Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Win 8.1 MPC Cleaner lässt sich nicht entfernen

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 25.04.2016, 09:20   #16
Jan02
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Code:
ATTFilter
Farbar Service Scanner Version: 27-01-2016
Ran by Jan (administrator) on 25-04-2016 at 10:18:38
Running from "C:\Users\Jan\Downloads"
Microsoft Windows 8.1  (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy: 
==================


System Restore:
============

System Restore Policy: 
========================


Action Center:
============


Windows Update:
============
wuauserv Service is not running. Checking service configuration:
The start type of wuauserv service is set to Demand. The default start type is Auto.
The ImagePath of wuauserv service is OK.
The ServiceDll of wuauserv service is OK.


Windows Autoupdate Disabled Policy: 
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is OK.
The ImagePath of WinDefend service is OK.


Windows Defender Disabled Policy: 
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1


Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => File is digitally signed
C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed
C:\Windows\System32\dhcpcore.dll => File is digitally signed
C:\Windows\System32\drivers\afd.sys => File is digitally signed
C:\Windows\System32\drivers\tdx.sys => File is digitally signed
C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\System32\dnsrslvr.dll => File is digitally signed
C:\Windows\System32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\System32\mpssvc.dll => File is digitally signed
C:\Windows\System32\bfe.dll => File is digitally signed
C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed
C:\Windows\System32\wscsvc.dll => File is digitally signed
C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\System32\wuaueng.dll => File is digitally signed
C:\Windows\System32\qmgr.dll => File is digitally signed
C:\Windows\System32\es.dll => File is digitally signed
C:\Windows\System32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MsMpEng.exe => File is digitally signed
C:\Windows\System32\ipnathlp.dll => File is digitally signed
C:\Windows\System32\iphlpsvc.dll => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed


**** End of log ****
         
Hallo Rafael,
der Windows Defender lässt sich übrigens nicht mehr aktivieren! Schon seit dem Mpc Cleaner.

Mfg, Jan

Alt 25.04.2016, 17:51   #17
burningice
/// Malwareteam
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Ja darum geht es grade

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
cmd: sc config wuauserv start= auto
reg: reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender" /v DisableAntiSpyware /t REG_DWORD /d 0x0 /f
cmd: sc start wuauserv
cmd: sc start WinDefend 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
emptytemp:
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.



Schritt: 2
Bitte starte wieder FRST, setze den Haken bei Addition und drücke auf Untersuchen. Poste bitte wieder die beiden Textdateien, die so entstehen.
__________________

__________________

Alt 25.04.2016, 18:17   #18
Jan02
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Code:
ATTFilter
Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-04-2016 01
durchgeführt von Jan (2016-04-25 19:05:00) Run:2
Gestartet von C:\Users\Jan\Desktop
Geladene Profile: Jan (Verfügbare Profile: Jan)
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
cmd: sc config wuauserv start= auto
reg: reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender" /v DisableAntiSpyware /t REG_DWORD /d 0x0 /f
cmd: sc start wuauserv
cmd: sc start WinDefend 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
emptytemp:
         
*****************


=========  sc config wuauserv start= auto =========

[SC] ChangeServiceConfig ERFOLG

========= Ende von CMD: =========


========= reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender" /v DisableAntiSpyware /t REG_DWORD /d 0x0 /f =========

Der Vorgang wurde erfolgreich beendet.



========= Ende von Reg: =========


=========  sc start wuauserv =========


SERVICE_NAME: wuauserv 
        TYPE               : 20  WIN32_SHARE_PROCESS  
        STATE              : 2  START_PENDING 
                                (NOT_STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)
        WIN32_EXIT_CODE    : 0  (0x0)
        SERVICE_EXIT_CODE  : 0  (0x0)
        CHECKPOINT         : 0x0
        WAIT_HINT          : 0x7d0
        PID                : 552
        FLAGS              : 

========= Ende von CMD: =========


=========  sc start WinDefend =========

[SC] StartService FEHLER 577:

Die digitale Signatur dieser Datei kann nicht �berpr�ft werden. M�glicherweise wurde durch eine k�rzlich durchgef�hrte Hardware- oder Software�nderung eine falsch signierte oder besch�digte Datei oder eine Datei, bei der es sich um b�swillige Software aus einer unbekannten Quelle handelt, installiert.


========= Ende von CMD: =========

"HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc" => Schlüssel erfolgreich entfernt
"HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc" => Schlüssel erfolgreich entfernt
EmptyTemp: => 530.1 MB temporäre Dateien entfernt.


Das System musste neu gestartet werden.

==== Ende von Fixlog 19:05:19 ====
         
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:17-04-2016 01
durchgeführt von Jan (Administrator) auf NOTEBOOK-JAN2 (25-04-2016 19:14:25)
Gestartet von C:\Users\Jan\Desktop
Geladene Profile: Jan (Verfügbare Profile: Jan)
Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
() C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe
(Qualcomm Atheros) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtTray.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Intel Corporation) C:\Program Files (x86)\Common Files\Intel\RSSDK\v3\bin\win32\notification_tool.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Astonsoft) C:\Program Files (x86)\EssentialPIM\EssentialPIM.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\Jan\Desktop\FRST64 (1).exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2789248 2016-02-17] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1387376 2014-05-13] (Realtek Semiconductor)
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.)
HKLM-x32\...\Run: [Intel Privacy Notification Tool] => C:\Program Files (x86)\Common Files\Intel\RSSDK\v3\bin\win32\notification_tool.exe [8173240 2014-10-30] (Intel Corporation)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe -autorun
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-08-27] (Atheros Communications)
HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3077712 2016-03-31] (Valve Corporation)
HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [GoogleChromeAutoLaunch_1F14D2380DB1DE09582B9D790BD95BA5] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1008280 2016-04-21] (Google Inc.)
HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [Allway Sync] => C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe [93488 2015-10-29] ()
HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8686296 2016-03-11] (Piriform Ltd)
HKU\S-1-5-21-489078762-871934448-399521353-1001\...\MountPoints2: {7dd3a79a-3f30-11e5-826a-206a8a9e0239} - "F:\LaunchU3.exe" -a
HKU\S-1-5-18\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe
HKU\S-1-5-18\...\RunOnce: [iCloud] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe [60688 2015-12-01] (Apple Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\phase-6 Reminder.lnk [2016-04-22]
ShortcutTarget: phase-6 Reminder.lnk -> C:\Program Files (x86)\phase-6\phase-6\reminder\reminder.exe (phase-6)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{562729EF-57C3-478A-BEFD-55F1642D22A4}: [DhcpNameServer] 10.61.12.1
Tcpip\..\Interfaces\{8718928D-CBEB-45EA-A621-800A9249001D}: [NameServer] 10.0.0.1
Tcpip\..\Interfaces\{DB5D870B-9660-446A-83A0-9E1575A73068}: [DhcpNameServer] 192.168.178.1
ManualProxies: 

Internet Explorer:
==================
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> {A3782EB2-C684-409E-A3C8-C932D426AFD5} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-03-15] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-04-20] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-08-30] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\kZsq9LNj.default
FF NewTab: about:newtab
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll [2015-08-10] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll [2015-08-10] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-08-30] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-05] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Extension: Avira Browser Safety - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\kZsq9LNj.default\Extensions\abs@avira.com.xpi [2016-04-10]
StartMenuInternet: FIREFOX.EXE - firefox.exe

Chrome: 
=======
CHR Profile: C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Adblock Plus) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-04-19]
CHR Extension: (Skype) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-04-19]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-19]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08]

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [322176 2014-08-27] (Windows (R) Win 7 DDK provider) [Datei ist nicht signiert]
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [Datei ist nicht signiert]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2829552 2016-03-08] (Microsoft Corporation)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-07-22] (Acer Incorporated)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1164672 2016-02-17] (NVIDIA Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315352 2014-06-16] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-02-19] (Intel Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-02-19] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1880960 2016-02-17] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6474112 2016-02-17] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2609024 2016-02-17] (NVIDIA Corporation)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3905536 2014-08-11] (Qualcomm Atheros Communications, Inc.)
R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-08-27] (Qualcomm Atheros)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 LGJoyXlCore; C:\Windows\system32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.)
S3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-04-25] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [116736 2014-02-19] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28032 2016-02-17] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47760 2015-12-18] (NVIDIA Corporation)
S3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42736 2014-07-10] (Synaptics Incorporated)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-04-25 16:21 - 2016-04-25 16:21 - 00000000 ____D C:\Users\Jan\AppData\Local\TempTaskUpdateDetection4822F7AE-F8AC-457E-8AF6-112DFE867E18
2016-04-25 15:48 - 2016-04-25 15:48 - 00000000 ____D C:\Users\Jan\AppData\Local\Microsoft Help
2016-04-25 10:18 - 2016-04-25 10:18 - 00002957 _____ C:\Windows\SysWOW64\FSS.txt
2016-04-25 10:12 - 2016-04-25 10:11 - 00007164 _____ C:\Users\Jan\Desktop\WinDefend.reg
2016-04-25 10:11 - 2016-04-25 10:11 - 00007164 _____ C:\Users\Jan\Downloads\WinDefend.reg
2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bonjour-Druckdienste
2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files\Bonjour Print Services
2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files\Bonjour
2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-04-25 09:57 - 2016-04-25 09:57 - 00000000 ____D C:\Users\Jan\Documents\Bluetooth Folder
2016-04-25 09:57 - 2016-04-25 09:57 - 00000000 ____D C:\Users\Jan\AppData\Local\BMExplorer
2016-04-22 17:15 - 2016-04-22 17:20 - 00000696 _____ C:\Users\Jan\Desktop\Search.txt
2016-04-22 14:13 - 2016-04-25 18:26 - 00009152 _____ C:\Users\Jan\Documents\Liste der erhaltenen Geschenke Konfirmation Jan am 24.04.2016.docx.xlsx
2016-04-22 14:12 - 2016-04-22 14:12 - 00008302 _____ C:\Users\Jan\Documents\Mappe1.xlsx
2016-04-21 19:52 - 2016-04-21 19:52 - 00000000 ____D C:\Users\Jan\Downloads\370LvL
2016-04-21 19:51 - 2016-04-21 19:51 - 00061155 _____ C:\Users\Jan\Downloads\370LvL.rar
2016-04-21 18:52 - 2016-04-21 18:52 - 00002796 _____ C:\Users\Jan\Downloads\FSS.txt
2016-04-21 18:51 - 2016-04-21 18:51 - 00899584 _____ (Farbar) C:\Users\Jan\Downloads\FSS.exe
2016-04-21 18:24 - 2016-04-21 18:26 - 00237504 _____ C:\TDSSKiller.3.1.0.9_21.04.2016_18.24.25_log.txt
2016-04-21 18:23 - 2016-04-21 18:23 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\Jan\Downloads\tdsskiller.exe
2016-04-20 19:55 - 2016-04-20 19:55 - 02870984 _____ (ESET) C:\Users\Jan\Downloads\esetsmartinstaller_deu.exe
2016-04-20 19:49 - 2016-04-25 19:05 - 00002354 _____ C:\Users\Jan\Desktop\Fixlog.txt
2016-04-19 19:07 - 2016-04-19 19:08 - 29872687 _____ C:\Users\Jan\Downloads\client_20810.zip
2016-04-19 15:10 - 2016-04-25 19:14 - 00019430 _____ C:\Users\Jan\Desktop\FRST.txt
2016-04-19 15:10 - 2016-04-21 06:12 - 00050301 _____ C:\Users\Jan\Desktop\Addition.txt
2016-04-19 15:09 - 2016-04-19 15:09 - 00001271 _____ C:\Users\Jan\Downloads\FRST - Verknüpfung.lnk
2016-04-19 15:09 - 2016-04-18 16:45 - 02375680 _____ (Farbar) C:\Users\Jan\Desktop\FRST64 (1).exe
2016-04-19 15:01 - 2016-04-19 14:50 - 00024064 _____ C:\Windows\zoek-delete.exe
2016-04-19 14:50 - 2016-04-22 13:43 - 00001377 _____ C:\Users\Jan\Desktop\zoek - Verknüpfung.lnk
2016-04-19 14:49 - 2016-04-19 14:49 - 00001355 _____ C:\Users\Jan\Downloads\zoek - Verknüpfung.lnk
2016-04-19 14:48 - 2016-04-19 15:01 - 00000000 ____D C:\zoek_backup
2016-04-19 14:48 - 2016-04-19 14:48 - 01309184 _____ C:\Users\Jan\Downloads\zoek.exe
2016-04-19 14:44 - 2016-04-19 14:44 - 00047545 _____ C:\Users\Jan\Desktop\mbam.txt
2016-04-19 14:39 - 2016-04-22 13:43 - 00001353 _____ C:\Users\Jan\Desktop\GeForce Experience.lnk
2016-04-19 13:07 - 2016-04-25 19:06 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-04-19 13:07 - 2016-04-22 13:43 - 00001074 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2016-04-19 13:07 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-04-19 13:07 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-04-19 13:07 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-04-19 13:05 - 2016-04-19 13:05 - 22851472 _____ (Malwarebytes ) C:\Users\Jan\Downloads\mbam-setup-2.2.1.1043.exe
2016-04-18 16:48 - 2016-04-18 16:50 - 00047979 _____ C:\Users\Jan\Downloads\Addition.txt
2016-04-18 16:47 - 2016-04-18 16:50 - 00048575 _____ C:\Users\Jan\Downloads\FRST.txt
2016-04-18 16:46 - 2016-04-25 19:14 - 00000000 ____D C:\FRST
2016-04-18 16:45 - 2016-04-18 16:45 - 02375680 _____ (Farbar) C:\Users\Jan\Downloads\FRST64 (1).exe
2016-04-16 17:44 - 2016-04-16 17:44 - 00002440 _____ C:\Users\Jan\Desktop\AdwCleaner[C6].txt
2016-04-16 17:38 - 2016-04-16 17:38 - 01726464 _____ (Farbar) C:\Users\Jan\Downloads\FRST.exe
2016-04-16 17:36 - 2016-04-16 17:36 - 02375168 _____ (Farbar) C:\Users\Jan\Downloads\FRST64.exe
2016-04-16 17:18 - 2016-03-31 02:54 - 25817600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-04-16 17:18 - 2016-03-31 02:03 - 20352512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-04-16 17:18 - 2016-03-31 01:39 - 15415808 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-04-16 17:17 - 2016-03-31 02:31 - 02892800 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-04-16 17:17 - 2016-03-31 02:28 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-04-16 17:17 - 2016-03-31 02:25 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-04-16 17:17 - 2016-03-31 02:17 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-04-16 17:17 - 2016-03-31 01:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-04-16 17:17 - 2016-03-31 01:56 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-04-16 17:17 - 2016-03-31 01:55 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-04-16 17:17 - 2016-03-31 01:53 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-04-16 17:17 - 2016-03-31 01:51 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-04-16 17:17 - 2016-03-31 01:50 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-04-16 17:17 - 2016-03-31 01:45 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-04-16 17:17 - 2016-03-31 01:45 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-04-16 17:17 - 2016-03-31 01:43 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-04-16 17:17 - 2016-03-31 01:43 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-04-16 17:17 - 2016-03-31 01:43 - 00379392 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-04-16 17:17 - 2016-03-31 01:42 - 02131968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-04-16 17:17 - 2016-03-31 01:30 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-04-16 17:17 - 2016-03-31 01:30 - 02596864 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-04-16 17:17 - 2016-03-31 01:30 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-04-16 17:17 - 2016-03-31 01:30 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-04-16 17:17 - 2016-03-31 01:27 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-04-16 17:17 - 2016-03-31 01:24 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-04-16 17:17 - 2016-03-31 01:23 - 02056192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-04-16 17:17 - 2016-03-31 01:23 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-04-16 17:17 - 2016-03-31 01:23 - 00330752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-04-16 17:17 - 2016-03-31 01:21 - 13811712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-04-16 17:17 - 2016-03-31 01:18 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-04-16 17:17 - 2016-03-31 01:06 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-04-16 17:17 - 2016-03-31 01:05 - 02121216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-04-16 17:17 - 2016-03-31 01:02 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-04-16 17:17 - 2016-03-31 01:00 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-04-16 17:16 - 2016-03-16 01:00 - 00561952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-04-16 17:16 - 2016-03-15 16:14 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-04-16 17:16 - 2016-03-11 16:48 - 00833024 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2016-04-16 17:16 - 2016-03-10 20:22 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-04-16 17:16 - 2016-03-10 20:21 - 00401920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-04-16 17:16 - 2016-03-10 20:20 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-04-16 17:16 - 2016-03-10 19:44 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-04-16 17:16 - 2016-03-10 19:16 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-04-16 17:16 - 2016-03-10 19:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2016-04-16 17:16 - 2016-03-10 18:48 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2016-04-16 17:16 - 2016-03-03 18:47 - 02345472 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2016-04-16 17:16 - 2016-03-03 18:33 - 01556992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2016-04-16 17:15 - 2016-04-16 17:15 - 03677760 _____ C:\Users\Jan\Downloads\adwcleaner_5.111.exe
2016-04-16 17:15 - 2016-04-04 08:35 - 00046768 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-04-16 17:15 - 2016-04-02 15:26 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-04-16 17:15 - 2016-04-02 15:26 - 01169408 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-04-16 17:15 - 2016-03-28 15:21 - 00698368 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-04-16 17:15 - 2016-03-28 15:21 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-04-16 17:15 - 2016-03-28 15:21 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-04-16 17:15 - 2016-03-28 15:21 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-04-16 17:15 - 2016-03-28 15:21 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-04-16 17:15 - 2016-03-03 03:39 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-04-16 17:15 - 2016-03-03 03:39 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-04-16 17:14 - 2016-03-10 21:19 - 07452512 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-04-16 17:14 - 2016-03-10 21:17 - 01663192 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-04-16 17:14 - 2016-03-10 21:17 - 01523216 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-04-16 17:14 - 2016-03-10 21:17 - 01490128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-04-16 17:14 - 2016-03-10 21:17 - 01358960 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-04-16 17:14 - 2016-03-10 21:17 - 01133752 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-04-16 17:14 - 2016-03-10 19:48 - 00862720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-04-16 17:14 - 2016-03-10 19:43 - 00161280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2016-04-16 17:14 - 2016-03-10 18:55 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
2016-04-16 17:14 - 2016-03-10 18:42 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll
2016-04-16 17:12 - 2016-03-03 18:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2016-04-16 12:12 - 2016-03-29 16:05 - 04175872 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-04-11 19:01 - 2016-04-11 19:01 - 00000000 _____ C:\autoexec.bat
2016-04-11 18:29 - 2016-04-16 17:20 - 00000000 ____D C:\AdwCleaner
2016-04-10 16:51 - 2016-04-10 16:51 - 00000000 ____D C:\Users\Jan\AppData\Roaming\MCorp
2016-04-10 16:28 - 2016-04-10 16:34 - 00000000 ____D C:\Users\Jan\AppData\Local\app
2016-04-10 16:19 - 2016-04-10 16:20 - 00000000 ____D C:\Users\Jan\AppData\Local\Tempfolder
2016-04-10 16:19 - 2016-04-10 16:19 - 00000000 ____D C:\uninst
2016-04-10 16:17 - 2016-04-10 16:20 - 00127488 _____ C:\Users\Jan\AppData\Roaming\Installer.dat
2016-04-10 16:16 - 2016-04-10 16:15 - 00001006 _____ C:\Windows\system32\Drivers\etc\hp.bak
2016-04-09 12:37 - 2016-04-09 12:37 - 00000000 ____D C:\Users\Jan\AppData\Roaming\dvdcss
2016-04-09 10:39 - 2016-04-09 10:39 - 00000000 ____D C:\Users\Jan\AppData\Local\Avira_Operations_GmbH_&_C
2016-04-09 10:31 - 2016-04-09 10:31 - 00000000 ____D C:\Users\Jan\AppData\Local\Avira
2016-04-09 10:29 - 2016-04-12 20:41 - 00000000 ____D C:\Program Files (x86)\Avira
2016-04-09 10:29 - 2016-04-11 20:20 - 00000000 ____D C:\ProgramData\Avira
2016-04-09 09:57 - 2016-04-09 09:57 - 00000000 ____D C:\Windows\system32\SSL
2016-03-29 12:06 - 2016-03-29 12:06 - 00000000 ____D C:\Users\Jan\AppData\Roaming\NVIDIA
2016-03-29 11:31 - 2016-03-29 11:31 - 00000000 ____D C:\ProgramData\NVIDIA
2016-03-29 11:31 - 2016-03-22 04:25 - 06369728 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-03-29 11:31 - 2016-03-22 04:25 - 02993088 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2016-03-29 11:31 - 2016-03-22 04:25 - 02561472 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-03-29 11:31 - 2016-03-22 04:25 - 01264064 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2016-03-29 11:31 - 2016-03-22 04:25 - 00532536 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-03-29 11:31 - 2016-03-22 04:25 - 00393784 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-03-29 11:31 - 2016-03-22 04:25 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-03-29 11:31 - 2016-03-22 04:25 - 00069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-03-29 11:31 - 2016-03-18 20:10 - 06253721 _____ C:\Windows\system32\nvcoproc.bin
2016-03-29 11:30 - 2016-03-22 06:12 - 42923576 _____ C:\Windows\system32\nvcompiler.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 37567424 _____ C:\Windows\SysWOW64\nvcompiler.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 31555008 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 25321408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 21355248 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 20897416 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 19004040 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 17748712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 17342392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 17248408 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 16446032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 14128840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 12567608 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-03-29 11:30 - 2016-03-22 06:12 - 10550736 _____ C:\Windows\system32\nvptxJitCompiler.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 08659472 _____ C:\Windows\SysWOW64\nvptxJitCompiler.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 03714472 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 03286992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 03235896 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 02809280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 01924152 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6436472.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 01573432 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6436472.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00959544 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00889400 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00753208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00695864 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00678520 _____ C:\Windows\system32\nvfatbinaryLoader.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00571912 _____ C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00501896 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00425016 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00423080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00377792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00175368 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00153392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2016-03-29 11:30 - 2016-03-22 06:12 - 00037091 _____ C:\Windows\system32\nvinfo.pb
2016-03-29 11:30 - 2016-03-22 06:12 - 00000139 _____ C:\Windows\SysWOW64\nv-vk32.json
2016-03-29 11:30 - 2016-03-22 06:12 - 00000139 _____ C:\Windows\system32\nv-vk64.json
2016-03-27 12:08 - 2016-03-27 12:08 - 00000000 ____D C:\Users\Jan\Documents\Razer

