLC.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\edge-neon.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\mcGlidHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\CAD Manager Control\CmControl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\SendDmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\klist.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\blinds.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{C0B604DD-F105-41E3-B86E-D6F21048AC81}\NvTray.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\nxrci.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\RegisterTaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\delegate_execute.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Demo Application\StockViewer\StockViewer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\semi-flatten.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\BackOnTrack\Main\Backup_Central10.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_spacemap.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\igescomp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\keytool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ugnx_cad2prt.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\bin\gspawn-win64-helper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Bin32\InventorView.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\metadata.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-bmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\tile-glass.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\dwfBridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\City Car Driving Home Edition\tools\nlsdl.x86.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\pixelize.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\LaunchGTAIV.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\FIX214.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\3dxrepair.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\van-gogh-lic.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\Setup\Setup\AcDelTree.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\slidelib.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\max-rgb.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\video.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\WMPDMC.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-glob.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\WORDICON.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Free Video Converter\unins000.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\FaroImporter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows NT\Accessories\wordpad.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\AUInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\nx_assy_svol.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\esnsonar_uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\astragon\Bus-Simulator 2012\Bin_Basic_Win32\ScheduleWizzard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\VBA\VBA6\link.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Google Earth\plugin\geplugin.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\gtaEncoder.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\noise-hsv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steam\games\appid_10560.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\3Dconnexion\3Dconnexion 3DxSoftware\3DxTrainer\3DxTrainer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Intel\DMIX\IPROSetMonitor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Bin32\Server32bitHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\klist.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\Installers\wmpappcompat.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\IEContentService.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Office Setup Controller\ODeploy.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\ORD_64To32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Unifying\LU\LuLnchr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\ssvagent.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Juniper Networks\Network Connect 7.4.0\uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\Roxio Central 5\RoxioCentralFx.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Bin32\TSCompactDatabaseExe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\Python\pythonw.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Dell\DBRM\DBRM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\AdMigrator.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\sphere-designer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\Installers\DirectX_jun2008\DXSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\cube3d.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\twain_32\escndv\estwm.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\ehvid.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\PX Storage Engine\pxcpya64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\keytool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Connectivity.InventorAddin.EdmAddinRegistration.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\iCopy_OutProc_Service.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\lens-distortion.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\Roxio Burn\DataStream.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\jqs.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\policytool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\Migration\amdwgmigr14.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\FEAFileCompressor_C.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\MSP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\AcrobatInfo.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\CNFNOT32.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateOnDemand.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Bin32\ApprenticeRegSvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\City Car Driving Home Edition\tools\nlsdl.amd64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\puzzle.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\igesquickview.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\keytool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\3DxHome\3DxHome.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steam\games\appid_6520.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\InstallShield Installation Information\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Mesh\MOE.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\PhotoShowExpress\PhotoShow Express.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstreg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmplayer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Demo Application\StockViewer\StockViewerUpdater.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\AcSignApply.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\OEM\stax.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\epson\escndv\escndv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\AdSubAware.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Ink\InkWatson.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\newsprint.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Internet Explorer Compatibility Test Tool\testtool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\fix214.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\UACCE\uacce.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\AcmPmDb32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\LHelpBrowser.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DWG TrueView 2010\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-wmf.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\blur-motion.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\klist.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\ifs-compose.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-gbr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\checkerboard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\tile.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\AcHelp2.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\twain_32\escndv\escfg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\RegisterInventorVault.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\WSCommCntr3\lib\WSCommCntr3.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\polar-coords.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\CMControl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Compatibility\Bin\DWGOLEServerStub.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateComRegisterShell64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\XLator.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\twain_32\escndv\escndv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\DtDv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.3DVision.{A3DD7342-B30E-470C-8628-0C80D3249CB3}\3DVision_332.21.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\iwarp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\edge-laplace.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\print.exe <====== ACHTUNG |
08.03.2016, 15:22 | #5 |
| trojaner keine windows uodates mehrCode:
ATTFilter HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\OriginUninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\BackOnTrack\File Backup\RoxioRestore.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXQuickTimeControlHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{A19D68CC-58D2-486C-A31E-636967771614}\dbInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\OriginER.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Skype\Phone\Skype.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Sidebar <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DVD Maker\DVDMaker.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\FIX304F2.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\TOSHIBA Viewer V2\GDI&TWAIN\WILHUB32.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Standard User Analyzer\loosen.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLED.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\Connect.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\UpdateTitle.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\color-rotate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\WizStress.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\ORD_AcroActiveX.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\EvoParser\CLUpdater.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Office\Office14\MSOHTMED.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\LogTransport2.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\ipsactive.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\Inventor Server\Bin\RegisterInventorServer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\64BitMAPIBroker.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-fli.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Setup\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Style Management Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steam\games\appid_17340.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Installer\wlsettings.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Bin32\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSTORDB.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\Gaming Software\LWEMon.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Journal\PDIALOG.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Standard User Analyzer\SUA.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Demo Application\StockViewer\StockViewerUpdateOrders.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\Silverlight.Configuration.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\AcroRd32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\att2cat.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Bin32\MSP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\sfxfe32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Setup Files\{AC76BA86-1033-F400-BA7E-000000000005}\WindowsInstaller-KB893803-v2-x86.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\OriginClientService.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnscfg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\env_print.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\FEAFilesHandler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\NVSMI\nvdebugdump.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-gih.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Compatibility\Bin\DBXBridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Live\Mesh\wlcrdpsystem.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\jbroker.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD9.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steamapps\common\F1 2011\vorbisfile.dll <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\bin\SketchBookDesigner.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\ADLM\R1\LMU.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: c:\users\maximilian\documents\city car driving\ccd mod installer by daeman v.1.3.3.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Windows Live\.cache\201bca41cc434103\DXSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterMarkupManager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\policytool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\ssvagent.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\bin\LclzUpdateLangPg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_convert_part.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmlaunch.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\SearchProtect\Main\bin\uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\CCleaner\CCleaner.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\ADXBATCH.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\FIX304.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\ssvagent.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterDragAndDrop.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\ORD_Proxy.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-xwd.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\IGESSTRT.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: c:\users\maximilian\desktop\gfwlivesetup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-ico.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\gradient-map.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\TaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\gradient-flare.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\WMPDMC.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDapp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\guillotine.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\bump-map.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\agcp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\sfxfe32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\FIXFORM.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrobat_sl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Bin32\DtDv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\crop-auto.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnscfg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\pack200.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\DEP\gmeserv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\deinterlace.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\chrome_launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{C0B604DD-F105-41E3-B86E-D6F21048AC81}\nvcplui.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\Installer\chrmstp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\AdobeCollabSync.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\bin\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\blur-gauss-selective.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\fixform.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Wajam\Updater\WajamUpdaterV3.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Autodesk Shared\Materials2011\AssetFiles\Luc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\AdPM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXAlbumDownloadWizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Setup\AcDelTree.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\grid.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpconfig.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\fix212.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Compatibility\Bin\DWGOLEServerStub.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\sys\g3vved.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\ftpsync.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Vault 2011\Explorer\Connectivity.Vault.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\ink\pipanel.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Style Library Manager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\compose.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\ktab.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Defender <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\City Car Driving Home Edition\unins000.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\SETLANG.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\javaw.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\addplwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\bin\x64launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\DwgEdit.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterFountainHead.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\ServiceModule.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Bin32\Ipj.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\LDFViewer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\hot.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\GameOverlayUI.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Setup Files\{AC76BA86-1033-F400-BA7E-000000000005}\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\java.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\ripple.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\noise-solid.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\ApprenticeRegSvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-svg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterDesignAccelerator.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\DEP\sdbinst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Drawing Resource Transfer Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Mail\WinMail.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\Python\Lib\distutils\command\wininst-8.0.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\jp2launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\photocopy.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\LBTWiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\City Car Driving Home Edition\tools\DirectX\DXSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\City Car Driving Home Edition\tools\vcredist_2005_SP1_x86.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Demo Application\StockViewer\StockViewerControlPanel.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Security Client\NisSrv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\rmid.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Mail\wlmail.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\Gaming Software\FW\G940_Updater.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXCodecHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Sonic Shared\PX Drivers\pxcpya64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Wajam\uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\bin\steamservice.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Silverlight\5.1.30214.0\Silverlight.Configuration.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Style Library Manager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\uninstall\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\dpx_validate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\Source Engine\OSE.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Inventor32bitHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\shift.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\twain_32\escndv\estcfg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\DtDv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\ServiceModule.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterESKDSupport.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\AcHelp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\jp2launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\DBXBridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\color-cube-analyze.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\qbist.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\ServiceModule.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\jet.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Autodesk Shared\ISYS8\ISYSbridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-tiff-save.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\unpack200.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-pcx.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpenc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\Python\python.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\slidelib.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-dicom.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Uninstall\nvuninst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Setup\AcDelTree.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Bluetooth\BtDfuMWizard64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Autodesk Design Review 2012\DesignReview.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterInventorVault.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Battlefield 3\core\EACoreServer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\CDDRV2\KHALMNPR.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\gta4Browser.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Ipj.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steam\games\appid_10540.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{C0B604DD-F105-41E3-B86E-D6F21048AC81}\nvSmartMaxapp64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Uninstall\nvuhda6.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\DW\DWTRIG20.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\ktab.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\Steam.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\ITMService.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\ATT2CAT.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateSetup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\nView\nViewSetup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\fractal-trace.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\OriginCrashReporter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\xessu.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\javacpl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\twain.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\fix144ot.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Roxio Shared\OEM\RoxioSharedAPI\SonicMediaClient.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Security Client\MpCmdRun.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\ink\TabTip32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGFLEXLM\lmutil.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\align-layers.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\DW\DW20.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Installer\defmgr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\AdPM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\contrast-stretch.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\ehtray.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Style Management Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\GTAIV.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\WriteMiniDump.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office10\MAKECERT.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterInventorStudio.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Ink\FlickLearningWizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\apply-canvas.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterMarkupManager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\EFLC\Activation\SteamActivation.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\bin\gimptool-2.0.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\FLTLDR.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\sys\ge_zipdcl32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\edge-sobel.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\Inventor Server\Bin\Bin32\Server32bitHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\FEAFilesHandler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\SetPoint.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\LWA\AAM Registration Notifier.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Internet Explorer <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\despeckle.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\BackOnTrack\File Backup\RRLauncher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Bluetooth\LDPInst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\libexec\dbus-bash-completion-helper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Autodesk Design Review 2012\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD Cinema\TaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\BatchPublishWizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\Setup\Setup\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Juniper Networks\Common Files\dsNcInst64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\XLICONS.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\Activation\SteamActivation.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Vault 2011\Autoloader\Explorer\Autoloader.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\styshwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Live\Mesh\wlcrasvc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\lens-flare.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Mozilla Firefox\crashreporter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Drawing Resource Transfer Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_clearance.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\Activation\SteamActivation.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\HPSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-xpm.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\PX Storage Engine\pxinsa64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\bin\gimp-console-2.8.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\orbd.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\memprobe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\LU\LuLnchr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\pagecurl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\battrans.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\java-rmi.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AcrobatUpdater.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\DEP\envchange.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-tiff-load.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpshare.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\MSInfo\msinfo32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{C0B604DD-F105-41E3-B86E-D6F21048AC81}\nvxdsync.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\servertool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\InstallShield Installation Information\{40FEF622-6E0F-46B6-824B-A40C178FD4CD}\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Compatibility\Bin\Mechanical\MDTLink.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\NVSMI\nvidia-smi.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\oilify.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAMLauncher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\dataminer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterDragAndDrop.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Mail\wabmig.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\whirl-pinch.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\PDFMaker\Office\HTML2PDFWrapFor64Bit.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Autodesk Design Review 2012\Setup\Setup\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\BackOnTrack\File Backup\faVssProc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterDragAndDrop.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Silverlight\5.1.30214.0\agcp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\SignLibrary.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\convolution-matrix.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-cel.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpenc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\tnameserv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Inventor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\displace.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterAecExchange.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Demo Application\StockViewer\OLAF.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\waves.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\ORD_ProcessAcrobat.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Unifying\UnifyingUnInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Java\Java Update\jaureg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\orbd.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\InventorView.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\WsftpCOMHelper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\filter-pack.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\lcamera.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\UIA\uiaservice.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\gen\genmsked.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\value-propagate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\AdFlashVideoPlayer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Standard User Analyzer\fixapp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Internet Explorer Compatibility Test Tool\Agent Framework\Agents\Compressor\compressor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\__Installer\Cleanup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\mcspad.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Free Video Converter\FreeVideoConverter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.NView.{527540AB-F16D-4799-B324-94FBDED9EDC5}\nvTaskBar.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ugs_router.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WindowsLivePhotoViewer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\crop-zealous.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\legacyPM\OriginUninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Free Video Converter\Uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\InventorView.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Standard User Analyzer\SUAnalyzer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterTaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Unifying\RunNE.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\java-rmi.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DWG TrueView 2010\pc3exe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Intel\NCS2\WMIProv\ncs2prov.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\ehshell.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\GoogleUpdate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\Setup\AcDelTree.exe <====== ACHTUNG Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50605696 2016-02-02] (Skype Technologies S.A.) HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3014224 2016-02-04] (Valve Corporation) HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\Run: [apphide] => C:\Program Files (x86)\baidu\pps.exe HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\RunOnce: [Report] => \AdwCleaner[C1].txt HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50605696 2016-02-02] (Skype Technologies S.A.) HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\Run: [Discord] => C:\Users\Lukas\AppData\Local\Discord\app-0.0.286\Discord.exe [53420216 2016-03-04] (Hammer & Chisel, Inc.) HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\MountPoints2: {576796b7-e342-11e3-94f0-782bcb99e3ce} - I:\LG_PC_Programs.exe HKU\S-1-5-21-3487997803-1532060654-1365074507-1005\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-3487997803-1532060654-1365074507-1005\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\...\Run: [FanaLEDs] => C:\Program Files (x86)\FanaLEDs\FanaLEDs.exe [826368 2014-02-05] () HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-18\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHVE.EXE [241280 2014-01-20] (SEIKO EPSON CORPORATION) ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Keine Datei ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2011-07-25] (Autodesk, Inc.) ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () Startup: C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2016-02-18] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation) GroupPolicy: Beschränkung - Chrome <======= ACHTUNG GroupPolicyUsers\S-1-5-21-3487997803-1532060654-1365074507-1006\User: Beschränkung - Chrome <======= ACHTUNG GroupPolicyUsers\S-1-5-21-3487997803-1532060654-1365074507-1005\User: Beschränkung <======= ACHTUNG GroupPolicyUsers\S-1-5-21-3487997803-1532060654-1365074507-1003\User: Beschränkung <======= ACHTUNG CHR HKLM\SOFTWARE\Policies\Google: Beschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Hosts Datei wurde nicht im Standardordner gefunden Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{B5E208C6-BB9C-4F8E-8724-0786695ADEB6}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-3487997803-1532060654-1365074507-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSSE HKU\S-1-5-21-3487997803-1532060654-1365074507-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/USREL/8 HKU\S-1-5-21-3487997803-1532060654-1365074507-1001\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=MSE&Tid=000328B0&OHP=http%3A%2F%2Fde.msn.com%2F%3Fpc%3DMDDR%26ocid%3Dbb7hp&OSP= HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=U270&ocid=U270DHP&osmkt=de-de HKU\S-1-5-21-3487997803-1532060654-1365074507-1005\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE SearchScopes: HKLM-x32 -> {49606DC7-976D-4030-A74E-9FB5C842FA68} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLRDF8&pc=MDDR&src=IE-SearchBox SearchScopes: HKLM-x32 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE SearchScopes: HKLM-x32 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1001 -> DefaultScope {49606DC7-976D-4030-A74E-9FB5C842FA68} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1002 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1002 -> {DE7D25BE-64C2-4E51-B376-4C4DB2EAFF77} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {151F5FAD-352E-4BED-AF04-DABC47B2632C} URL = hxxp://go.1und1.de/tb/ie_searchplugin/?q={searchTerms}&enc=UTF-8 SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {48356623-4CDD-4A32-9251-CD12380A0FDE} URL = hxxp://go.mail.com/tb/en-us/ie_searchplugin/?q={searchTerms}&enc=UTF-8 SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {802B7583-F36D-4AFC-A7C1-24395748F1BC} URL = hxxp://go.web.de/tb/ie_searchplugin/?q={searchTerms}&enc=UTF-8 SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {9C2FAA18-42D8-4412-BC5F-CCCBDAE73C42} URL = hxxp://go.gmx.de/tb/ie_searchplugin/?q={searchTerms}&enc=UTF-8 SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1005 -> DefaultScope {49606DC7-976D-4030-A74E-9FB5C842FA68} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1005 -> {49606DC7-976D-4030-A74E-9FB5C842FA68} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 -> DefaultScope {49606DC7-976D-4030-A74E-9FB5C842FA68} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-02-05] (Microsoft Corporation) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2016-02-04] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-02-04] (Microsoft Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\URLREDIR.DLL [2016-02-04] (Microsoft Corporation) Toolbar: HKU\S-1-5-21-3487997803-1532060654-1365074507-1001 -> Kein Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Keine Datei DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\vm27u39a.default FF DefaultSearchEngine: Bing FF SelectedSearchEngine: Bing FF SearchEngineOrder.3: Bing FF Keyword.URL: hxxp://www.bing.com/search?FORM=U270DF&PC=U270&q= FF Homepage: hxxp://www.msn.com/?pc=U270&ocid=U270DHP&osmkt=de-de hxxps://www.malwarebytes.org/restorebrowser//?u=4ef09132d37415b6ea9b7cb45a0bfa6f&c=up1&src=hp&inst=1440087070 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-09] () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.) FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [Keine Datei] FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2014-12-03] (EA Digital Illusions CE AB) FF Plugin: @iqiyi.com/npclient -> C:\IQIYI Video\LStyle\npclient.dll [Keine Datei] FF Plugin: @iqiyi.com/npWebPlayer -> C:\IQIYI Video\LStyle\npWebPlayer.dll [Keine Datei] FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll [2011-07-15] (Sun Microsystems, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-09] () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2015-12-02] (DivX, LLC) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [Keine Datei] FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2014-12-03] (EA Digital Illusions CE AB) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-04-14] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-04-14] (Oracle Corporation) FF Plugin-x32: @kaspersky.com/content_blocker_663BE84DBCC949E88C7600F63CA7F098 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com [2015-08-22] () FF Plugin-x32: @kaspersky.com/online_banking_08806E753BE44495B44E90AA2513BDC5 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com [2015-08-22] () FF Plugin-x32: @kaspersky.com/virtual_keyboard_07402848C2F6470194F131B0F3DE025E -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015-08-22] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-02-04] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2014-07-02] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2014-07-02] (NVIDIA Corporation) FF Plugin-x32: @rising.com.cn/nprising -> C:\Program Files (x86)\Rising\RAV\nprising.dll [Keine Datei] FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2012-04-04] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-3487997803-1532060654-1365074507-1001: @autodesk.com/DWF -> c:\Program Files (x86)\Autodesk\Autodesk Design Review Browser Add-on v1.2\npADRdwf.dll [2011-01-24] (Autodesk) FF Plugin HKU\S-1-5-21-3487997803-1532060654-1365074507-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Michael\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-05] (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-3487997803-1532060654-1365074507-1003: @rising.com.cn/nprising -> C:\Program Files (x86)\Rising\RAV\nprising.dll [Keine Datei] FF SearchPlugin: C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\vm27u39a.default\searchplugins\bing-.xml [2015-12-31] FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com [2015-08-22] [ist nicht signiert] FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015-08-22] [ist nicht signiert] FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com [2015-08-22] [ist nicht signiert] FF Extension: Bing Search - C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\vm27u39a.default\Extensions\bingsearch.full@microsoft.com.xpi [2015-12-31] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2012-04-17] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [content_blocker_663BE84DBCC949E88C7600F63CA7F098@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_07402848C2F6470194F131B0F3DE025E@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking_08806E753BE44495B44E90AA2513BDC5@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [{CE7C2E8C-B4BF-4138-9918-A7ECE746A250}] - C:\Windows\Installer\{AB7BD80C-F1E6-486D-8E00-EB8C544A2941}\{CE7C2E8C-B4BF-4138-9918-A7ECE746A250}.xpi FF Extension: Download Protect - C:\Windows\Installer\{AB7BD80C-F1E6-486D-8E00-EB8C544A2941}\{CE7C2E8C-B4BF-4138-9918-A7ECE746A250}.xpi [2016-03-05] FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\my-prefs.js [2015-03-25] <==== ACHTUNG (Zeigt auf eine *.cfg Datei) Chrome: ======= CHR Profile: C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Web Store) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-03-07] CHR Extension: (Web Store) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbhjdbfgekjfcfkkfjjmlmojhbllhbho [2016-03-07] CHR Extension: (Web Store) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-03-07] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-03-07] CHR Extension: (Web Store) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocodlhejmhjbanidjgpobiocmpiknfoa [2016-03-07] CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08] Opera: ======= OPR StartupUrls: "hxxp://www.mystartsearch.com/?type=hp&ts=1430753799&from=wpc&uid=WDCXWD10EALX-759BA1_WD-WCATR987109471094" ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AVP15.0.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe [194000 2015-07-09] (Kaspersky Lab ZAO) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1300512 2016-01-16] () S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2014-12-21] (BitRaider, LLC) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2804976 2016-02-04] (Microsoft Corporation) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1368408 2015-11-30] (Disc Soft Ltd) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [245544 2015-10-03] (EasyAntiCheat Ltd) S4 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2015-05-06] (Freemake) [Datei ist nicht signiert] R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-27] (NVIDIA Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-27] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-27] (NVIDIA Corporation) R2 NVWMI; C:\Windows\system32\nvwmi64.exe [2498848 2013-12-19] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2015-12-25] (Electronic Arts) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-09-12] () R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2015-09-12] () R2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1026944 2015-08-17] (Enigma Software Group USA, LLC.) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AX88178; C:\Windows\System32\DRIVERS\ax88178.sys [59392 2010-11-24] (ASIX Electronics Corp.) R0 cm_km_w; C:\Windows\System32\DRIVERS\cm_km_w.sys [247016 2015-07-09] (Kaspersky Lab UK Ltd) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-12-06] (Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [46392 2015-12-06] (Disc Soft Ltd) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2015-08-17] () R3 IntcAzAudAddService; C:\Windows\System32\drivers\RTDVHD64.sys [1980648 2010-10-04] (Realtek Semiconductor Corp.) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-07-09] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [64368 2015-07-09] (Kaspersky Lab ZAO) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [159960 2015-07-09] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [225976 2015-07-09] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [831672 2015-10-06] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [39280 2015-07-09] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [40304 2015-07-09] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [39280 2015-07-09] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [24944 2015-07-09] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [65208 2015-07-09] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [85360 2015-07-09] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [190648 2015-10-06] (Kaspersky Lab ZAO) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-27] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) R1 rsutils; C:\Windows\System32\DRIVERS\rsutils.sys [69336 2014-08-15] (Beijing Rising Information Technology Co., Ltd.) S3 Spyder5; C:\Windows\System32\DRIVERS\dccmtr.sys [15360 2014-12-19] (Datacolor) R0 sysmon; C:\Windows\System32\DRIVERS\sysmon.sys [119344 2014-09-10] (Beijing Rising Information Technology Co., Ltd.) S3 USBMULCD; C:\Windows\System32\drivers\CM10664.sys [1307648 2011-03-31] (C-Media Electronics Inc) R0 vidsflt61; C:\Windows\System32\DRIVERS\vsflt61.sys [142944 2012-03-28] (Acronis) U3 DfSdkS; kein ImagePath U4 klkbdflt2; system32\DRIVERS\klkbdflt2.sys [X] S3 SBFWIMCLMP; system32\DRIVERS\SBFWIM.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-08 15:04 - 2016-03-08 15:06 - 00253797 _____ C:\Users\Lukas\Downloads\FRST.txt 2016-03-08 15:04 - 2016-03-08 15:04 - 03248332 _____ C:\Users\Lukas\Downloads\Nicht bestätigt 45691.crdownload 2016-03-08 15:02 - 2016-03-08 15:04 - 02374144 _____ (Farbar) C:\Users\Lukas\Downloads\FRST64.exe 2016-03-07 19:21 - 2016-03-07 19:21 - 404231634 _____ C:\Users\Lukas\Downloads\Sony Vegas Pro 13 Setup + Crack (64-Bit).rar 2016-03-07 18:35 - 2016-03-07 18:36 - 00000038 _____ C:\Users\Lukas\Desktop\discord.txt 2016-03-07 18:33 - 2016-03-07 18:33 - 00000330 _____ C:\Users\Lukas\Desktop\Bunnyhop.txt 2016-03-07 18:23 - 2016-03-07 18:24 - 00006918 _____ C:\Users\Lukas\Downloads\Bunnyhop CSGO.zip 2016-03-07 17:59 - 2016-03-07 18:15 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\discord 2016-03-07 17:59 - 2016-03-07 17:59 - 00002168 _____ C:\Users\Lukas\Desktop\Discord.lnk 2016-03-07 17:59 - 2016-03-07 17:59 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc 2016-03-07 17:58 - 2016-03-07 17:59 - 00000000 ____D C:\Users\Lukas\AppData\Local\SquirrelTemp 2016-03-07 17:58 - 2016-03-07 17:59 - 00000000 ____D C:\Users\Lukas\AppData\Local\Discord 2016-03-07 17:47 - 2016-03-07 17:50 - 47718584 _____ (Hammer & Chisel, Inc.) C:\Users\Lukas\Downloads\DiscordSetup.exe 2016-03-07 15:36 - 2016-03-07 15:36 - 00001094 _____ C:\AdwCleaner[C3].txt 2016-03-07 15:31 - 2016-03-07 15:33 - 00000940 _____ C:\AdwCleaner[S3].txt 2016-03-07 14:51 - 2016-03-07 14:55 - 00000000 ____D C:\Users\Lukas\Desktop\RevoUninstallerPortable 2016-03-07 14:50 - 2016-03-07 14:45 - 02785665 ____N (PortableApps.com) C:\Users\Lukas\Desktop\RevoUninstallerPortable_1.95_Rev_2.paf.exe 2016-03-07 14:44 - 2016-03-07 14:44 - 00004771 _____ C:\AdwCleaner[C2].txt 2016-03-07 14:41 - 2016-03-07 14:42 - 00004263 _____ C:\AdwCleaner[S2].txt 2016-03-07 14:27 - 2016-03-08 15:04 - 00000000 ____D C:\FRST 2016-03-07 13:17 - 2016-03-07 13:17 - 00000000 ____D C:\Users\Lukas\AppData\Local\Unigraphics Solutions 2016-03-07 12:51 - 2016-03-07 12:51 - 00000000 __SHD C:\found.000 2016-03-05 14:35 - 2016-03-05 14:30 - 00985600 ____N C:\Users\Lukas\Desktop\MicrosoftFixit50123.msi 2016-03-02 17:25 - 2016-03-02 17:33 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\install 2016-03-02 17:24 - 2016-03-02 18:07 - 00000000 __SHD C:\Users\Lukas\Gu73246B57189 2016-03-02 17:24 - 2016-03-02 18:06 - 00000000 ____D C:\Users\Lukas\Ds78224R88177 2016-02-27 12:35 - 2016-02-27 12:35 - 00010250 _____ C:\Users\Lukas\AppData\Local\4BEEC7F234E54494BC31B63B5104251B.Dokument 2.fnf 2016-02-27 12:01 - 2016-02-27 12:01 - 00045901 _____ C:\Users\Lukas\Downloads\let-it-go-trumpet-clarinet-and-baritone-horn.pdf 2016-02-27 11:28 - 2016-02-27 11:28 - 00000000 ____D C:\Users\Lukas\Documents\Forte 2016-02-27 11:28 - 2016-02-27 11:28 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\FORTE 2016-02-27 11:26 - 2016-02-27 11:28 - 54695448 _____ (Lugert Verlag ) C:\Users\Lukas\Downloads\Setup_FORTE6PremiumT_de.exe 2016-02-27 11:25 - 2016-02-27 11:39 - 44101459 _____ (MakeMusic) C:\Users\Lukas\Downloads\nw_22918_finalenotepadexe.exe 2016-02-27 11:18 - 2016-02-27 11:24 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\MuseScore 2016-02-27 11:18 - 2016-02-27 11:18 - 00000000 ____D C:\Users\Lukas\Documents\MuseScore2 2016-02-27 11:18 - 2016-02-27 11:18 - 00000000 ____D C:\Users\Lukas\AppData\Local\MuseScore 2016-02-27 11:14 - 2016-02-27 11:17 - 55488512 _____ C:\Users\Lukas\Downloads\MuseScore-2.0.2.msi 2016-02-27 11:05 - 2016-03-07 15:19 - 00000000 ____D C:\Users\Lukas\Documents\PriMusFree 2016-02-27 11:05 - 2016-02-27 11:05 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Columbus Soft 2016-02-27 11:04 - 2016-02-27 11:04 - 03341128 _____ (Columbus Soft ) C:\Users\Lukas\Downloads\SetupPriMusFree.exe 2016-02-23 21:38 - 2016-02-23 20:59 - 449940993 ____N C:\Users\Lukas\Desktop\mi3.mp4 2016-02-21 12:54 - 2016-02-21 12:54 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2529834191_spectate.bat 2016-02-20 16:30 - 2016-02-20 16:30 - 02259195 _____ C:\Users\Lukas\Downloads\SkinPreview_2.4.0.0_US_BETA_updated-29-1-2016 (1).zip 2016-02-14 20:39 - 2016-02-14 20:39 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2521145290_spectate.bat 2016-02-14 17:54 - 2016-02-14 17:54 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2520925620_spectate (1).bat 2016-02-14 17:53 - 2016-02-14 17:53 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2520925620_spectate.bat 2016-02-14 14:02 - 2016-02-14 14:02 - 00000000 ____D C:\Users\Lukas\Documents\BnS 2016-02-14 14:02 - 2016-02-14 14:02 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Awesomium 2016-02-14 11:31 - 2016-02-14 11:31 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2520117594_spectate.bat 2016-02-10 18:18 - 2016-02-06 11:48 - 25839104 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-02-10 18:18 - 2016-02-06 11:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-02-10 18:18 - 2016-02-06 11:24 - 02887680 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-02-10 18:18 - 2016-02-06 11:11 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-02-10 18:18 - 2016-02-06 11:10 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-02-10 18:18 - 2016-02-06 11:01 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-02-10 18:18 - 2016-02-06 10:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-02-10 18:18 - 2016-02-06 10:43 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-02-10 18:18 - 2016-02-06 10:38 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-02-10 18:18 - 2016-02-06 10:37 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-02-10 18:18 - 2016-02-06 10:32 - 14458368 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-02-10 18:18 - 2016-02-06 10:16 - 12857856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-02-10 18:18 - 2016-02-06 10:09 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-02-10 18:18 - 2016-02-06 09:54 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-02-10 18:18 - 2016-01-16 20:06 - 00025024 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-02-10 18:18 - 2016-01-16 19:54 - 01162240 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 01362944 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00677376 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-02-10 18:18 - 2016-01-06 20:02 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2016-02-10 18:18 - 2016-01-06 20:02 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll 2016-02-10 18:18 - 2016-01-06 19:41 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2016-02-10 18:17 - 2016-01-22 21:31 - 00387784 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-02-10 18:17 - 2016-01-22 21:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-02-10 18:17 - 2016-01-22 07:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-02-10 18:17 - 2016-01-22 07:41 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-02-10 18:17 - 2016-01-22 07:40 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-02-10 18:17 - 2016-01-22 07:40 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-02-10 18:17 - 2016-01-22 07:40 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-02-10 18:17 - 2016-01-22 07:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-02-10 18:17 - 2016-01-22 07:33 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-02-10 18:17 - 2016-01-22 07:32 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-02-10 18:17 - 2016-01-22 07:29 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-02-10 18:17 - 2016-01-22 07:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-02-10 18:17 - 2016-01-22 07:27 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-02-10 18:17 - 2016-01-22 07:27 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-02-10 18:17 - 2016-01-22 07:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-02-10 18:17 - 2016-01-22 07:17 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-02-10 18:17 - 2016-01-22 07:09 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-02-10 18:17 - 2016-01-22 07:08 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-02-10 18:17 - 2016-01-22 07:05 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-02-10 18:17 - 2016-01-22 07:04 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-02-10 18:17 - 2016-01-22 07:02 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-02-10 18:17 - 2016-01-22 07:02 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-02-10 18:17 - 2016-01-22 07:02 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-02-10 18:17 - 2016-01-22 07:01 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-02-10 18:17 - 2016-01-22 07:01 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-02-10 18:17 - 2016-01-22 07:00 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-02-10 18:17 - 2016-01-22 07:00 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-02-10 18:17 - 2016-01-22 06:55 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-02-10 18:17 - 2016-01-22 06:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-02-10 18:17 - 2016-01-22 06:51 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-02-10 18:17 - 2016-01-22 06:51 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-02-10 18:17 - 2016-01-22 06:50 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-02-10 18:17 - 2016-01-22 06:48 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-02-10 18:17 - 2016-01-22 06:47 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-02-10 18:17 - 2016-01-22 06:46 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-02-10 18:17 - 2016-01-22 06:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-02-10 18:17 - 2016-01-22 06:43 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-02-10 18:17 - 2016-01-22 06:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-02-10 18:17 - 2016-01-22 06:38 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-02-10 18:17 - 2016-01-22 06:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-02-10 18:17 - 2016-01-22 06:35 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-02-10 18:17 - 2016-01-22 06:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-02-10 18:17 - 2016-01-22 06:34 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-02-10 18:17 - 2016-01-22 06:33 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-02-10 18:17 - 2016-01-22 06:31 - 02597376 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-02-10 18:17 - 2016-01-22 06:27 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-02-10 18:17 - 2016-01-22 06:25 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-02-10 18:17 - 2016-01-22 06:24 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-02-10 18:17 - 2016-01-22 06:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-02-10 18:17 - 2016-01-22 06:08 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-02-10 18:17 - 2016-01-22 06:07 - 02120704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-02-10 18:17 - 2016-01-22 06:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-02-10 18:15 - 2016-01-22 07:27 - 05573056 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-02-10 18:15 - 2016-01-22 07:27 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-02-10 18:15 - 2016-01-22 07:27 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-02-10 18:15 - 2016-01-22 07:24 - 01733592 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 14179840 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 01214464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-02-10 18:15 - 2016-01-22 07:18 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2016-02-10 18:15 - 2016-01-22 07:18 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2016-02-10 18:15 - 2016-01-22 07:18 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-02-10 18:15 - 2016-01-22 07:17 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-02-10 18:15 - 2016-01-22 07:17 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-02-10 18:15 - 2016-01-22 07:17 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2016-02-10 18:15 - 2016-01-22 07:16 - 01461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-02-10 18:15 - 2016-01-22 07:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-02-10 18:15 - 2016-01-22 07:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-02-10 18:15 - 2016-01-22 07:13 - 03993536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-02-10 18:15 - 2016-01-22 07:13 - 03938752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-02-10 18:15 - 2016-01-22 07:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-02-10 18:15 - 2016-01-22 07:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-02-10 18:15 - 2016-01-22 07:13 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 01940992 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00880128 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:09 - 01314328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-02-10 18:15 - 2016-01-22 07:05 - 12877824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2016-02-10 18:15 - 2016-01-22 07:05 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-02-10 18:15 - 2016-01-22 07:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-02-10 18:15 - 2016-01-22 07:04 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2016-02-10 18:15 - 2016-01-22 07:04 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-02-10 18:15 - 2016-01-22 07:00 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) |
08.03.2016, 15:23 | #6 |
| teil3(mehere teile da zu langCode:
ATTFilter HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\OriginUninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\BackOnTrack\File Backup\RoxioRestore.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXQuickTimeControlHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.Driver.{A19D68CC-58D2-486C-A31E-636967771614}\dbInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\OriginER.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Skype\Phone\Skype.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Sidebar <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DVD Maker\DVDMaker.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\FIX304F2.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\TOSHIBA Viewer V2\GDI&TWAIN\WILHUB32.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Standard User Analyzer\loosen.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLED.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\Connect.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\UpdateTitle.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\color-rotate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\WizStress.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\ORD_AcroActiveX.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\EvoParser\CLUpdater.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Office\Office14\MSOHTMED.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\LogTransport2.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\ipsactive.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\Inventor Server\Bin\RegisterInventorServer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\64BitMAPIBroker.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-fli.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Setup\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Style Management Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steam\games\appid_17340.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Installer\wlsettings.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Bin32\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\MSTORDB.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\Gaming Software\LWEMon.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Journal\PDIALOG.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Standard User Analyzer\SUA.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Demo Application\StockViewer\StockViewerUpdateOrders.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\Silverlight.Configuration.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\AcroRd32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\att2cat.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Bin32\MSP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\sfxfe32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Setup Files\{AC76BA86-1033-F400-BA7E-000000000005}\WindowsInstaller-KB893803-v2-x86.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\OriginClientService.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpnscfg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\env_print.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\FEAFilesHandler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\NVSMI\nvdebugdump.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-gih.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Compatibility\Bin\DBXBridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Live\Mesh\wlcrdpsystem.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\jbroker.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD9.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steamapps\common\F1 2011\vorbisfile.dll <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\bin\SketchBookDesigner.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\ADLM\R1\LMU.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: c:\users\maximilian\documents\city car driving\ccd mod installer by daeman v.1.3.3.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Windows Live\.cache\201bca41cc434103\DXSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterMarkupManager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\policytool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\ssvagent.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\bin\LclzUpdateLangPg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_convert_part.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmlaunch.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\SearchProtect\Main\bin\uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\CCleaner\CCleaner.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\ADXBATCH.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\FIX304.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\ssvagent.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterDragAndDrop.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\ORD_Proxy.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-xwd.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\IGESSTRT.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: c:\users\maximilian\desktop\gfwlivesetup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-ico.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\gradient-map.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\TaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\gradient-flare.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\WMPDMC.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDapp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\guillotine.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\bump-map.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\agcp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\sfxfe32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Setup\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\FIXFORM.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrobat_sl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\Bin32\DtDv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\crop-auto.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpnscfg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\pack200.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\DEP\gmeserv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\deinterlace.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\chrome_launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{C0B604DD-F105-41E3-B86E-D6F21048AC81}\nvcplui.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\24.0.1312.57\Installer\chrmstp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\AdobeCollabSync.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\bin\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\blur-gauss-selective.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\fixform.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Wajam\Updater\WajamUpdaterV3.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Autodesk Shared\Materials2011\AssetFiles\Luc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\AdPM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXAlbumDownloadWizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Setup\AcDelTree.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\grid.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpconfig.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\fix212.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Compatibility\Bin\DWGOLEServerStub.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\sys\g3vved.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\ftpsync.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Vault 2011\Explorer\Connectivity.Vault.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\ink\pipanel.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Style Library Manager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\compose.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\ktab.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Defender <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\City Car Driving Home Edition\unins000.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\SETLANG.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\javaw.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2011\addplwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\bin\x64launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\DwgEdit.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterFountainHead.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\ServiceModule.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Bin32\Ipj.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\LDFViewer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\hot.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\GameOverlayUI.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Setup Files\{AC76BA86-1033-F400-BA7E-000000000005}\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\java.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\ripple.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\noise-solid.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\ApprenticeRegSvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-svg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterDesignAccelerator.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\DEP\sdbinst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\Drawing Resource Transfer Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Mail\WinMail.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\Python\Lib\distutils\command\wininst-8.0.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\jp2launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\photocopy.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\LBTWiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\City Car Driving Home Edition\tools\DirectX\DXSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\City Car Driving Home Edition\tools\vcredist_2005_SP1_x86.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Demo Application\StockViewer\StockViewerControlPanel.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Security Client\NisSrv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\rmid.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Mail\wlmail.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\Gaming Software\FW\G940_Updater.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WLXCodecHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Sonic Shared\PX Drivers\pxcpya64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Wajam\uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\bin\steamservice.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Silverlight\5.1.30214.0\Silverlight.Configuration.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Style Library Manager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\uninstall\Setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\dpx_validate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\Source Engine\OSE.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Inventor32bitHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\shift.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\twain_32\escndv\estcfg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\DtDv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\ServiceModule.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\RegisterESKDSupport.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Autodesk Shared\AcHelp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\jp2launcher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\DBXBridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\color-cube-analyze.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\qbist.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\ServiceModule.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\jet.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Autodesk Shared\ISYS8\ISYSbridge.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-tiff-save.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\unpack200.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-pcx.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Media Player\wmpenc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\Python\python.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\slidelib.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-dicom.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Uninstall\nvuninst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Setup\AcDelTree.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Bluetooth\BtDfuMWizard64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Autodesk Design Review 2012\DesignReview.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterInventorVault.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Battlefield 3\core\EACoreServer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\CDDRV2\KHALMNPR.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\gta4Browser.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Ipj.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\steam\games\appid_10540.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{C0B604DD-F105-41E3-B86E-D6F21048AC81}\nvSmartMaxapp64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Uninstall\nvuhda6.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\DW\DWTRIG20.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\ktab.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\Steam.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\ITMService.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Degtools\ATT2CAT.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleUpdateSetup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\nView\nViewSetup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\fractal-trace.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\OriginCrashReporter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\xessu.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\javacpl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\twain.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\fix144ot.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Roxio Shared\OEM\RoxioSharedAPI\SonicMediaClient.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Security Client\MpCmdRun.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\ink\TabTip32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGFLEXLM\lmutil.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\align-layers.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\DW\DW20.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Installer\defmgr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\AdPM.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\contrast-stretch.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\ehtray.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Style Management Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\GTAIV.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\WriteMiniDump.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office10\MAKECERT.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterInventorStudio.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Ink\FlickLearningWizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\apply-canvas.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterMarkupManager.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\EFLC\Activation\SteamActivation.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\bin\gimptool-2.0.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\FLTLDR.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\sys\ge_zipdcl32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\edge-sobel.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\Inventor Server\Bin\Bin32\Server32bitHost.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\FEAFilesHandler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\SetPoint.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\LWA\AAM Registration Notifier.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Internet Explorer <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\despeckle.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\BackOnTrack\File Backup\RRLauncher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Bluetooth\LDPInst.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\libexec\dbus-bash-completion-helper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Autodesk Design Review 2012\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD Cinema\TaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\BatchPublishWizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\DTCPexe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\SketchBookDesigner2012\Setup\Setup\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Juniper Networks\Common Files\dsNcInst64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Office\Office14\XLICONS.EXE <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\Activation\SteamActivation.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Vault 2011\Autoloader\Explorer\Autoloader.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\styshwiz.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Live\Mesh\wlcrasvc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\lens-flare.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Mozilla Firefox\crashreporter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Drawing Resource Transfer Wizard.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ug_clearance.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\Activation\SteamActivation.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\DWG TrueView 2012\HPSETUP.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-xpm.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\PX Storage Engine\pxinsa64.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\bin\gimp-console-2.8.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\orbd.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\memprobe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\LU\LuLnchr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\pagecurl.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Degtools\battrans.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\java-rmi.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AcrobatUpdater.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\DEP\envchange.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-tiff-load.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpshare.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Microsoft Shared\MSInfo\msinfo32.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.ControlPanel.{C0B604DD-F105-41E3-B86E-D6F21048AC81}\nvxdsync.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre6\bin\servertool.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\InstallShield Installation Information\{40FEF622-6E0F-46B6-824B-A40C178FD4CD}\setup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Compatibility\Bin\Mechanical\MDTLink.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\NVSMI\nvidia-smi.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\oilify.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAMLauncher.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\dataminer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterDragAndDrop.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Mail\wabmig.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\whirl-pinch.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Adobe\Acrobat 10.0\PDFMaker\Office\HTML2PDFWrapFor64Bit.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Autodesk\Autodesk Design Review 2012\Setup\Setup\senddmp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Roxio\BackOnTrack\File Backup\faVssProc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterDragAndDrop.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Microsoft Silverlight\5.1.30214.0\agcp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\SignLibrary.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\convolution-matrix.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\file-cel.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Windows Media Player\wmpenc.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\tnameserv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2011\Bin\Inventor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\displace.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\RegisterAecExchange.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Compatibility Administrator (32-bit)\Demo Application\StockViewer\OLAF.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\waves.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Oce\Repro Desk\ORD_ProcessAcrobat.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Unifying\UnifyingUnInstaller.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\Java\Java Update\jaureg.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Java\jre6\bin\orbd.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\InventorView.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Ipswitch\WS_FTP 12\WsftpCOMHelper.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\filter-pack.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Logitech\SetPoint\lcamera.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Agent Framework Install\Agents\UIA\uiaservice.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2011\Acadm\gen\genmsked.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\value-propagate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2012\Bin\AdFlashVideoPlayer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Standard User Analyzer\fixapp.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Internet Explorer Compatibility Test Tool\Agent Framework\Agents\Compressor\compressor.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\__Installer\Cleanup.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\mcspad.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Free Video Converter\FreeVideoConverter.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\NVIDIA Corporation\Installer2\Display.NView.{527540AB-F16D-4799-B324-94FBDED9EDC5}\nvTaskBar.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\ProgramData\Heidelberg\plm\ugnx664\UGII\ugs_router.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Windows Live\Photo Gallery\WindowsLivePhotoViewer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\GIMP 2\lib\gimp\2.0\plug-ins\crop-zealous.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Origin\legacyPM\OriginUninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Free Video Converter\Uninstall.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\bin\Bin32\InventorView.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Microsoft Application Compatibility Toolkit\Standard User Analyzer\SUAnalyzer.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\ACADM 2010\Acadm\IC Support\Bin\RegisterTaskScheduler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Common Files\Logishrd\Unifying\RunNE.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Java\jre7\bin\java-rmi.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\DWG TrueView 2010\pc3exe.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Intel\NCS2\WMIProv\ncs2prov.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Windows\ehome\ehshell.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files (x86)\Google\Update\GoogleUpdate.exe <====== ACHTUNG HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 Group Policy restriction on software: C:\Program Files\Autodesk\Inventor 2010\Setup\AcDelTree.exe <====== ACHTUNG Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50605696 2016-02-02] (Skype Technologies S.A.) HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3014224 2016-02-04] (Valve Corporation) HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\Run: [apphide] => C:\Program Files (x86)\baidu\pps.exe HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\RunOnce: [Report] => \AdwCleaner[C1].txt HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50605696 2016-02-02] (Skype Technologies S.A.) HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\Run: [Discord] => C:\Users\Lukas\AppData\Local\Discord\app-0.0.286\Discord.exe [53420216 2016-03-04] (Hammer & Chisel, Inc.) HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\MountPoints2: {576796b7-e342-11e3-94f0-782bcb99e3ce} - I:\LG_PC_Programs.exe HKU\S-1-5-21-3487997803-1532060654-1365074507-1005\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-3487997803-1532060654-1365074507-1005\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\...\Run: [FanaLEDs] => C:\Program Files (x86)\FanaLEDs\FanaLEDs.exe [826368 2014-02-05] () HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-18\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHVE.EXE [241280 2014-01-20] (SEIKO EPSON CORPORATION) ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Keine Datei ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2011-07-25] (Autodesk, Inc.) ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () Startup: C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2016-02-18] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation) GroupPolicy: Beschränkung - Chrome <======= ACHTUNG GroupPolicyUsers\S-1-5-21-3487997803-1532060654-1365074507-1006\User: Beschränkung - Chrome <======= ACHTUNG GroupPolicyUsers\S-1-5-21-3487997803-1532060654-1365074507-1005\User: Beschränkung <======= ACHTUNG GroupPolicyUsers\S-1-5-21-3487997803-1532060654-1365074507-1003\User: Beschränkung <======= ACHTUNG CHR HKLM\SOFTWARE\Policies\Google: Beschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Hosts Datei wurde nicht im Standardordner gefunden Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{B5E208C6-BB9C-4F8E-8724-0786695ADEB6}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-3487997803-1532060654-1365074507-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSSE HKU\S-1-5-21-3487997803-1532060654-1365074507-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/USREL/8 HKU\S-1-5-21-3487997803-1532060654-1365074507-1001\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=MSE&Tid=000328B0&OHP=http%3A%2F%2Fde.msn.com%2F%3Fpc%3DMDDR%26ocid%3Dbb7hp&OSP= HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=U270&ocid=U270DHP&osmkt=de-de HKU\S-1-5-21-3487997803-1532060654-1365074507-1005\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE SearchScopes: HKLM-x32 -> {49606DC7-976D-4030-A74E-9FB5C842FA68} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLRDF8&pc=MDDR&src=IE-SearchBox SearchScopes: HKLM-x32 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE SearchScopes: HKLM-x32 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1001 -> DefaultScope {49606DC7-976D-4030-A74E-9FB5C842FA68} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1002 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1002 -> {DE7D25BE-64C2-4E51-B376-4C4DB2EAFF77} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {151F5FAD-352E-4BED-AF04-DABC47B2632C} URL = hxxp://go.1und1.de/tb/ie_searchplugin/?q={searchTerms}&enc=UTF-8 SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {48356623-4CDD-4A32-9251-CD12380A0FDE} URL = hxxp://go.mail.com/tb/en-us/ie_searchplugin/?q={searchTerms}&enc=UTF-8 SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {802B7583-F36D-4AFC-A7C1-24395748F1BC} URL = hxxp://go.web.de/tb/ie_searchplugin/?q={searchTerms}&enc=UTF-8 SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {9C2FAA18-42D8-4412-BC5F-CCCBDAE73C42} URL = hxxp://go.gmx.de/tb/ie_searchplugin/?q={searchTerms}&enc=UTF-8 SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1005 -> DefaultScope {49606DC7-976D-4030-A74E-9FB5C842FA68} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1005 -> {49606DC7-976D-4030-A74E-9FB5C842FA68} URL = SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1006 -> DefaultScope {49606DC7-976D-4030-A74E-9FB5C842FA68} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-02-05] (Microsoft Corporation) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2016-02-04] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-02-04] (Microsoft Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\URLREDIR.DLL [2016-02-04] (Microsoft Corporation) Toolbar: HKU\S-1-5-21-3487997803-1532060654-1365074507-1001 -> Kein Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Keine Datei DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\vm27u39a.default FF DefaultSearchEngine: Bing FF SelectedSearchEngine: Bing FF SearchEngineOrder.3: Bing FF Keyword.URL: hxxp://www.bing.com/search?FORM=U270DF&PC=U270&q= FF Homepage: hxxp://www.msn.com/?pc=U270&ocid=U270DHP&osmkt=de-de hxxps://www.malwarebytes.org/restorebrowser//?u=4ef09132d37415b6ea9b7cb45a0bfa6f&c=up1&src=hp&inst=1440087070 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-09] () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.) FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [Keine Datei] FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2014-12-03] (EA Digital Illusions CE AB) FF Plugin: @iqiyi.com/npclient -> C:\IQIYI Video\LStyle\npclient.dll [Keine Datei] FF Plugin: @iqiyi.com/npWebPlayer -> C:\IQIYI Video\LStyle\npWebPlayer.dll [Keine Datei] FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll [2011-07-15] (Sun Microsystems, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-09] () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2015-12-02] (DivX, LLC) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [Keine Datei] FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2014-12-03] (EA Digital Illusions CE AB) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-04-14] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-04-14] (Oracle Corporation) FF Plugin-x32: @kaspersky.com/content_blocker_663BE84DBCC949E88C7600F63CA7F098 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com [2015-08-22] () FF Plugin-x32: @kaspersky.com/online_banking_08806E753BE44495B44E90AA2513BDC5 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com [2015-08-22] () FF Plugin-x32: @kaspersky.com/virtual_keyboard_07402848C2F6470194F131B0F3DE025E -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015-08-22] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-02-04] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2014-07-02] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2014-07-02] (NVIDIA Corporation) FF Plugin-x32: @rising.com.cn/nprising -> C:\Program Files (x86)\Rising\RAV\nprising.dll [Keine Datei] FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2012-04-04] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-3487997803-1532060654-1365074507-1001: @autodesk.com/DWF -> c:\Program Files (x86)\Autodesk\Autodesk Design Review Browser Add-on v1.2\npADRdwf.dll [2011-01-24] (Autodesk) FF Plugin HKU\S-1-5-21-3487997803-1532060654-1365074507-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Michael\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-12-05] (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-3487997803-1532060654-1365074507-1003: @rising.com.cn/nprising -> C:\Program Files (x86)\Rising\RAV\nprising.dll [Keine Datei] FF SearchPlugin: C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\vm27u39a.default\searchplugins\bing-.xml [2015-12-31] FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com [2015-08-22] [ist nicht signiert] FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015-08-22] [ist nicht signiert] FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com [2015-08-22] [ist nicht signiert] FF Extension: Bing Search - C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\vm27u39a.default\Extensions\bingsearch.full@microsoft.com.xpi [2015-12-31] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2012-04-17] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [content_blocker_663BE84DBCC949E88C7600F63CA7F098@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_07402848C2F6470194F131B0F3DE025E@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking_08806E753BE44495B44E90AA2513BDC5@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [{CE7C2E8C-B4BF-4138-9918-A7ECE746A250}] - C:\Windows\Installer\{AB7BD80C-F1E6-486D-8E00-EB8C544A2941}\{CE7C2E8C-B4BF-4138-9918-A7ECE746A250}.xpi FF Extension: Download Protect - C:\Windows\Installer\{AB7BD80C-F1E6-486D-8E00-EB8C544A2941}\{CE7C2E8C-B4BF-4138-9918-A7ECE746A250}.xpi [2016-03-05] FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\my-prefs.js [2015-03-25] <==== ACHTUNG (Zeigt auf eine *.cfg Datei) Chrome: ======= CHR Profile: C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Web Store) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-03-07] CHR Extension: (Web Store) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbhjdbfgekjfcfkkfjjmlmojhbllhbho [2016-03-07] CHR Extension: (Web Store) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-03-07] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-03-07] CHR Extension: (Web Store) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocodlhejmhjbanidjgpobiocmpiknfoa [2016-03-07] CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08] Opera: ======= OPR StartupUrls: "hxxp://www.mystartsearch.com/?type=hp&ts=1430753799&from=wpc&uid=WDCXWD10EALX-759BA1_WD-WCATR987109471094" ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AVP15.0.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe [194000 2015-07-09] (Kaspersky Lab ZAO) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1300512 2016-01-16] () S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2014-12-21] (BitRaider, LLC) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2804976 2016-02-04] (Microsoft Corporation) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1368408 2015-11-30] (Disc Soft Ltd) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [245544 2015-10-03] (EasyAntiCheat Ltd) S4 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2015-05-06] (Freemake) [Datei ist nicht signiert] R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-27] (NVIDIA Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-27] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-27] (NVIDIA Corporation) R2 NVWMI; C:\Windows\system32\nvwmi64.exe [2498848 2013-12-19] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2015-12-25] (Electronic Arts) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-09-12] () R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2015-09-12] () R2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1026944 2015-08-17] (Enigma Software Group USA, LLC.) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AX88178; C:\Windows\System32\DRIVERS\ax88178.sys [59392 2010-11-24] (ASIX Electronics Corp.) R0 cm_km_w; C:\Windows\System32\DRIVERS\cm_km_w.sys [247016 2015-07-09] (Kaspersky Lab UK Ltd) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-12-06] (Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [46392 2015-12-06] (Disc Soft Ltd) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2015-08-17] () R3 IntcAzAudAddService; C:\Windows\System32\drivers\RTDVHD64.sys [1980648 2010-10-04] (Realtek Semiconductor Corp.) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-07-09] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [64368 2015-07-09] (Kaspersky Lab ZAO) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [159960 2015-07-09] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [225976 2015-07-09] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [831672 2015-10-06] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [39280 2015-07-09] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [40304 2015-07-09] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [39280 2015-07-09] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [24944 2015-07-09] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [65208 2015-07-09] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [85360 2015-07-09] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [190648 2015-10-06] (Kaspersky Lab ZAO) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-27] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) R1 rsutils; C:\Windows\System32\DRIVERS\rsutils.sys [69336 2014-08-15] (Beijing Rising Information Technology Co., Ltd.) S3 Spyder5; C:\Windows\System32\DRIVERS\dccmtr.sys [15360 2014-12-19] (Datacolor) R0 sysmon; C:\Windows\System32\DRIVERS\sysmon.sys [119344 2014-09-10] (Beijing Rising Information Technology Co., Ltd.) S3 USBMULCD; C:\Windows\System32\drivers\CM10664.sys [1307648 2011-03-31] (C-Media Electronics Inc) R0 vidsflt61; C:\Windows\System32\DRIVERS\vsflt61.sys [142944 2012-03-28] (Acronis) U3 DfSdkS; kein ImagePath U4 klkbdflt2; system32\DRIVERS\klkbdflt2.sys [X] S3 SBFWIMCLMP; system32\DRIVERS\SBFWIM.