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-04-25 19:13 - 2015-06-17 21:46 - 06387290 _____ C:\Windows\system32\perfh007.dat
2016-04-25 19:13 - 2015-06-17 21:46 - 01843714 _____ C:\Windows\system32\perfc007.dat
2016-04-25 19:13 - 2014-03-18 12:03 - 00005430 _____ C:\Windows\system32\PerfStringBackup.INI
2016-04-25 19:06 - 2015-08-09 19:46 - 00000000 ____D C:\Program Files (x86)\Steam
2016-04-25 19:06 - 2015-08-09 10:05 - 00001142 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-25 19:05 - 2015-07-15 18:57 - 00000000 ____D C:\Users\Jan
2016-04-25 19:05 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-04-25 19:02 - 2015-08-09 10:05 - 00001146 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-25 18:53 - 2015-08-10 08:56 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-04-25 16:15 - 2016-03-20 10:00 - 00000000 ____D C:\Users\Jan\AppData\Local\ElevatedDiagnostics
2016-04-25 16:15 - 2015-08-09 08:50 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-489078762-871934448-399521353-1001
2016-04-25 13:04 - 2015-08-31 20:54 - 00000000 ____D C:\Users\Jan\Documents\Euro Truck Simulator 2
2016-04-25 10:20 - 2015-06-17 12:54 - 00003718 _____ C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2016-04-25 09:57 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\Inf
2016-04-23 20:37 - 2015-01-12 14:48 - 00000000 ____D C:\Windows\Panther
2016-04-23 13:04 - 2015-08-09 10:06 - 00002171 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-23 13:04 - 2015-08-09 10:06 - 00002159 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-04-22 13:43 - 2016-03-22 18:08 - 00000882 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-04-22 13:43 - 2016-03-22 16:58 - 00001769 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-04-22 13:43 - 2016-02-24 21:09 - 00000921 _____ C:\Users\Public\Desktop\Euro Truck Simulator 2 Multiplayer.lnk
2016-04-22 13:43 - 2016-02-24 21:09 - 00000916 _____ C:\Users\Public\Desktop\American Truck Simulator Multiplayer.lnk
2016-04-22 13:43 - 2016-02-15 20:24 - 00000867 _____ C:\Users\Jan\Desktop\Steam.lnk
2016-04-22 13:43 - 2015-12-08 21:50 - 00002715 _____ C:\Users\Public\Desktop\Skype.lnk
2016-04-22 13:43 - 2015-11-03 19:57 - 00001772 _____ C:\Users\Jan\Desktop\Word 2013.lnk
2016-04-22 13:43 - 2015-08-31 16:42 - 00002838 _____ C:\Users\Jan\Desktop\Excel 2013.lnk
2016-04-22 13:43 - 2015-08-31 16:42 - 00002769 _____ C:\Users\Jan\Desktop\PowerPoint 2013.lnk
2016-04-22 13:43 - 2015-08-30 13:14 - 00001251 _____ C:\Users\Jan\Desktop\Landwirtschafts Simulator 15 .lnk
2016-04-22 13:43 - 2015-08-30 12:46 - 00001945 _____ C:\Users\Public\Desktop\Samsung Kies 3.lnk
2016-04-22 13:43 - 2015-08-30 12:28 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-04-22 13:43 - 2015-08-30 12:28 - 00002031 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2016-04-22 13:43 - 2015-08-30 12:15 - 00001089 _____ C:\Users\Public\Desktop\phase-6 desktop.lnk
2016-04-22 13:43 - 2015-08-30 11:54 - 00001042 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-04-22 13:43 - 2015-08-30 11:43 - 00001027 _____ C:\Users\Public\Desktop\EssentialPIM.lnk
2016-04-22 13:43 - 2015-08-30 11:41 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-04-22 13:43 - 2015-08-30 11:40 - 00000990 _____ C:\Users\Jan\Desktop\IrfanView 64.lnk
2016-04-22 13:43 - 2015-07-15 18:58 - 00001272 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio-Manager.lnk
2016-04-22 13:43 - 2015-07-15 18:58 - 00001051 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-04-22 13:43 - 2015-07-15 18:57 - 00000469 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2016-04-22 13:43 - 2015-07-15 18:57 - 00000467 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2016-04-22 13:43 - 2015-01-12 15:58 - 00001357 _____ C:\Users\Public\Desktop\CyberLink PowerDirector 10.lnk
2016-04-22 13:42 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\addins
2016-04-22 13:34 - 2015-12-08 21:50 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Skype
2016-04-22 13:29 - 2015-08-30 11:43 - 00000000 ____D C:\Users\Jan\AppData\Roaming\EssentialPIM
2016-04-21 06:19 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2016-04-20 19:32 - 2013-08-22 17:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-04-20 19:31 - 2015-08-30 13:10 - 00000000 ____D C:\Program Files\Microsoft Office 15
2016-04-19 20:34 - 2016-02-10 14:20 - 00000000 ____D C:\Users\Jan\Documents\ETS2MP
2016-04-19 19:33 - 2015-12-08 21:50 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-04-19 19:33 - 2015-12-08 21:50 - 00000000 ____D C:\ProgramData\Skype
2016-04-19 19:32 - 2015-08-09 09:00 - 00000000 ____D C:\Users\Jan\AppData\Local\CrashDumps
2016-04-19 19:08 - 2016-02-10 12:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ETS2 + ATS Multiplayer
2016-04-19 19:08 - 2016-02-10 12:51 - 00000000 ____D C:\Program Files\TruckersMP
2016-04-19 14:34 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\schemas
2016-04-19 13:51 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2016-04-19 13:02 - 2013-08-22 16:44 - 00381472 _____ C:\Windows\system32\FNTCACHE.DAT
2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ___SD C:\Windows\system32\GWX
2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ____D C:\Windows\system32\appraiser
2016-04-18 18:41 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2016-04-18 17:05 - 2016-02-13 20:35 - 00000000 ___HD C:\$WINDOWS.~BT
2016-04-18 16:45 - 2015-08-09 11:47 - 00000000 ____D C:\Windows\system32\MRT
2016-04-18 16:42 - 2015-08-09 11:47 - 135176864 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-04-18 16:39 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-04-16 17:21 - 2016-03-12 12:26 - 00000000 ____D C:\Program Files (x86)\Razer
2016-04-16 17:14 - 2016-01-12 20:47 - 00177488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-04-16 17:13 - 2016-03-09 15:46 - 01737080 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-04-16 17:13 - 2016-03-09 15:46 - 01501488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-04-16 17:13 - 2016-03-09 15:46 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2016-04-16 17:07 - 2016-03-12 12:31 - 00000000 ____D C:\Users\Jan\AppData\Local\Razer
2016-04-16 17:07 - 2016-03-12 12:26 - 00000000 ____D C:\ProgramData\Razer
2016-04-10 17:41 - 2016-02-07 17:03 - 00000000 ____D C:\Users\Jan\Documents\American Truck Simulator
2016-04-09 12:41 - 2015-08-30 11:54 - 00000000 ____D C:\Users\Jan\AppData\Roaming\vlc
2016-04-09 10:35 - 2015-08-30 12:20 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Mozilla
2016-04-09 09:45 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2016-04-05 23:53 - 2015-01-12 15:43 - 00829944 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-04-05 23:53 - 2015-01-12 15:43 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-04-05 15:36 - 2015-11-03 21:23 - 00000222 _____ C:\Users\Jan\Desktop\DiRT Rally.url
2016-04-02 19:54 - 2016-03-02 16:14 - 00000000 ____D C:\Users\Jan\Documents\Project CARS
2016-03-29 11:31 - 2015-06-17 12:50 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-03-29 11:31 - 2015-06-17 12:50 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-03-29 11:31 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\Help

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2016-04-10 16:17 - 2016-04-10 16:20 - 0127488 _____ () C:\Users\Jan\AppData\Roaming\Installer.dat
2015-06-17 13:07 - 2015-06-17 13:07 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-04-20 21:55

==================== Ende von FRST.txt ============================
         
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-04-2016 01
durchgeführt von Jan (2016-04-25 19:14:55)
Gestartet von C:\Users\Jan\Desktop
Windows 8.1 (X64) (2015-07-15 16:57:53)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-489078762-871934448-399521353-500 - Administrator - Disabled)
Gast (S-1-5-21-489078762-871934448-399521353-501 - Limited - Disabled)
Jan (S-1-5-21-489078762-871934448-399521353-1001 - Administrator - Enabled) => C:\Users\Jan

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8106.0 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8108 - Acer Incorporated)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (HKLM-x32\...\{F83DD803-2467-4D07-9D6F-87AF0434410A}) (Version: 11.9.900.170 - Adobe Systems Incorporated)
Allway Sync (HKLM-x32\...\{BD9C52C1-7971-47D1-AB95-5F1F9F34D35A}) (Version: 15.3.1 - Botkind, Inc.)
American Truck Simulator (HKLM-x32\...\Steam App 270880) (Version:  - SCS Software)
Apple Application Support (32-Bit) (HKLM-x32\...\{FE5C2FAA-118D-4509-B51D-3F71CC9E1B3E}) (Version: 4.3 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{2937FD88-C9D6-4B82-B539-37CD0A572F42}) (Version: 4.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Bonjour (HKLM\...\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}) (Version: 2.0.2.0 - Apple Inc.)
Bonjour-Druckdienste (HKLM\...\{0DA20600-6130-443B-9D4B-F30520315FA6}) (Version: 2.0.2.0 - Apple Inc.)
Broadcom NetLink Controller (HKLM\...\{7FBA83D7-D58E-4B70-9B9B-12E95B183B22}) (Version: 16.6.1.3 - Broadcom Corporation)
Brother MFL-Pro Suite MFC-J6510DW (HKLM-x32\...\{17795164-3BC1-4D4F-8ADA-65C895EBFC9A}) (Version: 2.0.0.0 - Brother Industries, Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 5.16 - Piriform)
Cities: Skylines (HKLM-x32\...\Steam App 255710) (Version:  - Colossal Order Ltd.)
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.4220 - CyberLink Corp.)
DiRT Rally (HKLM-x32\...\Steam App 310560) (Version:  - Codemasters Racing Studio)
Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.6.3.1 - Dolby Laboratories Inc)
EssentialPIM (HKLM-x32\...\EssentialPIM) (Version: 6.58 - Astonsoft Ltd)
Euro Truck Simulator (HKLM-x32\...\Steam App 232010) (Version:  - SCS Software)
Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version:  - SCS Software)
F1 2012 (HKLM-x32\...\Steam App 208500) (Version:  - Codemasters Birmingham)
F1 2013 (HKLM-x32\...\Steam App 223670) (Version:  - Codemasters Birmingham)
F1 2015 (HKLM-x32\...\Steam App 286570) (Version:  - Codemasters)
Foxit PhantomPDF (HKLM-x32\...\{D4DF5498-C95C-4A02-9951-725FB2D7BC0D}) (Version: 6.0.121.624 - Foxit Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
GRID 2 (HKLM-x32\...\Steam App 44350) (Version:  - Codemasters Racing)
iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.)
Intel RealSense Warrior Wave (HKLM-x32\...\Warrior Wave) (Version: 1.0.24 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1168 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3643 - Intel Corporation)
Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime  (x86): Core (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime  (x86): Face Tracking (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime  (x86): Face Tracking: Models (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime  (x86): User Notification Tool files and components (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime (HKLM-x32\...\ARP_for_prd_rs_sdk_runtime_v3_3.1.0.85181) (Version: 3.1.0.85181 - Intel Corporation)
IrfanView 64 (remove only) (HKLM\...\IrfanView) (Version: 4.40 - Irfan Skiljan)
iTunes (HKLM\...\{A31C5565-90D9-4615-AE13-94D86C3836C7}) (Version: 12.3.3.17 - Apple Inc.)
Kinect for Windows Speech Recognition Language Pack (de-DE) (HKLM-x32\...\{898AA67F-99B8-4C7F-9611-B11F98EF6E78}) (Version: 11.0.7413.611 - Microsoft Corporation)
Landwirtschafts Simulator 15 (HKLM-x32\...\FarmingSimulator2015DE_is1) (Version: 1.4.2.0 - GIANTS Software)
Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech)
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4815.1001 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-489078762-871934448-399521353-1001\...\OneDriveSetup.exe) (Version: 17.3.6302.0225 - Microsoft Corporation)
Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
NVIDIA GeForce Experience 2.10.2.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.10.2.40 - NVIDIA Corporation)
NVIDIA Grafiktreiber 364.72 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 364.72 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4815.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4815.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4815.1001 - Microsoft Corporation) Hidden
phase-6 2.3.5 (HKLM-x32\...\phase-6) (Version: 2.3.5 - phase-6)
Project CARS (HKLM-x32\...\Steam App 234630) (Version:  - Slightly Mad Studios)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.330 - Qualcomm Atheros Communications)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.43 - Qualcomm Atheros)
RaceRoom Racing Experience  (HKLM-x32\...\Steam App 211500) (Version:  - Sector3 Studios)
RaceRoom Racing Experience Launcher (HKLM-x32\...\{1FD9F07F-7BBF-4C91-B3F0-A23714A3A913}_is1) (Version: 1.0 - Sector3 Studios)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.39059 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7260 - Realtek Semiconductor Corp.)
Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.16011.2 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (x32 Version: 3.2.16011.2 - Samsung Electronics Co., Ltd.) Hidden
Scania Truck Driving Simulator (HKLM-x32\...\Steam App 258760) (Version:  - SCS Software)
SHIELD Streaming (Version: 5.1.0270 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.10.2.40 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation)
Skype™ 7.21 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.21.100 - Skype Technologies S.A.)
Spintires (HKLM-x32\...\Steam App 263280) (Version:  - Oovee® Game Studios)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TruckersMP 0.2.0.8.1 Alpha (HKLM\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.2.0.8.1 Alpha - ETS2MP Team)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Welcome to Intel RealSense 3D Camera (HKLM-x32\...\Welcome to Intel RealSense 3D Camera) (Version: 1.05 - Intel)
WinRAR 5.31 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {07A88F54-C730-4DF8-BCC3-487E1A76ACF6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {0F0B2947-8987-410B-87C4-8783AB74FC1B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\Windows\system32\MRT.exe [2016-04-18] (Microsoft Corporation)
Task: {144CF144-9872-4470-98C7-96F247898303} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [2014-07-22] (Acer Incorporated)
Task: {2D8F5536-6E75-4A7B-9608-890995125601} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-10] (Adobe Systems Incorporated)
Task: {3386A9AD-41B9-44E2-8207-1CB1BBAC9757} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {61B4AA7B-433F-481E-B729-50D03345EA54} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {64463039-F0D9-4FA1-A62E-2423AEF171E6} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-489078762-871934448-399521353-1001 => C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-11] (Microsoft Corporation)
Task: {6E5497CD-4EAA-47CB-827D-E28BC9C911C1} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2014-06-17] (Acer Incorporated)
Task: {7D2CFD96-D1A2-45C2-974A-2814F836791E} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {7D36D36D-8C01-41F6-9BB6-AF7D5E84A5C4} - System32\Tasks\{BF66D5AD-3558-4BBF-9D5D-82147A5E9F3F} => pcalua.exe -a "C:\Program Files (x86)\Acer\abDocs\AcerDocsSetup.exe" -c -uninstall
Task: {91CFB104-0317-4B91-89F7-29EAFF0CD2B5} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation)
Task: {95A1FE22-88D3-4336-B7AD-CCF5B920B496} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {9CAB6DED-5621-4F5E-9970-B32B21887A37} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-03-11] (Piriform Ltd)
Task: {9CF1FF96-5129-498B-A9F2-3EFF6A437F42} - System32\Tasks\DolbySelectorTask => C:\Program Files\Dolby Digital Plus\ddp.exe [2014-04-07] (Dolby Laboratories Inc.)
Task: {BEB25077-0AEE-4334-8CD9-E0F48D46E870} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {C54C4F96-BDFA-4A9E-AAED-43F7385562F8} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-04-18] (Microsoft Corporation)
Task: {D0A479A7-929A-49B8-8484-2E9B420B9332} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
Task: {E987A9FC-7172-4CFF-AC33-3F4B42D608F1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2016-03-29 11:31 - 2016-03-22 04:25 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-03-18 23:56 - 2016-03-18 23:56 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-03-18 23:56 - 2016-03-18 23:56 - 01329936 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-08-30 13:10 - 2015-10-13 05:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2016-03-01 21:16 - 2016-02-17 08:56 - 01416064 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2015-12-19 19:54 - 2016-02-17 08:56 - 00299392 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-03-01 21:16 - 2016-02-17 08:56 - 03613056 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2015-01-12 15:54 - 2012-04-24 12:43 - 00254512 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
2015-08-30 12:43 - 2010-03-16 01:04 - 00143360 _____ () C:\Windows\system32\BrSNMP64.dll
2014-04-07 16:13 - 2014-04-07 16:13 - 00052096 _____ () C:\Program Files\Dolby Digital Plus\Dolby.DDP.Controls_Desktop.dll
2015-06-17 12:50 - 2016-02-17 09:01 - 00717184 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll
2015-06-17 12:50 - 2016-02-17 09:02 - 00862592 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll
2014-08-27 19:45 - 2014-08-27 19:45 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2014-08-27 19:41 - 2014-08-27 19:41 - 00086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll
2014-08-27 19:47 - 2014-08-27 19:47 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
2015-10-29 15:14 - 2015-10-29 15:14 - 00093488 _____ () C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe
2014-08-27 19:48 - 2014-08-27 19:48 - 00384128 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ContactsApi.dll
2014-08-27 19:36 - 2014-08-27 19:36 - 00020992 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\L10n\de-DE\BtTray.de-DE.dll
2016-03-11 22:31 - 2016-03-11 22:31 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2016-04-23 13:04 - 2016-04-21 07:10 - 02224280 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.87\libglesv2.dll
2016-04-23 13:04 - 2016-04-21 07:10 - 00097944 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.87\libegl.dll
2015-08-09 10:40 - 2016-02-17 09:02 - 00020352 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-08-09 19:48 - 2016-03-11 02:56 - 00783360 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-08-09 19:48 - 2015-07-03 18:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2015-08-09 19:48 - 2016-03-31 22:55 - 02549840 _____ () C:\Program Files (x86)\Steam\video.dll
2015-08-09 19:48 - 2015-07-03 18:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-08-09 19:48 - 2015-07-03 18:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2015-08-09 19:47 - 2016-02-09 01:14 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2015-08-09 19:47 - 2016-02-09 01:14 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2015-08-09 19:47 - 2016-02-09 01:14 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2015-08-09 19:47 - 2016-02-09 01:14 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2015-08-09 19:47 - 2016-02-09 01:14 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2015-08-09 19:48 - 2016-03-31 22:55 - 00829008 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-03-09 19:14 - 2016-02-18 00:25 - 00281088 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2015-10-29 13:44 - 2015-10-29 13:44 - 08569344 _____ () C:\Program Files (x86)\Allway Sync\Bin\syncapp.dll
2015-08-30 12:43 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2015-08-09 19:48 - 2016-02-09 03:33 - 48400672 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2014-02-19 18:51 - 2014-02-19 18:51 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ==========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 15:25 - 2016-04-10 16:15 - 00001006 ____N C:\Windows\system32\Drivers\etc\hosts

127.0.0.1       down.baidu2016.com
127.0.0.1       123.sogou.com
127.0.0.1       www.czzsyzgm.com
127.0.0.1       www.czzsyzxl.com
127.0.0.1       union.baidu2019.com

==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-489078762-871934448-399521353-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jan\AppData\Roaming\Microsoft\Windows Photo Viewer\Hintergrundbild der Windows-Fotoanzeige.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-489078762-871934448-399521353-1001\...\StartupApproved\Run: => "Spotify Web Helper"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{5255B9A2-A987-47B7-AD1D-5B9EC09BBD29}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE
FirewallRules: [{177AEDA3-7A63-40BD-B9D2-86E5DE0B0525}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{168494FD-66C5-4C2A-AE2D-C1E8EEB66228}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{CCCF3C04-4E6A-46C3-93BD-28DAB4F8BD45}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{9F0CBB67-0577-48F2-9783-D423DE006369}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{03F81190-EA49-4E74-834F-09FB3235F302}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{42D08078-860B-4AE9-B02C-1B518878C94D}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{32F0C2BF-DAEF-4801-9CB7-A292D319B58E}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{B90645B1-0989-496E-B2E6-7C4AA0C67184}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{6D49E321-B7BE-48D9-96A8-FD265A4F9EB3}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{E4F3E027-28A6-4B3B-93AD-A37A06578C0F}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{23684A87-38E4-4BA0-A204-6ECBEAD044B0}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{66D90117-1867-4F0A-B85C-CD00058459CD}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{AB017C7A-6014-404A-B10B-B38536445939}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{2695E114-88E4-4C0F-A250-430847E147EB}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{0275EA0C-D51E-4E08-8874-4304C8165CCE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{D633977F-1C07-4F70-A691-EDAFC53FEB65}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{AB0B2FB5-21A1-45B6-B31C-5C19D4FD133C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{B5B2424C-3B0D-4720-BF7A-87357F1E3177}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{3B2ECB12-BCA8-47F3-A7FB-DD1715975F80}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{3A938CB8-68AA-46AE-ACD8-967440294721}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{E8666CED-3003-4AE8-8F0A-62869EAB6068}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{DAB988FC-FAEA-4D69-8B20-9DE4472466D9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{AFADCC7F-303F-4374-BB18-14622EEA487D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{0ED1EBD6-C022-4274-9495-D019F1FB9DA1}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{4054727D-41C2-4AD0-8069-88FDD7442191}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{514A81D2-AA7E-431C-977F-ED9E7C66B522}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{B7C60454-A552-4859-9BA2-65EFA7C40FA1}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{31B9CF05-4391-4741-85C8-1D900B7C846F}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{C0010281-198A-4A0D-BFC3-F4928D9D45F6}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{A38C273F-78AF-4F85-A4C3-089100CFF807}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{02F30AB7-0A5A-4156-AA33-792730082FAE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{1E20F0C0-1479-4194-A641-2774204AA61E}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{EABF564F-3340-43E5-8262-2CDEF4458F6C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{D4A908AA-782E-44A6-A6A5-77E5E204361B}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{2F2F3FAD-9AFD-4FA7-B4C6-0B8130B488E8}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{C3197FBD-F2D0-491C-8ECD-2CAEF5ACA4C5}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{FAD1F37E-0A45-4AAD-BC61-FCB84390D491}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{501C0F43-EBC3-4858-AF25-0B1E3D29C021}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{133E087A-AAF9-4BE6-A4F4-32EF738DC6E6}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{86FB5E4D-CB72-4A4C-98CD-2F892244BCBE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{0EB6DFB3-0DF8-4215-AF62-52B0C597A470}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{EF72E83F-26F9-4616-B64F-28D1250250DC}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{061DC6EF-0495-493B-81F1-DB74C9DB04A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{BB2976D1-D38F-4137-B34D-066FA09B8682}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{5CD1601B-F887-4D2B-9367-5698E3A34B38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2012\F1_2012.exe
FirewallRules: [{E486775E-0703-47C3-94F6-2D268BC6962B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2012\F1_2012.exe
FirewallRules: [{B05CBC4F-BC42-406D-8B87-F32FA2BAFE53}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\f12013\F1_2013.exe
FirewallRules: [{0EF656BD-F3FB-44B5-ACB6-096829CC86D6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\f12013\F1_2013.exe
FirewallRules: [{573BC1AD-64F3-4BAB-AEA8-64DC16E4A4F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\grid 2\grid2.exe
FirewallRules: [{49D2CD9B-E5B5-4777-92A5-AC8B7BBB7917}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\grid 2\grid2.exe
FirewallRules: [{16773875-EA72-44B6-912B-EC94F8A546CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe
FirewallRules: [{E9BCAC84-4BF9-41AF-8792-AFF33F96764A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe
FirewallRules: [TCP Query User{00105315-7825-4946-BB0A-71F1E266630C}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [UDP Query User{B4C455B4-DEA3-44A7-991B-FFD1D366CA41}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [{67B2E0AF-CCA2-4647-87DA-83930B1FEDEB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2015\F1_2015.exe
FirewallRules: [{F2D8E220-A092-42EA-9AF3-0EF775A171AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2015\F1_2015.exe
FirewallRules: [{63976110-E447-4B78-B963-2FAB5EDAB20A}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10g\FAXRX.exe
FirewallRules: [{36C30BA6-9718-447F-B59F-0DD2AB2C28E1}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10g\FAXRX.exe
FirewallRules: [{786CC2EB-683D-4794-BAAC-E38D81D66A17}] => (Allow) LPort=54925
FirewallRules: [{147D1EEF-67C4-4E55-B685-D77493CD480A}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe
FirewallRules: [{28B7563D-6764-437B-9E5E-1E988232B4F2}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe
FirewallRules: [{634A5341-F797-40F1-9AA3-D1E41EB72BB6}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe
FirewallRules: [{7EB100D4-EEE7-4EF8-A74D-3264DF9FD4F4}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe
FirewallRules: [{EA9AC0B9-6F1B-424E-8E48-64F4BF8126FA}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe
FirewallRules: [{2C2EA128-6412-4181-8A4D-D92E05B7EC75}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe
FirewallRules: [{F40459FE-8EAC-433D-ACEA-97FDC5DA3D32}] => (Allow) C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe
FirewallRules: [TCP Query User{E9FFD9BF-2060-402E-AD79-C906B02B539C}C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe] => (Allow) C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe
FirewallRules: [UDP Query User{BA51C170-5763-45F1-8034-3938147ABCB3}C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe] => (Allow) C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe
FirewallRules: [{E0CBDE1E-5C86-48CE-9802-86DA3BA91D52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe
FirewallRules: [{E63F55E2-D563-4B39-A5AE-D87509A12EC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe
FirewallRules: [{BC520304-1C68-4BA3-89C4-32FEE1C82F4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe
FirewallRules: [{E9DA2C27-251D-430B-A8E7-16A1D7319300}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe
FirewallRules: [{A12925A2-9BA0-42AD-A3AE-FC712C36A199}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe
FirewallRules: [{341F4A65-AD01-449C-ADFD-E7E47CD8DDB1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe
FirewallRules: [{E21ADE07-AEE0-44C2-8E37-A0913B44A52A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trucks & Trailers\bin\win_x86\trucks_n_trailers.exe
FirewallRules: [{028CBB43-3354-487B-BB8B-FE14A4767410}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trucks & Trailers\bin\win_x86\trucks_n_trailers.exe
FirewallRules: [{89D56416-7B46-4FCE-BFCC-4DE65FEA769F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe
FirewallRules: [{82F2CA31-99DA-4917-B91D-452B1D2B449F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe
FirewallRules: [{EC639DFF-6821-429A-951C-C651DC9B099F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator\eurotrucks.exe
FirewallRules: [{C5753D9C-1DBE-434A-B4A2-DB3A2427141E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator\eurotrucks.exe
FirewallRules: [TCP Query User{3B3EFB66-147E-4B3D-997F-E504925A9C31}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{05FDD09D-27D4-4C69-8ECF-49B5354C1AE7}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{C017ED3E-56ED-44CE-A897-2A0791F55148}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{F39FBCC3-FEEB-423B-A925-E4AA7E88EFC5}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{5B20645B-91CE-4204-8671-5DABE490E824}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe
FirewallRules: [{2F27CF8E-6801-45DF-845A-47F79EFE5CF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe
FirewallRules: [{AE33FC29-0BE1-4DE7-A8FC-E7355C8B82F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\pCars\pCARS64.exe
FirewallRules: [{3C4815BF-CC19-401E-A619-F4CB7B4F63C0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\pCars\pCARS64.exe
FirewallRules: [{3981513C-C594-46CB-8249-9CB7FE806353}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{BAEDA2ED-8C25-4C9C-A51F-72FC0BB0ADE9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\raceroom racing experience\Game\RRRE.exe
FirewallRules: [{0D9F4E1B-F2B1-4B46-8FD9-8BC452808629}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\raceroom racing experience\Game\RRRE.exe
FirewallRules: [{E2230A58-72F0-4AB0-B896-309157D9C62C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe
FirewallRules: [{7F378F69-E9D6-46E3-AF0E-FEF3735F6932}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe
FirewallRules: [{225A46F2-0C09-4422-9E6A-53D188C34E05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{B274B511-4E4E-4E19-8BE6-D4BEDA1F9C9E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{D6353889-13F9-4AE5-BFA3-71349B47325C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{5E84EF38-6DC6-40A9-A45E-CC41BE572881}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{8480922A-BF1B-4F54-87AA-1E80C8FA4C44}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{C3A5C10A-5F58-4FC0-A69C-F02D39C6F7EC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{2AF52FEC-CB35-4E46-B89F-D48C7F7EBABF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe

==================== Wiederherstellungspunkte =========================

25-04-2016 10:01:11 Installed Bonjour Print Services

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (04/25/2016 07:13:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT)
Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich.

Error: (04/25/2016 07:13:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error: (04/25/2016 07:13:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   21 D.B.8.7.9.D.8.F.D.8.E.7.E.3.8.2.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR Notebook-Jan2.local.

Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.178.19:5353   23 D.B.8.7.9.D.8.F.D.8.E.7.E.3.8.2.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR Notebook-Jan2-2.local.

Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   21 D.B.8.7.9.D.8.F.D.8.E.7.E.3.8.2.0.0.3.E.0.C.B.C.E.D.0.0.3.0.0.2.ip6.arpa. PTR Notebook-Jan2.local.

Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.178.19:5353   23 D.B.8.7.9.D.8.F.D.8.E.7.E.3.8.2.0.0.3.E.0.C.B.C.E.D.0.0.3.0.0.2.ip6.arpa. PTR Notebook-Jan2-2.local.

Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   21 19.178.168.192.in-addr.arpa. PTR Notebook-Jan2.local.