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-08 15:04 - 2016-03-08 15:06 - 00253797 _____ C:\Users\Lukas\Downloads\FRST.txt 2016-03-08 15:04 - 2016-03-08 15:04 - 03248332 _____ C:\Users\Lukas\Downloads\Nicht bestätigt 45691.crdownload 2016-03-08 15:02 - 2016-03-08 15:04 - 02374144 _____ (Farbar) C:\Users\Lukas\Downloads\FRST64.exe 2016-03-07 19:21 - 2016-03-07 19:21 - 404231634 _____ C:\Users\Lukas\Downloads\Sony Vegas Pro 13 Setup + Crack (64-Bit).rar 2016-03-07 18:35 - 2016-03-07 18:36 - 00000038 _____ C:\Users\Lukas\Desktop\discord.txt 2016-03-07 18:33 - 2016-03-07 18:33 - 00000330 _____ C:\Users\Lukas\Desktop\Bunnyhop.txt 2016-03-07 18:23 - 2016-03-07 18:24 - 00006918 _____ C:\Users\Lukas\Downloads\Bunnyhop CSGO.zip 2016-03-07 17:59 - 2016-03-07 18:15 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\discord 2016-03-07 17:59 - 2016-03-07 17:59 - 00002168 _____ C:\Users\Lukas\Desktop\Discord.lnk 2016-03-07 17:59 - 2016-03-07 17:59 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc 2016-03-07 17:58 - 2016-03-07 17:59 - 00000000 ____D C:\Users\Lukas\AppData\Local\SquirrelTemp 2016-03-07 17:58 - 2016-03-07 17:59 - 00000000 ____D C:\Users\Lukas\AppData\Local\Discord 2016-03-07 17:47 - 2016-03-07 17:50 - 47718584 _____ (Hammer & Chisel, Inc.) C:\Users\Lukas\Downloads\DiscordSetup.exe 2016-03-07 15:36 - 2016-03-07 15:36 - 00001094 _____ C:\AdwCleaner[C3].txt 2016-03-07 15:31 - 2016-03-07 15:33 - 00000940 _____ C:\AdwCleaner[S3].txt 2016-03-07 14:51 - 2016-03-07 14:55 - 00000000 ____D C:\Users\Lukas\Desktop\RevoUninstallerPortable 2016-03-07 14:50 - 2016-03-07 14:45 - 02785665 ____N (PortableApps.com) C:\Users\Lukas\Desktop\RevoUninstallerPortable_1.95_Rev_2.paf.exe 2016-03-07 14:44 - 2016-03-07 14:44 - 00004771 _____ C:\AdwCleaner[C2].txt 2016-03-07 14:41 - 2016-03-07 14:42 - 00004263 _____ C:\AdwCleaner[S2].txt 2016-03-07 14:27 - 2016-03-08 15:04 - 00000000 ____D C:\FRST 2016-03-07 13:17 - 2016-03-07 13:17 - 00000000 ____D C:\Users\Lukas\AppData\Local\Unigraphics Solutions 2016-03-07 12:51 - 2016-03-07 12:51 - 00000000 __SHD C:\found.000 2016-03-05 14:35 - 2016-03-05 14:30 - 00985600 ____N C:\Users\Lukas\Desktop\MicrosoftFixit50123.msi 2016-03-02 17:25 - 2016-03-02 17:33 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\install 2016-03-02 17:24 - 2016-03-02 18:07 - 00000000 __SHD C:\Users\Lukas\Gu73246B57189 2016-03-02 17:24 - 2016-03-02 18:06 - 00000000 ____D C:\Users\Lukas\Ds78224R88177 2016-02-27 12:35 - 2016-02-27 12:35 - 00010250 _____ C:\Users\Lukas\AppData\Local\4BEEC7F234E54494BC31B63B5104251B.Dokument 2.fnf 2016-02-27 12:01 - 2016-02-27 12:01 - 00045901 _____ C:\Users\Lukas\Downloads\let-it-go-trumpet-clarinet-and-baritone-horn.pdf 2016-02-27 11:28 - 2016-02-27 11:28 - 00000000 ____D C:\Users\Lukas\Documents\Forte 2016-02-27 11:28 - 2016-02-27 11:28 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\FORTE 2016-02-27 11:26 - 2016-02-27 11:28 - 54695448 _____ (Lugert Verlag ) C:\Users\Lukas\Downloads\Setup_FORTE6PremiumT_de.exe 2016-02-27 11:25 - 2016-02-27 11:39 - 44101459 _____ (MakeMusic) C:\Users\Lukas\Downloads\nw_22918_finalenotepadexe.exe 2016-02-27 11:18 - 2016-02-27 11:24 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\MuseScore 2016-02-27 11:18 - 2016-02-27 11:18 - 00000000 ____D C:\Users\Lukas\Documents\MuseScore2 2016-02-27 11:18 - 2016-02-27 11:18 - 00000000 ____D C:\Users\Lukas\AppData\Local\MuseScore 2016-02-27 11:14 - 2016-02-27 11:17 - 55488512 _____ C:\Users\Lukas\Downloads\MuseScore-2.0.2.msi 2016-02-27 11:05 - 2016-03-07 15:19 - 00000000 ____D C:\Users\Lukas\Documents\PriMusFree 2016-02-27 11:05 - 2016-02-27 11:05 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Columbus Soft 2016-02-27 11:04 - 2016-02-27 11:04 - 03341128 _____ (Columbus Soft ) C:\Users\Lukas\Downloads\SetupPriMusFree.exe 2016-02-23 21:38 - 2016-02-23 20:59 - 449940993 ____N C:\Users\Lukas\Desktop\mi3.mp4 2016-02-21 12:54 - 2016-02-21 12:54 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2529834191_spectate.bat 2016-02-20 16:30 - 2016-02-20 16:30 - 02259195 _____ C:\Users\Lukas\Downloads\SkinPreview_2.4.0.0_US_BETA_updated-29-1-2016 (1).zip 2016-02-14 20:39 - 2016-02-14 20:39 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2521145290_spectate.bat 2016-02-14 17:54 - 2016-02-14 17:54 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2520925620_spectate (1).bat 2016-02-14 17:53 - 2016-02-14 17:53 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2520925620_spectate.bat 2016-02-14 14:02 - 2016-02-14 14:02 - 00000000 ____D C:\Users\Lukas\Documents\BnS 2016-02-14 14:02 - 2016-02-14 14:02 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Awesomium 2016-02-14 11:31 - 2016-02-14 11:31 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2520117594_spectate.bat 2016-02-10 18:18 - 2016-02-06 11:48 - 25839104 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-02-10 18:18 - 2016-02-06 11:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-02-10 18:18 - 2016-02-06 11:24 - 02887680 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-02-10 18:18 - 2016-02-06 11:11 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-02-10 18:18 - 2016-02-06 11:10 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-02-10 18:18 - 2016-02-06 11:01 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-02-10 18:18 - 2016-02-06 10:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-02-10 18:18 - 2016-02-06 10:43 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-02-10 18:18 - 2016-02-06 10:38 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-02-10 18:18 - 2016-02-06 10:37 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-02-10 18:18 - 2016-02-06 10:32 - 14458368 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-02-10 18:18 - 2016-02-06 10:16 - 12857856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-02-10 18:18 - 2016-02-06 10:09 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-02-10 18:18 - 2016-02-06 09:54 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-02-10 18:18 - 2016-01-16 20:06 - 00025024 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-02-10 18:18 - 2016-01-16 19:54 - 01162240 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 01362944 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00677376 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-02-10 18:18 - 2016-01-06 20:02 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2016-02-10 18:18 - 2016-01-06 20:02 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll 2016-02-10 18:18 - 2016-01-06 19:41 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2016-02-10 18:17 - 2016-01-22 21:31 - 00387784 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-02-10 18:17 - 2016-01-22 21:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-02-10 18:17 - 2016-01-22 07:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-02-10 18:17 - 2016-01-22 07:41 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-02-10 18:17 - 2016-01-22 07:40 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-02-10 18:17 - 2016-01-22 07:40 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-02-10 18:17 - 2016-01-22 07:40 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-02-10 18:17 - 2016-01-22 07:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-02-10 18:17 - 2016-01-22 07:33 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-02-10 18:17 - 2016-01-22 07:32 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-02-10 18:17 - 2016-01-22 07:29 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-02-10 18:17 - 2016-01-22 07:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-02-10 18:17 - 2016-01-22 07:27 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-02-10 18:17 - 2016-01-22 07:27 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-02-10 18:17 - 2016-01-22 07:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-02-10 18:17 - 2016-01-22 07:17 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-02-10 18:17 - 2016-01-22 07:09 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-02-10 18:17 - 2016-01-22 07:08 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-02-10 18:17 - 2016-01-22 07:05 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-02-10 18:17 - 2016-01-22 07:04 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-02-10 18:17 - 2016-01-22 07:02 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-02-10 18:17 - 2016-01-22 07:02 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-02-10 18:17 - 2016-01-22 07:02 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-02-10 18:17 - 2016-01-22 07:01 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-02-10 18:17 - 2016-01-22 07:01 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-02-10 18:17 - 2016-01-22 07:00 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-02-10 18:17 - 2016-01-22 07:00 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-02-10 18:17 - 2016-01-22 06:55 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-02-10 18:17 - 2016-01-22 06:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-02-10 18:17 - 2016-01-22 06:51 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-02-10 18:17 - 2016-01-22 06:51 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-02-10 18:17 - 2016-01-22 06:50 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-02-10 18:17 - 2016-01-22 06:48 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-02-10 18:17 - 2016-01-22 06:47 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-02-10 18:17 - 2016-01-22 06:46 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-02-10 18:17 - 2016-01-22 06:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-02-10 18:17 - 2016-01-22 06:43 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-02-10 18:17 - 2016-01-22 06:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-02-10 18:17 - 2016-01-22 06:38 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-02-10 18:17 - 2016-01-22 06:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-02-10 18:17 - 2016-01-22 06:35 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-02-10 18:17 - 2016-01-22 06:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-02-10 18:17 - 2016-01-22 06:34 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-02-10 18:17 - 2016-01-22 06:33 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-02-10 18:17 - 2016-01-22 06:31 - 02597376 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-02-10 18:17 - 2016-01-22 06:27 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-02-10 18:17 - 2016-01-22 06:25 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-02-10 18:17 - 2016-01-22 06:24 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-02-10 18:17 - 2016-01-22 06:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-02-10 18:17 - 2016-01-22 06:08 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-02-10 18:17 - 2016-01-22 06:07 - 02120704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-02-10 18:17 - 2016-01-22 06:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-02-10 18:15 - 2016-01-22 07:27 - 05573056 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-02-10 18:15 - 2016-01-22 07:27 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-02-10 18:15 - 2016-01-22 07:27 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-02-10 18:15 - 2016-01-22 07:24 - 01733592 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 14179840 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 01214464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-02-10 18:15 - 2016-01-22 07:18 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2016-02-10 18:15 - 2016-01-22 07:18 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2016-02-10 18:15 - 2016-01-22 07:18 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-02-10 18:15 - 2016-01-22 07:17 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-02-10 18:15 - 2016-01-22 07:17 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-02-10 18:15 - 2016-01-22 07:17 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2016-02-10 18:15 - 2016-01-22 07:16 - 01461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-02-10 18:15 - 2016-01-22 07:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-02-10 18:15 - 2016-01-22 07:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-02-10 18:15 - 2016-01-22 07:13 - 03993536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-02-10 18:15 - 2016-01-22 07:13 - 03938752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-02-10 18:15 - 2016-01-22 07:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-02-10 18:15 - 2016-01-22 07:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-02-10 18:15 - 2016-01-22 07:13 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 01940992 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00880128 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:09 - 01314328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-02-10 18:15 - 2016-01-22 07:05 - 12877824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2016-02-10 18:15 - 2016-01-22 07:05 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-02-10 18:15 - 2016-01-22 07:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-02-10 18:15 - 2016-01-22 07:04 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2016-02-10 18:15 - 2016-01-22 07:04 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-02-10 18:15 - 2016-01-22 07:00 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) |
08.03.2016, 15:24 | #7 |
| Teil 4 FRSTCode:
ATTFilter C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:19 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2016-02-10 18:15 - 2016-01-22 06:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-02-10 18:15 - 2016-01-22 06:12 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2016-02-10 18:15 - 2016-01-22 06:07 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-02-10 18:15 - 2016-01-22 06:07 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-02-10 18:15 - 2016-01-22 06:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-02-10 18:15 - 2016-01-22 05:59 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-02-10 18:15 - 2016-01-22 05:58 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-02-10 18:15 - 2016-01-22 05:58 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-02-10 18:15 - 2016-01-22 05:57 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-02-10 18:15 - 2016-01-22 05:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-02-10 18:15 - 2016-01-22 05:53 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-02-10 18:15 - 2016-01-22 05:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-02-10 18:15 - 2016-01-22 05:53 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-02-10 18:15 - 2016-01-22 05:53 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-02-10 18:15 - 2016-01-22 05:51 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-02-10 18:15 - 2016-01-22 05:51 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 05:51 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 05:51 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 05:51 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-02-10 18:15 - 2016-01-16 20:01 - 02085888 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2016-02-10 18:15 - 2016-01-16 19:36 - 01413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2016-02-10 18:15 - 2016-01-11 20:05 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2016-02-10 18:15 - 2016-01-11 20:05 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2016-02-10 18:15 - 2016-01-11 20:05 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2016-02-10 18:15 - 2016-01-11 19:52 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2016-02-10 18:15 - 2016-01-11 19:47 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2016-02-10 18:15 - 2016-01-11 19:26 - 02610176 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2016-02-10 18:15 - 2016-01-11 19:24 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2016-02-10 18:15 - 2016-01-11 19:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2016-02-10 18:15 - 2016-01-11 19:23 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2016-02-10 18:15 - 2016-01-11 19:23 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2016-02-10 18:15 - 2016-01-11 19:23 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2016-02-10 18:15 - 2016-01-11 19:23 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2016-02-10 18:15 - 2016-01-11 19:14 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2016-02-10 18:15 - 2016-01-11 19:14 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2016-02-10 18:15 - 2016-01-11 19:14 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2016-02-10 18:15 - 2016-01-11 19:14 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2016-02-10 18:15 - 2016-01-07 18:53 - 03211776 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-02-10 18:15 - 2016-01-07 18:42 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2016-02-09 20:26 - 2016-02-09 20:26 - 08817344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2016-02-07 21:29 - 2016-02-07 21:32 - 154720894 _____ C:\Users\Lukas\Downloads\playstation_crush (2).rar 2016-02-07 21:28 - 2016-02-07 21:28 - 02113584 _____ C:\Users\Lukas\Downloads\winrar-x64-531d.exe 2016-02-07 21:28 - 2016-02-07 21:28 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-02-07 21:28 - 2016-02-07 21:28 - 00000000 ____D C:\Program Files\WinRAR 2016-02-07 21:25 - 2016-02-07 21:26 - 112869371 _____ C:\Users\Lukas\Downloads\rebuilt.playstation_crush.rar 2016-02-07 21:12 - 2016-02-08 17:29 - 00000000 ____D C:\Program Files (x86)\WinRAR 2016-02-07 21:11 - 2016-02-07 21:22 - 12153168 _____ C:\Users\Lukas\Downloads\playstation_crush (1).rar 2016-02-07 21:11 - 2016-02-07 21:11 - 01912968 _____ C:\Users\Lukas\Downloads\wrar531d.exe 2016-02-07 18:37 - 2016-02-07 18:43 - 112869376 _____ C:\Users\Lukas\Downloads\playstation_crush.rar ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-08 15:00 - 2015-08-17 17:26 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-03-08 14:58 - 2009-07-14 05:45 - 00031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-03-08 14:58 - 2009-07-14 05:45 - 00031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-03-08 14:56 - 2014-01-12 16:26 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Skype 2016-03-08 14:53 - 2015-08-17 17:26 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-03-08 14:53 - 2015-08-17 17:18 - 00001024 _____ C:\Windows\Tasks\8zhgEoSLYekGXIKGCkpWa7.job 2016-03-08 14:53 - 2015-08-17 17:18 - 00001004 _____ C:\Windows\Tasks\Y5LVlAlBAszS.job 2016-03-08 14:53 - 2015-08-17 17:16 - 00000346 ____H C:\Windows\Tasks\GHWXLMNPJTQQHDDN.job 2016-03-08 14:53 - 2015-04-16 15:57 - 00000000 ____D C:\Program Files (x86)\Steam 2016-03-08 14:49 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-03-07 21:00 - 2014-09-28 11:06 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\TS3Client 2016-03-07 20:26 - 2012-04-11 06:26 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-03-07 19:56 - 2015-04-28 16:09 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Sony 2016-03-07 18:46 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-03-07 16:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2016-03-07 15:50 - 2014-05-18 09:29 - 00000000 ____D C:\Users\Maximilian 2016-03-07 15:50 - 2014-04-23 07:57 - 00000000 ____D C:\Users\Hannah 2016-03-07 15:49 - 2014-01-02 13:11 - 00000000 ____D C:\Users\Michael 2016-03-07 15:49 - 2011-07-22 15:23 - 00000000 ____D C:\Users\PFrey 2016-03-07 15:01 - 2015-04-17 19:53 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-03-05 14:48 - 2010-11-21 07:50 - 00768670 _____ C:\Windows\system32\perfh007.dat 2016-03-05 14:48 - 2010-11-21 07:50 - 00172904 _____ C:\Windows\system32\perfc007.dat 2016-03-05 14:48 - 2009-07-14 06:13 - 00006526 _____ C:\Windows\system32\PerfStringBackup.INI 2016-03-05 11:12 - 2014-01-12 14:50 - 00000000 ____D C:\Users\Lukas 2016-03-04 19:17 - 2015-04-15 19:14 - 00000080 _____ C:\Users\Lukas\AppData\Local剜捯獫慴慇敭屳呇⁁屖湥楴汴浥湥湩潦 2016-03-04 16:44 - 2015-06-14 14:31 - 00423424 ___SH C:\Users\Lukas\Downloads\Thumbs.db 2016-03-04 16:00 - 2015-07-03 07:12 - 00000426 _____ C:\Windows\Tasks\One-Click Optimizer WO11.job 2016-03-03 16:05 - 2015-12-30 14:03 - 02904064 _____ (GamingOnSteroids) C:\Users\Lukas\Desktop\Loader (2).exe 2016-03-02 17:26 - 2005-04-08 03:16 - 00000000 ___HD C:\Users\Lukas\AppData\Roaming\78345230 2016-03-02 17:25 - 2014-01-12 14:50 - 00000000 ____D C:\Users\Lukas\AppData\Local\VirtualStore 2016-02-29 16:44 - 2014-01-12 14:54 - 00000000 ____D C:\Users\Lukas\Documents\Outlook-Dateien 2016-02-28 13:15 - 2011-02-11 18:45 - 01625094 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2016-02-28 09:37 - 2014-06-29 08:37 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2016-02-28 09:02 - 2014-01-12 14:50 - 00182344 _____ C:\Users\Lukas\AppData\Local\GDIPFONTCACHEV1.DAT 2016-02-28 08:45 - 2009-07-14 05:45 - 05225896 _____ C:\Windows\system32\FNTCACHE.DAT 2016-02-26 22:33 - 2015-04-05 02:00 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2016-02-26 22:33 - 2015-04-05 02:00 - 00000000 ___SD C:\Windows\system32\GWX 2016-02-24 19:26 - 2014-11-30 13:54 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\OBS 2016-02-23 15:52 - 2011-07-15 23:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-02-21 08:43 - 2009-07-14 06:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2016-02-20 15:00 - 2015-08-17 19:40 - 00002177 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-02-17 19:54 - 2015-12-30 14:03 - 02628096 _____ (GamingOnSteroids) C:\Users\Lukas\Desktop\Loader (2).oldupd 2016-02-15 21:49 - 2014-07-09 16:55 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Audacity 2016-02-12 20:43 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2016-02-12 19:00 - 2014-12-12 15:15 - 00000000 ____D C:\Windows\system32\appraiser 2016-02-12 19:00 - 2014-05-08 22:45 - 00000000 ___SD C:\Windows\system32\CompatTel 2016-02-12 19:00 - 2010-11-21 08:01 - 00000000 ____D C:\Program Files\Windows Journal 2016-02-10 22:13 - 2014-01-10 22:15 - 00000000 ____D C:\Windows\system32\MRT 2016-02-10 22:12 - 2011-09-18 07:24 - 146614896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2016-02-10 22:08 - 2009-07-14 03:34 - 00000812 _____ C:\Windows\win.ini 2016-02-09 20:26 - 2012-04-11 06:26 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-02-09 20:26 - 2012-04-11 06:26 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-02-09 20:26 - 2011-09-05 06:28 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-10-18 17:21 - 2015-10-17 05:21 - 0000040 ____H () C:\Program Files (x86)\b4084b1d.tmp 2015-11-23 13:08 - 2015-11-23 13:08 - 0187696 _____ () C:\Users\Lukas\AppData\Roaming\1.zip 2015-11-23 13:08 - 2015-11-23 13:08 - 0659742 _____ () C:\Users\Lukas\AppData\Roaming\2.txt 2015-04-14 17:28 - 2015-11-22 15:57 - 0000935 _____ () C:\Users\Lukas\AppData\Roaming\2bMhNC78iao5q 2015-04-19 13:20 - 2015-11-22 15:57 - 0000554 _____ () C:\Users\Lukas\AppData\Roaming\8n7u7M0hpG3Vy9Cu 2015-07-05 11:18 - 2015-08-06 19:31 - 0000024 _____ () C:\Users\Lukas\AppData\Roaming\appdataFr25.bin 2015-12-01 07:31 - 2015-12-02 13:44 - 0000099 _____ () C:\Users\Lukas\AppData\Roaming\LauncherSettings_live.cfg 2015-12-02 13:06 - 2015-12-02 13:06 - 0000039 _____ () C:\Users\Lukas\AppData\Roaming\TheHunterSettings_steam_live.cfg 2016-02-27 12:35 - 2016-02-27 12:35 - 0010250 _____ () C:\Users\Lukas\AppData\Local\4BEEC7F234E54494BC31B63B5104251B.Dokument 2.fnf 2006-12-11 19:13 - 2006-12-11 19:13 - 0097336 _____ (Un4seen Developments) C:\Users\Lukas\AppData\Local\bass.dll 2006-12-11 19:13 - 2006-12-11 19:13 - 0013872 _____ (Un4seen Developments) C:\Users\Lukas\AppData\Local\basscd.dll 2007-08-13 17:46 - 2007-08-13 17:46 - 0102912 _____ (Albert L Faber) C:\Users\Lukas\AppData\Local\CDRip.dll 2014-05-25 16:00 - 2014-05-25 16:00 - 0000000 _____ () C:\Users\Lukas\AppData\Local\Input.xml 2007-08-13 17:46 - 2007-08-13 17:46 - 0155136 _____ () C:\Users\Lukas\AppData\Local\lame_enc.dll 2007-01-18 21:09 - 2007-01-18 21:09 - 0623616 _____ (Ivan Bischof ©2003 - 2005) C:\Users\Lukas\AppData\Local\No23 Recorder.exe 2005-08-23 22:34 - 2005-08-23 22:34 - 0029184 _____ () C:\Users\Lukas\AppData\Local\no23xwrapper.dll 2006-10-26 01:06 - 2006-10-26 01:06 - 0015872 _____ () C:\Users\Lukas\AppData\Local\ogg.dll 2015-11-13 18:40 - 2015-11-13 18:40 - 0001460 _____ () C:\Users\Lukas\AppData\Local\RecConfig.xml 2015-12-07 21:00 - 2015-12-07 21:00 - 0010072 _____ () C:\Users\Lukas\AppData\Local\recently-used.xbel 2015-10-04 12:31 - 2015-10-04 12:41 - 0007600 _____ () C:\Users\Lukas\AppData\Local\Resmon.ResmonCfg 2014-05-25 15:59 - 2014-05-25 15:59 - 0000000 _____ () C:\Users\Lukas\AppData\Local\Settings.xml 2006-10-26 01:06 - 2006-10-26 01:06 - 0143872 _____ () C:\Users\Lukas\AppData\Local\vorbis.dll 2006-10-26 01:06 - 2006-10-26 01:06 - 0064000 _____ () C:\Users\Lukas\AppData\Local\vorbisenc.dll 2006-10-26 01:06 - 2006-10-26 01:06 - 0019456 _____ () C:\Users\Lukas\AppData\Local\vorbisfile.dll Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Users\Lukas\SimpleExtern.exe Einige Dateien in TEMP: ==================== C:\Users\FAE\AppData\Local\Temp\AcDeltree.exe C:\Users\FAE\AppData\Local\Temp\FP_PL_PFS_INSTALLER_32bit-1.exe C:\Users\FAE\AppData\Local\Temp\FP_PL_PFS_INSTALLER_32bit.exe C:\Users\Lukas\AppData\Local\Temp\BingBarSetup-Partner.exe C:\Users\Lukas\AppData\Local\Temp\DivXSetup.exe C:\Users\Lukas\AppData\Local\Temp\RVsiBaJ.exe C:\Users\Lukas\AppData\Local\Temp\SkypeSetup.exe C:\Users\Maximilian\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\Maximilian\AppData\Local\Temp\Rar.exe C:\Users\Michael\AppData\Local\Temp\360Inst_sohuyy.exe C:\Users\Michael\AppData\Local\Temp\IQIYIsetup_l_huayukeji@kb006.exe C:\Users\Michael\AppData\Local\Temp\qqpcmgr_v10.7.16066.216_71779_Silence.exe C:\Users\Michael\AppData\Local\Temp\sqlite3.dll C:\Users\Michael\AppData\Local\Temp\Uninstall.exe C:\Users\PFrey\AppData\Local\Temp\AcDeltree.exe C:\Users\PFrey\AppData\Local\Temp\jre-6u26-windows-i586-iftw-rv.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-02-29 19:34 ==================== Ende von FRST.txt ============================ |
08.03.2016, 15:26 | #8 |
| TEIL 1 additionCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-03-2016 01 durchgeführt von Lukas (2016-03-08 15:09:02) Gestartet von C:\Users\Lukas\Downloads Windows 7 Professional Service Pack 1 (X64) (2011-07-22 13:49:29) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3487997803-1532060654-1365074507-500 - Administrator - Disabled) ASPNET (S-1-5-21-3487997803-1532060654-1365074507-1010 - Limited - Enabled) FAE (S-1-5-21-3487997803-1532060654-1365074507-1000 - Administrator - Disabled) => C:\Users\FAE Gast (S-1-5-21-3487997803-1532060654-1365074507-501 - Limited - Disabled) Hannah (S-1-5-21-3487997803-1532060654-1365074507-1005 - Limited - Enabled) => C:\Users\Hannah HomeGroupUser$ (S-1-5-21-3487997803-1532060654-1365074507-1008 - Limited - Enabled) Lukas (S-1-5-21-3487997803-1532060654-1365074507-1003 - Administrator - Enabled) => C:\Users\Lukas Maximilian (S-1-5-21-3487997803-1532060654-1365074507-1006 - Limited - Enabled) => C:\Users\Maximilian Michael (S-1-5-21-3487997803-1532060654-1365074507-1002 - Administrator - Enabled) => C:\Users\Michael PFrey (S-1-5-21-3487997803-1532060654-1365074507-1001 - Administrator - Disabled) => C:\Users\PFrey ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Rising Software Deployment System (Disabled - Up to date) {DBC966C2-BD90-87CD-5A01-4DFB1D2EC867} AV: Kaspersky Internet Security (Enabled - Up to date) {B41C7598-35F6-4D89-7D0E-7ADE69B4047B} AS: Kaspersky Internet Security (Enabled - Up to date) {0F7D947C-13CC-4207-47BE-41AC12334EC6} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Rising Software Deployment System (Disabled - Up to date) {60A88726-9BAA-8843-60B1-768966A982DA} FW: Kaspersky Internet Security (Enabled) {8C27F4BD-7F99-4CD1-5651-D3EB97674300} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) µTorrent (HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\uTorrent) (Version: 3.4.5.41372 - BitTorrent Inc.) 3Dconnexion 3DxSoftware (x64 Edition) (HKLM-x32\...\{BAFCA6AC-8B37-405B-B57E-C1D45DE70ACC}) (Version: 3.13.1 - 3Dconnexion) 3Dconnexion 3DxWare (x64) (Version: 6.13.0001 - 3Dconnexion) Hidden 3Dconnexion Add-In for AutoCAD 2007 - 2010 (Version: 4.5.1 - 3Dconnexion) Hidden 3Dconnexion Add-In for Inventor 11 - 2012 (Version: 1.8.0 - 3Dconnexion) Hidden 3Dconnexion Collage (x32 Version: 1.3.0 - 3Dconnexion) Hidden 3Dconnexion Plug-in for Acrobat 3D (x32 Version: 1.1.0 - 3Dconnexion) Hidden 3Dconnexion Plug-In for NX v3.0 - v8.0 (Version: 2.9.0 - 3Dconnexion) Hidden 3Dconnexion Plug-In for Photoshop CS3 - CS5 (Version: 2.2.1 - 3Dconnexion) Hidden 3Dconnexion Trainer (x32 Version: 3.2.0 - 3Dconnexion) Hidden 7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - ) A3Launcher version 0.0.1.9 (HKLM-x32\...\{E31045B4-9DB5-9EBD-44DF-BD4CFDE640DF}_is1) (Version: 0.0.1.9 - Maca134) Adobe Acrobat X Standard - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-BA7E-000000000005}) (Version: 10.1.3 - Adobe Systems) Adobe After Effects CS6 (HKLM-x32\...\{4817D846-700B-474E-A31B-80892B3E92E3}) (Version: 11 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe Flash Player 20 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 20.0.0.306 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Premiere Pro CS6 (HKLM-x32\...\{7176B973-6011-43C1-AEBC-2D73FE7C6982}) (Version: 6.0 - Adobe Systems Incorporated) Advanced-System Protector (HKLM-x32\...\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~9338DF9D_is1) (Version: 2.2.1000.15792 - Advanced System Protector) <==== ACHTUNG AdVenture Capitalist (HKLM-x32\...\Steam App 346900) (Version: - Hyper Hippo Games) Aerosoft's - Aerosoft Launcher (HKLM-x32\...\{EE11CFFC-898C-4875-8A63-8B732A9AD43B}) (Version: 1.2.0.3 - Aerosoft) aerosoft's - OMSI 2 - Drei Generationen (HKLM-x32\...\{C88376AA-BF64-40F4-9AD6-F8A18DA394F2}) (Version: 1.20 - aerosoft) aerosoft's - OMSI 2 - Hamburg (HKLM-x32\...\{5BF6B590-F7F5-46B5-B5F4-B0CA93423AD6}) (Version: 2.00 - aerosoft) aerosoft's - OMSI 2 - Stadtbus O305 (HKLM-x32\...\{AE36259F-2F4F-44FA-87B7-3D1792ADDCA2}) (Version: 1.10 - aerosoft) Age of Conan: Unchained (HKLM-x32\...\Age of Conan_is1) (Version: - Funcom) Akamai NetSession Interface (HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\Akamai) (Version: - Akamai Technologies, Inc) APB Reloaded (HKLM-x32\...\Steam App 113400) (Version: - Reloaded Productions) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive) Ashampoo WinOptimizer 2015 v.11.00.50 (HKLM-x32\...\{4209F371-3276-A8F7-B851-845A83732AB4}_is1) (Version: 11.00.50 - Ashampoo GmbH & Co. KG) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) AutoCAD Mechanical 2010 (HKLM\...\AutoCAD Mechanical 2010) (Version: 14.0.48.300 - Autodesk) AutoCAD Mechanical 2010 (Version: 14.0.48.300 - Autodesk) Hidden AutoCAD Mechanical 2010 Language Pack - Deutsch (Version: 14.0.48.300 - Autodesk) Hidden AutoCAD Mechanical 2011 (HKLM\...\AutoCAD Mechanical 2011) (Version: 15.0.46.0 - Autodesk) AutoCAD Mechanical 2011 (Version: 15.0.46.0 - Autodesk) Hidden AutoCAD Mechanical 2011 Language Pack - Deutsch (Version: 15.0.46.0 - Autodesk) Hidden Autodesk Design Review 2012 (HKLM-x32\...\Autodesk Design Review 2012) (Version: 12.0.0.93 - Autodesk, Inc.) Autodesk Design Review 2012 (x32 Version: 12.0.0.93 - Autodesk, Inc.) Hidden Autodesk Design Review Browser Add-on v1.2 (HKLM-x32\...\{CD49E43B-88B1-48AD-A3AF-43FAAAB41CB8}) (Version: 1.2.0 - Autodesk) Autodesk Inventor 2010 (Version: 14.0.0000.22302 - Autodesk, Inc.) Hidden Autodesk Inventor 2010 Deutsch (German) (HKLM\...\Autodesk Inventor 2010) (Version: 14.0.0000.22302 - Autodesk, Inc.) Autodesk Inventor 2010 Language Pack - Deutsch (Version: 14.0.0000.22302 - Autodesk, Inc.) Hidden Autodesk Inventor 2011 (Version: 15.1.0000.28200 - Autodesk) Hidden Autodesk Inventor 2011 Deutsch (HKLM\...\Autodesk Inventor 2011) (Version: 15.1.0000.28200 - Autodesk) Autodesk Inventor 2011 Language Pack - Deutsch (Version: 15.0.0000.23900 - Autodesk) Hidden Autodesk Inventor 2011 SP1 (HKLM\...\Autodesk Inventor 2011 SP1) (Version: 15.1.0000.28200 - Autodesk) Autodesk Inventor 2012 (Version: 16.0.16000.0000 - Autodesk) Hidden Autodesk Inventor 2012 Deutsch (HKLM\...\Autodesk Inventor 2012) (Version: 16.0.16000.0000 - Autodesk) Autodesk Inventor 2012 Language Pack - Deutsch (Version: 16.0.16000.0000 - Autodesk) Hidden Autodesk Inventor Content Center Libraries 2010 (Desktop Content) (HKLM\...\{EF90F06A-3B2D-48E3-8C7A-1F2210200476}) (Version: 14.0.0000.22302 - Autodesk, Inc.) Autodesk Inventor Content Center Libraries 2011 (Desktop Content) (HKLM\...\{7244B345-B413-408B-9D04-F55BE1CC93FA}) (Version: 15.0.0000.23900 - Autodesk, Inc.) Autodesk Material Library 2011 (HKLM-x32\...\{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}) (Version: 2.0.0.49 - Autodesk) Autodesk Material Library 2011 Base Image library (HKLM-x32\...\{CD1E078C-A6B9-47DA-B035-6365C85C7832}) (Version: 2.0.0.49 - Autodesk) Autodesk Material Library 2012 (HKLM-x32\...\{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}) (Version: 2.5.0.8 - Autodesk) Autodesk Material Library Base Resolution Image Library 2012 (HKLM-x32\...\{65420DC9-306E-4371-905F-F4DC3B418E52}) (Version: 2.5.0.8 - Autodesk) Autodesk Material Library Low Resolution Image Library 2012 (HKLM-x32\...\{24FF088D-CDCF-480C-8A4B-98F14A54CAA8}) (Version: 2.5.0.8 - Autodesk) Autodesk SketchBook Designer 2012 - Deutsch (HKLM\...\Autodesk SketchBook Designer 2012 - Deutsch) (Version: 2.00.0000 - Autodesk) Autodesk SketchBook Designer 2012 - Deutsch (Version: 2.00.0000 - Autodesk) Hidden Autodesk SketchBook Designer 2012 - German (Version: 2.00.0000 - Autodesk) Hidden Autodesk Vault 2011 (Client) (HKLM-x32\...\Autodesk Vault 2011 (Client)) (Version: 15.0.58.0 - Autodesk, Inc.) Autodesk Vault 2011 (Client) (Version: 15.0.58.0 - Autodesk, Inc.) Hidden Autodesk Vault 2011 (Client) German Language Pack (Version: 15.0.58.0 - Autodesk) Hidden Bandicam (HKLM-x32\...\Bandicam) (Version: 2.1.1.731 - Bandisoft.com) Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandisoft.com) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.7.2.45672 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC) bl (x32 Version: 1.0.0 - Your Company Name) Hidden Blade & Soul (HKLM-x32\...\InstallShield_{C3F383C1-D050-4A40-843F-8171A6A02C3A}) (Version: 1.0.63.237 - NC Interactive, LLC) Blade & Soul (x32 Version: 1.0.63.237 - NC Interactive, LLC) Hidden Bussim (HKLM\...\{c5d26244-657d-4856-9d35-b9557a3fdc9d}.sdb) (Version: - ) Bus-Simulator 2012 (HKLM-x32\...\Bus-Simulator 2012_is1) (Version: - astragon) CCleaner (HKLM\...\CCleaner) (Version: 3.10 - Piriform) CDDRV_Installer (Version: 4.60 - Logitech) Hidden Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine) Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Construction-Simulator 2015 (HKLM-x32\...\Steam App 289950) (Version: - weltenbauer. Software Entwicklung GmbH) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) CyberLink PowerDVD 9.5 (HKLM-x32\...\InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}) (Version: 9.5.1.3225 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.2.0.0114 - Disc Soft Ltd) Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform) Dell Backup and Recovery Manager (HKLM\...\{50B4B603-A4C6-4739-AE96-6C76A0F8A388}) (Version: 1.3.1 - Dell Inc.) Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc) DirectX 9 Runtime (x32 Version: 1.00.0000 - Sonic Solutions) Hidden Discord (HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\Discord) (Version: 0.0.286 - Hammer & Chisel, Inc.) Disk Space Fan 4 Free 4.5.1.129 (HKLM-x32\...\Disk Space Fan 4 Free_is1) (Version: - Disk Space Fan Team) DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.8.0.13 - DivX, LLC) DNSBlock (HKLM\...\{7b5da7f5-de7d-4e00-b330-a2e08e460095}) (Version: 1.0.0 - NETNS GMBH) DocToPDFConverter (HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\DocToPDFConverter) (Version: 01.00.00.00 - VolatoTech) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) Druckerdeinstallation für EPSON BX635FWD Series (HKLM\...\EPSON BX635FWD Series) (Version: - SEIKO EPSON Corporation) Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - Trendy Entertainment) Dungeon Defenders II (HKLM-x32\...\Steam App 236110) (Version: - Trendy Entertainment) Dungeons & Dragons Online® (HKLM-x32\...\Steam App 206480) (Version: - Turbine, Inc) DWG TrueView 2010 (HKLM\...\DWG TrueView 2010) (Version: 18.0.55.0 - Autodesk) DWG TrueView 2010 (Version: 18.0.55.0 - Autodesk) Hidden DWG TrueView 2011 (HKLM\...\DWG TrueView 2011) (Version: 18.1.49.0 - Autodesk) DWG TrueView 2011 (Version: 18.1.49.0 - Autodesk) Hidden DWG TrueView 2012 (HKLM\...\DWG TrueView 2012) (Version: 18.2.51.0 - Autodesk) DWG TrueView 2012 (Version: 18.2.51.0 - Autodesk) Hidden EA SPORTS FIFA World (HKLM-x32\...\{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}) (Version: 7.1.0.50515 - Electronic Arts, Inc.) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) erLT (x32 Version: 1.20.0137 - Logitech, Inc.) Hidden ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version: - SCS Software) F1 2011 (HKLM-x32\...\Steam App 44360) (Version: - Codemasters Birmingham) Fanaleds (HKLM\...\{ef0363c7-3a85-4e93-ab0e-2df5fa1f16bd}.sdb) (Version: - ) FanaLEDs (HKLM-x32\...\FanaLEDs) (Version: 2.2 - Gerben bol & Dirk Teurlings) FARO LS 1.1.406.58 (HKLM-x32\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production) Female Voice Pack (HKLM-x32\...\{71F8C486-8A13-468E-8B73-06051075556A}) (Version: 3.3.1 - Screaming Bee) Fraps (HKLM-x32\...\Fraps) (Version: - ) Freemake Video Converter Version 4.1.6 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.6 - Ellora Assets Corporation) Furry Voices for Second Life (HKLM-x32\...\{0DB44859-4112-4946-BE5E-A4275B3FFB5E}) (Version: 1.3.0 - Screaming Bee) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.) Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\Steam App 271590) (Version: - Rockstar North) Grand Theft Auto: San Andreas (HKLM-x32\...\Steam App 12120) (Version: - Rockstar Games) Heroes & Generals (HKLM-x32\...\Steam App 227940) (Version: - Reto-Moto) Hitman Absolution (HKLM-x32\...\{95030349-3623-4920-89BF-8BEC5EF311C5}_is1) (Version: 1.0433.1 - Square Enix) Hitman: Absolution (HKLM-x32\...\Steam App 203140) (Version: - IO Interactive) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Identity Protection Technology 1.1.2.0 (HKLM-x32\...\{C01A86F5-56E7-101F-9BC9-E3F1025EB779}) (Version: 1.1.2.0 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Network Connections 15.7.176.1 (HKLM\...\PROSetDX) (Version: 15.7.176.1 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.0.1008 - Intel Corporation) Ipswitch WS_FTP 12 (HKLM-x32\...\{AD88355B-A4E0-4DA1-BAC3-EA4FEA930691}) (Version: 12.3 - Ipswitch) Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.550 - Oracle) Java(TM) 6 Update 24 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416024FF}) (Version: 6.0.240 - Oracle) Java(TM) 6 Update 26 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216024FF}) (Version: 6.0.260 - Oracle) Juniper Networks Network Connect 7.4.0 (HKLM-x32\...\Juniper Network Connect 7.4.0) (Version: 7.4.0.27757 - Juniper Networks) Juniper Networks, Inc. Setup Client (HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\Juniper_Setup_Client) (Version: 7.4.6.40675 - Juniper Networks, Inc.) Juniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.) Juniper Networks, Inc. Setup Client Activex Control (HKLM-x32\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{02FECEE0-16B2-43DB-BC3B-C844477FC142}) (Version: 15.0.2.396 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 15.0.2.396 - Kaspersky Lab) Hidden KhalInstallWrapper (Version: 2.00.0000 - Logitech) Hidden LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 12.0.1.0 - Lightworks) Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) Logitech SetPoint (HKLM-x32\...\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}) (Version: 4.80 - Logitech) Loksim3D (HKLM\...\Loksim3D_is1) (Version: 2.8.3 - Loksim3D) LOLReplay (HKLM-x32\...\LOLReplay) (Version: 0.8.9.22 - www.leaguereplays.com) Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Marvel Heroes 2015 (HKLM-x32\...\Steam App 226320) (Version: - Gazillion Entertainment) Mass Effect (HKLM-x32\...\Steam App 17460) (Version: - BioWare) Mass Effect 2 (HKLM-x32\...\Steam App 24980) (Version: - BioWare) Mass Effect™ 3 Demo (HKLM-x32\...\{A1683CA7-4850-4A21-982B-C6D853C79AF7}) (Version: 1.0.0.0 - Electronic Arts) Medal of Honor™ Warfighter (HKLM-x32\...\{1040143F-FEFB-4B90-8E51-E47D40E14C4E}) (Version: 1.0.0.3 - Electronic Arts) MEDUSA NX USB 5.1 Gaming Headset (HKLM\...\C-Media CM106 Like Sound Driver) (Version: - ) MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Metric Collection SDK 35 (x32 Version: 1.2.0010.00 - Lenovo Group Limited) Hidden Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Application Compatibility Toolkit 5.6 (HKLM-x32\...\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}) (Version: 5.6.7324.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation) Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.6568.2025 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-0081-0407-0000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation) Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\OneDriveSetup.exe) (Version: 17.3.4604.0120 - Microsoft Corporation) Microsoft Report Viewer Redistributable 2008 (HKLM-x32\...\Microsoft Report Viewer Redistributable 2008) (Version: - Microsoft Corporation) Microsoft Report Viewer Redistributable 2008 (KB971118) (HKLM-x32\...\Microsoft Report Viewer Redistributable 2008 (KB971118)) (Version: - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{2af972c7-13b0-4978-92a8-fee26a4fb4e9}) (Version: 12.0.21005.1 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) MK LOL (HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\MK LOL) (Version: - ) MorphVOX Pro (HKLM-x32\...\{DE289787-7ECA-4BED-9D8C-99FAC407E3D6}) (Version: 4.3.13 - Screaming Bee) Mozilla Firefox 42.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 de)) (Version: 42.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 42.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) msxml4 (HKLM-x32\...\{5AE3D9F1-9E9E-4015-8787-E22705AA32C5}) (Version: 1.0.0 - Default Company Name) NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version: - NCSOFT) Need for Speed™ Most Wanted (HKLM-x32\...\{FB0127F3-985B-44CE-AE29-378CAF60B361}) (Version: 1.5.0.0 - Electronic Arts) No23 Recorder (HKLM-x32\...\{22B0E143-2B0B-435B-9F56-136A3D16065F}) (Version: 2.1.0.3 - No23) NVIDIA 3D Vision Controller-Treiber 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation) NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.12.5929 - NVIDIA Corporation) NVIDIA GeForce Experience 2.5.14.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.14.5 - NVIDIA Corporation) NVIDIA Grafiktreiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA nView 141.24 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 141.24 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA WMI 2.15.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI) (Version: 2.15.0 - NVIDIA Corporation) OBS Multiplatform (HKLM-x32\...\OBS Multiplatform) (Version: 0.11.3 - OBS Project) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.6528.1011 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.6528.1011 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.6528.1011 - Microsoft Corporation) Hidden OMSI 2 (HKLM-x32\...\Steam App 252530) (Version: - MR-Software GbR) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenLibraries (HKLM-x32\...\OpenLibraries) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.3.11.2762 - Electronic Arts, Inc.) PARTcommunity 3D Web Viewer (HKLM-x32\...\{F6C0D92C-7EBC-4CEE-A0DD-BCE6ADB50E22}) (Version: 1.0.36.11 - CADENAS) Personality Voices (HKLM-x32\...\{29C042AB-059B-414C-840E-94775E3F24A8}) (Version: 1.0.0 - Screaming Bee) ph (x32 Version: 1.0.0 - Your Company Name) Hidden PhotoShowExpress (x32 Version: 2.0.063 - Sonic Solutions) Hidden PingPlotter 4.01.2 (HKLM-x32\...\{7C20D443-1352-49AB-90D8-71CC34C50917}) (Version: 4.1.2.14 - Pingman Tools, LLC) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Rapture3D 2.4.9 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound) RBVirtualFolder64Inst (Version: 1.00.0000 - Roxio, Inc.) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5883 - Realtek Semiconductor Corp.) Robocraft (HKLM-x32\...\Steam App 301520) (Version: - Freejam) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.7.2 - Rockstar Games) Roxio Creator Starter (HKLM-x32\...\{6F0BBEFE-BE1C-419B-BA1F-D36C9E7915BC}) (Version: 12.1.77.0 - Roxio) Roxio File Backup (Version: 1.3.2 - Roxio) Hidden Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition) Sakura Clicker (HKLM-x32\...\Steam App 383080) (Version: - Winged Cloud) Schnell-Deinstallations-Tool für Autodesk Product Design Suite 2012 (HKLM\...\{D28EFBA5-1664-4B79-946A-000BE950E8E2}) (Version: 16.0.16000.0000 - Autodesk) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.14.5 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation) Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.111 - Skype Technologies S.A.) Sniper Elite 3 (HKLM-x32\...\U25pcGVyRWxpdGUz_is1) (Version: 1 - ) Sonic CinePlayer Decoder Pack (x32 Version: 4.3.0 - Sonic Solutions) Hidden Spyder5Pro (HKLM-x32\...\Spyder5Pro) (Version: - ) SpyHunter 4 (HKLM-x32\...\SpyHunter) (Version: 4.20.9.4533 - Enigma Software Group, LLC) Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version: - Pandemic Studios) Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: - Bioware/EA) Star Wars: The Force Unleashed II (HKLM-x32\...\Steam App 32500) (Version: - Aspyr Studios) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The Sims 4 (HKLM-x32\...\The Sims 4_R.G. Mechanics_is1) (Version: - R.G. Mechanics, ProZorg_tm) theHunter (HKLM-x32\...\Steam App 253710) (Version: - Expansive Worlds) Theme Hospital (HKLM-x32\...\{5118A4C2-C8A4-4CE5-AC37-F3E51C25402F}) (Version: 3.0.0.2 - Electronic Arts) Tomb Raider: Underworld (HKLM-x32\...\Steam App 8140) (Version: - Crystal Dynamics) TOSHIBA Netzwerk-Scannertreiber (HKLM-x32\...\ToshibaNetTWAIN) (Version: - Wordcraft International Limited) Trove (HKLM-x32\...\Steam App 304050) (Version: - Trion Worlds) TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.353 - TuneUp Software) Hidden UGS NX 6.0 (HKLM\...\{A37D76E1-38C4-4A58-A597-BD7C765FB8CF}) (Version: 6.0.0.24 - UGS) Unity Web Player (HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\...\UnityWebPlayer) (Version: 4.6.1f1 - Unity Technologies ApS) VBA (2627.01) (x32 Version: 6.03.00.9402 - Microsoft Corporation) Hidden VBA (2701.01) (x32 Version: 6.03.00.9402 - Microsoft Corporation) Hidden VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Vegas Pro 11.0 (64-bit) (HKLM\...\{7E3B2D0F-029B-11E2-BD68-F04DA23A5C58}) (Version: 11.0.701 - Sony) Vegas Pro 13.0 (64-bit) (HKLM\...\{787F5FA1-CCC3-11E4-ABD4-F04DA23A5C58}) (Version: 13.0.444 - Sony) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) WinRAR 5.31 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) Wooxy version 1.2 (HKLM-x32\...\{C183CD14-47D8-4F98-AF06-4744CB834C8E}_is1) (Version: 1.2 - Chewy) World of Guns: Gun Disassembly (HKLM-x32\...\Steam App 262410) (Version: - Noble Empire Corp.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{073CB204-6B29-46FC-AB98-451F1D068741}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\TestServer_app.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{12545889-6D32-4424-9967-1E1D7BD1F809}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\DWG TrueView 2010\DWGVIEWRficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{3FC94EB5-AEBD-4f3f-A2A4-B6CE57113C01}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\RxAppDocView.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{4C80573A-9150-11d2-B772-0060B0F159EF}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\RxAppDocView.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{4D29B490-49B2-11D0-93C3-7E0706000000}\localserver32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{591E5416-DDC3-45E6-BE9D-C40D0B418F6E}\localserver32 -> C:\Program Files\DWG TrueView 2010\DWGVIEWR.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{62FBB030-24C7-11D3-B78D-0060B0F159EF}\localserver32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\Autodesk\ACADM 2010\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{6FDE7A70-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\DT.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{6FDE7A71-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\DT.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{6FDE7A72-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\DT.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{6FDE7A73-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\DT.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{6FDE7A74-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\DT.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{6FDE7A77-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\DtCp.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{714D325C-E9CE-44ab-A72A-36BB410BA19B}\localserver32 -> C:\Program Files\Autodesk\Inventor 2012\Bin\FEAFilesHandler.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{76283A80-50DD-11D3-A7E3-00C04F79D7BC}\localserver32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{846217D0-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\UCxTextBtn.ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{846217D1-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\UCxTextBtn.ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{8C23B656-4E6E-4B45-9920-9617168D39A3}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\TestServer_app.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{B6B5DC40-96E3-11d2-B774-0060B0F159EF}\localserver32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{BBF9FDF1-52DC-11D0-8C04-0800090BE8EC}\localserver32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{BC71DEA1-D6FB-48B8-AB06-D151C81BBCDD}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{C0E7110B-2136-11D4-8DD0-0010B541CAA8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\RxInventorMarshal.Dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{C343ED84-A129-11d3-B799-0060B0F159EF}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\RxApprenticeServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{C92FB640-AD4D-498A-9979-A51A2540C977}\localserver32 -> C:\Program Files\Autodesk\ACADM 2011\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\Autodesk\ACADM 2010\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{D7A1987D-4A73-11D1-9A4B-080009DCE505}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\ColorButton.ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{D7A1987E-4A73-11D1-9A4B-080009DCE505}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\ColorButton.ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{DB5D476B-3FF4-4E9D-A606-1E2B473BE571}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\AcInetUI.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\ACADM 2010\acadficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{E5B0515D-48D2-4F04-906D-0192ED65A2DD}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\TestServer_app.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{E60F81E1-49B3-11D0-93C3-7E0706000000}\localserver32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{E6E92821-2731-4AA3-B919-D2BC514FEC64}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Compatibility\Bin\DbxBridgePS.Dll () CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{F61064CC-DBFB-47ee-9BC8-CA5A1CBDF0DA}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\InvResc.dll (Autodesk) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{FB469644-3F14-4403-ACCA-6B13486FF7BD}\localserver32 -> C:\Program Files\Autodesk\Inventor 2011\Bin\InvTXTStack.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1000_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1001_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2012\dwgviewrficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1001_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\Autodesk\ACADM 2011\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1001_Classes\CLSID\{C92FB640-AD4D-498A-9979-A51A2540C977}\localserver32 -> C:\Program Files\Autodesk\ACADM 2011\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1001_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\Autodesk\ACADM 2011\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3487997803-1532060654-1365074507-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\ACADM 2011\acadficn.dll (Autodesk, Inc.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0B1EF88B-8DEF-414B-A3FD-06E8C599E67D} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3487997803-1532060654-1365074507-1000 Task: {16B06E03-DDC5-4892-9430-C51899A48095} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-17] (Google Inc.) Task: {2C9ED333-0E4C-48CF-934A-4F0266878831} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-02-04] (Microsoft Corporation) Task: {2DC39FD6-810B-4410-9AEB-36D94FBDE1C4} - \{7E7E7E47-780B-080F-7E11-78097F7E1104} -> Keine Datei <==== ACHTUNG Task: {3D663E4E-93FD-433B-A2E8-AC6EAF9FC02C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-17] (Google Inc.) Task: {4095AA70-0E1F-4157-9584-C4ABBF92969A} - System32\Tasks\Y5LVlAlBAszS => C:\Users\Michael\AppData\Roaming\Y5LVlAlBAszS.exe <==== ACHTUNG Task: {4226F76B-A41D-4879-BE18-FF68E2C1D8D5} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe Task: {44FD3788-08AE-4C41-9FB2-F7FDEF34DB00} - System32\Tasks\One-Click Optimizer WO11 => C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2015\WO2015.exe [2015-01-05] (Ashampoo Development GmbH & Co. KG) Task: {5FF34719-9EAE-4B59-B3EE-D9E5135902A1} - \cfr3011 -> Keine Datei <==== ACHTUNG Task: {63AD4C91-BBE4-4726-8496-C9FBDDD9D27A} - System32\Tasks\{514AD9CB-E212-43B9-A70F-E20D18ADDF68} => pcalua.exe -a C:\Users\Lukas\Downloads\sw_sounds_saber.exe -d C:\Users\Lukas\Downloads Task: {701583E9-F56F-46CE-8413-15680FE9A6F1} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-02-23] (Microsoft Corporation) Task: {723D46BA-6E14-4B6C-8940-39DAB3BCD202} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2015-08-17] (Enigma Software Group USA, LLC.) Task: {75EEE1DC-61AF-4A0F-8367-53E4D008A83B} - System32\Tasks\GHWXLMNPJTQQHDDN => C:\ProgramData\Service7609\Service7609.exe <==== ACHTUNG Task: {7F3A14C6-E9E7-4B23-902F-17B8D4AF7364} - \Full Update -> Keine Datei <==== ACHTUNG Task: {8656BB1E-0B5F-4647-AA33-94D2B1A361CC} - \7eca1cd8-2a95-4759-9c0f-ae713062040a-6 -> Keine Datei <==== ACHTUNG Task: {87036BB7-61DA-481E-BF4B-3566A799F759} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {915C7735-1D6D-4660-942F-401D2E375269} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation) Task: {9B23EDD0-913F-487D-81B1-3ED13513627D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-09] (Adobe Systems Incorporated) Task: {B235EE15-500B-4657-92FC-AD37878D6E6B} - System32\Tasks\8zhgEoSLYekGXIKGCkpWa7 => C:\Users\Michael\AppData\Roaming\8zhgEoSLYekGXIKGCkpWa7.exe <==== ACHTUNG Task: {B261EF36-3297-43AD-85FA-807DEEBCD314} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-02-04] (Microsoft Corporation) Task: {BDA2F11F-F22F-44E3-AADE-5BB9B88F775A} - System32\Tasks\DivXUpdate => C:\Program Files (x86)\Common Files\DivX Shared\Qt4.8\DivXUpdate.exe [2015-11-30] (DivX, LLC) Task: {CFDA0250-ACFB-42BB-9CB5-618107181ED2} - System32\Tasks\{4DBD25F7-2C1E-4206-8D27-D62BC89DAB17} => pcalua.exe -a C:\Users\Lukas\Downloads\sw_sounds_misc.exe -d C:\Users\Lukas\Downloads Task: {D24C25DB-A6EF-4E9D-A4EC-3E2EAFC6FCDB} - System32\Tasks\{BFA994B8-BE01-4CBD-877D-6C87F30B5454} => pcalua.exe -a "C:\Program Files (x86)\MKJogo\MK IM\Bin\uInst.exe" Task: {EA82B0E4-85A7-4085-B5F2-0130F9E25ECB} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03] (Adobe Systems Incorporated) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\8zhgEoSLYekGXIKGCkpWa7.job => C:\Users\Michael\AppData\Roaming\8zhgEoSLYekGXIKGCkpWa7.exe <==== ACHTUNG Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GHWXLMNPJTQQHDDN.job => C:\ProgramData\Service7609\Service7609.exe <==== ACHTUNG Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\One-Click Optimizer WO11.job => C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 2015\WO2015.exe Task: C:\Windows\Tasks\Y5LVlAlBAszS.job => C:\Users\Michael\AppData\Roaming\Y5LVlAlBAszS.exe <==== ACHTUNG ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2014-01-19 15:57 - 2014-07-02 19:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-10-19 16:29 - 2016-02-04 05:51 - 00173256 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll 2015-09-12 15:33 - 2015-09-12 15:33 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe 2014-05-01 15:13 - 2014-05-01 15:13 - 00470016 _____ () C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX64.dll 2011-09-02 10:24 - 2009-07-20 11:35 - 00018960 _____ () C:\Program Files\Logitech\SetPoint\khalwrapper.dll 2015-01-29 10:02 - 2015-03-10 23:00 - 07374950 _____ () C:\Program Files (x86)\Datacolor\Spyder5Pro\Utility\SpyderUtility.exe 2011-09-02 10:24 - 2009-07-20 03:00 - 00077824 _____ () C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe 2014-12-23 15:54 - 2014-12-23 15:54 - 01272616 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\kpcengine.2.3.dll 2016-02-12 19:29 - 2016-02-12 19:29 - 00169472 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\5eb8f854950c428c64f668e63c5a0498\IsdiInterop.ni.dll 2011-07-15 23:41 - 2010-11-05 23:50 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2015-09-12 14:02 - 2015-08-27 01:37 - 00011896 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2014-05-01 15:15 - 2014-05-01 15:15 - 00463360 _____ () C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX32.dll 2016-01-11 10:36 - 2016-01-11 10:36 - 00932032 ____R () C:\Program Files (x86)\Skype\Phone\ssScreenVVS2.dll 2016-03-07 17:58 - 2016-03-04 20:31 - 02570240 _____ () C:\Users\Lukas\AppData\Local\Discord\app-0.0.286\libdiscord.dll 2012-04-04 06:54 - 2012-04-04 06:54 - 00019968 _____ () C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\locale\de_de\acrotray.deu 2015-03-10 22:57 - 2015-03-10 22:36 - 01865216 _____ () C:\Program Files (x86)\Datacolor\Spyder5Pro\Utility\SpyderUtility Libs\RBGUIFramework.dll 2015-03-10 22:57 - 2015-03-10 22:36 - 00096256 _____ () C:\Program Files (x86)\Datacolor\Spyder5Pro\Utility\SpyderUtility Libs\Appearance Pak.dll 2015-03-10 22:57 - 2015-03-10 22:36 - 00090112 _____ () C:\Program Files (x86)\Datacolor\Spyder5Pro\Utility\SpyderUtility Libs\RegEx.dll 2015-03-10 22:57 - 2015-03-10 22:36 - 05340672 _____ () C:\Program Files (x86)\Datacolor\Spyder5Pro\Utility\SpyderUtility Libs\RBScript.dll 2015-03-10 22:57 - 2015-03-10 22:36 - 00031744 _____ () C:\Program Files (x86)\Datacolor\Spyder5Pro\Utility\SpyderUtility Libs\Shell.dll 2015-03-10 22:57 - 2015-03-10 22:36 - 00293376 _____ () C:\Program Files (x86)\Datacolor\Spyder5Pro\Utility\SpyderUtility Libs\XML.dll 2015-03-10 22:57 - 2015-03-10 22:36 - 00274432 _____ () C:\Program Files (x86)\Datacolor\Spyder5Pro\Utility\SpyderUtility Libs\CGamma.dll 2015-03-10 22:57 - 2015-03-10 22:36 - 00110592 _____ () C:\Program Files (x86)\Datacolor\Spyder5Pro\Utility\SpyderUtility Libs\CSensor.dll 2015-04-16 16:01 - 2015-12-15 06:54 - 00782336 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2015-04-16 16:01 - 2015-07-03 17:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll 2015-04-16 16:01 - 2015-07-03 17:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2015-04-16 16:01 - 2015-07-03 17:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2015-04-16 16:01 - 2016-02-04 22:02 - 02546768 _____ () C:\Program Files (x86)\Steam\video.dll 2015-04-16 16:01 - 2015-09-24 01:33 - 02549248 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2015-04-16 16:01 - 2015-09-24 01:33 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2015-04-16 16:01 - 2015-09-24 01:33 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2015-04-16 16:01 - 2015-09-24 01:33 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2015-04-16 16:01 - 2015-09-24 01:33 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2015-04-16 16:01 - 2016-02-04 22:01 - 00802896 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2015-07-24 19:32 - 2015-12-30 02:51 - 00208896 _____ () C:\Program Files (x86)\Steam\bin\openvr_api.dll 2016-01-06 09:03 - 2016-03-05 09:27 - 00012288 _____ () C:\Program Files (x86)\Google\Chrome\Application\WTSAPI32.dll 2016-02-20 15:00 - 2016-02-18 05:14 - 01630360 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libglesv2.dll 2016-02-20 15:00 - 2016-02-18 05:14 - 00085656 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libegl.dll 2015-04-16 16:01 - 2016-01-06 02:52 - 48387872 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2016-03-07 17:58 - 2016-03-04 20:31 - 01684480 _____ () C:\Users\Lukas\AppData\Local\Discord\app-0.0.286\libglesv2.dll 2016-03-07 17:58 - 2016-03-04 20:31 - 00012288 _____ () C:\Users\Lukas\AppData\Local\Discord\app-0.0.286\libegl.dll 2015-04-16 16:01 - 2015-09-25 00:56 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\Users\Lukas:Heroes & Generals [38] AlternateDataStreams: C:\Users\Lukas\AppData\Local\Temporary Internet Files:T6aG7k2EloPGhg2A0BBgTuFVUlM [2208] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{5D452C63-9479-437C-B873-689F896B4282}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD Cinema\PowerDVDCinema.exe FirewallRules: [{89334483-4E9C-4746-BC75-E34A06CD610D}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD9.EXE FirewallRules: [{B7435958-7927-4E78-BC57-FD4A3467B534}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{6080F99A-D3F9-4412-8A74-3CB375ED4B13}] => (Allow) LPort=2869 FirewallRules: [{F7BCD92D-1741-460A-B88D-6FA64D223A62}] => (Allow) LPort=1900 FirewallRules: [{201731A7-275A-46D1-ACD7-BE4BCF284823}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{F0A7AF7C-928F-4909-A4BA-3ED1AF297CC1}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [TCP Query User{0ACEC0F8-27B5-4BDD-BE7A-7A32E99DF6AB}C:\programdata\heidelberg\plm\ugnx664\ugii\ugraf.exe] => (Allow) C:\programdata\heidelberg\plm\ugnx664\ugii\ugraf.exe FirewallRules: [UDP Query User{E4138393-4553-44FF-86EF-A9258F622C7D}C:\programdata\heidelberg\plm\ugnx664\ugii\ugraf.exe] => (Allow) C:\programdata\heidelberg\plm\ugnx664\ugii\ugraf.exe FirewallRules: [TCP Query User{E34515CC-0174-4104-B3BC-65EBCB83F0E8}C:\program files (x86)\ipswitch\ws_ftp 12\wsftpgui.exe] => (Allow) C:\program files (x86)\ipswitch\ws_ftp 12\wsftpgui.exe FirewallRules: [UDP Query User{B94DA7C4-B4F3-4EAE-BC0F-17A234D0D404}C:\program files (x86)\ipswitch\ws_ftp 12\wsftpgui.exe] => (Allow) C:\program files (x86)\ipswitch\ws_ftp 12\wsftpgui.exe FirewallRules: [{3D1B7EA9-2533-4626-A0F2-462B0BC4C2F4}] => (Allow) C:\Users\FAE\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{5CCE4D07-496E-4167-AEAD-DC1D9FA7DEC1}] => (Allow) C:\Users\FAE\AppData\Local\Akamai\netsession_win.exe FirewallRules: [TCP Query User{60D8F60D-5ECA-414F-A40D-54912CF43901}C:\users\fae\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\fae\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{7E733462-1B12-4C0C-91E3-B17DB79516AE}C:\users\fae\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\fae\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{6F83511A-FED8-41A9-83B4-6877707AED5E}C:\programdata\heidelberg\plm\ugnx664\ugii\ugraf.exe] => (Allow) C:\programdata\heidelberg\plm\ugnx664\ugii\ugraf.exe FirewallRules: [UDP Query User{E9753F16-FB62-454E-A6C1-B75BEA3F8F6B}C:\programdata\heidelberg\plm\ugnx664\ugii\ugraf.exe] => (Allow) C:\programdata\heidelberg\plm\ugnx664\ugii\ugraf.exe FirewallRules: [TCP Query User{A40CEE67-7F1F-4A0F-8A3C-EF3BF599F3F5}C:\program files\java\jre6\bin\javaw.exe] => (Allow) C:\program files\java\jre6\bin\javaw.exe FirewallRules: [UDP Query User{7B703F50-D1CE-4E38-A3A4-11D75A739840}C:\program files\java\jre6\bin\javaw.exe] => (Allow) C:\program files\java\jre6\bin\javaw.exe FirewallRules: [{459157BD-3D72-45B6-9739-C23845E52B13}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{C050BF05-8E33-4A08-B294-86A969F0C82E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{ECC70DDA-5DE1-45D7-8DB6-A5CEEC0E89EC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{C4D9A229-C842-4826-A797-17480083690A}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\NFS13.exe FirewallRules: [{49AEBCFF-4B75-4976-BCA2-BD8B00867456}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\NFS13.exe FirewallRules: [TCP Query User{EFFA2F0B-7234-4A7E-86CC-652CC447EF59}C:\program files (x86)\city car driving home edition\bin\win32\starter.exe] => (Allow) C:\program files (x86)\city car driving home edition\bin\win32\starter.exe FirewallRules: [UDP Query User{44A64C55-1C99-4C91-B87E-80D86A09939A}C:\program files (x86)\city car driving home edition\bin\win32\starter.exe] => (Allow) C:\program files (x86)\city car driving home edition\bin\win32\starter.exe FirewallRules: [{69321F5D-8E74-49EB-8DD6-D03E1164574C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{971756FA-884D-4C62-9632-AEE3ECB5D492}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{E8B385C3-E2B0-4C8B-A98E-6D25E518CB38}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA World\fifaworld.exe FirewallRules: [{2D63412E-35C0-42A6-BA3B-663074F7A607}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA World\fifaworld.exe FirewallRules: [{41B9A423-5AB0-476C-BAD9-FCF91AB0FB31}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Warfighter\MOHW.exe FirewallRules: [{7F44A231-5923-41A1-9283-BDA3600AE70F}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Warfighter\MOHW.exe FirewallRules: [TCP Query User{F93802D8-E3AB-4967-B132-8BC335C6430D}C:\games\counter-strike\hl.exe] => (Allow) C:\games\counter-strike\hl.exe FirewallRules: [UDP Query User{78A44ACD-E1ED-4203-B198-4863B49FE3CB}C:\games\counter-strike\hl.exe] => (Allow) C:\games\counter-strike\hl.exe FirewallRules: [TCP Query User{4369F8A9-331D-45F1-8C89-50458498939F}C:\games\counter-strike\hl.exe] => (Block) C:\games\counter-strike\hl.exe FirewallRules: [UDP Query User{0A40D07B-F272-4C17-B0A8-5286CD74CA12}C:\games\counter-strike\hl.exe] => (Block) C:\games\counter-strike\hl.exe FirewallRules: [{00B26B4E-FC40-4643-801C-0942993B8C37}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{4B764D12-CDE6-4CF5-AD45-6AE220C3CB8C}] => (Allow) C:\Program Files\Lightworks\Lightworks.exe FirewallRules: [{E8690C5E-D090-408C-B810-96AF9C39A13B}] => (Allow) C:\Program Files\Lightworks\Lightworks.exe FirewallRules: [{53C3AA17-8F31-45FC-815E-331A9AF3AB28}] => (Allow) C:\Program Files\Lightworks\ntcardvt.exe FirewallRules: [{0C29D8C6-79B3-4544-BB80-9BAB5BA89D1C}] => (Allow) C:\Program Files\Lightworks\ntcardvt.exe FirewallRules: [{13F98D77-53E7-47C0-829C-31EE7ACAFDD8}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe FirewallRules: [{B6F37F3A-F1F4-4C81-A2EB-32EC69539359}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe FirewallRules: [{84891022-D81A-4F85-830C-4A3F860BC085}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe FirewallRules: [{8878B615-AF89-4C45-89F3-1E4281379E47}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe FirewallRules: [TCP Query User{6CB59B7C-8134-4C00-A752-C17583CC22CE}C:\users\lukas\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\lukas\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{652FA8C2-AFCA-4FEB-99CD-699E6FE2A346}C:\users\lukas\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\lukas\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{3F0DB2D7-B5A2-401F-8E1D-DE2499829A99}C:\program files (x86)\lolreplay\lolreplay.exe] => (Allow) C:\program files (x86)\lolreplay\lolreplay.exe FirewallRules: [UDP Query User{2A654092-FA4D-4B5E-A3D6-B6C3293607F3}C:\program files (x86)\lolreplay\lolreplay.exe] => (Allow) C:\program files (x86)\lolreplay\lolreplay.exe FirewallRules: [TCP Query User{36EBA1D3-A8CF-49EC-8BBF-209903FBCBCC}C:\program files (x86)\lolreplay\lolreplay.exe] => (Allow) C:\program files (x86)\lolreplay\lolreplay.exe FirewallRules: [UDP Query User{035F25D1-A6C6-482C-B256-25A475F0C088}C:\program files (x86)\lolreplay\lolreplay.exe] => (Allow) C:\program files (x86)\lolreplay\lolreplay.exe FirewallRules: [TCP Query User{87F9181B-CCEA-4064-9A7E-6D7B6B7C11B6}C:\users\lukas\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\lukas\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{3ADBD301-D680-4D2B-9D65-ED586EAC233C}C:\users\lukas\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\lukas\appdata\local\akamai\netsession_win.exe FirewallRules: [{8F126B0E-5EBF-4B84-9659-8379C8EE57AC}] => (Allow) K:\Lukas\Steam\steamapps\common\Grand Theft Auto San Andreas\gta-sa.exe FirewallRules: [{7855E9F4-F009-4FE8-AF3F-23A958147508}] => (Allow) K:\Lukas\Steam\steamapps\common\Grand Theft Auto San Andreas\gta-sa.exe FirewallRules: [{1C298228-8FA7-4456-806F-3F7A6378E39B}] => (Allow) C:\Program Files (x86)\Origin Games\Theme Hospital\data\Game\DOSBox\LAUNCHER.exe FirewallRules: [{FAC6B656-F7EB-46AE-8DC6-E7D5BB543FDE}] => (Allow) C:\Program Files (x86)\Origin Games\Theme Hospital\data\Game\DOSBox\LAUNCHER.exe FirewallRules: [{F7EB7C8A-9B1C-4213-8783-618F914B9699}] => (Allow) C:\Program Files (x86)\Origin Games\Mass Effect 3 Demo\Binaries\Win32\MassEffect3Demo.exe FirewallRules: [{D8B1C1E1-BA01-4AAE-8B0F-96D50CDE15E0}] => (Allow) C:\Program Files (x86)\Origin Games\Mass Effect 3 Demo\Binaries\Win32\MassEffect3Demo.exe FirewallRules: [TCP Query User{E3141E67-166B-4825-B2C2-9509FAA31162}K:\lukas\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) K:\lukas\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{88A0CBFB-C890-4636-8F15-800FC7C89E65}K:\lukas\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) K:\lukas\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [{F2E38334-7740-4908-883D-D0976D51787A}] => (Allow) K:\Lukas\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{524DB623-6CA3-45BB-9AF3-72CBFAEEBE16}] => (Allow) K:\Lukas\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [TCP Query User{07C63611-CDF1-4DAE-BC32-670D644E6C1D}K:\lukas\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) K:\lukas\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{EE9CD36F-57DB-4F10-A3C8-B4DC9031660A}K:\lukas\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) K:\lukas\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [{512895B2-8289-4690-9DEA-36D8FB5ACA2D}] => (Allow) K:\Lukas\Steam\steamapps\common\Star Wars The Force Unleashed 2\SWTFU2.exe FirewallRules: [{1E46B301-1A11-423B-9A8C-EE07446991F7}] => (Allow) K:\Lukas\Steam\steamapps\common\Star Wars The Force Unleashed 2\SWTFU2.exe FirewallRules: [{D4666E0C-91D5-4A8C-A304-50E8E614F5E5}] => (Allow) K:\Lukas\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{E1BC7A05-810C-4254-9DC0-D97DF0B817FD}] => (Allow) K:\Lukas\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [TCP Query User{83399DAC-2858-4F3A-80D5-915B9235B57A}C:\program files (x86)\city car driving home edition\bin\win32\starter.exe] => (Allow) C:\program files (x86)\city car driving home edition\bin\win32\starter.exe FirewallRules: [UDP Query User{5DA9B07B-D913-4A90-8981-0D265923986B}C:\program files (x86)\city car driving home edition\bin\win32\starter.exe] => (Allow) C:\program files (x86)\city car driving home edition\bin\win32\starter.exe FirewallRules: [{537EB141-94FD-4516-9924-E593760E4EFB}] => (Allow) K:\Lukas\Steam\steamapps\common\Saints Row the Third\game_launcher.exe FirewallRules: [{8271DFBA-CC0F-46A7-ADBB-2062A3BB2373}] => (Allow) K:\Lukas\Steam\steamapps\common\Saints Row the Third\game_launcher.exe FirewallRules: [{8B0295F0-2631-4EE2-A61D-5E4DA67E3C93}] => (Allow) K:\Lukas\Steam\steamapps\common\Saints Row the Third\SaintsRowTheThird.exe FirewallRules: [{916C9A08-6960-4305-B529-7ACAEA5A0A69}] => (Allow) K:\Lukas\Steam\steamapps\common\Saints Row the Third\SaintsRowTheThird.exe FirewallRules: [{82362B9F-13DB-4B78-8EDA-0B7762A011F0}] => (Allow) K:\Lukas\Steam\steamapps\common\Saints Row the Third\SaintsRowTheThird_DX11.exe FirewallRules: [{A097C9E4-32EF-4C1E-B593-33C4B0B7648F}] => (Allow) K:\Lukas\Steam\steamapps\common\Saints Row the Third\SaintsRowTheThird_DX11.exe FirewallRules: [{6A3ACEEF-7A5A-49FF-915E-6815383FD49C}] => (Allow) K:\Lukas\Steam\steamapps\common\Mass Effect\Binaries\MassEffect.exe FirewallRules: [{CBFA2B4D-D396-4A9B-9B47-26F18C1D5093}] => (Allow) K:\Lukas\Steam\steamapps\common\Mass Effect\Binaries\MassEffect.exe FirewallRules: [{CB124C83-BAFA-42CB-83FD-324AAE7513CE}] => (Allow) K:\Lukas\Steam\steamapps\common\Trove\GlyphClient.exe FirewallRules: [{8256E539-A9A6-4EE3-8C90-B89BA68906E3}] => (Allow) K:\Lukas\Steam\steamapps\common\Trove\GlyphClient.exe FirewallRules: [{0A08E891-2230-42B0-B12B-88C697DD20B3}] => (Allow) K:\Lukas\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe FirewallRules: [{655A5F8D-C803-4FD7-B023-884A7C55F9C4}] => (Allow) K:\Lukas\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe FirewallRules: [{C87B4C35-FC90-4D2C-8725-E577DC5A4D5B}] => (Allow) K:\Lukas\Steam\steamapps\common\Mass Effect 2\Binaries\MassEffect2.exe FirewallRules: [{5E9B6939-BC35-4B76-A986-3999059926D3}] => (Allow) K:\Lukas\Steam\steamapps\common\Mass Effect 2\Binaries\MassEffect2.exe FirewallRules: [{915CD9D7-5611-4924-B16F-80B686F320A7}] => (Allow) K:\Lukas\Steam\steamapps\common\Mass Effect 2\MassEffect2Launcher.exe FirewallRules: [{C167CF2A-2B5A-45C2-84CD-D8F02E477DA8}] => (Allow) K:\Lukas\Steam\steamapps\common\Mass Effect 2\MassEffect2Launcher.exe FirewallRules: [{CBA29815-E2FD-4CD4-A891-B86E0FB3C07A}] => (Allow) K:\Lukas\Steam\steamapps\common\Tomb Raider Underworld\tru.exe FirewallRules: [{A8197DF4-8865-469A-AF56-BD053B472024}] => (Allow) K:\Lukas\Steam\steamapps\common\Tomb Raider Underworld\tru.exe FirewallRules: [TCP Query User{3E4B8392-9CFB-4193-A58B-2051AEA92EEF}C:\program files (x86)\funcom\age of conan\conanpatcher.exe] => (Allow) C:\program files (x86)\funcom\age of conan\conanpatcher.exe FirewallRules: [UDP Query User{1011140F-816B-455B-B70C-B4B327369A17}C:\program files (x86)\funcom\age of conan\conanpatcher.exe] => (Allow) C:\program files (x86)\funcom\age of conan\conanpatcher.exe FirewallRules: [TCP Query User{BADF87F4-8225-46F6-B78D-571E3CC83DA9}C:\program files (x86)\funcom\age of conan\ageofconan.exe] => (Allow) C:\program files (x86)\funcom\age of conan\ageofconan.exe FirewallRules: [UDP Query User{E5FB49E2-D863-42DA-8233-74F7E9C0F721}C:\program files (x86)\funcom\age of conan\ageofconan.exe] => (Allow) C:\program files (x86)\funcom\age of conan\ageofconan.exe FirewallRules: [{A07F36B9-BE80-4B13-BED2-579E4D416BA1}] => (Allow) C:\Users\Lukas\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6A345780-8883-4B1B-80BD-B011D545CE01}] => (Allow) C:\Users\Lukas\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6695EE49-0FE9-48A1-9278-C2255AD18C88}] => (Allow) C:\Users\Lukas\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{8FEC110B-0F27-40C7-A105-2C570BF1C08A}] => (Allow) C:\Users\Lukas\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{D96FB8F4-04E6-4617-A399-186766772B68}] => (Allow) C:\Users\Lukas\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{71708B96-EC02-4D6C-AC9A-57BAED9A7780}] => (Allow) C:\Users\Lukas\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{87C8387D-2215-479C-A2BF-B9CC1F9A15EB}] => (Allow) C:\Program Files (x86)\Rising\RAV\ravmond.exe FirewallRules: [{CC4707AF-DB85-4C28-834F-76027B37DF18}] => (Allow) C:\Program Files (x86)\Rising\RAV\ravmond.exe FirewallRules: [{1B133D53-9ED1-4FF1-A3A2-2045C450A4A6}] => (Allow) K:\Lukas\Steam\steamapps\common\OMSI 2\Omsi.exe FirewallRules: [{7FC17907-2EC9-4A5E-A2B0-F5E242D85F57}] => (Allow) K:\Lukas\Steam\steamapps\common\OMSI 2\Omsi.exe FirewallRules: [{0655CD51-9FCE-45C4-A6EA-3F73A1C6AC02}] => (Allow) K:\Lukas\Steam\steamapps\common\Marvel Heroes\UnrealEngine3\Binaries\Win64\MarvelHeroes2015.exe FirewallRules: [{947D3D58-536A-4AAC-B2E1-20C8D8D2EC59}] => (Allow) K:\Lukas\Steam\steamapps\common\Marvel Heroes\UnrealEngine3\Binaries\Win64\MarvelHeroes2015.exe FirewallRules: [{8EB97C84-4979-468D-B46F-7717CD0A71CA}] => (Allow) K:\Lukas\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{60AF5B1D-8CBC-43DC-BB66-AFCC5056091E}] => (Allow) K:\Lukas\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{623C2EDD-522D-4C1A-AE0D-9596095BA29A}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{F30096B7-39A3-4D1A-8114-E23BB1589D80}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{5E974484-2767-48E1-884D-A34A9E682126}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{202419E4-B13A-4C84-9C70-C549C7AFA2D4}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{AA77257F-2701-4E16-9BCE-5F295A0FC8C4}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{A20E34A8-723F-48B5-A1ED-7C48BFD380D2}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{A2DC1F7C-DFCB-474D-939E-1C8FE2C6D066}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{1B772121-C76A-4107-88D4-7B6395FE7E6A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{8B87CF59-AF10-4E76-8C6F-C13D86ED0250}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{74CD9A82-014E-4EE2-81FB-DDF10E2D7A5C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{2BD620F3-809A-429B-9091-AB849E8F3275}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{7F4E454E-3218-4FB7-AC24-76930CB37BF1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{36FC2A01-D5F1-4312-A02E-E5292E30B325}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{528F95A8-59BF-4AA8-884A-12A8E7C64706}] => (Allow) K:\Lukas\Steam\steamapps\common\WOG\disasm.exe FirewallRules: [{00B24C5A-7BA6-4E5E-9770-4C18ED725A87}] => (Allow) K:\Lukas\Steam\steamapps\common\WOG\disasm.exe FirewallRules: [{2E15424C-B496-402B-A5FD-90A4F6BEB3A8}] => (Allow) K:\Lukas\Steam\steamapps\common\Robocraft\Robocraft.exe FirewallRules: [{B5209676-9FA8-4F7F-9AAC-40910F2DC04A}] => (Allow) K:\Lukas\Steam\steamapps\common\Robocraft\Robocraft.exe FirewallRules: [{FEB40698-5810-4846-8F89-8C154C88CD09}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{FE7399E8-5056-458A-9D3F-9EB3F31BC6ED}] => (Allow) C:\Users\Lukas\AppData\Local\Microsoft\OneDrive\OneDrive.exe FirewallRules: [{5A7DC731-120E-490D-9903-62C7073D805E}] => (Allow) K:\Lukas\Steam\steamapps\common\Dungeon Defenders 2\DunDefLauncher.exe FirewallRules: [{8AA02C6C-DE81-458C-90B8-8468BB5C5AE4}] => (Allow) K:\Lukas\Steam\steamapps\common\Dungeon Defenders 2\DunDefLauncher.exe FirewallRules: [{F1CB70D9-CC8F-40D2-861B-D9C07DE5C125}] => (Allow) K:\Lukas\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe FirewallRules: [{DCBE4494-A4C1-4D34-9F4C-B26A01EDA384}] => (Allow) K:\Lukas\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe FirewallRules: [{4CE1D774-51B1-4ABD-BBC0-ED2365F65294}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{DB4B5B9F-7593-4D52-B6A5-D72031AE1E6C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A20B8BE7-86C7-4538-B66E-4EDE5D4169F1}] => (Allow) K:\Lukas\Steam\steamapps\common\Sakura Clicker\Sakura Clicker.exe FirewallRules: [{AC94B8AE-0031-47F2-BC8A-4BAF860DF5A3}] => (Allow) K:\Lukas\Steam\steamapps\common\Sakura Clicker\Sakura Clicker.exe FirewallRules: [{9139C557-22FD-4B25-8765-1BA09FCDEF8D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{65B4B419-0E79-4A02-9EC8-9E70AAD40204}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BE969F7B-719F-44A1-89B2-5F9DFC371514}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5DEEC4B4-3681-45B5-B90D-860062AE90F7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3E09CF44-E044-4103-848B-ED96B705E7CA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{32D7E3A3-4C33-4840-8024-16FF9F49596F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{08CDC6F6-5078-4DE8-9837-8E395337E6C1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{ECD10E0A-79A3-4BCB-9141-2C838733352F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AB377868-016B-42D9-AC55-68056E999DC4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8D72B61F-9523-4D87-AF7C-E37CD6420CF1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{98716E9A-EEBD-4DC8-84FE-40DAB613B599}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{637A00D9-F61E-4E9A-837D-46455B5BCBE7}] => (Allow) K:\Lukas\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{672F8838-6EBA-45F9-BD3A-20ED55F1C28F}] => (Allow) K:\Lukas\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{9FA96360-CC54-4CC6-A43D-9B9AD7EB1B44}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BC63B4DF-92F1-446D-B978-FB8B4A9618B8}] => (Allow) K:\Lukas\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{12A929A0-037C-4436-8E54-EAD41CA12D20}] => (Allow) K:\Lukas\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{479DE1C2-93F2-46DE-8941-FF9CDF339951}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BF452F95-BA0E-4455-AAC6-5221851D5481}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7A424216-8AA3-42DC-BDD3-DCD23F4AC05B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{30F405F5-25D6-4E10-A38C-8EA5EC0AD16E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7590582F-C827-4F23-ACA5-DC207F111F00}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5D044A92-3429-4AE7-8970-C4DE81CA72E1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CB4FD172-0830-4295-88BD-A7AA55866C34}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{324FFD8D-9B7E-4C94-A823-99237671299D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E75FA339-094B-430A-85FD-CA738A72157F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{72533A4B-0DF1-4200-8081-2818E71388A1}] => (Allow) K:\Lukas\Steam\steamapps\common\Hitman Absolution\HMA.exe FirewallRules: [{70204C53-9964-44B8-BF77-7EFB9E3CB048}] => (Allow) K:\Lukas\Steam\steamapps\common\Hitman Absolution\HMA.exe FirewallRules: [{92FE9851-CC9D-4EB8-B1D8-2C0A4C8A26B2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B141B336-2513-48E9-A29F-648CB17AEAB7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{86B6B535-E4AD-4002-A494-E90DE871800E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CC7F0FF5-E156-4393-A100-3CB3A7CCECEA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6CC943C6-9EAF-413B-9280-CAEF8ADCD6EA}] => (Allow) K:\Lukas\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{06D965AB-26A6-46FB-8FEE-25DB9D7A46B6}] => (Allow) K:\Lukas\Origin Games\Battlefield 4\BF4WebHelper.exe FirewallRules: [{FC143E78-1B9A-46D6-92A3-A80A4FDF5E12}] => (Allow) K:\Lukas\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{349BFEA7-E980-41AD-8EB2-669168DF47AD}] => (Allow) K:\Lukas\Origin Games\Battlefield 4\BF4X86WebHelper.exe FirewallRules: [{2387BEFA-BEAC-4A16-9E26-1F52CB4AE13C}] => (Allow) K:\Lukas\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{F41BEC0F-1D3E-4C34-84B5-6EEB08A9B999}] => (Allow) K:\Lukas\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{7A706620-9E39-4EFA-923A-4241AB6F5B1F}] => (Allow) K:\Lukas\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe FirewallRules: [{496DEAA5-1295-4FEF-8D53-BEE129788161}] => (Allow) K:\Lukas\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe FirewallRules: [{A65DA6B2-833E-40BF-A44F-7383FA2E3465}] => (Allow) K:\Lukas\Steam\steamapps\common\theHunter\launcher\launcher.exe FirewallRules: [{B1AD9D9A-0498-444D-80DC-52D293903565}] => (Allow) K:\Lukas\Steam\steamapps\common\theHunter\launcher\launcher.exe FirewallRules: [{181C06E3-8CB6-41ED-96C9-A71F651C6E88}] => (Allow) K:\Lukas\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe FirewallRules: [{1F1035CC-40EA-4006-BF5C-35F4B0E01A7A}] => (Allow) K:\Lukas\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe FirewallRules: [{9E60E22A-E3F6-4A4E-A3B5-B3D8743401A8}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{565A6246-1658-4CBA-95F0-4D2A2330874E}] => (Allow) K:\Lukas\Steam\steamapps\common\theHunter\launcher\launcher.exe FirewallRules: [{F2ACB07F-E37F-4DCC-B328-5F9E8FDD6A83}] => (Allow) K:\Lukas\Steam\steamapps\common\theHunter\launcher\launcher.exe ==================== Wiederherstellungspunkte ========================= 07-03-2016 14:49:57 Windows Update 07-03-2016 15:11:13 Windows Update 07-03-2016 15:16:02 Removed MuseScore 2 07-03-2016 18:44:17 Windows Update 07-03-2016 19:04:18 Windows Update 07-03-2016 21:24:30 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: PS/2 Mouse Description: PS/2 Mouse Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Logitech Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Teredo Tunneling Pseudo-Interface Description: Microsoft-Teredo-Tunneling-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (03/07/2016 02:56:58 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm mbam.exe, Version 2.3.125.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1450 Startzeit: 01d178791af6c3b7 Endzeit: 10 Anwendungspfad: C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe Berichts-ID: 6d15c018-e46c-11e5-ba92-782bcb99e3ce Error: (03/07/2016 02:47:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: FreemakeUtilsService.exe, Version: 1.0.0.0, Zeitstempel: 0x5549b4f0 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.19135, Zeitstempel: 0x56a1c79e Ausnahmecode: 0xe0434352 Fehleroffset: 0x0000c52f ID des fehlerhaften Prozesses: 0x554 Startzeit der fehlerhaften Anwendung: 0xFreemakeUtilsService.exe0 Pfad der fehlerhaften Anwendung: FreemakeUtilsService.exe1 Pfad des fehlerhaften Moduls: FreemakeUtilsService.exe2 Berichtskennung: FreemakeUtilsService.exe3 Error: (03/07/2016 02:47:13 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: FreemakeUtilsService.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.ArgumentOutOfRangeException bei System.String.Substring(Int32, Int32) bei FreemakeUtilsService.Common.ToolbarInstallationChecker.GetChromeInformation(System.String) bei FreemakeUtilsService.Common.ToolbarInstallationChecker.CollectInformation() bei FreemakeUtilsService.Common.ToolbarInstallationChecker.CheckInfo(FreemakeUtilsService.Common.FreemakeToolbarsInfo) bei FreemakeUtilsService.Statistics.Manager.StartToolbarInfoCheck() bei FreemakeUtilsService.Statistics.Manager.SettingsSyncFailed(System.Object, System.EventArgs) bei FreemakeUtilsService.Common.Synchronizer.OnWorkerCompleted(System.Object, System.ComponentModel.RunWorkerCompletedEventArgs) bei System.ComponentModel.BackgroundWorker.OnRunWorkerCompleted(System.ComponentModel.RunWorkerCompletedEventArgs) bei System.ComponentModel.BackgroundWorker.AsyncOperationCompleted(System.Object) bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem() bei System.Threading.ThreadPoolWorkQueue.Dispatch() bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback() Error: (03/07/2016 02:43:40 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm mbam.exe, Version 2.3.125.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: c98 Startzeit: 01d1787741f2e320 Endzeit: 2 Anwendungspfad: C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe Berichts-ID: 96c87adb-e46a-11e5-9bcd-782bcb99e3ce Error: (03/07/2016 01:00:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: FreemakeUtilsService.exe, Version: 1.0.0.0, Zeitstempel: 0x5549b4f0 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.19135, Zeitstempel: 0x56a1c79e Ausnahmecode: 0xe0434352 Fehleroffset: 0x0000c52f ID des fehlerhaften Prozesses: 0x834 Startzeit der fehlerhaften Anwendung: 0xFreemakeUtilsService.exe0 Pfad der fehlerhaften Anwendung: FreemakeUtilsService.exe1 Pfad des fehlerhaften Moduls: FreemakeUtilsService.exe2 Berichtskennung: FreemakeUtilsService.exe3 Error: (03/07/2016 01:00:25 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: FreemakeUtilsService.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.ArgumentOutOfRangeException bei System.String.Substring(Int32, Int32) bei FreemakeUtilsService.Common.ToolbarInstallationChecker.GetChromeInformation(System.String) bei FreemakeUtilsService.Common.ToolbarInstallationChecker.CollectInformation() bei FreemakeUtilsService.Common.ToolbarInstallationChecker.CheckInfo(FreemakeUtilsService.Common.FreemakeToolbarsInfo) bei FreemakeUtilsService.Statistics.Manager.StartToolbarInfoCheck() bei FreemakeUtilsService.Statistics.Manager.SettingsSyncFailed(System.Object, System.EventArgs) bei FreemakeUtilsService.Common.Synchronizer.OnWorkerCompleted(System.Object, System.ComponentModel.RunWorkerCompletedEventArgs) bei System.ComponentModel.BackgroundWorker.OnRunWorkerCompleted(System.ComponentModel.RunWorkerCompletedEventArgs) bei System.ComponentModel.BackgroundWorker.AsyncOperationCompleted(System.Object) bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem() bei System.Threading.ThreadPoolWorkQueue.Dispatch() bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback() Error: (03/06/2016 11:18:16 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: FreemakeUtilsService.exe, Version: 1.0.0.0, Zeitstempel: 0x5549b4f0 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.19135, Zeitstempel: 0x56a1c79e Ausnahmecode: 0xe0434352 Fehleroffset: 0x0000c52f ID des fehlerhaften Prozesses: 0x834 Startzeit der fehlerhaften Anwendung: 0xFreemakeUtilsService.exe0 Pfad der fehlerhaften Anwendung: FreemakeUtilsService.exe1 Pfad des fehlerhaften Moduls: FreemakeUtilsService.exe2 Berichtskennung: FreemakeUtilsService.exe3 Error: (03/06/2016 11:18:12 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: FreemakeUtilsService.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.ArgumentOutOfRangeException bei System.String.Substring(Int32, Int32) bei FreemakeUtilsService.Common.ToolbarInstallationChecker.GetChromeInformation(System.String) bei FreemakeUtilsService.Common.ToolbarInstallationChecker.CollectInformation() bei FreemakeUtilsService.Common.ToolbarInstallationChecker.CheckInfo(FreemakeUtilsService.Common.FreemakeToolbarsInfo) bei FreemakeUtilsService.Statistics.Manager.StartToolbarInfoCheck() bei FreemakeUtilsService.Statistics.Manager.SettingsSyncFailed(System.Object, System.EventArgs) bei FreemakeUtilsService.Common.Synchronizer.OnWorkerCompleted(System.Object, System.ComponentModel.RunWorkerCompletedEventArgs) bei System.ComponentModel.BackgroundWorker.OnRunWorkerCompleted(System.ComponentModel.RunWorkerCompletedEventArgs) bei System.ComponentModel.BackgroundWorker.AsyncOperationCompleted(System.Object) bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem() bei System.Threading.ThreadPoolWorkQueue.Dispatch() bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback() Error: (03/05/2016 04:19:53 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: csgo.exe, Version: 0.0.0.0, Zeitstempel: 0x5653d523 Name des fehlerhaften Moduls: tier0.dll, Version: 0.0.0.0, Zeitstempel: 0x5653d3d1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000093c4 ID des fehlerhaften Prozesses: 0x1e70 Startzeit der fehlerhaften Anwendung: 0xcsgo.exe0 Pfad der fehlerhaften Anwendung: csgo.exe1 Pfad des fehlerhaften Moduls: csgo.exe2 Berichtskennung: csgo.exe3 Error: (03/05/2016 02:48:36 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich. Systemfehler: ============= Error: (03/08/2016 02:50:50 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC) Error: (03/08/2016 02:49:33 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (03/07/2016 09:25:07 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 4.6.1 unter Windows 7 und Windows Server 2008 R2 für x64 (KB3127233) Error: (03/07/2016 09:24:55 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 4.6.1 unter Windows 7 und Windows Server 2008 R2 für x64 (KB3122661) Error: (03/07/2016 07:05:26 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 4.6.1 unter Windows 7 und Windows Server 2008 R2 für x64 (KB3127233) Error: (03/07/2016 07:04:57 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 4.6.1 unter Windows 7 und Windows Server 2008 R2 für x64 (KB3122661) Error: (03/07/2016 06:47:27 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 4.6.1 unter Windows 7 und Windows Server 2008 R2 für x64 (KB3127233) Error: (03/07/2016 06:45:59 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 4.6.1 unter Windows 7 und Windows Server 2008 R2 für x64 (KB3122661) Error: (03/07/2016 04:15:35 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. Error: (03/07/2016 04:15:32 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT-AUTORITÄT) Description: Fehler beim Lesen der Datei für lokale Hosts. CodeIntegrity: =================================== Date: 2014-04-06 13:59:16.984 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\l3codeca.acm" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-04-06 13:52:40.358 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\l3codeca.acm" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-16 19:02:03.928 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\l3codeca.acm" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-16 18:54:54.974 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\l3codeca.acm" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-16 17:36:54.025 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\l3codeca.acm" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-16 16:40:34.022 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\l3codeca.acm" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-16 16:25:00.389 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\l3codeca.acm" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-07 18:53:37.715 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\l3codeca.acm" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-07 18:42:06.226 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\l3codeca.acm" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-03-07 18:28:54.024 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\l3codeca.acm" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Xeon(R) CPU E31245 @ 3.30GHz Prozentuale Nutzung des RAM: 25% Installierter physikalischer RAM: 16340.9 MB Verfügbarer physikalischer RAM: 12235.39 MB Summe virtueller Speicher: 32980 MB Verfügbarer virtueller Speicher: 28365.74 MB ==================== Laufwerke ================================ Drive c: (OS) (Fixed) (Total:452.47 GB) (Free:80.08 GB) NTFS Drive d: (BIG_BANG_THEORY_SEASON_2_DISC1) (CDROM) (Total:5.52 GB) (Free:0 GB) UDF Drive k: (Data) (Fixed) (Total:465.75 GB) (Free:37.1 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 931.5 GB) (Disk ID: E670654A) Partition 1: (Not Active) - (Size=39 MB) - (Type=DE) Partition 2: (Active) - (Size=13.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=452.5 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=465.8 GB) - (Type=OF Extended) ==================== Ende von Addition.txt ============================ |
08.03.2016, 15:29 | #9 |
| trojaner keine windows uodates mehrCode:
ATTFilter 15:26:46.0618 0x044c TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12 15:26:51.0927 0x044c ============================================================ 15:26:51.0927 0x044c Current date / time: 2016/03/08 15:26:51.0927 15:26:51.0927 0x044c SystemInfo: 15:26:51.0927 0x044c 15:26:51.0927 0x044c OS Version: 6.1.7601 ServicePack: 1.0 15:26:51.0927 0x044c Product type: Workstation 15:26:51.0927 0x044c ComputerName: PC-LUKAS 15:26:51.0927 0x044c UserName: Lukas 15:26:51.0927 0x044c Windows directory: C:\Windows 15:26:51.0927 0x044c System windows directory: C:\Windows 15:26:51.0927 0x044c Running under WOW64 15:26:51.0927 0x044c Processor architecture: Intel x64 15:26:51.0927 0x044c Number of processors: 8 15:26:51.0927 0x044c Page size: 0x1000 15:26:51.0927 0x044c Boot type: Normal boot 15:26:51.0927 0x044c ============================================================ 15:26:52.0037 0x044c KLMD registered as C:\Windows\system32\drivers\59052510.sys 15:26:52.0857 0x044c System UUID: {52E4580C-6833-765D-7063-B94052F488FE} 15:26:53.0327 0x044c Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 15:26:53.0367 0x044c ============================================================ 15:26:53.0367 0x044c \Device\Harddisk0\DR0: 15:26:53.0367 0x044c MBR partitions: 15:26:53.0367 0x044c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x14000, BlocksNum 0x1A80000 15:26:53.0367 0x044c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1A94000, BlocksNum 0x388F0000 15:26:53.0387 0x044c \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x3A384800, BlocksNum 0x3A381800 15:26:53.0387 0x044c ============================================================ 15:26:53.0537 0x044c C: <-> \Device\Harddisk0\DR0\Partition2 15:26:53.0607 0x044c K: <-> \Device\Harddisk0\DR0\Partition3 15:26:53.0607 0x044c ============================================================ 15:26:53.0607 0x044c Initialize success 15:26:53.0607 0x044c ============================================================ 15:27:20.0620 0x1808 ============================================================ 15:27:20.0620 0x1808 Scan started 15:27:20.0620 0x1808 Mode: Manual; 15:27:20.0620 0x1808 ============================================================ 15:27:20.0620 0x1808 KSN ping started 15:27:34.0576 0x1808 KSN ping finished: true 15:27:35.0269 0x1808 ================ Scan system memory ======================== 15:27:35.0270 0x1808 System memory - ok 15:27:35.0270 0x1808 ================ Scan services ============================= 15:27:35.0439 0x1808 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 15:27:35.0447 0x1808 1394ohci - ok 15:27:35.0481 0x1808 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 15:27:35.0486 0x1808 ACPI - ok 15:27:35.0496 0x1808 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 15:27:35.0498 0x1808 AcpiPmi - ok 15:27:35.0584 0x1808 [ 785FD0E36CA75D90DD50042E2594BC63, 471A5ED43A3E18A5A69C28F7F351558E90F20416D9C532ADF50888808090AE89 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 15:27:35.0592 0x1808 AdobeFlashPlayerUpdateSvc - ok 15:27:35.0666 0x1808 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 15:27:35.0682 0x1808 adp94xx - ok 15:27:35.0706 0x1808 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\drivers\adpahci.sys 15:27:35.0711 0x1808 adpahci - ok 15:27:35.0717 0x1808 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\drivers\adpu320.sys 15:27:35.0720 0x1808 adpu320 - ok 15:27:35.0750 0x1808 [ 262D7C87D0AC20B96EF9877D3CA478A0, 54F7E5A5F8991C5525500C1ECCF3D3135D13F48866C366E52DF1D052DB2EE15B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 15:27:35.0753 0x1808 AeLookupSvc - ok 15:27:35.0841 0x1808 [ 9A4A1EEE802BF2F878EE8EAB407B21B7, 177EB7DF4B35FE4C0E45E775A0FD5D48D39B410052E3EE18BDEEC809E152D9D8 ] AFD C:\Windows\system32\drivers\afd.sys 15:27:35.0855 0x1808 AFD - ok 15:27:35.0888 0x1808 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 15:27:35.0891 0x1808 agp440 - ok 15:27:35.0915 0x1808 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 15:27:35.0919 0x1808 ALG - ok 15:27:35.0966 0x1808 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 15:27:35.0968 0x1808 aliide - ok 15:27:35.0995 0x1808 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 15:27:35.0997 0x1808 amdide - ok 15:27:36.0023 0x1808 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 15:27:36.0026 0x1808 AmdK8 - ok 15:27:36.0044 0x1808 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys 15:27:36.0047 0x1808 AmdPPM - ok 15:27:36.0077 0x1808 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys 15:27:36.0082 0x1808 amdsata - ok 15:27:36.0106 0x1808 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys 15:27:36.0110 0x1808 amdsbs - ok 15:27:36.0121 0x1808 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys 15:27:36.0123 0x1808 amdxata - ok 15:27:36.0163 0x1808 [ 27DABFB4A6B0140C34DBEC713469592B, A355170D353AFBF0DE4EF53282F8404788FBBD0E2A1B7282B1B2925923E83141 ] AppID C:\Windows\system32\drivers\appid.sys 15:27:36.0166 0x1808 AppID - ok 15:27:36.0176 0x1808 [ ABC373B9C6275D45F17DB559408FFD1B, 12B355393BEBE2D1D24D7A9DA5E69E03E334899407503BC1CADCF7BE39828223 ] AppIDSvc C:\Windows\System32\appidsvc.dll 15:27:36.0178 0x1808 AppIDSvc - ok 15:27:36.0201 0x1808 [ 3EA5DA3F459F6ED19E10166965F6892F, F5618A5FA72C5E57BCFA6F2ECB840B1AEC60C72840AF3C1D94D5FCDB5ED2BF5E ] Appinfo C:\Windows\System32\appinfo.dll 15:27:36.0205 0x1808 Appinfo - ok 15:27:36.0237 0x1808 [ 4ABA3E75A76195A3E38ED2766C962899, E2001ACD44DA270B8289DA362D26416676301773AB22616C211F31CF2E7869AA ] AppMgmt C:\Windows\System32\appmgmts.dll 15:27:36.0245 0x1808 AppMgmt - ok 15:27:36.0263 0x1808 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\drivers\arc.sys 15:27:36.0266 0x1808 arc - ok 15:27:36.0278 0x1808 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\drivers\arcsas.sys 15:27:36.0280 0x1808 arcsas - ok 15:27:36.0371 0x1808 [ 660D597B7A78256734D7F3230B21B355, CAA19E8EFAD63B8975A4CD8EFD5CE5F21E056856D36BC5A9E48517F1E574ABBA ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 15:27:36.0408 0x1808 aspnet_state - ok 15:27:36.0434 0x1808 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 15:27:36.0435 0x1808 AsyncMac - ok 15:27:36.0472 0x1808 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 15:27:36.0474 0x1808 atapi - ok 15:27:36.0550 0x1808 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 15:27:36.0564 0x1808 AudioEndpointBuilder - ok 15:27:36.0598 0x1808 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv C:\Windows\System32\Audiosrv.dll 15:27:36.0608 0x1808 AudioSrv - ok 15:27:36.0702 0x1808 [ 9C7C876ACB9B707ECD08BD434C46A4D3, 4135E95C0E531854268D2009ACD6F932D8ADC4D31E72D3B942F731C60ECCDF1D ] AVP15.0.2 C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe 15:27:36.0709 0x1808 AVP15.0.2 - ok 15:27:36.0745 0x1808 [ D93F879E196AA6938B522CD8359EE9B4, CE7EF9D207B26509759D60877F6049CAC2A1506E0F104BAA352CF2FDF03D2AE9 ] AX88178 C:\Windows\system32\DRIVERS\ax88178.sys 15:27:36.0748 0x1808 AX88178 - ok 15:27:36.0792 0x1808 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 15:27:36.0797 0x1808 AxInstSV - ok 15:27:36.0853 0x1808 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys 15:27:36.0864 0x1808 b06bdrv - ok 15:27:36.0891 0x1808 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 15:27:36.0898 0x1808 b57nd60a - ok 15:27:36.0921 0x1808 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 15:27:36.0923 0x1808 BDESVC - ok 15:27:36.0933 0x1808 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 15:27:36.0934 0x1808 Beep - ok 15:27:37.0061 0x1808 [ 9E559FB3D4D4537CD8328A05D95E5B18, ACD4BEEFB4A470273FBE4D0F2303A32859C3D1A62F4590EA33F3360CB485C2C6 ] BEService C:\Program Files (x86)\Common Files\BattlEye\BEService.exe 15:27:37.0083 0x1808 BEService - ok 15:27:37.0166 0x1808 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 15:27:37.0182 0x1808 BFE - ok 15:27:37.0243 0x1808 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll 15:27:37.0258 0x1808 BITS - ok 15:27:37.0285 0x1808 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 15:27:37.0287 0x1808 blbdrive - ok 15:27:37.0312 0x1808 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 15:27:37.0316 0x1808 bowser - ok 15:27:37.0332 0x1808 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys 15:27:37.0334 0x1808 BrFiltLo - ok 15:27:37.0347 0x1808 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys 15:27:37.0348 0x1808 BrFiltUp - ok 15:27:37.0367 0x1808 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 15:27:37.0373 0x1808 Browser - ok 15:27:37.0397 0x1808 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 15:27:37.0403 0x1808 Brserid - ok 15:27:37.0419 0x1808 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 15:27:37.0421 0x1808 BrSerWdm - ok 15:27:37.0520 0x1808 [ 448917845F097FCE9D4554C3D2001EF3, BDCBEC01579D7CF28963E4E13CDC5B26E4B69CA24FA2CC4D6E24CAE0DDBCB3FE ] BRSptStub C:\ProgramData\BitRaider\BRSptStub.exe 15:27:37.0532 0x1808 BRSptStub - ok 15:27:37.0557 0x1808 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 15:27:37.0558 0x1808 BrUsbMdm - ok 15:27:37.0565 0x1808 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 15:27:37.0567 0x1808 BrUsbSer - ok 15:27:37.0580 0x1808 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys 15:27:37.0581 0x1808 BTHMODEM - ok 15:27:37.0616 0x1808 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 15:27:37.0620 0x1808 bthserv - ok 15:27:37.0703 0x1808 [ 52AE2CDD37AB735FBDA52263EFD524AA, 844103913E6079CC1C49B05FFB1CDC9A68692A8EE5A05C9C28FD272DFE534913 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe 15:27:37.0723 0x1808 c2cautoupdatesvc - ok 15:27:37.0797 0x1808 [ C35B91B6777E7C6DB67B8583D2AA66A7, CE3A004B560EB750442150FEEFEE074A11A17E66B3F2A489E8EF1DBCF8FE8390 ] c2cpnrsvc C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe 15:27:37.0822 0x1808 c2cpnrsvc - ok 15:27:37.0863 0x1808 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 15:27:37.0870 0x1808 cdfs - ok 15:27:37.0900 0x1808 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 15:27:37.0903 0x1808 cdrom - ok 15:27:37.0930 0x1808 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 15:27:37.0932 0x1808 CertPropSvc - ok 15:27:37.0950 0x1808 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\drivers\circlass.sys 15:27:37.0951 0x1808 circlass - ok 15:27:37.0995 0x1808 [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS C:\Windows\system32\CLFS.sys 15:27:38.0008 0x1808 CLFS - ok 15:27:38.0192 0x1808 [ 15574335364D67EAE9E992E90B08C5C1, 828E57B77B717A3E1989671EB4E7D6BBCB4AEA00396322E18F51C6492E5196EC ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe 15:27:38.0232 0x1808 ClickToRunSvc - ok 15:27:38.0326 0x1808 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 15:27:38.0330 0x1808 clr_optimization_v2.0.50727_32 - ok 15:27:38.0377 0x1808 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 15:27:38.0382 0x1808 clr_optimization_v2.0.50727_64 - ok 15:27:38.0483 0x1808 [ AB4CD527BEFCC43EE441E6C50CCE54C8, 13B776AE63049FFBA7E35EA0A4C26EBB57B10D973E05C4CF1214249754DC46E4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 15:27:38.0617 0x1808 clr_optimization_v4.0.30319_32 - ok 15:27:38.0638 0x1808 [ 1400C75FF021D6CFACE46AC41B60770E, 3FCB8D7714A79522F2738037D559F1FFFB2F05C5406D2A038EF5DDB4629CA1CE ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 15:27:38.0646 0x1808 clr_optimization_v4.0.30319_64 - ok 15:27:38.0690 0x1808 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\drivers\CmBatt.sys 15:27:38.0692 0x1808 CmBatt - ok 15:27:38.0725 0x1808 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 15:27:38.0727 0x1808 cmdide - ok 15:27:38.0790 0x1808 [ 429B31D047CFAD3CA5DD38120A2CE455, 5CC1459CBBBF2E6788635D4C277B116D90AE01DBE7AD561EB41A668F64801E80 ] cm_km_w C:\Windows\system32\DRIVERS\cm_km_w.sys 15:27:38.0798 0x1808 cm_km_w - ok 15:27:38.0847 0x1808 [ EC0511BB85BAA42A9734011685A6732C, 10B52F0860CCB3AA0FC34DDA5C5538BFCF7B6D40738B7756297237FD2D9E01C1 ] CNG C:\Windows\system32\Drivers\cng.sys 15:27:38.0854 0x1808 CNG - ok 15:27:38.0866 0x1808 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\drivers\compbatt.sys 15:27:38.0867 0x1808 Compbatt - ok 15:27:38.0909 0x1808 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys 15:27:38.0911 0x1808 CompositeBus - ok 15:27:38.0924 0x1808 COMSysApp - ok 15:27:39.0043 0x1808 [ B18D590BC5220FDB4A747BC16D78ABC7, D46F8B43BAC22E55DE9AFC19CF371B1C4E8D3707163598B2F9884BB31D730C09 ] cphs C:\Windows\SysWow64\IntelCpHeciSvc.exe 15:27:39.0054 0x1808 cphs - ok 15:27:39.0075 0x1808 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 15:27:39.0077 0x1808 crcdisk - ok 15:27:39.0116 0x1808 [ 7BC3E861F7E8EB543A630090FAE779E0, 52A538F25C853AAC9706CD0D4EBF80B1963391AA175895CFD9D44C8ABBFCFB74 ] CryptSvc C:\Windows\system32\cryptsvc.dll 15:27:39.0123 0x1808 CryptSvc - ok 15:27:39.0166 0x1808 [ 54DA3DFD29ED9F1619B6F53F3CE55E49, 9177C6907A983296BF188892A894B668A09FFA058FD56B50FE12940D54B0FA5E ] CSC C:\Windows\system32\drivers\csc.sys 15:27:39.0178 0x1808 CSC - ok 15:27:39.0208 0x1808 [ 3AB183AB4D2C79DCF459CD2C1266B043, 72B0187EBA9DC74E61EC5CB3DC24058DDB768843E865801894AAEAA211610C56 ] CscService C:\Windows\System32\cscsvc.dll 15:27:39.0223 0x1808 CscService - ok 15:27:39.0290 0x1808 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll 15:27:39.0307 0x1808 DcomLaunch - ok 15:27:39.0343 0x1808 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 15:27:39.0350 0x1808 defragsvc - ok 15:27:39.0393 0x1808 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys 15:27:39.0398 0x1808 DfsC - ok 15:27:39.0435 0x1808 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 15:27:39.0441 0x1808 Dhcp - ok 15:27:39.0539 0x1808 [ EC3F433D00365F1A9BC3411BCA7C7140, 0852D747359DE573504EBBDB99DA26D3BFA8B3C7A4836F8E3A5AD94B5571AD5C ] DiagTrack C:\Windows\system32\diagtrack.dll 15:27:39.0559 0x1808 DiagTrack - ok 15:27:39.0708 0x1808 [ A3B1076615D6B83826CB8C963EC16043, B671B53200C5F242BFD528FB471EAB0E2A94D00FDF6F23AB47F13FF315B3B55E ] Disc Soft Lite Bus Service C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe 15:27:39.0728 0x1808 Disc Soft Lite Bus Service - ok 15:27:39.0777 0x1808 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 15:27:39.0780 0x1808 discache - ok 15:27:39.0810 0x1808 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\drivers\disk.sys 15:27:39.0814 0x1808 Disk - ok 15:27:39.0835 0x1808 [ 5DB085A8A6600BE6401F2B24EECB5415, 5FC5C7C1B4DB7BF6EFD0992E91DB41FD047E90D1ABA0B8F868CB72557F88FB13 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys 15:27:39.0839 0x1808 dmvsc - ok 15:27:39.0905 0x1808 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 15:27:39.0912 0x1808 Dnscache - ok 15:27:39.0944 0x1808 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 15:27:39.0954 0x1808 dot3svc - ok 15:27:40.0026 0x1808 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 15:27:40.0033 0x1808 DPS - ok 15:27:40.0061 0x1808 [ 26FE888505E5A945B0536AF9A2A27A6F, A6B16ED498BAFE300E1F0E0A241E3D62F7A1C5973EE775904ED14F33A2BC08A6 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 15:27:40.0063 0x1808 drmkaud - ok 15:27:40.0095 0x1808 [ F2D97A85F4F6E0942BC17C4EECEEE6B7, 3583D00634C36B16880766F7635BFF48D04CECA4F2489E2720EBE33007CA0B9B ] dsNcAdpt C:\Windows\system32\DRIVERS\dsNcAdpt.sys 15:27:40.0098 0x1808 dsNcAdpt - ok 15:27:40.0205 0x1808 [ BCF3D8BD191E112A994725DA22DD8C0B, 2F17821311019B260EA251F97AC38FAA3F0274A361E083B2ED29761083924576 ] dsNcService C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe 15:27:40.0221 0x1808 dsNcService - ok 15:27:40.0258 0x18d4 Object required for P2P: [ C35B91B6777E7C6DB67B8583D2AA66A7 ] c2cpnrsvc 15:27:40.0278 0x1808 [ 679FF716052109392D870F6A6C4A3535, BEF1784448CCA4AF1D67ED68BD0C7CFE01A7719E98CACF92C2DCBFAA916DC57E ] dtlitescsibus C:\Windows\system32\DRIVERS\dtlitescsibus.sys 15:27:40.0279 0x1808 dtlitescsibus - ok 15:27:40.0291 0x1808 [ DCAF642BF2091D9ED68AF3AE84306992, 4872F38EF2A6E8F2A2930FF39EC3220D550F64CEC0D76AE0E0FB59DF00560B85 ] dtliteusbbus C:\Windows\system32\DRIVERS\dtliteusbbus.sys 15:27:40.0293 0x1808 dtliteusbbus - ok 15:27:40.0325 0x1808 [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 15:27:40.0340 0x1808 DXGKrnl - ok 15:27:40.0445 0x1808 [ 60633132A929C09FE78FAB16541F9E71, C7B60A4AAD8E0D9519D819A417D8A51383BF1DF571E5EF5A98A693DB0A8E0BE7 ] e1cexpress C:\Windows\system32\DRIVERS\e1c62x64.sys 15:27:40.0455 0x1808 e1cexpress - ok 15:27:40.0471 0x1808 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 15:27:40.0474 0x1808 EapHost - ok 15:27:40.0526 0x1808 EasyAntiCheat - ok 15:27:40.0635 0x1808 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\drivers\evbda.sys 15:27:40.0680 0x1808 ebdrv - ok 15:27:40.0737 0x1808 [ 5673794F254FE312AF62D9DA32805A2F, 76400BF26F87303924A4FA9DFE5DD13170D1E4A195CD12548DBAA0E6E8C11B1B ] EFS C:\Windows\System32\lsass.exe 15:27:40.0741 0x1808 EFS - ok 15:27:40.0812 0x1808 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 15:27:40.0825 0x1808 ehRecvr - ok 15:27:40.0843 0x1808 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 15:27:40.0845 0x1808 ehSched - ok 15:27:40.0904 0x1808 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\drivers\elxstor.sys 15:27:40.0917 0x1808 elxstor - ok 15:27:40.0928 0x1808 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 15:27:40.0929 0x1808 ErrDev - ok 15:27:41.0028 0x1808 [ 3B32CAA07D672F8A2E0DF5CB3A873F45, 09687E30FA5779C3593769D66CAEBED95C932746EDD6E83DABE3DCFD126AB5EC ] EsgScanner C:\Windows\system32\DRIVERS\EsgScanner.sys 15:27:41.0031 0x1808 EsgScanner - ok 15:27:41.0076 0x1808 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 15:27:41.0088 0x1808 EventSystem - ok 15:27:41.0130 0x1808 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys 15:27:41.0134 0x1808 exfat - ok 15:27:41.0151 0x1808 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys 15:27:41.0155 0x1808 fastfat - ok 15:27:41.0198 0x1808 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 15:27:41.0212 0x1808 Fax - ok 15:27:41.0248 0x1808 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\drivers\fdc.sys 15:27:41.0249 0x1808 fdc - ok 15:27:41.0265 0x1808 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 15:27:41.0267 0x1808 fdPHost - ok 15:27:41.0277 0x1808 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 15:27:41.0280 0x1808 FDResPub - ok 15:27:41.0305 0x1808 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 15:27:41.0309 0x1808 FileInfo - ok 15:27:41.0324 0x1808 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 15:27:41.0326 0x1808 Filetrace - ok 15:27:41.0397 0x1808 [ 5CEE6CD43AE5844C49300EA0B1E557EE, FBDBF3CA4EF632613E6046EEB506C5050454F8857348E28EB43E60C332EE0262 ] FLEXnet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe 15:27:41.0417 0x1808 FLEXnet Licensing Service 64 - ok 15:27:41.0430 0x1808 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys 15:27:41.0431 0x1808 flpydisk - ok 15:27:41.0460 0x1808 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 15:27:41.0465 0x1808 FltMgr - ok 15:27:41.0504 0x1808 [ E94E042BC24BB301767A8125D529B705, CAA15E286992307F8BCB6EEA2DF9D09E5D1215E1A5CF365D61A4B91222E2301B ] fltsrv C:\Windows\system32\DRIVERS\fltsrv.sys 15:27:41.0508 0x1808 fltsrv - ok 15:27:41.0590 0x1808 [ BCB16AE33AA58E0042F3EF34CFB6396A, E8ADA10DE60A94E4BABE9FCA6D0AA83B11520C092D49057E17F6C6059D35A323 ] FontCache C:\Windows\system32\FntCache.dll 15:27:41.0610 0x1808 FontCache - ok 15:27:41.0665 0x1808 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 15:27:41.0666 0x1808 FontCache3.0.0.0 - ok 15:27:41.0740 0x1808 [ 2523B588187D09B14E59EE174791E5D5, FC24E2B96A60E64878F9EEE4367FD22E851303958AD1DF39DFAB9810E8BE4054 ] Freemake Improver C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe 15:27:41.0742 0x1808 Freemake Improver - ok 15:27:41.0749 0x1808 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 15:27:41.0752 0x1808 FsDepends - ok 15:27:41.0774 0x1808 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 15:27:41.0776 0x1808 Fs_Rec - ok 15:27:41.0806 0x1808 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 15:27:41.0814 0x1808 fvevol - ok 15:27:41.0835 0x1808 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 15:27:41.0838 0x1808 gagp30kx - ok 15:27:41.0959 0x1808 [ 21931B9C5FDE6087F47F710AC1BE16E9, A727A8922A9769AAC77F5D85ED3475853655E9483C8DA091653D0B1F3D479398 ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe 15:27:41.0975 0x1808 GfExperienceService - ok 15:27:42.0058 0x1808 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll 15:27:42.0078 0x1808 gpsvc - ok 15:27:42.0170 0x1808 [ C6FF00DA1605982E616C03BE809FFE2D, 4D9C86B9FF2FA291DC320677D28DF00C26834409F7AD94D6C07D2233ED746B19 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 15:27:42.0176 0x1808 gupdate - ok 15:27:42.0188 0x1808 [ C6FF00DA1605982E616C03BE809FFE2D, 4D9C86B9FF2FA291DC320677D28DF00C26834409F7AD94D6C07D2233ED746B19 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 15:27:42.0193 0x1808 gupdatem - ok 15:27:42.0212 0x1808 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 15:27:42.0214 0x1808 hcw85cir - ok 15:27:42.0301 0x1808 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 15:27:42.0313 0x1808 HdAudAddService - ok 15:27:42.0345 0x1808 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 15:27:42.0347 0x1808 HDAudBus - ok 15:27:42.0379 0x1808 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys 15:27:42.0381 0x1808 HidBatt - ok 15:27:42.0401 0x1808 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\drivers\hidbth.sys 15:27:42.0406 0x1808 HidBth - ok 15:27:42.0430 0x1808 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\drivers\hidir.sys 15:27:42.0432 0x1808 HidIr - ok 15:27:42.0449 0x1808 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\system32\hidserv.dll 15:27:42.0452 0x1808 hidserv - ok 15:27:42.0509 0x1808 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 15:27:42.0511 0x1808 HidUsb - ok 15:27:42.0532 0x1808 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 15:27:42.0537 0x1808 hkmsvc - ok 15:27:42.0555 0x1808 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 15:27:42.0560 0x1808 HomeGroupListener - ok 15:27:42.0584 0x1808 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 15:27:42.0589 0x1808 HomeGroupProvider - ok 15:27:42.0605 0x1808 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 15:27:42.0606 0x1808 HpSAMD - ok 15:27:42.0655 0x1808 [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP C:\Windows\system32\drivers\HTTP.sys 15:27:42.0674 0x1808 HTTP - ok 15:27:42.0689 0x1808 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 15:27:42.0690 0x1808 hwpolicy - ok 15:27:42.0705 0x1808 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys 15:27:42.0709 0x1808 i8042prt - ok 15:27:42.0756 0x1808 [ D7921D5A870B11CC1ADAB198A519D50A, 5DF99EB5D5504E9D9EB21658E8B4A58DEE2AD143A1875DB7F9B7BF4877FCB57F ] iaStor C:\Windows\system32\drivers\iaStor.sys 15:27:42.0765 0x1808 iaStor - ok 15:27:42.0820 0x18d4 Object send P2P result: true 15:27:42.0824 0x1808 [ 8FFF9083252C16FE3960173722605E9E, 6546FDA34B9AF94C5E86E5269BBC2F02F1E78D6D4BE5B5EC01F4B284CC934994 ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 15:27:42.0826 0x1808 IAStorDataMgrSvc - ok 15:27:42.0891 0x1808 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 15:27:42.0905 0x1808 iaStorV - ok 15:27:42.0975 0x1808 [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 15:27:42.0996 0x1808 idsvc - ok 15:27:43.0012 0x1808 IEEtwCollectorService - ok 15:27:43.0184 0x1808 [ 79AE3CC82CA1563A4B392207997ACE7C, A1E4A1DA95CA2FA197EF5975657822F0F813F6C33DA38E1FA5A840194034D071 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys 15:27:43.0258 0x1808 igfx - ok 15:27:43.0283 0x1808 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\drivers\iirsp.sys 15:27:43.0284 0x1808 iirsp - ok 15:27:43.0335 0x1808 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 15:27:43.0349 0x1808 IKEEXT - ok 15:27:43.0481 0x1808 [ 19F9D8F7C996D5AE22E913491C912009, 1E733E34F2D39203216F3542F1A5818F3EA21CE51F434FE3B255CB6BF0B048FC ] IntcAzAudAddService C:\Windows\system32\drivers\RTDVHD64.sys 15:27:43.0509 0x1808 IntcAzAudAddService - ok 15:27:43.0550 0x1808 [ FC727061C0F47C8059E88E05D5C8E381, C7A3782F5D86C7FDE57AA1F2EE81638C5FC3072ACC6E572BA2EC7B3CFF389800 ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys 15:27:43.0561 0x1808 IntcDAud - ok 15:27:43.0597 0x1808 [ 28D387EEFAD7CC3A0BEB9C3262E83ADD, 41C3232407CEB4DA84A465018F23B842D67EA9412C02EE3C8DED4D66ABBDEC2A ] Intel(R) PROSet Monitoring Service C:\Windows\system32\IProsetMonitor.exe 15:27:43.0600 0x1808 Intel(R) PROSet Monitoring Service - ok 15:27:43.0619 0x1808 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 15:27:43.0620 0x1808 intelide - ok 15:27:43.0653 0x1808 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 15:27:43.0656 0x1808 intelppm - ok 15:27:43.0688 0x1808 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 15:27:43.0694 0x1808 IPBusEnum - ok 15:27:43.0717 0x1808 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 15:27:43.0721 0x1808 IpFilterDriver - ok 15:27:43.0806 0x1808 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 15:27:43.0820 0x1808 iphlpsvc - ok 15:27:43.0824 0x1808 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 15:27:43.0826 0x1808 IPMIDRV - ok 15:27:43.0830 0x1808 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 15:27:43.0832 0x1808 IPNAT - ok 15:27:43.0851 0x1808 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 15:27:43.0852 0x1808 IRENUM - ok 15:27:43.0867 0x1808 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 15:27:43.0868 0x1808 isapnp - ok 15:27:43.0929 0x1808 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 15:27:43.0938 0x1808 iScsiPrt - ok 15:27:43.0981 0x1808 [ 6C85719A21B3F62C2C76280F4BD36C7B, 471E333467937720EF9369419EEDE5C2246C976123B437E0AC66F394CF1C056A ] jhi_service C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe 15:27:43.0989 0x1808 jhi_service - ok 15:27:44.0002 0x1808 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 15:27:44.0003 0x1808 kbdclass - ok 15:27:44.0015 0x1808 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 15:27:44.0016 0x1808 kbdhid - ok 15:27:44.0045 0x1808 [ 5673794F254FE312AF62D9DA32805A2F, 76400BF26F87303924A4FA9DFE5DD13170D1E4A195CD12548DBAA0E6E8C11B1B ] KeyIso C:\Windows\system32\lsass.exe 15:27:44.0047 0x1808 KeyIso - ok 15:27:44.0104 0x1808 [ 5781DA0CFB8833F5D8AEB433233C7294, 5EF52B532257E8CD34CEAFA405FF022CB1127B6A92BEE5578BC73B0380556D2A ] kl1 C:\Windows\system32\DRIVERS\kl1.sys 15:27:44.0117 0x1808 kl1 - ok 15:27:44.0129 0x1808 [ EE7A44540B65B6FF617DCB8929C9FDAE, E9FB0BEAA1692CEBE8F6E1DED6AE49EFE2679F606CD251AE2222095D37129CDA ] kldisk C:\Windows\system32\DRIVERS\kldisk.sys 15:27:44.0131 0x1808 kldisk - ok 15:27:44.0182 0x1808 [ 119FC2FA9972458FF15BC17F2C36AB99, 6D45F8C9DC0CA7E8CA24E339B543E255C2A36349F9E510F20415FC4F6A1BD868 ] klflt C:\Windows\system32\DRIVERS\klflt.sys 15:27:44.0188 0x1808 klflt - ok 15:27:44.0237 0x1808 [ B96959CDDDEAE40F5B57C52AC6F94EC0, 207CA534DEACA83231FCE92E248ECFA95B8A12FA7FD3D711B730D76FD4A481DD ] klhk C:\Windows\system32\DRIVERS\klhk.sys 15:27:44.0241 0x1808 klhk - ok 15:27:44.0309 0x1808 [ 61F6CCFE3D7B278E7F03DE7BC08DB694, 20D8BB1EEC95BDB11D91BF130D8BEE43048C950C274C8921D69B252A0C89BC7F ] KLIF C:\Windows\system32\DRIVERS\klif.sys 15:27:44.0328 0x1808 KLIF - ok 15:27:44.0350 0x1808 [ 3B360AA2710679C71E450745B96A801C, 2DDD55D838DA70D4834896AC70BEFB611488D894A79B14D5838401F5D9F93A84 ] KLIM6 C:\Windows\system32\DRIVERS\klim6.sys 15:27:44.0351 0x1808 KLIM6 - ok 15:27:44.0372 0x1808 [ 7DBA65D9D2974298B927287904EFF3D4, F69DDB0FF6CCEAE5EC7CD2A04A55E24D960DF4C6F935475C4AD466506D652255 ] klkbdflt C:\Windows\system32\DRIVERS\klkbdflt.sys 15:27:44.0373 0x1808 klkbdflt - ok 15:27:44.0391 0x1808 klkbdflt2 - ok 15:27:44.0407 0x1808 [ 99EA6658E783A8D683BC3B72FD9FD235, 28163AE6503A30722497B5176AFDB139C21DC318622ABF867B65AB2C7D96EF59 ] klmouflt C:\Windows\system32\DRIVERS\klmouflt.sys 15:27:44.0409 0x1808 klmouflt - ok 15:27:44.0420 0x1808 [ B33399BCA2034648520E34987CE2C0C9, F93B38D7DFAAE44B929BC2F739F03A9A67C6FA4AFC29B07DF96D2C7011DCB1AF ] klpd C:\Windows\system32\DRIVERS\klpd.sys 15:27:44.0421 0x1808 klpd - ok 15:27:44.0427 0x1808 [ B36DEE2A91F9388C4D3ED744592DE81D, 78D64539A375C80250FB9FA5E1DDA208B331A85916E19ED1353623DDF750EC58 ] kltdi C:\Windows\system32\DRIVERS\kltdi.sys 15:27:44.0429 0x1808 kltdi - ok 15:27:44.0440 0x1808 [ 88D5EF6EE17C280167D42B53282AB4BD, CFFF8D7CE24FCE62FB2C21E1B09DF914612C1EF96876855537B207F7BD83E872 ] Klwtp C:\Windows\system32\DRIVERS\klwtp.sys 15:27:44.0442 0x1808 Klwtp - ok 15:27:44.0458 0x1808 [ F9F8752748D6629EB8A5990F97D4346B, 833788E320F429BA25838F414F190C1D024D352F4F3CE050D593DCAEB2BAC2E8 ] kneps C:\Windows\system32\DRIVERS\kneps.sys 15:27:44.0461 0x1808 kneps - ok 15:27:44.0495 0x1808 [ 7BDDD24C5A148534D3737DBFA96B3E69, 06130316A21B1D67B5885AB7030603097EC96F7104F3766D67793ECFC1143158 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 15:27:44.0499 0x1808 KSecDD - ok 15:27:44.0519 0x1808 [ BA500732D160C61E889E8180EE53C86F, 2E9B9FEF4E2F86DBF6778AD0A581CE2F1CA0AC777440BA05AB36B031CE1E8781 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 15:27:44.0525 0x1808 KSecPkg - ok 15:27:44.0552 0x1808 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 15:27:44.0554 0x1808 ksthunk - ok 15:27:44.0583 0x1808 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 15:27:44.0593 0x1808 KtmRm - ok 15:27:44.0625 0x1808 [ F33C5D79D3273530E1892A0922283A7B, 06345FC5758D619FE049931BAFF99215C2A73385385EC8004B08071A27B58DEC ] L8042Kbd C:\Windows\system32\DRIVERS\L8042Kbd.sys 15:27:44.0628 0x1808 L8042Kbd - ok 15:27:44.0671 0x1808 [ A6FE2E63441094074F57243FB0FDB45A, B5131AC6DE6A3969BE83A552AA3015841528D4015502CFAB5506B7486FEA7171 ] L8042mou C:\Windows\system32\DRIVERS\L8042mou.Sys 15:27:44.0675 0x1808 L8042mou - ok 15:27:44.0708 0x1808 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\system32\srvsvc.dll 15:27:44.0718 0x1808 LanmanServer - ok 15:27:44.0739 0x1808 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 15:27:44.0746 0x1808 LanmanWorkstation - ok 15:27:44.0837 0x1808 [ 88E52495B47C67126B510AF53FDB0BC7, 75027CE5F578592BBA29F4FB8D820AC5D4E5C8F3095CAF9441818B14128BB4E4 ] LBTServ C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe 15:27:44.0843 0x1808 LBTServ - ok 15:27:44.0868 0x1808 [ BECBD7CD46776B8739EE18061F45A581, 5379671AB2C04F9F9F4E5197255A9562B4E5EA2463355F996066E6FAB4F25EC9 ] LEqdUsb C:\Windows\system32\DRIVERS\LEqdUsb.Sys 15:27:44.0871 0x1808 LEqdUsb - ok 15:27:44.0892 0x1808 [ 21D6BD7D62C270059EB8E2B1D4095880, 93DD175A37C8BAE95BD922965D75E4D479375F009BF531E47A5853B00E17FC45 ] LHidEqd C:\Windows\system32\DRIVERS\LHidEqd.Sys 15:27:44.0893 0x1808 LHidEqd - ok 15:27:44.0902 0x1808 [ B6552D382FF070B4ED34CBD6737277C0, 7C2C24454037170311B0267DEFB797E8DF8D157D62157D271BF7F5F74B2A12F3 ] LHidFilt C:\Windows\system32\DRIVERS\LHidFilt.Sys 15:27:44.0905 0x1808 LHidFilt - ok 15:27:44.0924 0x1808 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 15:27:44.0927 0x1808 lltdio - ok 15:27:44.0981 0x1808 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 15:27:44.0991 0x1808 lltdsvc - ok 15:27:45.0012 0x1808 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 15:27:45.0015 0x1808 lmhosts - ok 15:27:45.0022 0x1808 [ 73C1F563AB73D459DFFE682D66476558, 9B8BEE384C968DC6C37DD54B9128D9C2BA92EDBF7BDF49D753AA7DB165F18D00 ] LMouFilt C:\Windows\system32\DRIVERS\LMouFilt.Sys 15:27:45.0025 0x1808 LMouFilt - ok 15:27:45.0045 0x1808 [ F518C34C137348B7DBE5343ACC646A1C, 8CB748FC1B38217DD8AC160B44B7E96A7D0846E68131C662C7B18ABD4E77A66C ] LMouKE C:\Windows\system32\DRIVERS\LMouKE.Sys 15:27:45.0049 0x1808 LMouKE - ok 15:27:45.0129 0x1808 [ 97F9EAAC985A663394CD8F54DCD3E73A, D5BA3E7ED36BA361B1941F12D83568C30F7E49A8B9D54D3EBBBD05767E1F3B0A ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 15:27:45.0140 0x1808 LMS - ok 15:27:45.0182 0x1808 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 15:27:45.0186 0x1808 LSI_FC - ok 15:27:45.0203 0x1808 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 15:27:45.0207 0x1808 LSI_SAS - ok 15:27:45.0234 0x1808 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys 15:27:45.0238 0x1808 LSI_SAS2 - ok 15:27:45.0261 0x1808 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 15:27:45.0265 0x1808 LSI_SCSI - ok 15:27:45.0281 0x1808 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 15:27:45.0285 0x1808 luafv - ok 15:27:45.0348 0x1808 [ CFBC6C6D8A492697CABD1D353EE64933, DDAA844908324740C891EB8F08E2A8BB00457063B31C4A762745C1C2415FC12D ] MBAMProtector C:\Windows\system32\drivers\mbam.sys 15:27:45.0350 0x1808 MBAMProtector - ok 15:27:45.0447 0x1808 [ AB176B9E59C0435499D83047D84EDD59, 85B826A3972CE9AD885313B69B9C60328B850257667D0EB65DDE890D0BB06361 ] MBAMScheduler C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe 15:27:45.0468 0x1808 MBAMScheduler - ok 15:27:45.0549 0x1808 [ 40C126CB15FAB7D6C66490DCA9C1AED2, B32CEE2D2409232C245427D5E9647FDF59AF1D8AB5E8A98EE2D1F1314599FD14 ] MBAMService C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe 15:27:45.0570 0x1808 MBAMService - ok 15:27:45.0613 0x1808 [ D61070CFAD43038DC56AEAD9BFE9CE2A, BD77AEF60E7FD2015CB14A464799304359547146C14A47F8D25274ACFA2E42D5 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys 15:27:45.0615 0x1808 MBAMWebAccessControl - ok 15:27:45.0636 0x1808 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 15:27:45.0641 0x1808 Mcx2Svc - ok 15:27:45.0661 0x1808 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\drivers\megasas.sys 15:27:45.0664 0x1808 megasas - ok 15:27:45.0690 0x1808 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys 15:27:45.0701 0x1808 MegaSR - ok 15:27:45.0742 0x1808 [ A6518DCC42F7A6E999BB3BEA8FD87567, 8A9AE992F93F37E0723761EA271A7E1AA8172702C471041A17324474FC96B9BC ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys 15:27:45.0743 0x1808 MEIx64 - ok 15:27:45.0778 0x1808 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 15:27:45.0783 0x1808 MMCSS - ok 15:27:45.0800 0x1808 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 15:27:45.0803 0x1808 Modem - ok 15:27:45.0814 0x1808 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 15:27:45.0816 0x1808 monitor - ok 15:27:45.0829 0x1808 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 15:27:45.0832 0x1808 mouclass - ok 15:27:45.0857 0x1808 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 15:27:45.0860 0x1808 mouhid - ok 15:27:45.0892 0x1808 [ 67050452C0118BAF2883928E6FCCFE47, 335FC0AEB7B47DCC7CE0CF3F424EB60ACB1327D2FF6515F04D9AC03A10FF1E31 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 15:27:45.0894 0x1808 mountmgr - ok 15:27:45.0940 0x1808 [ 0DE2474F316C515482ABAD3B697F8714, 62862AE7432F5350068E96AD466093359C6CF444EB517AE6D09134FAF78C49F5 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 15:27:45.0946 0x1808 MozillaMaintenance - ok 15:27:45.0963 0x1808 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 15:27:45.0966 0x1808 mpio - ok 15:27:45.0981 0x1808 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 15:27:45.0983 0x1808 mpsdrv - ok 15:27:46.0009 0x1808 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 15:27:46.0021 0x1808 MpsSvc - ok 15:27:46.0065 0x1808 [ D7ADC2B83CA0B0381F75A98351F72CEE, 05476B7CA0486DF770AE492B5A90C85E3D3E7485152EB2FA30A19EC9BE44ED81 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 15:27:46.0067 0x1808 MRxDAV - ok 15:27:46.0145 0x1808 [ 355DF71D1DD1999E8AEDF986534B233C, 4F5B07A3E9F4C5EE259A72353835364BFEAEC792090C178C4EF91B517B1C49D0 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 15:27:46.0151 0x1808 mrxsmb - ok 15:27:46.0178 0x1808 [ A16FC9323A85CAEA5804D04646A91CF9, ABC9F1BE4B871EBB5FDED9FC248DABEC4004EBCCF53E6C4D1E54AF69653B00E0 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 15:27:46.0185 0x1808 mrxsmb10 - ok 15:27:46.0213 0x1808 [ 2539BE615440BA1EA4CF84A66B6C0AF9, 3369DE38EE49E5507A73036CDF3982AEF2331D61C7EC4F159004EAD14309A933 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 15:27:46.0217 0x1808 mrxsmb20 - ok 15:27:46.0255 0x1808 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 15:27:46.0258 0x1808 msahci - ok 15:27:46.0281 0x1808 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 15:27:46.0286 0x1808 msdsm - ok 15:27:46.0307 0x1808 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 15:27:46.0312 0x1808 MSDTC - ok 15:27:46.0335 0x1808 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 15:27:46.0336 0x1808 Msfs - ok 15:27:46.0360 0x1808 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 15:27:46.0362 0x1808 mshidkmdf - ok 15:27:46.0381 0x1808 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 15:27:46.0383 0x1808 msisadrv - ok 15:27:46.0421 0x1808 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 15:27:46.0425 0x1808 MSiSCSI - ok 15:27:46.0427 0x1808 msiserver - ok 15:27:46.0452 0x1808 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 15:27:46.0454 0x1808 MSKSSRV - ok 15:27:46.0484 0x1808 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 15:27:46.0485 0x1808 MSPCLOCK - ok 15:27:46.0500 0x1808 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 15:27:46.0501 0x1808 MSPQM - ok 15:27:46.0531 0x1808 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 15:27:46.0543 0x1808 MsRPC - ok 15:27:46.0556 0x1808 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys 15:27:46.0557 0x1808 mssmbios - ok 15:27:46.0571 0x1808 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 15:27:46.0573 0x1808 MSTEE - ok 15:27:46.0588 0x1808 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys 15:27:46.0589 0x1808 MTConfig - ok 15:27:46.0607 0x1808 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 15:27:46.0611 0x1808 Mup - ok 15:27:46.0648 0x1808 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 15:27:46.0665 0x1808 napagent - ok 15:27:46.0694 0x1808 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 15:27:46.0700 0x1808 NativeWifiP - ok 15:27:46.0790 0x1808 [ F7309F42555F8AAB7144A51A1F2585B0, 065277A8AFAEE3888C997A76D2F751070F92DF4C3354D16B194860B4BDAFF937 ] NDIS C:\Windows\system32\drivers\ndis.sys 15:27:46.0804 0x1808 NDIS - ok 15:27:46.0817 0x1808 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 15:27:46.0819 0x1808 NdisCap - ok 15:27:46.0836 0x1808 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 15:27:46.0837 0x1808 NdisTapi - ok 15:27:46.0851 0x1808 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 15:27:46.0854 0x1808 Ndisuio - ok 15:27:46.0881 0x1808 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 15:27:46.0888 0x1808 NdisWan - ok 15:27:46.0910 0x1808 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 15:27:46.0912 0x1808 NDProxy - ok 15:27:46.0919 0x1808 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 15:27:46.0921 0x1808 NetBIOS - ok 15:27:46.0937 0x1808 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 15:27:46.0943 0x1808 NetBT - ok 15:27:46.0954 0x1808 [ 5673794F254FE312AF62D9DA32805A2F, 76400BF26F87303924A4FA9DFE5DD13170D1E4A195CD12548DBAA0E6E8C11B1B ] Netlogon C:\Windows\system32\lsass.exe 15:27:46.0956 0x1808 Netlogon - ok 15:27:47.0011 0x1808 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 15:27:47.0024 0x1808 Netman - ok 15:27:47.0084 0x1808 [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 15:27:47.0126 0x1808 NetMsmqActivator - ok 15:27:47.0134 0x1808 [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 15:27:47.0138 0x1808 NetPipeActivator - ok 15:27:47.0166 0x1808 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 15:27:47.0181 0x1808 netprofm - ok 15:27:47.0188 0x1808 [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 15:27:47.0190 0x1808 NetTcpActivator - ok 15:27:47.0194 0x1808 [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 15:27:47.0197 0x1808 NetTcpPortSharing - ok 15:27:47.0257 0x1808 [ 73CE12B8BDD747B0063CB0A7EF44CEA7, F570BB52BE460DBA6203698CC96FFD9674E1903D0E0F5C49375BE3F8D8E89582 ] netvsc C:\Windows\system32\DRIVERS\netvsc60.sys 15:27:47.0260 0x1808 netvsc - ok 15:27:47.0286 0x1808 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 15:27:47.0289 0x1808 nfrd960 - ok 15:27:47.0341 0x1808 [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll 15:27:47.0349 0x1808 NlaSvc - ok 15:27:47.0362 0x1808 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 15:27:47.0364 0x1808 Npfs - ok 15:27:47.0374 0x1808 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 15:27:47.0377 0x1808 nsi - ok 15:27:47.0385 0x1808 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 15:27:47.0386 0x1808 nsiproxy - ok 15:27:47.0463 0x1808 [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 15:27:47.0507 0x1808 Ntfs - ok 15:27:47.0515 0x1808 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 15:27:47.0517 0x1808 Null - ok 15:27:47.0559 0x1808 [ E366A5681C50785D4ED04FCFD65C3415, 7FF7B4B8F09E773401AE879897E60BF494B57B9ACEE990204A4C98A3FB183A33 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys 15:27:47.0566 0x1808 NVHDA - ok 15:27:47.0899 0x1808 [ 2232AE1BB51A96A7381A2CA17DF12E24, 4813E27BC14EB3CBD55AF89B098EA5C8DA4C7FF0B6CCB7AACFC43BC0E578C988 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 15:27:48.0077 0x1808 nvlddmkm - ok 15:27:48.0239 0x1808 [ 72DD6225BA6055472522195F96473639, 27C8F847B247645061C0CD6DFCC986DA27638A9DFE686040160DFDCF7B3A6E72 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe 15:27:48.0265 0x1808 NvNetworkService - ok 15:27:48.0318 0x1808 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 15:27:48.0324 0x1808 nvraid - ok 15:27:48.0347 0x1808 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 15:27:48.0353 0x1808 nvstor - ok 15:27:48.0419 0x1808 [ 4680DDDDDBA1CB1D56D49B4A6134155C, BF6E538BC10B23F6D93143F5C48155245852798D4846F401E0DA70A5BCFC74E1 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys 15:27:48.0421 0x1808 NvStreamKms - ok 15:27:48.0612 0x1808 [ E14F52B60581EE71849CD45186892046, 72B3E92CD34489306AB7D794C4C1F67513DE80C72A847DCF7A3EEFE2254762D0 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe 15:27:48.0689 0x1808 NvStreamSvc - ok 15:27:48.0762 0x1808 [ 2C8DD5A34A81715865D66D7AF39362A6, 62F9D873127921EE2EAA80B73E8994C4BF6DA7EEDACAEA030B8D58E086FD3850 ] nvsvc C:\Windows\system32\nvvsvc.exe 15:27:48.0790 0x1808 nvsvc - ok 15:27:48.0835 0x1808 [ 35DFC12FD7E44B7CB8CCD7E5A2B3975A, 36E0E39646636F6E027691E5C3903C51479B3F707BDEA40F460FD27E357DA14E ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys 15:27:48.0838 0x1808 nvvad_WaveExtensible - ok 15:27:48.0938 0x1808 [ 32082389C3400249B8E5EC8C676AE167, 184727F35D177AE612453137C6956BCC1AC4BC539FAAC1A93E5253520E15E5EF ] NVWMI C:\Windows\system32\nvwmi64.exe 15:27:48.0974 0x1808 NVWMI - ok 15:27:49.0014 0x1808 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 15:27:49.0019 0x1808 nv_agp - ok 15:27:49.0051 0x1808 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 15:27:49.0055 0x1808 ohci1394 - ok 15:27:49.0173 0x1808 [ 40CB809645F1D0A93C535F9B0402F269, E683ED4ED824CE4E49715F23E3D3E8245B398D7A0D279E1F31470B9D7AF7E223 ] Origin Client Service C:\Program Files (x86)\Origin\OriginClientService.exe 15:27:49.0203 0x1808 Origin Client Service - ok 15:27:49.0340 0x1808 [ 4708DC527C988315627302B212F22E1C, 57CEC330221A144B27853143F30A9BC5606A85961DEB3E9AFB0DD418B6E23C3E ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 15:27:49.0348 0x1808 ose - ok 15:27:49.0567 0x1808 [ FE9C0029E1AF26350D9985D00520E5C8, 967079CCF7B2CBD4B48C9F076675C26AF93A1CEC26C96811F279414E34004EE6 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 15:27:49.0639 0x1808 osppsvc - ok 15:27:49.0701 0x1808 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 15:27:49.0714 0x1808 p2pimsvc - ok 15:27:49.0738 0x1808 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 15:27:49.0746 0x1808 p2psvc - ok 15:27:49.0775 0x1808 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\drivers\parport.sys 15:27:49.0777 0x1808 Parport - ok 15:27:49.0810 0x1808 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 15:27:49.0814 0x1808 partmgr - ok 15:27:49.0856 0x1808 [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc C:\Windows\System32\pcasvc.dll 15:27:49.0865 0x1808 PcaSvc - ok 15:27:49.0891 0x1808 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 15:27:49.0897 0x1808 pci - ok 15:27:49.0934 0x1808 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 15:27:49.0935 0x1808 pciide - ok 15:27:49.0959 0x1808 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 15:27:49.0967 0x1808 pcmcia - ok 15:27:49.0990 0x1808 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 15:27:49.0992 0x1808 pcw - ok 15:27:50.0019 0x1808 [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH C:\Windows\system32\drivers\peauth.sys 15:27:50.0032 0x1808 PEAUTH - ok 15:27:50.0097 0x1808 [ B9B0A4299DD2D76A4243F75FD54DC680, BBF62E9628131FA396EB08D63B76D2D5FBDD61339E92B759125A066470D1C039 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll 15:27:50.0118 0x1808 PeerDistSvc - ok 15:27:50.0213 0x1808 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 15:27:50.0216 0x1808 PerfHost - ok 15:27:50.0276 0x1808 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll 15:27:50.0297 0x1808 pla - ok 15:27:50.0348 0x1808 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 15:27:50.0363 0x1808 PlugPlay - ok 15:27:50.0456 0x1808 [ CD421DDB5C6E5458CE52EDC36DE7DC5B, 7B9C0A8B2B86BBF5D7E02F2620B0015A2530CBBC99724BE20313DE53EB31D62E ] PnkBstrA C:\Windows\system32\PnkBstrA.exe 15:27:50.0458 0x1808 PnkBstrA - ok 15:27:50.0464 0x1808 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 15:27:50.0466 0x1808 PNRPAutoReg - ok 15:27:50.0487 0x1808 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 15:27:50.0499 0x1808 PNRPsvc - ok 15:27:50.0562 0x1808 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 15:27:50.0572 0x1808 PolicyAgent - ok 15:27:50.0592 0x1808 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 15:27:50.0596 0x1808 Power - ok 15:27:50.0625 0x1808 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 15:27:50.0628 0x1808 PptpMiniport - ok 15:27:50.0645 0x1808 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\drivers\processr.sys 15:27:50.0648 0x1808 Processor - ok 15:27:50.0711 0x1808 [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll 15:27:50.0720 0x1808 ProfSvc - ok 15:27:50.0729 0x1808 [ 5673794F254FE312AF62D9DA32805A2F, 76400BF26F87303924A4FA9DFE5DD13170D1E4A195CD12548DBAA0E6E8C11B1B ] ProtectedStorage C:\Windows\system32\lsass.exe 15:27:50.0731 0x1808 ProtectedStorage - ok 15:27:50.0751 0x1808 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 15:27:50.0756 0x1808 Psched - ok 15:27:50.0801 0x1808 [ BC08F7F3C53CBEE68670ED1314E290FD, EC683DDE60AFED297D28BC7570BB6DA27A94F52417AD6DE1FBE265255F4051DD ] PxHlpa64 C:\Windows\system32\Drivers\PxHlpa64.sys 15:27:50.0804 0x1808 PxHlpa64 - ok 15:27:50.0875 0x1808 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\drivers\ql2300.sys 15:27:50.0897 0x1808 ql2300 - ok 15:27:50.0921 0x1808 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 15:27:50.0924 0x1808 ql40xx - ok 15:27:50.0952 0x1808 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 15:27:50.0963 0x1808 QWAVE - ok 15:27:50.0975 0x1808 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 15:27:50.0978 0x1808 QWAVEdrv - ok 15:27:50.0992 0x1808 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 15:27:50.0993 0x1808 RasAcd - ok 15:27:51.0040 0x1808 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 15:27:51.0044 0x1808 RasAgileVpn - ok 15:27:51.0057 0x1808 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 15:27:51.0063 0x1808 RasAuto - ok 15:27:51.0079 0x1808 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 15:27:51.0085 0x1808 Rasl2tp - ok 15:27:51.0107 0x1808 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 15:27:51.0114 0x1808 RasMan - ok 15:27:51.0128 0x1808 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 15:27:51.0130 0x1808 RasPppoe - ok 15:27:51.0133 0x1808 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 15:27:51.0135 0x1808 RasSstp - ok 15:27:51.0160 0x1808 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 15:27:51.0165 0x1808 rdbss - ok 15:27:51.0175 0x1808 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 15:27:51.0176 0x1808 rdpbus - ok 15:27:51.0192 0x1808 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 15:27:51.0193 0x1808 RDPCDD - ok 15:27:51.0215 0x1808 [ 1B6163C503398B23FF8B939C67747683, 339A5AA7970FF34FAAB213B655860C5B0DEC5F983A4A11A088017D849F320ACE ] RDPDR C:\Windows\system32\drivers\rdpdr.sys 15:27:51.0218 0x1808 RDPDR - ok 15:27:51.0230 0x1808 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 15:27:51.0232 0x1808 RDPENCDD - ok 15:27:51.0238 0x1808 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 15:27:51.0240 0x1808 RDPREFMP - ok 15:27:51.0284 0x1808 [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 15:27:51.0291 0x1808 RDPWD - ok 15:27:51.0310 0x1808 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 15:27:51.0318 0x1808 rdyboost - ok 15:27:51.0342 0x1808 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 15:27:51.0346 0x1808 RemoteAccess - ok 15:27:51.0361 0x1808 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 15:27:51.0366 0x1808 RemoteRegistry - ok 15:27:51.0468 0x1808 [ 3C957189B31C34D3AD21967B12B6AED7, 878FE6EA03F60592D6D557B905A5119E2CC836C2A6A86ED2867C3C9B0F0FDBA2 ] RoxMediaDB12OEM C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe 15:27:51.0485 0x1808 RoxMediaDB12OEM - ok 15:27:51.0521 0x1808 [ 2B73088CC2CA757A172B425C9398E5BC, 3D296B4D6F66F7729CC48FE54456E6E6D8207DBA7E31D66653566C128E53163B ] RoxWatch12 C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe 15:27:51.0525 0x1808 RoxWatch12 - ok 15:27:51.0536 0x1808 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 15:27:51.0539 0x1808 RpcEptMapper - ok 15:27:51.0551 0x1808 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 15:27:51.0552 0x1808 RpcLocator - ok 15:27:51.0573 0x1808 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll 15:27:51.0582 0x1808 RpcSs - ok 15:27:51.0601 0x1808 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 15:27:51.0603 0x1808 rspndr - ok 15:27:51.0647 0x1808 [ E029574DC4096BF8B124CE0E26708E7A, 392E619387445DCD8926270C6B5589D488599A2E5D1A6C213F37117F7CD05AAE ] rsutils C:\Windows\system32\DRIVERS\rsutils.sys 15:27:51.0649 0x1808 rsutils - ok 15:27:51.0668 0x1808 [ E60C0A09F997826C7627B244195AB581, E8630ED74B38B98BF584E353D992C1311BC36AB7F20A1BB66C9CD65CE1E46F8D ] s3cap C:\Windows\system32\drivers\vms3cap.sys 15:27:51.0670 0x1808 s3cap - ok 15:27:51.0687 0x1808 [ 5673794F254FE312AF62D9DA32805A2F, 76400BF26F87303924A4FA9DFE5DD13170D1E4A195CD12548DBAA0E6E8C11B1B ] SamSs C:\Windows\system32\lsass.exe 15:27:51.0688 0x1808 SamSs - ok 15:27:51.0706 0x1808 SBFWIMCLMP - ok 15:27:51.0723 0x1808 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 15:27:51.0727 0x1808 sbp2port - ok 15:27:51.0757 0x1808 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 15:27:51.0766 0x1808 SCardSvr - ok 15:27:51.0777 0x1808 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 15:27:51.0780 0x1808 scfilter - ok 15:27:51.0831 0x1808 [ 