Error: (04/25/2016 07:06:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.178.19:5353   23 19.178.168.192.in-addr.arpa. PTR Notebook-Jan2-2.local.

Error: (04/25/2016 07:01:09 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   21 D.B.8.7.9.D.8.F.D.8.E.7.E.3.8.2.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR Notebook-Jan2.local.


Systemfehler:
=============
Error: (04/25/2016 07:06:10 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%577

Error: (04/25/2016 07:05:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%577

Error: (04/25/2016 07:01:10 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Der Name "WORKGROUP      :1d" konnte nicht auf der Schnittstelle mit IP-Adresse 192.168.178.19
registriert werden. Der Computer mit IP-Adresse 192.168.178.1 hat nicht
zugelassen, dass dieser Computer diesen Namen verwendet.

Error: (04/25/2016 07:00:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%577

Error: (04/25/2016 07:00:11 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎25.‎04.‎2016 um 18:50:53 unerwartet heruntergefahren.

Error: (04/25/2016 06:31:48 PM) (Source: DCOM) (EventID: 10010) (User: Notebook-Jan2)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (04/25/2016 06:15:08 PM) (Source: BTHUSB) (EventID: 16) (User: )
Description: Die beiderseitige Authentifizierung zwischen dem lokalen Bluetooth-Adapter und einem Gerät mit Bluetooth-Adapteradresse (08:df:1f:de:84:91) ist fehlgeschlagen.

Error: (04/25/2016 05:00:57 PM) (Source: DCOM) (EventID: 10016) (User: Notebook-Jan2)
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Notebook-Jan2JanS-1-5-21-489078762-871934448-399521353-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (04/25/2016 05:00:57 PM) (Source: DCOM) (EventID: 10016) (User: Notebook-Jan2)
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Notebook-Jan2JanS-1-5-21-489078762-871934448-399521353-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (04/25/2016 05:00:57 PM) (Source: DCOM) (EventID: 10016) (User: Notebook-Jan2)
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Notebook-Jan2JanS-1-5-21-489078762-871934448-399521353-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar


CodeIntegrity:
===================================
  Date: 2016-04-25 19:06:10.023
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-25 19:05:02.537
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-25 19:00:52.353
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-25 17:00:55.667
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-25 12:19:36.949
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-04-25 10:15:58.727
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-20 19:50:08.821
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-10 16:20:41.321
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-04-10 16:20:41.224
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-04-10 16:20:41.108
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Sound+\SoundP.dll because the set of per-page image hashes could not be found on the system.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i7-4710HQ CPU @ 2.50GHz
Prozentuale Nutzung des RAM: 26%
Installierter physikalischer RAM: 8115.27 MB
Verfügbarer physikalischer RAM: 5954.97 MB
Summe virtueller Speicher: 16819.27 MB
Verfügbarer virtueller Speicher: 14480.1 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:453.77 GB) (Free:221.46 GB) NTFS
Drive d: (DATA) (Fixed) (Total:453.77 GB) (Free:453.62 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 27067300)

Partition: GPT.

==================== Ende von Addition.txt ============================
         
__________________

Alt 26.04.2016, 16:25   #19
burningice
/// Malwareteam
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



... Hattest du zu vor mal eine andere Antivirenlösung installiert? Wenn ja, welche?

Schritt: 1
Bitte gehe mal zu diesem Pfad:
Zitat:
C:\Program Files\Windows Defender
und starte die MSASCui.exe. Bekommst du eine Fehlermeldung? Bzw. was passiert?
__________________
Mfg,
Rafael

~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~

Unterstütze uns mit einer Spende
......... Lob, Kritik oder Wünsche .........
.......... Folge uns auf Facebook ..........

Alt 26.04.2016, 16:37   #20
Jan02
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Hallo Rafael,

Nein ich hatte keine Antivirenlösung installiert. Die MSASCUI.exe ist in dem angegebenen Ordner nicht vorhanden. Was nun?


Gruß Jan


Alt 28.04.2016, 09:12   #21
burningice
/// Malwareteam
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
cmd: sfc /Scannow 
cmd: findstr /c:"[SR]" %windir%\logs\cbs\cbs.log
cmd: dir "C:\Program Files\Windows Defender"
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.

__________________
--> Win 8.1 MPC Cleaner lässt sich nicht entfernen

Alt 29.04.2016, 05:12   #22
Jan02
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Hallo Rafael,

die Fixlog.txt ist zu lang um sie hier posten zu können!!! Sind noch viele Schritte bis zur engültigen besiegung der adware nötig?

Gruß Jan

Code:
ATTFilter
Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-04-2016 01
durchgeführt von Jan (2016-04-28 18:22:26) Run:3
Gestartet von C:\Users\Jan\Desktop
Geladene Profile: Jan (Verfügbare Profile: Jan)
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
cmd: sfc /Scannow 
cmd: findstr /c:"[SR]" %windir%\logs\cbs\cbs.log
cmd: dir "C:\Program Files\Windows Defender"
         
*****************


=========  sfc /Scannow =========


 
 
 S y s t e m s u c h e   w i r d   g e s t a r t e t .   D i e s e r   V o r g a n g   k a n n   e i n i g e   Z e i t   d a u e r n . 
 
 
 
 
 
 � b e r p r � f u n g s p h a s e   d e r   S y s t e m s u c h e   w i r d   g e s t a r t e t . 
 
 
 � b e r p r � f u n g   0   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   0   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   1   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   1   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   2   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   2   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   2   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   3   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   3   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   4   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   4   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   5   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   5   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   5   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   6   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   6   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   7   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   7   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   7   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   8   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   8   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   9   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   9   %   a b g e s c h l o s s e n .                               � b e r p r � f u n g   1 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   2 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   3 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   4 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   5 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   6 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   7 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   8 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 0   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 1   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 2   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 3   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 4   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 5   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 6   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 7   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 8   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   9 9   %   a b g e s c h l o s s e n .                                � b e r p r � f u n g   1 0 0   %   a b g e s c h l o s s e n . 
 
 
 
 
 V o m   W i n d o w s - R e s s o u r c e n s c h u t z   w u r d e n   b e s c h � d i g t e   D a t e i e n   g e f u n d e n ,   u n d 
 
 
 e i n i g e   d a v o n   k o n n t e n   n i c h t   r e p a r i e r t   w e r d e n .   W e i t e r e   I n f o r m a t i o n e n   f i n d e n   S i e   i n   d e r   D a t e i   " C B S . L o g "   u n t e r   " w i n d i r \ L o g s \ C B S \ C B S . l o g " , 
 
 
 z . B .   " C : \ W i n d o w s \ L o g s \ C B S \ C B S . l o g " . 
 
 
 H i n w e i s :   B e i   d e r   O f f l i n e w a r t u n g   w i r d   d i e   P r o t o k o l l i e r u n g   d e r z e i t   n i c h t   u n t e r s t � t z t . 
 
 
 
========= Ende von CMD: =========


=========  findstr /c:"[SR]" %windir%\logs\cbs\cbs.log =========

2016-04-28 18:22:36, Info                  CSI    0000000a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:22:36, Info                  CSI    0000000b [SR] Beginning Verify and Repair transaction
2016-04-28 18:22:42, Info                  CSI    0000000c [SR] Verify complete
2016-04-28 18:22:42, Info                  CSI    0000000d [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:22:42, Info                  CSI    0000000e [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:00, Info                  CSI    0000000f [SR] Verify complete
2016-04-28 18:23:00, Info                  CSI    00000010 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:00, Info                  CSI    00000011 [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:03, Info                  CSI    00000012 [SR] Verify complete
2016-04-28 18:23:03, Info                  CSI    00000013 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:03, Info                  CSI    00000014 [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:06, Info                  CSI    00000015 [SR] Verify complete
2016-04-28 18:23:06, Info                  CSI    00000016 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:06, Info                  CSI    00000017 [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:10, Info                  CSI    00000018 [SR] Verify complete
2016-04-28 18:23:10, Info                  CSI    00000019 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:10, Info                  CSI    0000001a [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:13, Info                  CSI    0000001b [SR] Verify complete
2016-04-28 18:23:13, Info                  CSI    0000001c [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:13, Info                  CSI    0000001d [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:22, Info                  CSI    0000001e [SR] Verify complete
2016-04-28 18:23:22, Info                  CSI    0000001f [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:22, Info                  CSI    00000020 [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:26, Info                  CSI    00000021 [SR] Verify complete
2016-04-28 18:23:26, Info                  CSI    00000022 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:26, Info                  CSI    00000023 [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:29, Info                  CSI    00000024 [SR] Verify complete
2016-04-28 18:23:29, Info                  CSI    00000025 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:29, Info                  CSI    00000026 [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:31, Info                  CSI    00000027 [SR] Verify complete
2016-04-28 18:23:31, Info                  CSI    00000028 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:31, Info                  CSI    00000029 [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:34, Info                  CSI    0000002a [SR] Verify complete
2016-04-28 18:23:35, Info                  CSI    0000002b [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:35, Info                  CSI    0000002c [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:44, Info                  CSI    0000002d [SR] Verify complete
2016-04-28 18:23:44, Info                  CSI    0000002e [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:44, Info                  CSI    0000002f [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:46, Info                  CSI    00000030 [SR] Verify complete
2016-04-28 18:23:46, Info                  CSI    00000031 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:46, Info                  CSI    00000032 [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:49, Info                  CSI    00000033 [SR] Verify complete
2016-04-28 18:23:49, Info                  CSI    00000034 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:49, Info                  CSI    00000035 [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:52, Info                  CSI    00000036 [SR] Verify complete
2016-04-28 18:23:52, Info                  CSI    00000037 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:52, Info                  CSI    00000038 [SR] Beginning Verify and Repair transaction
2016-04-28 18:23:59, Info                  CSI    00000039 [SR] Verify complete
2016-04-28 18:23:59, Info                  CSI    0000003a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:23:59, Info                  CSI    0000003b [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:02, Info                  CSI    0000003c [SR] Verify complete
2016-04-28 18:24:02, Info                  CSI    0000003d [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:02, Info                  CSI    0000003e [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:04, Info                  CSI    0000003f [SR] Verify complete
2016-04-28 18:24:04, Info                  CSI    00000040 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:04, Info                  CSI    00000041 [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:07, Info                  CSI    00000042 [SR] Verify complete
2016-04-28 18:24:07, Info                  CSI    00000043 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:07, Info                  CSI    00000044 [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:15, Info                  CSI    00000045 [SR] Verify complete
2016-04-28 18:24:15, Info                  CSI    00000046 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:15, Info                  CSI    00000047 [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:17, Info                  CSI    00000048 [SR] Verify complete
2016-04-28 18:24:17, Info                  CSI    00000049 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:17, Info                  CSI    0000004a [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:20, Info                  CSI    0000004b [SR] Verify complete
2016-04-28 18:24:20, Info                  CSI    0000004c [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:20, Info                  CSI    0000004d [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:22, Info                  CSI    0000004e [SR] Verify complete
2016-04-28 18:24:23, Info                  CSI    0000004f [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:23, Info                  CSI    00000050 [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:25, Info                  CSI    00000051 [SR] Verify complete
2016-04-28 18:24:25, Info                  CSI    00000052 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:25, Info                  CSI    00000053 [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:33, Info                  CSI    00000054 [SR] Verify complete
2016-04-28 18:24:33, Info                  CSI    00000055 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:33, Info                  CSI    00000056 [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:36, Info                  CSI    00000057 [SR] Verify complete
2016-04-28 18:24:36, Info                  CSI    00000058 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:36, Info                  CSI    00000059 [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:38, Info                  CSI    0000005a [SR] Verify complete
2016-04-28 18:24:38, Info                  CSI    0000005b [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:38, Info                  CSI    0000005c [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:40, Info                  CSI    0000005d [SR] Verify complete
2016-04-28 18:24:40, Info                  CSI    0000005e [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:40, Info                  CSI    0000005f [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:42, Info                  CSI    00000060 [SR] Verify complete
2016-04-28 18:24:42, Info                  CSI    00000061 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:42, Info                  CSI    00000062 [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:50, Info                  CSI    00000063 [SR] Verify complete
2016-04-28 18:24:50, Info                  CSI    00000064 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:50, Info                  CSI    00000065 [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:53, Info                  CSI    00000066 [SR] Verify complete
2016-04-28 18:24:53, Info                  CSI    00000067 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:53, Info                  CSI    00000068 [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:55, Info                  CSI    00000069 [SR] Verify complete
2016-04-28 18:24:55, Info                  CSI    0000006a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:55, Info                  CSI    0000006b [SR] Beginning Verify and Repair transaction
2016-04-28 18:24:57, Info                  CSI    0000006c [SR] Verify complete
2016-04-28 18:24:58, Info                  CSI    0000006d [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:24:58, Info                  CSI    0000006e [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:05, Info                  CSI    0000006f [SR] Verify complete
2016-04-28 18:25:05, Info                  CSI    00000070 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:05, Info                  CSI    00000071 [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:08, Info                  CSI    00000072 [SR] Verify complete
2016-04-28 18:25:08, Info                  CSI    00000073 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:08, Info                  CSI    00000074 [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:10, Info                  CSI    00000075 [SR] Verify complete
2016-04-28 18:25:10, Info                  CSI    00000076 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:10, Info                  CSI    00000077 [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:12, Info                  CSI    00000078 [SR] Verify complete
2016-04-28 18:25:12, Info                  CSI    00000079 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:12, Info                  CSI    0000007a [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:14, Info                  CSI    0000007b [SR] Verify complete
2016-04-28 18:25:14, Info                  CSI    0000007c [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:14, Info                  CSI    0000007d [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:22, Info                  CSI    0000007e [SR] Verify complete
2016-04-28 18:25:22, Info                  CSI    0000007f [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:22, Info                  CSI    00000080 [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:25, Info                  CSI    00000081 [SR] Verify complete
2016-04-28 18:25:25, Info                  CSI    00000082 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:25, Info                  CSI    00000083 [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:27, Info                  CSI    00000084 [SR] Verify complete
2016-04-28 18:25:27, Info                  CSI    00000085 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:27, Info                  CSI    00000086 [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:29, Info                  CSI    00000087 [SR] Verify complete
2016-04-28 18:25:29, Info                  CSI    00000088 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:29, Info                  CSI    00000089 [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:32, Info                  CSI    0000008a [SR] Verify complete
2016-04-28 18:25:32, Info                  CSI    0000008b [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:32, Info                  CSI    0000008c [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:40, Info                  CSI    0000008d [SR] Verify complete
2016-04-28 18:25:40, Info                  CSI    0000008e [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:40, Info                  CSI    0000008f [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:42, Info                  CSI    00000090 [SR] Verify complete
2016-04-28 18:25:42, Info                  CSI    00000091 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:42, Info                  CSI    00000092 [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:44, Info                  CSI    00000093 [SR] Verify complete
2016-04-28 18:25:44, Info                  CSI    00000094 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:44, Info                  CSI    00000095 [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:47, Info                  CSI    00000096 [SR] Verify complete
2016-04-28 18:25:47, Info                  CSI    00000097 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:47, Info                  CSI    00000098 [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:49, Info                  CSI    00000099 [SR] Verify complete
2016-04-28 18:25:49, Info                  CSI    0000009a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:49, Info                  CSI    0000009b [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:56, Info                  CSI    0000009c [SR] Verify complete
2016-04-28 18:25:56, Info                  CSI    0000009d [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:56, Info                  CSI    0000009e [SR] Beginning Verify and Repair transaction
2016-04-28 18:25:59, Info                  CSI    0000009f [SR] Verify complete
2016-04-28 18:25:59, Info                  CSI    000000a0 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:25:59, Info                  CSI    000000a1 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:01, Info                  CSI    000000a2 [SR] Verify complete
2016-04-28 18:26:01, Info                  CSI    000000a3 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:01, Info                  CSI    000000a4 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:03, Info                  CSI    000000a5 [SR] Verify complete
2016-04-28 18:26:03, Info                  CSI    000000a6 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:03, Info                  CSI    000000a7 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:05, Info                  CSI    000000a8 [SR] Verify complete
2016-04-28 18:26:05, Info                  CSI    000000a9 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:05, Info                  CSI    000000aa [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:12, Info                  CSI    000000ab [SR] Verify complete
2016-04-28 18:26:12, Info                  CSI    000000ac [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:12, Info                  CSI    000000ad [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:16, Info                  CSI    000000ae [SR] Verify complete
2016-04-28 18:26:16, Info                  CSI    000000af [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:16, Info                  CSI    000000b0 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:18, Info                  CSI    000000b1 [SR] Verify complete
2016-04-28 18:26:18, Info                  CSI    000000b2 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:18, Info                  CSI    000000b3 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:20, Info                  CSI    000000b4 [SR] Verify complete
2016-04-28 18:26:20, Info                  CSI    000000b5 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:20, Info                  CSI    000000b6 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:25, Info                  CSI    000000b7 [SR] Verify complete
2016-04-28 18:26:25, Info                  CSI    000000b8 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:25, Info                  CSI    000000b9 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:30, Info                  CSI    000000bb [SR] Verify complete
2016-04-28 18:26:30, Info                  CSI    000000bc [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:30, Info                  CSI    000000bd [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:36, Info                  CSI    000000be [SR] Verify complete
2016-04-28 18:26:36, Info                  CSI    000000bf [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:36, Info                  CSI    000000c0 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:38, Info                  CSI    000000c1 [SR] Verify complete
2016-04-28 18:26:38, Info                  CSI    000000c2 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:38, Info                  CSI    000000c3 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:40, Info                  CSI    000000c4 [SR] Verify complete
2016-04-28 18:26:40, Info                  CSI    000000c5 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:40, Info                  CSI    000000c6 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:42, Info                  CSI    000000c7 [SR] Verify complete
2016-04-28 18:26:42, Info                  CSI    000000c8 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:42, Info                  CSI    000000c9 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:44, Info                  CSI    000000ca [SR] Verify complete
2016-04-28 18:26:44, Info                  CSI    000000cb [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:44, Info                  CSI    000000cc [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:46, Info                  CSI    000000cd [SR] Verify complete
2016-04-28 18:26:46, Info                  CSI    000000ce [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:46, Info                  CSI    000000cf [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:48, Info                  CSI    000000d0 [SR] Verify complete
2016-04-28 18:26:49, Info                  CSI    000000d1 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:49, Info                  CSI    000000d2 [SR] Beginning Verify and Repair transaction
2016-04-28 18:26:59, Info                  CSI    000000d3 [SR] Verify complete
2016-04-28 18:26:59, Info                  CSI    000000d4 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:26:59, Info                  CSI    000000d5 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:01, Info                  CSI    000000d6 [SR] Verify complete
2016-04-28 18:27:01, Info                  CSI    000000d7 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:01, Info                  CSI    000000d8 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:03, Info                  CSI    000000d9 [SR] Verify complete
2016-04-28 18:27:04, Info                  CSI    000000da [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:04, Info                  CSI    000000db [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:06, Info                  CSI    000000dc [SR] Verify complete
2016-04-28 18:27:06, Info                  CSI    000000dd [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:06, Info                  CSI    000000de [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:15, Info                  CSI    000000df [SR] Verify complete
2016-04-28 18:27:15, Info                  CSI    000000e0 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:15, Info                  CSI    000000e1 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:16, Info                  CSI    000000e2 [SR] Verify complete
2016-04-28 18:27:16, Info                  CSI    000000e3 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:16, Info                  CSI    000000e4 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:18, Info                  CSI    000000e5 [SR] Verify complete
2016-04-28 18:27:18, Info                  CSI    000000e6 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:18, Info                  CSI    000000e7 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:20, Info                  CSI    000000e8 [SR] Verify complete
2016-04-28 18:27:20, Info                  CSI    000000e9 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:20, Info                  CSI    000000ea [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:21, Info                  CSI    000000eb [SR] Verify complete
2016-04-28 18:27:22, Info                  CSI    000000ec [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:22, Info                  CSI    000000ed [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:29, Info                  CSI    000000ee [SR] Verify complete
2016-04-28 18:27:30, Info                  CSI    000000ef [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:30, Info                  CSI    000000f0 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:33, Info                  CSI    000000f1 [SR] Verify complete
2016-04-28 18:27:33, Info                  CSI    000000f2 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:33, Info                  CSI    000000f3 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:36, Info                  CSI    000000f4 [SR] Verify complete
2016-04-28 18:27:36, Info                  CSI    000000f5 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:36, Info                  CSI    000000f6 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:38, Info                  CSI    000000f7 [SR] Verify complete
2016-04-28 18:27:38, Info                  CSI    000000f8 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:38, Info                  CSI    000000f9 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:40, Info                  CSI    000000fa [SR] Verify complete
2016-04-28 18:27:40, Info                  CSI    000000fb [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:40, Info                  CSI    000000fc [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:49, Info                  CSI    000000fd [SR] Verify complete
2016-04-28 18:27:49, Info                  CSI    000000fe [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:49, Info                  CSI    000000ff [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:51, Info                  CSI    00000100 [SR] Verify complete
2016-04-28 18:27:51, Info                  CSI    00000101 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:51, Info                  CSI    00000102 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:54, Info                  CSI    00000103 [SR] Verify complete
2016-04-28 18:27:54, Info                  CSI    00000104 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:54, Info                  CSI    00000105 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:56, Info                  CSI    00000106 [SR] Verify complete
2016-04-28 18:27:56, Info                  CSI    00000107 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:56, Info                  CSI    00000108 [SR] Beginning Verify and Repair transaction
2016-04-28 18:27:57, Info                  CSI    0000010a [SR] Cannot repair member file [l:32{16}]"Event Viewer.lnk" of EventViewerSettings, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:27:58, Info                  CSI    0000010c [SR] Cannot repair member file [l:32{16}]"Event Viewer.lnk" of EventViewerSettings, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:27:58, Info                  CSI    0000010d [SR] This component was referenced by [l:164{82}]"Package_752_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2054_neutral_GDR"
2016-04-28 18:27:58, Info                  CSI    00000110 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:32{16}]"Event Viewer.lnk"; source file in store is also corrupted
2016-04-28 18:27:58, Info                  CSI    00000111 [SR] Verify complete
2016-04-28 18:27:58, Info                  CSI    00000112 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:27:58, Info                  CSI    00000113 [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:00, Info                  CSI    00000114 [SR] Verify complete
2016-04-28 18:28:00, Info                  CSI    00000115 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:00, Info                  CSI    00000116 [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:12, Info                  CSI    00000117 [SR] Verify complete
2016-04-28 18:28:12, Info                  CSI    00000118 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:12, Info                  CSI    00000119 [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:16, Info                  CSI    0000011a [SR] Verify complete
2016-04-28 18:28:16, Info                  CSI    0000011b [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:16, Info                  CSI    0000011c [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:19, Info                  CSI    0000011d [SR] Verify complete
2016-04-28 18:28:19, Info                  CSI    0000011e [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:19, Info                  CSI    0000011f [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:23, Info                  CSI    00000120 [SR] Verify complete
2016-04-28 18:28:23, Info                  CSI    00000121 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:23, Info                  CSI    00000122 [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:30, Info                  CSI    00000123 [SR] Verify complete
2016-04-28 18:28:30, Info                  CSI    00000124 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:30, Info                  CSI    00000125 [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:35, Info                  CSI    00000126 [SR] Verify complete
2016-04-28 18:28:35, Info                  CSI    00000127 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:35, Info                  CSI    00000128 [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:36, Info                  CSI    00000129 [SR] Verify complete
2016-04-28 18:28:36, Info                  CSI    0000012a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:36, Info                  CSI    0000012b [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:39, Info                  CSI    0000012c [SR] Verify complete
2016-04-28 18:28:39, Info                  CSI    0000012d [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:39, Info                  CSI    0000012e [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:45, Info                  CSI    00000147 [SR] Verify complete
2016-04-28 18:28:45, Info                  CSI    00000148 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:45, Info                  CSI    00000149 [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:47, Info                  CSI    0000014b [SR] Cannot repair member file [l:36{18}]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:28:49, Info                  CSI    0000014d [SR] Cannot repair member file [l:32{16}]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:28:52, Info                  CSI    00000152 [SR] Cannot repair member file [l:36{18}]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:28:52, Info                  CSI    00000153 [SR] This component was referenced by [l:164{82}]"Package_873_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2613_neutral_GDR"
2016-04-28 18:28:52, Info                  CSI    00000156 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:36{18}]"Steps Recorder.lnk"; source file in store is also corrupted
2016-04-28 18:28:53, Info                  CSI    00000158 [SR] Cannot repair member file [l:32{16}]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:28:53, Info                  CSI    00000159 [SR] This component was referenced by [l:164{82}]"Package_868_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2529_neutral_GDR"
2016-04-28 18:28:53, Info                  CSI    0000015c [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:32{16}]"Task Manager.lnk"; source file in store is also corrupted
2016-04-28 18:28:53, Info                  CSI    00000160 [SR] Verify complete
2016-04-28 18:28:53, Info                  CSI    00000161 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:53, Info                  CSI    00000162 [SR] Beginning Verify and Repair transaction
2016-04-28 18:28:58, Info                  CSI    00000165 [SR] Verify complete
2016-04-28 18:28:58, Info                  CSI    00000166 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:28:58, Info                  CSI    00000167 [SR] Beginning Verify and Repair transaction
2016-04-28 18:29:06, Info                  CSI    0000016f [SR] Verify complete
2016-04-28 18:29:06, Info                  CSI    00000170 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:29:06, Info                  CSI    00000171 [SR] Beginning Verify and Repair transaction
2016-04-28 18:29:10, Info                  CSI    00000177 [SR] Verify complete
2016-04-28 18:29:10, Info                  CSI    00000178 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:29:10, Info                  CSI    00000179 [SR] Beginning Verify and Repair transaction
2016-04-28 18:29:13, Info                  CSI    0000017a [SR] Verify complete
2016-04-28 18:29:13, Info                  CSI    0000017b [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:29:13, Info                  CSI    0000017c [SR] Beginning Verify and Repair transaction
2016-04-28 18:29:15, Info                  CSI    0000017e [SR] Cannot repair member file [l:44{22}]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:29:15, Info                  CSI    00000180 [SR] Cannot repair member file [l:46{23}]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:29:16, Info                  CSI    00000182 [SR] Cannot repair member file [l:28{14}]"Calculator.lnk" of Microsoft-Windows-calc, Version = 6.3.9600.17667, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:29:17, Info                  CSI    00000184 [SR] Cannot repair member file [l:46{23}]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:29:17, Info                  CSI    00000185 [SR] This component was referenced by [l:164{82}]"Package_752_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2048_neutral_GDR"
2016-04-28 18:29:17, Info                  CSI    00000188 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:46{23}]"Computer Management.lnk"; source file in store is also corrupted
2016-04-28 18:29:18, Info                  CSI    0000018b [SR] Cannot repair member file [l:28{14}]"Calculator.lnk" of Microsoft-Windows-calc, Version = 6.3.9600.17667, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:29:18, Info                  CSI    0000018c [SR] This component was referenced by [l:154{77}]"Package_1_for_KB3024755~31bf3856ad364e35~amd64~~6.3.1.1.3024755-1_neutral_GDR"
2016-04-28 18:29:18, Info                  CSI    0000018f [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:28{14}]"Calculator.lnk"; source file in store is also corrupted
2016-04-28 18:29:19, Info                  CSI    00000191 [SR] Cannot repair member file [l:44{22}]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:29:19, Info                  CSI    00000192 [SR] This component was referenced by [l:326{163}]"Microsoft-Windows-Client-Features-Package-AutoMerged-com~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-com-Deployment"
2016-04-28 18:29:19, Info                  CSI    00000195 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:44{22}]"Component Services.lnk"; source file in store is also corrupted
2016-04-28 18:29:20, Info                  CSI    00000196 [SR] Verify complete
2016-04-28 18:29:21, Info                  CSI    00000197 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:29:21, Info                  CSI    00000198 [SR] Beginning Verify and Repair transaction
2016-04-28 18:29:23, Info                  CSI    0000019a [SR] Cannot repair member file [l:34{17}]"Character Map.lnk" of Microsoft-Windows-charmap, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:29:24, Info                  CSI    0000019c [SR] Cannot repair member file [l:32{16}]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:29:27, Info                  CSI    000001a5 [SR] Cannot repair member file [l:34{17}]"Character Map.lnk" of Microsoft-Windows-charmap, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:29:27, Info                  CSI    000001a6 [SR] This component was referenced by [l:166{83}]"Package_1361_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3943_neutral_GDR"
2016-04-28 18:29:27, Info                  CSI    000001a9 [SR] Could not reproject corrupted file [ml:520{260},l:162{81}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools"\[l:34{17}]"Character Map.lnk"; source file in store is also corrupted
2016-04-28 18:29:28, Info                  CSI    000001b5 [SR] Cannot repair member file [l:32{16}]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:29:28, Info                  CSI    000001b6 [SR] This component was referenced by [l:166{83}]"Package_1361_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3942_neutral_GDR"
2016-04-28 18:29:28, Info                  CSI    000001b9 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:32{16}]"Disk Cleanup.lnk"; source file in store is also corrupted
2016-04-28 18:29:30, Info                  CSI    000001c9 [SR] Verify complete
2016-04-28 18:29:30, Info                  CSI    000001ca [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:29:30, Info                  CSI    000001cb [SR] Beginning Verify and Repair transaction
2016-04-28 18:29:40, Info                  CSI    000001ef [SR] Verify complete
2016-04-28 18:29:40, Info                  CSI    000001f0 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:29:40, Info                  CSI    000001f1 [SR] Beginning Verify and Repair transaction
2016-04-28 18:29:47, Info                  CSI    000001fb [SR] Verify complete
2016-04-28 18:29:47, Info                  CSI    000001fc [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:29:47, Info                  CSI    000001fd [SR] Beginning Verify and Repair transaction
2016-04-28 18:29:57, Info                  CSI    00000206 [SR] Verify complete
2016-04-28 18:29:57, Info                  CSI    00000207 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:29:57, Info                  CSI    00000208 [SR] Beginning Verify and Repair transaction
2016-04-28 18:30:04, Info                  CSI    00000220 [SR] Verify complete
2016-04-28 18:30:04, Info                  CSI    00000221 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:30:04, Info                  CSI    00000222 [SR] Beginning Verify and Repair transaction
2016-04-28 18:30:10, Info                  CSI    00000224 [SR] Cannot repair member file [l:20{10}]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:30:15, Info                  CSI    00000226 [SR] Cannot repair member file [l:20{10}]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:30:15, Info                  CSI    00000227 [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2637_neutral_GDR"
2016-04-28 18:30:15, Info                  CSI    0000022a [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:20{10}]"dfrgui.lnk"; source file in store is also corrupted
2016-04-28 18:30:16, Info                  CSI    00000230 [SR] Verify complete
2016-04-28 18:30:16, Info                  CSI    00000231 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:30:16, Info                  CSI    00000232 [SR] Beginning Verify and Repair transaction
2016-04-28 18:30:22, Info                  CSI    00000233 [SR] Verify complete
2016-04-28 18:30:22, Info                  CSI    00000234 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:30:22, Info                  CSI    00000235 [SR] Beginning Verify and Repair transaction
2016-04-28 18:30:31, Info                  CSI    0000023a [SR] Verify complete
2016-04-28 18:30:31, Info                  CSI    0000023b [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:30:31, Info                  CSI    0000023c [SR] Beginning Verify and Repair transaction
2016-04-28 18:30:41, Info                  CSI    00000258 [SR] Verify complete
2016-04-28 18:30:41, Info                  CSI    00000259 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:30:41, Info                  CSI    0000025a [SR] Beginning Verify and Repair transaction
2016-04-28 18:30:43, Info                  CSI    0000025c [SR] Cannot repair member file [l:48{24}]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:30:53, Info                  CSI    00000284 [SR] Cannot repair member file [l:48{24}]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:30:53, Info                  CSI    00000285 [SR] This component was referenced by [l:166{83}]"Package_2188_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-6085_neutral_GDR"
2016-04-28 18:30:53, Info                  CSI    00000288 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:48{24}]"Windows Fax and Scan.lnk"; source file in store is also corrupted
2016-04-28 18:30:54, Info                  CSI    00000297 [SR] Verify complete
2016-04-28 18:30:54, Info                  CSI    00000298 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:30:54, Info                  CSI    00000299 [SR] Beginning Verify and Repair transaction
2016-04-28 18:31:08, Info                  CSI    000002b9 [SR] Verify complete
2016-04-28 18:31:08, Info                  CSI    000002ba [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:31:08, Info                  CSI    000002bb [SR] Beginning Verify and Repair transaction
2016-04-28 18:31:24, Info                  CSI    000002c0 [SR] Verify complete
2016-04-28 18:31:24, Info                  CSI    000002c1 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:31:24, Info                  CSI    000002c2 [SR] Beginning Verify and Repair transaction
2016-04-28 18:31:28, Info                  CSI    000002c7 [SR] Verify complete
2016-04-28 18:31:28, Info                  CSI    000002c8 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:31:28, Info                  CSI    000002c9 [SR] Beginning Verify and Repair transaction
2016-04-28 18:31:33, Info                  CSI    000002e2 [SR] Verify complete
2016-04-28 18:31:33, Info                  CSI    000002e3 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:31:33, Info                  CSI    000002e4 [SR] Beginning Verify and Repair transaction
2016-04-28 18:31:42, Info                  CSI    000002f0 [SR] Verify complete
2016-04-28 18:31:42, Info                  CSI    000002f1 [SR] Verifying 100 (0x0000000000000064) components
         

Alt 29.04.2016, 05:13   #23
Jan02
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Code:
ATTFilter
2016-04-28 18:31:42, Info                  CSI    000002f2 [SR] Beginning Verify and Repair transaction
2016-04-28 18:31:44, Info                  CSI    000002f3 [SR] Verify complete
2016-04-28 18:31:44, Info                  CSI    000002f4 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:31:44, Info                  CSI    000002f5 [SR] Beginning Verify and Repair transaction
2016-04-28 18:31:47, Info                  CSI    000002fe [SR] Verify complete
2016-04-28 18:31:47, Info                  CSI    000002ff [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:31:47, Info                  CSI    00000300 [SR] Beginning Verify and Repair transaction
2016-04-28 18:31:49, Info                  CSI    00000304 [SR] Verify complete
2016-04-28 18:31:49, Info                  CSI    00000305 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:31:49, Info                  CSI    00000306 [SR] Beginning Verify and Repair transaction
2016-04-28 18:31:58, Info                  CSI    0000037b [SR] Verify complete
2016-04-28 18:31:58, Info                  CSI    0000037c [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:31:58, Info                  CSI    0000037d [SR] Beginning Verify and Repair transaction
2016-04-28 18:32:06, Info                  CSI    00000385 [SR] Verify complete
2016-04-28 18:32:06, Info                  CSI    00000386 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:32:06, Info                  CSI    00000387 [SR] Beginning Verify and Repair transaction
2016-04-28 18:32:10, Info                  CSI    00000389 [SR] Cannot repair member file [l:38{19}]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:32:10, Info                  CSI    0000038e [SR] Cannot repair member file [l:38{19}]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:32:10, Info                  CSI    0000038f [SR] This component was referenced by [l:164{82}]"Package_941_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2791_neutral_GDR"
2016-04-28 18:32:10, Info                  CSI    00000392 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:38{19}]"iSCSI Initiator.lnk"; source file in store is also corrupted
2016-04-28 18:32:12, Info                  CSI    0000039f [SR] Verify complete
2016-04-28 18:32:12, Info                  CSI    000003a0 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:32:12, Info                  CSI    000003a1 [SR] Beginning Verify and Repair transaction
2016-04-28 18:32:24, Info                  CSI    000003a2 [SR] Verify complete
2016-04-28 18:32:24, Info                  CSI    000003a3 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:32:24, Info                  CSI    000003a4 [SR] Beginning Verify and Repair transaction
2016-04-28 18:32:30, Info                  CSI    000003ae [SR] Verify complete
2016-04-28 18:32:30, Info                  CSI    000003af [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:32:30, Info                  CSI    000003b0 [SR] Beginning Verify and Repair transaction
2016-04-28 18:32:31, Info                  CSI    000003b2 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:32:33, Info                  CSI    000003b4 [SR] Cannot repair member file [l:54{27}]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:32:33, Info                  CSI    000003b6 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:32:33, Info                  CSI    000003b7 [SR] This component was referenced by [l:166{83}]"Package_1052_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3082_neutral_GDR"
2016-04-28 18:32:33, Info                  CSI    000003ba [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:60{30}]"ODBC Data Sources (64-bit).lnk"; source file in store is also corrupted
2016-04-28 18:32:36, Info                  CSI    000003c8 [SR] Cannot repair member file [l:54{27}]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:32:36, Info                  CSI    000003c9 [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2631_neutral_GDR"
2016-04-28 18:32:36, Info                  CSI    000003cc [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:54{27}]"Memory Diagnostics Tool.lnk"; source file in store is also corrupted
2016-04-28 18:32:36, Info                  CSI    000003d4 [SR] Verify complete
2016-04-28 18:32:36, Info                  CSI    000003d5 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:32:36, Info                  CSI    000003d6 [SR] Beginning Verify and Repair transaction
2016-04-28 18:32:48, Info                  CSI    000003e1 [SR] Verify complete
2016-04-28 18:32:49, Info                  CSI    000003e2 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:32:49, Info                  CSI    000003e3 [SR] Beginning Verify and Repair transaction
2016-04-28 18:32:49, Info                  CSI    000003e5 [SR] Cannot repair member file [l:50{25}]"Windows Easy Transfer.lnk" of Microsoft-Windows-MigrationWizardApplication, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:32:52, Info                  CSI    000003e7 [SR] Cannot repair member file [l:50{25}]"Windows Easy Transfer.lnk" of Microsoft-Windows-MigrationWizardApplication, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:32:52, Info                  CSI    000003e8 [SR] This component was referenced by [l:164{82}]"Package_844_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2333_neutral_GDR"
2016-04-28 18:32:52, Info                  CSI    000003eb [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:50{25}]"Windows Easy Transfer.lnk"; source file in store is also corrupted
2016-04-28 18:32:53, Info                  CSI    000003ec [SR] Verify complete
2016-04-28 18:32:53, Info                  CSI    000003ed [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:32:53, Info                  CSI    000003ee [SR] Beginning Verify and Repair transaction
2016-04-28 18:32:56, Info                  CSI    000003f0 [SR] Cannot repair member file [l:48{24}]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:33:05, Info                  CSI    000003f2 [SR] Cannot repair member file [l:48{24}]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:33:05, Info                  CSI    000003f3 [SR] This component was referenced by [l:190{95}]"Microsoft-Windows-MediaPlayer-Package~31bf3856ad364e35~amd64~~6.3.9600.16384.WindowsMediaPlayer"
2016-04-28 18:33:05, Info                  CSI    000003f6 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:48{24}]"Windows Media Player.lnk"; source file in store is also corrupted
2016-04-28 18:33:08, Info                  CSI    00000404 [SR] Verify complete
2016-04-28 18:33:08, Info                  CSI    00000405 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:33:08, Info                  CSI    00000406 [SR] Beginning Verify and Repair transaction
2016-04-28 18:33:10, Info                  CSI    00000408 [SR] Cannot repair member file [l:48{24}]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:33:12, Info                  CSI    00000413 [SR] Cannot repair member file [l:48{24}]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:33:12, Info                  CSI    00000414 [SR] This component was referenced by [l:164{82}]"Package_874_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2621_neutral_GDR"
2016-04-28 18:33:12, Info                  CSI    00000417 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:48{24}]"System Configuration.lnk"; source file in store is also corrupted
2016-04-28 18:33:14, Info                  CSI    00000428 [SR] Verify complete
2016-04-28 18:33:15, Info                  CSI    00000429 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:33:15, Info                  CSI    0000042a [SR] Beginning Verify and Repair transaction
2016-04-28 18:33:21, Info                  CSI    0000042c [SR] Cannot repair member file [l:44{22}]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:33:21, Info                  CSI    0000042e [SR] Cannot repair member file [l:18{9}]"Paint.lnk" of Microsoft-Windows-mspaint, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:33:25, Info                  CSI    00000435 [SR] Cannot repair member file [l:44{22}]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:33:25, Info                  CSI    00000436 [SR] This component was referenced by [l:164{82}]"Package_844_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2332_neutral_GDR"
2016-04-28 18:33:25, Info                  CSI    00000439 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:44{22}]"System Information.lnk"; source file in store is also corrupted
2016-04-28 18:33:25, Info                  CSI    0000043b [SR] Cannot repair member file [l:18{9}]"Paint.lnk" of Microsoft-Windows-mspaint, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:33:25, Info                  CSI    0000043c [SR] This component was referenced by [l:166{83}]"Package_1365_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-4028_neutral_GDR"
2016-04-28 18:33:25, Info                  CSI    0000043f [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:18{9}]"Paint.lnk"; source file in store is also corrupted
2016-04-28 18:33:26, Info                  CSI    00000444 [SR] Verify complete
2016-04-28 18:33:26, Info                  CSI    00000445 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:33:26, Info                  CSI    00000446 [SR] Beginning Verify and Repair transaction
2016-04-28 18:33:34, Info                  CSI    00000455 [SR] Verify complete
2016-04-28 18:33:34, Info                  CSI    00000456 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:33:34, Info                  CSI    00000457 [SR] Beginning Verify and Repair transaction
2016-04-28 18:33:46, Info                  CSI    00000484 [SR] Verify complete
2016-04-28 18:33:46, Info                  CSI    00000485 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:33:46, Info                  CSI    00000486 [SR] Beginning Verify and Repair transaction
2016-04-28 18:33:52, Info                  CSI    00000489 [SR] Verify complete
2016-04-28 18:33:52, Info                  CSI    0000048a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:33:52, Info                  CSI    0000048b [SR] Beginning Verify and Repair transaction
2016-04-28 18:33:58, Info                  CSI    00000497 [SR] Verify complete
2016-04-28 18:33:59, Info                  CSI    00000498 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:33:59, Info                  CSI    00000499 [SR] Beginning Verify and Repair transaction
2016-04-28 18:34:09, Info                  CSI    000004aa [SR] Verify complete
2016-04-28 18:34:09, Info                  CSI    000004ab [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:34:09, Info                  CSI    000004ac [SR] Beginning Verify and Repair transaction
2016-04-28 18:34:11, Info                  CSI    000004ae [SR] Cannot repair member file [l:40{20}]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:34:11, Info                  CSI    000004b0 [SR] Cannot repair member file [l:46{23}]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:34:13, Info                  CSI    000004b5 [SR] Cannot repair member file [l:40{20}]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:34:13, Info                  CSI    000004b6 [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2628_neutral_GDR"
2016-04-28 18:34:13, Info                  CSI    000004b8 [SR] Cannot repair member file [l:46{23}]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:34:13, Info                  CSI    000004b9 [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2628_neutral_GDR"
2016-04-28 18:34:13, Info                  CSI    000004bc [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:40{20}]"Resource Monitor.lnk"; source file in store is also corrupted
2016-04-28 18:34:13, Info                  CSI    000004bf [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:46{23}]"Performance Monitor.lnk"; source file in store is also corrupted
2016-04-28 18:34:13, Info                  CSI    000004c2 [SR] Verify complete
2016-04-28 18:34:14, Info                  CSI    000004c3 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:34:14, Info                  CSI    000004c4 [SR] Beginning Verify and Repair transaction
2016-04-28 18:34:14, Info                  CSI    000004c6 [SR] Cannot repair member file [l:52{26}]"Windows PowerShell ISE.lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:34:14, Info                  CSI    000004c8 [SR] Cannot repair member file [l:64{32}]"Windows PowerShell ISE (x86).lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:34:18, Info                  CSI    000004cd [SR] Cannot repair member file [l:52{26}]"Windows PowerShell ISE.lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:34:18, Info                  CSI    000004ce [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-04-28 18:34:18, Info                  CSI    000004d0 [SR] Cannot repair member file [l:64{32}]"Windows PowerShell ISE (x86).lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:34:18, Info                  CSI    000004d1 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-04-28 18:34:18, Info                  CSI    000004d4 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:52{26}]"Windows PowerShell ISE.lnk"; source file in store is also corrupted
2016-04-28 18:34:18, Info                  CSI    000004d7 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:64{32}]"Windows PowerShell ISE (x86).lnk"; source file in store is also corrupted
2016-04-28 18:34:22, Info                  CSI    000004e4 [SR] Verify complete
2016-04-28 18:34:22, Info                  CSI    000004e5 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:34:22, Info                  CSI    000004e6 [SR] Beginning Verify and Repair transaction
2016-04-28 18:34:30, Info                  CSI    000004ef [SR] Verify complete
2016-04-28 18:34:30, Info                  CSI    000004f0 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:34:30, Info                  CSI    000004f1 [SR] Beginning Verify and Repair transaction
2016-04-28 18:34:34, Info                  CSI    000004f3 [SR] Verify complete
2016-04-28 18:34:34, Info                  CSI    000004f4 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:34:34, Info                  CSI    000004f5 [SR] Beginning Verify and Repair transaction
2016-04-28 18:34:47, Info                  CSI    000004f8 [SR] Verify complete
2016-04-28 18:34:47, Info                  CSI    000004f9 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:34:47, Info                  CSI    000004fa [SR] Beginning Verify and Repair transaction
2016-04-28 18:34:51, Info                  CSI    00000509 [SR] Verify complete
2016-04-28 18:34:51, Info                  CSI    0000050a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:34:51, Info                  CSI    0000050b [SR] Beginning Verify and Repair transaction
2016-04-28 18:34:55, Info                  CSI    0000050d [SR] Verify complete
2016-04-28 18:34:55, Info                  CSI    0000050e [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:34:55, Info                  CSI    0000050f [SR] Beginning Verify and Repair transaction
2016-04-28 18:34:59, Info                  CSI    00000510 [SR] Verify complete
2016-04-28 18:34:59, Info                  CSI    00000511 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:34:59, Info                  CSI    00000512 [SR] Beginning Verify and Repair transaction
2016-04-28 18:35:13, Info                  CSI    00000522 [SR] Verify complete
2016-04-28 18:35:13, Info                  CSI    00000523 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:35:13, Info                  CSI    00000524 [SR] Beginning Verify and Repair transaction
2016-04-28 18:35:17, Info                  CSI    00000527 [SR] Verify complete
2016-04-28 18:35:17, Info                  CSI    00000528 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:35:17, Info                  CSI    00000529 [SR] Beginning Verify and Repair transaction
2016-04-28 18:35:22, Info                  CSI    0000052b [SR] Cannot repair member file [l:24{12}]"services.lnk" of Microsoft-Windows-ServicesSnapIn, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:26, Info                  CSI    00000532 [SR] Cannot repair member file [l:24{12}]"services.lnk" of Microsoft-Windows-ServicesSnapIn, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:26, Info                  CSI    00000533 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-04-28 18:35:26, Info                  CSI    00000536 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:24{12}]"services.lnk"; source file in store is also corrupted
2016-04-28 18:35:28, Info                  CSI    0000053e [SR] Verify complete
2016-04-28 18:35:28, Info                  CSI    0000053f [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:35:28, Info                  CSI    00000540 [SR] Beginning Verify and Repair transaction
2016-04-28 18:35:31, Info                  CSI    00000542 [SR] Cannot repair member file [l:34{17}]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:32, Info                  CSI    00000544 [SR] Cannot repair member file [l:36{18}]"Sound Recorder.lnk" of Microsoft-Windows-SoundRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:32, Info                  CSI    00000546 [SR] Cannot repair member file [l:44{22}]"Speech Recognition.lnk" of Microsoft-Windows-Speech-UserExperience, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:32, Info                  CSI    0000054a [SR] Cannot repair member file [l:44{22}]"Speech Recognition.lnk" of Microsoft-Windows-Speech-UserExperience, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:32, Info                  CSI    0000054b [SR] This component was referenced by [l:166{83}]"Package_1049_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3060_neutral_GDR"
2016-04-28 18:35:32, Info                  CSI    0000054e [SR] Could not reproject corrupted file [ml:520{260},l:140{70}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility"\[l:44{22}]"Speech Recognition.lnk"; source file in store is also corrupted
2016-04-28 18:35:33, Info                  CSI    00000550 [SR] Cannot repair member file [l:36{18}]"Sound Recorder.lnk" of Microsoft-Windows-SoundRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:33, Info                  CSI    00000551 [SR] This component was referenced by [l:166{83}]"Package_1133_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3321_neutral_GDR"
2016-04-28 18:35:33, Info                  CSI    00000554 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:36{18}]"Sound Recorder.lnk"; source file in store is also corrupted
2016-04-28 18:35:35, Info                  CSI    00000584 [SR] Cannot repair member file [l:34{17}]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:35, Info                  CSI    00000585 [SR] This component was referenced by [l:166{83}]"Package_2946_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7137_neutral_GDR"
2016-04-28 18:35:35, Info                  CSI    00000588 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:34{17}]"Snipping Tool.lnk"; source file in store is also corrupted
2016-04-28 18:35:35, Info                  CSI    00000589 [SR] Verify complete
2016-04-28 18:35:35, Info                  CSI    0000058a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:35:35, Info                  CSI    0000058b [SR] Beginning Verify and Repair transaction
2016-04-28 18:35:35, Info                  CSI    0000058d [SR] Cannot repair member file [l:32{16}]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:37, Info                  CSI    0000058f [SR] Cannot repair member file [l:40{20}]"Default Programs.lnk" of Microsoft-Windows-sud-link, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:40, Info                  CSI    00000591 [SR] Cannot repair member file [l:32{16}]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:40, Info                  CSI    00000592 [SR] This component was referenced by [l:166{83}]"Package_3033_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7293_neutral_GDR"
2016-04-28 18:35:40, Info                  CSI    00000595 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:32{16}]"Sticky Notes.lnk"; source file in store is also corrupted
2016-04-28 18:35:44, Info                  CSI    00000598 [SR] Cannot repair member file [l:40{20}]"Default Programs.lnk" of Microsoft-Windows-sud-link, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:44, Info                  CSI    00000599 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-04-28 18:35:44, Info                  CSI    0000059c [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:40{20}]"Default Programs.lnk"; source file in store is also corrupted
2016-04-28 18:35:44, Info                  CSI    0000059e [SR] Verify complete
2016-04-28 18:35:44, Info                  CSI    0000059f [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:35:44, Info                  CSI    000005a0 [SR] Beginning Verify and Repair transaction
2016-04-28 18:35:47, Info                  CSI    000005a2 [SR] Cannot repair member file [l:40{20}]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:49, Info                  CSI    000005a8 [SR] Cannot repair member file [l:40{20}]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:49, Info                  CSI    000005a9 [SR] This component was referenced by [l:166{83}]"Package_2947_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7141_neutral_GDR"
2016-04-28 18:35:49, Info                  CSI    000005ac [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:40{20}]"Math Input Panel.lnk"; source file in store is also corrupted
2016-04-28 18:35:49, Info                  CSI    000005af [SR] Verify complete
2016-04-28 18:35:50, Info                  CSI    000005b0 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:35:50, Info                  CSI    000005b1 [SR] Beginning Verify and Repair transaction
2016-04-28 18:35:52, Info                  CSI    000005b3 [SR] Cannot repair member file [l:58{29}]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:55, Info                  CSI    000005b5 [SR] Cannot repair member file [l:58{29}]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:35:55, Info                  CSI    000005b6 [SR] This component was referenced by [l:166{83}]"Package_1471_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-4215_neutral_GDR"
2016-04-28 18:35:55, Info                  CSI    000005b9 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:58{29}]"Remote Desktop Connection.lnk"; source file in store is also corrupted
2016-04-28 18:35:55, Info                  CSI    000005ba [SR] Verify complete
2016-04-28 18:35:55, Info                  CSI    000005bb [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:35:55, Info                  CSI    000005bc [SR] Beginning Verify and Repair transaction
2016-04-28 18:36:05, Info                  CSI    000005be [SR] Cannot repair member file [l:38{19}]"Windows Journal.lnk" of Microsoft-Windows-TabletPC-Journal, Version = 6.3.9600.18189, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:36:07, Info                  CSI    000005c0 [SR] Cannot repair member file [l:38{19}]"Windows Journal.lnk" of Microsoft-Windows-TabletPC-Journal, Version = 6.3.9600.18189, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:36:07, Info                  CSI    000005c1 [SR] This component was referenced by [l:154{77}]"Package_3_for_KB3115858~31bf3856ad364e35~amd64~~6.3.1.1.3115858-5_neutral_GDR"
2016-04-28 18:36:07, Info                  CSI    000005c4 [SR] Could not reproject corrupted file [ml:520{260},l:156{78}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC"\[l:38{19}]"Windows Journal.lnk"; source file in store is also corrupted
2016-04-28 18:36:07, Info                  CSI    000005c5 [SR] Verify complete
2016-04-28 18:36:08, Info                  CSI    000005c6 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:36:08, Info                  CSI    000005c7 [SR] Beginning Verify and Repair transaction
2016-04-28 18:36:13, Info                  CSI    000005ce [SR] Verify complete
2016-04-28 18:36:13, Info                  CSI    000005cf [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:36:13, Info                  CSI    000005d0 [SR] Beginning Verify and Repair transaction
2016-04-28 18:36:19, Info                  CSI    000005d8 [SR] Repairing corrupted file [ml:520{260},l:112{56}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs"\[l:20{10}]"Search.lnk" from store
2016-04-28 18:36:19, Info                  CSI    000005e0 [SR] Verify complete
2016-04-28 18:36:19, Info                  CSI    000005e1 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:36:19, Info                  CSI    000005e2 [SR] Beginning Verify and Repair transaction
2016-04-28 18:36:32, Info                  CSI    000005ec [SR] Verify complete
2016-04-28 18:36:32, Info                  CSI    000005ed [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:36:32, Info                  CSI    000005ee [SR] Beginning Verify and Repair transaction
2016-04-28 18:36:38, Info                  CSI    000005fb [SR] Verify complete
2016-04-28 18:36:38, Info                  CSI    000005fc [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:36:38, Info                  CSI    000005fd [SR] Beginning Verify and Repair transaction
2016-04-28 18:36:48, Info                  CSI    00000615 [SR] Verify complete
2016-04-28 18:36:48, Info                  CSI    00000616 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:36:48, Info                  CSI    00000617 [SR] Beginning Verify and Repair transaction
2016-04-28 18:36:54, Info                  CSI    00000619 [SR] Verify complete
2016-04-28 18:36:54, Info                  CSI    0000061a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:36:54, Info                  CSI    0000061b [SR] Beginning Verify and Repair transaction
2016-04-28 18:37:01, Info                  CSI    0000061c [SR] Verify complete
2016-04-28 18:37:01, Info                  CSI    0000061d [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:37:01, Info                  CSI    0000061e [SR] Beginning Verify and Repair transaction
2016-04-28 18:37:06, Info                  CSI    00000620 [SR] Cannot repair member file [l:22{11}]"Wordpad.lnk" of Microsoft-Windows-wordpad, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:37:09, Info                  CSI    00000622 [SR] Cannot repair member file [l:28{14}]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:37:10, Info                  CSI    0000062c [SR] Cannot repair member file [l:28{14}]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:37:10, Info                  CSI    0000062d [SR] This component was referenced by [l:166{83}]"Package_3081_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7359_neutral_GDR"
2016-04-28 18:37:11, Info                  CSI    00000630 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:28{14}]"XPS Viewer.lnk"; source file in store is also corrupted
2016-04-28 18:37:11, Info                  CSI    00000632 [SR] Cannot repair member file [l:22{11}]"Wordpad.lnk" of Microsoft-Windows-wordpad, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:37:11, Info                  CSI    00000633 [SR] This component was referenced by [l:166{83}]"Package_1362_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3948_neutral_GDR"
2016-04-28 18:37:11, Info                  CSI    00000636 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:22{11}]"Wordpad.lnk"; source file in store is also corrupted
2016-04-28 18:37:11, Info                  CSI    0000063b [SR] Verify complete
2016-04-28 18:37:11, Info                  CSI    0000063c [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:37:11, Info                  CSI    0000063d [SR] Beginning Verify and Repair transaction
2016-04-28 18:37:23, Info                  CSI    0000066b [SR] Verify complete
2016-04-28 18:37:23, Info                  CSI    0000066c [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:37:23, Info                  CSI    0000066d [SR] Beginning Verify and Repair transaction
2016-04-28 18:37:25, Info                  CSI    00000670 [SR] Verify complete
2016-04-28 18:37:25, Info                  CSI    00000671 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:37:25, Info                  CSI    00000672 [SR] Beginning Verify and Repair transaction
2016-04-28 18:37:31, Info                  CSI    00000681 [SR] Verify complete
2016-04-28 18:37:31, Info                  CSI    00000682 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:37:31, Info                  CSI    00000683 [SR] Beginning Verify and Repair transaction
2016-04-28 18:37:40, Info                  CSI    00000684 [SR] Verify complete
2016-04-28 18:37:40, Info                  CSI    00000685 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:37:40, Info                  CSI    00000686 [SR] Beginning Verify and Repair transaction
2016-04-28 18:37:44, Info                  CSI    00000688 [SR] Verify complete
2016-04-28 18:37:44, Info                  CSI    00000689 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:37:44, Info                  CSI    0000068a [SR] Beginning Verify and Repair transaction
2016-04-28 18:37:53, Info                  CSI    0000068b [SR] Verify complete
2016-04-28 18:37:53, Info                  CSI    0000068c [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:37:53, Info                  CSI    0000068d [SR] Beginning Verify and Repair transaction
2016-04-28 18:37:58, Info                  CSI    0000068e [SR] Verify complete
2016-04-28 18:37:58, Info                  CSI    0000068f [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:37:58, Info                  CSI    00000690 [SR] Beginning Verify and Repair transaction
2016-04-28 18:38:01, Info                  CSI    00000691 [SR] Verify complete
2016-04-28 18:38:01, Info                  CSI    00000692 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:38:01, Info                  CSI    00000693 [SR] Beginning Verify and Repair transaction
2016-04-28 18:38:12, Info                  CSI    00000694 [SR] Verify complete
2016-04-28 18:38:12, Info                  CSI    00000695 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:38:12, Info                  CSI    00000696 [SR] Beginning Verify and Repair transaction
2016-04-28 18:38:17, Info                  CSI    00000697 [SR] Verify complete
2016-04-28 18:38:18, Info                  CSI    00000698 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:38:18, Info                  CSI    00000699 [SR] Beginning Verify and Repair transaction
2016-04-28 18:38:21, Info                  CSI    0000069a [SR] Verify complete
2016-04-28 18:38:21, Info                  CSI    0000069b [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:38:21, Info                  CSI    0000069c [SR] Beginning Verify and Repair transaction
2016-04-28 18:38:32, Info                  CSI    0000069d [SR] Verify complete
2016-04-28 18:38:32, Info                  CSI    0000069e [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:38:32, Info                  CSI    0000069f [SR] Beginning Verify and Repair transaction
2016-04-28 18:38:37, Info                  CSI    000006d2 [SR] Verify complete
2016-04-28 18:38:37, Info                  CSI    000006d3 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:38:37, Info                  CSI    000006d4 [SR] Beginning Verify and Repair transaction
2016-04-28 18:38:41, Info                  CSI    000006d5 [SR] Verify complete
2016-04-28 18:38:41, Info                  CSI    000006d6 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:38:41, Info                  CSI    000006d7 [SR] Beginning Verify and Repair transaction
2016-04-28 18:38:51, Info                  CSI    000006d9 [SR] Cannot repair member file [l:86{43}]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:38:55, Info                  CSI    000006db [SR] Cannot repair member file [l:86{43}]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:38:55, Info                  CSI    000006dc [SR] This component was referenced by [l:166{83}]"Package_1189_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3446_neutral_GDR"
2016-04-28 18:38:55, Info                  CSI    000006df [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:86{43}]"Windows Firewall with Advanced Security.lnk"; source file in store is also corrupted
2016-04-28 18:38:56, Info                  CSI    000006e2 [SR] Verify complete
2016-04-28 18:38:56, Info                  CSI    000006e3 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:38:56, Info                  CSI    000006e4 [SR] Beginning Verify and Repair transaction
2016-04-28 18:38:57, Info                  CSI    000006e6 [SR] Cannot repair member file [l:36{18}]"Amd64\CNBJ2530.DPB" of prncacla.inf, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type = [l:24{12}]"driverUpdate", TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:39:06, Info                  CSI    000006e8 [SR] Cannot repair member file [l:36{18}]"Amd64\CNBJ2530.DPB" of prncacla.inf, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type = [l:24{12}]"driverUpdate", TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:39:06, Info                  CSI    000006e9 [SR] This component was referenced by [l:166{83}]"Package_2709_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-6825_neutral_GDR"
2016-04-28 18:39:07, Info                  CSI    000006ea [SR] Verify complete
2016-04-28 18:39:07, Info                  CSI    000006eb [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:39:07, Info                  CSI    000006ec [SR] Beginning Verify and Repair transaction
2016-04-28 18:39:11, Info                  CSI    000006ed [SR] Verify complete
2016-04-28 18:39:11, Info                  CSI    000006ee [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:39:11, Info                  CSI    000006ef [SR] Beginning Verify and Repair transaction
2016-04-28 18:39:14, Info                  CSI    000006f1 [SR] Cannot repair member file [l:36{18}]"Task Scheduler.lnk" of TaskSchedulerSettings, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:39:17, Info                  CSI    000006f3 [SR] Cannot repair member file [l:36{18}]"Task Scheduler.lnk" of TaskSchedulerSettings, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:39:17, Info                  CSI    000006f4 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-04-28 18:39:17, Info                  CSI    000006f7 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:36{18}]"Task Scheduler.lnk"; source file in store is also corrupted
2016-04-28 18:39:18, Info                  CSI    000006f8 [SR] Verify complete
2016-04-28 18:39:18, Info                  CSI    000006f9 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:39:18, Info                  CSI    000006fa [SR] Beginning Verify and Repair transaction
2016-04-28 18:39:25, Info                  CSI    000006fb [SR] Verify complete
2016-04-28 18:39:25, Info                  CSI    000006fc [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:39:25, Info                  CSI    000006fd [SR] Beginning Verify and Repair transaction
2016-04-28 18:39:34, Info                  CSI    000006ff [SR] Verify complete
2016-04-28 18:39:34, Info                  CSI    00000700 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:39:34, Info                  CSI    00000701 [SR] Beginning Verify and Repair transaction
2016-04-28 18:39:38, Info                  CSI    0000070b [SR] Verify complete
2016-04-28 18:39:38, Info                  CSI    0000070c [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:39:38, Info                  CSI    0000070d [SR] Beginning Verify and Repair transaction
2016-04-28 18:39:49, Info                  CSI    0000070e [SR] Verify complete
2016-04-28 18:39:49, Info                  CSI    0000070f [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:39:49, Info                  CSI    00000710 [SR] Beginning Verify and Repair transaction
2016-04-28 18:39:52, Info                  CSI    0000077e [SR] Verify complete
2016-04-28 18:39:52, Info                  CSI    0000077f [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:39:52, Info                  CSI    00000780 [SR] Beginning Verify and Repair transaction
2016-04-28 18:39:56, Info                  CSI    00000783 [SR] Verify complete
2016-04-28 18:39:56, Info                  CSI    00000784 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:39:56, Info                  CSI    00000785 [SR] Beginning Verify and Repair transaction
2016-04-28 18:40:05, Info                  CSI    00000786 [SR] Verify complete
2016-04-28 18:40:05, Info                  CSI    00000787 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:40:05, Info                  CSI    00000788 [SR] Beginning Verify and Repair transaction
2016-04-28 18:40:11, Info                  CSI    00000789 [SR] Verify complete
2016-04-28 18:40:11, Info                  CSI    0000078a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:40:11, Info                  CSI    0000078b [SR] Beginning Verify and Repair transaction
2016-04-28 18:40:16, Info                  CSI    0000078c [SR] Verify complete
2016-04-28 18:40:16, Info                  CSI    0000078d [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:40:16, Info                  CSI    0000078e [SR] Beginning Verify and Repair transaction
2016-04-28 18:40:21, Info                  CSI    0000078f [SR] Verify complete
2016-04-28 18:40:21, Info                  CSI    00000790 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:40:21, Info                  CSI    00000791 [SR] Beginning Verify and Repair transaction
2016-04-28 18:40:29, Info                  CSI    000007a2 [SR] Verify complete
2016-04-28 18:40:29, Info                  CSI    000007a3 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:40:29, Info                  CSI    000007a4 [SR] Beginning Verify and Repair transaction
2016-04-28 18:40:34, Info                  CSI    000007ba [SR] Verify complete