40686B59C127F0C93B4234E4A1E3472A, B2DD61CB796C6AA8AFD285D43472B94646CA6D331D282818E0FDC9DE28DDE9CF ] Schedule C:\Windows\system32\schedsvc.dll 15:27:51.0848 0x1808 Schedule - ok 15:27:51.0914 0x1808 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 15:27:51.0917 0x1808 SCPolicySvc - ok 15:27:51.0943 0x1808 [ 8B56BDCE6A303DDE63D63440D1CF9AD1, 66A4356C29D00A1B8A95975C073AE4E6D2A90CBF3B143FE9B83B96BEC0805D46 ] ScreamBAudioSvc C:\Windows\system32\drivers\ScreamingBAudio64.sys 15:27:51.0946 0x1808 ScreamBAudioSvc - ok 15:27:51.0956 0x1808 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 15:27:51.0964 0x1808 SDRSVC - ok 15:27:52.0006 0x1808 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 15:27:52.0008 0x1808 secdrv - ok 15:27:52.0025 0x1808 [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll 15:27:52.0030 0x1808 seclogon - ok 15:27:52.0047 0x1808 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll 15:27:52.0061 0x1808 SENS - ok 15:27:52.0068 0x1808 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 15:27:52.0070 0x1808 SensrSvc - ok 15:27:52.0102 0x1808 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 15:27:52.0104 0x1808 Serenum - ok 15:27:52.0122 0x1808 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\DRIVERS\serial.sys 15:27:52.0126 0x1808 Serial - ok 15:27:52.0161 0x1808 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\drivers\sermouse.sys 15:27:52.0164 0x1808 sermouse - ok 15:27:52.0192 0x1808 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 15:27:52.0195 0x1808 SessionEnv - ok 15:27:52.0209 0x1808 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 15:27:52.0210 0x1808 sffdisk - ok 15:27:52.0222 0x1808 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 15:27:52.0223 0x1808 sffp_mmc - ok 15:27:52.0239 0x1808 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 15:27:52.0240 0x1808 sffp_sd - ok 15:27:52.0260 0x1808 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 15:27:52.0262 0x1808 sfloppy - ok 15:27:52.0297 0x1808 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 15:27:52.0308 0x1808 SharedAccess - ok 15:27:52.0336 0x1808 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 15:27:52.0343 0x1808 ShellHWDetection - ok 15:27:52.0358 0x1808 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys 15:27:52.0360 0x1808 SiSRaid2 - ok 15:27:52.0367 0x1808 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 15:27:52.0369 0x1808 SiSRaid4 - ok 15:27:52.0431 0x1808 [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 15:27:52.0442 0x1808 SkypeUpdate - ok 15:27:52.0463 0x1808 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 15:27:52.0466 0x1808 Smb - ok 15:27:52.0511 0x1808 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 15:27:52.0514 0x1808 SNMPTRAP - ok 15:27:52.0519 0x1808 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 15:27:52.0521 0x1808 spldr - ok 15:27:52.0564 0x1808 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 15:27:52.0580 0x1808 Spooler - ok 15:27:52.0754 0x1808 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe 15:27:52.0805 0x1808 sppsvc - ok 15:27:52.0827 0x1808 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 15:27:52.0830 0x1808 sppuinotify - ok 15:27:52.0882 0x1808 [ 1D437579B9E02829011BE00E482C63A0, DF2CFDAD690543CEC79EEE548E643929093FC7AEBF9E409A7DF8B1F64860F7C5 ] Spyder5 C:\Windows\system32\DRIVERS\dccmtr.sys 15:27:52.0884 0x1808 Spyder5 - ok 15:27:52.0969 0x1808 [ 7A3E3D2D71D91D309B2F26F30B3798A6, F5CB4D9045C67DE22DFE1D82553F0E15AA53617D005EF329E0756DAA720D6C7D ] SpyHunter 4 Service C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe 15:27:52.0984 0x1808 SpyHunter 4 Service - ok 15:27:53.0015 0x1808 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys 15:27:53.0023 0x1808 srv - ok 15:27:53.0040 0x1808 [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 15:27:53.0047 0x1808 srv2 - ok 15:27:53.0064 0x1808 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 15:27:53.0068 0x1808 srvnet - ok 15:27:53.0160 0x1808 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 15:27:53.0170 0x1808 SSDPSRV - ok 15:27:53.0191 0x1808 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 15:27:53.0194 0x1808 SstpSvc - ok 15:27:53.0265 0x1808 [ 591249EA969797C2A24629AF7C71A6F8, 61F28FB495657916514DE2A7FFD4AD833A1B2BBA5591616BE0C9CCD7DAFA40B7 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 15:27:53.0309 0x1808 Steam Client Service - ok 15:27:53.0407 0x1808 [ D2230317777033CD0456990BFC4994E5, 0F2F559593EAD7AB4596E67E9AE56E5ABF5C945201366CFC972357C22A4F776A ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 15:27:53.0419 0x1808 Stereo Service - ok 15:27:53.0450 0x1808 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\drivers\stexstor.sys 15:27:53.0453 0x1808 stexstor - ok 15:27:53.0511 0x1808 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 15:27:53.0530 0x1808 stisvc - ok 15:27:53.0577 0x1808 [ 7731F46EC0D687A931CBA063E8F90EF0, 5CF996A209756B901316C4406C7D3E52ECC9C15A1BDB0D4D9C77846AB29FD040 ] stllssvr C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe 15:27:53.0581 0x1808 stllssvr - ok 15:27:53.0635 0x1808 [ C40841817EF57D491F22EB103DA587CC, 5FAA2DE43BADC16A898C0C290C44C41E4411D919A95FE8C6FF45EA7A34495079 ] StorSvc C:\Windows\system32\storsvc.dll 15:27:53.0639 0x1808 StorSvc - ok 15:27:53.0671 0x1808 [ D34E4943D5AC096C8EDEEBFD80D76E23, 1DD7F6F97060B5F763A04ACA1F75E59DAB09EF824FD09B83FC3C192837D006DE ] storvsc C:\Windows\system32\drivers\storvsc.sys 15:27:53.0674 0x1808 storvsc - ok 15:27:53.0694 0x1808 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\DRIVERS\swenum.sys 15:27:53.0696 0x1808 swenum - ok 15:27:53.0789 0x1808 [ F577910A133A592234EBAAD3F3AFA258, 36F514740EE2D2B2F7ABFFFA13D575233EC4CE774EB58BF889C09930FEF1F443 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe 15:27:53.0806 0x1808 SwitchBoard - ok 15:27:53.0844 0x1808 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 15:27:53.0864 0x1808 swprv - ok 15:27:53.0874 0x1808 [ 4CDD7DF58730D23BA9CB5829A6E2ECEA, 89A2A1604C2BF985894000F51D9D376B32F1327197866850B5BF8640272DE828 ] SynthVid C:\Windows\system32\DRIVERS\VMBusVideoM.sys 15:27:53.0876 0x1808 SynthVid - ok 15:27:53.0941 0x1808 [ 2E730941CC5BF6200A4F56D1E9C24AAD, 758836D55DC84F3EBE9917DC6FAB8E6170A5B238FEDBCFDB6D7C5C6EA98E08B2 ] SysMain C:\Windows\system32\sysmain.dll 15:27:53.0974 0x1808 SysMain - ok 15:27:54.0016 0x1808 [ CB13521249813C485B912BED9DF94774, 95E678A577160C7A2967767D5F6C37CF5CA4BFA2EA01D64FCAA804E790444ADE ] sysmon C:\Windows\system32\DRIVERS\sysmon.sys 15:27:54.0022 0x1808 sysmon - ok 15:27:54.0032 0x1808 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 15:27:54.0038 0x1808 TabletInputService - ok 15:27:54.0054 0x1808 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 15:27:54.0060 0x1808 TapiSrv - ok 15:27:54.0073 0x1808 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll 15:27:54.0076 0x1808 TBS - ok 15:27:54.0172 0x1808 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 15:27:54.0200 0x1808 Tcpip - ok 15:27:54.0261 0x1808 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 15:27:54.0288 0x1808 TCPIP6 - ok 15:27:54.0309 0x1808 [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 15:27:54.0310 0x1808 tcpipreg - ok 15:27:54.0338 0x1808 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 15:27:54.0339 0x1808 TDPIPE - ok 15:27:54.0365 0x1808 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 15:27:54.0368 0x1808 TDTCP - ok 15:27:54.0408 0x1808 [ AA77EB517D2F07A947294F260E3ACA83, B7A5DF3066830C0C2302B059778A67419792058A0D300C471DE40AB245EA7E58 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 15:27:54.0413 0x1808 tdx - ok 15:27:54.0420 0x1808 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\DRIVERS\termdd.sys 15:27:54.0423 0x1808 TermDD - ok 15:27:54.0495 0x1808 [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll 15:27:54.0507 0x1808 TermService - ok 15:27:54.0515 0x1808 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 15:27:54.0518 0x1808 Themes - ok 15:27:54.0531 0x1808 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 15:27:54.0533 0x1808 THREADORDER - ok 15:27:54.0547 0x1808 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 15:27:54.0550 0x1808 TrkWks - ok 15:27:54.0609 0x1808 [ 370A6907DDF79532A39319492B1FA38A, 46AECC5160F04FC3FFE4D37B404CCBBD1C5DC1501C2CEEE8284FF544DBDF10F8 ] truecrypt C:\Windows\system32\drivers\truecrypt.sys 15:27:54.0614 0x1808 truecrypt - ok 15:27:54.0652 0x1808 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 15:27:54.0659 0x1808 TrustedInstaller - ok 15:27:54.0692 0x1808 [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 15:27:54.0694 0x1808 tssecsrv - ok 15:27:54.0714 0x1808 [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 15:27:54.0718 0x1808 TsUsbFlt - ok 15:27:54.0732 0x1808 [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys 15:27:54.0734 0x1808 TsUsbGD - ok 15:27:54.0769 0x1808 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 15:27:54.0774 0x1808 tunnel - ok 15:27:54.0794 0x1808 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\drivers\uagp35.sys 15:27:54.0797 0x1808 uagp35 - ok 15:27:54.0820 0x1808 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 15:27:54.0825 0x1808 udfs - ok 15:27:54.0840 0x1808 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 15:27:54.0842 0x1808 UI0Detect - ok 15:27:54.0863 0x1808 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 15:27:54.0865 0x1808 uliagpkx - ok 15:27:54.0879 0x1808 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys 15:27:54.0882 0x1808 umbus - ok 15:27:54.0898 0x1808 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\drivers\umpass.sys 15:27:54.0900 0x1808 UmPass - ok 15:27:54.0956 0x1808 [ A293DCD756D04D8492A750D03B9A297C, 203600ED0B7F8BA4C6D6F4ED810F4DF5AB70928B06EC4131C5D8ADF628444ED1 ] UmRdpService C:\Windows\System32\umrdp.dll 15:27:54.0965 0x1808 UmRdpService - ok 15:27:55.0150 0x1808 [ A69CD6BDB82872999D2E46F9324ADA83, 1F06D5B716D48E693A082C1FC49D80405F50D60C78FDF5829FF51F1CC11CF011 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe 15:27:55.0188 0x1808 UNS - ok 15:27:55.0198 0x1808 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 15:27:55.0205 0x1808 upnphost - ok 15:27:55.0238 0x1808 [ 91D3C92A44FC682DD791147604E79152, AA0B6799BF9C26C2C1793C91295288A4989AA43EC5E070B650DA7F0A142817CE ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 15:27:55.0240 0x1808 usbccgp - ok 15:27:55.0267 0x1808 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 15:27:55.0271 0x1808 usbcir - ok 15:27:55.0295 0x1808 [ F7FFDF2A1D19A76A87759126B244C816, C91F09D77E22D976952A46F7B93F611B719EDAF694D538242FA8FAF1BA9BB2F0 ] usbehci C:\Windows\system32\drivers\usbehci.sys 15:27:55.0298 0x1808 usbehci - ok 15:27:55.0354 0x1808 [ 245FE7FC634D6A993E682E0A9EBA4ABB, F7A536D215EE3A63358EC8B5946D7BB3B56357BF91347B07013E00DAC98775B6 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 15:27:55.0366 0x1808 usbhub - ok 15:27:55.0432 0x1808 [ F9B3054339A71F16430F6585EBC8BE96, F3EA2CE52504CEC03DBD274C40F2A01BFD52960D52454B4CB0614BC203FD0DB7 ] USBMULCD C:\Windows\system32\drivers\CM10664.sys 15:27:55.0451 0x1808 USBMULCD - ok 15:27:55.0483 0x1808 [ C1A8966E0D09BFB501045105B30D86F2, 5BB95FBA441B898E258A3BFE174FC1042A04C19E25C59DE1FD90594290B11DA9 ] usbohci C:\Windows\system32\drivers\usbohci.sys 15:27:55.0485 0x1808 usbohci - ok 15:27:55.0506 0x1808 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\drivers\usbprint.sys 15:27:55.0508 0x1808 usbprint - ok 15:27:55.0541 0x1808 [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 15:27:55.0545 0x1808 USBSTOR - ok 15:27:55.0558 0x1808 [ 2E682DCE4319A90E02A327F8A427544A, 3528C5A4669BAD53041085C3E72C64388D308E42AD9D1FAC85B6F2FFD81610FB ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 15:27:55.0561 0x1808 usbuhci - ok 15:27:55.0585 0x1808 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 15:27:55.0590 0x1808 UxSms - ok 15:27:55.0612 0x1808 [ 5673794F254FE312AF62D9DA32805A2F, 76400BF26F87303924A4FA9DFE5DD13170D1E4A195CD12548DBAA0E6E8C11B1B ] VaultSvc C:\Windows\system32\lsass.exe 15:27:55.0614 0x1808 VaultSvc - ok 15:27:55.0630 0x1808 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 15:27:55.0633 0x1808 vdrvroot - ok 15:27:55.0662 0x1808 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 15:27:55.0675 0x1808 vds - ok 15:27:55.0710 0x1808 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 15:27:55.0711 0x1808 vga - ok 15:27:55.0723 0x1808 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 15:27:55.0724 0x1808 VgaSave - ok 15:27:55.0740 0x1808 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 15:27:55.0748 0x1808 vhdmp - ok 15:27:55.0766 0x1808 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 15:27:55.0767 0x1808 viaide - ok 15:27:55.0792 0x1808 [ 2DFD1EB9DE564460003DE1605A275E8D, 01A4BAF6D7C5B3205D9ABE9A346565D13DB8C5D5C179CBDF4C558196100C394D ] vidsflt61 C:\Windows\system32\DRIVERS\vsflt61.sys 15:27:55.0798 0x1808 vidsflt61 - ok 15:27:55.0859 0x1808 [ 7DE90B48F210D29649380545DB45A187, 09522F84285D62B961868DA98C40B82E746CA4D24A9780905673A2349D6B07F4 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys 15:27:55.0861 0x1808 VMBusHID - ok 15:27:55.0881 0x1808 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 15:27:55.0885 0x1808 volmgr - ok 15:27:55.0907 0x1808 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 15:27:55.0913 0x1808 volmgrx - ok 15:27:55.0929 0x1808 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys 15:27:55.0935 0x1808 volsnap - ok 15:27:55.0983 0x1808 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 15:27:55.0990 0x1808 vsmraid - ok 15:27:56.0036 0x1808 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 15:27:56.0061 0x1808 VSS - ok 15:27:56.0087 0x1808 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 15:27:56.0088 0x1808 vwifibus - ok 15:27:56.0115 0x1808 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 15:27:56.0122 0x1808 W32Time - ok 15:27:56.0126 0x1808 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\drivers\wacompen.sys 15:27:56.0128 0x1808 WacomPen - ok 15:27:56.0140 0x1808 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 15:27:56.0142 0x1808 WANARP - ok 15:27:56.0146 0x1808 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 15:27:56.0147 0x1808 Wanarpv6 - ok 15:27:56.0189 0x1808 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 15:27:56.0212 0x1808 wbengine - ok 15:27:56.0243 0x1808 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 15:27:56.0247 0x1808 WbioSrvc - ok 15:27:56.0263 0x1808 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 15:27:56.0270 0x1808 wcncsvc - ok 15:27:56.0278 0x1808 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 15:27:56.0281 0x1808 WcsPlugInService - ok 15:27:56.0288 0x1808 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\drivers\wd.sys 15:27:56.0289 0x1808 Wd - ok 15:27:56.0361 0x1808 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 15:27:56.0377 0x1808 Wdf01000 - ok 15:27:56.0411 0x1808 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\Windows\system32\wdi.dll 15:27:56.0414 0x1808 WdiServiceHost - ok 15:27:56.0419 0x1808 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\Windows\system32\wdi.dll 15:27:56.0424 0x1808 WdiSystemHost - ok 15:27:56.0457 0x1808 [ 4E89FC53493704BF835F0300DC201C34, FB3080725E144D93512DED81047D21C0582BC3412250EFF37E039108D7351F53 ] WebClient C:\Windows\System32\webclnt.dll 15:27:56.0468 0x1808 WebClient - ok 15:27:56.0481 0x1808 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 15:27:56.0486 0x1808 Wecsvc - ok 15:27:56.0495 0x1808 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 15:27:56.0498 0x1808 wercplsupport - ok 15:27:56.0528 0x1808 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 15:27:56.0534 0x1808 WerSvc - ok 15:27:56.0559 0x1808 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 15:27:56.0560 0x1808 WfpLwf - ok 15:27:56.0573 0x1808 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 15:27:56.0575 0x1808 WIMMount - ok 15:27:56.0598 0x1808 WinHttpAutoProxySvc - ok 15:27:56.0642 0x1808 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 15:27:56.0651 0x1808 Winmgmt - ok 15:27:56.0752 0x1808 [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM C:\Windows\system32\WsmSvc.dll 15:27:56.0782 0x1808 WinRM - ok 15:27:56.0834 0x1808 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 15:27:56.0842 0x1808 WinUsb - ok 15:27:56.0900 0x1808 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 15:27:56.0915 0x1808 Wlansvc - ok 15:27:56.0954 0x1808 [ 06C8FA1CF39DE6A735B54D906BA791C6, D8FEC7DE227781CDA876904701B2AA995268F74DCD6CB34AA0296C557FC283B6 ] wlcrasvc C:\Program Files\Windows Live\Mesh\wlcrasvc.exe 15:27:56.0955 0x1808 wlcrasvc - ok 15:27:57.0084 0x1808 [ 7E47C328FC4768CB8BEAFBCFAFA70362, C98BD6A0C2F70E069D5FD3BAB31BD028DFEAC0490D180BBC28A14BE375897D8C ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 15:27:57.0116 0x1808 wlidsvc - ok 15:27:57.0168 0x1808 [ 680A7846370000D20D7E74917D5B7936, 55B77B358039672845D361CA4205F3482D1F30A4654B610FD785A1337EFDC316 ] WmBEnum C:\Windows\system32\drivers\WmBEnum.sys 15:27:57.0170 0x1808 WmBEnum - ok 15:27:57.0183 0x1808 [ 14C35BA8189C6F65D839163AA285E954, 8981AA488320C75E26E1ABDF884B721A4065F5D28F54782598B03F21B8CDC020 ] WmFilter C:\Windows\system32\drivers\WmFilter.sys 15:27:57.0186 0x1808 WmFilter - ok 15:27:57.0215 0x1808 [ AC4331AF118A720F13C9C5CABBFE27BD, 2C5F453996B00078F3E8E731F6B3DD4529831BDA2146EAFC66727C9460E85112 ] WmHidLo C:\Windows\system32\drivers\WmHidLo.sys 15:27:57.0217 0x1808 WmHidLo - ok 15:27:57.0237 0x1808 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 15:27:57.0239 0x1808 WmiAcpi - ok 15:27:57.0262 0x1808 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 15:27:57.0270 0x1808 wmiApSrv - ok 15:27:57.0306 0x1808 WMPNetworkSvc - ok 15:27:57.0327 0x1808 [ 8488DD91A3EE54A8E29F02AD7BB8201E, D428ED991D9E4A8765C240B21884A262854278698D60862117AC5949713231F9 ] WmVirHid C:\Windows\system32\drivers\WmVirHid.sys 15:27:57.0329 0x1808 WmVirHid - ok 15:27:57.0345 0x1808 [ 14802B3A30AA849C97CB968CCC813BF3, 330AD828ABD040ECDBF58F7162978CD61BFC093CAD404FD2BCAC74E3F2EC542A ] WmXlCore C:\Windows\system32\drivers\WmXlCore.sys 15:27:57.0349 0x1808 WmXlCore - ok 15:27:57.0384 0x1808 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 15:27:57.0388 0x1808 WPCSvc - ok 15:27:57.0400 0x1808 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 15:27:57.0408 0x1808 WPDBusEnum - ok 15:27:57.0417 0x1808 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 15:27:57.0420 0x1808 ws2ifsl - ok 15:27:57.0444 0x1808 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\System32\wscsvc.dll 15:27:57.0448 0x1808 wscsvc - ok 15:27:57.0473 0x1808 [ 8D918B1DB190A4D9B1753A66FA8C96E8, DB7D2714DC04D2D6999A207D7399A5647C8653E5A1AD80856A65C5B6065AEDFE ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys 15:27:57.0475 0x1808 WSDPrintDevice - ok 15:27:57.0513 0x1808 [ 4A2A5C50DD1A63577D3ACA94269FBC7F, F75C1906D431CF871AD954218DF32A0F206E45FF49332DEF9F13C0A36A407047 ] WSDScan C:\Windows\system32\DRIVERS\WSDScan.sys 15:27:57.0516 0x1808 WSDScan - ok 15:27:57.0520 0x1808 WSearch - ok 15:27:57.0610 0x1808 [ 3D4032E6A5885C007AEF4BA816AB4032, 21EB2B5B5A64EED44B5B7743820842205175F52A6F5525BD0F95DCB2733F449C ] wuauserv C:\Windows\system32\wuaueng.dll 15:27:57.0649 0x1808 wuauserv - ok 15:27:57.0668 0x1808 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 15:27:57.0671 0x1808 WudfPf - ok 15:27:57.0703 0x1808 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 15:27:57.0710 0x1808 WUDFRd - ok 15:27:57.0738 0x1808 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 15:27:57.0745 0x1808 wudfsvc - ok 15:27:57.0770 0x1808 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 15:27:57.0774 0x1808 WwanSvc - ok 15:27:57.0800 0x1808 [ 2EE48CFCE7CA8E0DB4C44C7476C0943B, 2C324592F3F2D50BABA7123B6F9FC922667CC132777E019FF615F2D6F273A45E ] xusb21 C:\Windows\system32\DRIVERS\xusb21.sys 15:27:57.0802 0x1808 xusb21 - ok 15:27:57.0819 0x1808 ================ Scan global =============================== 15:27:57.0843 0x1808 [ 168EA9CD9BD6056BB6F60B57D5304BBE, 5A2F98754F042A7D80E7483842967EB362F01D57CE9720B24C7EDAA047F24C6F ] C:\Windows\system32\basesrv.dll 15:27:57.0879 0x1808 [ 96AEEE466EA56AF34AE4AD5E55DAD164, 467DA5C29E04E02520974163AEBF7FAA3DED8212A765616C0D877E4F36AD173C ] C:\Windows\system32\winsrv.dll 15:27:57.0889 0x1808 [ 96AEEE466EA56AF34AE4AD5E55DAD164, 467DA5C29E04E02520974163AEBF7FAA3DED8212A765616C0D877E4F36AD173C ] C:\Windows\system32\winsrv.dll 15:27:57.0915 0x1808 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 15:27:57.0942 0x1808 [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe 15:27:57.0948 0x1808 [ Global ] - ok 15:27:57.0949 0x1808 ================ Scan MBR ================================== 15:27:57.0958 0x1808 [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0 15:27:58.0209 0x1808 \Device\Harddisk0\DR0 - ok 15:27:58.0209 0x1808 ================ Scan VBR ================================== 15:27:58.0211 0x1808 [ 712A689D93FABB8CDD57C167F9C778A0 ] \Device\Harddisk0\DR0\Partition1 15:27:58.0313 0x1808 \Device\Harddisk0\DR0\Partition1 - ok 15:27:58.0317 0x1808 [ 760BCE4168D8C724C4BEF8FDEC16E23C ] \Device\Harddisk0\DR0\Partition2 15:27:58.0342 0x1808 \Device\Harddisk0\DR0\Partition2 - ok 15:27:58.0345 0x1808 [ 8E82282ACD0735E6A90950165D6D3A93 ] \Device\Harddisk0\DR0\Partition3 15:27:58.0347 0x1808 \Device\Harddisk0\DR0\Partition3 - ok 15:27:58.0348 0x1808 ================ Scan generic autorun ====================== 15:27:58.0481 0x1808 [ 4C748E4BBFF7795A623A6D122A16C5EB, 24C9EE6023B020B21F68C187B34DD7FC46A4FF27F2B565AA3DF35641CD64ACBB ] C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe 15:27:58.0521 0x1808 RtHDVCpl - ok 15:27:58.0550 0x1808 [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\rundll32.exe 15:27:58.0557 0x1808 Logitech Download Assistant - ok 15:27:58.0578 0x1808 [ 74354790ECAE60C11631BD7856C0AFD0, 4932908C79842CFDB4882A767BCAECB97F663892C9715D4FA1F4AE902335DCB5 ] C:\Windows\KHALMNPR.EXE 15:27:58.0581 0x1808 Kernel and Hardware Abstraction Layer - ok 15:27:58.0639 0x1808 [ 1315C5C5C54CE2AA37A155F97027DB59, 70CDA6AE7FF4FD08FAD931477C524957952EDC89985696FD988B9786A349C565 ] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe 15:27:58.0647 0x1808 AdobeAAMUpdater-1.0 - ok 15:27:58.0729 0x1808 [ 463C40BFC0FB8FF59049E2CA78695A40, 8D693A061A19E47CCADEEC844D4ACF59B5CD3CE97452018807884D2ACBEDA7FF ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe 15:27:58.0810 0x1808 NvBackend - ok 15:27:58.0924 0x1808 [ 43D9EA74B80A200FE2479B177895B7E4, DF8AF69439FCD224AD9C4448CD50DB66F9AC55842E618F709B7AAFBE16568635 ] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe 15:27:58.0969 0x1808 nwiz - ok 15:27:59.0010 0x1808 [ 0C3154D0620F974AD5C4E8D87626C8CF, 4E6B751F9C0D5D4833A12166BC5142E0A7402E98D00F570926ED9CA0936A8007 ] C:\Windows\system32\igfxtray.exe 15:27:59.0018 0x1808 IgfxTray - ok 15:27:59.0037 0x1808 [ E4AA3D28753EF9DB333FE40079993B09, ECC60BAA7D21EF97CDA17F45277FBFE52B2169155DDB157E34A7AE2EC1BEC185 ] C:\Windows\system32\hkcmd.exe 15:27:59.0043 0x1808 HotKeysCmds - ok 15:27:59.0063 0x1808 [ CF40080765D6F66FA93318C0DB6C7D1F, 015EE5BE439DAC6D3F7C7471EEF554C11F28947492E3F7AA14BB72622C327DCD ] C:\Windows\system32\igfxpers.exe 15:27:59.0070 0x1808 Persistence - ok 15:27:59.0156 0x1808 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 15:27:59.0241 0x1808 Sidebar - ok 15:27:59.0278 0x1808 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 15:27:59.0284 0x1808 mctadmin - ok 15:27:59.0326 0x1808 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 15:27:59.0341 0x1808 Sidebar - ok 15:27:59.0346 0x1808 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 15:27:59.0348 0x1808 mctadmin - ok 15:27:59.0377 0x1808 Skype - ok 15:27:59.0538 0x1808 [ FF74D2A2E3A3615A765B5181DB18551D, C38F06705B4E3264ABA10317BF3DE6D022E9B9D5B3016B08121512E84880963C ] C:\Program Files (x86)\Steam\steam.exe 15:27:59.0747 0x1808 Steam - ok 15:27:59.0765 0x1808 apphide - ok 15:27:59.0782 0x1808 [ 885F86017C883EADDA29103E760F3714, E9B094D6E56B0E725B33EAF88736455B84593811EB20C6F08581A8A302A9FC9E ] C:\AdwCleaner[C1].txt 15:27:59.0787 0x1808 Report - ok 15:27:59.0790 0x1808 Skype - ok 15:27:59.0979 0x1808 Discord - ok 15:28:00.0041 0x1808 [ ABA00430E252CD03C44347200645E286, 4208D91B83FE900ED6C44AC6564FE0C3051CAF626020A42143F4690409DF1CD7 ] C:\Program Files (x86)\FanaLEDs\FanaLEDs.exe 15:28:00.0055 0x1808 FanaLEDs - ok 15:28:00.0056 0x1808 Waiting for KSN requests completion. In queue: 128 15:28:01.0056 0x1808 Waiting for KSN requests completion. In queue: 128 15:28:02.0056 0x1808 Waiting for KSN requests completion. In queue: 128 15:28:02.0484 0x1564 Object required for P2P: [ A69CD6BDB82872999D2E46F9324ADA83 ] UNS 15:28:03.0057 0x1808 Waiting for KSN requests completion. In queue: 85 15:28:04.0064 0x1808 Waiting for KSN requests completion. In queue: 85 15:28:05.0057 0x1564 Object send P2P result: true 15:28:05.0067 0x1808 Waiting for KSN requests completion. In queue: 40 15:28:05.0067 0x1564 Object required for P2P: [ FF74D2A2E3A3615A765B5181DB18551D ] C:\Program Files (x86)\Steam\steam.exe 15:28:06.0067 0x1808 Waiting for KSN requests completion. In queue: 3 15:28:07.0067 0x1808 Waiting for KSN requests completion. In queue: 3 15:28:07.0527 0x1564 Object send P2P result: true 15:28:08.0227 0x1808 AV detected via SS2: Rising Software Deployment System, C:\Program Files (x86)\Rising\RAV\rsmain.exe ( 24.0.0.0 ), 0x40000 ( disabled : updated ) 15:28:08.0257 0x1808 AV detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\wmiav.exe ( 15.0.2.361 ), 0x41000 ( enabled : updated ) 15:28:08.0257 0x1808 FW detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\wmiav.exe ( 15.0.2.361 ), 0x41010 ( enabled ) 15:28:10.0737 0x1808 ============================================================ 15:28:10.0737 0x1808 Scan finished 15:28:10.0737 0x1808 ============================================================ 15:28:10.0737 0x1284 Detected object count: 0 15:28:10.0737 0x1284 Actual detected object count: 0 |
08.03.2016, 16:31 | #10 |
/// TB-Ausbilder | trojaner keine windows uodates mehr Servus, zuerst folgendes tun: 1) Deinstalliere "SpyHunter" und "Rising Software" über die Systemsteuerung. Rechner neu starten. 2) Lass SpyHunterCleaner laufen: Deaktiviere bitte dein Antivirenprogramm, da es die Entfernung von SpyHunter blockieren kann. Bitte downloade SpyHunterCleaner und speichere die Datei auf dem Desktop. (Bebilderte Anleitung)
Dann geht es so weiter: Schritt 1 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 2 Downloade Dir bitte Malwarebytes Anti-Malware
Schritt 3 Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 4
Bitte poste mit deiner nächsten Antwort
Geändert von M-K-D-B (08.03.2016 um 16:59 Uhr) |
09.03.2016, 16:07 | #11 |
| trojaner keine windows uodates mehrCode:
ATTFilter # AdwCleaner v5.101 - Bericht erstellt am 09/03/2016 um 16:01:37 # Aktualisiert am 07/03/2016 von Xplode # Datenbank : 2016-03-08.1 [Server] # Betriebssystem : Windows 7 Professional Service Pack 1 (x64) # Benutzername : Lukas - PC-LUKAS # Gestartet von : C:\Users\Lukas\Downloads\AdwCleaner_5.101.exe # Option : Löschen # Unterstützung : hxxp://toolslib.net/forum ***** [ Dienste ] ***** ***** [ Ordner ] ***** [-] Ordner Gelöscht : C:\Program Files (x86)\Rising [-] Ordner Gelöscht : C:\ProgramData\Rising [-] Ordner Gelöscht : C:\ProgramData\5650872012302100661UL [-] Ordner Gelöscht : C:\ProgramData\7254c40a-4c53-0 [-] Ordner Gelöscht : C:\ProgramData\7254c40a-5851-1 [-] Ordner Gelöscht : C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocodlhejmhjbanidjgpobiocmpiknfoa [-] Ordner Gelöscht : C:\Users\Michael\AppData\Roaming\DocToPDFConverter [-] Ordner Gelöscht : C:\Users\Michael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DocToPDFConverter [-] Ordner Gelöscht : C:\Windows\Installer\{12CD8A9A-A08E-435A-80AC-85BFBF5352AF} [-] Ordner Gelöscht : C:\Windows\Installer\{AB7BD80C-F1E6-486D-8E00-EB8C544A2941} [-] Ordner Gelöscht : C:\Windows\Installer\{B1C91B18-0534-42D7-AD55-966BE93083A2} ***** [ Dateien ] ***** [-] Datei Gelöscht : C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ogminpmldncgcmokldnmmapddoccmhfl_0.localstorage [-] Datei Gelöscht : C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ocodlhejmhjbanidjgpobiocmpiknfoa_0.localstorage [-] Datei Gelöscht : C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ocodlhejmhjbanidjgpobiocmpiknfoa_0.localstorage-journal [-] Datei Gelöscht : C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage [-] Datei Gelöscht : C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal [-] Datei Gelöscht : C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage [-] Datei Gelöscht : C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal [-] Datei Gelöscht : C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ogminpmldncgcmokldnmmapddoccmhfl_0.localstorage [-] Datei Gelöscht : C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ogminpmldncgcmokldnmmapddoccmhfl_0.localstorage-journal [-] Datei Gelöscht : C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_pstatic.eshopcomp.com_0.localstorage [-] Datei Gelöscht : C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_pstatic.eshopcomp.com_0.localstorage-journal [-] Datei Gelöscht : C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.eshopcomp.com_0.localstorage [-] Datei Gelöscht : C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_pstatic.eshopcomp.com_0.localstorage-journal [-] Datei Gelöscht : C:\Users\Michael\Desktop\DocToPDFConverter.lnk ***** [ DLLs ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** [-] Geplante Aufgabe Gelöscht : GHWXLMNPJTQQHDDN [-] Geplante Aufgabe Gelöscht : GHWXLMNPJTQQHDDN ***** [ Registrierungsdatenbank ] ***** [-] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION [wb.exe] [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\acengine.EXE [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\DPBHO.DLL [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Applications\GEEPLAYER.EXE [-] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [QyBrowser.exe] [-] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [QyClient.exe] [-] Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{CE7C2E8C-B4BF-4138-9918-A7ECE746A250}] [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{9F2949D6-977B-4B61-B513-0C2EE52C2B4F} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{1C6F51F8-BCE6-4702-8952-6A8233359FBC} [-] Schlüssel Gelöscht : HKCU\Software\Classes\CLSID\{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5} [-] Schlüssel Gelöscht : HKCU\Software\Classes\CLSID\{DB40EAF2-2025-4F74-B9EF-7C0782F26C84} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{2A563926-CF4B-4363-A760-F71E46205B7E} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{34EBA76A-E745-4B18-96C9-2B8E2BA8B246} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3A8E009B-E66D-4016-87CF-EC57FA9A4BC1} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4D4D0357-0376-4656-A040-65AC089E84A2} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6D5AF218-5F7E-40E0-B49D-54FFAFE2001A} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{89E46EA6-2F87-4D79-8FFA-8B264F93F54A} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9ECCDEFC-1C26-4BB3-B6DF-252672D9FFFA} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F1BC674D-15D8-46C5-AC51-12AB16D67616} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F811C371-1DC7-4E2F-8676-D96B85BE4AF1} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{EC0FA563-E0F2-406F-8659-1E728458A91E} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{88260EA6-BC91-42DF-ABEF-4A683E8A3C23} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4C097DF1-0716-4FA1-84A9-025BC1E7B03F} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3323765B-5B83-4406-841E-473DBA4B8F29} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{389562C4-59D9-40C4-966E-28DA91725FFE} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F8D3B31-AEB8-4ED7-8B05-5556068D6B54} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6ED1EF08-DFF4-4252-8986-691D06C54131} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{83E07061-02D1-41EC-8751-BB176B823C38} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9F0948E7-227A-4F1B-9849-2D8912F185A7} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A471A4AA-5C18-429F-81BF-6C760941DB74} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C0A7C2B3-86D6-42AF-8221-79C9E4AD50BA} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F2FB003D-07C7-4E4D-80E3-00B49468A6F4} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F7971E81-FC71-4659-8CCE-C903576E0924} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{00E3D575-A24C-4BBC-A708-BCDB8BBCA6C7} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{024BF4C8-B53D-45B9-957F-D3BA9655FF39} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{074DCA49-F6A1-417F-B79E-D5E3ADC30330} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6C42038D-817A-472C-8C2A-EF46F1DA576D} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{873C7DA8-195D-4D5A-B830-C5E2831901EA} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{3157E247-2784-4028-BF0F-52D6DDC70E1B} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E6A8DA1-5731-465B-B036-B9E16EF26CAC} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5EC7C511-CD0F-42E6-830C-1BD9882F3458} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3323765B-5B83-4406-841E-473DBA4B8F29} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{389562C4-59D9-40C4-966E-28DA91725FFE} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3F8D3B31-AEB8-4ED7-8B05-5556068D6B54} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{6ED1EF08-DFF4-4252-8986-691D06C54131} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{83E07061-02D1-41EC-8751-BB176B823C38} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9F0948E7-227A-4F1B-9849-2D8912F185A7} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A471A4AA-5C18-429F-81BF-6C760941DB74} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C0A7C2B3-86D6-42AF-8221-79C9E4AD50BA} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{F2FB003D-07C7-4E4D-80E3-00B49468A6F4} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{F7971E81-FC71-4659-8CCE-C903576E0924} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{00E3D575-A24C-4BBC-A708-BCDB8BBCA6C7} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{024BF4C8-B53D-45B9-957F-D3BA9655FF39} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{074DCA49-F6A1-417F-B79E-D5E3ADC30330} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{6C42038D-817A-472C-8C2A-EF46F1DA576D} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{873C7DA8-195D-4D5A-B830-C5E2831901EA} [-] Schlüssel Gelöscht : HKCU\Software\PPStream [-] Schlüssel Gelöscht : HKCU\Software\Reg\Clean [-] Schlüssel Gelöscht : HKCU\Software\WEBAPP [-] Schlüssel Gelöscht : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Reg\Clean [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PPStream [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SU [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7b5da7f5-de7d-4e00-b330-a2e08e460095} [-] Schlüssel Gelöscht : HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} [-] Schlüssel Gelöscht : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\_CrossriderRegNamePlaceHolder_ [-] Schlüssel Gelöscht : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Super Radio [-] Schlüssel Gelöscht : HKU\S-1-5-19\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B} [-] Schlüssel Gelöscht : HKU\S-1-5-20\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE} [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\eshopcomp.com [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\pstatic.eshopcomp.com [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\watch4.com [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\watch4.de [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.watch4.com [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.watch4.de [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\akamaihd.net [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\bestpriceninja.com [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\cdncache-a.akamaihd.net [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\inst.shoppingate.info [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\oursurfing.com [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pstatic.bestpriceninja.com [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\shoppingate.info [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.oursurfing.com ***** [ Internetbrowser ] ***** ************************* :: "Tracing" Schlüssel gelöscht :: Proxy Einstellungen zurückgesetzt :: Winsock Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [14836 Bytes] - [09/03/2016 16:01:37] C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [14190 Bytes] - [09/03/2016 15:57:33] ########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [15024 Bytes] ########## |
09.03.2016, 16:09 | #12 |
/// TB-Ausbilder | trojaner keine windows uodates mehr Gut gemacht. Dann weiter mit den anderen Logdateien bitte. |
09.03.2016, 17:05 | #13 |
| trojaner keine windows uodates mehrCode:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 09.03.2016 Suchlaufzeit: 16:15 Protokolldatei: mbam.txt Administrator: Ja Version: 2.2.0.1024 Malware-Datenbank: v2016.03.09.03 Rootkit-Datenbank: v2016.02.27.01 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Lukas Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 673544 Abgelaufene Zeit: 45 Min., 10 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Deaktiviert Rootkits: Aktiviert Heuristik: Deaktiviert PUP: Warnen PUM: Warnen Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 27 PUP.Optional.MultiPlug, HKLM\SOFTWARE\CLASSES\TYPELIB\{E2343056-CC08-46AC-B898-BFC7ACF4E755}, In Quarantäne, [82354c398d0c1620bfa7d0ee966c5ca4], PUP.Optional.MultiPlug, HKLM\SOFTWARE\CLASSES\INTERFACE\{7041156A-0D2B-4DCD-A8EE-D0608BFCB2D0}, In Quarantäne, [82354c398d0c1620bfa7d0ee966c5ca4], PUP.Optional.MultiPlug, HKLM\SOFTWARE\CLASSES\INTERFACE\{9B41579A-1996-42F9-8F84-7B7786818CEF}, In Quarantäne, [82354c398d0c1620bfa7d0ee966c5ca4], PUP.Optional.MultiPlug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{7041156A-0D2B-4DCD-A8EE-D0608BFCB2D0}, In Quarantäne, [82354c398d0c1620bfa7d0ee966c5ca4], PUP.Optional.MultiPlug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{9B41579A-1996-42F9-8F84-7B7786818CEF}, In Quarantäne, [82354c398d0c1620bfa7d0ee966c5ca4], PUP.Optional.MultiPlug, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{7041156A-0D2B-4DCD-A8EE-D0608BFCB2D0}, In Quarantäne, [82354c398d0c1620bfa7d0ee966c5ca4], PUP.Optional.MultiPlug, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{9B41579A-1996-42F9-8F84-7B7786818CEF}, In Quarantäne, [82354c398d0c1620bfa7d0ee966c5ca4], PUP.Optional.MultiPlug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{E2343056-CC08-46AC-B898-BFC7ACF4E755}, In Quarantäne, [82354c398d0c1620bfa7d0ee966c5ca4], PUP.Optional.MultiPlug, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{E2343056-CC08-46AC-B898-BFC7ACF4E755}, In Quarantäne, [82354c398d0c1620bfa7d0ee966c5ca4], PUP.Optional.IQIYI, HKLM\SOFTWARE\CLASSES\QYPlugin.QYPluginCtrl.1, In Quarantäne, [8730b1d4257401357d56269f679b36ca], PUP.Optional.IQIYI, HKLM\SOFTWARE\WOW6432NODE\CLASSES\QYPlugin.QYPluginCtrl.1, In Quarantäne, [8e292b5a59405ed8fbd8a025e81a926e], PUP.Optional.IQIYI, HKLM\SOFTWARE\CLASSES\WOW6432NODE\QYPlugin.QYPluginCtrl.1, In Quarantäne, [8e292b5a59405ed8fbd8a025e81a926e], PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{8656BB1E-0B5F-4647-AA33-94D2B1A361CC}, Löschen bei Neustart, [0daad6af415838fe70b85bb424df5fa1], PUP.Optional.IQIYIVideo, HKLM\SOFTWARE\MOZILLAPLUGINS\@iqiyi.com/npclient, In Quarantäne, [03b464211a7f10264c8041c8d13309f7], PUP.Optional.IQIYIVideo, HKLM\SOFTWARE\MOZILLAPLUGINS\@iqiyi.com/npWebPlayer, In Quarantäne, [1b9c067fc4d5ee485f6dc6439272659b], PUP.Optional.Yontoo, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Util Metal Maker, In Quarantäne, [d5e25c29c0d954e2acedb6b67d8706fa], PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1001\SOFTWARE\ONE SYSTEM CARE, In Quarantäne, [dbdcb1d44059c076a84fc45037cdb34d], PUP.Optional.ChinAd, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1E6A8DA1-1731-465B-B036-B9E16EF26CAC}, In Quarantäne, [4077d4b1f7a21a1c2794174341c3659b], PUP.Optional.ChinAd, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2E6A8DA1-2731-465B-B036-B9E16EF26CAC}, In Quarantäne, [1f981e67a3f674c27c3f0357b1537f81], PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\ONE SYSTEM CARE, In Quarantäne, [d0e7186dddbcdd590dea21f3b84cf40c], Trojan.Vonteera, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\PDFCONVERT, In Quarantäne, [6b4cb1d4d9c01c1a69999bd2bc48d52b], PUP.Optional.RegCleanPro, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\REG\CLEAN\pro, In Quarantäne, [3780a9dc4c4da98dd32b1c5c2adae818], Backdoor.DarkComet.Trace, HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\SOFTWARE\DC3_FEXEC, In Quarantäne, [9c1bd3b27a1fba7c6d25e94e16ee57a9], PUP.Optional.MultiPlug, HKU\S-1-5-21-3487997803-1532060654-1365074507-1003_Classes\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040}, In Quarantäne, [bff8e2a34356191d41f9370238cc2dd3], PUP.Optional.MultiPlug, HKU\S-1-5-21-3487997803-1532060654-1365074507-1003_Classes\INTERFACE\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}, In Quarantäne, [bff8e2a34356191d41f9370238cc2dd3], PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1005\SOFTWARE\ONE SYSTEM CARE, In Quarantäne, [17a0daab049560d652a5db39d82c46ba], PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\SOFTWARE\ONE SYSTEM CARE, In Quarantäne, [fabdd4b1178200365b9c3bd916eec937], Registrierungswerte: 18 PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{8656BB1E-0B5F-4647-AA33-94D2B1A361CC}|Path, \7eca1cd8-2a95-4759-9c0f-ae713062040a-6, Löschen bei Neustart, [0daad6af415838fe70b85bb424df5fa1] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1001\SOFTWARE\ONE SYSTEM CARE|OSID, 6.1, In Quarantäne, [dbdcb1d44059c076a84fc45037cdb34d] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1001\SOFTWARE\ONE SYSTEM CARE|AdvertsLink1, hxxp://dl.softservers.net/121002434/DriverPro.exe, In Quarantäne, [a710463ffd9cbd799c5ada3ada2a2dd3] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1001\SOFTWARE\ONE SYSTEM CARE|AdvertsLink2, hxxp://dl.softservers.net/171002434/LiveSupport.exe, In Quarantäne, [8e292362cacfa88eec0ad440da2ac43c] PUP.Optional.ChinAd, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1E6A8DA1-1731-465B-B036-B9E16EF26CAC}|AppPath, C:\IQIYI Video\LStyle\, In Quarantäne, [4077d4b1f7a21a1c2794174341c3659b] PUP.Optional.ChinAd, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2E6A8DA1-2731-465B-B036-B9E16EF26CAC}|AppPath, C:\IQIYI Video\LStyle\, In Quarantäne, [1f981e67a3f674c27c3f0357b1537f81] PUP.Optional.AppHide, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|apphide, C:\Program Files (x86)\baidu\pps.exe, In Quarantäne, [1a9dff86920781b51ed4b03e1ce725db] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\ONE SYSTEM CARE|OSID, 6.1, In Quarantäne, [d0e7186dddbcdd590dea21f3b84cf40c] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\ONE SYSTEM CARE|AdvertsLink1, hxxp://dl.softservers.net/121002434/DriverPro.exe, In Quarantäne, [bafda6dfcdccf0460beb2de758ac7888] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\ONE SYSTEM CARE|AdvertsLink2, hxxp://dl.softservers.net/171002434/LiveSupport.exe, In Quarantäne, [724565200d8c092d0ee8e430ab59c13f] Trojan.Vonteera, HKU\S-1-5-21-3487997803-1532060654-1365074507-1002\SOFTWARE\PDFCONVERT|Uniq, {59A673F7-C28D-4305-A705-6AFFE26B0CC3}, In Quarantäne, [6b4cb1d4d9c01c1a69999bd2bc48d52b] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN\FEATURECONTROL\FEATURE_BROWSER_EMULATION|SystemCash.exe, 11000, In Quarantäne, [2f88add824758aac931ae68ab45058a8] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1005\SOFTWARE\ONE SYSTEM CARE|OSID, 6.1, In Quarantäne, [17a0daab049560d652a5db39d82c46ba] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1005\SOFTWARE\ONE SYSTEM CARE|AdvertsLink1, hxxp://dl.softservers.net/121002434/DriverPro.exe, In Quarantäne, [4e69691cabee62d48472a96be71d47b9] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1005\SOFTWARE\ONE SYSTEM CARE|AdvertsLink2, hxxp://dl.softservers.net/171002434/LiveSupport.exe, In Quarantäne, [882f7c09d4c5ce68a650e52ffd07e917] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\SOFTWARE\ONE SYSTEM CARE|OSID, 6.1, In Quarantäne, [fabdd4b1178200365b9c3bd916eec937] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\SOFTWARE\ONE SYSTEM CARE|AdvertsLink1, hxxp://dl.softservers.net/121002434/DriverPro.exe, In Quarantäne, [2e8989fc3c5d3501777f18fcbd478e72] PUP.Optional.OneSystemCare, HKU\S-1-5-21-3487997803-1532060654-1365074507-1006\SOFTWARE\ONE SYSTEM CARE|AdvertsLink2, hxxp://dl.softservers.net/171002434/LiveSupport.exe, In Quarantäne, [991e25602475bb7bac4af81c7b8939c7] Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 241 Rogue.Multiple, C:\Users\Lukas\AppData\Roaming\78345230, In Quarantäne, [c6f1572ec7d212246cdf7e49679bf010], PUP.Optional.Baidu, C:\Program Files (x86)\baidu, In