2016-04-28 18:40:34, Info                  CSI    000007bb [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:40:34, Info                  CSI    000007bc [SR] Beginning Verify and Repair transaction
2016-04-28 18:40:45, Info                  CSI    000007cb [SR] Verify complete
2016-04-28 18:40:45, Info                  CSI    000007cc [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:40:45, Info                  CSI    000007cd [SR] Beginning Verify and Repair transaction
2016-04-28 18:40:47, Info                  CSI    000007cf [SR] Verify complete
2016-04-28 18:40:47, Info                  CSI    000007d0 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:40:47, Info                  CSI    000007d1 [SR] Beginning Verify and Repair transaction
2016-04-28 18:40:49, Info                  CSI    000007d2 [SR] Verify complete
2016-04-28 18:40:49, Info                  CSI    000007d3 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:40:49, Info                  CSI    000007d4 [SR] Beginning Verify and Repair transaction
2016-04-28 18:40:54, Info                  CSI    000007e1 [SR] Verify complete
2016-04-28 18:40:55, Info                  CSI    000007e2 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:40:55, Info                  CSI    000007e3 [SR] Beginning Verify and Repair transaction
2016-04-28 18:40:55, Info                  CSI    000007e5 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_IA32_ON_WIN64 (10), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:41:04, Info                  CSI    000007e8 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_IA32_ON_WIN64 (10), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:41:04, Info                  CSI    000007e9 [SR] This component was referenced by [l:164{82}]"Package_443_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-1244_neutral_GDR"
2016-04-28 18:41:04, Info                  CSI    000007ec [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:60{30}]"ODBC Data Sources (32-bit).lnk"; source file in store is also corrupted
2016-04-28 18:41:04, Info                  CSI    000007ed [SR] Verify complete
2016-04-28 18:41:04, Info                  CSI    000007ee [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:41:04, Info                  CSI    000007ef [SR] Beginning Verify and Repair transaction
2016-04-28 18:41:10, Info                  CSI    00000811 [SR] Verify complete
2016-04-28 18:41:10, Info                  CSI    00000812 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:41:10, Info                  CSI    00000813 [SR] Beginning Verify and Repair transaction
2016-04-28 18:41:18, Info                  CSI    0000081c [SR] Verify complete
2016-04-28 18:41:18, Info                  CSI    0000081d [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:41:18, Info                  CSI    0000081e [SR] Beginning Verify and Repair transaction
2016-04-28 18:41:24, Info                  CSI    0000082b [SR] Verify complete
2016-04-28 18:41:24, Info                  CSI    0000082c [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:41:24, Info                  CSI    0000082d [SR] Beginning Verify and Repair transaction
2016-04-28 18:41:35, Info                  CSI    0000084c [SR] Verify complete
2016-04-28 18:41:35, Info                  CSI    0000084d [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:41:35, Info                  CSI    0000084e [SR] Beginning Verify and Repair transaction
2016-04-28 18:41:43, Info                  CSI    000008a7 [SR] Verify complete
2016-04-28 18:41:43, Info                  CSI    000008a8 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:41:43, Info                  CSI    000008a9 [SR] Beginning Verify and Repair transaction
2016-04-28 18:41:51, Info                  CSI    000008aa [SR] Verify complete
2016-04-28 18:41:51, Info                  CSI    000008ab [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:41:51, Info                  CSI    000008ac [SR] Beginning Verify and Repair transaction
2016-04-28 18:41:57, Info                  CSI    000008ad [SR] Verify complete
2016-04-28 18:41:57, Info                  CSI    000008ae [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:41:57, Info                  CSI    000008af [SR] Beginning Verify and Repair transaction
2016-04-28 18:42:02, Info                  CSI    000008b3 [SR] Verify complete
2016-04-28 18:42:02, Info                  CSI    000008b4 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:42:02, Info                  CSI    000008b5 [SR] Beginning Verify and Repair transaction
2016-04-28 18:42:12, Info                  CSI    000008cf [SR] Verify complete
2016-04-28 18:42:12, Info                  CSI    000008d0 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:42:12, Info                  CSI    000008d1 [SR] Beginning Verify and Repair transaction
2016-04-28 18:42:16, Info                  CSI    000008f6 [SR] Verify complete
2016-04-28 18:42:16, Info                  CSI    000008f7 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:42:16, Info                  CSI    000008f8 [SR] Beginning Verify and Repair transaction
2016-04-28 18:42:23, Info                  CSI    000008fb [SR] Verify complete
2016-04-28 18:42:23, Info                  CSI    000008fc [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:42:23, Info                  CSI    000008fd [SR] Beginning Verify and Repair transaction
2016-04-28 18:42:28, Info                  CSI    00000905 [SR] Verify complete
2016-04-28 18:42:28, Info                  CSI    00000906 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:42:28, Info                  CSI    00000907 [SR] Beginning Verify and Repair transaction
2016-04-28 18:42:34, Info                  CSI    00000909 [SR] Verify complete
2016-04-28 18:42:34, Info                  CSI    0000090a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:42:34, Info                  CSI    0000090b [SR] Beginning Verify and Repair transaction
2016-04-28 18:42:42, Info                  CSI    00000915 [SR] Verify complete
2016-04-28 18:42:43, Info                  CSI    00000916 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:42:43, Info                  CSI    00000917 [SR] Beginning Verify and Repair transaction
2016-04-28 18:42:48, Info                  CSI    00000936 [SR] Verify complete
2016-04-28 18:42:48, Info                  CSI    00000937 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:42:48, Info                  CSI    00000938 [SR] Beginning Verify and Repair transaction
2016-04-28 18:42:53, Info                  CSI    0000094f [SR] Verify complete
2016-04-28 18:42:53, Info                  CSI    00000950 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:42:53, Info                  CSI    00000951 [SR] Beginning Verify and Repair transaction
2016-04-28 18:42:58, Info                  CSI    00000952 [SR] Verify complete
2016-04-28 18:42:58, Info                  CSI    00000953 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:42:58, Info                  CSI    00000954 [SR] Beginning Verify and Repair transaction
2016-04-28 18:43:03, Info                  CSI    00000956 [SR] Verify complete
2016-04-28 18:43:03, Info                  CSI    00000957 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:43:03, Info                  CSI    00000958 [SR] Beginning Verify and Repair transaction
2016-04-28 18:43:09, Info                  CSI    00000962 [SR] Verify complete
2016-04-28 18:43:09, Info                  CSI    00000963 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:43:09, Info                  CSI    00000964 [SR] Beginning Verify and Repair transaction
2016-04-28 18:43:17, Info                  CSI    00000965 [SR] Verify complete
2016-04-28 18:43:17, Info                  CSI    00000966 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:43:17, Info                  CSI    00000967 [SR] Beginning Verify and Repair transaction
2016-04-28 18:43:21, Info                  CSI    00000981 [SR] Verify complete
2016-04-28 18:43:21, Info                  CSI    00000982 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:43:21, Info                  CSI    00000983 [SR] Beginning Verify and Repair transaction
2016-04-28 18:43:26, Info                  CSI    00000985 [SR] Verify complete
2016-04-28 18:43:26, Info                  CSI    00000986 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:43:26, Info                  CSI    00000987 [SR] Beginning Verify and Repair transaction
2016-04-28 18:43:36, Info                  CSI    0000099e [SR] Verify complete
2016-04-28 18:43:36, Info                  CSI    0000099f [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:43:36, Info                  CSI    000009a0 [SR] Beginning Verify and Repair transaction
2016-04-28 18:43:42, Info                  CSI    000009b6 [SR] Verify complete
2016-04-28 18:43:42, Info                  CSI    000009b7 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:43:42, Info                  CSI    000009b8 [SR] Beginning Verify and Repair transaction
2016-04-28 18:43:57, Info                  CSI    000009c8 [SR] Verify complete
2016-04-28 18:43:57, Info                  CSI    000009c9 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:43:57, Info                  CSI    000009ca [SR] Beginning Verify and Repair transaction
2016-04-28 18:44:03, Info                  CSI    000009eb [SR] Verify complete
2016-04-28 18:44:03, Info                  CSI    000009ec [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:44:03, Info                  CSI    000009ed [SR] Beginning Verify and Repair transaction
2016-04-28 18:44:11, Info                  CSI    000009f6 [SR] Verify complete
2016-04-28 18:44:11, Info                  CSI    000009f7 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:44:11, Info                  CSI    000009f8 [SR] Beginning Verify and Repair transaction
2016-04-28 18:44:16, Info                  CSI    00000a02 [SR] Verify complete
2016-04-28 18:44:16, Info                  CSI    00000a03 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:44:16, Info                  CSI    00000a04 [SR] Beginning Verify and Repair transaction
2016-04-28 18:44:20, Info                  CSI    00000a09 [SR] Verify complete
2016-04-28 18:44:20, Info                  CSI    00000a0a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:44:20, Info                  CSI    00000a0b [SR] Beginning Verify and Repair transaction
2016-04-28 18:44:29, Info                  CSI    00000a0d [SR] Verify complete
2016-04-28 18:44:29, Info                  CSI    00000a0e [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:44:29, Info                  CSI    00000a0f [SR] Beginning Verify and Repair transaction
2016-04-28 18:44:35, Info                  CSI    00000a14 [SR] Verify complete
2016-04-28 18:44:35, Info                  CSI    00000a15 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:44:35, Info                  CSI    00000a16 [SR] Beginning Verify and Repair transaction
2016-04-28 18:44:43, Info                  CSI    00000a1b [SR] Verify complete
2016-04-28 18:44:43, Info                  CSI    00000a1c [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:44:43, Info                  CSI    00000a1d [SR] Beginning Verify and Repair transaction
2016-04-28 18:44:52, Info                  CSI    00000a20 [SR] Verify complete
2016-04-28 18:44:52, Info                  CSI    00000a21 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:44:52, Info                  CSI    00000a22 [SR] Beginning Verify and Repair transaction
2016-04-28 18:44:57, Info                  CSI    00000a27 [SR] Verify complete
2016-04-28 18:44:57, Info                  CSI    00000a28 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:44:57, Info                  CSI    00000a29 [SR] Beginning Verify and Repair transaction
2016-04-28 18:45:03, Info                  CSI    00000a2b [SR] Verify complete
2016-04-28 18:45:03, Info                  CSI    00000a2c [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:45:03, Info                  CSI    00000a2d [SR] Beginning Verify and Repair transaction
2016-04-28 18:45:10, Info                  CSI    00000a2f [SR] Verify complete
2016-04-28 18:45:10, Info                  CSI    00000a30 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:45:10, Info                  CSI    00000a31 [SR] Beginning Verify and Repair transaction
2016-04-28 18:45:16, Info                  CSI    00000a3f [SR] Verify complete
2016-04-28 18:45:16, Info                  CSI    00000a40 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:45:16, Info                  CSI    00000a41 [SR] Beginning Verify and Repair transaction
2016-04-28 18:45:25, Info                  CSI    00000a42 [SR] Verify complete
2016-04-28 18:45:25, Info                  CSI    00000a43 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:45:25, Info                  CSI    00000a44 [SR] Beginning Verify and Repair transaction
2016-04-28 18:45:29, Info                  CSI    00000a46 [SR] Verify complete
2016-04-28 18:45:29, Info                  CSI    00000a47 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:45:29, Info                  CSI    00000a48 [SR] Beginning Verify and Repair transaction
2016-04-28 18:45:36, Info                  CSI    00000a49 [SR] Verify complete
2016-04-28 18:45:36, Info                  CSI    00000a4a [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:45:36, Info                  CSI    00000a4b [SR] Beginning Verify and Repair transaction
2016-04-28 18:45:40, Info                  CSI    00000a4c [SR] Verify complete
2016-04-28 18:45:40, Info                  CSI    00000a4d [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:45:40, Info                  CSI    00000a4e [SR] Beginning Verify and Repair transaction
2016-04-28 18:45:49, Info                  CSI    00000a4f [SR] Verify complete
2016-04-28 18:45:49, Info                  CSI    00000a50 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:45:49, Info                  CSI    00000a51 [SR] Beginning Verify and Repair transaction
2016-04-28 18:45:54, Info                  CSI    00000a52 [SR] Verify complete
2016-04-28 18:45:54, Info                  CSI    00000a53 [SR] Verifying 100 (0x0000000000000064) components
2016-04-28 18:45:54, Info                  CSI    00000a54 [SR] Beginning Verify and Repair transaction
2016-04-28 18:46:01, Info                  CSI    00000a57 [SR] Verify complete
2016-04-28 18:46:01, Info                  CSI    00000a58 [SR] Verifying 4 components
2016-04-28 18:46:01, Info                  CSI    00000a59 [SR] Beginning Verify and Repair transaction
2016-04-28 18:46:02, Info                  CSI    00000a5a [SR] Verify complete
2016-04-28 18:46:02, Info                  CSI    00000a5b [SR] Repairing 36 (0x0000000000000024) components
2016-04-28 18:46:02, Info                  CSI    00000a5c [SR] Beginning Verify and Repair transaction
2016-04-28 18:46:02, Info                  CSI    00000a5e [SR] Cannot repair member file [l:32{16}]"Event Viewer.lnk" of EventViewerSettings, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a60 [SR] Cannot repair member file [l:36{18}]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a62 [SR] Cannot repair member file [l:32{16}]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a64 [SR] Cannot repair member file [l:46{23}]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a66 [SR] Cannot repair member file [l:28{14}]"Calculator.lnk" of Microsoft-Windows-calc, Version = 6.3.9600.17667, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a68 [SR] Cannot repair member file [l:44{22}]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a6a [SR] Cannot repair member file [l:34{17}]"Character Map.lnk" of Microsoft-Windows-charmap, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a6c [SR] Cannot repair member file [l:32{16}]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a6e [SR] Cannot repair member file [l:20{10}]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a70 [SR] Cannot repair member file [l:48{24}]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a72 [SR] Cannot repair member file [l:38{19}]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a74 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:02, Info                  CSI    00000a76 [SR] Cannot repair member file [l:54{27}]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a78 [SR] Cannot repair member file [l:50{25}]"Windows Easy Transfer.lnk" of Microsoft-Windows-MigrationWizardApplication, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a7a [SR] Cannot repair member file [l:48{24}]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a7c [SR] Cannot repair member file [l:48{24}]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a7e [SR] Cannot repair member file [l:44{22}]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a80 [SR] Cannot repair member file [l:18{9}]"Paint.lnk" of Microsoft-Windows-mspaint, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a82 [SR] Cannot repair member file [l:40{20}]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a84 [SR] Cannot repair member file [l:46{23}]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a86 [SR] Cannot repair member file [l:52{26}]"Windows PowerShell ISE.lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a88 [SR] Cannot repair member file [l:64{32}]"Windows PowerShell ISE (x86).lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a8a [SR] Cannot repair member file [l:24{12}]"services.lnk" of Microsoft-Windows-ServicesSnapIn, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a8c [SR] Cannot repair member file [l:44{22}]"Speech Recognition.lnk" of Microsoft-Windows-Speech-UserExperience, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a8e [SR] Cannot repair member file [l:36{18}]"Sound Recorder.lnk" of Microsoft-Windows-SoundRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a90 [SR] Cannot repair member file [l:34{17}]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a92 [SR] Cannot repair member file [l:32{16}]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a94 [SR] Cannot repair member file [l:40{20}]"Default Programs.lnk" of Microsoft-Windows-sud-link, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a96 [SR] Cannot repair member file [l:40{20}]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a98 [SR] Cannot repair member file [l:58{29}]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:03, Info                  CSI    00000a9a [SR] Cannot repair member file [l:38{19}]"Windows Journal.lnk" of Microsoft-Windows-TabletPC-Journal, Version = 6.3.9600.18189, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:04, Info                  CSI    00000a9c [SR] Cannot repair member file [l:28{14}]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:04, Info                  CSI    00000a9e [SR] Cannot repair member file [l:22{11}]"Wordpad.lnk" of Microsoft-Windows-wordpad, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:04, Info                  CSI    00000aa0 [SR] Cannot repair member file [l:86{43}]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:04, Info                  CSI    00000aa2 [SR] Cannot repair member file [l:36{18}]"Amd64\CNBJ2530.DPB" of prncacla.inf, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type = [l:24{12}]"driverUpdate", TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:04, Info                  CSI    00000aa4 [SR] Cannot repair member file [l:36{18}]"Task Scheduler.lnk" of TaskSchedulerSettings, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:04, Info                  CSI    00000aa6 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_IA32_ON_WIN64 (10), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:04, Info                  CSI    00000aa8 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (64-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:04, Info                  CSI    00000aa9 [SR] This component was referenced by [l:166{83}]"Package_1052_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3082_neutral_GDR"
2016-04-28 18:46:04, Info                  CSI    00000aac [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:60{30}]"ODBC Data Sources (64-bit).lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000aae [SR] Cannot repair member file [l:36{18}]"Amd64\CNBJ2530.DPB" of prncacla.inf, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type = [l:24{12}]"driverUpdate", TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000aaf [SR] This component was referenced by [l:166{83}]"Package_2709_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-6825_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000ab1 [SR] Cannot repair member file [l:48{24}]"Windows Media Player.lnk" of Microsoft-Windows-MediaPlayer-Shortcut, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000ab2 [SR] This component was referenced by [l:190{95}]"Microsoft-Windows-MediaPlayer-Package~31bf3856ad364e35~amd64~~6.3.9600.16384.WindowsMediaPlayer"
2016-04-28 18:46:05, Info                  CSI    00000ab5 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:48{24}]"Windows Media Player.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000ab7 [SR] Cannot repair member file [l:32{16}]"Sticky Notes.lnk" of Microsoft-Windows-StickyNotes-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000ab8 [SR] This component was referenced by [l:166{83}]"Package_3033_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7293_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000abb [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:32{16}]"Sticky Notes.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000abd [SR] Cannot repair member file [l:20{10}]"dfrgui.lnk" of Microsoft-Windows-Defrag-AdminUI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000abe [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2637_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000ac1 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:20{10}]"dfrgui.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000ac3 [SR] Cannot repair member file [l:24{12}]"services.lnk" of Microsoft-Windows-ServicesSnapIn, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000ac4 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-04-28 18:46:05, Info                  CSI    00000ac7 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:24{12}]"services.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000ac9 [SR] Cannot repair member file [l:52{26}]"Windows PowerShell ISE.lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000aca [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-04-28 18:46:05, Info                  CSI    00000acc [SR] Cannot repair member file [l:64{32}]"Windows PowerShell ISE (x86).lnk" of Microsoft-Windows-PowerShell-ISE, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000acd [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-04-28 18:46:05, Info                  CSI    00000ad0 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:52{26}]"Windows PowerShell ISE.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000ad3 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:64{32}]"Windows PowerShell ISE (x86).lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000ad5 [SR] Cannot repair member file [l:46{23}]"Computer Management.lnk" of Microsoft-Windows-ComputerManagementSnapin, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000ad6 [SR] This component was referenced by [l:164{82}]"Package_752_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2048_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000ad9 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:46{23}]"Computer Management.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000adb [SR] Cannot repair member file [l:38{19}]"iSCSI Initiator.lnk" of Microsoft-Windows-iSCSI_Initiator_UI, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000adc [SR] This component was referenced by [l:164{82}]"Package_941_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2791_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000adf [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:38{19}]"iSCSI Initiator.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000ae1 [SR] Cannot repair member file [l:44{22}]"Speech Recognition.lnk" of Microsoft-Windows-Speech-UserExperience, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000ae2 [SR] This component was referenced by [l:166{83}]"Package_1049_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3060_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000ae5 [SR] Could not reproject corrupted file [ml:520{260},l:140{70}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility"\[l:44{22}]"Speech Recognition.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000ae7 [SR] Cannot repair member file [l:34{17}]"Character Map.lnk" of Microsoft-Windows-charmap, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000ae8 [SR] This component was referenced by [l:166{83}]"Package_1361_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3943_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000aeb [SR] Could not reproject corrupted file [ml:520{260},l:162{81}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools"\[l:34{17}]"Character Map.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000aed [SR] Cannot repair member file [l:86{43}]"Windows Firewall with Advanced Security.lnk" of Networking-MPSSVC, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000aee [SR] This component was referenced by [l:166{83}]"Package_1189_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3446_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000af1 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:86{43}]"Windows Firewall with Advanced Security.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000af3 [SR] Cannot repair member file [l:36{18}]"Steps Recorder.lnk" of Microsoft-Windows-Application-Compatibility-ProblemStepsRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000af4 [SR] This component was referenced by [l:164{82}]"Package_873_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2613_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000af7 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:36{18}]"Steps Recorder.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000af9 [SR] Cannot repair member file [l:36{18}]"Sound Recorder.lnk" of Microsoft-Windows-SoundRecorder, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000afa [SR] This component was referenced by [l:166{83}]"Package_1133_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3321_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000afd [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:36{18}]"Sound Recorder.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000aff [SR] Cannot repair member file [l:48{24}]"System Configuration.lnk" of Microsoft-Windows-MsConfig-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000b00 [SR] This component was referenced by [l:164{82}]"Package_874_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2621_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000b03 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:48{24}]"System Configuration.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000b05 [SR] Cannot repair member file [l:32{16}]"Disk Cleanup.lnk" of Microsoft-Windows-cleanmgr, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000b06 [SR] This component was referenced by [l:166{83}]"Package_1361_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3942_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000b09 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:32{16}]"Disk Cleanup.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000b0b [SR] Cannot repair member file [l:28{14}]"Calculator.lnk" of Microsoft-Windows-calc, Version = 6.3.9600.17667, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000b0c [SR] This component was referenced by [l:154{77}]"Package_1_for_KB3024755~31bf3856ad364e35~amd64~~6.3.1.1.3024755-1_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000b0f [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:28{14}]"Calculator.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000b11 [SR] Cannot repair member file [l:48{24}]"Windows Fax and Scan.lnk" of Microsoft-Windows-Fax-Client-Applications, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000b12 [SR] This component was referenced by [l:166{83}]"Package_2188_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-6085_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000b15 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:48{24}]"Windows Fax and Scan.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000b16 [SR] Repairing corrupted file [ml:520{260},l:112{56}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs"\[l:20{10}]"Search.lnk" from store
2016-04-28 18:46:05, Info                  CSI    00000b1d [SR] Cannot repair member file [l:50{25}]"Windows Easy Transfer.lnk" of Microsoft-Windows-MigrationWizardApplication, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000b1e [SR] This component was referenced by [l:164{82}]"Package_844_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2333_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000b21 [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:50{25}]"Windows Easy Transfer.lnk"; source file in store is also corrupted
2016-04-28 18:46:05, Info                  CSI    00000b23 [SR] Cannot repair member file [l:38{19}]"Windows Journal.lnk" of Microsoft-Windows-TabletPC-Journal, Version = 6.3.9600.18189, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:05, Info                  CSI    00000b24 [SR] This component was referenced by [l:154{77}]"Package_3_for_KB3115858~31bf3856ad364e35~amd64~~6.3.1.1.3115858-5_neutral_GDR"
2016-04-28 18:46:05, Info                  CSI    00000b27 [SR] Could not reproject corrupted file [ml:520{260},l:156{78}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC"\[l:38{19}]"Windows Journal.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b29 [SR] Cannot repair member file [l:40{20}]"Default Programs.lnk" of Microsoft-Windows-sud-link, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b2a [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-shell~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-shell-Deployment"
2016-04-28 18:46:06, Info                  CSI    00000b2d [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:40{20}]"Default Programs.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b2f [SR] Cannot repair member file [l:36{18}]"Task Scheduler.lnk" of TaskSchedulerSettings, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b30 [SR] This component was referenced by [l:334{167}]"Microsoft-Windows-Client-Features-Package-AutoMerged-admin~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-admin-Deployment"
2016-04-28 18:46:06, Info                  CSI    00000b33 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:36{18}]"Task Scheduler.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b35 [SR] Cannot repair member file [l:28{14}]"XPS Viewer.lnk" of Microsoft-Windows-XPSReachViewer, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b36 [SR] This component was referenced by [l:166{83}]"Package_3081_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7359_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b39 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:28{14}]"XPS Viewer.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b3b [SR] Cannot repair member file [l:44{22}]"System Information.lnk" of Microsoft-Windows-MSInfo32-Exe, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b3c [SR] This component was referenced by [l:164{82}]"Package_844_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2332_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b3f [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:44{22}]"System Information.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b41 [SR] Cannot repair member file [l:40{20}]"Math Input Panel.lnk" of Microsoft-Windows-TabletPC-MathInputPanel, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b42 [SR] This component was referenced by [l:166{83}]"Package_2947_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7141_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b45 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:40{20}]"Math Input Panel.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b47 [SR] Cannot repair member file [l:54{27}]"Memory Diagnostics Tool.lnk" of Microsoft-Windows-Memory-Diagnostic-Schedule, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b48 [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2631_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b4b [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:54{27}]"Memory Diagnostics Tool.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b4d [SR] Cannot repair member file [l:22{11}]"Wordpad.lnk" of Microsoft-Windows-wordpad, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b4e [SR] This component was referenced by [l:166{83}]"Package_1362_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-3948_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b51 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:22{11}]"Wordpad.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b53 [SR] Cannot repair member file [l:18{9}]"Paint.lnk" of Microsoft-Windows-mspaint, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b54 [SR] This component was referenced by [l:166{83}]"Package_1365_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-4028_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b57 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:18{9}]"Paint.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b59 [SR] Cannot repair member file [l:32{16}]"Event Viewer.lnk" of EventViewerSettings, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b5a [SR] This component was referenced by [l:164{82}]"Package_752_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2054_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b5d [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:32{16}]"Event Viewer.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b5f [SR] Cannot repair member file [l:32{16}]"Task Manager.lnk" of Microsoft-Windows-AdvancedTaskManager, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b60 [SR] This component was referenced by [l:164{82}]"Package_868_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2529_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b63 [SR] Could not reproject corrupted file [ml:520{260},l:138{69}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools"\[l:32{16}]"Task Manager.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b65 [SR] Cannot repair member file [l:44{22}]"Component Services.lnk" of Microsoft-Windows-COM-ComPlus-Admin-CompSvcLink, Version = 6.3.9600.16384, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b66 [SR] This component was referenced by [l:326{163}]"Microsoft-Windows-Client-Features-Package-AutoMerged-com~31bf3856ad364e35~amd64~~6.3.9600.16384.Microsoft-Windows-Client-Features-Package-AutoMerged-com-Deployment"
2016-04-28 18:46:06, Info                  CSI    00000b69 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:44{22}]"Component Services.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b6b [SR] Cannot repair member file [l:40{20}]"Resource Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b6c [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2628_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b6e [SR] Cannot repair member file [l:46{23}]"Performance Monitor.lnk" of Microsoft-Windows-PerformanceToolsGui, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b6f [SR] This component was referenced by [l:164{82}]"Package_876_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-2628_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b72 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:40{20}]"Resource Monitor.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b75 [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:46{23}]"Performance Monitor.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b77 [SR] Cannot repair member file [l:60{30}]"ODBC Data Sources (32-bit).lnk" of Microsoft-Windows-Microsoft-Data-Access-Components-(MDAC)-ODBC-Administrator, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_IA32_ON_WIN64 (10), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b78 [SR] This component was referenced by [l:164{82}]"Package_443_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-1244_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b7b [SR] Could not reproject corrupted file [ml:520{260},l:154{77}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools"\[l:60{30}]"ODBC Data Sources (32-bit).lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b7d [SR] Cannot repair member file [l:58{29}]"Remote Desktop Connection.lnk" of Microsoft-Windows-TerminalServices-TerminalServicesClient, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b7e [SR] This component was referenced by [l:166{83}]"Package_1471_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-4215_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b81 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:58{29}]"Remote Desktop Connection.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b83 [SR] Cannot repair member file [l:34{17}]"Snipping Tool.lnk" of Microsoft-Windows-SnippingTool-App, Version = 6.3.9600.17415, pA = PROCESSOR_ARCHITECTURE_AMD64 (9), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2016-04-28 18:46:06, Info                  CSI    00000b84 [SR] This component was referenced by [l:166{83}]"Package_2946_for_KB3000850~31bf3856ad364e35~amd64~~6.3.1.8.3000850-7137_neutral_GDR"
2016-04-28 18:46:06, Info                  CSI    00000b87 [SR] Could not reproject corrupted file [ml:520{260},l:136{68}]"\??\C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories"\[l:34{17}]"Snipping Tool.lnk"; source file in store is also corrupted
2016-04-28 18:46:06, Info                  CSI    00000b88 [SR] Repair complete
2016-04-28 18:46:06, Info                  CSI    00000b89 [SR] Committing transaction
2016-04-28 18:46:12, Info                  CSI    00000b8e [SR] Verify and Repair Transaction completed. All files and registry keys listed in this transaction  have been successfully repaired

========= Ende von CMD: =========


=========  dir "C:\Program Files\Windows Defender" =========
         

Alt 29.04.2016, 05:15   #24
Jan02
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Code:
ATTFilter
Datentr�ger in Laufwerk C: ist Acer
 Volumeseriennummer: 2093-6EEC

 Verzeichnis von C:\Program Files\Windows Defender

11.08.2015  21:06    <DIR>          .
11.08.2015  21:06    <DIR>          ..
20.09.2014  00:09         1.532.584 DbgHelp.dll
11.08.2015  21:06    <DIR>          de-DE
06.07.2015  21:20           276.128 EppManifest.dll
06.07.2015  21:20           152.736 MpAsDesc.dll
06.07.2015  21:20           895.432 MpClient.dll
07.07.2015  11:39           387.336 MpCmdRun.exe
06.07.2015  21:20           376.448 MpCommu.dll
06.07.2015  21:20           111.264 MpEvMsg.dll
06.07.2015  21:20           275.736 MpOAV.dll
06.07.2015  21:20           567.560 MpRtp.dll
06.07.2015  21:20         1.784.248 MpSvc.dll
06.07.2015  21:20            62.760 MpTpmAtt.dll
06.07.2015  21:20            28.480 mpuxhostproxy.dll
07.07.2015  11:40            59.736 MpUXSrv.exe
06.07.2015  21:20         1.401.384 MSASCui.exe
06.07.2015  21:20            80.896 MsMpCom.dll
07.07.2015  11:39            23.824 MsMpEng.exe
06.07.2015  21:20            20.408 MsMpLics.dll
06.07.2015  21:20           442.016 MsMpRes.dll
06.07.2015  21:20           119.800 NisIpsPlugin.dll
06.07.2015  21:20            68.448 NisLog.dll
07.07.2015  11:39           366.552 NisSrv.exe
06.07.2015  21:20            81.944 NisWfp.dll
06.07.2015  21:20           640.832 ProtectionManagement.dll
29.06.2015  17:06            27.482 ProtectionManagement.mof
18.06.2013  16:42             2.382 ProtectionManagement_Uninstall.mof
20.09.2014  00:09           143.520 SymSrv.dll
18.06.2013  16:43                 1 SymSrv.yes
              27 Datei(en),      9.929.937 Bytes
               3 Verzeichnis(se), 236.105.093.120 Bytes frei

========= Ende von CMD: =========


==== Ende von Fixlog 18:46:15 ====
         
Hallo Rafael,

hier ist jetzt doch die Fixlog.txt!!! Habe sie in drei Teilen gepostet.

mfg, Jan

Alt 29.04.2016, 09:27   #25
burningice
/// Malwareteam
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



okay - die ganzen Fehler in deinem SFC Bericht kommen von einem Bug in einem Windows Update soweit ich weiß, jedenfalls nicht schlimm.

Die Datei vom Windows Defender ist ganz normal in dem Ordner vorhanden. Bitte versuche noch einmal die Anweisung aus diesem Post.

MSASCui.exe befindet sich im Ordner C:\Programme\Windows Defender.
__________________
Mfg,
Rafael

~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~

Unterstütze uns mit einer Spende
......... Lob, Kritik oder Wünsche .........
.......... Folge uns auf Facebook ..........

Alt 29.04.2016, 14:15   #26
Jan02
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Hallo Rafael,

die MSASCui.exe war jetztv vorhanden habe sie gestartet und den Windows Defender wieder aktiviert. Was ist der nächste Schritt oder sind wir mit allem durch?

Mfg,
Jan

Alt 29.04.2016, 14:55   #27
burningice
/// Malwareteam
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Bitte starte wieder FRST, setze den Haken bei Addition und drücke auf Untersuchen. Poste bitte wieder die beiden Textdateien, die so entstehen.

Hast du noch irgendwelche Probleme mit deinem Rechner?
__________________
Mfg,
Rafael

~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~

Unterstütze uns mit einer Spende
......... Lob, Kritik oder Wünsche .........
.......... Folge uns auf Facebook ..........

Alt 29.04.2016, 15:08   #28
Jan02
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:17-04-2016 01
durchgeführt von Jan (Administrator) auf NOTEBOOK-JAN2 (29-04-2016 15:59:52)
Gestartet von C:\Users\Jan\Desktop
Geladene Profile: Jan (Verfügbare Profile: Jan)
Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
() C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe
(Intel Corporation) C:\Program Files (x86)\Common Files\Intel\RSSDK\v3\bin\win32\notification_tool.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\c008c377e14e1f793da31680ece54c17\windowsupdatebox.exe
(Microsoft Corporation) C:\$WINDOWS.~BT\Sources\SetupHost.exe
(Apple Inc.) C:\Program Files\iTunes\iTunes.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\wimserv.exe
(Astonsoft) C:\Program Files (x86)\EssentialPIM\EssentialPIM.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\$WINDOWS.~BT\Work\EE3DE1E7-CCCC-4860-A5F6-E767C11B3677\DismHost.exe
(Farbar) C:\Users\Jan\Desktop\FRST64 (1).exe
(Microsoft Corporation) C:\$WINDOWS.~BT\Work\87A68FA7-17AE-4276-BFA3-DF68F3A0C529\DismHost.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2789248 2016-02-17] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1387376 2014-05-13] (Realtek Semiconductor)
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176952 2016-03-19] (Apple Inc.)
HKLM-x32\...\Run: [Intel Privacy Notification Tool] => C:\Program Files (x86)\Common Files\Intel\RSSDK\v3\bin\win32\notification_tool.exe [8173240 2014-10-30] (Intel Corporation)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe -autorun
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-08-27] (Atheros Communications)
HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3077712 2016-03-31] (Valve Corporation)
HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [GoogleChromeAutoLaunch_1F14D2380DB1DE09582B9D790BD95BA5] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1008280 2016-04-21] (Google Inc.)
HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [Allway Sync] => C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe [93488 2015-10-29] ()
HKU\S-1-5-21-489078762-871934448-399521353-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8686296 2016-03-11] (Piriform Ltd)
HKU\S-1-5-21-489078762-871934448-399521353-1001\...\MountPoints2: {7dd3a79a-3f30-11e5-826a-206a8a9e0239} - "F:\LaunchU3.exe" -a
HKU\S-1-5-18\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe
HKU\S-1-5-18\...\RunOnce: [iCloud] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe [60688 2015-12-01] (Apple Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\phase-6 Reminder.lnk [2016-04-22]
ShortcutTarget: phase-6 Reminder.lnk -> C:\Program Files (x86)\phase-6\phase-6\reminder\reminder.exe (phase-6)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{562729EF-57C3-478A-BEFD-55F1642D22A4}: [DhcpNameServer] 10.61.12.1
Tcpip\..\Interfaces\{8718928D-CBEB-45EA-A621-800A9249001D}: [NameServer] 10.0.0.1
Tcpip\..\Interfaces\{DB5D870B-9660-446A-83A0-9E1575A73068}: [DhcpNameServer] 192.168.178.1
ManualProxies: 

Internet Explorer:
==================
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-489078762-871934448-399521353-1001 -> {A3782EB2-C684-409E-A3C8-C932D426AFD5} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-03-15] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-04-20] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-08-30] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\kZsq9LNj.default
FF NewTab: about:newtab
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll [2015-08-10] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll [2015-08-10] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-02-19] (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-08-30] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-05] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Extension: Avira Browser Safety - C:\Users\Jan\AppData\Roaming\Mozilla\Firefox\Profiles\kZsq9LNj.default\Extensions\abs@avira.com.xpi [2016-04-10]
StartMenuInternet: FIREFOX.EXE - firefox.exe

Chrome: 
=======
CHR Profile: C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Adblock Plus) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-04-19]
CHR Extension: (Skype) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-04-19]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Jan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-19]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08]