Quarantäne, [00b73e4748510c2a477768d013f254ac], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\css, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\html, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\bg, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ca, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\cs, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\da, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\de, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\el, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en_GB, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es_419, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\et, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fi, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fil, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fr, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hi, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hr, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hu, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\id, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\it, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ja, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ko, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lt, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lv, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nb, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nl, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pl, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_BR, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_PT, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ro, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ru, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sk, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sl, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sr, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sv, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\th, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\tr, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\uk, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\vi, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_CN, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_TW, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ar, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\bg, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ca, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\cs, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\da, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\de, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\el, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\en_GB, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\en_US, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\es, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\es_419, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\et, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\fi, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\fil, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\fr, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\he, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\hi, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\hu, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\id, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\it, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ja, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ko, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\lt, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\lv, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ms, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\nl, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\no, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\pl, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\pt_BR, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\pt_PT, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ro, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ru, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sk, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sl, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sr, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sv, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\th, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\tr, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\uk, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\vi, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\zh_CN, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\zh_TW, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_metadata, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\button, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\button\search, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\filtering, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\search, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\images, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\pages, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\search, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\uiscripts, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\uiscripts\blacklisting, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ar, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\bg, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ca, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\cs, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\da, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\de, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\el, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\en, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\es, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\fi, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\fr, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\he, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\hr, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\hu, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\id, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\it, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ja, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ko, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\nb, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\nl, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\pl, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\pt_BR, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\pt_PT, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ro, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ru, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\sk, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\sl, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\sr, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\sv, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\te, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\tr, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\uk, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\zh_CN, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\zh_TW, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_metadata, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\button, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\button\search, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\filtering, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\search, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\pages, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\search, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts\blacklisting, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ar, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\bg, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ca, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\cs, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\da, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\de, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\el, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\en, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\es, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\fi, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\fr, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\he, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\hr, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\hu, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\id, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\it, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ja, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ko, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\nb, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\nl, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\pl, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\pt_BR, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\pt_PT, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ro, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ru, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sk, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sl, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sr, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sv, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\te, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\tr, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\uk, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\zh_CN, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\zh_TW, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_metadata, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\css, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\html, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\bg, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ca, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\cs, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\da, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\de, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\el, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en_GB, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es_419, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\et, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fi, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fil, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fr, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hi, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hr, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hu, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\id, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\it, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ja, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ko, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lt, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lv, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nb, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nl, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pl, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_BR, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_PT, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ro, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ru, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sk, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sl, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sr, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sv, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\th, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\tr, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\uk, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\vi, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_CN, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_TW, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], |
09.03.2016, 17:17 | #14 |
| trojaner keine windows uodates mehrCode:
ATTFilter Dateien: 433 PUP.Optional.DownloadProtect, C:\$Recycle.Bin\S-1-5-21-3487997803-1532060654-1365074507-1003\$RLFATRP\{8B7A9834-36D8-482C-8730-CE34F25961ED}.bin, In Quarantäne, [6057aadb2a6f88aec8ceeb417c84718f], PUP.Optional.DownloadProtect, C:\$Recycle.Bin\S-1-5-21-3487997803-1532060654-1365074507-1003\$RTHJZNZ\{DDB0EA3E-F2BB-4ECD-AC40-DEAADCC3E3B8}.bin, In Quarantäne, [4c6b45405e3b9c9aa2f466c6b34d07f9], PUP.Optional.WebBar, C:\Users\Lukas\AppData\Local\Temp\DLG_a28dLwTn\exe\88875388ec41750c844ea94863277d55\Web_Bar_Setup_is2.exe, In Quarantäne, [e6d12a5b950491a5204ba44bde23ac54], RiskWare.FilePatcher, C:\Users\Lukas\AppData\Local\Temp\Rar$EXa0.046\Sony Vegas Pro 13 Setup + Crack (64-Bit)\Patch\vegas.pro.13.0.(64-bit)-patch.exe, In Quarantäne, [d5e27e071089eb4b1f44117027dac23e], RiskWare.FilePatcher, C:\Users\Lukas\AppData\Local\Temp\Rar$EXa0.119\Sony Vegas Pro 13 Setup + Crack (64-Bit)\Patch\vegas.pro.13.0.(64-bit)-patch.exe, In Quarantäne, [7344dda8d8c15adc21425829dc25659b], RiskWare.FilePatcher, C:\Users\Lukas\AppData\Local\Temp\Rar$EXa0.217\Sony Vegas Pro 13 Setup + Crack (64-Bit)\Patch\vegas.pro.13.0.(64-bit)-patch.exe, In Quarantäne, [f7c0572e0198b482f2715e2359a8649c], RiskWare.FilePatcher, C:\Users\Lukas\AppData\Local\Temp\Rar$EXa0.576\Sony Vegas Pro 13 Setup + Crack (64-Bit)\Patch\vegas.pro.13.0.(64-bit)-patch.exe, In Quarantäne, [1b9c6421990039fd8ad9107140c16799], Adware.DownloadGuide, C:\Users\Lukas\Downloads\setup-directx-9.exe, In Quarantäne, [9d1a02832f6a360063723e962bd6c739], PUP.Optional.ChinAd, C:\Users\Michael\AppData\Local\Temp\IQIYIsetup_l_huayukeji@kb006.exe, In Quarantäne, [9b1ce3a2cbce56e08ad904603bc9b44c], Rogue.Multiple, C:\Users\Lukas\AppData\Roaming\78345230\02-03-2016, In Quarantäne, [c6f1572ec7d212246cdf7e49679bf010], Rogue.Multiple, C:\Users\Lukas\AppData\Roaming\78345230\ak.tmp, In Quarantäne, [c6f1572ec7d212246cdf7e49679bf010], PUP.Optional.Baidu, C:\Program Files (x86)\baidu\baidu.ini, In Quarantäne, [00b73e4748510c2a477768d013f254ac], PUP.Optional.Baidu, C:\Program Files (x86)\baidu\unins000.dat, In Quarantäne, [00b73e4748510c2a477768d013f254ac], PUP.Optional.Baidu, C:\Program Files (x86)\baidu\unins000.exe, In Quarantäne, [00b73e4748510c2a477768d013f254ac], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\manifest.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\craw_background.js, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\craw_window.js, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\css\craw_window.css, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\html\craw_window.html, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\flapper.gif, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\icon_128.png, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\icon_16.png, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\topbar_floating_button.png, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\topbar_floating_button_close.png, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\topbar_floating_button_hover.png, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\topbar_floating_button_maximize.png, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\topbar_floating_button_pressed.png, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\bg\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ca\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\cs\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\da\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\de\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\el\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en_GB\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es_419\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\et\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fi\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fil\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fr\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hi\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hr\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hu\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\id\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\it\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ja\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ko\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lt\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lv\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nb\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nl\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pl\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_BR\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_PT\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ro\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ru\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sk\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sl\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sr\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sv\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\th\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\tr\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\uk\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\vi\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_CN\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Hannah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_TW\messages.json, In Quarantäne, [a314681da8f12511eed5e75194716997], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\manifest.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\icon_128.png, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\icon_16.png, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\main.html, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\main.js, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ar\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\bg\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ca\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\cs\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\da\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\de\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\el\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\en_GB\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\en_US\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\es\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\es_419\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\et\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\fi\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\fil\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\fr\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\he\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\hi\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\hu\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\id\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\it\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ja\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ko\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\lt\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\lv\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ms\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\nl\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\no\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\pl\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\pt_BR\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\pt_PT\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ro\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\ru\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sk\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sl\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sr\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\sv\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\th\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\tr\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\uk\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\vi\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\zh_CN\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_locales\zh_TW\messages.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\_metadata\verified_contents.json, In Quarantäne, [fbbc2164aced52e4dce7f741f80d07f9], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\manifest.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\adblock_start_chrome.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\adblock_start_common.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\background.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\bandaids.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\CHANGELOG.txt, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\checkupdates.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\functions.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\idlehandler.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\LICENSE, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\port.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\README.markdown, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\stats.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\translators.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\ytchannel.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\button\popup.css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\button\popup.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\button\popup.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\button\search\search.css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\button\search\search.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\filtering\domainset.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\filtering\filternormalizer.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\filtering\filteroptions.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\filtering\filterset.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\filtering\filtertypes.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\filtering\myfilters.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\delete.gif, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\facebook-sprite.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\gifloader.gif, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\gplus-sprite.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon128.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon16.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon16_grayscale.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon16_grayscale@2x.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon19-grayscale.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon19-whitelisted.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon19.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon24.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon32.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon38-grayscale.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon38-whitelisted.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon38.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\icon48.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\logo.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\twitter-sprite.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\search\check.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\search\magnifying_glass.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\search\search-engine-card_no-shadow.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\search\search-engine-icons.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\search\search-omnibox-card_no-shadow.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\img\search\search_engine_select_arrow.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\jquery-ui.custom.min.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\jquery.cookie.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\jquery.min.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\jquery-ui.custom.css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\override-page.css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\images\ui-bg_flat_55_999999_40x100.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\images\ui-bg_flat_75_aaaaaa_40x100.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\images\ui-bg_glass_45_0078ae_1x400.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\images\ui-bg_glass_55_f8da4e_1x400.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\images\ui-bg_glass_75_79c9ec_1x400.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\images\ui-bg_gloss-wave_50_38cfff_500x100.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\images\ui-bg_gloss-wave_75_2191c0_500x100.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\images\ui-bg_inset-hard_100_fcfdfd_1x100.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\images\ui-icons_056b93_256x240.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\jquery\css\images\ui-icons_d8e7f3_256x240.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options\customize.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options\customize.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options\filters.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options\filters.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options\general.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options\general.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options\index.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options\index.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options\options.css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options\support.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\options\support.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\pages\adreport.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\pages\adreport.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\pages\resourceblock.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\pages\resourceblock.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\pages\subscribe.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\pages\subscribe.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\search\focus.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\search\incognito.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\search\pitchpage.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\search\search-plus-one.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\search\secure_reminder.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\search\serp.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\uiscripts\load_jquery_ui.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\uiscripts\send_content_to_back.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\uiscripts\top_open_blacklist_ui.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\uiscripts\top_open_whitelist_ui.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\uiscripts\blacklisting\blacklistui.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\uiscripts\blacklisting\clickwatcher.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\uiscripts\blacklisting\elementchain.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\uiscripts\blacklisting\overlay.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\uiscripts\blacklisting\rightclick_hook.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ar\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\bg\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ca\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\cs\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\da\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\de\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\el\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\en\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\es\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\fi\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\fr\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\he\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\hr\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\hu\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\id\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\it\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ja\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ko\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\nb\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\nl\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\pl\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\pt_BR\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\pt_PT\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ro\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\ru\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\sk\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\sl\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\sr\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\sv\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\te\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\tr\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\uk\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\zh_CN\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_locales\zh_TW\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.12_0\_metadata\verified_contents.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\adblock_start_chrome.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\adblock_start_common.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\background.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\bandaids.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\CHANGELOG.txt, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\checkupdates.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\functions.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\idlehandler.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\LICENSE, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\manifest.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\port.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\README.markdown, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\stats.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\ytchannel.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\button\popup.css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\button\popup.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\button\popup.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\button\search\search.css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\button\search\search.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\filtering\domainset.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\filtering\filternormalizer.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\filtering\filteroptions.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\filtering\filterset.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\filtering\filtertypes.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\filtering\myfilters.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\delete.gif, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\facebook-sprite.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\gifloader.gif, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\gplus-sprite.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon128.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon16.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon16_grayscale.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon16_grayscale@2x.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon19-grayscale.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon19-whitelisted.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon19.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon24.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon32.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon38-grayscale.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon38-whitelisted.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon38.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\icon48.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\logo.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\twitter-sprite.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\search\check.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\search\magnifying_glass.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\search\search-engine-card_no-shadow.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\search\search-engine-icons.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\search\search-omnibox-card_no-shadow.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\img\search\search_engine_select_arrow.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\jquery-ui.custom.min.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\jquery.cookie.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\jquery.min.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\jquery-ui.custom.css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\override-page.css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images\ui-bg_flat_55_999999_40x100.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images\ui-bg_flat_75_aaaaaa_40x100.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images\ui-bg_glass_45_0078ae_1x400.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images\ui-bg_glass_55_f8da4e_1x400.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images\ui-bg_glass_75_79c9ec_1x400.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images\ui-bg_gloss-wave_50_38cfff_500x100.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images\ui-bg_gloss-wave_75_2191c0_500x100.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images\ui-bg_inset-hard_100_fcfdfd_1x100.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images\ui-icons_056b93_256x240.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\jquery\css\images\ui-icons_d8e7f3_256x240.png, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options\customize.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options\customize.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options\filters.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options\filters.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options\general.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options\general.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options\index.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options\index.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options\options.css, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options\support.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\options\support.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\pages\adreport.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\pages\adreport.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\pages\resourceblock.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\pages\resourceblock.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\pages\subscribe.html, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\pages\subscribe.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\search\focus.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\search\incognito.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\search\pitchpage.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\search\search-plus-one.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\search\secure_reminder.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\search\serp.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts\load_jquery_ui.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts\send_content_to_back.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts\top_open_blacklist_ui.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts\top_open_whitelist_ui.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts\blacklisting\blacklistui.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts\blacklisting\clickwatcher.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts\blacklisting\elementchain.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts\blacklisting\overlay.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\uiscripts\blacklisting\rightclick_hook.js, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ar\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\bg\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ca\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\cs\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\da\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\de\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\el\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\en\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\es\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\fi\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\fr\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\he\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\hr\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\hu\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\id\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\it\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ja\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ko\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\nb\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\nl\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\pl\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\pt_BR\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\pt_PT\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ro\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\ru\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sk\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sl\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sr\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\sv\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\te\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\tr\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\uk\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\zh_CN\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_locales\zh_TW\messages.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.8_0\_metadata\verified_contents.json, In Quarantäne, [26918ef78415ae887d46e4546c997987], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\manifest.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\craw_background.js, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\craw_window.js, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\css\craw_window.css, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\html\craw_window.html, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\flapper.gif, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\icon_128.png, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\icon_16.png, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\topbar_floating_button.png, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\topbar_floating_button_close.png, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\topbar_floating_button_hover.png, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\topbar_floating_button_maximize.png, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images\topbar_floating_button_pressed.png, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\bg\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ca\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\cs\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\da\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\de\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\el\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en_GB\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es_419\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\et\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fi\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fil\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fr\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hi\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hr\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hu\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\id\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\it\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ja\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ko\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lt\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lv\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nb\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nl\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pl\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_BR\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_PT\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ro\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ru\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sk\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sl\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sr\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sv\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\th\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\tr\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\uk\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\vi\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_CN\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], PUP.Optional.HijackModifiedExtension, C:\Users\Maximilian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_TW\messages.json, In Quarantäne, [783f176eb8e12016e6ddb08825e0b050], Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.3 (02.09.2016) Operating System: Windows 7 Professional x64 Ran by Lukas (Administrator) on 09.03.2016 at 17:09:32,14 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 83 Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\540J0EPZ (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTYP0JQ0 (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3PXEGPH (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M8HP4B1B (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NU1P5AD1 (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PD3OL7X8 (Temporary Internet Files Folder) Successfully deleted: C:\ProgramData\7c0535b143fc4671b6ebd202fbffe066 (Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0141EDC9-06C6-4E1F-81FC-A202FE13FC10} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{070FDACC-D180-42CE-B489-09F36484DF64} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0A9EAC0D-9B2C-4C5E-955C-EE0E5098A0D9} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0C92CE50-730D-4313-90D9-3CE6A859F087} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0CF60DBB-7C7F-436D-A1E3-60FD8854561E} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{1D689FC5-E97E-45DD-91C8-1A9197E90D95} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{23A23326-2A92-490F-AF40-DF52C0CB0A88} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{242CFAD4-69B3-4E87-908A-4429495C35FE} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{25D7F716-6177-49A4-9502-829289A4DF8B} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{28D6659E-02D8-4601-89CB-CB8A950E3551} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{349CE1EF-4B09-4E0F-A2DE-FC0AE2A682E3} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{35E8094D-6133-41F9-8B7F-E5F9BA4A2C12} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{4E86F6A6-068B-4E38-9EC3-ECB55F6F256B} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5154FF47-D603-4B23-B445-E5EC10D26205} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5A82D968-C799-4C13-877D-338D28069087} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5B1E7FBA-B965-4CF2-BB10-BF2D830FB398} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5DDC304A-F09E-417D-86EF-5DBE831DA9D5} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{60DDCC9A-5186-4313-98EF-F6772B44A091} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{740BBEEA-3367-42D9-BE44-2D34A436C088} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{74959A0F-9FA5-4322-B456-0612816C8EF0} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{8278009D-2077-45F2-9656-47465C2F629C} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{899B0C71-B8C4-41F6-B31A-E5CDE8A24ABE} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{8BD82872-A601-46BC-A2F8-A71CF199E5DE} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{94CC5B78-FE41-4238-8B09-69525947C404} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{99EF1A13-408B-4FC5-9EE0-6A6ED06533F9} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{A788A216-3546-4DFB-8524-7054D2C80A19} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B40445DB-34AC-4804-A512-CB5203290D47} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B4FD5E46-9548-451A-8331-2F50A5B0433E} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B5EA3179-DCAC-46EB-9938-4FE2C09C55B7} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B7914CCF-1886-4801-B2EE-89D6E4CE145D} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B940BE5E-8F89-4B39-8ED2-01B4E38E9CE4} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{C7628513-54AC-419D-99F6-A851DFFBF7C0} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{C862DB14-A98F-4E67-AD4F-4BDD29879BFA} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{DBE4EDAD-607D-49D5-86B6-02E59FDA51BC} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{DDE5DEC1-891B-455B-B18C-D7ECF68DB895} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{E1DDB364-1C74-4E3D-97A5-5497E82AF431} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{F02D8E6A-D370-4BA0-AE01-AE4663258A8A} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{F689EE61-156A-4C60-B417-AE23F0B8D2F4} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{FDAE9C4B-AB38-47FE-84FC-41B45182BC74} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\crashrpt (Folder) Successfully deleted: C:\Users\Lukas\AppData\Roaming\pcfixkit (Folder) Successfully deleted: C:\Users\Public\qiyi (Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\45BBV5YF (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9CDN7ZU1 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B6LPNLOV (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HQXSM42I (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3JZSGK3 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MGAKIGFD (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ML666D0R (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MYO5RCQI (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Y10EAKRS (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YD4OXQRL (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\45BBV5YF (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\540J0EPZ (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9CDN7ZU1 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B6LPNLOV (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTYP0JQ0 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HQXSM42I (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3JZSGK3 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3PXEGPH (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M8HP4B1B (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MGAKIGFD (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ML666D0R (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MYO5RCQI (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NU1P5AD1 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PD3OL7X8 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Y10EAKRS (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YD4OXQRL (Temporary Internet Files Folder) Registry: 3 Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{80c554b9-c7f8-4a21-9471-06d606da78a2} (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} (Registry Key) ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 09.03.2016 at 17:15:32,25 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
09.03.2016, 17:20 | #15 |