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [322176 2014-08-27] (Windows (R) Win 7 DDK provider) [Datei ist nicht signiert]
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [Datei ist nicht signiert]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2829552 2016-03-08] (Microsoft Corporation)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-07-22] (Acer Incorporated)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1164672 2016-02-17] (NVIDIA Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315352 2014-06-16] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-02-19] (Intel Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-02-19] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1880960 2016-02-17] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6474112 2016-02-17] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2609024 2016-02-17] (NVIDIA Corporation)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3905536 2014-08-11] (Qualcomm Atheros Communications, Inc.)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-08-27] (Qualcomm Atheros)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 LGJoyXlCore; C:\Windows\system32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.)
S3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-04-29] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [116736 2014-02-19] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28032 2016-02-17] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47760 2015-12-18] (NVIDIA Corporation)
S3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42736 2014-07-10] (Synaptics Incorporated)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-04-26 17:46 - 2016-04-26 17:46 - 00002312 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk
2016-04-25 16:21 - 2016-04-25 16:21 - 00000000 ____D C:\Users\Jan\AppData\Local\TempTaskUpdateDetection4822F7AE-F8AC-457E-8AF6-112DFE867E18
2016-04-25 15:48 - 2016-04-25 15:48 - 00000000 ____D C:\Users\Jan\AppData\Local\Microsoft Help
2016-04-25 10:18 - 2016-04-25 10:18 - 00002957 _____ C:\Windows\SysWOW64\FSS.txt
2016-04-25 10:12 - 2016-04-25 10:11 - 00007164 _____ C:\Users\Jan\Desktop\WinDefend.reg
2016-04-25 10:11 - 2016-04-25 10:11 - 00007164 _____ C:\Users\Jan\Downloads\WinDefend.reg
2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bonjour-Druckdienste
2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files\Bonjour Print Services
2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files\Bonjour
2016-04-25 10:01 - 2016-04-25 10:01 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-04-25 09:57 - 2016-04-25 09:57 - 00000000 ____D C:\Users\Jan\Documents\Bluetooth Folder
2016-04-25 09:57 - 2016-04-25 09:57 - 00000000 ____D C:\Users\Jan\AppData\Local\BMExplorer
2016-04-22 17:15 - 2016-04-22 17:20 - 00000696 _____ C:\Users\Jan\Desktop\Search.txt
2016-04-22 14:13 - 2016-04-25 18:26 - 00009152 _____ C:\Users\Jan\Documents\Liste der erhaltenen Geschenke Konfirmation Jan am 24.04.2016.docx.xlsx
2016-04-22 14:12 - 2016-04-22 14:12 - 00008302 _____ C:\Users\Jan\Documents\Mappe1.xlsx
2016-04-21 19:52 - 2016-04-21 19:52 - 00000000 ____D C:\Users\Jan\Downloads\370LvL
2016-04-21 19:51 - 2016-04-21 19:51 - 00061155 _____ C:\Users\Jan\Downloads\370LvL.rar
2016-04-21 18:52 - 2016-04-21 18:52 - 00002796 _____ C:\Users\Jan\Downloads\FSS.txt
2016-04-21 18:51 - 2016-04-21 18:51 - 00899584 _____ (Farbar) C:\Users\Jan\Downloads\FSS.exe
2016-04-21 18:24 - 2016-04-21 18:26 - 00237504 _____ C:\TDSSKiller.3.1.0.9_21.04.2016_18.24.25_log.txt
2016-04-21 18:23 - 2016-04-21 18:23 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\Jan\Downloads\tdsskiller.exe
2016-04-20 19:55 - 2016-04-20 19:55 - 02870984 _____ (ESET) C:\Users\Jan\Downloads\esetsmartinstaller_deu.exe
2016-04-20 19:49 - 2016-04-28 18:46 - 00198320 _____ C:\Users\Jan\Desktop\Fixlog.txt
2016-04-19 19:07 - 2016-04-19 19:08 - 29872687 _____ C:\Users\Jan\Downloads\client_20810.zip
2016-04-19 15:10 - 2016-04-29 16:00 - 00020556 _____ C:\Users\Jan\Desktop\FRST.txt
2016-04-19 15:10 - 2016-04-25 19:15 - 00047887 _____ C:\Users\Jan\Desktop\Addition.txt
2016-04-19 15:09 - 2016-04-19 15:09 - 00001271 _____ C:\Users\Jan\Downloads\FRST - Verknüpfung.lnk
2016-04-19 15:09 - 2016-04-18 16:45 - 02375680 _____ (Farbar) C:\Users\Jan\Desktop\FRST64 (1).exe
2016-04-19 15:01 - 2016-04-19 14:50 - 00024064 _____ C:\Windows\zoek-delete.exe
2016-04-19 14:50 - 2016-04-22 13:43 - 00001377 _____ C:\Users\Jan\Desktop\zoek - Verknüpfung.lnk
2016-04-19 14:49 - 2016-04-19 14:49 - 00001355 _____ C:\Users\Jan\Downloads\zoek - Verknüpfung.lnk
2016-04-19 14:48 - 2016-04-19 15:01 - 00000000 ____D C:\zoek_backup
2016-04-19 14:48 - 2016-04-19 14:48 - 01309184 _____ C:\Users\Jan\Downloads\zoek.exe
2016-04-19 14:44 - 2016-04-19 14:44 - 00047545 _____ C:\Users\Jan\Desktop\mbam.txt
2016-04-19 14:39 - 2016-04-22 13:43 - 00001353 _____ C:\Users\Jan\Desktop\GeForce Experience.lnk
2016-04-19 13:07 - 2016-04-29 15:10 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-04-19 13:07 - 2016-04-22 13:43 - 00001074 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-04-19 13:07 - 2016-04-19 13:07 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2016-04-19 13:07 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-04-19 13:07 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-04-19 13:07 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-04-19 13:05 - 2016-04-19 13:05 - 22851472 _____ (Malwarebytes ) C:\Users\Jan\Downloads\mbam-setup-2.2.1.1043.exe
2016-04-18 16:48 - 2016-04-18 16:50 - 00047979 _____ C:\Users\Jan\Downloads\Addition.txt
2016-04-18 16:47 - 2016-04-18 16:50 - 00048575 _____ C:\Users\Jan\Downloads\FRST.txt
2016-04-18 16:46 - 2016-04-29 15:59 - 00000000 ____D C:\FRST
2016-04-18 16:45 - 2016-04-18 16:45 - 02375680 _____ (Farbar) C:\Users\Jan\Downloads\FRST64 (1).exe
2016-04-16 17:44 - 2016-04-16 17:44 - 00002440 _____ C:\Users\Jan\Desktop\AdwCleaner[C6].txt
2016-04-16 17:38 - 2016-04-16 17:38 - 01726464 _____ (Farbar) C:\Users\Jan\Downloads\FRST.exe
2016-04-16 17:36 - 2016-04-16 17:36 - 02375168 _____ (Farbar) C:\Users\Jan\Downloads\FRST64.exe
2016-04-16 17:18 - 2016-03-31 02:54 - 25817600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-04-16 17:18 - 2016-03-31 02:03 - 20352512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-04-16 17:18 - 2016-03-31 01:39 - 15415808 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-04-16 17:17 - 2016-03-31 02:31 - 02892800 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-04-16 17:17 - 2016-03-31 02:28 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-04-16 17:17 - 2016-03-31 02:25 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-04-16 17:17 - 2016-03-31 02:17 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-04-16 17:17 - 2016-03-31 01:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-04-16 17:17 - 2016-03-31 01:56 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-04-16 17:17 - 2016-03-31 01:55 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-04-16 17:17 - 2016-03-31 01:53 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-04-16 17:17 - 2016-03-31 01:51 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-04-16 17:17 - 2016-03-31 01:50 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-04-16 17:17 - 2016-03-31 01:45 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-04-16 17:17 - 2016-03-31 01:45 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-04-16 17:17 - 2016-03-31 01:43 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-04-16 17:17 - 2016-03-31 01:43 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-04-16 17:17 - 2016-03-31 01:43 - 00379392 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-04-16 17:17 - 2016-03-31 01:42 - 02131968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-04-16 17:17 - 2016-03-31 01:30 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-04-16 17:17 - 2016-03-31 01:30 - 02596864 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-04-16 17:17 - 2016-03-31 01:30 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-04-16 17:17 - 2016-03-31 01:30 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-04-16 17:17 - 2016-03-31 01:27 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-04-16 17:17 - 2016-03-31 01:24 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-04-16 17:17 - 2016-03-31 01:23 - 02056192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-04-16 17:17 - 2016-03-31 01:23 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-04-16 17:17 - 2016-03-31 01:23 - 00330752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-04-16 17:17 - 2016-03-31 01:21 - 13811712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-04-16 17:17 - 2016-03-31 01:18 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-04-16 17:17 - 2016-03-31 01:06 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-04-16 17:17 - 2016-03-31 01:05 - 02121216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-04-16 17:17 - 2016-03-31 01:02 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-04-16 17:17 - 2016-03-31 01:00 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-04-16 17:16 - 2016-03-16 01:00 - 00561952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-04-16 17:16 - 2016-03-15 16:14 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-04-16 17:16 - 2016-03-11 16:48 - 00833024 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2016-04-16 17:16 - 2016-03-10 20:22 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-04-16 17:16 - 2016-03-10 20:21 - 00401920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-04-16 17:16 - 2016-03-10 20:20 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-04-16 17:16 - 2016-03-10 19:44 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-04-16 17:16 - 2016-03-10 19:16 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-04-16 17:16 - 2016-03-10 19:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2016-04-16 17:16 - 2016-03-10 18:48 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2016-04-16 17:16 - 2016-03-03 18:47 - 02345472 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2016-04-16 17:16 - 2016-03-03 18:33 - 01556992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2016-04-16 17:15 - 2016-04-16 17:15 - 03677760 _____ C:\Users\Jan\Downloads\adwcleaner_5.111.exe
2016-04-16 17:15 - 2016-04-04 08:35 - 00046768 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-04-16 17:15 - 2016-04-02 15:26 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-04-16 17:15 - 2016-04-02 15:26 - 01169408 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-04-16 17:15 - 2016-03-28 15:21 - 00698368 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-04-16 17:15 - 2016-03-28 15:21 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-04-16 17:15 - 2016-03-28 15:21 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-04-16 17:15 - 2016-03-28 15:21 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-04-16 17:15 - 2016-03-28 15:21 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-04-16 17:15 - 2016-03-03 03:39 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-04-16 17:15 - 2016-03-03 03:39 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-04-16 17:14 - 2016-03-10 21:19 - 07452512 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-04-16 17:14 - 2016-03-10 21:17 - 01663192 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-04-16 17:14 - 2016-03-10 21:17 - 01523216 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-04-16 17:14 - 2016-03-10 21:17 - 01490128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-04-16 17:14 - 2016-03-10 21:17 - 01358960 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-04-16 17:14 - 2016-03-10 21:17 - 01133752 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-04-16 17:14 - 2016-03-10 19:48 - 00862720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-04-16 17:14 - 2016-03-10 19:43 - 00161280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2016-04-16 17:14 - 2016-03-10 18:55 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
2016-04-16 17:14 - 2016-03-10 18:42 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll
2016-04-16 17:12 - 2016-03-03 18:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2016-04-16 12:12 - 2016-03-29 16:05 - 04175872 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-04-11 19:01 - 2016-04-11 19:01 - 00000000 _____ C:\autoexec.bat
2016-04-11 18:29 - 2016-04-16 17:20 - 00000000 ____D C:\AdwCleaner
2016-04-10 16:51 - 2016-04-10 16:51 - 00000000 ____D C:\Users\Jan\AppData\Roaming\MCorp
2016-04-10 16:28 - 2016-04-10 16:34 - 00000000 ____D C:\Users\Jan\AppData\Local\app
2016-04-10 16:19 - 2016-04-10 16:20 - 00000000 ____D C:\Users\Jan\AppData\Local\Tempfolder
2016-04-10 16:19 - 2016-04-10 16:19 - 00000000 ____D C:\uninst
2016-04-10 16:17 - 2016-04-10 16:20 - 00127488 _____ C:\Users\Jan\AppData\Roaming\Installer.dat
2016-04-10 16:16 - 2016-04-10 16:15 - 00001006 _____ C:\Windows\system32\Drivers\etc\hp.bak
2016-04-09 12:37 - 2016-04-09 12:37 - 00000000 ____D C:\Users\Jan\AppData\Roaming\dvdcss
2016-04-09 10:39 - 2016-04-09 10:39 - 00000000 ____D C:\Users\Jan\AppData\Local\Avira_Operations_GmbH_&_C
2016-04-09 10:31 - 2016-04-09 10:31 - 00000000 ____D C:\Users\Jan\AppData\Local\Avira
2016-04-09 10:29 - 2016-04-12 20:41 - 00000000 ____D C:\Program Files (x86)\Avira
2016-04-09 10:29 - 2016-04-11 20:20 - 00000000 ____D C:\ProgramData\Avira
2016-04-09 09:57 - 2016-04-09 09:57 - 00000000 ____D C:\Windows\system32\SSL

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-04-29 15:56 - 2016-02-13 20:35 - 00000000 ___HD C:\$WINDOWS.~BT
2016-04-29 15:53 - 2015-08-10 08:56 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-04-29 15:43 - 2015-01-12 14:48 - 00000000 ____D C:\Windows\Panther
2016-04-29 15:26 - 2015-08-09 08:50 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-489078762-871934448-399521353-1001
2016-04-29 15:20 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-04-29 15:20 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2016-04-29 15:14 - 2015-06-17 21:46 - 06497862 _____ C:\Windows\system32\perfh007.dat
2016-04-29 15:14 - 2015-06-17 21:46 - 01876866 _____ C:\Windows\system32\perfc007.dat
2016-04-29 15:14 - 2014-03-18 12:03 - 00005430 _____ C:\Windows\system32\PerfStringBackup.INI
2016-04-29 15:10 - 2015-08-09 19:46 - 00000000 ____D C:\Program Files (x86)\Steam
2016-04-29 15:10 - 2015-08-09 10:05 - 00001142 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-29 06:31 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-04-28 21:09 - 2015-07-15 18:57 - 00000000 ____D C:\Users\Jan
2016-04-28 21:08 - 2015-08-30 11:43 - 00000000 ____D C:\Users\Jan\AppData\Roaming\EssentialPIM
2016-04-28 21:02 - 2015-08-09 10:05 - 00001146 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-28 20:55 - 2015-08-31 20:54 - 00000000 ____D C:\Users\Jan\Documents\Euro Truck Simulator 2
2016-04-28 19:09 - 2015-12-08 21:50 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Skype
2016-04-28 18:23 - 2015-08-30 13:20 - 00003186 _____ C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-489078762-871934448-399521353-1001
2016-04-25 20:32 - 2015-08-09 09:00 - 00000000 ____D C:\Users\Jan\AppData\Local\CrashDumps
2016-04-25 16:15 - 2016-03-20 10:00 - 00000000 ____D C:\Users\Jan\AppData\Local\ElevatedDiagnostics
2016-04-25 10:20 - 2015-06-17 12:54 - 00003718 _____ C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2016-04-25 09:57 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\Inf
2016-04-23 13:04 - 2015-08-09 10:06 - 00002171 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-23 13:04 - 2015-08-09 10:06 - 00002159 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-04-22 13:43 - 2016-03-22 18:08 - 00000882 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-04-22 13:43 - 2016-03-22 16:58 - 00001769 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-04-22 13:43 - 2016-02-24 21:09 - 00000921 _____ C:\Users\Public\Desktop\Euro Truck Simulator 2 Multiplayer.lnk
2016-04-22 13:43 - 2016-02-24 21:09 - 00000916 _____ C:\Users\Public\Desktop\American Truck Simulator Multiplayer.lnk
2016-04-22 13:43 - 2016-02-15 20:24 - 00000867 _____ C:\Users\Jan\Desktop\Steam.lnk
2016-04-22 13:43 - 2015-12-08 21:50 - 00002715 _____ C:\Users\Public\Desktop\Skype.lnk
2016-04-22 13:43 - 2015-11-03 19:57 - 00001772 _____ C:\Users\Jan\Desktop\Word 2013.lnk
2016-04-22 13:43 - 2015-08-31 16:42 - 00002838 _____ C:\Users\Jan\Desktop\Excel 2013.lnk
2016-04-22 13:43 - 2015-08-31 16:42 - 00002769 _____ C:\Users\Jan\Desktop\PowerPoint 2013.lnk
2016-04-22 13:43 - 2015-08-30 13:14 - 00001251 _____ C:\Users\Jan\Desktop\Landwirtschafts Simulator 15 .lnk
2016-04-22 13:43 - 2015-08-30 12:46 - 00001945 _____ C:\Users\Public\Desktop\Samsung Kies 3.lnk
2016-04-22 13:43 - 2015-08-30 12:28 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-04-22 13:43 - 2015-08-30 12:28 - 00002031 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2016-04-22 13:43 - 2015-08-30 12:15 - 00001089 _____ C:\Users\Public\Desktop\phase-6 desktop.lnk
2016-04-22 13:43 - 2015-08-30 11:54 - 00001042 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-04-22 13:43 - 2015-08-30 11:43 - 00001027 _____ C:\Users\Public\Desktop\EssentialPIM.lnk
2016-04-22 13:43 - 2015-08-30 11:41 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-04-22 13:43 - 2015-08-30 11:40 - 00000990 _____ C:\Users\Jan\Desktop\IrfanView 64.lnk
2016-04-22 13:43 - 2015-07-15 18:58 - 00001272 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio-Manager.lnk
2016-04-22 13:43 - 2015-07-15 18:58 - 00001051 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-04-22 13:43 - 2015-07-15 18:57 - 00000469 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2016-04-22 13:43 - 2015-07-15 18:57 - 00000467 _____ C:\Users\Jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2016-04-22 13:43 - 2015-01-12 15:58 - 00001357 _____ C:\Users\Public\Desktop\CyberLink PowerDirector 10.lnk
2016-04-22 13:42 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\addins
2016-04-22 09:57 - 2015-08-09 20:32 - 00453288 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-04-21 06:19 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2016-04-20 19:32 - 2013-08-22 17:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-04-20 19:31 - 2015-08-30 13:10 - 00000000 ____D C:\Program Files\Microsoft Office 15
2016-04-19 20:34 - 2016-02-10 14:20 - 00000000 ____D C:\Users\Jan\Documents\ETS2MP
2016-04-19 19:33 - 2015-12-08 21:50 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-04-19 19:33 - 2015-12-08 21:50 - 00000000 ____D C:\ProgramData\Skype
2016-04-19 19:08 - 2016-02-10 12:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ETS2 + ATS Multiplayer
2016-04-19 19:08 - 2016-02-10 12:51 - 00000000 ____D C:\Program Files\TruckersMP
2016-04-19 14:34 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\schemas
2016-04-19 13:51 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2016-04-19 13:02 - 2013-08-22 16:44 - 00381472 _____ C:\Windows\system32\FNTCACHE.DAT
2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ___SD C:\Windows\system32\GWX
2016-04-18 18:42 - 2015-08-09 18:56 - 00000000 ____D C:\Windows\system32\appraiser
2016-04-18 18:41 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2016-04-18 16:45 - 2015-08-09 11:47 - 00000000 ____D C:\Windows\system32\MRT
2016-04-18 16:42 - 2015-08-09 11:47 - 135176864 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-04-18 16:39 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-04-16 17:21 - 2016-03-12 12:26 - 00000000 ____D C:\Program Files (x86)\Razer
2016-04-16 17:14 - 2016-01-12 20:47 - 00177488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-04-16 17:13 - 2016-03-09 15:46 - 01737080 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-04-16 17:13 - 2016-03-09 15:46 - 01501488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-04-16 17:13 - 2016-03-09 15:46 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2016-04-16 17:07 - 2016-03-12 12:31 - 00000000 ____D C:\Users\Jan\AppData\Local\Razer
2016-04-16 17:07 - 2016-03-12 12:26 - 00000000 ____D C:\ProgramData\Razer
2016-04-10 17:41 - 2016-02-07 17:03 - 00000000 ____D C:\Users\Jan\Documents\American Truck Simulator
2016-04-09 12:41 - 2015-08-30 11:54 - 00000000 ____D C:\Users\Jan\AppData\Roaming\vlc
2016-04-09 10:35 - 2015-08-30 12:20 - 00000000 ____D C:\Users\Jan\AppData\Roaming\Mozilla
2016-04-05 23:53 - 2015-01-12 15:43 - 00829944 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-04-05 23:53 - 2015-01-12 15:43 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-04-05 15:36 - 2015-11-03 21:23 - 00000222 _____ C:\Users\Jan\Desktop\DiRT Rally.url
2016-04-02 19:54 - 2016-03-02 16:14 - 00000000 ____D C:\Users\Jan\Documents\Project CARS

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2016-04-10 16:17 - 2016-04-10 16:20 - 0127488 _____ () C:\Users\Jan\AppData\Roaming\Installer.dat
2015-06-17 13:07 - 2015-06-17 13:07 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-04-20 21:55

==================== Ende von FRST.txt ============================
         
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-04-2016 01
durchgeführt von Jan (2016-04-29 16:00:47)
Gestartet von C:\Users\Jan\Desktop
Windows 8.1 (X64) (2015-07-15 16:57:53)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-489078762-871934448-399521353-500 - Administrator - Disabled)
Gast (S-1-5-21-489078762-871934448-399521353-501 - Limited - Disabled)
Jan (S-1-5-21-489078762-871934448-399521353-1001 - Administrator - Enabled) => C:\Users\Jan

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8106.0 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8108 - Acer Incorporated)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe Flash Player 11 Plugin (HKLM-x32\...\{F83DD803-2467-4D07-9D6F-87AF0434410A}) (Version: 11.9.900.170 - Adobe Systems Incorporated)
Allway Sync (HKLM-x32\...\{BD9C52C1-7971-47D1-AB95-5F1F9F34D35A}) (Version: 15.3.1 - Botkind, Inc.)
American Truck Simulator (HKLM-x32\...\Steam App 270880) (Version:  - SCS Software)
Apple Application Support (32-Bit) (HKLM-x32\...\{FE5C2FAA-118D-4509-B51D-3F71CC9E1B3E}) (Version: 4.3 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{2937FD88-C9D6-4B82-B539-37CD0A572F42}) (Version: 4.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Bonjour (HKLM\...\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}) (Version: 2.0.2.0 - Apple Inc.)
Bonjour-Druckdienste (HKLM\...\{0DA20600-6130-443B-9D4B-F30520315FA6}) (Version: 2.0.2.0 - Apple Inc.)
Broadcom NetLink Controller (HKLM\...\{7FBA83D7-D58E-4B70-9B9B-12E95B183B22}) (Version: 16.6.1.3 - Broadcom Corporation)
Brother MFL-Pro Suite MFC-J6510DW (HKLM-x32\...\{17795164-3BC1-4D4F-8ADA-65C895EBFC9A}) (Version: 2.0.0.0 - Brother Industries, Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 5.16 - Piriform)
Cities: Skylines (HKLM-x32\...\Steam App 255710) (Version:  - Colossal Order Ltd.)
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.4220 - CyberLink Corp.)
DiRT Rally (HKLM-x32\...\Steam App 310560) (Version:  - Codemasters Racing Studio)
Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.6.3.1 - Dolby Laboratories Inc)
EssentialPIM (HKLM-x32\...\EssentialPIM) (Version: 6.58 - Astonsoft Ltd)
Euro Truck Simulator (HKLM-x32\...\Steam App 232010) (Version:  - SCS Software)
Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version:  - SCS Software)
F1 2012 (HKLM-x32\...\Steam App 208500) (Version:  - Codemasters Birmingham)
F1 2013 (HKLM-x32\...\Steam App 223670) (Version:  - Codemasters Birmingham)
F1 2015 (HKLM-x32\...\Steam App 286570) (Version:  - Codemasters)
Foxit PhantomPDF (HKLM-x32\...\{D4DF5498-C95C-4A02-9951-725FB2D7BC0D}) (Version: 6.0.121.624 - Foxit Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
GRID 2 (HKLM-x32\...\Steam App 44350) (Version:  - Codemasters Racing)
iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.)
Intel RealSense Warrior Wave (HKLM-x32\...\Warrior Wave) (Version: 1.0.24 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1168 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3643 - Intel Corporation)
Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime  (x86): Core (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime  (x86): Face Tracking (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime  (x86): Face Tracking: Models (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime  (x86): User Notification Tool files and components (x32 Version: 3.1.0.25181 - Intel Corporation) Hidden
Intel® RealSense™ SDK 2014 Runtime (HKLM-x32\...\ARP_for_prd_rs_sdk_runtime_v3_3.1.0.85181) (Version: 3.1.0.85181 - Intel Corporation)
IrfanView 64 (remove only) (HKLM\...\IrfanView) (Version: 4.40 - Irfan Skiljan)
iTunes (HKLM\...\{A31C5565-90D9-4615-AE13-94D86C3836C7}) (Version: 12.3.3.17 - Apple Inc.)
Kinect for Windows Speech Recognition Language Pack (de-DE) (HKLM-x32\...\{898AA67F-99B8-4C7F-9611-B11F98EF6E78}) (Version: 11.0.7413.611 - Microsoft Corporation)
Landwirtschafts Simulator 15 (HKLM-x32\...\FarmingSimulator2015DE_is1) (Version: 1.4.2.0 - GIANTS Software)
Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech)
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4815.1001 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-489078762-871934448-399521353-1001\...\OneDriveSetup.exe) (Version: 17.3.6302.0225 - Microsoft Corporation)
Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
NVIDIA GeForce Experience 2.10.2.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.10.2.40 - NVIDIA Corporation)
NVIDIA Grafiktreiber 364.72 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 364.72 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4815.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4815.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4815.1001 - Microsoft Corporation) Hidden
phase-6 2.3.5 (HKLM-x32\...\phase-6) (Version: 2.3.5 - phase-6)
Project CARS (HKLM-x32\...\Steam App 234630) (Version:  - Slightly Mad Studios)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.330 - Qualcomm Atheros Communications)
Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.43 - Qualcomm Atheros)
RaceRoom Racing Experience  (HKLM-x32\...\Steam App 211500) (Version:  - Sector3 Studios)
RaceRoom Racing Experience Launcher (HKLM-x32\...\{1FD9F07F-7BBF-4C91-B3F0-A23714A3A913}_is1) (Version: 1.0 - Sector3 Studios)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.39059 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7260 - Realtek Semiconductor Corp.)
Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.16011.2 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (x32 Version: 3.2.16011.2 - Samsung Electronics Co., Ltd.) Hidden
Scania Truck Driving Simulator (HKLM-x32\...\Steam App 258760) (Version:  - SCS Software)
SHIELD Streaming (Version: 5.1.0270 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.10.2.40 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation)
Skype™ 7.21 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.21.100 - Skype Technologies S.A.)
Spintires (HKLM-x32\...\Steam App 263280) (Version:  - Oovee® Game Studios)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TruckersMP 0.2.0.8.1 Alpha (HKLM\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.2.0.8.1 Alpha - ETS2MP Team)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Welcome to Intel RealSense 3D Camera (HKLM-x32\...\Welcome to Intel RealSense 3D Camera) (Version: 1.05 - Intel)
WinRAR 5.31 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {07A88F54-C730-4DF8-BCC3-487E1A76ACF6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {144CF144-9872-4470-98C7-96F247898303} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [2014-07-22] (Acer Incorporated)
Task: {2D8F5536-6E75-4A7B-9608-890995125601} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-10] (Adobe Systems Incorporated)
Task: {3386A9AD-41B9-44E2-8207-1CB1BBAC9757} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {61B4AA7B-433F-481E-B729-50D03345EA54} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {64463039-F0D9-4FA1-A62E-2423AEF171E6} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-489078762-871934448-399521353-1001 => C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-04-26] (Microsoft Corporation)
Task: {6E5497CD-4EAA-47CB-827D-E28BC9C911C1} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2014-06-17] (Acer Incorporated)
Task: {7D2CFD96-D1A2-45C2-974A-2814F836791E} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {7D36D36D-8C01-41F6-9BB6-AF7D5E84A5C4} - System32\Tasks\{BF66D5AD-3558-4BBF-9D5D-82147A5E9F3F} => pcalua.exe -a "C:\Program Files (x86)\Acer\abDocs\AcerDocsSetup.exe" -c -uninstall
Task: {91CFB104-0317-4B91-89F7-29EAFF0CD2B5} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation)
Task: {95A1FE22-88D3-4336-B7AD-CCF5B920B496} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {9CAB6DED-5621-4F5E-9970-B32B21887A37} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-03-11] (Piriform Ltd)
Task: {9CF1FF96-5129-498B-A9F2-3EFF6A437F42} - System32\Tasks\DolbySelectorTask => C:\Program Files\Dolby Digital Plus\ddp.exe [2014-04-07] (Dolby Laboratories Inc.)
Task: {BEB25077-0AEE-4334-8CD9-E0F48D46E870} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {C54C4F96-BDFA-4A9E-AAED-43F7385562F8} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-04-18] (Microsoft Corporation)
Task: {D0A479A7-929A-49B8-8484-2E9B420B9332} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
Task: {E987A9FC-7172-4CFF-AC33-3F4B42D608F1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2016-03-18 23:56 - 2016-03-18 23:56 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-03-18 23:56 - 2016-03-18 23:56 - 01329936 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-08-30 13:10 - 2015-10-13 05:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2016-03-01 21:16 - 2016-02-17 08:56 - 01416064 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2015-12-19 19:54 - 2016-02-17 08:56 - 00299392 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-03-01 21:16 - 2016-02-17 08:56 - 03613056 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2015-01-12 15:54 - 2012-04-24 12:43 - 00254512 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
2015-08-30 12:43 - 2010-03-16 01:04 - 00143360 _____ () C:\Windows\system32\BrSNMP64.dll
2016-03-29 11:31 - 2016-03-22 04:25 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-08-27 19:45 - 2014-08-27 19:45 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2014-08-27 19:41 - 2014-08-27 19:41 - 00086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll
2014-08-27 19:47 - 2014-08-27 19:47 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
2015-06-17 12:50 - 2016-02-17 09:01 - 00717184 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll
2015-06-17 12:50 - 2016-02-17 09:02 - 00862592 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll
2014-04-07 16:13 - 2014-04-07 16:13 - 00052096 _____ () C:\Program Files\Dolby Digital Plus\Dolby.DDP.Controls_Desktop.dll
2015-10-29 15:14 - 2015-10-29 15:14 - 00093488 _____ () C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe
2016-03-11 22:31 - 2016-03-11 22:31 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2016-03-18 23:55 - 2016-03-18 23:55 - 00306960 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxslt.dll
2016-04-23 13:04 - 2016-04-21 07:10 - 02224280 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.87\libglesv2.dll
2016-04-23 13:04 - 2016-04-21 07:10 - 00097944 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.87\libegl.dll
2015-08-30 12:43 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll
2014-02-19 18:51 - 2014-02-19 18:51 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-08-09 10:40 - 2016-02-17 09:02 - 00020352 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-08-09 19:48 - 2016-03-11 02:56 - 00783360 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-08-09 19:48 - 2015-07-03 18:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2015-08-09 19:48 - 2016-03-31 22:55 - 02549840 _____ () C:\Program Files (x86)\Steam\video.dll
2015-08-09 19:48 - 2015-07-03 18:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-08-09 19:48 - 2015-07-03 18:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2015-08-09 19:47 - 2016-02-09 01:14 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2015-08-09 19:47 - 2016-02-09 01:14 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2015-08-09 19:47 - 2016-02-09 01:14 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2015-08-09 19:47 - 2016-02-09 01:14 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2015-08-09 19:47 - 2016-02-09 01:14 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2015-08-09 19:48 - 2016-03-31 22:55 - 00829008 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-03-09 19:14 - 2016-02-18 00:25 - 00281088 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2015-10-29 13:44 - 2015-10-29 13:44 - 08569344 _____ () C:\Program Files (x86)\Allway Sync\Bin\syncapp.dll
2015-08-09 19:48 - 2016-02-09 03:33 - 48400672 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2016-03-18 23:56 - 2016-03-18 23:56 - 01040656 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2016-03-18 23:56 - 2016-03-18 23:56 - 00080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ==========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 15:25 - 2016-04-10 16:15 - 00001006 ____N C:\Windows\system32\Drivers\etc\hosts

127.0.0.1       down.baidu2016.com
127.0.0.1       123.sogou.com
127.0.0.1       www.czzsyzgm.com
127.0.0.1       www.czzsyzxl.com
127.0.0.1       union.baidu2019.com

==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-489078762-871934448-399521353-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jan\AppData\Roaming\Microsoft\Windows Photo Viewer\Hintergrundbild der Windows-Fotoanzeige.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-489078762-871934448-399521353-1001\...\StartupApproved\Run: => "Spotify Web Helper"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{5255B9A2-A987-47B7-AD1D-5B9EC09BBD29}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE
FirewallRules: [{177AEDA3-7A63-40BD-B9D2-86E5DE0B0525}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{168494FD-66C5-4C2A-AE2D-C1E8EEB66228}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{CCCF3C04-4E6A-46C3-93BD-28DAB4F8BD45}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{9F0CBB67-0577-48F2-9783-D423DE006369}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{03F81190-EA49-4E74-834F-09FB3235F302}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{42D08078-860B-4AE9-B02C-1B518878C94D}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{32F0C2BF-DAEF-4801-9CB7-A292D319B58E}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{B90645B1-0989-496E-B2E6-7C4AA0C67184}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{6D49E321-B7BE-48D9-96A8-FD265A4F9EB3}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{E4F3E027-28A6-4B3B-93AD-A37A06578C0F}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{23684A87-38E4-4BA0-A204-6ECBEAD044B0}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{66D90117-1867-4F0A-B85C-CD00058459CD}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{AB017C7A-6014-404A-B10B-B38536445939}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{2695E114-88E4-4C0F-A250-430847E147EB}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{0275EA0C-D51E-4E08-8874-4304C8165CCE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{D633977F-1C07-4F70-A691-EDAFC53FEB65}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{AB0B2FB5-21A1-45B6-B31C-5C19D4FD133C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{B5B2424C-3B0D-4720-BF7A-87357F1E3177}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{3B2ECB12-BCA8-47F3-A7FB-DD1715975F80}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{3A938CB8-68AA-46AE-ACD8-967440294721}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{E8666CED-3003-4AE8-8F0A-62869EAB6068}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{DAB988FC-FAEA-4D69-8B20-9DE4472466D9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{AFADCC7F-303F-4374-BB18-14622EEA487D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{0ED1EBD6-C022-4274-9495-D019F1FB9DA1}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{4054727D-41C2-4AD0-8069-88FDD7442191}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{514A81D2-AA7E-431C-977F-ED9E7C66B522}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{B7C60454-A552-4859-9BA2-65EFA7C40FA1}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{31B9CF05-4391-4741-85C8-1D900B7C846F}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{C0010281-198A-4A0D-BFC3-F4928D9D45F6}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{A38C273F-78AF-4F85-A4C3-089100CFF807}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{02F30AB7-0A5A-4156-AA33-792730082FAE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{1E20F0C0-1479-4194-A641-2774204AA61E}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{EABF564F-3340-43E5-8262-2CDEF4458F6C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{D4A908AA-782E-44A6-A6A5-77E5E204361B}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{2F2F3FAD-9AFD-4FA7-B4C6-0B8130B488E8}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{C3197FBD-F2D0-491C-8ECD-2CAEF5ACA4C5}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{FAD1F37E-0A45-4AAD-BC61-FCB84390D491}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{501C0F43-EBC3-4858-AF25-0B1E3D29C021}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{133E087A-AAF9-4BE6-A4F4-32EF738DC6E6}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{86FB5E4D-CB72-4A4C-98CD-2F892244BCBE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{0EB6DFB3-0DF8-4215-AF62-52B0C597A470}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{EF72E83F-26F9-4616-B64F-28D1250250DC}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{061DC6EF-0495-493B-81F1-DB74C9DB04A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{BB2976D1-D38F-4137-B34D-066FA09B8682}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{5CD1601B-F887-4D2B-9367-5698E3A34B38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2012\F1_2012.exe
FirewallRules: [{E486775E-0703-47C3-94F6-2D268BC6962B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2012\F1_2012.exe
FirewallRules: [{B05CBC4F-BC42-406D-8B87-F32FA2BAFE53}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\f12013\F1_2013.exe
FirewallRules: [{0EF656BD-F3FB-44B5-ACB6-096829CC86D6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\f12013\F1_2013.exe
FirewallRules: [{573BC1AD-64F3-4BAB-AEA8-64DC16E4A4F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\grid 2\grid2.exe
FirewallRules: [{49D2CD9B-E5B5-4777-92A5-AC8B7BBB7917}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\grid 2\grid2.exe
FirewallRules: [{16773875-EA72-44B6-912B-EC94F8A546CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe
FirewallRules: [{E9BCAC84-4BF9-41AF-8792-AFF33F96764A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe
FirewallRules: [TCP Query User{00105315-7825-4946-BB0A-71F1E266630C}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [UDP Query User{B4C455B4-DEA3-44A7-991B-FFD1D366CA41}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [{67B2E0AF-CCA2-4647-87DA-83930B1FEDEB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2015\F1_2015.exe
FirewallRules: [{F2D8E220-A092-42EA-9AF3-0EF775A171AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2015\F1_2015.exe
FirewallRules: [{63976110-E447-4B78-B963-2FAB5EDAB20A}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10g\FAXRX.exe
FirewallRules: [{36C30BA6-9718-447F-B59F-0DD2AB2C28E1}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10g\FAXRX.exe
FirewallRules: [{786CC2EB-683D-4794-BAAC-E38D81D66A17}] => (Allow) LPort=54925
FirewallRules: [{147D1EEF-67C4-4E55-B685-D77493CD480A}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe
FirewallRules: [{28B7563D-6764-437B-9E5E-1E988232B4F2}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe
FirewallRules: [{634A5341-F797-40F1-9AA3-D1E41EB72BB6}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe
FirewallRules: [{7EB100D4-EEE7-4EF8-A74D-3264DF9FD4F4}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe
FirewallRules: [{EA9AC0B9-6F1B-424E-8E48-64F4BF8126FA}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe
FirewallRules: [{2C2EA128-6412-4181-8A4D-D92E05B7EC75}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe
FirewallRules: [{F40459FE-8EAC-433D-ACEA-97FDC5DA3D32}] => (Allow) C:\Users\Jan\AppData\Local\Microsoft\OneDrive\OneDrive.exe
FirewallRules: [TCP Query User{E9FFD9BF-2060-402E-AD79-C906B02B539C}C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe] => (Allow) C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe
FirewallRules: [UDP Query User{BA51C170-5763-45F1-8034-3938147ABCB3}C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe] => (Allow) C:\program files (x86)\landwirtschafts simulator 2015\x64\farmingsimulator2015game.exe
FirewallRules: [{E0CBDE1E-5C86-48CE-9802-86DA3BA91D52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe
FirewallRules: [{E63F55E2-D563-4B39-A5AE-D87509A12EC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe
FirewallRules: [{BC520304-1C68-4BA3-89C4-32FEE1C82F4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe
FirewallRules: [{E9DA2C27-251D-430B-A8E7-16A1D7319300}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe
FirewallRules: [{A12925A2-9BA0-42AD-A3AE-FC712C36A199}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe
FirewallRules: [{341F4A65-AD01-449C-ADFD-E7E47CD8DDB1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe
FirewallRules: [{E21ADE07-AEE0-44C2-8E37-A0913B44A52A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trucks & Trailers\bin\win_x86\trucks_n_trailers.exe
FirewallRules: [{028CBB43-3354-487B-BB8B-FE14A4767410}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trucks & Trailers\bin\win_x86\trucks_n_trailers.exe
FirewallRules: [{89D56416-7B46-4FCE-BFCC-4DE65FEA769F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe
FirewallRules: [{82F2CA31-99DA-4917-B91D-452B1D2B449F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe
FirewallRules: [{EC639DFF-6821-429A-951C-C651DC9B099F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator\eurotrucks.exe
FirewallRules: [{C5753D9C-1DBE-434A-B4A2-DB3A2427141E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator\eurotrucks.exe
FirewallRules: [TCP Query User{3B3EFB66-147E-4B3D-997F-E504925A9C31}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{05FDD09D-27D4-4C69-8ECF-49B5354C1AE7}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{C017ED3E-56ED-44CE-A897-2A0791F55148}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{F39FBCC3-FEEB-423B-A925-E4AA7E88EFC5}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{5B20645B-91CE-4204-8671-5DABE490E824}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe
FirewallRules: [{2F27CF8E-6801-45DF-845A-47F79EFE5CF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Scania Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe
FirewallRules: [{AE33FC29-0BE1-4DE7-A8FC-E7355C8B82F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\pCars\pCARS64.exe
FirewallRules: [{3C4815BF-CC19-401E-A619-F4CB7B4F63C0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\pCars\pCARS64.exe
FirewallRules: [{3981513C-C594-46CB-8249-9CB7FE806353}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{E2230A58-72F0-4AB0-B896-309157D9C62C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe
FirewallRules: [{7F378F69-E9D6-46E3-AF0E-FEF3735F6932}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe
FirewallRules: [{8480922A-BF1B-4F54-87AA-1E80C8FA4C44}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{C3A5C10A-5F58-4FC0-A69C-F02D39C6F7EC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{2AF52FEC-CB35-4E46-B89F-D48C7F7EBABF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{31F29C08-C67C-4E2B-B50C-A0F57E70C6A3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{3F8DD928-CAF0-484D-A929-8586394860B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{84A5CEFF-F72F-4BC4-80E9-D5952EB5CF45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{9735FA6C-8244-4C87-97B8-13C2E6FCF0C7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{19AEE153-F44C-401D-B689-8AE14321F908}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\raceroom racing experience\Game\RRRE.exe
FirewallRules: [{38F358DC-8A96-40E9-B829-139198AFB4A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\raceroom racing experience\Game\RRRE.exe

==================== Wiederherstellungspunkte =========================

25-04-2016 10:01:11 Installed Bonjour Print Services
29-04-2016 06:17:53 Windows Update

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (04/29/2016 03:14:07 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT)
Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich.

Error: (04/29/2016 03:14:07 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error: (04/29/2016 03:14:07 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error: (04/29/2016 06:13:17 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT)
Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich.

Error: (04/29/2016 06:13:17 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error: (04/29/2016 06:13:17 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error: (04/28/2016 07:28:35 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT)
Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich.

Error: (04/28/2016 07:28:35 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error: (04/28/2016 07:28:35 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.

Error: (04/28/2016 07:14:28 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT)
Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich.


Systemfehler:
=============
Error: (04/29/2016 03:33:08 PM) (Source: DCOM) (EventID: 10010) (User: Notebook-Jan2)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (04/29/2016 03:27:27 PM) (Source: DCOM) (EventID: 10010) (User: Notebook-Jan2)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (04/29/2016 03:26:57 PM) (Source: DCOM) (EventID: 10010) (User: Notebook-Jan2)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (04/29/2016 06:37:28 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Definitionsupdate für Windows Defender – KB2267602 (Definition 1.219.254.0)

Error: (04/29/2016 06:37:22 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%577

Error: (04/29/2016 06:31:59 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%577

Error: (04/29/2016 06:30:10 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0xc190012f fehlgeschlagen: Upgrade auf Windows 10 Home, Version 1511, 10586

Error: (04/29/2016 06:19:20 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Definitionsupdate für Windows Defender – KB2267602 (Definition 1.219.254.0)

Error: (04/29/2016 06:19:12 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%577

Error: (04/28/2016 09:09:14 PM) (Source: DCOM) (EventID: 10010) (User: Notebook-Jan2)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}


CodeIntegrity:
===================================
  Date: 2016-04-29 15:28:16.307
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-04-29 06:37:22.076
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-29 06:31:59.964
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-29 06:19:12.832
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-28 20:10:51.423
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-28 19:22:14.511
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-28 18:50:06.946
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-28 18:28:18.073
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-28 18:20:51.807
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2016-04-27 20:39:00.102
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i7-4710HQ CPU @ 2.50GHz
Prozentuale Nutzung des RAM: 31%
Installierter physikalischer RAM: 8115.27 MB
Verfügbarer physikalischer RAM: 5596.33 MB
Summe virtueller Speicher: 16819.27 MB
Verfügbarer virtueller Speicher: 13549.38 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:453.77 GB) (Free:219.3 GB) NTFS
Drive d: (DATA) (Fixed) (Total:453.77 GB) (Free:453.62 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 27067300)

Partition: GPT.

==================== Ende von Addition.txt ============================
         
Hallo Rafael,

Nein ich habe sonst keine Probleme mehr. Sollte ich welche haben werde ich mich melden.
Dann bedanke ich mich ganz herzlich für die sehr hilfreichen Antworten!!
Bis irgendwann mal.

Mfg,
Jan

Alt 29.04.2016, 15:09   #29
burningice
/// Malwareteam
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Bitte pass auf, wenn du von Chip oder anderen Portalen Software laden möchtest:
Warnung vor Benutzung des Chip-Installers

CHIP-Installer - was ist das?


Die Logs von deinem Rechner sehen jetzt für mich sauber aus: Herzlichen Glückwunsch - du bist Clean



Zum Schluss müssen wir noch etwas aufräumen und ich gebe dir ein paar Hinweise mit auf den Weg:

Wichtig: Entfernen der verwendeten Tools
Die Reihenfolge ist hier entscheidend.
  1. Falls Defogger benutzt wurde: Defogger nochmal starten und auf re-enable klicken.
  2. Falls Combofix benutzt wurde: (Alternativ in uninstall.exe umbenennen und starten)
    • Windowstaste + R > Combofix /Uninstall (eingeben) > OK
    • Alternative: Combofix.exe in uninstall.exe umbenennen und starten
    • Combofix wird jetzt starten, sich evtl updaten und dann alle Reste von sich selbst entfernen.
  3. Downloade Dir bitte auf jeden Fall DelFix Download DelFix auf deinen Desktop:
    • Schließe alle offenen Programme.
    • Starte die delfix.exe mit einem Doppelklick.
    • Setze vor jede Funktion ein Häkchen.
    • Klicke auf Start.
    • Hinweis: DelFix entfernt u. a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst.
    • Starte deinen Rechner abschließend neu.
  4. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein kannst du sie bedenkenlos löschen.

Malwarebytes Anti-Malware und ESET kannst du als Ergänzung zu deiner bestehenden Antivirus-Lösung auf dem Computer belassen und deinen Computer damit regelmäßig scannen.


Persönliche Empfehlungen
Das wichtigste zu erst:
  • Aktiviere unbedingt die automatischen Updates von Windows und stelle auch sicher, dass diese regelmäßig installiert werden.
  • Aktiviere immer eine Firewall - die in Windows integrierte reicht dazu vollkommen aus.
  • Verwende immer ein Antivirenprogramm und stelle sicher, dass es sich regelmäßig aktualisiert.

    Wenn du kein Geld ausgeben möchtest, empfehle ich dir auf Windows 8.1 bzw. Windows 10 einfach den Defender zu benutzen. Solltest du noch Windows 7 verwenden, verwende als kostenlose Lösung die Microsoft Security Essentials.

    Wenn dir etwas besserer Schutz mit Verhaltenserkennung etwas wert ist, um so auch optimalerweise ganz neue Schadsoftware zu erkennen, empfehle ich dir eine der beiden folgenden Lösungen:


Schutz vor unerwünschter Software
Adware ist zu einer Art permanenten Bedrohung geworden, weil immer mehr Programme versuchen, einem beim Installieren noch was anderes unterzujubeln - und wie schnell hat man da ein Häkchen übersehen?

Darum: pass auf, wenn du dir Software aus dem Internet herunterlädst! Viele Portale im Internet wie Chip, Softonic und Sourceforge versuchen häufig, dir Adware oder sonstige Downloader mit unerwünschten Programmen unterzujubeln. Downloade nach Möglichkeit immer direkt von der Herstellerseite oder alternativ von einem sauberen Download-Portal, wie von FilePony.de.
Lese dir dazu auch folgenden Artikel durch: CHIP-Installer - was ist das? - Anleitungen

Selbst wenn du ein Programm von einer seriösen Quelle heruntergeladen hast, ist das keine Garantie, dass dein Programm nicht doch versucht, unerwünschte Änderungen an deinem Computer vorzunehmen. So versuchen immer mehr Programme, durch modifizierte Installationsroutinen unerwünschte Programme mit auf deinen PC zu schleusen. Das klappt leider auch häufig, weil viele Anwender nicht lesen, was auf dem Bildschirm steht und stattdessen schnell durchklicken.
Deshalb: Wenn du ein Programm installierst, wähle immer die benutzerdefinierte Installation und schaue, was du da gerade eigentlich alles mit einem Klick auf "Ok" oder "Weiter" abnickst - entferne entsprechend die Haken bei Dingen, die du nicht möchtest. Wer lesen kann, ist klar im Vorteil!

Benutze keine Optimizer, Cleaner oder sonstige SpeedUp Wunder, da diese Tools fast nie einen auch nur messbaren Performancegewinn bringen.
Du kannst jedoch regelmäßig auf deinem PC die Datenträgerbereinigung ausführen, so gewinnst du belegten Speicherplatz zurück.

Aktiviere in deiner Virenschutzlösungen den "Schutz vor potentiell unerwünschter Software", um dich bestmöglich zu schützen.

Guter Trick: Wenn du den kostenlosen Windows Defender benutzt (ab Windows 8), kannst du einen vergleichbaren Schutz durch einen kleinen Trick auch nutzen! Lese dazu folgenden Artikel um dich mehr zu informieren: Windows mit verstecktem Adware-Killer
Zum aktivieren dieses "Tricks" lade einfach nur diese Datei und führe sie aus: MpEnablePlus.reg

Tipps, um dein System sicherer zu machen
Halte immer deine Plug-ins und Software, insbesondere deinen Browser aktuell. Deinstalliere wenn möglich Java und den Adobe Flashplayer von deinem Computer. Neuerdings benötigt man sie fast nie mehr und stellen darum nur mehr eine unnötige Sicherheitslücke auf deinem Computer dar. Wenn du sie doch unbedingt benötigst, halte sie aber unbedingt aktuell.

Weiters kannst du dir Malwarebytes Anti-Exploit installieren. Es schützt gegen viele aktuelle Sicherheitslücken und erhöht so deine Sicherheit.

Passwörter
Ändere regelmäßig deine Passwörter! Zudem musst du sichere Passwörter benutzen, das bedeutet: mindestens 8 Zeichen, Groß- und Kleinbuchstaben und Sonderzeichen.
Ganz wichtig: benutze pro Account ein anderes Passwort!
Tipp: Benutze einen Spruch, den du dir leicht merken kannst, als Hilfe für ein Passwort! Zum Beispiel: Der Himmel ist blau und wenn es regnet?-grau ==> DHibuwer?-grau


Unterstütze uns und empfiehl uns weiter

Du kennst Freunde und Bekannte, die Probleme mit ihrem Computer haben? Schick sie doch zu uns auf das Trojaner Board, wir helfen gerne

Wenn du uns mit einer Spende unterstützen möchtest, freuen wir uns sehr und dies kannst du hier tun: http://www.trojaner-board.de/79994-s...ndenkonto.html Herzlichen Dank dafür

Wir machen diese Tätigkeit hier freiwillig, darum freue ich mich besonders über ein kurzes Danke, wenn du mit mir zufrieden warest oder sonst über Verbesserungsvorschläge - das kannst du gerne hier machen

Besuche und like unsere Facebook-Seite!


Danke für deine Mitarbeit und alles Gute!

Bitte gib mir Bescheid, wenn du das alles gelesen hast und du keine weiteren Fragen mehr hast.
__________________
Mfg,
Rafael

~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~

Unterstütze uns mit einer Spende
......... Lob, Kritik oder Wünsche .........
.......... Folge uns auf Facebook ..........

Alt 29.04.2016, 15:22   #30
Jan02
 
Win 8.1 MPC Cleaner lässt sich nicht entfernen - Standard

Win 8.1 MPC Cleaner lässt sich nicht entfernen



Hallo Rafael,

Habe alles gelesen und keine weiteren Fragen mehr.
DANKE FÜR ALLES

Mfg,
Jan

Antwort

Themen zu Win 8.1 MPC Cleaner lässt sich nicht entfernen
64-bit, adwcleaner, brauche, brauche hilfe, cleaner, eingefangen, ellung, entferne, entfernen, fehlermeldung, gefangen, gen, hilfe, logfile, lässt sich nicht entfernen, mpc cleaner, nicht, win, win 8.1




Ähnliche Themen: Win 8.1 MPC Cleaner lässt sich nicht entfernen


  1. MPC Cleaner lässt sich nicht löschen (Maleware)
    Log-Analyse und Auswertung - 01.04.2016 (20)
  2. MPC Cleaner lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 24.03.2016 (29)
  3. Windows 7: MPC Cleaner lässt sich nicht deinstallieren / entferne
    Log-Analyse und Auswertung - 22.03.2016 (20)
  4. MPC Cleaner lässt sich nicht komplett Entfernen
    Log-Analyse und Auswertung - 17.03.2016 (9)
  5. MPC Cleaner läßt sich nicht entfernen
    Log-Analyse und Auswertung - 11.03.2016 (12)
  6. Win 10: "MPC Cleaner" lässt sich nicht entfernen
    Log-Analyse und Auswertung - 11.03.2016 (1)
  7. Falsch geklickt, MPC Cleaner lässt sich nicht deinstallieren und jede Menge Popups
    Log-Analyse und Auswertung - 03.03.2016 (15)
  8. MPC Cleaner lässt sich nicht entfernen
    Log-Analyse und Auswertung - 20.01.2016 (82)
  9. MPC Cleaner lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 07.01.2016 (2)
  10. Cleaner pro startet automatisch - Suchaschinen wurden geändert - Antivir lässt sich nicht öffnen ...
    Log-Analyse und Auswertung - 19.08.2015 (16)
  11. Windows7 taskmgr lässt sich nicht starten, Avira Echtzeitscanner lässt sich nicht aktivieren, USB wird nicht angenommen, ohne Meldung,
    Log-Analyse und Auswertung - 01.06.2015 (15)
  12. TR/Crypt.EPACK.20167 -- lässt sich nicht löschen -- Echtzeitscanner lässt sich nicht aktivieren
    Plagegeister aller Art und deren Bekämpfung - 14.01.2015 (29)
  13. Laptop ruckelt nur noch, Iminent lässt sich nicht löschen und Radio schaltet sich alleine an und aus und lässt sich ebenfalls nicht löschen
    Plagegeister aller Art und deren Bekämpfung - 27.06.2014 (3)
  14. TR/Matsnu.EB.137 lässt sich mit AVIRA EU Cleaner nicht entfernen
    Log-Analyse und Auswertung - 13.03.2014 (41)
  15. SECURITY TOOL WARNUNG öffnet sich andauernd und lässt sich nicht entfernen!
    Log-Analyse und Auswertung - 03.10.2010 (1)
  16. Spybot+Firefox hängen sich auf / Windows Security Alert lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 11.05.2010 (15)

Zum Thema Win 8.1 MPC Cleaner lässt sich nicht entfernen - Code: Alles auswählen Aufklappen ATTFilter Farbar Service Scanner Version: 27-01-2016 Ran by Jan (administrator) on 25-04-2016 at 10:18:38 Running from "C:\Users\Jan\Downloads" Microsoft Windows 8.1 (X64) Boot Mode: Normal **************************************************************** Internet - Win 8.1 MPC Cleaner lässt sich nicht entfernen...
Archiv
Du betrachtest: Win 8.1 MPC Cleaner lässt sich nicht entfernen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.