| trojaner keine windows uodates mehrCode:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.3 (02.09.2016) Operating System: Windows 7 Professional x64 Ran by Lukas (Administrator) on 09.03.2016 at 17:09:32,14 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 83 Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\540J0EPZ (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTYP0JQ0 (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3PXEGPH (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M8HP4B1B (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NU1P5AD1 (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PD3OL7X8 (Temporary Internet Files Folder) Successfully deleted: C:\ProgramData\7c0535b143fc4671b6ebd202fbffe066 (Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0141EDC9-06C6-4E1F-81FC-A202FE13FC10} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{070FDACC-D180-42CE-B489-09F36484DF64} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0A9EAC0D-9B2C-4C5E-955C-EE0E5098A0D9} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0C92CE50-730D-4313-90D9-3CE6A859F087} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0CF60DBB-7C7F-436D-A1E3-60FD8854561E} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{1D689FC5-E97E-45DD-91C8-1A9197E90D95} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{23A23326-2A92-490F-AF40-DF52C0CB0A88} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{242CFAD4-69B3-4E87-908A-4429495C35FE} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{25D7F716-6177-49A4-9502-829289A4DF8B} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{28D6659E-02D8-4601-89CB-CB8A950E3551} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{349CE1EF-4B09-4E0F-A2DE-FC0AE2A682E3} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{35E8094D-6133-41F9-8B7F-E5F9BA4A2C12} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{4E86F6A6-068B-4E38-9EC3-ECB55F6F256B} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5154FF47-D603-4B23-B445-E5EC10D26205} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5A82D968-C799-4C13-877D-338D28069087} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5B1E7FBA-B965-4CF2-BB10-BF2D830FB398} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5DDC304A-F09E-417D-86EF-5DBE831DA9D5} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{60DDCC9A-5186-4313-98EF-F6772B44A091} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{740BBEEA-3367-42D9-BE44-2D34A436C088} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{74959A0F-9FA5-4322-B456-0612816C8EF0} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{8278009D-2077-45F2-9656-47465C2F629C} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{899B0C71-B8C4-41F6-B31A-E5CDE8A24ABE} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{8BD82872-A601-46BC-A2F8-A71CF199E5DE} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{94CC5B78-FE41-4238-8B09-69525947C404} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{99EF1A13-408B-4FC5-9EE0-6A6ED06533F9} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{A788A216-3546-4DFB-8524-7054D2C80A19} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B40445DB-34AC-4804-A512-CB5203290D47} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B4FD5E46-9548-451A-8331-2F50A5B0433E} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B5EA3179-DCAC-46EB-9938-4FE2C09C55B7} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B7914CCF-1886-4801-B2EE-89D6E4CE145D} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B940BE5E-8F89-4B39-8ED2-01B4E38E9CE4} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{C7628513-54AC-419D-99F6-A851DFFBF7C0} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{C862DB14-A98F-4E67-AD4F-4BDD29879BFA} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{DBE4EDAD-607D-49D5-86B6-02E59FDA51BC} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{DDE5DEC1-891B-455B-B18C-D7ECF68DB895} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{E1DDB364-1C74-4E3D-97A5-5497E82AF431} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{F02D8E6A-D370-4BA0-AE01-AE4663258A8A} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{F689EE61-156A-4C60-B417-AE23F0B8D2F4} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{FDAE9C4B-AB38-47FE-84FC-41B45182BC74} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\crashrpt (Folder) Successfully deleted: C:\Users\Lukas\AppData\Roaming\pcfixkit (Folder) Successfully deleted: C:\Users\Public\qiyi (Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\45BBV5YF (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9CDN7ZU1 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B6LPNLOV (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HQXSM42I (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3JZSGK3 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MGAKIGFD (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ML666D0R (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MYO5RCQI (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Y10EAKRS (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YD4OXQRL (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\45BBV5YF (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\540J0EPZ (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9CDN7ZU1 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B6LPNLOV (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTYP0JQ0 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HQXSM42I (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3JZSGK3 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3PXEGPH (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M8HP4B1B (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MGAKIGFD (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ML666D0R (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MYO5RCQI (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NU1P5AD1 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PD3OL7X8 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Y10EAKRS (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YD4OXQRL (Temporary Internet Files Folder) Registry: 3 Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{80c554b9-c7f8-4a21-9471-06d606da78a2} (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} (Registry Key) ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 09.03.2016 at 17:15:32,25 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.3 (02.09.2016) Operating System: Windows 7 Professional x64 Ran by Lukas (Administrator) on 09.03.2016 at 17:09:32,14 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 83 Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\540J0EPZ (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTYP0JQ0 (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3PXEGPH (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M8HP4B1B (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NU1P5AD1 (Temporary Internet Files Folder) Failed to delete: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PD3OL7X8 (Temporary Internet Files Folder) Successfully deleted: C:\ProgramData\7c0535b143fc4671b6ebd202fbffe066 (Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0141EDC9-06C6-4E1F-81FC-A202FE13FC10} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{070FDACC-D180-42CE-B489-09F36484DF64} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0A9EAC0D-9B2C-4C5E-955C-EE0E5098A0D9} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0C92CE50-730D-4313-90D9-3CE6A859F087} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{0CF60DBB-7C7F-436D-A1E3-60FD8854561E} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{1D689FC5-E97E-45DD-91C8-1A9197E90D95} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{23A23326-2A92-490F-AF40-DF52C0CB0A88} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{242CFAD4-69B3-4E87-908A-4429495C35FE} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{25D7F716-6177-49A4-9502-829289A4DF8B} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{28D6659E-02D8-4601-89CB-CB8A950E3551} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{349CE1EF-4B09-4E0F-A2DE-FC0AE2A682E3} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{35E8094D-6133-41F9-8B7F-E5F9BA4A2C12} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{4E86F6A6-068B-4E38-9EC3-ECB55F6F256B} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5154FF47-D603-4B23-B445-E5EC10D26205} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5A82D968-C799-4C13-877D-338D28069087} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5B1E7FBA-B965-4CF2-BB10-BF2D830FB398} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{5DDC304A-F09E-417D-86EF-5DBE831DA9D5} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{60DDCC9A-5186-4313-98EF-F6772B44A091} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{740BBEEA-3367-42D9-BE44-2D34A436C088} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{74959A0F-9FA5-4322-B456-0612816C8EF0} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{8278009D-2077-45F2-9656-47465C2F629C} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{899B0C71-B8C4-41F6-B31A-E5CDE8A24ABE} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{8BD82872-A601-46BC-A2F8-A71CF199E5DE} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{94CC5B78-FE41-4238-8B09-69525947C404} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{99EF1A13-408B-4FC5-9EE0-6A6ED06533F9} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{A788A216-3546-4DFB-8524-7054D2C80A19} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B40445DB-34AC-4804-A512-CB5203290D47} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B4FD5E46-9548-451A-8331-2F50A5B0433E} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B5EA3179-DCAC-46EB-9938-4FE2C09C55B7} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B7914CCF-1886-4801-B2EE-89D6E4CE145D} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{B940BE5E-8F89-4B39-8ED2-01B4E38E9CE4} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{C7628513-54AC-419D-99F6-A851DFFBF7C0} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{C862DB14-A98F-4E67-AD4F-4BDD29879BFA} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{DBE4EDAD-607D-49D5-86B6-02E59FDA51BC} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{DDE5DEC1-891B-455B-B18C-D7ECF68DB895} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{E1DDB364-1C74-4E3D-97A5-5497E82AF431} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{F02D8E6A-D370-4BA0-AE01-AE4663258A8A} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{F689EE61-156A-4C60-B417-AE23F0B8D2F4} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\{FDAE9C4B-AB38-47FE-84FC-41B45182BC74} (Empty Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\crashrpt (Folder) Successfully deleted: C:\Users\Lukas\AppData\Roaming\pcfixkit (Folder) Successfully deleted: C:\Users\Public\qiyi (Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\45BBV5YF (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9CDN7ZU1 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B6LPNLOV (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HQXSM42I (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3JZSGK3 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MGAKIGFD (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ML666D0R (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MYO5RCQI (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Y10EAKRS (Temporary Internet Files Folder) Successfully deleted: C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YD4OXQRL (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\45BBV5YF (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\540J0EPZ (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9CDN7ZU1 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\B6LPNLOV (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DTYP0JQ0 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HQXSM42I (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3JZSGK3 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J3PXEGPH (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M8HP4B1B (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MGAKIGFD (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ML666D0R (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MYO5RCQI (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NU1P5AD1 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PD3OL7X8 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Y10EAKRS (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YD4OXQRL (Temporary Internet Files Folder) Registry: 3 Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{80c554b9-c7f8-4a21-9471-06d606da78a2} (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} (Registry Key) ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 09.03.2016 at 17:15:32,25 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01 durchgeführt von Lukas (Administrator) auf PC-LUKAS (09-03-2016 17:17:36) Gestartet von C:\Users\Lukas\Downloads Geladene Profile: Lukas (Verfügbare Profile: FAE & PFrey & Michael & Lukas & Hannah & Maximilian) Platform: Windows 7 Professional Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe (Juniper Networks) C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe () C:\Windows\System32\PnkBstrA.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avpui.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\plugin-nm-server.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe [2907240 2010-10-04] (Realtek Semiconductor Corp.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [Kernel and Hardware Abstraction Layer] => C:\Windows\KHALMNPR.EXE [130576 2009-06-17] (Logitech, Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-27] (NVIDIA Corporation) HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2728736 2014-07-02] () HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [815512 2012-04-04] (Adobe Systems Inc.) HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated) HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [837640 2015-12-08] (DivX, LLC) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-05] (Intel Corporation) HKLM-x32\...\RunOnce: [ Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\ Malwarebytes Anti-Malware \mbamdor.exe [54072 2015-10-05] (Malwarebytes) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50605696 2016-02-02] (Skype Technologies S.A.) HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\...\MountPoints2: {576796b7-e342-11e3-94f0-782bcb99e3ce} - I:\LG_PC_Programs.exe HKU\S-1-5-18\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHVE.EXE [241280 2014-01-20] (SEIKO EPSON CORPORATION) ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] () ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Keine Datei ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2011-07-25] (Autodesk, Inc.) ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Lukas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] () Startup: C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2016-02-18] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Hosts Datei wurde nicht im Standardordner gefunden Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{B5E208C6-BB9C-4F8E-8724-0786695ADEB6}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-3487997803-1532060654-1365074507-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=U270&ocid=U270DHP&osmkt=de-de SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE SearchScopes: HKLM-x32 -> {49606DC7-976D-4030-A74E-9FB5C842FA68} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLRDF8&pc=MDDR&src=IE-SearchBox SearchScopes: HKLM-x32 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {151F5FAD-352E-4BED-AF04-DABC47B2632C} URL = hxxp://go.1und1.de/tb/ie_searchplugin/?q={searchTerms}&enc=UTF-8 SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {48356623-4CDD-4A32-9251-CD12380A0FDE} URL = hxxp://go.mail.com/tb/en-us/ie_searchplugin/?q={searchTerms}&enc=UTF-8 SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {802B7583-F36D-4AFC-A7C1-24395748F1BC} URL = hxxp://go.web.de/tb/ie_searchplugin/?q={searchTerms}&enc=UTF-8 SearchScopes: HKU\S-1-5-21-3487997803-1532060654-1365074507-1003 -> {9C2FAA18-42D8-4412-BC5F-CCCBDAE73C42} URL = hxxp://go.gmx.de/tb/ie_searchplugin/?q={searchTerms}&enc=UTF-8 BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-02-05] (Microsoft Corporation) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2016-02-04] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-02-04] (Microsoft Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\URLREDIR.DLL [2016-02-04] (Microsoft Corporation) DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-04] (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\vm27u39a.default FF DefaultSearchEngine: Bing FF SelectedSearchEngine: Bing FF SearchEngineOrder.3: Bing FF Keyword.URL: hxxp://www.bing.com/search?FORM=U270DF&PC=U270&q= FF Homepage: hxxp://www.msn.com/?pc=U270&ocid=U270DHP&osmkt=de-de hxxps://www.malwarebytes.org/restorebrowser//?u=4ef09132d37415b6ea9b7cb45a0bfa6f&c=up1&src=hp&inst=1440087070 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-09] () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.) FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [Keine Datei] FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2014-12-03] (EA Digital Illusions CE AB) FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll [2011-07-15] (Sun Microsystems, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-09] () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2015-12-02] (DivX, LLC) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [Keine Datei] FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2014-12-03] (EA Digital Illusions CE AB) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-04-14] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-04-14] (Oracle Corporation) FF Plugin-x32: @kaspersky.com/content_blocker_663BE84DBCC949E88C7600F63CA7F098 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com [2015-08-22] () FF Plugin-x32: @kaspersky.com/online_banking_08806E753BE44495B44E90AA2513BDC5 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com [2015-08-22] () FF Plugin-x32: @kaspersky.com/virtual_keyboard_07402848C2F6470194F131B0F3DE025E -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015-08-22] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-02-04] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2014-07-02] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2014-07-02] (NVIDIA Corporation) FF Plugin-x32: @rising.com.cn/nprising -> C:\Program Files (x86)\Rising\RAV\nprising.dll [Keine Datei] FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2012-04-04] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-3487997803-1532060654-1365074507-1003: @rising.com.cn/nprising -> C:\Program Files (x86)\Rising\RAV\nprising.dll [Keine Datei] FF SearchPlugin: C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\vm27u39a.default\searchplugins\bing-.xml [2015-12-31] FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com [2015-08-22] [ist nicht signiert] FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015-08-22] [ist nicht signiert] FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com [2015-08-22] [ist nicht signiert] FF Extension: Bing Search - C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\vm27u39a.default\Extensions\bingsearch.full@microsoft.com.xpi [2015-12-31] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2012-04-17] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [content_blocker_663BE84DBCC949E88C7600F63CA7F098@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_07402848C2F6470194F131B0F3DE025E@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking_08806E753BE44495B44E90AA2513BDC5@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\my-prefs.js [2015-03-25] <==== ACHTUNG (Zeigt auf eine *.cfg Datei) Chrome: ======= CHR Profile: C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Web Store) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-03-09] CHR Extension: (Web Store) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbhjdbfgekjfcfkkfjjmlmojhbllhbho [2016-03-07] CHR Extension: (Web Store) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-03-07] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-03-07] CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08] Opera: ======= OPR StartupUrls: "hxxp://www.mystartsearch.com/?type=hp&ts=1430753799&from=wpc&uid=WDCXWD10EALX-759BA1_WD-WCATR987109471094" ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AVP15.0.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe [194000 2015-07-09] (Kaspersky Lab ZAO) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1300512 2016-01-16] () S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2014-12-21] (BitRaider, LLC) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2804976 2016-02-04] (Microsoft Corporation) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1368408 2015-11-30] (Disc Soft Ltd) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [245544 2015-10-03] (EasyAntiCheat Ltd) S4 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2015-05-06] (Freemake) [Datei ist nicht signiert] R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-27] (NVIDIA Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-27] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-27] (NVIDIA Corporation) S2 NVWMI; C:\Windows\system32\nvwmi64.exe [2498848 2013-12-19] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2015-12-25] (Electronic Arts) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-09-12] () R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2015-09-12] () S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AX88178; C:\Windows\System32\DRIVERS\ax88178.sys [59392 2010-11-24] (ASIX Electronics Corp.) R0 cm_km_w; C:\Windows\System32\DRIVERS\cm_km_w.sys [247016 2015-07-09] (Kaspersky Lab UK Ltd) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-12-06] (Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [46392 2015-12-06] (Disc Soft Ltd) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) U0 hyxtos; C:\Windows\System32\drivers\xwidud.sys [79064 2016-03-09] (Malwarebytes) R3 IntcAzAudAddService; C:\Windows\System32\drivers\RTDVHD64.sys [1980648 2010-10-04] (Realtek Semiconductor Corp.) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-07-09] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [64368 2015-07-09] (Kaspersky Lab ZAO) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [159960 2015-07-09] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [225976 2015-07-09] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [831672 2015-10-06] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [39280 2015-07-09] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [40304 2015-07-09] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [39280 2015-07-09] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [24944 2015-07-09] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [65208 2015-07-09] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [85360 2015-07-09] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [190648 2015-10-06] (Kaspersky Lab ZAO) S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) R0 MBAMSwissArmy; C:\Windows\System32\drivers\MBAMSwissArmy.sys [192216 2016-03-09] (Malwarebytes) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-27] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) R1 rsutils; C:\Windows\System32\DRIVERS\rsutils.sys [69336 2014-08-15] (Beijing Rising Information Technology Co., Ltd.) S3 Spyder5; C:\Windows\System32\DRIVERS\dccmtr.sys [15360 2014-12-19] (Datacolor) R0 sysmon; C:\Windows\System32\DRIVERS\sysmon.sys [119344 2014-09-10] (Beijing Rising Information Technology Co., Ltd.) S3 USBMULCD; C:\Windows\System32\drivers\CM10664.sys [1307648 2011-03-31] (C-Media Electronics Inc) R0 vidsflt61; C:\Windows\System32\DRIVERS\vsflt61.sys [142944 2012-03-28] (Acronis) U3 DfSdkS; kein ImagePath U4 klkbdflt2; system32\DRIVERS\klkbdflt2.sys [X] S3 SBFWIMCLMP; system32\DRIVERS\SBFWIM.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-09 17:15 - 2016-03-09 17:15 - 00011900 _____ C:\Users\Lukas\Desktop\JRT.txt 2016-03-09 17:02 - 2016-03-09 17:02 - 00163419 _____ C:\Users\Lukas\Desktop\mbam.txt 2016-03-09 17:01 - 2016-03-09 17:01 - 00079064 _____ (Malwarebytes) C:\Windows\system32\Drivers\xwidud.sys 2016-03-09 16:09 - 2016-03-09 16:09 - 01609216 _____ (Malwarebytes) C:\Users\Lukas\Downloads\JRT.exe 2016-03-09 15:58 - 2016-03-09 15:59 - 22908888 _____ (Malwarebytes ) C:\Users\Lukas\Downloads\mbam-setup-2.2.0.1024.exe 2016-03-09 15:57 - 2016-03-09 16:01 - 00000000 ____D C:\Program Files (x86)\AdwCleaner 2016-03-09 15:57 - 2016-03-09 15:57 - 01524224 _____ C:\Users\Lukas\Downloads\AdwCleaner_5.101.exe 2016-03-08 15:26 - 2016-03-08 15:31 - 00230526 _____ C:\TDSSKiller.3.1.0.9_08.03.2016_15.26.46_log.txt 2016-03-08 15:09 - 2016-03-08 15:13 - 00113729 _____ C:\Users\Lukas\Downloads\Addition.txt 2016-03-08 15:04 - 2016-03-09 17:17 - 00028380 _____ C:\Users\Lukas\Downloads\FRST.txt 2016-03-08 15:04 - 2016-03-08 15:09 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\Lukas\Downloads\tdsskiller.exe 2016-03-08 15:02 - 2016-03-08 15:04 - 02374144 _____ (Farbar) C:\Users\Lukas\Downloads\FRST64.exe 2016-03-07 19:21 - 2016-03-07 19:21 - 404231634 _____ C:\Users\Lukas\Downloads\Sony Vegas Pro 13 Setup + Crack (64-Bit).rar 2016-03-07 18:35 - 2016-03-07 18:36 - 00000038 _____ C:\Users\Lukas\Desktop\discord.txt 2016-03-07 18:33 - 2016-03-07 18:33 - 00000330 _____ C:\Users\Lukas\Desktop\Bunnyhop.txt 2016-03-07 18:23 - 2016-03-07 18:24 - 00006918 _____ C:\Users\Lukas\Downloads\Bunnyhop CSGO.zip 2016-03-07 17:59 - 2016-03-07 18:15 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\discord 2016-03-07 17:59 - 2016-03-07 17:59 - 00002168 _____ C:\Users\Lukas\Desktop\Discord.lnk 2016-03-07 17:59 - 2016-03-07 17:59 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc 2016-03-07 17:58 - 2016-03-07 17:59 - 00000000 ____D C:\Users\Lukas\AppData\Local\SquirrelTemp 2016-03-07 17:58 - 2016-03-07 17:59 - 00000000 ____D C:\Users\Lukas\AppData\Local\Discord 2016-03-07 17:47 - 2016-03-07 17:50 - 47718584 _____ (Hammer & Chisel, Inc.) C:\Users\Lukas\Downloads\DiscordSetup.exe 2016-03-07 15:36 - 2016-03-07 15:36 - 00001094 _____ C:\AdwCleaner[C3].txt 2016-03-07 15:31 - 2016-03-07 15:33 - 00000940 _____ C:\AdwCleaner[S3].txt 2016-03-07 14:51 - 2016-03-07 14:55 - 00000000 ____D C:\Users\Lukas\Desktop\RevoUninstallerPortable 2016-03-07 14:50 - 2016-03-07 14:45 - 02785665 ____N (PortableApps.com) C:\Users\Lukas\Desktop\RevoUninstallerPortable_1.95_Rev_2.paf.exe 2016-03-07 14:44 - 2016-03-07 14:44 - 00004771 _____ C:\AdwCleaner[C2].txt 2016-03-07 14:41 - 2016-03-07 14:42 - 00004263 _____ C:\AdwCleaner[S2].txt 2016-03-07 14:27 - 2016-03-09 17:17 - 00000000 ____D C:\FRST 2016-03-07 13:17 - 2016-03-07 13:17 - 00000000 ____D C:\Users\Lukas\AppData\Local\Unigraphics Solutions 2016-03-07 12:51 - 2016-03-07 12:51 - 00000000 __SHD C:\found.000 2016-03-05 14:35 - 2016-03-05 14:30 - 00985600 ____N C:\Users\Lukas\Desktop\MicrosoftFixit50123.msi 2016-03-02 17:25 - 2016-03-02 17:33 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\install 2016-03-02 17:24 - 2016-03-02 18:07 - 00000000 __SHD C:\Users\Lukas\Gu73246B57189 2016-03-02 17:24 - 2016-03-02 18:06 - 00000000 ____D C:\Users\Lukas\Ds78224R88177 2016-02-27 12:35 - 2016-02-27 12:35 - 00010250 _____ C:\Users\Lukas\AppData\Local\4BEEC7F234E54494BC31B63B5104251B.Dokument 2.fnf 2016-02-27 12:01 - 2016-02-27 12:01 - 00045901 _____ C:\Users\Lukas\Downloads\let-it-go-trumpet-clarinet-and-baritone-horn.pdf 2016-02-27 11:28 - 2016-02-27 11:28 - 00000000 ____D C:\Users\Lukas\Documents\Forte 2016-02-27 11:28 - 2016-02-27 11:28 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\FORTE 2016-02-27 11:26 - 2016-02-27 11:28 - 54695448 _____ (Lugert Verlag ) C:\Users\Lukas\Downloads\Setup_FORTE6PremiumT_de.exe 2016-02-27 11:25 - 2016-02-27 11:39 - 44101459 _____ (MakeMusic) C:\Users\Lukas\Downloads\nw_22918_finalenotepadexe.exe 2016-02-27 11:18 - 2016-02-27 11:24 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\MuseScore 2016-02-27 11:18 - 2016-02-27 11:18 - 00000000 ____D C:\Users\Lukas\Documents\MuseScore2 2016-02-27 11:18 - 2016-02-27 11:18 - 00000000 ____D C:\Users\Lukas\AppData\Local\MuseScore 2016-02-27 11:14 - 2016-02-27 11:17 - 55488512 _____ C:\Users\Lukas\Downloads\MuseScore-2.0.2.msi 2016-02-27 11:05 - 2016-03-07 15:19 - 00000000 ____D C:\Users\Lukas\Documents\PriMusFree 2016-02-27 11:05 - 2016-02-27 11:05 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Columbus Soft 2016-02-27 11:04 - 2016-02-27 11:04 - 03341128 _____ (Columbus Soft ) C:\Users\Lukas\Downloads\SetupPriMusFree.exe 2016-02-23 21:38 - 2016-02-23 20:59 - 449940993 ____N C:\Users\Lukas\Desktop\mi3.mp4 2016-02-21 12:54 - 2016-02-21 12:54 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2529834191_spectate.bat 2016-02-20 16:30 - 2016-02-20 16:30 - 02259195 _____ C:\Users\Lukas\Downloads\SkinPreview_2.4.0.0_US_BETA_updated-29-1-2016 (1).zip 2016-02-14 20:39 - 2016-02-14 20:39 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2521145290_spectate.bat 2016-02-14 17:54 - 2016-02-14 17:54 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2520925620_spectate (1).bat 2016-02-14 17:53 - 2016-02-14 17:53 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2520925620_spectate.bat 2016-02-14 14:02 - 2016-02-14 14:02 - 00000000 ____D C:\Users\Lukas\Documents\BnS 2016-02-14 14:02 - 2016-02-14 14:02 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Awesomium 2016-02-14 11:31 - 2016-02-14 11:31 - 00005912 _____ C:\Users\Lukas\Downloads\LOL_OPGG_Observer_2520117594_spectate.bat 2016-02-10 18:18 - 2016-02-06 11:48 - 25839104 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-02-10 18:18 - 2016-02-06 11:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-02-10 18:18 - 2016-02-06 11:24 - 02887680 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-02-10 18:18 - 2016-02-06 11:11 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-02-10 18:18 - 2016-02-06 11:10 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-02-10 18:18 - 2016-02-06 11:01 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-02-10 18:18 - 2016-02-06 10:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-02-10 18:18 - 2016-02-06 10:43 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-02-10 18:18 - 2016-02-06 10:38 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-02-10 18:18 - 2016-02-06 10:37 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-02-10 18:18 - 2016-02-06 10:32 - 14458368 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-02-10 18:18 - 2016-02-06 10:16 - 12857856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-02-10 18:18 - 2016-02-06 10:09 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-02-10 18:18 - 2016-02-06 09:54 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-02-10 18:18 - 2016-01-16 20:06 - 00025024 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-02-10 18:18 - 2016-01-16 19:54 - 01162240 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 01362944 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00677376 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-02-10 18:18 - 2016-01-11 15:08 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-02-10 18:18 - 2016-01-06 20:02 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2016-02-10 18:18 - 2016-01-06 20:02 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll 2016-02-10 18:18 - 2016-01-06 19:41 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2016-02-10 18:17 - 2016-01-22 21:31 - 00387784 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-02-10 18:17 - 2016-01-22 21:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-02-10 18:17 - 2016-01-22 07:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-02-10 18:17 - 2016-01-22 07:41 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-02-10 18:17 - 2016-01-22 07:40 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-02-10 18:17 - 2016-01-22 07:40 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-02-10 18:17 - 2016-01-22 07:40 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-02-10 18:17 - 2016-01-22 07:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-02-10 18:17 - 2016-01-22 07:33 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-02-10 18:17 - 2016-01-22 07:32 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-02-10 18:17 - 2016-01-22 07:29 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-02-10 18:17 - 2016-01-22 07:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-02-10 18:17 - 2016-01-22 07:27 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-02-10 18:17 - 2016-01-22 07:27 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-02-10 18:17 - 2016-01-22 07:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-02-10 18:17 - 2016-01-22 07:17 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-02-10 18:17 - 2016-01-22 07:09 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-02-10 18:17 - 2016-01-22 07:08 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-02-10 18:17 - 2016-01-22 07:05 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-02-10 18:17 - 2016-01-22 07:04 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-02-10 18:17 - 2016-01-22 07:02 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-02-10 18:17 - 2016-01-22 07:02 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-02-10 18:17 - 2016-01-22 07:02 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-02-10 18:17 - 2016-01-22 07:01 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-02-10 18:17 - 2016-01-22 07:01 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-02-10 18:17 - 2016-01-22 07:00 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-02-10 18:17 - 2016-01-22 07:00 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-02-10 18:17 - 2016-01-22 06:55 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-02-10 18:17 - 2016-01-22 06:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-02-10 18:17 - 2016-01-22 06:51 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-02-10 18:17 - 2016-01-22 06:51 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-02-10 18:17 - 2016-01-22 06:50 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-02-10 18:17 - 2016-01-22 06:48 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-02-10 18:17 - 2016-01-22 06:47 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-02-10 18:17 - 2016-01-22 06:46 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-02-10 18:17 - 2016-01-22 06:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-02-10 18:17 - 2016-01-22 06:43 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-02-10 18:17 - 2016-01-22 06:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-02-10 18:17 - 2016-01-22 06:38 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-02-10 18:17 - 2016-01-22 06:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-02-10 18:17 - 2016-01-22 06:35 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-02-10 18:17 - 2016-01-22 06:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-02-10 18:17 - 2016-01-22 06:34 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-02-10 18:17 - 2016-01-22 06:33 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-02-10 18:17 - 2016-01-22 06:31 - 02597376 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-02-10 18:17 - 2016-01-22 06:27 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-02-10 18:17 - 2016-01-22 06:25 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-02-10 18:17 - 2016-01-22 06:24 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-02-10 18:17 - 2016-01-22 06:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-02-10 18:17 - 2016-01-22 06:08 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-02-10 18:17 - 2016-01-22 06:07 - 02120704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-02-10 18:17 - 2016-01-22 06:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-02-10 18:15 - 2016-01-22 07:27 - 05573056 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-02-10 18:15 - 2016-01-22 07:27 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-02-10 18:15 - 2016-01-22 07:27 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-02-10 18:15 - 2016-01-22 07:24 - 01733592 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-02-10 18:15 - 2016-01-22 07:20 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 14179840 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 01214464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-02-10 18:15 - 2016-01-22 07:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-02-10 18:15 - 2016-01-22 07:18 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2016-02-10 18:15 - 2016-01-22 07:18 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2016-02-10 18:15 - 2016-01-22 07:18 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-02-10 18:15 - 2016-01-22 07:17 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-02-10 18:15 - 2016-01-22 07:17 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-02-10 18:15 - 2016-01-22 07:17 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2016-02-10 18:15 - 2016-01-22 07:16 - 01461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-02-10 18:15 - 2016-01-22 07:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-02-10 18:15 - 2016-01-22 07:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-02-10 18:15 - 2016-01-22 07:15 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-02-10 18:15 - 2016-01-22 07:13 - 03993536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-02-10 18:15 - 2016-01-22 07:13 - 03938752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-02-10 18:15 - 2016-01-22 07:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-02-10 18:15 - 2016-01-22 07:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-02-10 18:15 - 2016-01-22 07:13 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 01940992 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00880128 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 07:09 - 01314328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-02-10 18:15 - 2016-01-22 07:06 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-02-10 18:15 - 2016-01-22 07:05 - 12877824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2016-02-10 18:15 - 2016-01-22 07:05 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-02-10 18:15 - 2016-01-22 07:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-02-10 18:15 - 2016-01-22 07:04 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2016-02-10 18:15 - 2016-01-22 07:04 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll 2016-02-10 18:15 - 2016-01-22 07:02 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-02-10 18:15 - 2016-01-22 07:00 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 06:19 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2016-02-10 18:15 - 2016-01-22 06:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-02-10 18:15 - 2016-01-22 06:12 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2016-02-10 18:15 - 2016-01-22 06:07 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-02-10 18:15 - 2016-01-22 06:07 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-02-10 18:15 - 2016-01-22 06:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-02-10 18:15 - 2016-01-22 05:59 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-02-10 18:15 - 2016-01-22 05:58 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-02-10 18:15 - 2016-01-22 05:58 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-02-10 18:15 - 2016-01-22 05:57 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-02-10 18:15 - 2016-01-22 05:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-02-10 18:15 - 2016-01-22 05:53 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-02-10 18:15 - 2016-01-22 05:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-02-10 18:15 - 2016-01-22 05:53 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-02-10 18:15 - 2016-01-22 05:53 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-02-10 18:15 - 2016-01-22 05:51 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-02-10 18:15 - 2016-01-22 05:51 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 05:51 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 05:51 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-02-10 18:15 - 2016-01-22 05:51 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-02-10 18:15 - 2016-01-16 20:01 - 02085888 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2016-02-10 18:15 - 2016-01-16 19:36 - 01413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2016-02-10 18:15 - 2016-01-11 20:05 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2016-02-10 18:15 - 2016-01-11 20:05 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2016-02-10 18:15 - 2016-01-11 20:05 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2016-02-10 18:15 - 2016-01-11 19:52 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2016-02-10 18:15 - 2016-01-11 19:47 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2016-02-10 18:15 - 2016-01-11 19:26 - 02610176 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2016-02-10 18:15 - 2016-01-11 19:24 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2016-02-10 18:15 - 2016-01-11 19:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2016-02-10 18:15 - 2016-01-11 19:23 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2016-02-10 18:15 - 2016-01-11 19:23 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2016-02-10 18:15 - 2016-01-11 19:23 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2016-02-10 18:15 - 2016-01-11 19:23 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2016-02-10 18:15 - 2016-01-11 19:14 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2016-02-10 18:15 - 2016-01-11 19:14 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2016-02-10 18:15 - 2016-01-11 19:14 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2016-02-10 18:15 - 2016-01-11 19:14 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2016-02-10 18:15 - 2016-01-07 18:53 - 03211776 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-02-10 18:15 - 2016-01-07 18:42 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2016-02-09 20:26 - 2016-02-09 20:26 - 08817344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-09 17:13 - 2014-01-12 16:26 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Skype 2016-03-09 17:01 - 2011-07-22 14:49 - 00000000 ____D C:\Users\FAE 2016-03-09 17:01 - 2009-07-14 04:20 - 00000000 __RSD C:\Windows\Media 2016-03-09 16:59 - 2015-08-17 17:26 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-03-09 16:29 - 2015-04-16 15:57 - 00000000 ____D C:\Program Files (x86)\Steam 2016-03-09 16:26 - 2012-04-11 06:26 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-03-09 16:15 - 2015-04-17 19:53 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-03-09 16:11 - 2015-04-17 19:47 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-03-09 16:11 - 2009-07-14 05:45 - 00031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-03-09 16:11 - 2009-07-14 05:45 - 00031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-03-09 16:03 - 2015-08-17 17:26 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-03-09 16:03 - 2015-08-17 17:18 - 00001024 _____ C:\Windows\Tasks\8zhgEoSLYekGXIKGCkpWa7.job 2016-03-09 16:03 - 2015-08-17 17:18 - 00001004 _____ C:\Windows\Tasks\Y5LVlAlBAszS.job 2016-03-09 16:03 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-03-09 16:01 - 2014-02-16 12:04 - 00000008 __RSH C:\Users\Lukas\ntuser.pol 2016-03-09 16:01 - 2014-01-12 14:50 - 00000000 ____D C:\Users\Lukas 2016-03-07 21:00 - 2014-09-28 11:06 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\TS3Client 2016-03-07 19:56 - 2015-04-28 16:09 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Sony 2016-03-07 18:46 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-03-07 16:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2016-03-07 15:50 - 2014-05-18 09:29 - 00000000 ____D C:\Users\Maximilian 2016-03-07 15:50 - 2014-04-23 07:57 - 00000000 ____D C:\Users\Hannah 2016-03-07 15:49 - 2014-01-02 13:11 - 00000000 ____D C:\Users\Michael 2016-03-07 15:49 - 2011-07-22 15:23 - 00000000 ____D C:\Users\PFrey 2016-03-05 14:48 - 2010-11-21 07:50 - 00768670 _____ C:\Windows\system32\perfh007.dat 2016-03-05 14:48 - 2010-11-21 07:50 - 00172904 _____ C:\Windows\system32\perfc007.dat 2016-03-05 14:48 - 2009-07-14 06:13 - 00006526 _____ C:\Windows\system32\PerfStringBackup.INI 2016-03-04 19:17 - 2015-04-15 19:14 - 00000080 _____ C:\Users\Lukas\AppData\Local剜捯獫慴慇敭屳呇⁁屖湥楴汴浥湥湩潦 2016-03-04 16:44 - 2015-06-14 14:31 - 00423424 ___SH C:\Users\Lukas\Downloads\Thumbs.db 2016-03-04 16:00 - 2015-07-03 07:12 - 00000426 _____ C:\Windows\Tasks\One-Click Optimizer WO11.job 2016-03-03 16:05 - 2015-12-30 14:03 - 02904064 _____ (GamingOnSteroids) C:\Users\Lukas\Desktop\Loader (2).exe 2016-03-02 17:25 - 2014-01-12 14:50 - 00000000 ____D C:\Users\Lukas\AppData\Local\VirtualStore 2016-02-29 16:44 - 2014-01-12 14:54 - 00000000 ____D C:\Users\Lukas\Documents\Outlook-Dateien 2016-02-28 13:15 - 2011-02-11 18:45 - 01625094 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2016-02-28 09:37 - 2014-06-29 08:37 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2016-02-28 09:02 - 2014-01-12 14:50 - 00182344 _____ C:\Users\Lukas\AppData\Local\GDIPFONTCACHEV1.DAT 2016-02-28 08:45 - 2009-07-14 05:45 - 05225896 _____ C:\Windows\system32\FNTCACHE.DAT 2016-02-26 22:33 - 2015-04-05 02:00 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2016-02-26 22:33 - 2015-04-05 02:00 - 00000000 ___SD C:\Windows\system32\GWX 2016-02-24 19:26 - 2014-11-30 13:54 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\OBS 2016-02-23 15:52 - 2011-07-15 23:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-02-21 08:43 - 2009-07-14 06:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2016-02-20 15:00 - 2015-08-17 19:40 - 00002177 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-02-17 19:54 - 2015-12-30 14:03 - 02628096 _____ (GamingOnSteroids) C:\Users\Lukas\Desktop\Loader (2).oldupd 2016-02-15 21:49 - 2014-07-09 16:55 - 00000000 ____D C:\Users\Lukas\AppData\Roaming\Audacity 2016-02-12 20:43 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2016-02-12 19:00 - 2014-12-12 15:15 - 00000000 ____D C:\Windows\system32\appraiser 2016-02-12 19:00 - 2014-05-08 22:45 - 00000000 ___SD C:\Windows\system32\CompatTel 2016-02-12 19:00 - 2010-11-21 08:01 - 00000000 ____D C:\Program Files\Windows Journal 2016-02-10 22:13 - 2014-01-10 22:15 - 00000000 ____D C:\Windows\system32\MRT 2016-02-10 22:12 - 2011-09-18 07:24 - 146614896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2016-02-10 22:08 - 2009-07-14 03:34 - 00000812 _____ C:\Windows\win.ini 2016-02-09 20:26 - 2012-04-11 06:26 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-02-09 20:26 - 2012-04-11 06:26 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-02-09 20:26 - 2011-09-05 06:28 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-02-08 17:29 - 2016-02-07 21:12 - 00000000 ____D C:\Program Files (x86)\WinRAR ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-10-18 17:21 - 2015-10-17 05:21 - 0000040 ____H () C:\Program Files (x86)\b4084b1d.tmp 2015-11-23 13:08 - 2015-11-23 13:08 - 0187696 _____ () C:\Users\Lukas\AppData\Roaming\1.zip 2015-11-23 13:08 - 2015-11-23 13:08 - 0659742 _____ () C:\Users\Lukas\AppData\Roaming\2.txt 2015-04-14 17:28 - 2015-11-22 15:57 - 0000935 _____ () C:\Users\Lukas\AppData\Roaming\2bMhNC78iao5q 2015-04-19 13:20 - 2015-11-22 15:57 - 0000554 _____ () C:\Users\Lukas\AppData\Roaming\8n7u7M0hpG3Vy9Cu 2015-12-01 07:31 - 2015-12-02 13:44 - 0000099 _____ () C:\Users\Lukas\AppData\Roaming\LauncherSettings_live.cfg 2015-12-02 13:06 - 2015-12-02 13:06 - 0000039 _____ () C:\Users\Lukas\AppData\Roaming\TheHunterSettings_steam_live.cfg 2016-02-27 12:35 - 2016-02-27 12:35 - 0010250 _____ () C:\Users\Lukas\AppData\Local\4BEEC7F234E54494BC31B63B5104251B.Dokument 2.fnf 2006-12-11 19:13 - 2006-12-11 19:13 - 0097336 _____ (Un4seen Developments) C:\Users\Lukas\AppData\Local\bass.dll 2006-12-11 19:13 - 2006-12-11 19:13 - 0013872 _____ (Un4seen Developments) C:\Users\Lukas\AppData\Local\basscd.dll 2007-08-13 17:46 - 2007-08-13 17:46 - 0102912 _____ (Albert L Faber) C:\Users\Lukas\AppData\Local\CDRip.dll 2014-05-25 16:00 - 2014-05-25 16:00 - 0000000 _____ () C:\Users\Lukas\AppData\Local\Input.xml 2007-08-13 17:46 - 2007-08-13 17:46 - 0155136 _____ () C:\Users\Lukas\AppData\Local\lame_enc.dll 2007-01-18 21:09 - 2007-01-18 21:09 - 0623616 _____ (Ivan Bischof ©2003 - 2005) C:\Users\Lukas\AppData\Local\No23 Recorder.exe 2005-08-23 22:34 - 2005-08-23 22:34 - 0029184 _____ () C:\Users\Lukas\AppData\Local\no23xwrapper.dll 2006-10-26 01:06 - 2006-10-26 01:06 - 0015872 _____ () C:\Users\Lukas\AppData\Local\ogg.dll 2015-11-13 18:40 - 2015-11-13 18:40 - 0001460 _____ () C:\Users\Lukas\AppData\Local\RecConfig.xml 2015-12-07 21:00 - 2015-12-07 21:00 - 0010072 _____ () C:\Users\Lukas\AppData\Local\recently-used.xbel 2015-10-04 12:31 - 2015-10-04 12:41 - 0007600 _____ () C:\Users\Lukas\AppData\Local\Resmon.ResmonCfg 2014-05-25 15:59 - 2014-05-25 15:59 - 0000000 _____ () C:\Users\Lukas\AppData\Local\Settings.xml 2006-10-26 01:06 - 2006-10-26 01:06 - 0143872 _____ () C:\Users\Lukas\AppData\Local\vorbis.dll 2006-10-26 01:06 - 2006-10-26 01:06 - 0064000 _____ () C:\Users\Lukas\AppData\Local\vorbisenc.dll 2006-10-26 01:06 - 2006-10-26 01:06 - 0019456 _____ () C:\Users\Lukas\AppData\Local\vorbisfile.dll Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Users\Lukas\SimpleExtern.exe Einige Dateien in TEMP: ==================== C:\Users\FAE\AppData\Local\Temp\AcDeltree.exe C:\Users\FAE\AppData\Local\Temp\FP_PL_PFS_INSTALLER_32bit-1.exe C:\Users\FAE\AppData\Local\Temp\FP_PL_PFS_INSTALLER_32bit.exe C:\Users\Lukas\AppData\Local\Temp\BingBarSetup-Partner.exe C:\Users\Lukas\AppData\Local\Temp\DivXSetup.exe C:\Users\Lukas\AppData\Local\Temp\RVsiBaJ.exe C:\Users\Lukas\AppData\Local\Temp\SkypeSetup.exe C:\Users\Lukas\AppData\Local\Temp\sqlite3.dll C:\Users\Maximilian\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\Maximilian\AppData\Local\Temp\Rar.exe C:\Users\Michael\AppData\Local\Temp\360Inst_sohuyy.exe C:\Users\Michael\AppData\Local\Temp\qqpcmgr_v10.7.16066.216_71779_Silence.exe C:\Users\Michael\AppData\Local\Temp\sqlite3.dll C:\Users\Michael\AppData\Local\Temp\Uninstall.exe C:\Users\PFrey\AppData\Local\Temp\AcDeltree.exe C:\Users\PFrey\AppData\Local\Temp\jre-6u26-windows-i586-iftw-rv.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-02-29 19:34 ==================== Ende von FRST.txt ============================ |
Themen zu trojaner keine windows uodates mehr |
anti, anti malware, bricht, entdeck, gelöscht, helft, kaspersky, malwarebytes, probleme, router, schutz, stürzt, troja, trojaner, updates, virenschutz, windows, windows updates |